One Caledonian government agency reported a breach, thanks to a third-party training contractor that may have serviced other ...
Arielle spent the last decade working as a reporter, transitioning from human interest stories to covering all things cybersecurity related in 2020. Now, as a features writer for Dark Reading, she ...
Explore the latest news and expert commentary on Vulnerabilities & Threats, brought to you by the editors of Dark Reading ...
A critical vulnerability in VMware vCenter came under heavy exploitation via a single threat actor just days after public disclosure. CVE-2026–59310 is a critical directory traversal flaw with a 9.8 ...
A browser extension central to Belgium's national identity card system was built like Swiss cheese, letting hackers steal victims' identities and payment information, and even perform code execution ...
Forum" campaign has been active since at least March 2025 and has targeted organizations across multiple sectors.
Attackers continue to target critical infrastructure and government agencies in the country, mirroring the increased activity across Latin America.
The big-box giant scaled its defenses by encouraging trust. Good communications, transparency, and team spirit are key factors.
Security experts say prioritization should be the main focus for the August updates, not the massive CVE volume.
A burgeoning ransomware-as-a-service (RaaS) operation is using known exploited vulnerabilities in campaigns against critical infrastructure and government organizations around the globe. US and South ...
New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents.
Attacks targeting water systems just keep flowing across a dozen states, against ill-secured, Internet-exposed PLCs.