Critical Node.js Vulnerability Can Cause Server Crashes via async_hooks Stack Overflow

Node.js has released updates to fix what it described as a critical security issue impacting “virtually every production Node.js app” that, if successfully exploited, could trigger a denial-of-service (DoS) condition.
“Node.js/V8 makes a best-effort at… Continue reading Critical Node.js Vulnerability Can Cause Server Crashes via async_hooks Stack Overflow

Posted in Uncategorized

CISO Assistant: Open-source cybersecurity management and GRC

CISO Assistant is an open-source governance, risk, and compliance (GRC) platform designed to help security teams document risks, controls, and framework alignment in a structured system. The community edition is maintained as a self-hosted tool for org… Continue reading CISO Assistant: Open-source cybersecurity management and GRC

Firmware scanning time, cost, and where teams run EMBA

Security teams that deal with connected devices often end up running long firmware scans overnight, checking progress in the morning, and trying to explain to colleagues why a single image consumed a workday of compute time. That routine sets the conte… Continue reading Firmware scanning time, cost, and where teams run EMBA

How AI image tools can be tricked into making political propaganda

A single image can shift public opinion faster than a long post. Text to image systems can be pushed to create misleading political visuals, even when safety filters are in place, according to a new study. The researchers examined whether commercial te… Continue reading How AI image tools can be tricked into making political propaganda

PLUGGYAPE Malware Uses Signal and WhatsApp to Target Ukrainian Defense Forces

The Computer Emergency Response Team of Ukraine (CERT-UA) has disclosed details of new cyber attacks targeting its defense forces with malware known as PLUGGYAPE between October and December 2025.
The activity has been attributed with medium confidence… Continue reading PLUGGYAPE Malware Uses Signal and WhatsApp to Target Ukrainian Defense Forces

Posted in Uncategorized

Product showcase: Orbot – Tor VPN for iOS

Orbot for iOS is a free, open-source networking tool that routes supported app traffic through the Tor network. Developed by the Guardian Project, it is intended for users who want to reduce tracking and limit network-level monitoring on iPhone and iPa… Continue reading Product showcase: Orbot – Tor VPN for iOS

Lumo expands its Lumo AI assistant with encrypted, project-based workspaces

Lumo is Proton’s AI assistant, built with a focus on privacy and user control. It runs on Proton’s infrastructure and is designed so conversations are not used to train models or retained beyond what is required to provide the service. Lumo avoids trac… Continue reading Lumo expands its Lumo AI assistant with encrypted, project-based workspaces