Security feed

Today
The bug allows attackers to carry out XML External Entity (XXE) injection attacks via crafted XFA files inside PDF files. The post Critical Apache Tika Vulnerability Leads to XXE Injection appeared first on SecurityWeek. [...]
Mon, Dec 08, 2025
Source: securityweek
An increasing number of threat actors have been attempting to exploit the React vulnerability CVE-2025-55182 in their attacks. The post Exploitation of React2Shell Surges appeared first on SecurityWeek. [...]
Mon, Dec 08, 2025
Source: securityweek
State-sponsored cyber actors with the People's Republic of China (PRC) are leveraging a sophisticated backdoor malware. [...]
Mon, Dec 08, 2025
Source: Security magazin
Earlier
Other noteworthy stories that might have slipped under the radar: Akamai patches HTTP smuggling vulnerability, Claude Skills used to execute ransomware, PickleScan flaws. The post In Other News: X Fined €120 Million, Array Flaw Exploited, New Iranian Backdoor appeared first on SecurityWeek. [...]
Fri, Dec 05, 2025
Source: securityweek
The critical React vulnerability has been exploited in the wild by Chinese and other threat actors. The post Cloudflare Outage Caused by React2Shell Mitigations appeared first on SecurityWeek. [...]
Fri, Dec 05, 2025
Source: securityweek
The cybersecurity startup detects impersonation risk in real-time, across video, phone, and chat communication. The post Imper.ai Emerges From Stealth Mode With $28 Million in Funding appeared first on SecurityWeek. [...]
Fri, Dec 05, 2025
Source: securityweek
Warp Panda has been using the BrickStorm, Junction, and GuestConduit malware in attacks against US organizations. The post US Organizations Warned of Chinese Malware Used for Long-Term Persistence appeared first on SecurityWeek. [...]
Fri, Dec 05, 2025
Source: securityweek
The startup will invest in expanding its engineering and research teams, deepening product integrations, and scaling go-to-market efforts. The post Lumia Security Raises $18 Million for AI Security and Governance appeared first on SecurityWeek. [...]
Fri, Dec 05, 2025
Source: securityweek
Cloudflare recently mitigated a new record-breaking Aisuru attack that peaked at 14.1 Bpps. The post Aisuru Botnet Powers Record DDoS Attack Peaking at 29 Tbps appeared first on SecurityWeek. [...]
Fri, Dec 05, 2025
Source: securityweek
Helmet Security has built an end-to-end platform that secures the infrastructure for agentic AI communication. The post Helmet Security Emerges From Stealth Mode With $9 Million in Funding appeared first on SecurityWeek. [...]
Fri, Dec 05, 2025
Source: securityweek


Print pagePDF pageEmail page