Items tagged with cybersecurity

A new remote access trojan (RAT) has been discovered by the cybersecurity research team at Cisco Talos, and experts are sounding the alarm since it enables the installation of ransomware on the victim's system. The attack is dubbed msaRAT... Read more...
Another new vulnerability for Microsoft SharePoint, tracked as CVE-2026-50522, is now being actively exploited in the wild, Microsoft warns. Security team watchTowr found evidence of exploits in use, and noted that attacks started the same... Read more...
The CERT Coordination Center warns that Wi-Fi routers built by Tenda may have a hidden, authentication backdoor in firmware. Researchers from CERT, the Computer Emergency Response Team for the Software Engineering Institute at Carnegie... Read more...
Microsoft's drive to improve Windows security with AI-driven vulnerability discovery has led to another record-breaking Patch Tuesday. This time around, there's a whopping 570 security fixes for Windows 11, which is more than double the... Read more...
As it turns out, the batch of expiring Secure Boot certificates isn't the only Secure Boot-related concern that Microsoft and the public need to worry about this year. ESET Researchers have uncovered 11 vulnerable UEFI shim bootloaders... Read more...
Many Mac users believe that they don’t need to worry about security because macOS is more secure and a smaller platform that isn’t worth targeting, but that’s just not true. A new piece of malware, dubbed CrashStealer, was discovered by... Read more...
Cyber criminals are constantly looking for new ways to compromise systems and devices, and sometimes that means going back to the well with malware that’s been successful in the past. That’s exactly what the researchers at security firm... Read more...
The open source, enterprise email software Zimbra was recently updated to version 10.1.19, and parent company Synacor urged users to update as soon as possible. Specifically, the update addresses a vulnerability in the Classic Web Client... Read more...
Nefarious actors are becoming adept at deploying Large Language Models (LLMs) in their malware campaigns. Case in point, the threat research team at security firm Sysdig has discovered what looks to be the first instance of an attack using... Read more...
A new form of AI prompt injection malware has been discovered, dubbed BioShocking by the LayerX security team. And that name is no coincidence: it's a direct reference to the 2007 survival horror FPS BioShock and its iconic hypnotic phrase... Read more...
Researchers at security firm Kaspersky are warning Steam gamers to be on guard, as threat actors have started to distribute malware on Valve's platform via infected live wallpapers. This campaign displays just how creative hackers are... Read more...
Cybersecurity researcher and current Microsoft nemesis, Nightmare-Eclipse, has released a new pair of zero-day Windows exploits following this week's Patch Tuesday, which had patched the last of Eclipse's initial six zero-days. The new... Read more...
Another month, another Patch Tuesday for Windows users. This one's a bit bigger than usual, though: Microsoft has released a record-breaking Windows 11 patch addressing a whopping 206 vulnerabilities. The former record-holder was this past... Read more...
AI-powered malware is a growing threat, but the extent of that threat was nebulous until researchers from the University of Toronto, Vector Institute, and CleverHans Lab presented a new PoC (proof of concept) attack developed with a local... Read more...
Minecraft has remained a mainstay in the gaming landscape for over a decade thanks in large part to the abundant number of mods available for the game. Hackers are now weaponizing this prevalence of mods in the Minecraft ecosystem, with... Read more...
Windows 11 has been hit by a series of zero-day exploits recently, which were brought to light by aggrieved cybersecurity researcher Nightmare-Eclipse. In response, Microsoft published a blog post threatening legal action against the... Read more...
The hacker group ShinyHunters has been on a tear this year, having compromised several organizations and leaking the information of those that refused to pay up. The latest data breach involves Charter Communications, which offers... Read more...
The problem with most existing encryption methods is that since they are bound to machines reliant on binary code composed of 1s and 0s, and apparently-random sequences of numbers are not fully random. This reality makes a looming scenario... Read more...
A particularly ingenious phishing attack against Microsoft 365 users has caught the FBI's attention, courtesy of Kali365. The new attack, which utilizes the Kali365 Phising-as-a-Service (PhaaS) platform, bypasses multi-factor... Read more...
Solid state drives, named as such for their lack of moving parts, are an essential part of the modern PC ecosystem, but no moving parts does not mean no security vulnerabilities. In fact, the specific manner in which SSDs function... Read more...
The hacker group ShinyHunters have struck once again, this time targeting the convenience store chain 7-Eleven. The group managed to pilfer sensitive data affecting more than 183,000 individuals who participate in the company’s franchisee... Read more...
Multiple Linux exploits have been uncovered over the last few weeks, including Copy Fail, and the newest of which are dubbed "PinTheft" and "SSH-keysign-pwn." Both have been recently patched, but relate to long-running bugs that have been... Read more...
1 2 3 4 5 Next