Cybersecurity News

Volvo Group Reports Data Breach Following HR Supplier Ransomware Attack

Volvo Group has alerted employees that a cyber incident affecting its human resources software supplier, Miljödata, may have exposed personal…

7 months ago

Critical Linux Kernel ksmbd Vulnerability Enables Remote Code Execution

A high-severity vulnerability has been disclosed in the Linux Kernel’s ksmbd module that can be exploited by authenticated attackers to…

7 months ago

GitHub Strengthens npm Security with Strict Authentication, Granular Tokens, and Trusted Publishing

GitHub has unveiled a comprehensive strategy to enhance npm’s security in response to a surge in malicious package registry attacks.…

7 months ago

Record-Breaking 22.2 Tbps DDoS Attack Shatters Internet Security Milestone

Cloudflare today revealed that its autonomous defenses mitigated the largest distributed denial-of-service (DDoS) attack ever recorded, peaking at a staggering…

7 months ago

New GhostAction Attack Exploits 327 GitHub Users Across 817 Repositories

Security researchers at GitGuardian have uncovered a sophisticated supply chain attack dubbed "GhostAction" that compromised 327 GitHub users across 817…

8 months ago

Microsoft Teams Blocking Users from Accessing Embedded Office Documents

Microsoft Teams users worldwide are experiencing a significant service disruption today, as the collaboration platform fails to open embedded Microsoft…

8 months ago

Critical Citrix Vulnerability Exploited: 28,000+ Instances at Risk of Remote Code Execution

A critical zero-day remote code execution vulnerability in Citrix NetScaler ADC and Gateway systems is putting thousands of organizations at…

8 months ago

Persistent XSS Vulnerability in IPFire Web Interface via Authenticated Administrator

In a critical security advisory, researchers have disclosed a stored cross-site scripting (XSS) vulnerability in IPFire 2.29’s web-based firewall interface…

8 months ago

New Cache Deception Exploit Circumvents Cache-Server Mismatch

A newly documented cache deception attack exploits subtle discrepancies between caching layers and origin servers to expose sensitive endpoints and…

8 months ago

DOGE Under Fire for Allegedly Storing National Social Security Data in Unsecured Cloud

A whistleblower disclosure filed by the Social Security Administration's Chief Data Officer has raised critical concerns about the Department of…

8 months ago