Security News

CISA Alerts On Actively Exploited Buffer Overflow Flaw In D-Link Routers

Attackers exploit this vulnerability through the router's web interface components, specifically "cgibin" and "hnap_main," by submitting input that exceeds allocated…

5 months ago

Apple, Google, and Samsung May Roll Out Always-On GPS In India

India's government is considering a push in the telecom industry to mandate always-on satellite location tracking on smartphones from Apple,…

5 months ago

Let’s Encrypt Halves Certificate Validity Period, Moving To 45-Day Lifetimes

Let's Encrypt, a leading nonprofit certificate authority (CA), plans to slash the validity of its TLS certificates from 90 days…

6 months ago

GitLab Releases Security Patches Addressing Authentication Bypass and Denial-of-Service Flaws

GitLab released patch versions 18.6.1, 18.5.3, and 18.4.5 for Community Edition (CE) and Enterprise Edition (EE) to address critical security…

6 months ago

Vulnerability In Angular HTTP Client Allows XSRF Token Exposure To Malicious Domains

A serious flaw in Angular's HTTP Client exposes users' XSRF tokens to attacker-controlled sites, enabling CSRF attacks that bypass built-in…

6 months ago

HashiCorp Vault Flaw Enables Credential-Free Authentication Bypass

HashiCorp has disclosed a security flaw in its Vault Terraform Provider that allows attackers to bypass valid credentials and log…

6 months ago

NVIDIA Isaac-GROOT Robotics Platform Flaw Allows Malicious Code Injection

NVIDIA has patched serious security flaws in its Isaac-GR00T platform, a key tool for building AI-powered humanoid robots. Released on…

6 months ago

Linux 6.18-rc7 Released, Bringing Important Fixes and Driver Improvements

Linus Torvalds released Linux kernel 6.18-rc7 on November 23, 2025, fixing a core virtual memory regression from rc6 and adding…

6 months ago

Wireshark 4.6.1 Addresses Multiple Vulnerabilities That Could Cause Application Crashes

Wireshark, the leading open-source network protocol analyzer, released version 4.6.1 on November 19, 2025, to fix two security flaws in…

6 months ago

Cloudflare Breaks Down The Tech Behind Massive Global Internet Outage

On November 18, 2025, Cloudflare, a key player in global internet infrastructure, faced a major outage that disrupted services for…

6 months ago