All Articles
2443 articles · Updated every 4 hours
Advertisement
Identity-only security fails against stolen tokens and compromised devices. Learn why robust device security is critical for effective Zero Trust strategies.
Grafana suffered a data breach due to a GitHub workflow token not rotated after the TanStack npm supply-chain attack, impacting user data. Learn the details.
Microsoft disrupts the Fox Tempest MSaaS operation which weaponized Artifact Signing to facilitate global ransomware attacks and compromise thousands of networks.
Microsoft open-sources RAMPART and Clarity to provide developers with frameworks for red teaming and observing autonomous AI agents against prompt injection.
Explore how CISOs can effectively prepare for and integrate AI Bill of Materials (AI BOMs) into their modern security programs, influencing their generation for better
A maintainer account compromise has led to a major supply chain attack against Alibaba’s @antv NPM namespace, impacting over 320 visualization packages.
Anthropic recently addressed a sandbox bypass in Claude Code. This vulnerability could have allowed data exfiltration when combined with prompt injection.
A public exploit for PinTheft (CVE-2024-51567) allows local attackers to gain root privileges on Arch Linux via the genfstab script. Update to version 31.
Drupal warns of a critical core security update with high exploitation risk. Learn how to prepare for patches and protect your CMS from potential RCE.
Attackers are weaponizing AI-generated lookalike domains within third-party scripts, turning typosquatting into a sophisticated supply chain threat for enterprises.
Frontier AI models like Mythos accelerate vulnerability discovery. Learn how to leverage agentic processing and threat intelligence for rapid mitigation.
A technical analysis of CVE-2024-24919, a high-severity information disclosure flaw in Check Point Quantum Gateways, including exploit detection and mitigation.
No articles in this category yet.
We use cookies for analytics (GA4) and personalised ads (AdSense). They are only activated if you accept. Privacy Policy