Sophisticated PyPI attack targets Colorama users with cross-platform malware, evading detection and compromising 170k+ developers. Learn mitigation strategies. ...
Critical CVE-2025-20188: Unauthenticated RCE in Cisco IOS XE WLCs. Exploits public. Patch immediately or disable Out-of-Band AP Image Download...
ConnectWise confirms nation-state cyberattack exploiting ScreenConnect flaw (CVE-2025-3935). Limited cloud customers impacted. Patch now!...
MATLAB paralyzed Day 13: 5M users locked out as ransomware cripples MathWorks. Critical research halted. Was your data compromised?
Bumblebee malware exploits SEO poisoning, typosquatting & DDoS to infect IT devices via fake Zenmap, WinMTR downloads. Stay secure!
Silent Ransom Group (Luna Moth) targets US law firms via social engineering, data theft & $8M extortion....
Massive npm supply chain attack exposed, 60+ malicious packages steal hostnames, IPs, DNS data, and user paths via Discord webhooks...
Chromium embedded in apps (e.g., Electron-based tools like Slack or Discord) faces compounded risks. “Every unpatched Chromium instance is a potential entry point.”...
Trojanized KeePass installers to deploy Cobalt Strike beacons, steal credentials, and execute ransomware has been linked to Black Basta & BlackCat/ALPHV ransomware affiliates...
Nova Scotia Power's cybersecurity breach exposed SINs, bank details, and billing data. 500k customers impacted. Get free credit monitoring & protection steps....
Sign up to our Weekley Threat Digest and keep apace of the trends shaping Cybersecurity.