HashiCorp Vault Vulnerability Allows Attackers to Crash Servers
A critical vulnerability in HashiCorp Vault—tracked as CVE-2025-6203 and HCSEC-2025-24—has been disclosed that allows malicious…
A critical vulnerability in HashiCorp Vault—tracked as CVE-2025-6203 and HCSEC-2025-24—has been disclosed that allows malicious…
Critical security flaws discovered in Mobile Security Framework (MobSF) version 4.4.0 enable authenticated attackers to…
Over the past two years, Fox-IT and NCC Group have tracked a sophisticated Lazarus subgroup…
In a novel twist on the year-long trend of ClickFix scams, threat actors have blended…
Exposing an ASP.NET Core appsettings.json file containing Azure Active Directory (Azure AD) credentials poses a critical…
Cybersecurity firm Zscaler has disclosed a data breach affecting customer contact information after unauthorized actors…
A sophisticated new keylogger malware dubbed “TinkyWinkey” that is targeting Windows systems with advanced stealth…
The Wireshark Foundation today announced the release of Wireshark 4.4.9, delivering critical stability improvements and updates…
Microsoft announced that it will enforce mandatory multi-factor authentication (MFA) for all sign-in attempts to the Azure…
Criminal IP, the AI-powered threat intelligence and attack surface management (ASM) platform developed by AI…