Insecure GitHub Actions in Open Source Projects MITRE and Splunk Exposes Critical Vulnerabilities
18
Jun
2025

Insecure GitHub Actions in Open Source Projects MITRE and Splunk Exposes Critical Vulnerabilities

A comprehensive security investigation has revealed widespread vulnerabilities in GitHub Actions workflows across major open source repositories, including those maintained…

MITRE and Splunk Expose Critical Vulnerabilities in Open Source GitHub Actions
18
Jun
2025

MITRE and Splunk Expose Critical Vulnerabilities in Open Source GitHub Actions

The Sysdig TRT has uncovered critical vulnerabilities in the GitHub Actions workflows of several high-profile open source projects, including those…

How the cyberattack against UNFI affected 4 independent grocers
18
Jun
2025

How the cyberattack against UNFI affected 4 independent grocers

United Natural Foods, Inc. is continuing to rely on manual procedures to receive and fulfill orders from customers as it…

Microsoft 365
18
Jun
2025

Microsoft 365 to block file access via legacy auth protocols by default

Microsoft has announced that it will start updating security defaults for all Microsoft 365 tenants in July to block access…

PLA Rapidly Deploys AI Technology Across Military Intelligence Operations
18
Jun
2025

PLA Rapidly Deploys AI Technology Across Military Intelligence Operations

China’s People’s Liberation Army has accelerated its integration of generative artificial intelligence across military intelligence operations, marking a significant shift…

Microsoft Enhances Office 365 Defender to Stop Email Bombing Campaigns
18
Jun
2025

Microsoft Enhances Office 365 Defender to Stop Email Bombing Campaigns

Microsoft has announced a significant enhancement to its Office 365 Defender suite with the introduction of Mail Bombing Detection, a…

Instagram logo
18
Jun
2025

Fake bank ads on Instagram scam victims out of money

Ads on Instagram—including deepfake videos—are impersonating trusted financial institutions like Bank of Montreal (BMO) and EQ Bank (Equitable Bank) in…

Minecraft Players
18
Jun
2025

1,500+ Minecraft Players Infected by Java Malware Masquerading as Game Mods on GitHub

A new multi-stage malware campaign is targeting Minecraft users with a Java-based malware that employs a distribution-as-service (DaaS) offering called…

Cloud storage buckets leaking secret data despite security improvements
18
Jun
2025

Cloud storage buckets leaking secret data despite security improvements

Listen to the article 3 min This audio is auto-generated. Please let us know if you have feedback. Dive Brief:…

Linux
18
Jun
2025

CISA warns of attackers exploiting Linux flaw with PoC exploit

CISA has warned U.S. federal agencies about attackers targeting a high-severity vulnerability in the Linux kernel’s OverlayFS subsystem that allows…

Researchers Uncovered on How Russia Leverages Private Companies, Hacktivist to Strengthen Cyber Capabilities
18
Jun
2025

Researchers Uncovered on How Russia Leverages Private Companies, Hacktivist to Strengthen Cyber Capabilities

A comprehensive new study reveals the sophisticated architecture behind Russia’s externalized cyber warfare strategy, exposing how the Kremlin systematically exploits…

Israel-Tied Predatory Sparrow Hackers Are Waging Cyberwar on Iran's Financial System
18
Jun
2025

Israel-Tied Predatory Sparrow Hackers Are Waging Cyberwar on Iran’s Financial System

The Israel-linked hacker group known as Predatory Sparrow has carried out some of the most disruptive and destructive cyberattacks in…