SpaceX Starship Upgrade Launches New Space Security Era
SpaceX’s upgraded Starship launches first test flight May 19. New capabilities could reshape space infrastructure—and expand the attack surface cybersecurity pros must defend.
SpaceX’s upgraded Starship launches first test flight May 19. New capabilities could reshape space infrastructure—and expand the attack surface cybersecurity pros must defend.
Rocket.Chat has successfully migrated to Meteor 3.0, enabling the platform to move off an end-of-life (EOL) Node.js runtime that posed significant security and operational risks. This critical infrastructure upgrade brings the open-source communication platform onto a supported Node.js version, elim
The Internet Society Foundation has launched the Common Good Cyber Fund, a $1 million grant program aimed at strengthening cybersecurity infrastructure and capacity in underserved regions worldwide. The initiative will support projects focused on defensive security, capacity building, and resilience
Over 900 Oracle E-Business Suite (EBS) instances remain exposed to internet-facing attacks, with threat actors actively exploiting known vulnerabilities to gain unauthorized access. These publicly accessible systems represent critical enterprise infrastructure managing finance, HR, supply chain, and
A critical privilege escalation vulnerability (CVE-2024-20272) in Cisco Unified Communications Manager (CUCM) has been weaponized by threat actors in less than 24 hours after public disclosure. The flaw allows authenticated attackers to escalate privileges to root level, granting complete system con
Threat actors are abusing the legitimate VLC Media Player executable to sideload malicious DLL files and deploy ValleyRAT, a sophisticated remote access trojan. By exploiting DLL search order hijacking, attackers use a genuine VLC component (vlc.exe) alongside a weaponized libvlc.dll to establish pe
Critical flaws in n8n workflow automation platform can be chained for full remote code execution. Three CVEs put automation systems at serious risk.
Europol coordinated a multinational operation to dismantle AudiA6, a sophisticated cryptocurrency laundering service that facilitated the washing of illicit proceeds for multiple ransomware groups. The takedown involved law enforcement from seven countries, resulting in server seizures, arrests, and
The Handala hacking group has claimed responsibility for breaching California Water Service (Cal Water), one of the largest investor-owned water utilities in the United States. The group alleges exfiltration of sensitive data and threatens to release it publicly. This incident adds to growing concer
Security researchers have uncovered a sophisticated criminal operation behind EtherRAT malware, revealing an extensive infrastructure spanning multiple domains, phishing pages, and distribution channels. The network facilitated credential theft, financial fraud, and unauthorized system access across