Researchers discovered hackers-for-hire performing cyber espionage and financially motivated heists from the same Web panel.
A critical vulnerability in VMware vCenter came under heavy exploitation via a single threat actor just days after public disclosure. CVE-2026–59310 is a critical directory traversal flaw with a 9.8 ...
The big-box giant scaled its defenses by encouraging trust. Good communications, transparency, and team spirit are key factors.
Attackers continue to target critical infrastructure and government agencies in the country, mirroring the increased activity across Latin America.
Walmart co-locates red and blue teams to build trust and improve security through collaborative purple teaming exercises.
Forum" campaign has been active since at least March 2025 and has targeted organizations across multiple sectors.
A study of more than 6,000 patches found that even working patches can introduce new bugs, break something else, or are open ...
Security experts say prioritization should be the main focus for the August updates, not the massive CVE volume.
A public policy expert mapped global cybercrime laws to develop a five-point framework for protecting ethical hackers and good-faith security research.
A burgeoning ransomware-as-a-service (RaaS) operation is using known exploited vulnerabilities in campaigns against critical infrastructure and government organizations around the globe. US and South ...
A zero-day SQL-injection vulnerability in Metabase Cloud is under exploitation in the wild, and it could spell trouble for many downstream organizations. Metabase, which provides AI-driven business ...
In the span of three weeks, OpenAI, Anthropic, and Meta have all disclosed AI agent sandbox escape events affecting real ...