Hackers target US firms in FastJson RCE zero-day attacks
Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user inter…
\
Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user inter…
Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being activ…
A botnet called Dysphoria has compromised around 200,000 devices across the world and is using them for distributed denial of service (DDoS…
A proof-of-concept exploit for "Certighost," a Windows Active Directory Certificate Services vulnerability, has been released that can allo…
Apple is being sued by three people who claim approximately $1.8 million in Bitcoin was stolen after downloading and using a fraudulent Spa…
The Coca-Cola Company has confirmed that hackers stole data from its dairy subsidiary, Fairlife, during a ransomware attack earlier this mo…
The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentia…
Shadow AI agents are rapidly spreading across enterprise platforms, often without IT or security visibility. Nudge Security explains how or…
GitHub and PyPI (Python Package Index) have introduced a time-based mechanism in the Dependabot dependency management tool to protect again…
Steam discussion forums are being abused in ClickFix attacks that pretend to be fixes for game and computer problems but actually infect de…
A massive malvertising campaign is using fake Solana, Luno, and TradingView webpages with malicious JavaScript that instructs browsers to a…
Threat actors are using email addresses exposed in data breaches leaked by the ShinyHunters extortion group to send sextortion emails deman…
ChatGPT, the famous artificial intelligence chatbot that allows users to converse with various personalities and topics, has connectivity i…
OnTrac parcel delivery company is informing that hackers breached its corporate network and may have accessed personal details belonging to…
A threat actor used the open-source Hermes AI agent in unattended "YOLO" mode to automate post-exploitation activity during an alleged brea…
Hackers are changing the DNS settings on Wi-Fi devices at hotels and conference centers to redirect users to fake Microsoft 365 login pages…
Microsoft says a bug in its automated network maintenance request system caused Thursday's massive outage by mistakenly removing IP routes …
Chick-fil-A has confirmed that over 13,000 customers had their accounts breached in a wave of credential stuffing attacks targeting its web…