Device Security Shares Load with Identity
Identity alone is no longer sufficient for cybersecurity, as device security must share the load to prevent attacks, with 44.7% of breaches involving stolen credentials.
Clop ransomware gang targets Windchill and FlexPLM instances, exploiting CVE-2026-12569 to exfiltrate sensitive data and extort organizations.
Identity alone is no longer sufficient for cybersecurity, as device security must share the load to prevent attacks, with 44.7% of breaches involving stolen credentials.
AI-powered app attacks are becoming faster, more frequent, and harder to stop, with 87% of monitored apps under attack in 2026.
Microsoft released Rampart and Clarity, two new AI-powered tools to help developers design more secure software and assist incident responders in the face of ongoing breaches.
Convenience store giant 7-Eleven confirms a data breach after ShinyHunters claimed to have stolen information from the company's systems.
US residents lost $388 million through cryptocurrency kiosks in 2025, with Texas and Florida reporting the highest losses, according to a new FBI report.
Security teams must prepare for AI applications moving into production, leveraging data-driven discussions, agility, and future-proofing to secure them.
Microsoft has shared mitigations for the YellowKey Windows zero-day vulnerability, tracked as CVE-2026-45585, which grants access to protected drives.
Microsoft seized infrastructure and disrupted a cybercrime service that created and sold over 1,000 code-signing certificates used to make malware appear trusted and legitimate.
Microsoft blames a recent macOS security update for non-dismissible location prompts in the Teams app on some macOS systems, affecting users who have enabled location access in their Teams settings.