TP-Link has patched 15 vulnerabilities in the zero-touch provisioning (ZTP) mechanism of its Omada network devices that could ...
Self-propagating malware named 'ChainDrop' has compromised more than 1,300 packages with a combined 2 billion monthly ...
Open VSX marketplace impersonated legitimate developer tools while transmitting information about the systems and development ...
A new version of the XCSSET malware is targeting thousands of macOS users through compromised Xcode projects and GitHub ...
OpenAI and Anthropic have confirmed that their AI models were involved in separate, newly disclosed third-party cybersecurity ...
The Greatness phishing-as-a-service (PhaaS) platform has expanded from credential phishing to adversary-in-the-middle attacks and device-code phishing targeting Microsoft 365 accounts.
N-able is warning customers that hackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) affecting ...
Security researchers have discovered three attacks that allow malware on already-compromised Windows devices to abuse Google ...
Microsoft has linked a global campaign targeting hospitality Wi-Fi networks to the Russian threat actor Midnight Blizzard, ...
A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by ...
A cyberattack on the U.K.'s Police National Legal Database (PNLD) has compromised contact data of more than 100,000 police ...
Fake Xeno Executor installers are infecting unsuspecting Roblox players with malware that provides remote access and steals ...