Security news aggregator

Latest coverage for Virtualisation

Explore the latest in virtualization security trends, threats, and best practices to safeguard your virtual environments and data. Stay informed now.

458 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Virtualisation is the technology that allows the creation of virtual instances of resources such as hardware platforms, storage devices, and network resources. It involves using software to simulate the existence of hardware and create a virtual system that can run its own operating system and applications as if it were a separate physical entity.

In the context of information security, virtualisation plays a significant role in creating secure and isolated environments. Security professionals use virtualisation to erect barriers against cyber threats by deploying virtual machines that can be quickly created, modified, or restored to earlier states, making it difficult for attackers to cause lasting damage. These isolated virtual environments can be used for testing and analyzing suspicious files and applications without risking the integrity of the main system. In addition, virtualisation can serve to segment networks and create secure partitions, each with its policies and controls, thus limiting the scope of a potential breach.

Volume over time

Weekly headline count for the current query.

Showing 20 most recent headlines of 458 Filtered view

Supply chain attackers are not only trying to slip malicious code into trusted software. They are trying to steal the access that makes trusted software possible. Recently, three separate campaigns hit npm, PyPI, and Docker Hub in a 48-hour window, and all three targeted secrets from developer environments and CI/CD pipelines, including API keys, cloud credentials, SSH keys, and tokens. This is

Ivanti, Fortinet, n8n, SAP, and VMware have released security fixes for various vulnerabilities that could be exploited by bad actors to bypass authentication and execute arbitrary code

Bank Info Security 1 month, 3 weeks ago

Breach Roundup: German Police Expose REvil, GandCrab Boss

Also, Medusa Ransomware, Grafana Flaw, German Political Party BreachThis week, German police unmasked a REvil leader, a critical Docker flaw, Medusa ransomware surged, DPRK hackers abused GitHub, Grafana AI bugs enabled data theft, scams hit $20B in the United States, Ivanti exploited and attacks hit Northern Ireland schools and a German political party.

Omnissa telemetry suggests business buyers are loving Apple and Google End-user compute vendor Omnissa, the company formed by the spin-out of VMware’s virtual desktops, applications, and device management biz, has dug into the telemetry it collects from customers and painted a picture of the world’s enterprise hardware fleet – and the news is better for Google and Apple than it is for Microsoft.…

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a recently disclosed security flaw impacting Broadcom VMware Aria Operations to its Known Exploited Vulnerabilities (KEV) catalog, citing active exploitation in the wild

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a VMware Aria Operations vulnerability tracked as CVE-2026-22719 to its Known Exploited Vulnerabilities catalog, flagging the flaw as exploited in attacks. [...]

Bank Info Security 3 months, 3 weeks ago

Docker AI Bug Lets Image Metadata Trigger Attacks

AI Assistant Executes Hidden Commands Embedded in Docker Image LabelsA vulnerability in Docker's Ask Gordon AI assistant allows attackers to execute malicious commands by hiding them in the container application development platform's image metadata, said security researchers. Dubbed DockerDash, the vulnerability exploits a failure across Docker's AI execution chain.

Loading more headlines...