Category: Cybersecurity

  • Blog
  • Category: Cybersecurity
GitHub Enterprise Server 3.13.3 tackles critical SAML vulnerability

GitHub Enterprise Server 3.13.3 tackles critical SAML vulnerability

GitHub has announced the release of Enterprise Server 3.13.3, which addresses several important security vulnerabilities, alongside various bug fixes and feature enhancements. This update focuses particularly on enhancing the security of GitHub Enterprise Server instances. Key Security Fixes Additional Enhancements in Version 3.13.3 Known Issues While this update enhances security and usability, GitHub has acknowledged

Roblox developers targeted by year-long malware campaign

Roblox developers targeted by year-long malware campaign

A sustained malware campaign targeting Roblox developers through malicious npm packages has been uncovered by Checkmarx security researchers. The attackers are impersonating the popular “noblox.js” library, publishing dozens of packages designed to steal sensitive information and compromise systems. The campaign, which has been active for over a year, exploits trust in the open-source ecosystem. It particularly targets the Roblox

DataBreach.com Competes with HaveIBeenPwned in Data Protection Services

DataBreach.com Competes with HaveIBeenPwned in Data Protection Services

Navigating Data Breaches: How to Protect Your Personal Information Data breaches have become increasingly common, placing millions of individuals at risk of having their personal information exposed. These incidents can involve everything from email addresses and passwords to more sensitive data. While predicting when a breach may occur is impossible, there are proactive steps you

EMERALDWHALE exploits vulnerable Git configuration files

EMERALDWHALE exploits vulnerable Git configuration files

Sysdig’s Threat Research Team (TRT) has unveiled a significant global cyber operation known as EMERALDWHALE, which has successfully stolen over 15,000 cloud service credentials by exploiting exposed Git configuration files. This operation highlights serious security vulnerabilities in cloud infrastructure and source code management practices. Overview of EMERALDWHALE The EMERALDWHALE operation targeted misconfigured web services, leading