The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has expanded its Known Exploited Vulnerabilities (KEV) catalog, adding...
Vulnerability
Since 2023, the hacker collective APT28 has been conducting a sweeping cyber-espionage operation known as RoundPress, aimed...
Malicious actors have once again targeted the npm ecosystem, this time through a package named “os-info-checker-es6”, which...
Adobe has released unscheduled security updates for Photoshop 2024 and 2025, addressing three critical vulnerabilities—CVE-2025-30324, CVE-2025-30325, and...
The attacks targeting SAP NetWeaver servers, initially believed to stem from the exploitation of a single zero-day...
Fortinet has released an urgent security update to address a critical vulnerability affecting its enterprise telephony systems,...
Microsoft has released its May Patch Tuesday security update, addressing 72 vulnerabilities across its product ecosystem—including five...
Ivanti has issued a warning to its clients regarding two newly discovered vulnerabilities in its Ivanti Endpoint...
The APT group known as Marbled Dust, believed to be affiliated with the Turkish government, has orchestrated...
A user who had purchased an ASUS motherboard discovered that the driver installation software—automatically triggered via the...
SonicWall has addressed three critical vulnerabilities in its Secure Mobile Access (SMA) 100 series devices, flaws that...
Since late April 2025, there has been a surge in attacks targeting SAP NetWeaver Visual Composer, exploiting...
Cisco has issued an urgent security update to address a critical vulnerability in wireless controllers running IOS...
SysAid, a software suite designed for managing IT services within on-premises infrastructures, has been found vulnerable to...
A vulnerability in Apache Parquet, designated as CVE-2025-30065 and carrying the maximum CVSS score of 10.0, has...