Week in review: Vulnerability allows Yubico security keys cloning, Patch Tuesday forecastHelp Net Security·Sep 8, 00:00 UTC · Sep 8, 2024VulnerabilityCVE-2024-7261CVE-2024-4519560
Secure Code Warrior enhances partner program, extends DevSecOps vendors integrationsHelp Net Security·Feb 6, 13:37 UTC · Feb 6, 2024Policy & legal55
Week in review: Disrupted Cyclops Blink botnet, public software apps at risk, Patch Tuesday forecastHelp Net Security·Apr 10, 00:00 UTC · Apr 10, 2022RansomwareCVE-2022-22965CVE-2021-44228160
Week in review: The secret to app security, new issue of (IN)SECURE MagazineHelp Net Security·Mar 20, 00:00 UTC · Mar 20, 2022RansomwareCVE-2022-26500CVE-2022-2650160
CISA’s secure-software buying tool had a simple XSS vulnerability of its ownCyberScoop·Jan 15, 22:47 UTC · Jan 15, 2026Vulnerability in the wild160
SolarWinds Serv-U Vulnerability Under Active AttackThe Hacker News·Jun 21, 08:54 UTC · Jun 21, 2024Vulnerability in the wildCVE-2024-2899560
NIST Limits CVE Enrichment After 263% Surge in Vulnerability SubmissionsThe Hacker News·Apr 17, 13:10 UTC · Apr 17, 2026Vulnerability in the wild60
Zero-Day Flaw Discovered in Quarkus Java FrameworkInfosecurity Magazine·Nov 30, 16:00 UTC · Nov 30, 2022Exploit / PoCCVE-2022-4116160
Critical DOM XSS flaw on Wix.com put million websites at riskSecurity Affairs·Nov 3, 10:44 UTC · Nov 3, 2016Vulnerability55
Infosec products of the month: June 2025Help Net Security·Jun 27, 00:00 UTC · Jun 27, 2025Policy & legal55
Custom code accounts for 93% of application vulnerabilitiesHelp Net Security·Dec 15, 12:21 UTC · Dec 15, 2023Vulnerability30
Popular coding advice doesn't necessarily equal secure coding adviceHelp Net Security·Dec 14, 14:40 UTC · Dec 14, 2023Vulnerability30
New infosec products of the week: June 13, 2025Help Net Security·Jun 13, 00:00 UTC · Jun 13, 2025Policy & legal55
CloudBees enhances its CI/CD solutions to help customers reduce risk while increasing efficiencyHelp Net Security·Sep 23, 00:00 UTC · Sep 23, 2020Industry30
T-Mobile Breached in Major Chinese CyberInfosecurity Magazine·Nov 19, 17:15 UTC · Nov 19, 2024Data breach60
Building resilience through DevSecOpsHelp Net Security·Jul 17, 00:00 UTC · Jul 17, 2023Vulnerability30
Potential Backdoor in Gigabyte PCs Exposes Supply Chain RisksInfosecurity Magazine·Jun 1, 16:30 UTC · Jun 1, 2023Malware42
Spring4Shell: No need to panic, but mitigations are advisedHelp Net Security·Apr 6, 12:06 UTC · Apr 6, 2022Exploit / PoC in the wildCVE-2022-22963CVE-2010-1622CVE-2022-2296560
Spring confirms ‘Spring4Shell’ zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoCCVE-2022-22965CVE-2022-2296360
Western Digital Hit By Network Security BreachInfosecurity Magazine·Apr 4, 16:30 UTC · Apr 4, 2023Ransomware60
CISA working with agencies to pull exposed network tools from public internetThe Record·Jun 29, 18:21 UTC · Jun 29, 2023Ransomware60
NextGen Healthcare Data Breach: One Million Patient Records AffectedInfosecurity Magazine·May 9, 16:30 UTC · May 9, 2023Data breach57
Dasera appoints David McCaw as VP of SalesHelp Net Security·Feb 5, 13:12 UTC · Feb 5, 2024Policy & legal30
CVE-2017-5638 Apache Struts vulnerability is the root cause behind Equifax data breachSecurity Affairs·Oct 3, 12:49 UTC · Oct 3, 2017Data breachCVE-2017-5638CVE-2017-980560
Week in review: Microsoft fixes exploited zero-day, Mirai botnets target unpatched Wazuh serversHelp Net Security·Jun 15, 00:00 UTC · Jun 15, 2025Exploit / PoC in the wildCVE-2025-33053CVE-2025-24016CVE-2025-43200+1 CVEs60
FTC tracking developments at Twitter with 'deep concern' after CISO resignsThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Policy & legal55
Prevent shadow IT: Companies need security covering multiple communication vectorsHelp Net Security·Jan 8, 12:38 UTC · Jan 8, 2024Data breach60
As White House moves to send AI chips to China, Trump’s DOJ prosecutes chip smugglersCyberScoop·Dec 12, 00:34 UTC · Dec 12, 2025Malware42
Critical RCE 0day in Apache Log4j library exploited in the wild (CVE-2021-44228)Help Net Security·Dec 13, 12:51 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-4422860
Week in review: Tips for starting your cybersecurity career, Patch Tuesday forecastHelp Net Security·Aug 11, 00:00 UTC · Aug 11, 2024VulnerabilityCVE-2024-42219CVE-2024-42218CVE-2024-38856+2 CVEs160
Week in review: Exploited 7-Zip 0-day flaw, crypto-stealing malware found on App Store, Google PlayHelp Net Security·Feb 9, 00:00 UTC · Feb 9, 2025MalwareCVE-2025-0411CVE-2025-25181CVE-2024-57968+1 CVEs60
First American Reveals Data Breach Impacting 44,000 IndividualsInfosecurity Magazine·May 30, 16:30 UTC · May 30, 2024Data breach57
Patched Critical Flaw Exposed JetBrains TeamCity ServersInfosecurity Magazine·Feb 7, 17:00 UTC · Feb 7, 2024Vulnerability in the wildCVE-2024-23917CVE-2023-4279360
WikiLeaks dump reignites debate over feds hoarding zero daysCyberScoop·Mar 8, 15:30 UTC · Mar 8, 2017Exploit / PoC60
Twitter C-Level Resignations Continue As Blue Program Creates New CyberInfosecurity Magazine·Nov 11, 16:00 UTC · Nov 11, 2022Phishing & fraud30
Week in review: Claude breached three companies during tests, AD CS domain-takeover PoC releasedHelp Net Security·Aug 2, 00:00 UTC · Aug 2, 2026Data breachCVE-2026-54121CVE-2026-63077CVE-2026-20316+1 CVEs60
Anthropic Project Glasswing to Use AI to Fix Software Bugs With AIInfosecurity Magazine·Apr 8, 11:30 UTC · Apr 8, 2026Exploit / PoC60
Week in review: Backdoor found in SOHO devices running Linux, high-risk WinRAR RCE flaw patchedHelp Net Security·Jun 29, 00:00 UTC · Jun 29, 2025VulnerabilityCVE-2025-6218CVE-2025-49144CVE-2025-577760