Security intelligence
All coverage
Security signals, without the noise.
Current reporting from security alerts, threat intelligence, incident response, fraud, practitioner blogs, community feeds, and watch-and-listen sources.
[Virtual Event] Cybersecurity Outlook 2027
darkreading · 1h ago ↗sources
UK regulator to investigate Pornhub parent company for alleged age verification failings
Check Point warns of hackers exploiting Security Gateway VPN RCE flawBleepingComputer · All coverage / Incidents
↗
IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU DecoderIonQ Says SinSecurityWeek · All coverage / Incidents
↗
Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp RegistryThe Hacker News · All coverage / Incidents
↗
Showing 180 of 879 loaded entries. Search and all-headlines view include all available entries in this section. Browse the feed archive.
Complete index
Recent stories
Every loaded article, grouped by its original feed. Search scans source names and headlines.
Density
Sort
UK regulator to investigate Pornhub parent company for alleged age verification failings
No evidence of successful foreign meddling in 2024 election, spy agencies found
Ryuk ransomware operator gets 2-year sentence after extorting victims for $1.2 million
FBI investigating alleged ShinyHunters breach of its jobs site
I asked my AI agent to inspect a website. The website took over my machine (34-run measurement across 5 agent harnesses)
Breaking the Superuser Guardrails of managed-PostgreSQL Providers
Inside Corp MDM, the Android spyware targeting logistics companies
Android 17 enables certificate transparency, and breaks custom CAs
Check Point warns of hackers exploiting Security Gateway VPN RCE flaw
Cybersecurity company Check Point has confirmed active exploitation of CVE-2026-85102, a pre-authentication remote code execution (RCE) vulnerability in the VPN certificate-handli…
Hackers start exploiting critical WordPress flaw for code execution
Threat actors have moved from probing WordPress sites vulnerable to CVE-2026-87902 to exploiting the flaw to write files to disk that execute shell commands when accessed.
Malicious AI agents steal 600K credit cards, infect 100+ sites with skimmers
A financially motivated threat actor is using open-source AI agent frameworks to attack hundreds of online retailers at scale, stealing more than 600,000 credit card records.
InfraTrust report warns network management systems under attack
Attackers are increasingly targeting the management systems used to control enterprise infrastructure, with several critical vulnerabilities actively exploited before or shortly a…
Analysis & YARA rules: Fake HWMonitor DLL Sideloading campaign delivering Blakcsee Stealer
Made the PowerVision PowerRay Wizard underwater drone usable again by cracking the proprietary Vision+ app, forcing it to activate the drone offline. + patched/fixed open-source community driver for easier installation
HimitsuShell: shell scripts invisible to kernel tracing
LocalStranger is a PoC for vulnerable "Microsoft Windows Hardware Compatibility Publisher" signed driver, including a basic unsigned driver kd mapper and NT-AUTHORITY escalation.
Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry
A Leaked GitLab Issue Email Address Lets Anyone Push Code and Run CI Jobs as You
MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key
This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move
Reimagining the SOC for the agentic era in Microsoft Defender
We are announcing ISOC in Microsoft Defender: a foundation built for agentic security that brings leading solutions for SIEM and threat protection together.
Unmasking EvilTokens: Getting to the root of device code phishing
EvilTokens has quickly become one of the top PhaaS platforms, enabling device code phishing attacks through AI-assisted lures, automated infrastructure, and token theft. In collab…
From guidance to action: Security fundamentals that materially reduce risk
Learn how Secure Now helps security leaders prioritize controls and reduce exposure across identities, endpoints, and AI systems.
Improving email security outcomes with real-world Microsoft Defender insights
See how Microsoft Defender uses real-world email security benchmarks to improve customer protection.
Building the system for AI at work
There's no shortage of sound and fury in AI right now.
Introducing Microsoft 365 G7: Intelligence + Trust for the mission ahead
Microsoft 365 G7 brings AI, Copilot, agent governance, security, and compliance together to help government agencies modernize securely.
ESPC 2026 is coming to Amsterdam: Bringing Microsoft and the community together
Join Microsoft at ESPC 2026 in Amsterdam to explore Microsoft 365 Copilot, agents, AI, and digital transformation.
Build apps in Copilot Cowork and Copilot Studio
Build full-stack business apps through conversation in Copilot Cowork and Copilot Studio, grounded in enterprise data.
Cofense measures employee readiness against real-world phishing threats
Cofense Command Center measures how employees recognize, report, and respond to phishing, helping security teams verify readiness.
80,000 relay servers help users in China slip past U.S. AI region bans
Over 10,800 AI relay servers help users in China hide their identity, enabling frontier model abuse and possible model distillation.
Portnox detects and removes unauthorized AI applications from managed devices
Portnox keeps shadow AI under control by detecting unauthorized apps and automatically restricting, quarantining, or removing them.
