Cyber News
Dashboard / Cyber News

Ni
Nir Ohfeld-2021-09-14
OMIGOD: Critical Vulnerabilities in OMI Affecting Countless Azure Customers
Wiz Research recently found 4 critical vulnerabilities in OMI, which is one of Azure's most ubiquitous yet least known software agents and is deployed on a large portion of Linux VMs in Azure.

Sa
Sagi Tzadik-2021-08-26
ChaosDB: How we hacked thousands of Azure customers’ databases
As part of building a market-leading CNAPP, Wiz Research is constantly looking for new attack surfaces in the cloud. Two weeks ago we discovered an unprecedented breach that affects Azure’s flagship database service, Cosmos DB.

Be
Benjamin Miller-2021-06-24
The 10 must-attend sessions at Black Hat 2021
The 10 must-attend sessions at Black Hat 2021

Sh
Shir Tamari-2021-02-02
82% of companies unknowingly give 3rd parties access to all their cloud data
Cloud identity permissions are complex. So complex that innocent looking permissions provided to 3rd party vendors can lead to unintended exposure of all of your data.

CI
CISACISA Releases Foundational, Flexible Guidance to Help Federal Agencies Implement Effective Logging, Visibility and Operational Standards
22 days ago

CI
CISACISA Unveils New Cybersecurity Resources for K-12 Schools and Districts
30 days ago

CI
CISACISA, FBI and Partners Warn Organizations of Gunra Ransomware Actors Targeting Multiple Critical Infrastructure Sectors
2026-08-10

CI
CISACISA and Partners Unveil Updated Software Bill of Materials Resource That Improves Transparency, Security and Risk-Informed Decision Making
2026-07-29

CI
CISACISA Joins Australia and Others to Publish Guidance to Isolate Operational Technology and Enabling Systems in Critical Infrastructure
2026-07-28

CI
CISACISA, NSA, FBI and Partners Warn Zimbra Collaboration Suite Users of Ongoing Russian State-Supported Malicious Threat Activity
2026-07-23

CI
CISACISA and Partners Publish Guidance to Help Software Manufacturers and Online Service Providers Work With Security Researchers
2026-07-15

Ha
Hazel BurtonThe story behind the intelligence
8 days ago

Da
David J. Bianco“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend
15 days ago

Ja
James Hodgkinson-15 days ago
JavaScript obfuscation: From party trick to phishing kit
Learn the basics of what obfuscation is, why a researcher would try to reverse it, and several ways to approach the problem.

Jo
Joey Chen-22 days ago
UAT-10147 deploys SPECTRE: A cross-platform implant with Linux rootkit and BYOVD capabilities
The newly identified SPECTRE implant represents an evolution in commodity intrusion tooling, integrating cross-platform C2 operations, process injection, credential theft, anti-analysis protections, and kernel-level endpoint detection and response (EDR) bypass functionality.

Ch
Chetan Raghuprasad-29 days ago
Dissecting the JWR phishing framework
Cisco Talos recently identified an undocumented phishing framework, internally branded "JWR" by its developer, built to convincingly impersonate checkout and login pages across major payment and shopping platforms.
![[Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidents](/images/defaultNews.jpg)
Am
Amy Ciminnisi-2026-08-03
[Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidents
Register for an exclusive, unrecorded 30-minute webinar to review the most high-impact incidents Talos IR faced in Q2.
Latest News
See All
in
[email protected] (The Hacker News)-4 days ago
PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution

Gu
Guru Baran-4 days ago
Bimbo Bakeries USA Confirms Data Breach in Oracle EBS Zero-Day Attack

Bi
Bill Toulas-4 days ago












