Cisco Patches Another SD-WAN Zero-Day, the Sixth Exploited in 2026
Cisco on Thursday announced the availability of patches for yet another critical SD-WAN zero-day vulnerability that has been exploited in attacks. It is the sixth…
Cisco on Thursday announced the availability of patches for yet another critical SD-WAN zero-day vulnerability that has been exploited in attacks. It is the sixth…
“For most of the last two decades, identity security was built on a comfortable assumption: One can maintain a firm divide between a small number…
Qakbot has been spreading like wildfire. Huntress has seen a 400% increase in Qakbot cases in the past two months (several hundred incidents) in comparison…
Microsoft is updating the Edge web browser to ensure it no longer loads saved passwords into process memory in clear text at startup after previously…
Pwn2Own Berlin 2026 is rapidly escalating into one of the most intense offensive security contests in recent years, with Day Two delivering a fresh wave…
There’s a pernicious cycle in cybersecurity that has repeated for decades. Products are released before they are properly secured — security-by-design principles are skipped —…
A popular open-source download manager trusted by millions suddenly became a malware delivery platform after attackers compromised its official website, replacing legitimate installers with trojanized…
AI Voice Cloning meant having a voice model trained for hours, acquiring extremely high-quality recordings in a studio, and deploying a team of high-level researchers.…
Domains expire, get transferred, and return to the market every day. The systems connected to those domains can continue trusting the original owner long after…
The Belarus-aligned threat group known as Ghostwriter has been attributed to a fresh set of attacks targeting governmental organizations in Ukraine. Active since at least…
The use of artificial intelligence (AI) in coding is shifting the role of software development, but measuring lines of code is no longer a valid…
Technical details and proof-of-concept (PoC) exploit code targeting a newly patched critical-severity vulnerability in NGINX are now available. Tracked as CVE-2026-42945 (CVSS score of 9.2),…