Critical Windows Zero-Day Vulnerability Lets Attackers Steal Users NTLM Credentials

Security researchers have identified a critical zero-day vulnerability that poses a significant risk to all versions of Windows Workstation and Server, spanning from Windows 7 and Server 2008 R2 to…

Critical Vulnerability Discovered in SailPoint IdentityIQ

A critical directory traversal vulnerability has been identified in the SailPoint IdentityIQ Identity and Access Management (IAM) platform, posing a significant risk to sensitive data. This exploit allows an attacker…

New QR Code-Based C2 Attack Lets Hackers Bypass All Type of Browser Isolation Security

Emerging QR Code-Based Command and Control Attacks: Implications for Developers Mandiant, a leading cybersecurity firm, has recently uncovered a novel attack vector that leverages QR codes to compromise browser isolation…

Rockwell Automation Vulnerabilities Let Attackers Execute Remote Code

Rockwell Automation Vulnerabilities Allow Remote Code Execution Rockwell Automation, a leading provider of industrial automation solutions, recently disclosed several critical vulnerabilities found in its Arena software. These vulnerabilities can be…

OpenText Partnership Targets Software Supply Chain Fears

In a strategic move to enhance software supply chain security, OpenText has teamed up with Secure Code Warrior. This collaboration aims to mitigate the growing threat of supply chain attacks…

Researchers Uncover Flaws in Popular Open-Source Machine Learning Frameworks

The ongoing evolution of machine learning (ML) frameworks has accelerated the deployment of AI applications across various industries. However, recent research has unveiled critical vulnerabilities within well-known open-source frameworks such…

Nozomi detects security vulnerabilities in Wago PLC; firmware updated to prevent privilege escalation

Wago PLC Vulnerabilities: Security Enhancements Following Nozomi Networks Detection Nozomi Networks Labs has revealed significant security vulnerabilities in Wago Programmable Logic Controllers (PLCs), necessitating urgent updates to the firmware. This…

Cybersecurity agencies update ‘Secure by Design’ alert to counter threats, select secure and verifiable technologies

Cybersecurity Agencies Update ‘Secure by Design’ Alert Cybersecurity Agencies Update ‘Secure by Design’ Alert to Counter Threats In a significant move to enhance digital security, cybersecurity agencies have revised their…

U.S. CISA adds CyberPanel flaw to its Known Exploited Vulnerabilities catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has recently added a vulnerability associated with CyberPanel to its Known Exploited Vulnerabilities catalog. This inclusion is a crucial alert for developers…

SonicWall Patches 6 Vulnerabilities in Secure Access Gateway

SonicWall has addressed six high-severity vulnerabilities in its Secure Mobile Access (SMA) 100 series SSL-VPN secure access gateway. This update highlights the importance of maintaining secure access infrastructures, particularly as…