AI workflows may be creating a dangerous new authorization blind spot
A newly identified AI attack technique can let unauthenticated users trigger privileged workflows and access enterprise […]
Stealth rootkit targeting F5 BIG-IP could expose enterprise identity gateways
A newly analyzed Linux rootkit is believed to have given attackers a way to hide shells […]
The longitude problem: In the AI era, detection is won on facts, not guesses
For most of the age of sail, a captain could find his latitude in minutes and […]
Getting ahead of ‘harvest-now-decrypt-later’: Post-quantum cryptography planning
I’ve sat in enough boardroom conversations about quantum computing to notice a pattern. Someone raises it, […]
10 most critical LLM vulnerabilities
Enterprise adoption of generative AI technologies has exploded due to the rapid evolution of the technology […]
MikroTik patches flaws currently being exploited to take over routers
Networking gear manufacturer MikroTik has released patches for six vulnerabilities in its RouterOS firmware, two of […]
Why Internal Attack Surface Management Needs Continuous Network Visibility
Key Takeaways Static inventories confirm asset existence, but continuous visibility reveals real-time security risks, active behavior, […]
SpyCloud 2026 Identity Threat Report Finds Non-Human Identities Are Now the Leading Path into the Enterprise
Ninety-five percent of organizations believe they have visibility into their AI and machine identity exposures, yet […]
ChatGPT flaw lets attackers pull Gmail data across accounts via a hidden channel
A flaw in OpenAI’s ChatGPT allowed attackers to extract data from a victim’s connected Gmail account […]
ShinyHunters claims Florida DMV breach, puts data on the clock
ShinyHunters is claiming to have broken into a Florida government database containing sensitive information on the […]