A critical vulnerability in PHP’s extract() function enables attackers to trigger memory corruption that can lead to arbitrary native code…

A critical vulnerability in the Erlang/Open Telecom Platform (OTP) SSH implementation that allows attackers to execute arbitrary code without authentication. …

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding a critical SonicWall vulnerability that is actively…

Mozilla released an important security update for Firefox, addressing a high-severity vulnerability that could lead to exploitable memory corruption.  The…

The notorious online message board 4chan experienced a significant security breach, with hackers reportedly accessing and leaking sensitive internal data…

OpenID Foundation’s AuthZEN Working Group is currently drafting a new specification (version 1.0, draft 03 at the time of publication)…

A significant vulnerability in Samsung Galaxy S24 devices that allows network-adjacent attackers to create arbitrary files on affected installations.  The…

A critical vulnerability affecting over 100,000 WordPress websites has been discovered in the SureTriggers WordPress plugin, potentially allowing attackers to…

A critical vulnerability in NVIDIA’s Container Toolkit, CVE-2024-0132, remains exploitable due to an incomplete patch, endangering AI infrastructure and sensitive…