VanHelsing RaaS launched March 7, 2025 with 3 victims using a $5,000 deposit model, expanding cyber threats across multiple ...
Microsoft launches inline data protection in Edge, preventing data leaks in GenAI apps and boosting enterprise security.
Five critical flaws in Ingress NGINX Controller expose 6,500+ clusters; update now to prevent unauthorized remote code ...
Next.js flaw CVE-2025-29927 bypasses authorization checks in versions 12.3.5 to 15.2.3, risking admin page access.
Ransomware in VSCode extensions triggers PowerShell payload to encrypt test files; developers warned to strengthen security.
CVE-2025-30066 supply chain attack compromised tj-actions on March 14, 2025, exposing 218 repositories and leaking ...
DDoS vulnerabilities are hidden within all DDoS protection solutions – i.e., they are mostly located in the security policies ...
China-linked APT Aquatic Panda targeted 7 organizations in a 10-month espionage campaign using five malware families.
U.S. Treasury lifts Tornado Cash sanctions after Fifth Circuit ruling, removing 100+ ETH wallets to bolster digital asset ...
Kaspersky reveals Head Mare and Twelve join forces targeting Russian entities via vulnerabilities and new tools, escalating ...
UAT-5918 has attacked Taiwan infrastructure since 2023 using web shells and open-source tools to steal credentials.
Critical router breaches, stealthy PyPI malware, powerful new ransomware decryptors—this week's top cyber threats decoded ...