Vulnerabilities in Plex Media Server have been exploited by threat actors from time to time. In February 2021, Plex released ...
OpenAI limits GPT-6 Astra to code review and patching after tests showed exploit development capabilities, including two zero ...
Ted hides inside trojanized HAProxy builds to intercept traffic and serve altered pages at two South Korean organizations.
A phishing campaign sent up to 2.37 million weekday emails using invisible Unicode tags to split financial lure words and bypass filters.
Google patched an actively exploited Chrome V8 flaw that enables arbitrary code execution inside the sandbox through a crafted HTML page.
Attackers abuse Node.js to execute malicious scripts and deploy payloads in attacks targeting governments, technology ...
This week’s ThreatsDay Bulletin tracks fake IT calls, abused remote tools, phishing kits, unsafe downloads, ransomware, ...
Cisco patches a Nexus 9000 flaw enabling unauthenticated remote root code execution and seven IOS XR umbrella CVEs affecting ...
Thomson Reuters says an unauthorized party obtained C-Track court files that may contain personal and sealed information.
FalconFlank abuses CrowdStrike Falcon's malicious macro remediation to demonstrate local privilege escalation on updated ...
Shai-Hulud now scans 469 locations for credentials across developer environments, CI/CD tooling, cloud configs, and AI tool ...
CISA adds seven exploited flaws affecting SonicWall, Artifactory, Switchvox, Starlette, Kestra, and LiteLLM to its KEV ...