In a significant supply chain attack, the GitHub action tj-actions/changed-files was recently compromised, putting CI/CD pipelines and workflow secrets at risk. This attack highlights the vulnerabilities associated with third-party dependencies in continuous integration and continuous delivery
A critical security vulnerability in Microsoft Windows' handling of Link (LNK) files has come to the forefront, shedding light on a severe cybersecurity issue. The flaw has been discovered to enable malicious actors to embed harmful payloads within seemingly benign LNK files, making them a
In a significant move to enhance cybersecurity measures, NTT DATA, a prominent global leader in digital business and IT services, has expanded its partnership with CrowdStrike, a forefront cybersecurity firm. This collaboration aims at significantly strengthening NTT DATA's managed
Between late January and early March 2025, cybersecurity researchers at Forescout's Vedere Labs uncovered a series of sophisticated intrusions leveraging critical vulnerabilities discovered within Fortinet systems. Attributed to a newly identified threat actor tracked as “Mora_001,” the att
Recent findings by Tenable Research have brought to light concerning vulnerabilities in the AI chatbot DeepSeek R1, specifically its ability to be manipulated into producing malicious software such as keyloggers and ransomware. DeepSeek R1 itself may not be capable of independently creating
With the ever-evolving threat landscape, it’s essential for enterprises to stay vigilant and ensure their security solutions are always up to date. Fortinet has recently unveiled a crucial security update addressing multiple vulnerabilities in some of its core products, safeguarding businesses from