
Malicious Packagist Packages Deploying Cross-Platform RATs in Laravel Ecosystems
In early 2025, security researchers identified a calculated supply chain attack targeting PHP developers through Packag...
Stay ahead of cyber threats with expert insights, breaking news, and practical guides tailored specifically for the Cyber Security landscape.
Join 5,000+ subscribers. No spam, unsubscribe anytime.
Deep dives into the latest security trends. (173 articles)

In early 2025, security researchers identified a calculated supply chain attack targeting PHP developers through Packag...

Security researchers do not often use the phrase "drop tools and patch immediately." When both watchTowr and Defused Cy...

Three days. That is the patch window CISA handed Federal Civilian Executive Branch agencies for CVE-2025-53521 — a crit...

German federal police don't show up at your door over routine software vulnerabilities. When law enforcement physically...

On March 26, 2026, Proofpoint analysts caught TA446 — the Russia-linked group also tracked as SEABORGIUM and Coldriver...

Sixty-one million cyberattack attempts in a single quarter. That's the number P. Vasudevan, Executive Director of the R...

A wave of Magento compromises that began March 19, 2025, has hit over 56.7% of vulnerable stores worldwide — and the pa...

IoT Botnets Hit 30 Tbps: Inside the DoJ's Global DDoS Takedown In early 2025, the U.S. Department of Justice disrupted...

In early 2025, a threat actor distributed seven malicious npm packages designed to impersonate legitimate CLI utilitie...

A CVSS 9.8 critical vulnerability in Oracle Identity Manager doesn't just threaten one application — it threatens every...

Security teams spend considerable effort protecting credential stores, password managers, and SMS-based OTPs — and attac...

In January 2026, a SOC team at a mid-sized financial services firm received an unusual alert: an unauthenticated POST r...