Google Launches OSS Rebuild
Summary Google has unveiled OSS Rebuild, a project aimed at detecting supply chain attacks in open source software by independently reproducing and verifying package builds from major repositories like PyPI,…
Summary Google has unveiled OSS Rebuild, a project aimed at detecting supply chain attacks in open source software by independently reproducing and verifying package builds from major repositories like PyPI,…
Microsoft has issued critical patches for SharePoint Server 2016 to address two significant vulnerabilities (CVE-2025-53770 and CVE-2025-53771) that allow unauthorised access and impersonation of users. This emergency fix, released on…
Alaska Airlines Resumes Operations After System Glitch Grounds All Flights Alaska Airlines and Horizon Air grounded all flights on Sunday night due to a significant IT outage, resulting in a…
Summary A recent study published in JAMA Network Open found that over 750 hospitals across the US experienced significant network disruptions during the CrowdStrike outage on July 19, 2024. The…
Summary Google has unveiled a new project called OSS Rebuild, aimed at tackling supply chain attacks in open source software. By independently reproducing and verifying package builds, OSS Rebuild targets…
Microsoft patches critical SharePoint 2016 zero-days amid active exploits Microsoft has released urgent patches for SharePoint Server 2016 to fix serious vulnerabilities. These zero-day flaws, CVE-2025-53770 and CVE-2025-53771, could allow…
Hackers Exploit a Blind Spot By Hiding Malware Inside DNS Records Hackers are increasingly using DNS records to conceal malware, allowing it to slip past traditional security measures. Researchers at…
UK Backing Down on Apple Encryption Backdoor After Pressure From US Sir Keir Starmer’s government is reportedly trying to distance itself from a standoff with the Trump administration concerning demands…
Microsoft has unveiled emergency security updates to address two zero-day vulnerabilities in SharePoint, allowing attackers remote code execution on compromised servers. Dubbed ‘ToolShell’ attacks, these vulnerabilities (CVE-2025-53770 and CVE-2025-53771) have…
A ransomware attack targeting KNP, a transportation company with 158 years of history, highlights the vulnerabilities posed by weak passwords. Hackers, believed to belong to the Akira group, accessed the…