Chinese APT Exploits BeyondTrust API Key to Access U.S. Treasury Systems and Documents
The United States Treasury Department said it suffered a “major cybersecurity incident” that allowed suspected Chinese threat actors to remotely…
Identity illuminated
The United States Treasury Department said it suffered a “major cybersecurity incident” that allowed suspected Chinese threat actors to remotely…
Ethical hacking group Chaos Computer Club uncovered exposed data of electrical vehicle owners across the company’s VW, Audi, Seat, and…
Windows servers are vulnerable to a dangerous LDAP vulnerability that could be used to crash multiple servers at once and…
A suspected China-nexus cyber espionage group has been attributed to an attacks targeting large business-to-business IT service providers in Southern…
A little-known cyber espionage actor known as The Mask has been linked to a new set of attacks targeting an…
Cybersecurity researchers have discovered a new PHP-based backdoor called Glutton that has been put to use in cyber attacks targeting…
A critical flaw in the company’s rate limit for failed sign-in attempts allowed unauthorized access to a user account, including…
Details have emerged about a now-patched security flaw in the DeepSeek artificial intelligence (AI) chatbot that, if successfully exploited, could…
A now-removed GitHub repository that advertised a WordPress tool to publish posts to the online content management system (CMS) is…
Cybersecurity researchers are alerting to a software supply chain attack targeting the popular @solana/web3.js npm library that involved pushing two…