loader image
Iran Strikes Prompt U.S. Cyberattack Warning From DHS

Federal officials are urging U.S. companies to bolster their cybersecurity defenses following escalating tensions in the Middle East. Iran strikes prompt U.S. agencies to warn that retaliatory cyber operations could soon target critical infrastructure, including energy, transportation and communication systems. The Department of Homeland Security has advised businesses to assess vulnerabilities and prepare incident response […]

Chrome, Firefox Fix High-Severity Security Flaws

Google and Mozilla have released Chrome 138 and Firefox 140, addressing more than two dozen security flaws, including several classified as high-severity. The Chrome Firefox fix high severity updates aim to strengthen user protection by resolving critical memory safety issues that could expose users to potential exploits. The latest versions of both browsers contain patches […]

Claroty Finds Ransomware Risks in Building Systems

Cybersecurity firm Claroty has uncovered significant vulnerabilities across building management systems, revealing widespread exposure to ransomware threats and insecure internet configurations. In its latest findings, Claroty finds ransomware risks tied to known exploited vulnerabilities (KEVs) that attackers could weaponize to disrupt critical infrastructure operations. The report highlights numerous systems with direct internet exposure, increasing the […]

Prometei Botnet Surges With New Malware, Palo Alto Says

Prometei Botnet Surges With renewed intensity as cybersecurity researchers from Palo Alto Networks report a sharp increase in activity since March 2025. The latest variant, targeting Linux systems, spreads rapidly through HTTP GET requests, delivering a UPX-packed 64-bit ELF file disguised as a .php script. Analysts say the botnet focuses on Monero mining and credential […]

Visa Applicants Must Make Social Media Profiles Public

The United States Embassy in India has introduced new guidance requiring F, M, and J visa applicants to make their social media accounts publicly viewable. Visa applicants must make social media settings accessible to assist consular officials in verifying identity and confirming eligibility under U.S. immigration law. The embassy emphasized that every visa application undergoes […]

ECSO Names Świątkowska to Succeed Founding Chief

The European Cyber Security Organisation announced that Dr. Joanna Świątkowska will assume the role of Secretary General starting July 2025. ECSO names Świątkowska successor to founding Secretary General Dr. Luigi Rebuffi, who has led the organization since its inception. The appointment marks a significant leadership transition for ECSO, which plays a central role in strengthening […]

Citrix Zero-Day Flaw Hit Before Patch Released

Citrix has issued patches for a critical vulnerability in its NetScaler ADC and NetScaler Gateway products that attackers exploited as a zero-day. The Citrix ZeroDay Flaw Hit impacted systems before security teams could deploy fixes, prompting urgent updates across affected infrastructure. The company confirmed the exploitation and addressed the issue through newly released security updates. […]

CISA Flags D-Link, Fortinet Flaws in Exploits List

The U.S. Cybersecurity and Infrastructure Security Agency on Wednesday added three newly exploited vulnerabilities to its Known Exploited Vulnerabilities catalog, signaling active threats to critical systems. CISA flags D-Link flaws among the trio, alongside issues affecting AMI’s MegaRAC and Fortinet’s FortiOS. The agency urged immediate mitigation to reduce potential exposure to attacks. The vulnerabilities include […]

WinRAR Fixes Flaw Letting Malware Run on Extraction

WinRAR has released a security update to resolve a directory traversal vulnerability identified as CVE-2025-6218. Under specific conditions, the flaw could allow malware to execute automatically after a user extracts a specially crafted archive. This update follows reports that threat actors might exploit the vulnerability to bypass standard file extraction safety measures. WinRAR fixes flaw […]

NHS England Backs Medicus GP IT System Overhaul

NHS England backs Medicus as the first supplier to deliver a fully assured core IT system for general practitioners under its new Tech Innovation Framework. The approval marks a significant step in modernizing digital infrastructure across primary care, aiming to streamline clinical operations and improve patient outcomes. The system, developed by Medicus Health, passed all […]

Firefox 140 Patches Critical Code Execution Flaws

Mozilla has released Firefox 140, addressing a collection of critical security vulnerabilities that include a high-severity code execution flaw. Firefox 140 patches critical issues such as CVE-2025-6424, a use-after-free bug in the FontFaceSet component, which could allow attackers to execute arbitrary code on targeted systems. The update resolves 12 security flaws, including CVE-2025-6436, a group […]

Realtek Bluetooth Flaw Lets Hackers Trigger DoS Attacks

A newly discovered vulnerability in Realtek’s RTL8762E SDK v1.4.0 exposes devices to denial-of-service attacks via the Bluetooth Low Energy Secure Connections pairing protocol. The Realtek Bluetooth Flaw Lets attackers exploit improper protocol state validation during the pairing process, enabling disruption without requiring authentication or elevated privileges. Researchers identified the flaw in the RTL8762EKF-EVB development board, […]