Security

$150K awarded for L1TF Reloaded exploit that bypasses cloud mitigations

Researchers earned $150K for “L1TF Reloaded,” combining L1TF and half-Spectre to leak VM memory from public clouds despite mitigations. Researchers…

5 months ago

Stellantis probes data breach linked to third-party provider

Stellantis is investigating a data breach after unauthorized access to a third-party provider’s platform potentially exposed customer data. Car maker…

5 months ago

EU agency ENISA says ransomware attack behind airport disruptions

The EU cybersecurity agency ENISA confirmed that airport check-in disruptions were caused by a cyberattack, and law enforcement is investigating.…

5 months ago

Researchers expose MalTerminal, an LLM-enabled malware pioneer

SentinelOne uncovered MalTerminal, the earliest known malware with built-in LLM capabilities, and presented it at LABScon 2025. SentinelLABS researchers discovered…

5 months ago

ESET uncovers Gamaredon–Turla collaboration in Ukraine cyberattacks

ESET found evidence that Russia-linked groups Gamaredon and Turla collaborated in cyberattacks on Ukraine between February and April 2025. ESET…

5 months ago

CISA warns of malware deployed through Ivanti EPMM flaws<gwmw style="display:none;"></gwmw>

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) disclosed two malware strains found in a network compromised via Ivanti EPMM…

5 months ago

Fortra addressed a maximum severity flaw in GoAnywhere MFT software

Fortra addressed a critical flaw in GoAnywhere Managed File Transfer (MFT) software that could result in the execution of arbitrary…

5 months ago

UK police arrested two teen Scattered Spider members linked to the 2024 attack on Transport for London

U.K. police arrested two teens from the Scattered Spider group for their role in the August 2024 cyberattack on Transport…

5 months ago

ShadowLeak: Radware Uncovers Zero-Click Attack on ChatGPT

Radware discovered a server-side data theft attack, dubbed ShadowLeak, targeting ChatGPT. OpenAI patched the zero-click vulnerability. Researchers at Radware uncovered…

5 months ago

SonicWall warns customers to reset credentials after MySonicWall backups were exposed

SonicWall urges users to reset credentials after MySonicWall backups were exposed; the company locked out the threat actors and notified…

5 months ago

This website uses cookies.