VPN Vulnerabilities Drive Nearly 30% Of Q3 Ransomware Attacks

“`html In Q3 2024, VPN vulnerabilities were linked to nearly 29% of ransomware incidents, underscoring an urgent need for enhanced security protocols and practices among development teams. As remote work…

Firefox 133 Released With Fix For Multiple Security Vulnerabilities

“`html Mozilla has rolled out Firefox 133.0, a significant update that brings not just new user-facing features but also critical enhancements in security and performance relevant to developers. This release…

Microsoft Windows Hacking Warning—450 Million Users Must Now Act

“`html Critical security vulnerabilities are impacting Microsoft Windows users, and developers play a crucial role in mitigating these risks. In light of recent security warnings concerning Microsoft Windows, it’s imperative…

Russian RomCom APT Group Leverages Zero-Day Flaws in Firefox, Windows

“`html Recent reports have surfaced about an advanced persistent threat (APT) group associated with Russia, known as RomCom, which has been exploiting critical zero-day vulnerabilities within Mozilla Firefox and the…

APT-C-60 Exploits WPS Office Vulnerability to Deploy SpyGlace Backdoor

“`html APT-C-60 Exploits WPS Office Vulnerability to Deploy SpyGlace Backdoor In an alarming development within the cybersecurity landscape, the advanced persistent threat group known as APT-C-60 has leveraged a vulnerability…

ProjectSend Vulnerability Exploited in the Wild

“`html Recently, VulnCheck issued an alarming update regarding the exploitation of a vulnerability in ProjectSend, a file-sharing application that has been in the wild for over a year and a…

Hackers Exploiting ProjectSend Authentication Vulnerability In The Wild

“`html Recent reports indicate that hackers are actively exploiting a critical authentication vulnerability in ProjectSend, a widely-used open-source file-sharing web application. This vulnerability poses a significant threat to installations that…

Chinese APT Hackers Using Multiple Tools And Vulnerabilities To Attack Telecom Orgs

“`html Since the beginning of 2023, the APT (Advanced Persistent Threat) group known as Earth Estries, also referred to by various aliases including Salt Typhoon, FamousSparrow, GhostEmperor, and UNC2286, has…

Top 5 Best Penetration Testing Services in 2025

“`html Top 5 Penetration Testing Services for Developers in 2025 As we navigate the increasingly complex cybersecurity landscape in 2025, developers must be proactive in identifying vulnerabilities within their applications.…

Critical Flaw in ProjectSend Under Active Exploitation Against Public-Facing Servers

“`html In a critical security alert, a vulnerability designated as CVE-2024-11680 has been identified in ProjectSend, an open-source file sharing platform mainly used by developers and teams for managing files.…