Security News

OpenPaX: Open-source kernel patch that mitigates memory safety errors
2024-11-01 05:00

OpenPaX is an open-source kernel patch that mitigates common memory safety errors, re-hardening systems against application-level memory safety attacks using a simple Linux kernel patch. It’s...

Admins better Spring into action over latest critical open source vuln
2024-10-29 14:33

Patch up: The Spring framework dominates the Java ecosystem If you're running an application built using the Spring development framework, now is a good time to check it's fully updated – a new,...

Researchers Uncover Vulnerabilities in Open-Source AI and ML Models
2024-10-29 13:00

A little over three dozen security vulnerabilities have been disclosed in various open-source artificial intelligence (AI) and machine learning (ML) models, some of which could lead to remote code...

Argus: Open-source information gathering toolkit
2024-10-23 04:30

Argus is an open-source toolkit that simplifies information gathering and reconnaissance. It features a user-friendly interface and a collection of powerful modules, enabling the exploration of...

Aranya: Open-source toolkit to accelerate secure by design concepts
2024-10-21 03:30

SpiderOak launched its core technology platform as an open-source project called Aranya. This release provides the same level of security as the company’s platform, which is already in use by the...

Open source LLM tool primed to sniff out Python zero-days
2024-10-20 09:00

The static analyzer uses Claude AI to identify vulns and suggest exploit code Researchers with Seattle-based Protect AI plan to release a free, open source tool that can find zero-day...

GhostStrike: Open-source tool for ethical hacking
2024-10-17 04:30

GhostStrike is an open-source, advanced cybersecurity tool tailored for ethical hacking and Red Team operations. It incorporates cutting-edge techniques, including process hollowing, to stealthily...

Supply Chain Attacks Can Exploit Entry Points in Python, npm, and Open-Source Ecosystems
2024-10-14 11:08

Cybersecurity researchers have found that entry points could be abused across multiple programming ecosystems like PyPI, npm, Ruby Gems, NuGet, Dart Pub, and Rust Crates to stage software supply...

How open source SIEM and XDR tackle evolving threats
2024-10-09 16:07

Evolving threats require security solutions that match the sophistication of modern threats. Learn more about how Wazuh, the open-source XDR and SIEM, tackles these threats. [...]

YARA: Open-source tool for malware research
2024-10-09 05:00

YARA is a powerful tool designed primarily to aid malware researchers in identifying and categorizing malware samples, though its applications are broader. The tool enables users to create...