26
Aug
2025

MCPs are just other people’s prompts and other people’s APIs

I’ve been thinking about Model Context Protocols (MCPs) for months, and here’s the simplest way to explain what they actually…

Salesforce
26
Aug
2025

Salesloft breached to steal OAuth tokens for Salesforce data-theft attacks

Hackers breached sales automation platform Salesloft to steal OAuth and refresh tokens from its Drift chat agent integration with Salesforce…

AccuKnox Awarded Patent for Runtime Security of Kernel Events
26
Aug
2025

AccuKnox Awarded Patent for Runtime Security of Kernel Events

AccuKnox, a leader in Zero Trust Kubernetes and cloud-native security solutions, has been issued a patent [US Patent# 12,242,629 –…

CISA Adds Citrix Vulnerabilities To KEV As New Flaws Emerge
26
Aug
2025

CISA Adds Citrix Vulnerabilities To KEV As New Flaws Emerge

The U.S. Cybersecurity and Information Security Agency (CISA) has added two Citrix vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog…

New Attack Targeting ScreenConnect Cloud Administrators to Steal Login Credentials
26
Aug
2025

New Attack Targeting ScreenConnect Cloud Administrators to Steal Login Credentials

A sophisticated credential harvesting campaign has emerged targeting ScreenConnect cloud administrators with spear phishing attacks designed to steal super administrator…

China-Based Threat Actor Mustang Panda’s TTPs Leaked
26
Aug
2025

China-Based Threat Actor Mustang Panda’s TTPs Leaked

A significant milestone for cybersecurity experts is the disclosure of specific tactics, methods, and procedures (TTPs) used by Mustang Panda,…

New Sni5Gect Attack Crashes Phones and Downgrades 5G to 4G without Rogue Base Station
26
Aug
2025

New Sni5Gect Attack Crashes Phones and Downgrades 5G to 4G without Rogue Base Station

Aug 26, 2025Ravie LakshmananVulnerability / Mobile Security A team of academics has devised a novel attack that can be used…

First AI Ransomware ‘PromptLock’ Uses OpenAI gpt-oss-20b Model for Encryption
26
Aug
2025

First AI Ransomware ‘PromptLock’ Uses OpenAI gpt-oss-20b Model for Encryption

A new ransomware has been identified, which is believed to be the first-ever ransomware strain that leverages a local AI…

Black Hat Ignites Under Vegas Lights
26
Aug
2025

Black Hat Ignites Under Vegas Lights

Driving through the quiet, endless beauty of the Nevada desert, I let the raspy voice of Jim Morrison carry me…

Securden Unified PAM Flaw Allows Attackers to Bypass Authentication
26
Aug
2025

Securden Unified PAM Flaw Allows Attackers to Bypass Authentication

Securden Unified PAM is a comprehensive privileged access management platform that is used to store, manage, and monitor credentials across…

Citrix Patches Three NetScaler Flaws, Confirms Active Exploitation of CVE-2025-7775
26
Aug
2025

Citrix Patches Three NetScaler Flaws, Confirms Active Exploitation of CVE-2025-7775

Aug 26, 2025Ravie LakshmananVulnerability / Remote Code Execution Citrix has released fixes to address three security flaws in NetScaler ADC…

Okta makes AI identity play with Axiom acquisition
26
Aug
2025

Okta makes AI identity play with Axiom acquisition

Identity technology supplier Okta is to acquire Axiom Security, a supplier of privileged access management (PAM) for cloud, database, software-as-a-service…