A recent surge in advanced persistent threat (APT) activity has been observed across East Asia, with the North Korean-linked Kimsuky and Konni groups identified...
The persistent state-aligned threat group XDSpy has been observed exploiting a zero-day vulnerability (ZDI-CAN-25373) in Microsoft Windows LNK file handling.
This flaw, discovered amid XDSpy’s...
A critical Server-Side Template Injection (SSTI) vulnerability (CVE-2025-5309) in BeyondTrust’s Remote Support (RS) and Privileged Remote Access (PRA) solutions enables unauthenticated attackers to execute...
Security researchers have uncovered a critical pre-authentication Remote Code Execution (RCE) chain in Sitecore Experience Platform (XP), a widely used enterprise content management system....
Meta’s WhatsApp today announced three transformative features for its 1.5 billion daily active users in the Updates tab—channel subscriptions, promoted channels, and ads in...