Security News

Logic Flaw Puts 70M+ Users At Risk, Exposes Internal Networks

A subtle logic error in the popular mPDF PHP library allows attackers to trigger unauthorized web requests, potentially exposing internal…

6 months ago

Critical OpenAI Sora 2 Flaw Exposes System Prompts via Audio Transcript Output

OpenAI's Sora 2, a cutting-edge video generation model, has a notable security vulnerability that allows researchers to extract its hidden…

6 months ago

Critical Vulnerability In Dell Data Lakehouse Enables Remote Attackers To Gain Elevated Privileges

Dell Technologies has issued an urgent security advisory, DSA-2025-375, addressing multiple vulnerabilities in its Data Lakehouse platform. Released on November…

6 months ago

Tor Browser 15.0.1 Launches With Patches For Several Security Flaws

The Tor Project has rolled out Tor Browser 15.0.1, a timely update that enhances user privacy and security amid escalating…

6 months ago

Firefox Issues Security Update To Patch Multiple Critical Vulnerabilities Enabling Code Execution

Mozilla has released Firefox 145 on November 11, 2025, along with updates for Extended Support Release versions ESR 140.5 and…

6 months ago

MAD-CAT Meow Tool Sparks Real-World Data Corruption Attacks

The MAD-CAT tool represents a significant advancement in simulating data corruption threats, building on the infamous Meow attacks that began…

7 months ago

Critical UniFi OS Flaw Enables Remote Code Execution By Attackers

Researchers at Catchify Security uncovered a severe unauthenticated remote code execution (RCE) vulnerability in UniFi OS, specifically affecting the UniFi…

7 months ago

Schneider Electric Security Flaws Allow OS Command Injection by Attackers

Schneider Electric has disclosed multiple critical security vulnerabilities in its EcoStruxure IT Data Center Expert software that could allow attackers…

11 months ago

XWorm: Evolving Threat – New Stagers and Loaders Outwit Security Systems

In the ever-shifting landscape of cybercrime, XWorm, a notorious remote access trojan (RAT), continues to evolve, arming threat actors with…

11 months ago

How Malicious IDE Extensions Can Bypass Trust Security and Infect Developer Machines

The security of millions of developers is at risk after new research revealed critical flaws in how the world’s most…

11 months ago