Juniper Networks security advisory (AV26-128)
As if admins haven't had enough to do this week Ignore patches at your own risk. According to Uncle Sam, a SQL injection flaw in Microsoft Configuration Manager patched in October 2024 is now...
Authorities crack down on global cyber scams, state-backed APTs weaponize Gemini AI for attacks, and PRC-based UNC3886 targets major telcoms.
Heekyong Yang and Hyunjoo Jin report: South Korean officials blamed a massive data leak last year at Coupang on management failure, rather than a sophisticated cyberattack, and urged the...
A new variation of the fake recruiter campaign from North Korean threat actors is targeting JavaScript and Python developers with cryptocurrency-related tasks. [...]
Ring and Flock had announced their partnership in October, saying that Ring customers would soon be empowered to share their doorbell camera videos with police through Ring’s Community Requests program.
Cybersecurity researchers have discovered a malicious Google Chrome extension that's designed to steal data associated with Meta Business Suite and Facebook Business Manager. The extension, named...
Proofpoint announced Thursday that it has acquired a startup focused on AI security and governance, Acuvity.
In December 2025, in response to the Sha1-Hulud incident, npm completed a major authentication overhaul intended to reduce supply-chain attacks. While the overhaul is a solid step forward, the...
HPE security advisory (AV26-127)
Google Chrome security advisory (AV26-126)
Threat actors are abusing Claude artifacts and Google Ads in ClickFix campaigns that deliver infostealer malware to macOS users searching for specific queries. [...]
These capabilities are needed not just to mirror what the continent’s most capable adversaries can do, but also to match Europe’s defensive posture with credible tools to gain access to target...
Two Democratic senators asked the Commerce Department to explain why it removed an official and her deputy whose office had effectively barred nearly all Chinese cars from entering the U.S....
The Department of Energy has identified 26 challenges that it’s looking to tackle in order to advance the Genesis Mission, representing broad problems such as “bridging the gap between scientific...
It still feels like a technological marvel: Waymo’s autonomous cars are now transporting passengers across six cities. Alas, this driverless future comes with its own set of problems. These...
The Russian government is trying to block WhatsApp in the country as its crackdown on communication platforms outside its control intensifies. WhatsApp announced the action against it on X,...
World Leaks, the cyber-criminal data extortion group which has targeted some of the world’s biggest companies, has added a novel, never-before-seen malware to their arsenal, research by Accenture...
PostgreSQL security advisory (AV26-125)
Cryptocurrency’s frictionless, transnational low-regulation transactions have long promised the ability to pay anyone in the world for anything. More than ever before, that anything includes human...
Threat actors have started to exploit a recently disclosed critical security flaw impacting BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) products, according to watchTowr....
Alarmed by the ever-growing vulnerability of the venerable Global Positioning System (GPS) constellation to adversary attack, the Space Force has quietly been working to shape a future where US...
The South Korean regulator has imposed fines on three LVMH luxury brands in the wake of data breaches previously reported on this site. A machine translation of the South Korean notice indicates...
Unrestricted warfare prompts the questions, “Does a single ‘hacker’ attack count as a hostile act or not? Can using financial instruments to destroy a country’s economy be seen as a battle? Where...
South Korea has fined luxury fashion brands Louis Vuitton, Christian Dior Couture, and Tiffany $25 million for failing to implement adequate security measures, which facilitated unauthorized...
The latest chapter in the ongoing saga of U.S. efforts to begin countering small drone incursions over the country began last week. Reacting to what they thought was a drone operated by a Mexican...
Leaders and dignitaries are gathering in Munich for Europe’s largest annual security conference. The highest-ranking American official set to attend the three-day conference is Secretary of State...
Lawmakers left Washington for a week-long recess Thursday, showing no urgency to avert a shutdown at the Department of Homeland Security that will take effect Saturday morning. The overwhelming...
Erin Schilling and Erin Slowey report: The IRS’ improper disclosure of thousands of immigrants’ personal information to the Department of Homeland Security fulfilled early warnings that the...
Compliance shouldn't mean a standstill for innovation. The first of our four-part series explores how Wiz quickly reached FedRAMP High through a "risk-first" philosophy. In parts 2-4 we’ll explore...