


U.S. Govt. Funding for MITRE’s CVE Ends April 16, Cybersecurity Community on Alert
Read More The U.S. government funding for non-profit research giant MITRE to operate and maintain its Common Vulnerabilities and Exposures (CVE) program will expire Wednesday, an unprecedented development that could shake up one of the foundational pillars of the...
Chinese Hackers Target Linux Systems Using SNOWLIGHT Malware and VShell Tool
Read More The China-linked threat actor known as UNC5174 has been attributed to a new campaign that leverages a variant of a known malware dubbed SNOWLIGHT and a new open-source tool called VShell to infect Linux systems. “Threat actors are increasingly using...
Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session Persistence
Read More A critical security vulnerability has been disclosed in the Apache Roller open-source, Java-based blogging server software that could allow malicious actors to retain unauthorized access even after a password change. The flaw, assigned the CVE identifier...