View the latest threats and global cybersecurity news.
Fortinet has confirmed that a new attack campaign observed recently against customer devices is exploiting an unpatched issue to bypass […]
Cybercriminals have built structured criminal groups with an organizational model similar to that of a legitimate business. “Cybercrime has become […]
We’re proud to share that NETSCOUT has been recognized for industry-leading excellence in network detection and response (NDR). This […]
In today’s digital landscape, encrypted traffic is the norm—not the exception. While encryption such as Transport Layer Security (TLS) 1.3 […]
srcset="https://b2b-contenthub.com/wp-content/uploads/2026/01/480442374_625365396806507_3730545703312550477_n.jpg?quality=50&strip=all 2048w, […]
srcset="https://b2b-contenthub.com/wp-content/uploads/2026/01/shutterstock_2692866681.png?quality=50&strip=all 2500w, […]
Lesen Sie, worauf es bei der Zusammenarbeit zwischen Ihrem IT-Security- und Engineering-Team ankommt. Foto: Lipik Stock Media – […]
Twelve US companies hit by the INC ransomware group were able to recover encrypted data after a cybersecurity firm discovered the cloud storage […]
Computers with Telnet open are in immediate danger of being compromised due to a critical vulnerability that allows attackers to bypass […]
Spanish online electronics retailer PcComponentes has denied a hacker’s claims to have stolen data on its customers. Hackrisk.io, a strategic […]
Der Regensburger IT-Dienstleister Conceptnet wurde Opfer einer Ransomware-Attacke.fadfebrian – shutterstock.com Der Regensburger […]
Cisco has released patches for a critical remote code execution vulnerability in its unified communications products that attackers are actively […]
VoidLink, the high-impact Linux malware framework disclosed last week, is back under scrutiny for claims that the bulk of its development was done by […]
Lesen Sie, warum CISOs den M365-Tenant stärker in den Blick nehmen müssen.IB Photography – shutterstock.com Im Jahr 2010 war Office 365 eine […]
CISO’s are increasingly turning to AI-enabled security technologies to augment their organizations’ cyber defense and extend the capabilities of […]
Lately, the Curl code library has been receiving a lot of AI-generated reports from users hoping to receive financial compensation from the tool’s […]
A critical two-factor authentication bypass vulnerability in the Community and Enterprise editions of the GitLab application development platform has […]
Internal testing, product demonstrations, and security training are critical practices in cybersecurity, giving defenders and everyday users the […]
In July 2025, Ingram Micros suffered devastating consequences from a ransomware in which the IT distributor’s logistics were paralyzed for a […]
Oracle has handed security teams their first big patching workload of the year, with its latest quarterly update containing a hefty 337 security […]
A new Internet-of-Things botnet called Kimwolf has spread to more than 2 million devices, forcing infected systems to participate in massive […]
Microsoft today issued patches to plug at least 113 security holes in its various Windows operating systems and supported software. Eight of the […]
Our first story of 2026 revealed how a destructive new botnet called Kimwolf rapidly grew to infect more than two million devices by […]
The story you are reading is a series of scoops nestled inside a far more urgent Internet-wide security advisory. The vulnerability at issue has been […]
KrebsOnSecurity.com celebrates its 16th anniversary today! A huge "thank you" to all of our readers -- newcomers, long-timers and drive-by critics […]
The Trump administration has pursued a staggering range of policy pivots this past year that threaten to weaken the nation’s ability and […]
Direct navigation -- the act of visiting a website by manually typing a domain name in a web browser -- has never been riskier: A new study finds the […]
Microsoft today pushed updates to fix at least 56 security flaws in its Windows operating systems and supported software. This final Patch Tuesday of […]
A sprawling academic cheating network turbocharged by Google Ads that has generated nearly $25 million in revenue has curious connections to a […]
China-based phishing groups blamed for non-stop scam SMS messages about a supposed wayward package or unpaid toll fee are promoting a new offering, […]
2.5 million people were affected, in a breach that could spell more trouble down the line.
Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.
Over 130 companies tangled in sprawling phishing campaign that spoofed a multi-factor authentication system.
Lockbit is by far this summer’s most prolific ransomware group, trailed by two offshoots of the Conti group.
Tens of thousands of cameras have failed to patch a critical, 11-month-old CVE, leaving thousands of organizations exposed.
Twitter is blasted for security and privacy lapses by the company’s former head of security who alleges the social media giant’s actions amount […]
CISA is warning that Palo Alto Networks’ PAN-OS is under active attack and needs to be patched ASAP.
Fake travel reservations are exacting more pain from the travel weary, already dealing with the misery of canceled flights and overbooked hotels.
Separate fixes to macOS and iOS patch respective flaws in the kernel and WebKit that can allow threat actors to take over devices and are under […]
An insufficient validation input flaw, one of 11 patched in an update this week, could allow for arbitrary code execution and is under active attack.