Fake Stripe NuGet Package Steals API Tokens
Cybersecurity researchers have spotted yet another clever attempt to slip malicious code into developers' toolkits, this time by impersonating one of the m...
Found 269 relevant articles matching your search. Browse our cybersecurity insights and expert analysis below.
Cybersecurity researchers have spotted yet another clever attempt to slip malicious code into developers' toolkits, this time by impersonating one of the m...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a recently disclosed vulnerability in Soliton Systems FileZen , a file transfer solu...
APT28 (aka Fancy Bear), a Russia-backed state-sponsored actor, has conducted a low-tech but very stealthy phishing operation against several organizations...
Cybersecurity firm Socket has uncovered an active supply-chain worm campaign codenamed SANDWORM_MODE that abuses at least 19 malicious npm packages to harv...
A new operation called Operation Olalampo has been launched by the Iranian APT group MuddyWater (aka Earth Vetala, Mango Sandstorm, and MUDDYCOAST) that ta...
When a database server is accidentally exposed to the internet (port open without firewall, NAT misconfiguration, cloud security group too permissive), the...
CISA has updated its Known Exploited Vulnerabilities (KEV) catalogue, which now contains two vulnerabilities in Section Four of the Roundcube webmail softw...
On February 17, 2026, at 3:26 AM PT, an unauthorized actor used a compromised npm publish token to release version 2.3.0 of the popular AI-powered coding a...
Our blog insights are backed by hands-on service delivery. Whether you need a penetration test, vulnerability assessment, emergency website recovery, or secure web development — our UK cybersecurity specialists are ready to help.
Emergency malware removal, backdoor elimination, blacklist delisting, and full post-incident hardening for compromised websites.
Authorised simulated attacks exposing real vulnerabilities in your web applications, networks, and infrastructure before attackers do.
Systematic identification and prioritisation of security weaknesses across your digital estate — with actionable remediation guidance.
OWASP-aligned web application development with security engineered in from architecture through to penetration-tested deployment.
Simulated, targeted adversarial attacks that test your people, processes, and technology under real-world conditions.
© 2016 – 2026 Red Secure Tech Ltd. Registered in England and Wales — Company No: 15581067