CBA’s DevOps agent is helping on-call engineers on 2am wake-up duty
The Commonwealth Bank is having an AWS ‘frontier’ AI agent work simultaneously alongside its engineers who are on on-call support rotation with the express aim…
The Commonwealth Bank is having an AWS ‘frontier’ AI agent work simultaneously alongside its engineers who are on on-call support rotation with the express aim…
U.S. CISA adds a flaw in Drupal Core to its Known Exploited Vulnerabilities catalog Pierluigi Paganini May 24, 2026 The U.S. Cybersecurity and Infrastructure Security…
There’s a common misconception in cybersecurity that more = better. Many businesses often flock to buy additional tools or add on more layers in hopes…
The Hacker NewsMay 20, 2026Identity Security / Enterprise Security New Industry Data Just Released Suggests Not. On May 19th, 2026, Orchid Security released the results…
Security Affairs newsletter Round 578 by Pierluigi Paganini – INTERNATIONAL EDITION Pierluigi Paganini May 24, 2026 A new round of the weekly Security Affairs newsletter…
It’s hard to believe, but it’s been a year since the Colonial Pipeline ransomware attack. In case your memory’s fuzzy, this was the incident that…
A large-scale campaign is exploiting a critical SQL injection vulnerability (CVE-2026-26980) in Ghost CMS to inject malicious JavaScript code that triggers ClickFix attack flows. The…
Ravie LakshmananMay 21, 2026Web Security / Vulnerability Drupal has released security updates for a “highly critical” security vulnerability in Drupal Core that could be exploited…
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Popular node-ipc npm Package…
When I published Discovering Negative-Days with LLM Workflows three months ago, I got a lot of great feedback and interest. Since then, the waves have…
There are plenty of articles and cheat sheets advising defenders how to monitor, hunt and detect the adversary in their environment. But sometimes, it feels…
A widely-used JavaScript templating library called art-template has been weaponized to deliver a sophisticated iOS browser exploit kit through a supply chain attack. The backdoored…