Ivanti warns critical EPM bug lets hackers hijack enrolled devices
Ivanti fixed a critical remote code execution (RCE) vulnerability in its Endpoint Management software (EPM) that can let unauthenticated attackers hijack…
Ivanti fixed a critical remote code execution (RCE) vulnerability in its Endpoint Management software (EPM) that can let unauthenticated attackers hijack…
A tool now allows for victim files encrypted by the Black Basta cybercriminal gang to be fully or partially recoverable,…
Researchers have created a decryptor that exploits a flaw in Black Basta ransomware, allowing victims to recover their files for…
A critical Apache OFBiz pre-authentication remote code execution vulnerability is being actively exploited using public proof of concept (PoC) exploits. [...]
What a recent rise in DDoS attacks portends — and how to prepare for 2024.
Earlier this month, the BlackCat/ALPHV ransomware operation suffered a five-day disruption to their Tor data leak and negotiation sites, rumored to be…
Attackers were escalating privileges left and right in 2023, thanks to one performance-oriented, security-lacking driver.
Google has released emergency updates to fix another Chrome zero-day vulnerability exploited in the wild, the eighth patched since the…
Academic researchers developed a new attack called Terrapin that manipulates sequence numbers during the handshake process to breaks the SSH…
Threat actors are fully embracing the spin machine: rebranding, speaking with the media, writing detailed FAQs, and more, all in…