CVE-2025-23120: Veeam Fixes High-Risk Flaw Targeted by Ransomware Gangs
Veeam has released an important security update to fix a critical remote code execution (RCE) vulnerability in its Backup & […]
Veeam has released an important security update to fix a critical remote code execution (RCE) vulnerability in its Backup & […]
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has raised alarms over a newly exploited security flaw in NAKIVO Backup
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about an actively exploited vulnerability affecting GitHub Actions,
A critical vulnerability in American Megatrends International’s (AMI) MegaRAC Baseboard Management Controller (BMC) software poses a severe risk to data
A remote code execution (RCE) vulnerability in Apache Tomcat, tracked as CVE-2025-24813, is currently being exploited in the wild. This
Meta has issued a warning regarding a critical security flaw in the FreeType open-source font rendering library, highlighting potential active
A cyberattack campaign is actively targeting Japan’s technology, telecommunications, entertainment, education, and e-commerce industries. The attackers are exploiting CVE-2024-4577, a
Elastic has released an urgent security update to fix a critical vulnerability in Kibana, the popular data visualization dashboard for
Broadcom has issued urgent security updates to address three critical vulnerabilities in VMware ESXi, Workstation, and Fusion that are actively
Hackers are actively exploiting a security vulnerability in the Paragon Partition Manager’s BioNTdrv.sys driver, using it in ransomware attacks to
A new Linux malware, dubbed Auto-Color, has been actively targeting universities and government organizations across North America and Asia between
Attackers have reportedly exploited a vulnerable Windows driver, Truesight.sys, to bypass Endpoint Detection and Response (EDR) systems and deploy the
Cisco has confirmed that a Chinese state-backed hacking group, known as Salt Typhoon, exploited a known security vulnerability (CVE-2018-0171) to
Cybercriminals aligned with Russia have been actively exploiting the linked devices feature in Signal, the popular privacy-focused messaging app, to
A Golang-based backdoor is leveraging Telegram for command-and-control (C2) communications, making it harder to detect and mitigate. Cybersecurity researchers at