CISA folds its own hard-won lessons into coordinated vulnerability disclosure guidanceHelp Net Security·Jul 16, 00:00 UTC · Jul 16, 2026Vulnerability30
Immediate AI risks and tomorrow's dangersHelp Net Security·Jul 12, 05:25 UTC · Jul 12, 2026Data breach57
CISA looks to remedy ailments from big May credential leakCyberScoop·Jul 10, 18:54 UTC · Jul 10, 2026Exploit / PoC60
CISA Details Incident Response to Exposed AWS GovCloud KeysInfosecurity Magazine·Jul 10, 16:00 UTC · Jul 10, 2026Vulnerability30
Attackers already know the secrets are on your developers' machines. Do you?Help Net Security·Jun 4, 00:00 UTC · Jun 4, 2026Threat actor57
Lawmakers Demand Answers as CISA Tries to Contain Data LeakKrebs on Security·May 22, 17:52 UTC · May 22, 2026Policy & legal55
CISA Admin Leaked AWS GovCloud Keys on GithubKrebs on Security·May 20, 23:14 UTC · May 20, 2026Malware42
Senator presses CISA for answers about alleged GitHub repository leakThe Record·May 20, 12:20 UTC · May 20, 2026Vulnerability55
OpenAI Revokes macOS App Certificate After Malicious Axios Supply Chain IncidentThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026RansomwareCVE-2026-3363460
TeamPCP’s attack spree slows, but threat escalates with ransomware pivotHelp Net Security·Mar 30, 00:00 UTC · Mar 30, 2026Ransomware57
⚡ Weekly Recap: Hot CVEs, npm Worm Returns, Firefox RCE, M365 Email Raid & MoreThe Hacker News·Dec 2, 05:36 UTC · Dec 2, 2025VulnerabilityCVE-2025-59287CVE-2025-12972CVE-2025-12970+17 CVEs147
Self-Replicating Worm Hits 180+ npm Packages to Steal Credentials in Latest Supply Chain AttackThe Hacker News·Sep 22, 15:17 UTC · Sep 22, 2025Data breach157
Gurucul’s AI-IRM accelerates insider risk detectionHelp Net Security·Sep 18, 00:00 UTC · Sep 18, 2025Exploit / PoC in the wildCVE-2026-8749160
Report: Voice of Practitioners 2024 - The True State of Secrets SecurityHelp Net Security·Sep 9, 06:17 UTC · Sep 9, 2025AI research30
GitCaught: Threat Actor Leverages GitHub Repository for Malicious InfrastructureRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actor45
Managing through chaos to secure networksHelp Net Security·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2026-8749160
Secure Vibe Coding: The Complete New GuideThe Hacker News·Jun 19, 11:25 UTC · Jun 19, 2025Vulnerability55
The Hidden Threat in Your Stack: Why Non-Human Identity Management is the Next Cybersecurity FrontierThe Hacker News·Jun 10, 11:00 UTC · Jun 10, 2025Threat actor60
⚡ THN Weekly Recap: GitHub Supply Chain Attack, AI Malware, BYOVD Tactics, and MoreThe Hacker News·May 7, 10:33 UTC · May 7, 2025MalwareCVE-2025-29927CVE-2025-23120CVE-2024-56346+13 CVEs60
Find out which cyber threats you should be concerned aboutHelp Net Security·Apr 18, 08:58 UTC · Apr 18, 2025RansomwareCVE-2021-4422860
Week in review: Veeam Backup & Replication RCE fixed, free file converter sites deliver malwareHelp Net Security·Mar 23, 00:00 UTC · Mar 23, 2025Vulnerability in the wildCVE-2025-23120CVE-2024-4824860
Week in review: MUT-1244 targets both security workers and threat actors, Kali Linux 2024.4 releasedHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2024Threat actorCVE-2024-1235660
Week in review: Zero-click flaw in Synology NAS devices, Google fixes exploited Android vulnerabilityHelp Net Security·Nov 10, 00:00 UTC · Nov 10, 2024Vulnerability in the wildCVE-2024-10443CVE-2024-43093CVE-2024-43047+2 CVEs60
Week in review: Windows Themes spoofing bug "returns", employees phished via Microsoft TeamsHelp Net Security·Nov 3, 00:00 UTC · Nov 3, 2024Ransomware60
Week in review: 87k+ Fortinet devices still open to attack, red teaming tool used for EDR evasionHelp Net Security·Oct 20, 00:00 UTC · Oct 20, 2024AI safety & security in the wildCVE-2024-2311350
Week in review: VMware ESXi zero-day exploited, SMS Stealer malware targeting Android usersHelp Net Security·Aug 4, 00:00 UTC · Aug 4, 2024Exploit / PoC in the wildCVE-2023-45249CVE-2024-3708560
Week in review: CrowdStrike-triggered outage insights, recovery, and measuring cybersecurity ROIHelp Net Security·Jul 28, 00:00 UTC · Jul 28, 2024Exploit / PoCCVE-2024-6327CVE-2024-4111060
Expand your library with these cybersecurity booksHelp Net Security·Apr 15, 00:00 UTC · Apr 15, 2024Exploit / PoC in the wildCVE-2026-8749160
Week in review: 73M customers affected by AT&T data leak, errors led to US govt inboxes compromiseHelp Net Security·Apr 7, 00:00 UTC · Apr 7, 2024Vulnerability55
Week in review: Backdoor found in XZ utilities, weaponized iMessages, Exchange servers at riskHelp Net Security·Mar 31, 00:00 UTC · Mar 31, 2024Malware in the wildCVE-2024-3094CVE-2023-48022CVE-2023-2495560
Week in review: Attackers use phishing emails to steal NTLM hashes, Patch Tuesday forecastHelp Net Security·Mar 10, 00:00 UTC · Mar 10, 2024Vulnerability in the wildCVE-2024-20337CVE-2024-23225CVE-2024-23296+6 CVEs60
Don't miss these keynotes at RSAC 2019Help Net Security·Feb 8, 09:54 UTC · Feb 8, 2024Exploit / PoC in the wildCVE-2026-8749160
Researchers discover exposed API secrets, impacting major tech tokensHelp Net Security·Feb 5, 00:00 UTC · Feb 5, 2024Vulnerability55
Corsha raises $12 million to help security teams reduce the API attack surfaceHelp Net Security·Jan 7, 10:32 UTC · Jan 7, 2024Data breach57
Three Ways To Supercharge Your Software Supply Chain SecurityThe Hacker News·Jan 4, 12:13 UTC · Jan 4, 2024Vulnerability142
Leaving Authentication Credentials in Public CodeSchneier on Security·Nov 15, 00:00 UTC · Nov 15, 2023Vulnerability30