Cisco patched nine critical flaws, including six rated CVSS 10.0, found during internal testing. None are known to be ...
Google tracks 3 Russian-linked espionage clusters using legitimate authentication tools to target researchers, diplomats and ...
CERT Polska confirmed active exploitation of CVE-2026-73570, a critical unauthenticated RCE in Zimbra Collaboration Suite ...
GitLab flaw CVE-2026-19478 is now under active exploitation, allowing unauthenticated attackers to modify or delete public ...
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds TrueConf Server flaws to its Known Exploited Vulnerabilities catalog.
Cl0p claims over 40 organizations fell victim to attacks exploiting a PTC Windchill and FlexPLM vulnerability.
Manic Android malware combines banking fraud and spyware, using a Bluetooth relay to steal data even when devices are offline ...
NSA, CISA, FBI, DOE, and EPA warn of active AI-assisted attacks against Siemens S7 PLCs across US critical infrastructure ...
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds an MLflow vulnerability to its Known Exploited Vulnerabilities catalog.
The US charged 17 Iranians over a years-long hacking campaign that stole 31TB from universities, companies and government ...
StopAndProtect turned nearly 2K hacked WordPress sites into a criminal network for malware delivery, data theft, surveillance ...
U.S. CISA adds Apple macOS, Microsoft SharePoint, VMware vCenter, and Microsoft IKE flaws to its Known Exploited Vulnerabilities catalog.