One Caledonian government agency reported a breach, thanks to a third-party training contractor that may have serviced other ...
A critical vulnerability in VMware vCenter came under heavy exploitation via a single threat actor just days after public disclosure. CVE-2026–59310 is a critical directory traversal flaw with a 9.8 ...
A browser extension central to Belgium's national identity card system was built like Swiss cheese, letting hackers steal victims' identities and payment information, and even perform code execution ...
Forum" campaign has been active since at least March 2025 and has targeted organizations across multiple sectors.
Attackers continue to target critical infrastructure and government agencies in the country, mirroring the increased activity across Latin America.
The big-box giant scaled its defenses by encouraging trust. Good communications, transparency, and team spirit are key factors.
Security experts say prioritization should be the main focus for the August updates, not the massive CVE volume.
A burgeoning ransomware-as-a-service (RaaS) operation is using known exploited vulnerabilities in campaigns against critical infrastructure and government organizations around the globe. US and South ...
New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents.
A zero-day SQL-injection vulnerability in Metabase Cloud is under exploitation in the wild, and it could spell trouble for many downstream organizations. Metabase, which provides AI-driven business ...
Nation-state grade iOS exploit chains Coruna and DarkSword are proliferating among cybercriminals, with 17,000 domains hosting variants.
A public policy expert mapped global cybercrime laws to develop a five-point framework for protecting ethical hackers and good-faith security research.