New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs
An unprivileged Linux program can time a hardware interrupt to land in the gap between a processor sanitizing its branch predictor and the kernel using it, r...
20 articles
An unprivileged Linux program can time a hardware interrupt to land in the gap between a processor sanitizing its branch predictor and the kernel using it, r...
Meta has become the latest AI company to confirm that one of its models hacked a real organization during cybersecurity testing, as similar incidents continu...
Here’s a five-stage action plan for confronting insider risk from noted cybersecurity executive Phil Venables.
The firewall policy management market had its earthquake: Skybox Security shut down overnight in February 2025, selling its technology to Tufin and leaving c...
Protective DNS is the rare control where the cheap options are genuinely good so this comparison leads with value.
Attackers used SQL injection to compile a post-exploitation toolkit inside an Oracle database
A U.S.
Apparently, opening the thing is now enough. A repo can run before the first prompt, a package can hide among hundreds, and a harmless-looking PDF can finish...
The UK's data protection regulator criticized the Metropolitan Police Service (MPS) for significant data handling failures, including sharing a stalking vict...
Salesforce's enterprise agentic AI platform, Agentforce 360, received approval from the Defense Department to securely handle high-sensitivity workloads, inc...
The NVM Express consortium released updates to its 11 specifications, introducing significant advancements in security and virtualization for solid-state dri...
Prompt injection attacks continue to present the most dangerous threat from large language models (LLMs), despite the relatively low number of recorded incid...
Beacon CRM confirmed it was the target of a cyberattack that resulted in the exposure of data belonging to a significant number of UK charities.
The Trump administration is reportedly drafting import rules that would bar optical transceivers from China, a move that could significantly impact U.S.
Connor Riley Moucka was extradited to the United States in July 2025 after he was arrested in Canada. The post Snowflake Hacker Pleads Guilty in US Court app...
As outlined in HackRead, over 102,000 private records from Brazil’s health surveillance system were left accessible online without any security measures, exp...
Google locked hundreds of legitimate Blogger websites, with some even being deleted, due to a false positive flagging them for violating the "Malware and Sim...
Apple's Private Relay, an opt-in feature designed to hide a user's IP address when browsing the internet with Safari, was found to have flaws that can reveal...
Oligo Security has linked TeamPCP to ShadowRay 2.
A new mobile ad fraud scheme, dubbed Papyrus, is using a cluster of novel-reading apps to generate hidden browser traffic, according to IAS Threat Lab. Sampl...