loader image
Firefox Fixes Flaws That Risk Crashes, Code Execution

Mozilla patched two high-impact vulnerabilities in Firefox 139.0.4 that could lead to browser crashes or remote code execution. The flaws—CVE-2025-49709 and CVE-2025-49710—affect key components of the browser’s graphics rendering system and JavaScript engine. The first, CVE-2025-49709, involves memory corruption triggered by specific canvas operations. Improper handling of canvas surfaces could compromise memory integrity, enabling denial-of-service […]

Amazon CSO Warns AI Era Exposes Human Weakness

Amazon CSO Warns AI Era naturally shifts the cybersecurity landscape toward human vulnerabilities, not just software flaws. In a recent conversation on the Click Here podcast, Steve Schmidt revealed how Amazon’s digital honeypot, dubbed MadPot, played a key role in uncovering the activities of Volt Typhoon, a state-backed cyber threat group. The tool lured attackers […]

Citrix Zero-Day Flaw Hit as Hackers Exploit NetScaler

Citrix has disclosed a critical vulnerability affecting its NetScaler ADC and NetScaler Gateway products, warning users that the flaw is actively being exploited in the wild. The Citrix Zero Day Flaw, which surfaced just nine days after the company identified two separate defects in the same systems, poses a significant security risk to enterprise users […]

Dragos Adds Ex-PwC, Citi Execs to Bolster OT Security

Dragos has expanded its board of directors by appointing Casey Herman and Deborah Hopkins, a move aimed at accelerating the company’s growth in the operational technology (OT) cybersecurity market. The appointments reflect strategic efforts by the firm to strengthen leadership as it scales its cybersecurity solutions across critical infrastructure sectors. Dragos adds ex PwC execs […]

Microsoft Fixes 75 Flaws, 11 Critical in May Patch

Microsoft released security updates addressing 75 vulnerabilities as part of its May Patch Tuesday rollout, with 11 of those flaws rated as critical in severity. The update includes fixes for five vulnerabilities that are currently being exploited in the wild, posing heightened risk to users and organizations. Additionally, two other vulnerabilities patched in this cycle […]

Google Drops Trust in China, Hungary Web Certificates

Google plans to revoke trust in digital certificates issued by Chunghwa Telecom of China and Hungary-based NetLock, citing “patterns of concerning behavior” by both certificate authorities. The decision will affect users of the Chrome web browser, which will no longer recognize certificates from these entities as valid. The move reflects growing scrutiny over the practices […]

Honeywell Says 46% Ransomware Surge Hits OT Systems

Ransomware attacks surged 46% over the past year, with operational technology (OT) systems emerging as primary targets, according to Honeywell’s newly released 2025 Cyber Threat Report. The findings underscore a growing trend of cybercriminals shifting focus from traditional IT infrastructure to critical industrial systems, raising alarms across the manufacturing and energy sectors. The report highlights […]

WhatsApp Joins Apple in UK Encryption Clash

WhatsApp is signaling support for Apple in its ongoing standoff with the United Kingdom over encryption and user privacy. The messaging platform is aligning itself with Apple’s position that technology companies should not be compelled to maintain access to users’ encrypted content, such as data stored in iCloud accounts, to satisfy government surveillance demands. The […]

Windows SMB Flaw Lets Hackers Hijack System Privileges

A critical Windows SMB vulnerability tracked as CVE-2025-33073 has been exploited in the wild using a technique known as Reflective Kerberos Relay Attack. Microsoft addressed the flaw during its June 2025 Patch Tuesday updates, assigning it a CVSS score of 9.8 due to the high risk of privilege escalation and low exploitation complexity. The Reflective […]

Ex-US Army Sergeant Admits Selling Secrets to China

An ex US Army sergeant admits he provided classified military information to Chinese intelligence agents, deepening concerns over insider threats to national security. The former soldier allegedly shared sensitive data over multiple years, compromising U.S. defense operations. Officials say the individual received payments in exchange for the information during and after his military service. As […]

UK Fines 23andMe $3 Million Over Cyber Failures

The United Kingdom’s primary data privacy watchdog fined personal genomics firm 23andMe over $3 million on Tuesday, citing inadequate cybersecurity measures. The penalty comes after a significant data breach that raised concerns about the company’s ability to protect sensitive genetic information. The UK fines 23andMe cybernaturally as part of broader efforts to hold companies accountable […]

Default Gateway Lets You Control Network Access Points

A default gateway acts as a central hub in a local network, directing traffic from devices like laptops, smartphones, and IoT gadgets to destinations beyond their subnet. Typically, this role is handled by a router, which connects the internal network to the internet. Knowing your default gateway lets you control network settings and access key […]