Drupal has released out-of-band security updates to fix two critical code execution flaws (CVE-2020-28948, CVE-2020-28949) in Drupal core, as “there are known exploits for one of core’s...
The developers of the Drupal content management system (CMS) released out-of-band security updates right before Thanksgiving due to the availability of exploits. The core updates released...
Threat actors are spoilt for choice as the use of VPN services surges in the pandemic. With many employees still working from home, the use of...
A cyberespionage group with suspected ties to the Kazakh and Lebanese governments has unleashed a new wave of attacks against a multitude of industries with a...
Users of the popular Drupal content management system (CMS) ought to patch their installations to defend against recently resolved, critical vulnerabilities. Various versions of the widely used, PHP...
A remote code execution (RCE) vulnerability that could expose a users’ cloud assets has been patched in the open source, Elixir-based Paginator project. Discovered by security expert Peter...
As InterSloth’s latest game Among Us has quickly become a fan favorite on both PC and mobile, cybercriminals have taken note and they are now using fake versions...
Cybercriminals often leverage open-source tools or code in attack campaigns. The use of legitimate tools makes attacks stealthier as they are not flagged as suspicious by...
Security researchers have discovered more than 400,000 subdomains with misconfigured CNAME records, leaving many at risk of malicious takeover as a result. When websites are externally...
A vulnerability in Private-IP, a popular open source NPM package for Node.js applications, opened the door attackers to perform multiple server-side request forgery (SSRF) exploits, researchers have warned. The package,...
Recent Comments