US-CERT Vulnerability Summary for the Week of March 13, 2023
The CISA Vulnerability Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and...
The CISA Vulnerability Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and...
OpenAI on Friday disclosed that a bug in the Redis open source library was responsible for the exposure of other...
In what's a case of setting a thief to catch a thief, the U.K. National Crime Agency (NCA) revealed that...
Microsoft on Friday shared guidance to help customers discover indicators of compromise (IoCs) associated with a recently patched Outlook vulnerability....
GitHub has rotated its private SSH key for GitHub.com after the secret was was accidentally published in a public GitHub repository. The software...
The U.K.'s National Crime Agency (NCA) revealed today that they created multiple fake DDoS-for-hire service websites to identify cybercriminals who utilize...
OpenAI says a Redis client open-source library bug was behind Monday's ChatGPT outage and data leak, where users saw other...
A cyberespionage hacking group tracked as 'Bitter APT' was recently seen targeting the Chinese nuclear energy industry using phishing emails...
Consumer goods giant Procter & Gamble has confirmed a data breach affecting an undisclosed number of employees after its GoAnywhere...
Microsoft today published a detailed guide aiming to help customers discover signs of compromise via exploitation of a recently patched...
Today, the FBI confirmed they have access to the database of the notorious BreachForums (aka Breached) hacking forum after the...
The Australian Federal Police (AFP) has arrested four members of a cybercriminal syndicate that has laundered $1.7 million stolen from...
On the third day of the Pwn2Own hacking contest, security researchers were awarded $185,000 after demonstrating 5 zero-day exploits targeting...
This week's news has been dominated by the Clop ransomware gang extorting companies whose GoAnywhere services were breached using a...
The CISA Vulnerability Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and...
A malicious Python package on the Python Package Index (PyPI) repository has been found to use Unicode as a trick...
Any app that can improve business operations is quickly added to the SaaS stack. However, employees don't realize that this...
A recent campaign undertaken by Earth Preta indicates that nation-state groups aligned with China are getting increasingly proficient at bypassing...
Cloud-based repository hosting service GitHub said it took the step of replacing its RSA SSH host key used to secure...
Patches have been released for a critical security flaw impacting the WooCommerce Payments plugin for WordPress, which is installed on...
Cross-platform exploit code is now available for a high-severity Backup Service vulnerability impacting Veeam's Backup & Replication (VBR) software. The...
A malicious Python package on PyPI uses Unicode as an obfuscation technique to evade detection while stealing and exfiltrating developers'...
Self-hosted web administration solution CloudPanel was found to have several security issues, including using the same SSL certificate private key...
During the second day of Pwn2Own Vancouver 2023, competitors were awarded $475,000 after successfully exploiting 10 zero-days in multiple products....