New MOVEit Transfer Vulnerabilities Include ‘Critical’ Flaw

Progress has released patches for three additional vulnerabilities in MOVEit Transfer, including a new critical flaw,…

VMware Patches Code Execution Vulnerabilities in vCenter Server

Virtualization giant VMware has published software updates to address multiple memory corruption vulnerabilities in vCenter Server…

SolarWinds Execs Receive SEC Wells Notice Related To ‘Sunburst’ Cyberattack

SolarWinds, in a Friday SEC filing, said unnamed current and former executives including its chief financial…

China Likely Also Sought IP In Barracuda Attacks: Researcher

It appears the hackers working for the Chinese government were ‘not solely conducting conventional espionage campaigns,’…

OT:Icefall: Vulnerabilities Identified in Wago Controllers

Forescout Technologies has disclosed the details of three vulnerabilities impacting operational technology (OT) products from Wago…

Apple Patches Three Zero-Day Flaws Reportedly Used To Target iPhones

Apple released fixes Wednesday for three zero-day vulnerabilities affecting its products that have reportedly been exploited…

Progress Slams Researcher For Tweeting Zero-Day MOVEit Vulnerability

Progress criticized the public disclosure of the latest zero-day vulnerability in MOVEit by a third-party security…

Severe Vulnerabilities Reported in Microsoft Azure Bastion and Container Registry

Two “dangerous” security vulnerabilities have been disclosed in Microsoft Azure Bastion and Azure Container Registry that…

All you need to know about API security

APIs are certainly not new, but now they’re all around us. Every time you use a…

New Golang-based Skuld Malware Stealing Discord and Browser Data from Windows PCs

A new Golang-based information stealer called Skuld has compromised Windows systems across Europe, Southeast Asia, and the U.S.…