Knowledge Base

Security Resources

Real-time industry news and expert insights to help you stay ahead of emerging threats.

22 articles • Page 1 of 3
CISO in a BoxDark Reading

Video Call Exploit Chains Two Flaws in Unisoc Modems

Researchers found that by combining two vulnerabilities, they could take over an Android device by delivering a payload and getting the victim to answer their phone.

1d ago
Read more
Ethical HackingThe Hacker News

Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects

GitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software that, under certain conditions, could allow an...

1d ago
Read more
Ethical HackingDark Reading

'Turf War' Between Claude Agents Leads to Self-Replicating Malware

Three testing models with the same goal but different directives engaged in "increasingly aggressive" territorial attacks on one another, according to Anthropic.

1d ago
Read more
CISO in a BoxDark Reading

Adam Shostack Talks Hugging Face & PHANTOM-B

World-class threat modeler Adam Shostack shared he was "blown away" by OpenAI's revelations about the Hugging Face attack, and explains why his new threat model for LLMs is both "lightweight yet...

1d ago
Read more
Ethical HackingThe Hacker News

Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection

Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository that it said could be...

1d ago
Read more
Ethical HackingThe Hacker News

Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads

A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to achieve arbitrary code execution on...

1d ago
Read more
Ethical HackingThe Hacker News

Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic

Cybersecurity researchers have traced the continued evolution of the Cavern (aka Cav3rn) command-and-control (C2) framework used by Iranian nation-state hackers in attacks targeting entities in...

1d ago
Read more
Ethical HackingDark Reading

Linux Botnet Evooo1Bot Expands Mirai Capabilities Well Beyond DDoS

The botnet adds exploitation modules, credential theft, and reverse SOCKS relays to turn compromised devices into persistent attacker infrastructure.

1d ago
Read more
Ethical HackingThe Hacker News

⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

The expensive attacks are not always the clever ones. This week had plenty of proof. Exposed services got hit, old bugs found fresh use, browser sessions became attack paths, and supply-chain...

1d ago
Read more

Showing 1-9 of 22 articles

Stay Updated

Subscribe to our newsletter for the latest cybersecurity insights, threat alerts, and practical security tips delivered to your inbox.

No spam. Unsubscribe anytime. Unsubscribe here

Need Professional Security Help?

Our team is ready to help you implement the security best practices discussed in these resources.

Lisa

Security Assistant

10 left

Hi! I'm Lisa, your security assistant from LockedCyber. I'm here to help you with:


  • Security questions - From basic concepts to POPIA compliance
  • Service guidance - Finding the right security solution for your needs
  • Best practices - Practical tips to improve your security posture

How can I help you today?