Ransomware claims dipped slightly in 2024, cyber insurer says
08
Jul
2025

Ingram Micro makes progress on restoring operations following attack

IT service provider Ingram Micro said Monday that it is making progress on restoring its transactional business after a ransomware…

Ivanti Endpoint Manager Mobile Vulnerabilities Allow Attackers to Decrypt Other Users’ Passwords
08
Jul
2025

Ivanti Endpoint Manager Mobile Vulnerabilities Allow Attackers to Decrypt Other Users’ Passwords

Ivanti has identified and resolved three high-severity vulnerabilities in its Endpoint Manager (EPM) software. If exploited, these flaws could enable…

Ivanti Products Connect Secure and Policy Secure Hit by Denial-of-Service Vulnerabilities
08
Jul
2025

Ivanti Products Connect Secure and Policy Secure Hit by Denial-of-Service Vulnerabilities

Ivanti has released critical security updates for its Connect Secure and Policy Secure products, addressing six medium-severity vulnerabilities that could…

Congress faces pressure to renew cyber information-sharing law
08
Jul
2025

Security coalition urges Congress to renew 2015 CISA law

Listen to the article 3 min This audio is auto-generated. Please let us know if you have feedback. Congress must…

Anatsa Android Banking Malware from Google Play Targeting Users in the U.S. and Canada
08
Jul
2025

Anatsa Android Banking Malware from Google Play Targeting Users in the U.S. and Canada

ThreatFabric researchers have identified a sophisticated new campaign by the Anatsa banking trojan specifically targeting mobile banking customers across the…

FortiOS Buffer Overflow vulnerability Enables Remote Code Execution by Attackers
08
Jul
2025

FortiOS Buffer Overflow vulnerability Enables Remote Code Execution by Attackers

Fortinet has disclosed a critical security vulnerability in FortiOS that could allow authenticated attackers to execute arbitrary code through a…

Check for CitrixBleed 2 exploitation even if you patched quickly! (CVE-2025-5777)
08
Jul
2025

Check for CitrixBleed 2 exploitation even if you patched quickly! (CVE-2025-5777)

With PoC exploits for CVE-2025-5777 (aka CitrixBleed 2) now public and reports of active exploitation of the flaw since mid-June,…

Analysis of job vacancies shows earnings boost for AI skills
08
Jul
2025

AI for Good: Signal president warns of agentic AI security flaw

The president of secure messaging app Signal has warned of the security implications of agentic AI, where artificial intelligence (AI)…

M&S says hackers gained access to customer data in April cyberattack
08
Jul
2025

Scattered Spider poses serious risk to several hundred major companies

The cybercrime group Scattered Spider’s tactics put a group of roughly 300 major companies at heightened risk of attack, according to…

Matt Kapko
08
Jul
2025

Oligo Security strives to fill application-layer gaps in MITRE ATT&CK framework

Applications are a common intrusion point, but the way attackers gain access, maneuver and create mayhem within and across applications…

Android malware Anatsa infiltrates Google Play to target US banks
08
Jul
2025

Android malware Anatsa infiltrates Google Play to target US banks

The Anatsa banking trojan has sneaked into Google Play once more via an app posing as a PDF viewer that…

FortiOS Buffer Overflow Vulnerability Allows Attackers to Execute Arbitrary Code
08
Jul
2025

FortiOS Buffer Overflow Vulnerability Allows Attackers to Execute Arbitrary Code

Fortinet disclosed a significant security flaw in its FortiOS operating system, identified as CVE-2025-24477. This heap-based buffer overflow vulnerability, classified…