ALERT

ACTIVE THREATS: CISA: Hackers now exploit max severity GitLab flaw in attacks  •  How a hole in Lenovos login system let hackers walk into 5,000 Dropbox accounts  •  The US military just turned off ad tracking on its phones. Maybe you should too  •  Hackers exploit Tencent app flaw to deploy GrayRabbit malware  •  CRPx0 ransomware: what you need to know      ACTIVE THREATS: CISA: Hackers now exploit max severity GitLab flaw in attacks  •  How a hole in Lenovos login system let hackers walk into 5,000 Dropbox accounts  •  The US military just turned off ad tracking on its phones. Maybe you should too  •  Hackers exploit Tencent app flaw to deploy GrayRabbit malware  •  CRPx0 ransomware: what you need to know

HackWire — Cybersecurity News, Decoded

Featured Analysis

View all →
FEATURED_STORYLIVE
🟡VulnerabilitiesHIGH

CISA: Hackers now exploit max severity GitLab flaw in attacks

GitLab CVE-2023-7028 (CVSS 10.0) enables unauthenticated account takeover. Patched Jan 2024 but unpatched widely; CISA confirms active exploitation exposing code, CI/CD creds, and secrets.

Intel Feed

Get threat alerts in your inbox

Critical vulnerabilities, breaches, and threat intel — decoded and delivered. No spam, just signal.

Unsubscribe anytime. We respect your privacy.

Latest Stories