Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Analysts Warn of Cybersecurity Risks in Humanoid Robots

Think "Blade Runner," but the robots can be hacked more easily than your home computer.

DARKReading
Gemini Enterprise No-Click Flaw Exposes Sensitive Data

Google has fixed a critical vulnerability that enabled attackers to add malicious instructions to common documents to exfiltrate sensitive corporate information.

#vulnerability#google
Apache Issues Max-Severity Tika CVE After Patch Miss

The Apache Software Foundation's earlier fix for a critical Tika flaw missed the full scope of the vulnerability, prompting an updated advisory and CVE.

Exploitation Activity Ramps Up Against React2Shell

Attacks against CVE-2025-55182, which began almost immediately after public disclosure last week, have increased as more threat actors take advantage of the flaw.

US Treasury Tracks $4.5B in Ransom Payments since 2013

The US Treasury's Financial Crimes Enforcement Network shared data showing how dramatically ransomware attacks have changed over time.

'Broadside' Mirai Variant Targets Maritime Logistics Sector

"Broadside" is targeting a critical flaw in DVR systems to conduct command injection attacks, which can hijack devices to achieve persistence and move laterally.

Rust Code Delivers Better Security, Also Streamlines DevOps

Software teams at Google and other Rust adopters see safer code when using the memory-safe language, as well as fewer rollbacks and less code review.

'ShadyPanda' Hackers Weaponize Millions of Browsers

The China-based cyber-threat group has been quietly using malicious extensions on the Google Chrome and Microsoft Edge marketplaces to spy on millions of users.

Critical React Flaw Triggers Calls for Immediate Action

The vulnerability, which was assigned two CVEs with maximum CVSS scores of 10, may affect more than a third of cloud service providers.

Arizona AG Sues Temu Over 'Stealing' User Data

The suit alleges the Chinese retailer's app secretly accesses and harvests users' sensitive information without their knowledge or consent.