544 posts in this collection

A newly identified class of vulnerabilities, dubbed "Cordyceps," allows unauthenticated attackers to compromise critical CI/CD pipelines, potentially impacting hundreds of high-profile GitHub repositories and their downs

A significant international law enforcement effort has successfully disrupted the operational infrastructure of the Amadey and StealC malware families, leading to the recovery of approximately 27 million stolen credentia

Critical code injection flaw in Lantronix EDS5000 series devices is under active attack, prompting urgent patching directives for federal agencies. Published: 2026-06-24 | Author: Patrick Mattos The U.S. Cybersecurity an

Federal agencies have seized cloud accounts and imposed sanctions on entities linked to Southeast Asian criminal enterprises facilitating cryptocurrency fraud and money laundering. Published: 2026-06-24 | Author: Patrick

A novel malware campaign is utilizing compromised Google Ads to distribute a new information-stealing malware, highlighting evolving threat actor tactics for evading detection. Published: 2026-06-22 | Author: Patrick Mat

A critical flaw in the Gravity SMTP WordPress plugin is actively being exploited by threat actors to steal API keys, secrets, and other sensitive configuration data from approximately 100,000 websites. Published: 2026-06
Follow our Instagram for daily security insights, course previews, and exclusive content.