Security News > 2025 > January

Asus lets processor security fix slip out early, AMD confirms patch in progress
2025-01-23 07:19

Answers on a postcard to what 'Microcode Signature Verification Vulnerability' might mean AMD has confirmed at least some of its microprocessors suffer a microcode-related security vulnerability,...

Cisco Fixes Critical Privilege Escalation Flaw in Meeting Management (CVSS 9.9)
2025-01-23 06:21

Cisco has released software updates to address a critical security flaw impacting Meeting Management that could permit a remote, authenticated attacker to gain administrator privileges on...

Trump Terminates DHS Advisory Committee Memberships, Disrupting Cybersecurity Review
2025-01-23 06:00

The new Trump administration has terminated all memberships of advisory committees that report to the Department of Homeland Security (DHS).  "In alignment with the Department of Homeland...

TRIPLESTRENGTH Hits Cloud for Cryptojacking, On-Premises Systems for Ransomware
2025-01-23 05:35

Google on Wednesday shed light on a financially motivated threat actor named TRIPLESTRENGTH for its opportunistic targeting of cloud environments for cryptojacking and on-premise ransomware...

Defense strategies to counter escalating hybrid attacks
2025-01-23 05:30

In this Help Net Security interview, Tomer Shloman, Sr. Security Researcher at Trellix, talks about attack attribution, outlines solutions for recognizing hybrid threats, and offers advice on how...

Web Cache Vulnerability Scanner: Open-source tool for detecting web cache poisoning
2025-01-23 05:00

The Web Cache Vulnerability Scanner (WCVS) is an open-source command-line tool for detecting web cache poisoning and deception. The scanner, developed by Maximilian Hildebrand, offers extensive...

CISOs are juggling security, responsibility, and burnout
2025-01-23 04:30

This article gathers excerpts from multiple reports, presenting statistics and insights that may be valuable for CISOs, helping them with informed decision-making, risk management, and developing...

Funding soars in a milestone year for Israeli cybersecurity
2025-01-23 04:00

In this Help Net Security video, Or Salom, Analyst at YL Ventures, discusses the State of the Cyber Nation Report 2024. The report reveals resilience and growth in the Israeli cybersecurity...

Oracle emits 603 patches, names one it wants you to worry about soon
2025-01-23 01:06

Old flaws that keep causing trouble haunt Big Red Oracle has delivered its regular quarterly collection of patches: 603 in total, 318 for its own products, and another 285 for Linux code it ships.…

Critical zero-days impact premium WordPress real estate plugins
2025-01-22 22:59

The RealHome theme and the Easy Real Estate plugins for WordPress are vulnerable to two critical severity flaws that allow unauthenticated users to gain administrative privileges. [...]