My Courses
-

A summary of the key announcements from vendors at Black Hat USA 2025 (Part 1).
The 2025 edition of the Black Hat conference in Las Vegas has become a significant platform for numerous companies to showcase their latest products and services. This year’s event highlights a diverse range of innovations aimed at enhancing cybersecurity measures across various sectors. Attendees are witnessing cutting-edge technologies and solutions designed to address the evolving…
-

Cybercriminals have the ability to access IIS machine keys by taking advantage of a vulnerability in SharePoint’s deserialization process.
Hackers are employing a sophisticated attack method that exploits a deserialization vulnerability in SharePoint to steal Internet Information Services (IIS) Machine Keys. This exploitation allows attackers to bypass security measures, forge trusted data, and ultimately achieve persistent Remote Code Execution (RCE) on compromised servers. According to SANS researcher Bojan Zdrnja, the attack initiates with the…
-

The August 2025 update for Android addresses a Qualcomm vulnerability that has been exploited.
The Android August 2025 security update addresses a critical vulnerability affecting the Adreno GPU, which was confirmed to have been exploited as early as June. This update is crucial for users, as it mitigates risks associated with the Qualcomm vulnerability that could potentially compromise device security. By implementing this patch, Android aims to enhance the…
-

How Leading CISOs Manage Their SOCs to Avoid Alert Overload and Ensure No Genuine Incidents are Overlooked
Security Operations Centre (SOC) teams often find themselves overwhelmed by alerts, despite significant investments in security tools. False positives accumulate, stealthy threats evade detection, and critical incidents can become obscured in the noise. Leading Chief Information Security Officers (CISOs) have recognised that the solution does not lie in simply adding more tools to SOC workflows.…
-

SonicWall is actively searching for zero-day vulnerabilities following a significant increase in attacks targeting firewalls.
Threat actors are reportedly exploiting a zero-day vulnerability in SonicWall firewalls, leading to a new wave of ransomware attacks. This alarming trend has prompted SonicWall to actively search for the zero-day flaw amid a surge in firewall exploitation. Cybercriminals are increasingly targeting these vulnerabilities to gain unauthorised access to networks, potentially compromising sensitive data and…
-

Microsoft is providing a $5 million prize at the Zero Day Quest hacking competition.
Microsoft has announced an exciting opportunity for cybersecurity researchers and ethical hackers with its upcoming Zero Day Quest competition, set to take place in spring 2026. The tech giant is offering a staggering $5 million in rewards for the discovery of high-impact security flaws specifically related to cloud and artificial intelligence technologies. This initiative aims…
-

A campaign utilizing artificial intelligence has created 15,000 counterfeit TikTok Shop websites that distribute malware and steal cryptocurrency.
Cybersecurity researchers have uncovered a widespread malicious campaign targeting TikTok Shop users globally, aiming to steal credentials and distribute trojanized applications. Threat actors exploit the official in-app e-commerce platform through a dual attack strategy that combines phishing and malware. The core tactic involves creating deceptive replicas of TikTok Shop, tricking users into believing they are…


