644K+ Websites at Risk Due to Critical React Server Components Flaw
11
Dec
2025

644K+ Websites at Risk Due to Critical React Server Components Flaw

The Shadowserver Foundation has issued an urgent update regarding the critical “React2Shell” vulnerability, identifying a massive attack surface that remains…

11
Dec
2025

LLM vulnerability patching skills remain limited

Security teams are wondering whether LLMs can help speed up patching. A new study tests that idea and shows where…

Cyble Global Cybersecurity Report 2025
11
Dec
2025

Cyble Global Cybersecurity Report 2025 Released

2025 will be remembered as the year cyber threats reached a breaking point. With nearly 6,000 ransomware incidents, more than…

New “Spiderman” Phishing Kit Lets Hackers Build Fake Bank Login Pages Instantly
11
Dec
2025

New “Spiderman” Phishing Kit Lets Hackers Build Fake Bank Login Pages Instantly

A sophisticated phishing toolkit dubbed “Spiderman” has emerged as a significant threat to European banking customers, enabling cybercriminals to create…

11
Dec
2025

Password habits are changing, and the data shows how far we’ve come

In this Help Net Security video, Andréanne Bergeron, Security Researcher at Flare, explains how changes in user habits, policy shifts,…

19 Fake PNG Extensions Found in VS Code Marketplace
11
Dec
2025

19 Fake PNG Extensions Found in VS Code Marketplace

ReversingLabs (RL) researchers have identified a sophisticated supply chain campaign involving 19 malicious Visual Studio Code (VS Code) extensions. The…

11
Dec
2025

Teamwork is failing in slow motion and security feels it

Security leaders often track threats in code, networks, and policies. But a quieter risk is taking shape in the everyday…

Google Warns of Chrome 0-Day Vulnerability Actively Exploited in the wild
11
Dec
2025

Google Warns of Chrome 0-Day Vulnerability Actively Exploited in the wild

Google has released an urgent security update for the Chrome browser to address a high-severity zero-day vulnerability that is currently…

Windows Defender Firewall Service Vulnerability Let Attackers Disclose Sensitive Data
11
Dec
2025

Windows Defender Firewall Service Vulnerability Let Attackers Disclose Sensitive Data

A critical information disclosure vulnerability in Windows Defender Firewall Service, which could allow authorized attackers to access sensitive heap memory…

Adobe Acrobat Reader Vulnerabilities let Attackers Execute Arbitrary Code and Bypass Security
11
Dec
2025

Adobe Acrobat Reader Vulnerabilities let Attackers Execute Arbitrary Code and Bypass Security

Critical security updates for Acrobat and Reader are available, addressing multiple vulnerabilities that could allow attackers to execute arbitrary code and bypass…

Cyber Engineering launches at ctrl:cyber with former Shelde founders
11
Dec
2025

Cyber Engineering launches at ctrl:cyber with former Shelde founders

The new capability is delivered by a close-knit group of specialists who were part of the core management and delivery…

HESTA draws APRA's ire over massive tech replatforming project
11
Dec
2025

HESTA draws APRA’s ire over massive tech replatforming project

Industry super fund HESTA has copped additional licence conditions over its handling of an outsourced provider and technology platform transition…