Install
Infosecurity Magazine is the award winning online magazine dedicated to the strategy, insight and technology of information security The award winning online magazine dedicated to the strategy, insight and technology of information security
- 1,111articles · 365d
- 2+ day agolatest article
- Sep 14, 2025earliest in window
- 97%with images
- 357avg words
- cybersecurity 961
- security 933
- technology 573
- artificial intelligence 451
- malware 435
- ai 386
- cyber security news 342
- cybercrime 328
- cyber security 301
- business 241
- vulnerability 197
- data breach 173
- ransomware 166
- computer security 157
- software 133
- cyberattacks 126
- tech 119
- vulnerabilities 116
- windows 114
- phishing 110
- Science & Technology 648
- Crime & Law 437
- Computers & Electronics 423
- Software 379
- News 280
- Conflict, War & Peace 230
- Internet & Telecom 143
- Science & Nature 140
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Researcher Shares CrowdStrike Privilege Escalation Zero Day
5+ day, 20+ hour ago (383+ words) A security researcher has published details of what appears to be a zero-day privilege escalation exploit in CrowdStrike. The individual, identified by their online moniker “Nightmare Eclipse” (aka Infinite Nightmare, MSNightmare) posted the details to GitHub on September 3. “FalconFlank is…...
Nutex Health Says Patient Data Stolen, Hackers Threaten Leak
1+ week, 3+ day ago (520+ words) US healthcare provider Nutex Health has disclosed that a threat actor has stolen sensitive data, including of patients, and threatened to publish it online. The Texas-based firm, which delivers care through facilities throughout the US, made the notification in an…...
Healthcare Giant McKesson Investigates Data Breach Incident
1+ week, 4+ day ago (397+ words) One of America’s largest healthcare distributors is investigating a serious data breach which notorious threat actor ShinyHunters has claimed responsibility for. However, the firm revealed in a statement on August 28 that it was investigating an incident “involving third-party applications and…...
WordPress Plugin Flaw Exposes 40,000 Sites to Admin Takeover
3+ week, 5+ day ago (197+ words) Read more on WordPress plugin flaws: Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites The issue stems from a type confusion error in the plugin’s registration and automatic-login flow. Wordfence, a security plugin for WordPress, found that…...
Exposed AWS Access Key Linked to Data Breach Affecting 1500+ UK Charit
4+ week, 2+ day ago (428+ words) A compromised AWS access key was the likely root cause of the cyber-attack on CRM provider Beacon, which has exposed personal information held by around 1500 UK charities. The software provider said in an August 12 incident update that the access key…...
Cryptominer Abuses Linux PAM to Hide From SOC Analysts
1+ mon, 1+ week ago (417+ words) A cryptomining operation has been observed abandoning root access on compromised Linux servers in favor of impersonating low-privileged users, a deliberate downgrade designed to avoid the alerts that root activity triggers in a security operations center (SOC). According to new…...
RussianTA488 Returns With Persistent Outlook Web Access Attack
1+ mon, 2+ week ago (488+ words) A Russia-aligned espionage group has resurfaced after months without observed activity, using a half-click exploit against on-premises Outlook Web Access (OWA) to plant a browser-resident implant and establish server-side persistence that can survive credential rotation and device re-imaging. According to…...
Russian Hackers Exploit New ‘Zero-Click’ Attack
1+ mon, 2+ week ago (533+ words) Russian state-supported hackers are targeting organizations with a new attack technique using a Zero-Click method which doesn’t require users to interact with the phishing email. The campaign is designed to compromise networks and gain persistent access, a joint advisory from…...
Ubuntu snap-confine Vulnerability Enables Local Root Access
1+ mon, 3+ week ago (487+ words) A newly disclosed vulnerability in the Ubuntu component that isolates snap applications has been found to hand full root access to any local user on default installations of Ubuntu Desktop 24.04, 25.10 and 26.04. According to new research from the Qualys Threat Research…...
Russian Hacker Turns Jailbroken Claude Into Pentest Platform
1+ mon, 3+ week ago (422+ words) A Russian-speaking cyber-criminal has been observed moving in three months from posting a jailbreak tutorial on a Russian-language forum to selling a commercial offensive AI pentest platform built on the techniques he documented. According to new research from Cato CTRL,…...