Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
The Dubai-based threat detection startup uses artificial intelligence tools to scan billions of IP addresses to find exposed assets, leaked data, and zero-day vulnerabilities.
This article analyzes why AI is so good at scamming humans, examining how large language models craft personalized phishing messages. It highlights how AI analyzes social media profiles and communication styles to create convincing scams at scale that bypass traditional detection.
This article discusses passkey-themed phishing attacks that are targeting Microsoft 365 users to steal their credentials. Attackers send emails about fake passkey setup requests, but the attacks use traditional credential theft methods to compromise accounts.
This article argues that AI governance cannot be delayed because organizations are quickly adopting AI tools without proper safeguards. It highlights the resulting security and compliance risks and urges companies to create AI policies immediately.
GitLab released patches for CVE-2026-85706, a critical file-read vulnerability that has attracted significant in-the-wild probing following public disclosure. The CVSS 10.0 flaw allows unauthenticated attackers to read arbitrary files on GitLab servers, potentially leaking source code, credentials, and CI/CD secrets to remote attackers before authentication is required.
This article reports that JFrog Artifactory flaws are being exploited in chained attacks to deploy backdoors on enterprise systems. Attackers combine multiple vulnerabilities to gain access, escalate privileges, and maintain persistence on affected servers.