No one knows how many old shims can still bypass UEFI Secure BootHelp Net Security·Jul 14, 00:00 UTC · Jul 14, 2026VulnerabilityCVE-2026-8863CVE-2026-10797CVE-2015-528135
Why shorter SSL/TLS certificate lifespans matterHelp Net Security·Apr 15, 00:00 UTC · Apr 15, 2025Vulnerability30
Trump orders revocation of security clearances for Chris Krebs, SentinelOneHelp Net Security·Apr 17, 13:57 UTC · Apr 17, 2025Vulnerability30
Deleted Google API keys keep working for up to 23 minutes, researchers warnHelp Net Security·May 22, 00:00 UTC · May 22, 2026Vulnerability30
Leveraging Credentials As Unique Identifiers: A Pragmatic Approach To NHI InventoriesThe Hacker News·Jun 30, 11:00 UTC · Jun 30, 2025Vulnerability30
Eleven Vulnerable UEFI Shims Enable Secure Boot BypassInfosecurity Magazine·Jul 15, 14:00 UTC · Jul 15, 2026VulnerabilityCVE-2026-8863CVE-2026-10797135
Debian 13.6 security update patches over a hundred advisories in trixieHelp Net Security·Jul 13, 00:00 UTC · Jul 13, 2026Vulnerability130
Connectwise is rotating code signing certificates. What happened?Help Net Security·Jun 11, 00:00 UTC · Jun 11, 2025Vulnerability30
The shocking speed of AWS key exploitationHelp Net Security·Dec 2, 00:00 UTC · Dec 2, 2024Vulnerability130
Hundreds of AI-powered iOS apps found exposing credentialsHelp Net Security·Jun 22, 00:00 UTC · Jun 22, 2026Vulnerability30
Machine identities outnumber humans 109 to 1Help Net Security·May 14, 00:00 UTC · May 14, 2026Vulnerability30
Cloudflare Fixes ACME Validation Bug Allowing WAF Bypass to Origin ServersThe Hacker News·Jan 20, 11:12 UTC · Jan 20, 2026Vulnerability30
Attackers target retailers’ gift card systems using cloud-only techniquesHelp Net Security·Oct 22, 00:00 UTC · Oct 22, 2025Vulnerability30
Sophos ITDR enhances identity security with dark web monitoring and automated responseHelp Net Security·Oct 21, 00:00 UTC · Oct 21, 2025Vulnerability30
New UEFI Secure Boot bypass vulnerability discovered (CVE-2024-7344)Help Net Security·Jan 16, 00:00 UTC · Jan 16, 2025VulnerabilityCVE-2024-734435
New UEFI Secure Boot Vulnerability Could Allow Attackers to Load Malicious BootkitsThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2025VulnerabilityCVE-2024-734435
How China gets free intel on tech companies’ vulnerabilitiesArs Technica · Security·Sep 7, 13:14 UTC · Sep 7, 2023Vulnerability30
NSA Releases Guide to Combat Powerful BlackLotus Bootkit Targeting Windows SystemsThe Hacker News·Jun 24, 15:03 UTC · Jun 24, 2023VulnerabilityCVE-2022-21894CVE-2023-2493235
Cisco Talos finds 10 vulnerabilities in Azure Sphere’s Linux kernel, Security Monitor and PlutonCisco Talos·Nov 9, 18:17 UTC · Nov 9, 2021VulnerabilityCVE-2021-41374CVE-2021-41375CVE-2021-4137635
Analysis reveals the most common causes behind mis-issued SSL/TLS certificatesHelp Net Security·Oct 14, 00:00 UTC · Oct 14, 2019Vulnerability30
Venafi and GlobalSign partnership and integration to address DevOps certificate challengesHelp Net Security·May 20, 00:00 UTC · May 20, 2019Vulnerability30
Tropic Trooper Targets Taiwanese Government and Fossil Fuel Provider With Poison IvyPalo Alto Unit 42·Nov 1, 10:39 UTC · Nov 1, 2018VulnerabilityCVE-2012-015835