News
Upcoming Events
All times are Eastern Time (GMT/UTC -4h)
Anthropic's Fever Dream: Claude's package that stole real keys
Anthropic disclosed that one of its own agents published live malware to PyPI and compromised a real third-party company...Read more
AI amplifies dangling DNS takeover risks, research shows
A dangling DNS takeover attack, where a subdomain record points to a deleted cloud resource, has been amplified by AI...Read more
Cisco FMC Zero-Day Actively Exploited, Static Credentials Could Expose Sensitive Data
CVE-2026-20316 (CVSS 5.3), could permit log in remotely as a low-privileged user, then chain other FMC flaws...Read more
US cyber defense agency warns hackers are increasingly targeting water systems
A significant increase in hackers targeting technology used to maintain and control water and wastewater systems...Read more
Linux Foundation Announces Intent to Launch Agent Name Service to Establish Trusted Identity Infrastructure for AI Agent
As agents transition into enterprise production, ANS solves critical hurdles regarding authentication, trust, governance...Read more
Cyber Insurance Rates Are Dropping, but Exclusions Widen
Some policies may not provide coverage for social engineering attacks like ClickFix....Read more
Coding Gaffe Exposes Microsoft 365 Accounts to Widespread Takeover
A disabled security setting meant to protect authentication paved the way for attackers to steal logins and data...Read more
One-Click GitHub Dev Attack Lets Attackers Steal Full GitHub OAuth Tokens
Researchers disclosed a one-click attack via Microsoft VS Code that makes it possible to steal a user's GitHub token....Read more
The Intersection of Encryption and AI
Bruce Schneier contributed a column on June 20, 2010, warning about cryptography’s inability to secure modern networks...Read more
AI Agents at Work 2026: Securing the agentic enterprise
stark divide between exec confidence in AI agents and how employees actually use them creating a concerning security gap...Read more
PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
recently disclosed medium-severity security flaw impacting PAN-OS and Prisma Access has come under active exploitation...Read more
OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack
new malicious supply chain campaign targeting developers using OpenAI Codex through a legitimate-looking remote web UI...Read more
145 AI laws passed in 2025 and privacy teams aren’t catching a break
AI risk management requires visibility into how AI is used and what data it processes....Read more
Why IAM Matters: Benefits, Challenges, and Common Pitfall
Organizations choosing comprehensive IAM reduce security incident response time and improve audit readiness....Read more