ESET Mail Security for Microsoft Exchange Server version 10.1.10018.0 has been released and is available for download.
WP Ultimate CSV Importer flaws expose 20,000 websites to attacks enabling attackers to achieve full site compromise
The CERT-UA investigation concluded that the attack’s techniques were “characteristic of Russian intelligence services”
Advice on the selection and deployment of Protective Domain Name Systems (DNS).
A new attack targeting Microsoft Teams users used vishing, remote access tools and DLL sideloading to deploy a JavaScript backdoor
Google is set to roll out end-to-end encryption for all Gmail users, boosting security, compliance and data sovereignty efforts
Precision Tax Relief, LLC (PTR) a découvert une activité suspecte dans son réseau informatique le 1er avril 2025. Une enquête a révélé qu'un acteur non autorisé a accédé au réseau de PTR et a pu visualiser ou copier certaines informations, notamment des noms, des numéros de sécurité sociale, des num...
BlueVoyant found that the use of lookalike domains in email-based attacks is allowing actors to extend the types of individuals and organizations being targeted
A thousand UK service providers will be expected to comply with the forthcoming Cyber Security and Resilience Bill
New proposals will combat the growing threat to UK critical national infrastructure (CNI).
CISA recommends immediate action to address malware variant RESURGE exploiting Ivanti vulnerability CVE-2025-0282
New “ClickFake Interview” campaign attributed to the Lazarus Group targets crypto professionals with fake job offers
At PortSwigger, we believe AI has the power to transform penetration testing - not by replacing human testers, but by augmenting them. With the release of Burp Suite Professional 2025.2, we’re introdu
From an exploited vulnerability in a third-party ChatGPT tool to a bizarre twist on ransomware demands, it's a wrap on another month filled with impactful cybersecurity news
The funding will go to several projects within the Digital Europe Programme (DIGITAL) work program for 2025 to 2027
The UK’s National Cyber Security Agency has called on Next.js users to patch CVE-2025-29927
Your company’s ability to tackle the ransomware threat head-on can ultimately be a competitive advantage
The DoJ has managed to recoup over $8m from scammers, stolen in romance baiting schemes
Key Takeaways Case Summary This case from May 2024 started with a malicious download from a website mimicking the teleconferencing application Zoom. When visiting the website and downloading a file … Read More
Le 31 mars 2025, Systex a reçu une lettre anonyme de demande de rançon en ligne, déclenchant une enquête en collaboration avec le MJIB et des experts en cybersécurité internes et externes. L’incident fait actuellement l’objet d’une analyse approfondie pour identifier sa cause et renforcer la sécurit...