CVE-2023-42770 - An authentication bypass that arises as a result of the Sixnet RTU software listening to the same port ...
Cybersecurity company Imperva, which discovered and reported the problem in July 2025, described CVE-2025-53967 as a "design oversight" in the fallback mechanism that could allow bad actors to achieve ...
Two recently discovered security flaws could make 7-Zip a serious risk to data and system security. These bugs had been known internally for months, and 7-Zip ...
Researchers warn of fileless payloads, memory hooks, and a UDP-based C2 controller that complicate detection and remediation.
We’re doubling our top award to $2 million for exploit chains that can achieve similar goals as sophisticated mercenary ...
Researchers say an extortion campaign linked to the Clop ransomware group used a series of chained vulnerabilities and ...
Although Internet Explorer was officially retired in 2022, it lives on in the Edge browser for those with older websites.
Microsoft is restricting access to Internet Explorer mode in Edge browser after learning that hackers are leveraging zero-day ...
New versions of the XWorm backdoor are being distributed in phishing campaigns after the original developer, XCoder, ...
According to Microsoft's investigation, the attack chain started when users were tricked into visiting exploitative websites.
Now, Microsoft's Edge browser security team has removed what it said are the highest entry points for loading a web page in ...
Microsoft is making a compatibility feature more difficult to enable after discovering that it was being exploited by hackers.