Which MFA fits your organization? Our use-case guide maps 8 multi-factor authentication picks to SMBs, M365 shops, legacy ...
Security researchers have disclosed “HEIF Heist,” a collection of image-parsing flaws that could let attackers turn ...
North Korea-linked threat actor TraderTraitor has expanded its macOS malware campaign beyond cryptocurrency firms, targeting ...
CrowdSec has disclosed that a May 2026 compromise tied to the TanStack npm supply-chain incident enabled attackers to clone ...
A newly disclosed WordPress Core vulnerability chain, dubbed Click2Shell, allowed unauthenticated attackers to force a logged ...
Exim has released version 4.100.1 to address four security vulnerabilities affecting its mail transfer agent, including SMTP ...
A sophisticated ClickFix campaign has compromised at least 31 legitimate business websites to deliver a PowerShell backdoor ...
A newly disclosed BragJack is a browser-extension attack technique that can hijack built-in AI assistants across five ...
Mirai-like botnet activity sharply increased in early May 2026 after attackers apparently compromised hosting servers running ...
A malware campaign tracked as Rapuncel is abusing a Microsoft-attested kernel driver to disable endpoint protections before stealing credentials, cryptocurrency wallet data, messaging tokens, and ...
A newly documented OpenAI advertising mechanism may allow the company to associate activity on participating advertiser websites with ChatGPT user identities through a cross-site cookie, according to ...
A newly published proof-of-concept (PoC), dubbed BigDiskBuster, claims to prevent Microsoft Defender Antivirus from ...