A threat actor used AI-assisted tools to automate Active Directory discovery and test endpoint detection and response...
Cyber Security News
A critical vulnerability in Apache ActiveMQ has been disclosed, allowing attackers to inject malicious HTTP security headers...
Ivanti has disclosed a high-severity vulnerability in its Ivanti Neurons for ITSM platform that could allow attackers...
Laravel CRLF Injection Vulnerability Enables an Attacker to Interfere with Outbound Email Processing
A high-severity CRLF injection vulnerability in the Laravel framework, tracked as CVE-2026-48019, could allow attackers to interfere...
Hackers are hiding dangerous malware inside what look like popular Minecraft mods and game clients, using YouTube...
A single forgotten development flag left active in production code silently handed Microsoft account tokens to any...
A newly disclosed flaw in the Windows search URI handler can silently leak NTLMv2 hashes to attacker-controlled servers with...
A newly disclosed remote denial-of-service exploit dubbed “HTTP/2 Bomb” targets the default HTTP/2 configurations of the world’s...
A critical security vulnerability in Visual Studio Code’s webview implementation allows attackers to steal GitHub OAuth tokens,...
A newly discovered malware campaign targeting WordPress websites has raised serious concerns across the web security community....