RSS
Threat Research
cybercrime forums
Exploit
featured
marketplaces
Sophos X-Ops
Telegram
XSS
For the win? Offensive research contests on criminal forums
Naked Security
Apple
triangulation
vulnerability
Zero-day
Apple ships that recent “Rapid Response” spyware patch to everyone, fixes a second zero-day
Microsoft
Storm
Virus Total
Zimbra
S3 Ep144: When threat hunting goes down a rabbit hole
Security Operations
CVE-2023-34362
CVE-2023-35036
CVE-2023-35708
CVE-2023-36932
CVE-2023-36933
CVE-2023-36934
DEV-0950
FIN11
MDR
MOVEit
Progress Software
TA505
Update 6: Information on MOVEit Vulnerabilities CVE-2023-34362, CVE-2023-35036, CVE-2023-35708, and CVE-2023-36934
iPhone
Mac
Apple’s secret is out: 3 zero-days fixed, so be sure to patch now!
CVE-2023-27350
CVE-2023-27351
PaperCut
RCE
PaperCut security vulnerabilities under active attack – vendor urges customers to patch
bootkit
Patch Tuesday
Secure Boot
Patch Tuesday: Microsoft fixes a zero-day, and two curious bugs that take the Secure out of Secure Boot
kernel bug
spyware
Apple zero-day spyware patches extended to cover older Macs, iPhones and iPads
RC E
Sandbox
vm2
Popular server-side JavaScript security sandbox “vm2” patches remote execution hole