Microsoft had to confirm two new zero-day flaws used in active attacks Microsoft had to confirm two new recently reported zero-day vulnerabilities in Microsoft
Hackers launch new attacks to steal Steam account credentials Malicious attackers go after the virtual goods and release a recent browser-in-the-browser attack that threatens
Employee stole reports from bug bounty platform to disclose them to customers and claim rewards Rogue employee stole vulnerability reports submitted via the bug
Android Photos App exploitable flaw silently fixed by Amazon Amazon confirmed that they patched the vulnerability in the Photos App for Android devices. The
Chinese hackers targeted South Asian Entity weeks before the Sophos zero-day bug got fixed Hackers used the zero-day exploit for the critical-severity flaw in
Ransomware attacks can involve cloud files if attackers hijack the Office 365 accounts Researchers revealed that threat actors can hijacker Microsoft Office 365 accounts
The new attack allows the remote attackers to steal full cryptographic keys Hertzbleed provides criminals the opportunity to steal keys by observing variations in
Zyxel addresses four security vulnerabilities affecting firewalls and AP products Particular security flaws used to execute arbitrary operating system commands and steal select information
Customers are warned to immediately patch the critical vulnerabilities with critical severity scores These two security flaws impacting VMware Workspace ONE Access, Identity Manager,
The bug allows attackers to distribute malware as legitimate bundles The vulnerability in NPM enabled authors of the malicious packages to add any user
The security flaw in Windows Print Spooler that was patched in February is actively exploited in the wild U.S Cybersecurity and Infrastructure Security Agency
Google releases an urgent update for Chrome to patch the exploited vulnerability Google Chrome update released to tackle the exploitable and actively used in