Security vulnerabilities stories
As Black Friday and Cyber Monday approach, experts warn shoppers to be vigilant against rising cyber threats like malvertising and online fraud.
A study by Top10VPN.com reveals over 50% of paid Android VPN apps leak user data, highlighting significant security flaws in popular services.
Tenable's Cloud Security Research team has uncovered critical vulnerabilities in policy-as-code frameworks, escalating risks of data breaches and leaks.
The Qualys Threat Research Unit has identified five critical vulnerabilities in needrestart used by Ubuntu Servers, risking unauthorized root access for users.
The eBPF Foundation has unveiled two reports on eBPF security, including a threat model and a verifier code audit, aiming to enhance safe deployment.
Microsoft is rolling out patches for 90 vulnerabilities this November, including critical remote code execution flaws and several in-the-wild exploits.
The latest Hacker-Powered Security Report reveals 48% of security professionals cite AI as their top threat, amid a surge in AI-related vulnerabilities.
Symbiotic Security has secured USD $3 million in pre-seed funding to launch a software that enhances security during the software development process.
Cequence Security has uncovered a major vulnerability in a leading food and drug retailer's IT systems, exposing sensitive data across four subdomains.
Mindgard has uncovered serious security flaws in Microsoft's Azure AI Content Safety Service, enabling potential attacks to undermine its security measures.
Kaspersky's ICS CERT has revealed critical vulnerabilities in Unisoc SoCs, heightening risks of remote hijacking in devices.
Trend Micro has launched the Pwn2Own Ireland contest to uncover vulnerabilities in AI-enabled consumer devices, supported by Meta, Synology, and QNAP.
A Juniper Research study predicts satellite IoT revenue will surge from USD $2.9 billion in 2024 to USD $5.8 billion by 2027, driven by demand for remote connectivity.
Tenable has revealed a medium-severity vulnerability in Open Policy Agent for Windows that exposes user credentials, urging updates to version 0.68.0.
SailPoint Technologies has launched its Identity Security Cloud feature, Privileged Task Automation, enabling organisations to enhance security and productivity.
Sectigo has launched SiteLock 2.0, a revamped website security platform designed to assist small and medium-sized businesses in protecting their online assets.
Cloudsmith has unveiled its Advanced Observability Suite, enhancing software artifact visibility and security compliance for European organisations.
A new report reveals alarming cybersecurity vulnerabilities in Australia's ASX 200 Consumer Discretionary sector, exposing major companies to increased breach risks.
A report from Skybox Security reveals that network professionals could reclaim 50% of their time by automating tasks currently bogging them down.
CloudSEK warns that the Androxgh0st botnet has significantly expanded its reach, now targeting critical vulnerabilities in various systems and IoT devices.