Aug 02, 2025Ravie LakshmananVulnerability / Zero Day
SonicWall SSL VPN devices have become the target of Akira ransomware attacks as part of a newfound surge...
In 2024, we became one of the first organizations to commit to CISA’s Secure by Design initiative. Aligned with our core organizational values around...
Introduction
In the latter half of 2024, the Russian IT industry, alongside a number of entities in other countries, experienced a notable cyberattack. The attackers...
CVE-2025-24119: An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.
Affects Finder
x
x
CVE-2025-24188: Processing maliciously crafted web...
KrebsOnSecurity recently heard from a reader whose boss’s email account got phished and was used to trick one of the company’s customers into sending...
There is good news for any organisation which has been hit by the Phobos ransomware. Japanese police have released a free decryptor capable of recovering...
Jul 23, 2025Ravie LakshmananSoftware Integrity / DevSecOps
Google has announced the launch of a new initiative called OSS Rebuild to bolster the security of the...
Introduction
Some time ago, Kaspersky MDR analysts detected a targeted attack against government IT services in the African region. The attackers used hardcoded names of...