The Top 10 Attack Surface Exposures in 2026
Breaches don't always start with a zero-day. An exposed admin panel can get brute-forced, or credentials reused from a…
Gadgets, software, and the wider tech world.
Breaches don't always start with a zero-day. An exposed admin panel can get brute-forced, or credentials reused from a…
As many as 145 npm packages associated with the Mastra namespace ("@mastra/*"), a popular open-source JavaScript and…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw…
A flaw in the Google Cloud Vertex AI SDK for Python let an attacker with no access to a victim's project hijack the…
Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda…
Security researchers at Zimperium's zLabs have documented a new Android banking trojan, Rokarolla, that…
Security teams have never had more IP data at their disposal. Every day, analysts ingest enrichment feeds, geolocation…
Bad actors are exploiting multiple security vulnerabilities in Fortinet FortiSandbox, according to threat intelligence…
Cybersecurity researchers have flagged two previously undocumented Windows variants of what was believed to be a…
The North Korean state-sponsored hacking group known as ScarCruft (aka APT37) has been observed using spear-phishing…
Cisco has released security updates for a medium-severity security flaw in Catalyst SD-WAN Manager that has come under…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a security flaw impacting LiteSpeed cPanel…