Spook.JS, a newly discovered side-channel attack, is targeting Google Chrome and other Chromium browsers to steal credentials via specter attacks... ...
Microsoft has recently patched an Azure Container Instances (ACI) cross-account takeover vulnerability tracked as CVE-2019-5736, exploited via outdated docker containers... ...
Yandex revealed the most significant denial of service DDoS attack in history, peaking at 21.8 million RPS, allegedly launched by a new Mēris Botnet... ...
CISA warned of Zoho's critical ManageEngine zero-day vulnerability tracked as CVE-2021-40539 being actively exploited since last week through REST API URLs.....
HAProxy recently detected vulnerable to critical HTTP Request Smuggling flaw tracked as CVE-2021-40346, enabling attackers to access data and execute arbitrary commands......
Howard University was reportedly prompted to cancel its online classes and forcefully shut down its wi-fi services following an alarming ransomware attack... ...
Most notorious REvil Ransomware gang's web servers and infrastructure are mysteriously back online, including the data leak and tor sites, indicating their return... ...
Ghostscript, a small-scale library, rendered all servers vulnerable to malicious SVG files that circumvent image processing pipelines and executes malformed codes on the OS......
Dotty's, a US-based Gambling firm was recently hit by a data breach supposedly exposing sensitive data of several customers...
Jenkins experienced a security breach in one of its Confluence servers following the deployment of a cryptocurrency miner; the investigation is still ongoing......
Sign up to our Weekley Threat Digest and keep apace of the trends shaping Cybersecurity.