A sophisticated malware campaign that weaponizes a seemingly legitimate PDF editor to steal sensitive data and login credentials from unsuspecting users across Europe.
The attack uncovered by Truesec, dubbed "TamperedChef," represents a new evolution in social engineering tactics that leverage...
The U.S. Cybersecurity and Infrastructure Security Agency has added this vulnerability to its Known Exploited Vulnerabilities catalog, with a due date of September 2, 2025, for federal agencies to apply mitigations.
WinRAR has released version 7.13 to address a critical...
Welcome to this week’s Cybersecurity Newsletter, where we bring you the latest updates and key insights from the ever-changing world of cybersecurity.
In today’s fast-paced digital environment, staying informed is crucial. Our goal is to provide you with relevant information...
The much-anticipated Pwn2Own Automotive 2025 kicked off today at Tokyo Big Sight, showcasing the cutting edge of automotive cybersecurity research.
On its first day, white-hat hackers demonstrated their skills by exploiting 16 previously unknown vulnerabilities across in-vehicle infotainment (IVI)...
A segmentation fault vulnerability has been identified in the popular command-line text editor Vim, affecting versions before 9.1.1043.
This flaw, CVE-2025-24014, exposes users to a potential crash when operating Vim in silent Ex mode (-s -e) under specific conditions.
The vulnerability...
Quantum computing is both a game-changer and a problem. Traditional computers use bits (0s and 1s) to process information, and quantum computers use qubits, which can be in multiple states at the same time thanks to superposition and entanglement....
A proof-of-concept (PoC) exploit for the critical OpenSSH vulnerability CVE-2024-6387, also known as "regreSSHion," has been released, raising alarms across the cybersecurity community.
The flaw, which affects millions of OpenSSH servers globally, allows unauthenticated, remote attackers to execute arbitrary...
Mark Sokolovsky, a 28-year-old Ukrainian national, has been sentenced to 60 months in federal prison for his role in operating the notorious "Raccoon Infostealer" malware-as-a-service (MaaS). The sentencing marks a significant step in combating international cybercrime.
Raccoon Infostealer emerged as...
A critical security vulnerability tracked as CVE-2024-51479 has been identified in Next.js, a widely used React framework for building web applications.
The flaw allowed unauthorized access to certain pages directly under the application's root directory, bypassing middleware-based authorization checks. This...
Fortinet, a leading cybersecurity solutions provider, has issued urgent advisories regarding two critical vulnerabilities affecting its FortiWLM and FortiManager products.
These flaws could enable attackers to execute unauthorized code or commands remotely, posing significant risks to enterprise networks.
FortiWLM Vulnerability...