THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG GroupPalo Alto Unit 42·Jun 6, 12:19 UTC · Jun 6, 2024VulnerabilityCVE-2021-26855CVE-2021-2706560
Firefox Browser vulnerable to Man-in-theThe Hacker News·Sep 19, 10:44 UTC · Sep 19, 2016Vulnerability55
The latest on BlueKeep and DejaBlue vulnerabilities — Using Firepower to defend against encrypted DejaBlueCisco Talos·Nov 4, 15:43 UTC · Nov 4, 2019Vulnerability in the wildCVE-2019-0708CVE-2019-1181CVE-2019-118260
Defending Microsoft Exchange from encrypted attacks with Cisco Secure IPSCisco Talos·Mar 23, 20:50 UTC · Mar 23, 2021VulnerabilityCVE-2021-26855CVE-2021-2706560
Week in review: Cisco fixes critical UCCX flaws, November 2025 Patch Tuesday forecastHelp Net Security·Nov 9, 00:00 UTC · Nov 9, 2025Vulnerability in the wildCVE-2025-48703CVE-2025-11371CVE-2025-20358+1 CVEs60
CISA Orders Immediate Patch of Critical Sitecore Vulnerability Under Active ExploitationThe Hacker News·Sep 8, 14:09 UTC · Sep 8, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-30406CVE-2025-393560
Mixed-signal circuits can stop side-channel attacks against IoT devicesHelp Net Security·Oct 24, 08:47 UTC · Oct 24, 2025Vulnerability55
Identity Is Now the Top Source of Cloud RiskInfosecurity Magazine·Nov 4, 13:00 UTC · Nov 4, 2025Vulnerability55
CMS Provider Sitecore Patches Exploited Critical Zero DayInfosecurity Magazine·Sep 4, 13:30 UTC · Sep 4, 2025VulnerabilityCVE-2025-5369060
How LiteLLM Turned Developer Machines Into Credential Vaults for AttackersThe Hacker News·Apr 8, 10:59 UTC · Apr 8, 2026Vulnerability155
Cisco fixes small business routers, kills eavesdropping vulnerability in conferencing devicesHelp Net Security·Nov 10, 10:47 UTC · Nov 10, 2019Vulnerability in the wild60
Instagram hacked! Hacker compromised the entire platformSecurity Affairs·Dec 19, 10:27 UTC · Dec 19, 2015Vulnerability55
The Persistence Problem: Why Exposed Credentials Remain Unfixed—and How to Change ThatThe Hacker News·May 12, 11:00 UTC · May 12, 2025Vulnerability55
Gold Melody IAB Exploits Exposed ASP.NET Machine Keys for Unauthorized Access to TargetsThe Hacker News·Jul 11, 04:04 UTC · Jul 11, 2025Vulnerability55
Double Robotics Telepresence Robot can be hackedHelp Net Security·Jul 18, 20:19 UTC · Jul 18, 2018Vulnerability55
Tricking attackers through the art of deceptionHelp Net Security·Jul 23, 00:00 UTC · Jul 23, 2019Vulnerability55
Top must-visit companies at RSAC 2026Help Net Security·Mar 23, 00:00 UTC · Mar 23, 2026Vulnerability55
Top companies to visit at Black Hat USA 2026Help Net Security·Jul 30, 00:00 UTC · Jul 30, 2026Vulnerability55
The Future of Serverless Security in 2025: From Logs to Runtime ProtectionThe Hacker News·Nov 28, 11:30 UTC · Nov 28, 2024Vulnerability in the wild60
The hidden risks inside open-source codeHelp Net Security·Sep 30, 00:00 UTC · Sep 30, 2025Vulnerability55
Kaspersky research: vulnerabilities in smart pet feedersKaspersky Securelist·Jun 19, 17:00 UTC · Jun 19, 2023Vulnerability55
The Internet Engineering Task Force has finally announced the approval of TLS 1.3Security Affairs·Mar 26, 11:59 UTC · Mar 26, 2018Vulnerability55
91% noise: A look at what's wrong with traditional SAST toolsHelp Net Security·Jun 19, 00:00 UTC · Jun 19, 2025Vulnerability55
ownCloud vulnerability with maximum 10 severity score comes under “mass” exploitationArs Technica · Security·Nov 29, 00:38 UTC · Nov 29, 2023Vulnerability in the wildCVE-2023-49103CVE-2023-4966CVE-2023-94105+1 CVEs60
ProcessUnity Risk Index delivers controls-driven vendor risk scoring for TPRMHelp Net Security·Mar 3, 00:00 UTC · Mar 3, 2026Vulnerability55
Auto-Color Backdoor Malware Exploits SAP VulnerabilityInfosecurity Magazine·Jul 29, 15:10 UTC · Jul 29, 2025VulnerabilityCVE-2025-3132460
Flaws in Popular Self-Encrypting SSDs Let Attackers Decrypt DataThe Hacker News·Nov 8, 19:09 UTC · Nov 8, 2018Vulnerability55
Okta extends identity security fabric to non-human identitiesHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2025Vulnerability55
SAP GUI Input History Found Vulnerable to Weak EncryptionInfosecurity Magazine·Jun 25, 14:00 UTC · Jun 25, 2025VulnerabilityCVE-2025-0055CVE-2025-0056CVE-2025-005960
Tufin's AI-powered tools simplify network security operationsHelp Net Security·Mar 11, 06:53 UTC · Mar 11, 2026Vulnerability55
Automating Pentest Delivery: 7 Key Workflows for Maximum ImpactThe Hacker News·Oct 2, 11:55 UTC · Oct 2, 2025Vulnerability55
PlexTrac Workflow Automation Engine enhancements accelerate time to remediationHelp Net Security·Jul 23, 00:00 UTC · Jul 23, 2025Vulnerability55
New "DoubleClickjacking" Exploit Bypasses Clickjacking Protections on Major WebsitesThe Hacker News·Jan 3, 04:53 UTC · Jan 3, 2025Vulnerability55
Threat and Vulnerability Management in 2026Recorded Future·Jan 14, 00:00 UTC · Jan 14, 2026Vulnerability in the wild60
Aruba’s AI-powered infrastructure optimizes customers’ reimagined work environmentsHelp Net Security·Jun 2, 00:00 UTC · Jun 2, 2020Vulnerability55
Legacy Security Tools Failing Data ProtectionInfosecurity Magazine·May 7, 14:50 UTC · May 7, 2026Vulnerability55
Enhancing visibility for better security in multi-cloud and hybrid environmentsHelp Net Security·Nov 21, 00:00 UTC · Nov 21, 2024Vulnerability55
How do I select an application security testing solution for my business?Help Net Security·Sep 24, 09:55 UTC · Sep 24, 2024Vulnerability55
Rack Ruby vulnerability could reveal secrets to attackers (CVE-2025-27610)Help Net Security·Apr 25, 00:00 UTC · Apr 25, 2025VulnerabilityCVE-2025-27610CVE-2025-25184CVE-2025-2711160
Open-source security debt grows across commercial softwareHelp Net Security·Feb 26, 00:00 UTC · Feb 26, 2026Vulnerability55