More helpful resources for users of all skill levels to help you Take a Security ActionCisco Talos·Oct 19, 18:00 UTC · Oct 19, 2023Ransomware in the wildCVE-2023-2019860
"Looney Tunables" bug allows root access on Linux distros (CVE-2023-4911)Help Net Security·Oct 5, 00:00 UTC · Oct 5, 2023VulnerabilityCVE-2023-491135
Thunder Shield Security introduces Custos to help organizations identify critical vulnerabilitiesHelp Net Security·Sep 25, 00:00 UTC · Sep 25, 2023Vulnerability55
Microsoft Uncovers Flaws in ncurses Library Affecting Linux and macOS SystemsThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2023VulnerabilityCVE-2023-2949135
Application Security vs. API Security: What is the difference?The Hacker News·Sep 11, 11:14 UTC · Sep 11, 2023Data breach60
In 2022, more than 40% of zero-day exploits used in the wild were variations of previous issuesSecurity Affairs·Jul 30, 16:38 UTC · Jul 30, 2023Exploit / PoC in the wildCVE-2022-21882CVE-2021-1732CVE-2022-22587+29 CVEs160
Kaspersky research: vulnerabilities in smart pet feedersKaspersky Securelist·Jun 19, 17:00 UTC · Jun 19, 2023Vulnerability55
Breach containment, response, recovery and resilience key to discussionsInfosecurity Magazine·Jun 13, 12:15 UTC · Jun 13, 2023Ransomware60
New Stealthy Variant of Linux Backdoor BPFDoor Emerges from the ShadowsThe Hacker News·May 12, 15:59 UTC · May 12, 2023MalwareCVE-2023-216347
Google delivers secure open source software packagesHelp Net Security·Apr 13, 00:00 UTC · Apr 13, 2023Vulnerability55
HITB Lockdown: Hands-on technical trainings coming next week!Help Net Security·Mar 9, 20:05 UTC · Mar 9, 2023Malware30
HITB Armory: Independent security researchers to showcase their toolsHelp Net Security·Mar 9, 19:15 UTC · Mar 9, 2023Vulnerability30
Critical RCE vulnerabilities found in git (CVE-2022-41903, CVE-2022-23251)Help Net Security·Jan 19, 00:00 UTC · Jan 19, 2023VulnerabilityCVE-2022-41903CVE-2022-23251CVE-2022-4195360
Google to create security team for open source projectsThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Vulnerability55
Google announces open source vulnerability reward program after Log4j, Codecov issuesThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Vulnerability55
Google Launches OSV-Scanner Tool to Identify Open Source VulnerabilitiesThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2022Vulnerability42
OSV-Scanner: A free vulnerability scanner for open-source softwareHelp Net Security·Dec 14, 00:00 UTC · Dec 14, 2022Vulnerability30
A flaw in connected car service SiriusXM allows remote car hackingSecurity Affairs·Dec 6, 14:18 UTC · Dec 6, 2022Vulnerability30
5 Open-Source Vulnerability Assessment Tools To Try OutHelp Net Security·Aug 31, 00:00 UTC · Aug 31, 2022Vulnerability55
Threat Actor Claims Responsibility For IBM and Stanford University HackInfosecurity Magazine·Jul 1, 17:00 UTC · Jul 1, 2022Threat actor57
White House joins industry leaders to double down on commitment to zero trustCyberScoop·Jun 30, 19:43 UTC · Jun 30, 2022Ransomware60
Conti chats confirm that the gang ability to conduct firmwareSecurity Affairs·Jun 2, 17:09 UTC · Jun 2, 2022Ransomware60
Noname Security Active Testing allows businesses to stop vulnerabilities before they reach productionHelp Net Security·May 5, 00:00 UTC · May 5, 2022Vulnerability55
This New Tool Can Retrieve Pixelated Text from Redacted DocumentsThe Hacker News·Feb 17, 09:22 UTC · Feb 17, 2022Tools30
How do I select an API security solution for my business?Help Net Security·Feb 17, 00:00 UTC · Feb 17, 2022Vulnerability in the wild60
Palo Alto Networks Discovers New QEMU VulnerabilityPalo Alto Unit 42·Jan 28, 21:29 UTC · Jan 28, 2022VulnerabilityCVE-2017-1280935
Open-source software holds the key to solving Log4Shell-like problemsHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2021Exploit / PoC in the wild60
How can AI be made more secure and trustworthy?Help Net Security·Dec 20, 00:00 UTC · Dec 20, 2021Vulnerability30
Oxeye CNAST platform delivers contextualized risk assessment for cloud native applicationsHelp Net Security·Dec 8, 00:00 UTC · Dec 8, 2021Vulnerability55
Keysight’s IoT Security Assessment software offers automated cybersecurity validation of IoT devicesHelp Net Security·Oct 15, 00:00 UTC · Oct 15, 2021Ransomware60
Researchers design new techniques to bolster computer securityHelp Net Security·Jun 29, 00:00 UTC · Jun 29, 2021Ransomware60
New UAF Vulnerability Affecting Microsoft Office to be Patched TodayThe Hacker News·Jun 9, 04:21 UTC · Jun 9, 2021VulnerabilityCVE-2021-31174CVE-2021-31178CVE-2021-31179+1 CVEs47
New JavaScript Exploit Can Now Carry Out DDR4 Rowhammer AttacksThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2021Research30
QNAP SOHO NAS devices affected by unpatched RCE vulnerabilitiesSecurity Affairs·Apr 2, 17:29 UTC · Apr 2, 2021Vulnerability55
Friday Squid Blogging: Squid CartoonSchneier on Security·Mar 19, 21:14 UTC · Mar 19, 2021Policy & legal130
Telegram flaw could have allowed access to users secret chatsSecurity Affairs·Feb 16, 22:11 UTC · Feb 16, 2021Vulnerability55
Credential Theft Attacks Doubled Between 2016 and 2020Infosecurity Magazine·Feb 10, 12:25 UTC · Feb 10, 2021Data breach45
Automated Tools Increasingly Used to Launch CyberInfosecurity Magazine·Feb 4, 16:30 UTC · Feb 4, 2021AI tools & infra30
Three ways formal methods can scale for software securityHelp Net Security·Jan 4, 00:00 UTC · Jan 4, 2021Industry155