Security News

BIOS flaws expose iSeq DNA sequencers to bootkit attacks
2025-01-07 19:02

BIOS/UEFI vulnerabilities in the iSeq 100 DNA sequencer from U.S. biotechnology company Illumina could let attackers disable devices used for detecting illnesses and developing vaccines. [...]

CISA warns of critical Oracle, Mitel flaws exploited in attacks
2025-01-07 18:45

CISA has warned U.S. federal agencies to secure their systems against critical vulnerabilities in Oracle WebLogic Server and Mitel MiCollab systems that are actively exploited in attacks. [...]

Malicious Browser Extensions are the Next Frontier for Identity Attacks
2025-01-07 15:02

A recent campaign targeting browser extensions illustrates that they are the next frontier in identity attacks. Learn more about these attacks from LayerX Security and how to receive a free...

CISA: No Wider Federal Impact from Treasury Cyber Attack, Investigation Ongoing
2025-01-07 08:43

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday said there are no indications that the cyber attack targeting the Treasury Department impacted other federal agencies....

Vulnerable Moxa devices expose industrial networks to attacks
2025-01-06 17:15

Industrial networking and communications provider Moxa is warning of a high-severity and a critical vulnerability that impact various models of its cellular routers, secure routers, and network...

French govt contractor Atos denies Space Bears ransomware attack claims
2025-01-03 14:20

French tech giant Atos, which secures communications for the country's military and secret services, has denied claims made by the Space Bears ransomware gang that they compromised one of its...

New AI Jailbreak Method 'Bad Likert Judge' Boosts Attack Success Rates by Over 60%
2025-01-03 11:14

Cybersecurity researchers have shed light on a new jailbreak technique that could be used to get past a large language model's (LLM) safety guardrails and produce potentially harmful or malicious...

New DoubleClickjacking attack exploits double-clicks to hijack accounts
2025-01-02 20:26

A new variation of clickjacking attacks called "DoubleClickjacking" lets attackers trick users into authorizing sensitive actions using double-clicks while bypassing existing protections against...

Chinese hackers targeted sanctions office in Treasury attack
2025-01-02 18:09

​Chinese state-backed hackers have reportedly breached the Office of Foreign Assets Control (OFAC), a Treasury Department office that administers and enforces trade and economic sanctions programs. [...]

Over 3 million mail servers without encryption exposed to sniffing attacks
2025-01-02 15:54

Over three million POP3 and IMAP mail servers without TLS encryption are currently exposed on the Internet and vulnerable to network sniffing attacks. [...]