Cyber Security

Security leaders push for continuous controls as audits...

Security teams say they want real-time insight into controls, but still rely on ...

'CrashFix' Scam Crashes Browsers, Delivers Malware

The attack consists of a NexShield malicious browser extension, a social enginee...

Mass Spam Attacks Leverage Zendesk Instances

The CRM vendor advised ignoring or deleting suspicious emails and said the attac...

Vulnerabilities Threaten to Break Chainlit AI Framework

Familiar bugs in a popular open source framework for AI chatbots could give atta...

North Korea-Linked Hackers Target Developers via Malici...

The North Korean threat actors associated with the long-running Contagious Inter...

Microsoft & Anthropic MCP Servers At Risk of RCE, C...

Researchers found the popular model context protocol (MCP) servers, which are in...

Google Gemini Flaw Turns Calendar Invites Into Attack V...

The indirect prompt injection vulnerability allows an attacker to weaponize cale...

HackerOne extends Safe Harbor protections to AI testing

HackerOne has unveiled the Good Faith AI Research Safe Harbor, a new industry fr...

Ping Identity launches Universal Services for ongoing i...

Ping Identity announced its Universal Services, a set of identity services that ...

Three Flaws in Anthropic MCP Git Server Enable File Acc...

A set of three security vulnerabilities has been disclosed in mcp-server-git, th...

Hackers Use LinkedIn Messages to Spread RAT Malware Thr...

Cybersecurity researchers have uncovered a new phishing campaign that exploits s...

Initial access broker pleads guilty to selling access t...

A 40-year-old Jordanian man has admitted to selling unauthorized access to compu...

The Hidden Risk of Orphan Accounts

The Problem: The Identities Left Behind As organizations grow and evolve, employ...

Evelyn Stealer Malware Abuses VS Code Extensions to Ste...

Cybersecurity researchers have disclosed details of a malware campaign that's ta...

Endace pushes packet capture into real-time security wo...

Endace has announced the release of OSm 7.3, a major software update that makes ...

Cloudflare Fixes ACME Validation Bug Allowing WAF Bypas...

Cloudflare has addressed a security vulnerability impacting its Automatic Certif...