New research suggests the coming Vulnpocalypse may not be so overwhelming for enterprise security teams — if they have the ...
The exploitation activity follows attacks earlier this summer on two other zero-day vulnerabilities in the vendor's edge ...
The "Spring Ring" operation targets users of the collaboration suite to remotely access their sessions, spread malware, and ...
Threat actors exploited commodity vulnerabilities to gain initial access, resulting in stolen reactor databases, personnel ...
Former cybercriminal Brett Johnson clues us in to the mind of a cyberattacker and how AI could reshape cybercrime.
Security researchers see more insider-assisted ransomware attacks, but malicious insiders pose other costly threats beyond ...
The attacks on CVE-2026-0768 are the latest threats against the low-code AI development platform, which adversaries are ...
CVE-2026-82329 is an authentication bypass flaw in JFrog's repository manager that enables bad actors to gain admin level ...
In one attack, threat actors stole an API key that ultimately led to the consumption of $600,000 in public AI model credits ...
OpenAI's Hugging Face attack postmortem shows agents don't care about rules — they need strong controls.
The campaign uses EtherHiding to dynamically update its command-and-control server, using the blockchain as an ...
While guardrails are critical, as evidenced by recent high-profile incidents, defenders need help staying ahead of attackers ...