OpenSSL Silently Fixes ‘HollowByte’ DoS Vulnerability
A vulnerability in OpenSSL could allow attackers to cause a server’s memory to be exhausted before any security handshake, Okta’s red team discovered. Referred to…
A vulnerability in OpenSSL could allow attackers to cause a server’s memory to be exhausted before any security handshake, Okta’s red team discovered. Referred to…
American-Israeli cybersecurity startup Neo emerged from stealth mode on Monday with $100 million in funding for a platform that enables enterprises to control and secure…
Two recently patched SonicWall appliance zero-days were exploited by threat actors for weeks before patches were released, according to cybersecurity firm Volexity. SonicWall released a…
Machine learning collaboration platform Hugging Face has disclosed a data breach resulting from a cyberattack conducted by an autonomous AI agent. The attack targeted the…
Two newly patched WordPress vulnerabilities are being exploited in the wild, with attacks beginning shortly after they came to light. The vulnerabilities have been dubbed…
American soft drinks giant Coca-Cola announced Thursday that it has suspended production at its subsidiary Fairlife after detecting a ransomware attack. Based in Chicago, Fairlife…
British supply chain security firm Risk Ledger has announced raising £24 million (roughly $32.3 million) in a Series B funding round that brings the total…
Japanese frozen food giant Nichirei says it is ready to gradually restore operations affected by a cyberattack on July 13. Headquartered in Tokyo, Nichirei is…
Cybersecurity startup Beacon Security has announced raising $13 million in a seed funding round led by Notable Capital. AlphaDrive Ventures, Holly Ventures, Jefferies Family Office,…
SecurityWeek’s weekly cybersecurity news roundup offers a concise overview of important developments that may not receive full standalone coverage yet remain relevant to the broader…
In this exclusive SecurityWeek interview, Brian “SchleiF” Schleifer sits down with Clint Bodungen, Director of AI/ML Engineering at Arcovo, founder of ThreatGen, and one of…
Threat actors have begun exploiting a fresh critical-severity remote code execution (RCE) vulnerability in Microsoft SharePoint, the US cybersecurity agency CISA warns. Tracked as CVE-2026-58644…