A stealthy new threat is quietly making its way through US businesses, and most traditional security tools...
cyber security
Five zero-day flaws in OpenClaw allowed attackers to bypass trust boundaries and hijack AI agent access across...
A critical security flaw in the widely used Kirki WordPress plugin has exposed over 500,000 websites to...
A threat actor used AI-assisted tools to automate Active Directory discovery and test endpoint detection and response...
A critical vulnerability in Apache ActiveMQ has been disclosed, allowing attackers to inject malicious HTTP security headers...
Ivanti has disclosed a high-severity vulnerability in its Ivanti Neurons for ITSM platform that could allow attackers...
Laravel CRLF Injection Vulnerability Enables an Attacker to Interfere with Outbound Email Processing
A high-severity CRLF injection vulnerability in the Laravel framework, tracked as CVE-2026-48019, could allow attackers to interfere...
Hackers are hiding dangerous malware inside what look like popular Minecraft mods and game clients, using YouTube...
A single forgotten development flag left active in production code silently handed Microsoft account tokens to any...
A newly disclosed flaw in the Windows search URI handler can silently leak NTLMv2 hashes to attacker-controlled servers with...