Latest Articles

Roundcube Webmail Addresses Critical Vulnerabilities in Latest Security Updates

Roundcube Webmail Addresses Critical Vulnerabilities in Latest Security Updates

On December 13, 2025, the Roundcube Project announced the release of urgent security updates for its widely used open-source webmail platform. Versions 1.6.12 and 1.5.12 (the Long-Term Support...

UK Government Confirms Cyber Intrusion Detected in October, Exposing Ongoing Risks to Public Sector Systems

UK Government Confirms Cyber Intrusion Detected in October, Exposing Ongoing Risks to Public Sector Systems

The UK government has confirmed that it was the target of a cyber attack in October, following a statement by a senior minister acknowledging unauthorized access to government systems. The disclosure...

ASUS Live Update Supply Chain Compromise Exploits CVE-2025-59374, Raising Fresh Alarms Over

ASUS Live Update Supply Chain Compromise Exploits CVE-2025-59374, Raising Fresh Alarms Over

A supply chain compromise involving ASUS Live Update has resurfaced as a major cybersecurity concern following updated findings tied to CVE-2025-59374. The vulnerability has drawn renewed attention...

Critical HPE OneView Vulnerability Rated CVSS 10.0 Enables Unauthenticated Remote Code Execution

Critical HPE OneView Vulnerability Rated CVSS 10.0 Enables Unauthenticated Remote Code Execution

A critical security flaw in HPE OneView has placed enterprise infrastructure environments at significant risk, after researchers confirmed that the vulnerability allows unauthenticated remote code...

Kirloskar Oil Engines Confirms Cybersecurity Breach Amid December 2025 Attack

Kirloskar Oil Engines Confirms Cybersecurity Breach Amid December 2025 Attack

Kirloskar Oil Engines, one of India’s most established industrial manufacturing companies, disclosed a cybersecurity breach in December 2025 that disrupted parts of its digital infrastructure. The...

Kimwolf Android Botnet Infects Over 1.8 Million Devices, Powering Near Record DDoS Activity

Kimwolf Android Botnet Infects Over 1.8 Million Devices, Powering Near Record DDoS Activity

A newly identified Android botnet known as Kimwolf has compromised more than 1.8 million devices worldwide, according to research published by Chinese cybersecurity firm XLab. The botnet has been...

DXS International Data Breach Raises Fresh Concerns Over Third Party IT Security

DXS International Data Breach Raises Fresh Concerns Over Third Party IT Security

DXS International, a technology services and managed IT provider operating across the Asia Pacific region, has confirmed a cybersecurity breach that has exposed sensitive internal and client related...

French Authorities Arrest Suspect in Cyberattack on Interior Ministry

French Authorities Arrest Suspect in Cyberattack on Interior Ministry

In a significant development in the realm of cybersecurity, French authorities have apprehended a young suspect linked to a recent breach of the Interior Ministry's systems. This incident, which...

University of Sydney Confirms Data Breach Exposing Sensitive Student and Staff Information

University of Sydney Confirms Data Breach Exposing Sensitive Student and Staff Information

The University of Sydney has confirmed a data breach that resulted in unauthorized access to sensitive personal information belonging to students, staff, and affiliates. The incident has prompted an...

UK One Login Under Scrutiny After Whistleblower Warns of Severe Security Flaws

UK One Login Under Scrutiny After Whistleblower Warns of Severe Security Flaws

The United Kingdom’s flagship digital identity programme, UK One Login, has come under intense scrutiny following warnings from a whistleblower who claims the system contains severe security...

Cisco AsyncOS Zero-Day Under Siege: Unpatched Vulnerability Fuels Chinese Cyber Espionage Campaign

Cisco AsyncOS Zero-Day Under Siege: Unpatched Vulnerability Fuels Chinese Cyber Espionage Campaign

In a stark reminder of the persistent threats facing network security infrastructure, Cisco Systems disclosed a critical zero-day vulnerability in its AsyncOS software on December 17, 2025. Tracked...

Apple and Google Warn Users Worldwide of Unprecedented Activity by State-Linked Mercenary Spyware Groups

Apple and Google Warn Users Worldwide of Unprecedented Activity by State-Linked Mercenary Spyware Groups

Apple and Google have issued a new round of cyberthreat notifications, alerting users across multiple countries to what they describe as an unprecedented surge in activity by state-linked mercenary...

Cisco SSL VPN Zero-Day Exploitation Poses Serious Risk to Enterprise Networks

Cisco SSL VPN Zero-Day Exploitation Poses Serious Risk to Enterprise Networks

A critical zero-day vulnerability affecting Cisco SSL VPN services is being actively exploited by threat actors, placing organizations worldwide at heightened risk of unauthorized access and network...

SonicWall SMA 1000 Zero-Day Attacks Actively Exploited in the Wild

SonicWall SMA 1000 Zero-Day Attacks Actively Exploited in the Wild

Threat actors are actively exploiting a zero-day vulnerability affecting SonicWall SMA 1000 series appliances, raising serious concerns for organizations that rely on the platform for secure remote...

Windows Admin Center Privilege Escalation Flaw Raises Enterprise Security Concerns

Windows Admin Center Privilege Escalation Flaw Raises Enterprise Security Concerns

A newly disclosed privilege escalation vulnerability affecting Windows Admin Center has raised concerns among enterprise security teams, as the tool is widely used to manage Windows Server...

Active Exploitation of Critical FortiGate Authentication Bypass Vulnerabilities Raises Ransomware Fears

Active Exploitation of Critical FortiGate Authentication Bypass Vulnerabilities Raises Ransomware Fears

Threat actors are actively exploiting two critical authentication bypass vulnerabilities in Fortinet FortiGate appliances, placing enterprise and government networks at significant risk. The flaws,...

PornHub Targeted in Extortion Campaign by ShinyHunters; Data at Risk

PornHub Targeted in Extortion Campaign by ShinyHunters; Data at Risk

An extortion campaign has emerged targeting PornHub, one of the largest adult entertainment platforms in the world. The group claiming responsibility — known in cybersecurity circles as ShinyHunters...

French Ministry of the Interior Hit by Cyber Intrusion, Investigation Underway

French Ministry of the Interior Hit by Cyber Intrusion, Investigation Underway

France’s Ministry of the Interior has confirmed that it is responding to a cybersecurity incident after signs of unauthorized access were detected within parts of its digital infrastructure. The...

Apple Patches Two Zero-Day Vulnerabilities Linked to Mysterious Exploited Chrome Flaw

Apple Patches Two Zero-Day Vulnerabilities Linked to Mysterious Exploited Chrome Flaw

Apple has released a new set of security updates to address two zero-day vulnerabilities that were being exploited in the wild and are tied to a recently disclosed flaw also patched in Google Chrome....

Venezuela’s State Oil Company PDVSA Reports Cyberattack Amid Ongoing Operational Challenges

Venezuela’s State Oil Company PDVSA Reports Cyberattack Amid Ongoing Operational Challenges

Venezuela’s state-owned oil giant Petróleos de Venezuela S.A. (PDVSA) has confirmed that it was recently affected by a cyberattack, raising renewed concerns about the cybersecurity resilience of...