Network Solutions Dark Web Monitoring alerts small businesses to domain-linked data exposure
Network Solutions Dark Web Monitoring alerts small businesses to domain-linked breach data and offers steps to reduce cyber risks.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability
Update for September 16, 2026: The original 1.0 version of this advisory was specific to the Cisco Adaptive Security Virtual Appliance (ASAv) and Cisco Secure Firewall Threat Defe…
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability
A vulnerability in the system rate-limiting process for syslog message 419002 of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat…
Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat…
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Secure Firewall 3100 and 4200 Series DTLS Denial of Service Vulnerability
A vulnerability in Datagram TLS (DTLS) message handling of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software…
Considerations for Critical Infrastructure Operators Working With Third-Party ICS Integrators
This fact sheet describes how critical infrastructure operators can work with third-party industrial control systems (ICS) integrators to help ensure secure
CISA Adds Four Known Exploited Vulnerabilities to Catalog
lwIP TCP/IP Stack MQTT Client Application
lwIP (Lightweight IP)
Black Hat Fireside Chat: As AI agents spread, the network shifts from traffic mover to policy enforcer
The network’s job has always been simple: watch the traffic. Authority stopped there. Related: AI agents have a Lord Of The Flies problem For decades, network traffic came from…
BLACK HAT FIRESIDE CHAT: Nobody picked the web browser to run work — now pick a boundary
Nobody picked the browser to run the workplace. It just happened. Related: The year of the enterprise browser HTML5 matured. SaaS spread. One business application after another mo…
MY TAKE: AI agents show uncanny initiative nobody designed — and carry no values at all
Give a person a goal, and they bring a lifetime of restraint to the job. DonŌĆÖt lie. DonŌĆÖt steal. Stop when something looks wrong. Give an AI agent a goal, and it finds a short…
News alert: Axoflow introduces AxoDetect to identify threats and reduce security data costs
STAMFORD, Conn.,Sept. 16, 2026, CyberNewswire — Now in early access, AxoDetect runs Sigma rules in stream - alerts travel to the SIEM, and full-fidelity logs land in AxoLake, a…
The Lure Isn't The Malware. It's Your Logo.
Recorded Future's Insikt GroupⓇ has been tracking ClickFix, a social engineering technique that turns a familiar logo or verification prompt into the entry point for an attack. He…
Agent Running in the Age of AI
In the age of AI, the new customer of intelligence is an agent. Every agent needs an intelligence layer it can trust to make good decisions and take confident action.
Our View on What It Takes To Be Named an Industry-Recognized Threat Intelligence Leader
A behind-the-scenes look at how Recorded Future earned its spot as a threat intelligence leader in the latest Forrester Wave.
Proofpoint Breaks Down the Divide Between Data Security and AI Security with the Industry’s First Unified Agentic System
A single system for intent and access to empower organizations to adopt AI without losing data control or missing emerging risks across employees and AI agents Point security tools
Proofpoint Stops the Attacks Traditional Defenses Miss in the AI Era
Intent-based detection and multi-stage AI reasoning identify and stop sophisticated attacks before, during and after they reach people. Stops sophisticated attacks in one connected
Proofpoint Recognizes 2026 Global Partner Award Winners at Flagship Event
The awards presented at Proofpoint Protect 2026 celebrate partners driving customer impact, growth and secure AI adoption worldwide.
Slow is a design principle, not a delay
AI labs are pacing their capability growth. Attackers won't. Here's what that asymmetry means for cybersecurity teams and AI-enabled defense.
AI adoption that pays off is built around keeping humans in the driver’s seat
I’ve spent enough time around AI adoption now to notice a pattern. Ask a business how AI is going for them and the honest answer is, lately, “we’ve got Copilot, and it’s not great…
Phishing in 2026. Latest statistics and analysis
Recent phishing statistics from around the world show that phishing is the most common kind of cybercrime in 2026.
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
Kaspersky GERT experts dive into the technical incident analysis of PAYLOAD ransomware: an encryptionless, binary-less operation that abused Active Directory mechanisms for managi…
The Odyssey and Trojans again: MovieReaper attacks users in multiple countries through compromised torrents
Kaspersky experts have discovered a new MovieReaper campaign. The multi-stage Trojan spreads through movie torrents, such as “The Odyssey,” and uses the Solana blockchain to hide…
NightEagle targets Russian companies
Kaspersky GERT experts have uncovered a new campaign by the NightEagle APT, featuring the GhostContainer backdoor and tools hosted on GitHub. The group is also exploiting vulnerab…
China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies
A Tale of Two SOCs: Insights From Two Red Team Assessments
Same tactics, very different results. This advisory compares defensive outcomes from two red team assessments. Learn what drove detection and implement key
Defending Against an Active Threat to Siemens S7 Series PLCs
This advisory warns of threat actors targeting Siemens S7 Series programmable logic controllers (PLCs) and includes mitigations to be understood and applied
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, (Wed, Aug 26th)
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, Author: Johannes Ullrich
Obfuscating IP Addresses as Hostnames, (Tue, Aug 25th)
ISC Stormcast For Tuesday, August 25th, 2026 https://isc.sans.edu/podcastdetail/10066, (Tue, Aug 25th)
Microsoft Build 2026: Building agentic apps with Microsoft Fabric and Microsoft Databases
Microsoft Build 2026 highlights advancements in app development with Microsoft Fabric and Microsoft Databases, emphasizing a unified data and AI platform.
Azure IaaS: Defense in depth built on secure-by-design principles
Explore how Azure IaaS uses defense in depth and secure-by-design principles to deliver layered, scalable cloud security across compute, network, and data.
Enforcing trust and transparency: Open-sourcing the Azure Integrated HSM
Learn how Microsoft Azure Integrated HSM delivers hardware‑enforced key protection in the cloud, combining FIPS Level 3 assurances with transparency and open‑source collaboration.
No matching sources found.
Showing 180 of 879 loaded entries. Search and all-headlines view include all available entries in this section. Browse the feed archive.