Latest News

Vulnerabilities

CVE Blind Spot: EOL Software

Approximately 5.4 million end-of-life package versions are not being checked by security tools, leaving organizations vulnerable to exploits.

Threats

Conti Ransomware Affiliate Sentenced to 8 Years

A Latvian ransomware affiliate has been sentenced to over 8 years in prison for conducting attacks on behalf of Conti and Akira, causing $56 million in losses.

Analysis

CISA Leverages AI Automation for Enhanced Threat Analysis

The Cybersecurity and Infrastructure Security Agency has seen significant gains from AI automation in its security operations unit, enabling faster threat triage and response.

Vulnerabilities

Hacking AI Systems

Joey Melo, a Principal Security Researcher at CrowdStrike, discusses his approach to hacking AI systems, focusing on controlling the experience without changing the rules.

Threats

Amazon SES Phishing Abuse

The Amazon Simple Email Service is being increasingly abused to send convincing phishing emails that bypass standard security filters and render reputation-based blocks ineffective.

Vulnerabilities

Linux Vulnerability CVE-2026-31431 Exploited

Attackers are actively exploiting a Linux vulnerability, dubbed 'Copy Fail', which allows for total control of a system with authenticated local access, affecting mainstream Linux kernels built since 2017.

Privacy

Section 702 Surveillance Law Extended

Congress extended Section 702 of the Foreign Intelligence Surveillance Act for 45 days, allowing warrantless surveillance of foreign targets to continue.

Vulnerabilities

Microsoft Defender Flags DigiCert Certs as Malware

Microsoft Defender has incorrectly identified legitimate DigiCert root certificates as Trojan:Win32/Cerdigent.A!dha, leading to false-positive alerts and removal of certificates from Windows systems.

← Prev 1 1718192021 55 Next →