Real cyber-threats unfolding around the world right now — ransomware, phishing, malware, breaches and zero-day exploits. Click any threat to see what happened and exactly how to stay protected.
A new security advisory has been reported. Click "Read full advisory" for the complete technical details.
A new security advisory has been reported. Click "Read full advisory" for the complete technical details.
Microsoft has disclosed details of a new ClickFix variant, dubbed TerminalFix, that aims to trick users into running a …
Anthropic is permanently increasing Claude Code's standard weekly usage limits by 25% for Pro, Max, Team, and seat-base…
Multiple critical security flaws have been disclosed in WordPress plugins and themes, including WPMU DEV Dashboard, Ava…
The latest version of the Brave browser, 1.94, introduces a feature called 'Email Aliases' that allows users to generat…
Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized…
Berlin's state government has confirmed that it is the target of an extortion attempt following the August compromise o…
Cosmos Labs has warned that a critical balance-handling flaw in the shared Cosmos EVM module was exploited to drain fun…
The Hugging Face incident was bigger and worse than previously thought, with approximately 700 agents collaborating on …
PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG …
Omdia's Theresa Lanowitz talks with the Dark Reading News Desk about the potential — and risks — of using agentic AI fo…
A maximum-severity vulnerability in the GiveWP plugin for WordPress allows an unauthenticated attacker to execute arbit…
Malicious actors are exploiting a newly patched security flaw in PaperCut NG and MF to execute arbitrary code on suscep…
A 68-year-old has been sentenced in the U.K. to more than six years in prison for operating an illegal IPTV (Internet P…
Google on Thursday announced new network security protections in Android 17 to bolster connection privacy, address cell…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting o…
Cybersecurity researchers have discovered a cluster of 18 Google Chrome and one Microsoft Edge extensions that were pub…
AI is accelerating vulnerability discovery, putting pressure on systems built to enrich, prioritize, and remediate flaw…
The frustrating reality after an OT cyberattack: no data, no trail, and no history.
Proposed legislation could mandate that companies be able to "throttle, suspend, or shut ... down" AI agents, but how a…
The surge of AI-powered vulnerability reports is driving down bug bounty prices, and that could spell trouble for indep…
Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing r…
Security researcher Olivier Laflamme has disclosed two independent root remote code execution (RCE) chains affecting th…
Hasbro, one of the world's largest toy and game companies, has disclosed that attackers have accessed the personal and …
An untold number of ZBT routers sold around the world as white-label products come with several implants built by the m…
This installment of the Reporters' Notebook video series discusses the topics that dominated the cybersecurity conferen…
View CSAF Summary Successful exploitation of this vulnerability could reduce the computational cost required for an att…
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to take control over the dev…
View CSAF Summary Successful exploitation of this vulnerability could allow a remote attacker to cause an out-of-bounds…
View CSAF Summary Successful exploitation of this vulnerability could allow a remote attacker to cause a denial-of-serv…
CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of act…
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to fully compromise the devi…
View CSAF Summary Successful exploitation of these vulnerabilities could allow attackers to execute arbitrary commands …
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to read or write arbitrary l…
Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extort…
The report contains statistics on industrial threats for Q2 2026, including ransomware, miners, spyware and other threa…
CISA has added six new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of activ…
This report covers statistics on vulnerabilities, exploits, and C2 frameworks in Q2 2026. For the first time ever, we a…
Kaspersky expert has discovered new Android malware designed to serve ads and build a proxy botnet. It's delivered thro…
It can be daunting to determine who's responsible for showing ads on the websites we visit, or who's harvesting data fr…
Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious process…
Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still …
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and s…
Kaspersky experts have discovered malicious TrueConf software installers. The Head Mare APT group uses them to deliver …
Project CAV3RN targets Israel with Google Apps Script C2 relays and DNS-based routing. Modular .NET NativeAOT framework…
The report presents key trends and statistics on malware that targeted personal computers running Windows and macOS, as…
This report contains mobile threat statistics for Q2 2026, along with noteworthy discoveries and quarterly trends: the …
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded…
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimite…
The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that tu…
Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems an…
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contracto…
A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software i…