Ransomware developer sentenced to prison on Switzerland, Plugin4Shell attack targets AI coders, organizations warned of SAP flaw.
Threat actors are exploiting CVE-2026-58138, a critical-severity remote code execution vulnerability in Orkes Conductor.
The research examines how building from source, enforcing provenance and applying layered security controls can significantly reduce exposure to open-source malware. What you'll discover Where malicio ...
Trellix highlighted findings from its latest Trellix SecondSight Threat Hunting Report with implications for Indian organizations. Examining five critical campaigns observed between January and June ...
Two China-linked groups ran identical Chrome/Windows zero-day exploits against NGOs, deploying different backdoors each.
A June 2026 spear-phishing campaign against a European embassy located in Asia, attributed to Bitter APT, used a compromised diplomatic mailbox from an African country, Technology For SMEs | News ...
DarkSword, JSCeal, Axios, Bitter APT, and APT28 campaigns reveal evolving tactics targeting iPhones, Southeast Asia, software ...
The Hacker News is the top cybersecurity news platform, delivering real-time updates, threat intelligence, data breach ...
A swarm of AI agents attributed by researchers to OpenAI flooded RubyGems with more than 2,000 packages in May 2026, abused ...
JFrog Ltd today introduced JFrog Zero-Touch Remediation and announced the initial partners in its JFrog Self-Healing Software Supply Chain Security Ecosystem. Zero-Touch Remediation automatically ...
Chrome 153 Stable fixes 230 security issues, including an in-the-wild V8 out-of-bounds write that can run code inside the ...
A nearly identical exploit kit that targets critical vulnerabilities in both Chromium-based browsers and older versions of ...