A critical vulnerability in its Client Connector endpoint application that could allow an unauthenticated attacker to execute ...
ASOS has notified affected U.S. customers that an unauthorized party accessed some accounts using login credentials obtained ...
A suspected near-autonomous intrusion campaign that compromised government entities in Asia, cracking 85 employee accounts ...
Red Hat has disclosed a critical vulnerability in its Build of the Keycloak identity and access management platform that ...
A critical unsafe deserialization vulnerability in Spring for GraphQL, tracked as CVE-2026-59285, could enable remote code ...
ToxNetV2, an AArch64 Linux peer-to-peer botnet, has integrated an LLM into its controller workflow, allowing host and botnet ...
Two critical vulnerabilities in the miniOrange SAML 2.0 Single Sign-On WordPress plugin could allow unauthenticated attackers ...
Anthropic has introduced enterprise-managed authorization for Model Context Protocol (MCP) connectors, allowing organizations ...
Cybersecurity researchers have uncovered wider use of PavinLoader, a multi-stage malware loader linked to ClickFix lures, ...
A newly disclosed five vulnerabilities in Palo Alto Networks GlobalProtect, the VPN and endpoint agent deployed across ...
TP-Link has disclosed three high-severity command injection vulnerabilities affecting Archer BE800 V1, Archer BE3600 V1, and ...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Oracle HTTP Server vulnerability to its ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results