Unpatched vulnerabilities in Contec CMS8000 patient monitors expose devices to remote access, file overwrites, and data leaks ...
Backline, a new security startup that uses AI agents to automatically remediate security vulnerabilities, is coming out of ...
Severe Lightning AI flaw (CVSS 9.4) enabled remote root execution via hidden URL parameter—patched post-October 2024 ...
AI development platform Lightning AI fixed a critical remote code execution vulnerability. Due to improper user input ...
As cloud-native environments gain popularity, development, security, and operations (DevSecOps) workflows have needed ...
AttackIQ has released a new assessment template in response to the CISA Advisory (AA25-022A) published on January 22, 2025, which details the exploitation of vulnerabilities discovered in Ivanti Cloud ...
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the ...
New York State Governor Hochul recently gave us a “pre” New Year’s gift: effective on December 21, 2024, any individuals or businesses possessing ...
Dylan Ayrey, the author of the report, who demonstrated the vulnerability reported it to Google in September 2024, proposing fixes such as introducing immutable identifiers for users and ...
IT software vendor Ivanti recently released security updates to address multiple vulnerabilities in its Avalanche, Application Control Engine, and Endpoint Manager (EPM) products, which included four ...
Microsoft has launched its 2025 security update cycle by addressing 159 vulnerabilities across its products, including three actively exploited zero-day flaws. Among the most critical fixes are ...