Russia-aligned hackers are still exploiting WinRAR CVE-2025-8088 against Ukrainian organizations nearly a year after patches ...
After some Dashlane users were locked out of accounts and a limited number of encrypted password vaults were downloaded, the ...
Microsoft Threat Intelligence identified a large-scale npm supply chain attack affecting 32 maliciously modified packages across more than 90 versions under the @redhat-cloud-services npm scope. The ...
VS Code flaw exposes GitHub OAuth tokens via one-click attack on GitHub.dev, enabling private repo access and token theft.
Six Microsoft 365 Android apps contain an identical flaw that could risk billions of downloads being compromised. The ...
A threat actor is using an AI-built ransomware attack toolkit that automates Active Directory discovery and helps evade ...