Welcome!

Unlock your personalized experience.
Sign Up

Cybersecurity

Critical vm2 sandbox bug lets attackers execute code...

A critical vulnerability in the popular Node.js sandboxing library vm2 allows...

From Stuxnet to ChatGPT: 20 News Events That Shaped ...

As part of its 20th anniversary celebration, Dark Reading looks back on 20 of...

Microsoft Edge Stores Passwords in Process Memory, P...

A proof-of-concept exploit (PoC) shows how someone with admin privileges can ...

The EOL Blind Spot in Your CVE Feed: What SCA Tools ...

Critical vulnerabilities can exist in open source software your scanners don'...

FTC to ban data broker Kochava from selling American...

The FTC will ban data broker Kochava and its subsidiary, Collective Data Solu...

China-Linked UAT-8302 Targets Governments Using Shar...

A sophisticated China-nexus advanced persistent threat (APT) group has been a...

How the Story of a USB Penetration Test Went Viral

Two decades ago Dark Reading posted its first blockbuster — a column by a pen...

Vimeo data breach exposes personal information of 11...

The ShinyHunters extortion gang stole personal information belonging to over ...

Karakurt extortion gang ‘cold case’ negotiator gets ...

A Latvian national extradited to the United States was sentenced to 8.5 years...

Google now offers up to $1.5 million for some Androi...

Google overhauls its Android and Chrome vulnerability rewards programs, offer...

We Scanned 1 Million Exposed AI Services. Here's How...

While the software industry has made genuine strides over the past few decade...

ScarCruft hackers push BirdCall Android malware via ...

The North Korean hacker group APT37 has been delivering an Android version of...

Microsoft Details Phishing Campaign Targeting 35,000...

Microsoft has disclosed details of a large-scale credential theft campaign th...

Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exp...

A critical security vulnerability in Weaver (Fanwei) E-cology, an enterprise ...

ScarCruft Hacks Gaming Platform to Deploy BirdCall M...

The North Korea-aligned state-sponsored hacking group known as ScarCruft has ...

Weaver E-cology critical bug exploited in attacks si...

Hackers have been exploiting a critical vulnerability (CVE-2026-22679) in the...