A weekly look at exploited flaws, exposed systems, supply-chain attacks, browser abuse, malware campaigns, and the security risks that mattered most.
Evooo1Bot exploits known flaws to infect Linux edge devices, then adds SOCKS5 proxying, SSH brute force, credential theft, ...
Security researcher Kevin Beaumont got a call last week from a major US technology company that insisted it had nothing to worry about: all the credentials stolen in March's LiteLLM supply chain ...
Nightmare Eclipse has dropped ShieldBreak, a Windows zero-day exploit that allows any user to gain System privileges.
When we think about security threats, we generally imagine them coming from far away across the wider internet. But what if the connection between you and your ISP was the target? [Rithwik ...
The flaws in Zoom could let someone in a meeting take control of another participant’s device without the victim clicking anything.
A recent series of cyberattacks on U.S. water systems has exposed vulnerabilities across critical infrastructure during the Iran war.
Cyber, an "offense-grade" hacking model, days after pausing Astra for nearing "Critical" cyber capability. This seemingly contradictory move highlights that the dividing line is a rigorous vetting ...