The LockBit ransomware group was the most active in the world last year, according to a new advisory, and has collected nearly $100 million in ransoms in three years.
A Chinese cyberespionage group known as UNC3886 has been exploiting a new zero day (CVE-2023-20867) in VMware Tools.
Fortinet has released new firmware updates to patch a remote code execution vulnerability (CVE-2023-27997) that affects all versions of the FortiGate appliance.
According to a watchdog report, the National Nuclear Security Administration is still in the "early stages" of fully implementing security measures across its operational technology (OT) and nuclear weapons IT environments.
The DoJ unsealed the indictment charging two Russian nationals with gaining unauthorized access to the Mt. Gox server in 2011.
Welcome back to Source Code, Decipher's weekly news wrap podcast with input from our sources.
After deploying two patches, Barracuda said that businesses impacted by an actively exploited flaw must immediately replace their ESG appliances.
A newly identified phishing and BEC campaign is targeting banks and financial organizations and began with the compromise of a trusted vendor.
Several versions of VMware's network monitoring tool have flaws that could enable an attacker with existing network access to remotely execute code.
The MOVEit Transfer bug that researchers say allows remote code execution, is being exploited by the Cl0p ransomware group and other actors to steal data and deploy ransomware.
The type confusion bug is the third zero day that Google has addressed this year.
In upcoming software releases, Apple will change the way passkeys are managed, allowing third-party apps to sync and share them.
The North Korean Kimsuky group has targeted think tanks, academic institutions and news media organizations in order to steal their credentials and gather intelligence.
Threat actors continue to target the critical-severity file transfer bug to launch data exfiltration attacks, and researchers say organizations should potentially expect ransom emails in the coming weeks.
A critical zero day flaw in all version of MOVEit Transfer is under active attack by multiple threat actors.