A new frontier: Identity stack evolves for agentic systems
In the existing state, identity is human-centric. Today’s identity and access management (IAM) systems were designed for a world dominated by human users and static…
In the existing state, identity is human-centric. Today’s identity and access management (IAM) systems were designed for a world dominated by human users and static…
The rollout of the UK’s Online Safety Act in July 2025 was intended to create a safer digital environment for children through stricter age verification…
Australian universities and TAFEs have joined global counterparts in scrambling to understand their potential exposure to a cyber incident involving a popular learning management system.…
Poland’s Internal Security Agency (ABW) has documented a significant escalation in cyberattacks targeting industrial control systems (ICS) and other operational technology (OT) infrastructure during 2024…
Dirty Frag: A new Linux privilege escalation vulnerability is already in the wild Pierluigi Paganini May 08, 2026 Dirty Frag: unpatched Linux kernel flaw grants…
LayerX is calling the flaw “ClaudeBleed.” “LayerX reported the flaw to Anthropic,” LayerX researcher Aviad Gispan said in a blog post. “Anthropic replied that they…
In a previous blog post, I covered how Splunk, and by extension, other security tools, can be used for malicious purposes. In that specific example,…
Hackers who gained access to the databases of Spanish fast-fashion retailer Zara stole data belonging to more than 197,000 customers, according to data breach notification…
A sophisticated new malware framework called PCPJack has been found actively targeting cloud environments across the internet, hunting for exposed services and stripping away credentials…
Pentest-Tools.com has released a free, no-login scanner for CVE-2026-41940, the critical authentication bypass affecting cPanel & WHM and WP Squared that has been actively exploited…
In late March, Russian company Bureau 1440 brought into low orbit the first 16 broadband internet satellites of the new Rassvet constellation, already dubbed by…
A new cross‑platform malware family, dubbed ZiChatBot, that abuses the trusted Python Package Index (PyPI) ecosystem and the Zulip team chat platform to run a stealthy…