Aggregator
1.16 亿美元收购落幕!惠普接手 Humane,AI Pin项目彻底折戟
5 hours 51 minutes hence
安全客
CVE-2025-26519 重磅曝光!musl libc 库安全崩溃,应用直面远程代码执行危机
5 hours 29 minutes hence
安全客
SICK MEAC300 可编程传感器现安全隐患,CVE-2022-0778 与 CVE-2025-0867 漏洞待解
2 hours 44 minutes hence
安全客
惠普严正警示 LaserJet 打印机存高危安全漏洞 CVE-2025-26506,CVSSv4 评分高达 9.2
2 hours 30 minutes hence
安全客
“whoAMI” 攻击曝光:借 AWS AMI 名称混淆实现远程代码执行
2 hours 18 minutes hence
安全客
RansomHub:勒索软件新王者降临?2024 年狂袭 600 家企业
2 hours 3 minutes hence
安全客
PAN-OS 操作系统漏洞遭利用,帕洛阿尔托网络设备存安全隐患
1 hour 31 minutes hence
安全客
勒索风暴来袭!360预警:超500家政企机构惨遭攻击
1 hour 9 minutes hence
安全客
Career Spotlight: Cloud Security Specialist
54 minutes 33 seconds ago
Demand for Cloud Security Skills Is Growing, Offering Good Pay and New Challenges
Cloud services support a wide range of applications from finance to healthcare systems and have become prime targets for cybercriminals, making cloud security a major concern for cybersecurity organizations. The need to secure the cloud is driving demand for skilled cloud security specialists.
Cloud services support a wide range of applications from finance to healthcare systems and have become prime targets for cybercriminals, making cloud security a major concern for cybersecurity organizations. The need to secure the cloud is driving demand for skilled cloud security specialists.
Katie Arrington Returns to Pentagon as DoD CISO
54 minutes 33 seconds ago
New Pentagon CISO Appointed as Pentagon Budget Cuts Loom
The White House appointed a Trump ally and former Department of Defense cybersecurity official as DOD CISO, an unexpected return to the Pentagon for an official previously removed under a cloud of security concerns. Arrington returns to the Pentagon just as it faces budget cuts.
The White House appointed a Trump ally and former Department of Defense cybersecurity official as DOD CISO, an unexpected return to the Pentagon for an official previously removed under a cloud of security concerns. Arrington returns to the Pentagon just as it faces budget cuts.
Military Health Firm Pays $11.2M to Settle Cyber Fraud Case
54 minutes 33 seconds ago
DOJ Says Contractor Falsely Claimed to Meet Critical Cyber Requirements
A military health benefits administrator has agreed to pay $11.2 million to settle allegations that the company falsely certified compliance with cybersecurity requirements - including patch management - for three years in a contract with the U.S. Department of Defense.
A military health benefits administrator has agreed to pay $11.2 million to settle allegations that the company falsely certified compliance with cybersecurity requirements - including patch management - for three years in a contract with the U.S. Department of Defense.
South Korea Keeps DeepSeek AI Chatbot Off App Stores
54 minutes 33 seconds ago
Regulators Cite Privacy Concerns Over DeepSeek's Data Collection Practices
The Personal Information Protection Commission, South Korea's data protection regulator, has directed Chinese artificial intelligence company DeepSeek AI to withdraw its chatbot application from official app stores pending an inquiry into the chatbot's compliance with data protection rules.
The Personal Information Protection Commission, South Korea's data protection regulator, has directed Chinese artificial intelligence company DeepSeek AI to withdraw its chatbot application from official app stores pending an inquiry into the chatbot's compliance with data protection rules.
Insight Partners Compromised Via Social Engineering Attack
54 minutes 33 seconds ago
Private Equity Firm Says It'll Take Several Weeks to Pinpoint Scope of Jan. 16 Hack
An unauthorized third-party accessed certain information systems last month from Insight Partners through a sophisticated social engineering attack. Insight said it'll take the next several weeks to determine the scope of the Jan. 16 incident with the support of third-party cybersecurity experts.
An unauthorized third-party accessed certain information systems last month from Insight Partners through a sophisticated social engineering attack. Insight said it'll take the next several weeks to determine the scope of the Jan. 16 incident with the support of third-party cybersecurity experts.
Мобильный шпион Pegasus начал охоту на бизнес-элиту
1 hour 47 minutes ago
Раскрыта новая волна цифровой слежки за бизнесом.
5 - CVE-2025-27090
2 hours 29 minutes ago
Currently trending CVE - hypeScore: 11 - Sliver is an open source cross-platform adversary emulation/red team framework, it can be used by organizations of all sizes to perform security testing. The reverse port forwarding in sliver teamserver allows the implant to open a reverse tunnel on the sliver teamserver without
8 - CVE-2025-26614
2 hours 29 minutes ago
Currently trending CVE - hypeScore: 3 - WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. A SQL Injection vulnerability was discovered in the WeGIA application, `deletar_documento.php` endpoint. This vulnerability allow an authorized attacker to execute arbitrary SQL querie
7 - CVE-2025-26615
2 hours 29 minutes ago
Currently trending CVE - hypeScore: 3 - WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. A Path Traversal vulnerability was discovered in the WeGIA application, `examples.php` endpoint. This vulnerability could allow an attacker to gain unauthorized access to sensitive inf
4 - CVE-2025-26466
2 hours 29 minutes ago
Currently trending CVE - hypeScore: 19
1 - CVE-2025-26465
2 hours 29 minutes ago
Currently trending CVE - hypeScore: 20 - A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled. A machine-in-the-middle attack can be performed by a malicious machine impersonating a legit server. This issue occurs due to how OpenSSH mishandles error codes in specific conditions when verifying