In this post, we continue with our recommendations for achieving least privilege at scale with AWS Identity and Access Management…

A cybersecurity researcher, Zakhar Fedotkin, demonstrated how differences in PDF rendering across various browsers and operating systems can be exploited…

Security researchers have discovered a new vulnerability in OpenSSH, identified as CVE-2024-6409, which could potentially allow remote code execution attacks on affected systems. This…

A proof-of-concept (PoC) exploit has been released for a critical vulnerability in the VMware vCenter Server, potentially allowing authenticated remote…

A new advanced persistent threat (APT) actor has been observed targeting Russian government entities for cyberespionage, according to a new…

The attack surface isn’t what it once was and it’s becoming a nightmare to protect. A constantly expanding and evolving…

Today we are releasing versions 17.0.2, 16.11.4, 16.10.7 for GitLab Community Edition (CE) and Enterprise Edition (EE). These versions contain…

Secret Push Protection is now in Beta on GitLab.com and GitLab Dedicated. Secret Push Protection blocks secrets such as keys…

English | French | German | Italian | Spanish Last month, we shared that we are investing €7.8 billion in…

Cisco has issued a security advisory regarding a critical remote code execution (RCE) vulnerability, dubbed “regreSSHion,” that affects multiple products.…