AI-powered APIs proving highly vulnerable to attack
22
Apr
2025

AI-powered APIs proving highly vulnerable to attack

More than 150 billion application programming interface (API) attacks were observed in the wild during 2023 and 2024, according to…

How to Explain SQL Injection to Anyone
22
Apr
2025

How to Explain SQL Injection to Anyone

There are many ways to explain SQL Injection, and the “best” way is clearly determined by who you’re talking to….

Jeff Le
22
Apr
2025

Rebuilding Maritime Cybersecurity Resilience: Charting an America First Course to Secure the U.S. Homeland

U.S. ports are vital to the flow of imports and exports; however, the entire maritime transportation system’s cybersecurity is exceedingly…

CISA Issues Warning Against Using Censys, VirusTotal in Threat Hunting Ops
22
Apr
2025

CISA Issues Warning Against Using Censys, VirusTotal in Threat Hunting Ops

 The Cybersecurity and Infrastructure Security Agency (CISA) has alerted its threat hunting teams to immediately discontinue use of two widely…

Abilene city, Texas, takes systems offline following a cyberattack
22
Apr
2025

Abilene city, Texas, takes systems offline following a cyberattack

Abilene city, Texas, takes systems offline following a cyberattack Pierluigi Paganini April 22, 2025 Abilene, Texas, shut down systems after…

My Current Thoughts on Gun Control
22
Apr
2025

My Current Thoughts on Gun Control

Like many others, I’ve been in a number of debates about gun control in recent weeks. Here are my main…

Critical Flaw in Windows Update Stack Enables Code Execution and Privilege Escalation
22
Apr
2025

Critical Flaw in Windows Update Stack Enables Code Execution and Privilege Escalation

A newly discovered vulnerability in the Windows Update Stack, tracked as CVE-2025-21204, has sent shockwaves through the cybersecurity community after…

Investigatory Powers Tribunal has no power to award costs against PSNI over evidence failures
22
Apr
2025

Investigatory Powers Tribunal has no power to award costs against PSNI over evidence failures

The Investigatory Powers Tribunal, the court that rules on the lawfulness of surveillance by police and intelligence agencies, has no…

D3FEND CAD
22
Apr
2025

MITRE Launches D3FEND CAD Tool To Enhance Cybersecurity

MITRE has officially unveiled its highly anticipated D3FEND CAD tool as part of the D3FEND 1.0 release. This new Cyber…

Japan ’s FSA warns of unauthorized trades via stolen credentials from fake security firms' sites
22
Apr
2025

Japan ’s FSA warns of unauthorized trades via stolen credentials from fake security firms’ sites

Japan ’s FSA warns of unauthorized trades via stolen credentials from fake security firms’ sites Pierluigi Paganini April 22, 2025…

Some Thoughts on the Events in Newtown
22
Apr
2025

Some Thoughts on the Events in Newtown

A few thoughts: Don’t incentivize what you don’t want more of Internationally, football is known for a zero-tolerance policy with…

PoC Released for Critical Unauthenticated Erlang/OTP RCE Vulnerability
22
Apr
2025

PoC Released for Critical Unauthenticated Erlang/OTP RCE Vulnerability

A critical remote code execution (RCE) vulnerability in Erlang/OTP’s SSH implementation (CVE-2025-32433) has now entered active exploit risk after researchers…