An update for the WhatsApp desktop app for Windows patches CVE-2025-30401, a spoofing vulnerability that could be used to ...
A sophisticated APT tracked as ToddyCat has exploited an ESET DLL search order hijacking vulnerability for malware delivery.
Corsha raised $18 Million to expand its machine identity platform (m-IdP) that authenticates, manages, and governs traffic between machines.
Tailscale’s new Series C funding round brings the total raised by the company for its secure networking platform to $275 million.
More than 5,000 Ivanti Connect Secure appliances are vulnerable to attacks exploiting CVE-2025-22457, which has been used by ...
Android’s latest security update resolves two exploited Kernel vulnerabilities, as well as critical-severity bugs.
Huntress has shared details on the post-exploitation activities of threat actors targeting the recent CrushFTP vulnerability.
NIST has marked pre-2018 CVEs in NVD as ‘Deferred’ and will no longer spend resources on enriching them as it works to clear ...
PCI DSS 4.0.1 is a major new version but remains true to the council’s principles and focuses on 'What' Matters in ...
Experimental Sec-Gemini v1 touts a combination of Google’s Gemini LLM capabilities with real-time security data and tooling ...
PoisonSeed’ phishing campaign targets CRM and bulk email providers to distribute “crypto seed phrase” messages.
A 20-year-old arrested last year and charged alongside others believed to be members of Scattered Spider has pleaded guilty.