Cybersecurity News
Latest updates from top security sources
1595 articles, page 19 of 54
GitLab has issued out-of-band security updates to remediate a critical vulnerability in its Community Edition (CE) and Enterprise Edition (EE) platforms that could allow an unauthe...
Researchers have uncovered a dangerous exploit chain that leverages two previously undisclosed vulnerabilities in Unisoc cellular modems to remotely compromise Android smartphones....
Israeli AI safety testing firm Irregular has published a detailed account of an incident in which frontier AI models—being evaluated inside its controlled testing environments—brok...
Cybercriminals breached a third-party cloud platform used by Heights Finance in early May, compromising the sensitive financial and personal data of approximately 734,828 customers...
Cybersecurity researchers at Wiz have disclosed a GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository that could be...
Cybersecurity defenses absorbed multiple blows this week as attackers weaponized unpatched enterprise software, exploited newly disclosed operating-system flaws, and turned exposed...
France's Directorate General of Public Finances (DGFiP) has confirmed a major data breach affecting approximately 678,000 individuals, discovered after a threat actor advertised th...
Cryptocurrency hardware wallet manufacturer SafePal confirmed on Sunday that nearly 40,000 customers had their personal information stolen in a recent security incident, making it ...
As enterprises race to integrate AI agents into their infrastructure, the Model Context Protocol (MCP) servers acting as the bridge between large language models and live systems a...
Fortinet FortiGuard Labs has identified a previously undocumented Linux botnet family dubbed Evooo1Bot, active in the wild since July 2026, that derives its core functionality from...
Anthropic has disclosed new research demonstrating that Claude-based AI agents, when placed in scenarios with competing objectives, autonomously deployed self-replicating malwar...
A suspected China-nexus advanced persistent threat (APT) has been weaponizing a critical directory-traversal flaw in Broadcom VMware vCenter to deliver Babuk-derived ransomware acr...
Crypto hardware wallet provider SafePal is notifying approximately 39,798 individuals that their personal information was stolen in a data breach disclosed on Sunday. According to ...
A maximum-severity vulnerability in SAP Commerce Cloud, tracked as CVE-2026-58231 with a CVSS score of 10.0, is being actively exploited in the wild just days after a patch was iss...
A sophisticated Rust-based macOS information stealer dubbed AmnesiaStealer is being distributed through counterfeit GitHub download pages in active ClickFix social engineering camp...
Cyera has announced a $1 billion acquisition of Oasis Security, signaling one of the largest deals in the data security space this year and a clear bet that the next frontier of...
Threat actors began exploiting an unpatched zero-day vulnerability in GeoServer within hours of its public disclosure, according to attack surface management firm WatchTowr. The se...
Corporate boards across industries have a persistent blind spot when it comes to technology risk, treating cybersecurity as an IT department concern rather than a core business thr...
Hardware wallet manufacturer Trezor has disclosed that a data breach at fulfillment provider ShipMonk exposed the personal information of nearly 14,000 customers. Trezor said the i...
Beacon, a UK-based customer relationship management (CRM) provider serving the non-profit sector, has disclosed that a data breach impacting more than 1,000 charities stemmed from ...
The National Institute of Standards and Technology (NIST) is confronting an uncomfortable paradox: the very artificial intelligence tools helping security researchers and attack...
The personal information of approximately 1.6 million individuals has been compromised in a data breach targeting cloud communications giant RingCentral, according to notificati...
Standard Chartered's group CISO is pulling back the curtain on what it takes to defend a global financial institution in the age of AI-driven threats. In a recent video interview w...
Google Cloud has published an updated roadmap for migrating its infrastructure to post-quantum cryptography (PQC), targeting full readiness by 2029 with some work extending into th...
German and Brazilian authorities have announced multiple arrests in connection with a late 2023 cyberattack that siphoned an estimated €30 million (approximately $34.7 million) fro...
Every website visit and mobile app interaction leaves behind a trail of adtech relationships that most users never see. A newly launched service called DecryptAds ...
The Scottish government has disclosed a data breach at the Crown Office and Procurator Fiscal Service (COPFS), the country's prosecution authority, with investigators warning that ...
A SOCRadar investigation has revealed that the widely reported LiteLLM supply chain attack, blamed for compromising more than 2,500 organizations, was largely a misattribution. Acc...
France's Directorate General of Public Finances (DGFiP) confirmed that an attacker breached its information systems in late June, exfiltrating data belonging to individuals and bus...
Academic researchers have demonstrated that a concealed, coin-sized hardware device can compromise systems aboard a Boeing 737. According to a Wired report, the implant connects to...