Archive
217–228 of 851 items
Critical Citrix NetScaler auth bypass now leveraged in attacks
Attackers have begun targeting a critical-severity Citrix NetScaler auth bypass flaw (CVE-2026-19490) in the wild, according to vulnerability intellig...
Sep 04, 2026 · StaffOriginally on Wedgetail
PostgreSQL Fixes 12-Year-Old Logical Decoding Flaw Enabling Replication-Role Code Execution
PostgreSQL has released updates to address a security flaw that allows an account with the REPLICATION attribute to run arbitrary code as the operatin...
Sep 04, 2026 · StaffOriginally on Wedgetail
New Ted Backdoor Hides Inside Victims' Own HAProxy Builds to Intercept Web Traffic
A previously undocumented Linux toolkit has been found compiled directly into the trojanized HAProxy load balancers of two South Korean organizations,...
Sep 04, 2026 · StaffOriginally on Wedgetail
UK account-hack losses surge as new reporting system exposes hidden cases
In its first annual assessment, published Friday, the City of London Police said victims reported losing £6.3 million ($8.5 million) to account hacks ...
Sep 04, 2026 · StaffOriginally on Wedgetail
39 New Methods That Compromise Passkey Authentication
Passkeys eliminate many password-based attacks, but researchers have documented 39 methods for compromising authentication built around them. Token ex...
Sep 04, 2026 · StaffOriginally on Wedgetail
Russian data centers face new security requirements amid Ukraine's drone threats
Russia's data centers are concentrated in areas increasingly exposed to Ukrainian drone attacks. The Kremlin wants them to stiffen their physical defe...
Sep 04, 2026 · StaffOriginally on Wedgetail
New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges
An anonymous security researcher who uses the "Nightmare Eclipse" handle released a CrowdStrike Falcon zero-day exploit named "FalconFlank" that lets ...
Sep 04, 2026 · StaffOriginally on Wedgetail
AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?
A tidal wave of bug reports is overwhelming software vendors, exposing secure-by-design failures and creating disclosure bottlenecks.
Sep 04, 2026 · StaffOriginally on Wedgetail
US military disables ad trackers on troops’ phones amid security fears
Senator releases letters from armed forces after reports of location data being used to track US troops in Middle EastUS military officials say they h...
Sep 04, 2026 · StaffOriginally on Wedgetail
G7 urges organizations to prepare for quantum cyber threats
In a joint advisory released Thursday, the G7 Cyber Security Working Group and the U.S. Cybersecurity and Infrastructure Security Agency, CISA, said o...
Sep 04, 2026 · StaffOriginally on Wedgetail
Insurers Search for Answers to Rein in Rogue AI
As incidents of unintended harm caused by rogue AI agents mount, CISOs and insurance firms are figuring out how to handle the fallout.
Sep 04, 2026 · StaffOriginally on Wedgetail
Google warns of new Chrome zero-day flaw exploited in attacks
Google has updated the Chrome browser to address an actively exploited high-severity zero-day flaw in the V8 engine and 11 other vulnerabilities. [......
Sep 04, 2026 · StaffOriginally on Wedgetail