Follow Cyber Kendra on Google News! | WhatsApp | Telegram

Add as a preferred source on Google
Security

Ransomware Use Microsoft's BitLocker to Encrypt Users Files

In a disturbing development, cybersecurity researchers at Kaspersky have uncovered a new ransomware strain that leverages  Microsoft's built-in B…

JAVS Software Compromised in Supply Chain Attack

An alarming supply chain attack has struck Justice AV Solutions (JAVS), a leading provider of courtroom audio-video recording technology. Cybersecuri…

Critical SSRF Vulnerability Discovered in NextJS Framework

A critical Server-Side Request Forgery (SSRF) vulnerability has been uncovered in the popular NextJS framework, a widely adopted solution for buildin…

Security Flaw in PDF.js and React-PDF Puts Millions at Risk

A critical security vulnerability has been uncovered in two widely used PDF libraries, PDF.js and React-PDF, potentially exposing millions of users t…

Critical Vulnerabilities found in F5 Next-Gen Central Manager

Cybersecurity firm Eclypsium disclosed the discovery of several remotely exploitable vulnerabilities in F5's flagship BIG-IP Next Central Manager…

Authorities Identify and Sanction LockBit Ransomware Admin

In a significant development in the fight against cybercrime, authorities from the U.K. National Crime Agency (NCA), U.K. Foreign, Commonwealth and D…

Cisco Warns of State-Backed Hackers Exploiting Zero-Days in ASA Devices

In an alarming revelation, Cisco Talos researchers have uncovered a sophisticated espionage campaign targeting Cisco Adaptive Security Appliances (AS…

Major Keyboard Apps Leak User Keystrokes to Network Eavesdroppers

In a startling new report , researchers at Citizen Lab have revealed critical vulnerabilities in popular mobile keyboard apps used by over a billion …

Kaspersky Exposes ToddyCat's Advanced Cyber-Espionage Tools and Expanding Attacks

Kaspersky Lab, a leading cybersecurity firm, has released a series of reports detailing the evolving tactics and expanding the reach of the Advanced …

MITRE Suffers Cyber Breach, Hacker Exploits Ivanti Zero-Day Flaw

MITRE, a leading organization in cybersecurity research and development, has recently disclosed a sophisticated cyber breach that highlights the evol…

[CVE-2024-3400] Palo Alto Networks Firewall Vulnerability Exploited in the Wild

In a startling revelation, cybersecurity firms Volexity and watchTowr have reported that a critical zero-day vulnerability in Palo Alto Networks Glob…

Critical Vulnerability Discovered in PuTTY Client and Related Products

The widely-used PuTTY client and its related components have identified a severe security vulnerability, affecting versions 0.68 to 0.80. The flaw tr…

Google Introduces Device Bound Session Credentials to Combat Cookie Theft

In a significant move to enhance online security, Google's Chromium team has unveiled a groundbreaking initiative called Device Bound Session Cr…

The Ultimate Guide to Starting a Successful Freelance Cybersecurity Business in 2024

Are you ready to take control of your career and launch your own freelance cybersecurity business? Freelancing has become an increasingly popular car…

"BatBadBut" Vulnerability Discovered in Rust Standard Library on Windows

A critical security vulnerability, dubbed " BatBadBut ," has been discovered in the Rust standard library, affecting all versions before 1.…

Newly Uncovered "Branch History Injection" Attack Bypass Spectre Mitigations

A team of cybersecurity researchers has unveiled a new variant of the notorious Spectre v2 vulnerability , dubbed " Branch History Injection &qu…

Research Uncovers Critical Security Risks in Hugging Face's AI Platform

Security researchers at Wiz, a leading cloud security company, have found a critical security vulnerability in Hugging Face's platform that leads…

New HTTP/2 Vulnerability Poses Severe Threat to Server Availability

A recently discovered class of vulnerabilities within numerous HTTP/2 protocol implementations, dubbed the "CONTINUATION Flood," has been f…

Microsoft Falls Short in Email Security, Research Reveals

A recent report by VIPRE Security Group reveals that email-based threats have undergone significant changes in 2024, necessitating the adoption of ad…