Risk-based patching is the future. AI made it table stakes
CISA’s new Binding Operational Directive (BOD) 26-04 marks one of the most important changes to federal […]
How MFA gets hacked — and strategies to prevent it
The security benefits of multifactor authentication (MFA) are well-known, yet MFA continues to be poorly, sporadically, and inconsistently […]
Ransomware report: VPNs in the crosshairs, AI attacks
Ransomware attacks were up year over year in June for the fourth consecutive month, according to […]
Fortinet’s new FortiGate platform converges firewall, SASE technologies
Fortinet has expanded its firewall family with new high-speed boxes that, when combined with the vendor’s […]
A 13-year-old flaw is exposing tens of thousands of data center management systems
The ‘no man’s land’ beneath the OS on enterprise servers is becoming the malicious actors’ next […]
The CSO’s blind spot: Why platform engineering 2.0 is now a security imperative
Security leaders have spent the last decade building controls around people and code. Shift-left practices caught […]
Arista patches maximum severity vulnerability that is already being exploited
Arista has patched a VeloCloud Orchestrator (VCO) security hole that has been actively leveraged in the […]
How Linux Permission Validation Flaws Can Lead to Privilege Escalation: Lessons from CVE-2026-46333
Most of us never consider how Linux determines who can view files, inspect processes, or perform […]
What XDR Maturity Looks Like in Enterprise Security Operations
Key Takeaways XDR maturity reflects how effectively security tools operate as a unified detection and response […]
Infoblox joins crowded EASM market with DNS-centric approach
With AI compressing reconnaissance and exploit development from weeks to hours, security vendors are racing to […]