❌

Normal view

There are new articles available, click to refresh the page.
Yesterday β€” 16 December 2025SecurityWeek

From Open Source to OpenAI: The Evolution of Third-Party Risk

16 December 2025 at 13:00

From open source libraries to AI-powered coding assistants, speed-driven development is introducing new third-party risks that threat actors are increasingly exploiting.

The post From Open Source to OpenAI: The Evolution of Third-Party Risk appeared first on SecurityWeek.

JumpCloud Remote Assist Vulnerability Can Expose Systems to Takeover

16 December 2025 at 06:39

The issue allows attackers to write arbitrary data to any file, or delete arbitrary files to obtain System privileges.

The post JumpCloud Remote Assist Vulnerability Can Expose Systems to Takeover appeared first on SecurityWeek.

Before yesterdaySecurityWeek

Apple Patches Two Zero-Days Tied to Mysterious Exploited Chrome Flaw

15 December 2025 at 03:47

Apple has released macOS and iOS updates to patch two WebKit zero-days exploited in an β€œextremely sophisticated” attack.

The post Apple Patches Two Zero-Days Tied to Mysterious Exploited Chrome Flaw appeared first on SecurityWeek.

In Other News: PromptPwnd Attack, macOS Bounty Complaints, Chinese Hackers Trained in Cisco Academy

12 December 2025 at 10:39

Other noteworthy stories that might have slipped under the radar: Pentagon orders accelerated move to PQC, US shuts down scheme to smuggle GPUs to China, DroidLock Android ransomware.

The post In Other News: PromptPwnd Attack, macOS Bounty Complaints, Chinese Hackers Trained in Cisco Academy appeared first on SecurityWeek.

❌
❌