A critical security vulnerability in the Unbound DNS resolver could allow attackers controlling a malicious DNS zone to trigger memory corruption and potentially execute arbitrary code...
A critical security vulnerability in Docker Sandboxes could allow malicious code running inside a sandboxed virtual machine to escape its isolation and access or modify files...
A newly disclosed critical security vulnerability in Check Point Security Management and Log Server products could allow remote attackers to execute arbitrary code with root-level privileges...
Spain’s data protection authority has reported what could be an early real-world example of an AI agent being used to carry out multiple stages of a...
British fintech company Revolut is facing claims that attackers obtained sensitive customer information by impersonating a government agency and submitting fraudulent data requests over several months....
The Internet Systems Consortium (ISC) has released new security updates for BIND 9, addressing 14 vulnerabilities that could expose DNS servers to denial-of-service (DoS) attacks and...
The US Cybersecurity and Infrastructure Security Agency (CISA) is ending its weekly vulnerability bulletin as federal cybersecurity policy moves toward prioritizing vulnerabilities according to real-world risk...
Cisco has released patches to address a critical security flaw affecting 10 Silicon One-based Nexus 9000 switches that could allow an unauthenticated, remote attacker to execute...
The security researcher known as Chaotic Eclipse (aka INFINITE NIGHTMARE, MSNightmare, and Nightmare-Eclipse) has dropped a new zero-day dubbed FalconFlank, a privilege escalation flaw impacting Crowdstrike Falcon....
Attacks exploiting two recently discovered PaperCut NG/MF vulnerabilities have escalated, with threat actors shifting from reconnaissance to hands-on-keyboard activity. PaperCut first warned users of its NG and...
Recent Comments