Critical remote code execution flaw discovered in widely used protobuf.js library
Image: Primary
Image: Primary
Google says Android 17 adds support for Encrypted Client Hello, which encrypts the destination hostname in a TLS connection's opening handshake for supported apps and sites. The release also lets participating carriers disable 2G ...
CloudSEK and Gambit Security reported that operators associated with Aurora ransomware used Cursor's agentic coding tools while working against victim networks. Gambit said it observed Cursor Agent running Anthropic's Claude Sonne...
McKesson said it is investigating a cybersecurity incident involving an unnamed third-party application that attackers accessed to exfiltrate data. The company said customers may face intermittent service degradation and later sa...
ServiceNow said it has deployed patches across hosted instances and released hotfixes for self-hosted deployments after disclosure of four vulnerabilities in its AI platform and Now Platform. Three flaws, rated CVSS 10, allow code...
Berlin's city administration has confirmed that cybercriminals are attempting to extort the city after Rhysida listed it on a data-leak site. The attack was discovered in mid-August, according to the report, and affected Senate de...
CISA said it added two PaperCut NG/MF vulnerabilities to its Known Exploited Vulnerabilities Catalog: CVE-2026-81578, described as missing authentication for a critical function, and CVE-2026-82078, described as unsafe reflection....