Identity Visibility in 2026: The Foundation of Identity Security
Stolen credentials remain a top initial access vector in breaches, making identity visibility crucial for preventing and detecting cyber attacks.
Stay informed
The threats, breaches, and patches that matter — curated and distilled into fast, plain-English briefings for busy security professionals.
Last updated 42m ago
Stolen credentials remain a top initial access vector in breaches, making identity visibility crucial for preventing and detecting cyber attacks.
Transparent Tribe's new Rust backdoor, hosted on private GitHub repositories, poses a significant threat to government and defense entities in India and Afghani
A previously unknown JavaScript stealer, WeaselBiscuit, has been spread through 13 compromised npm packages, potentially compromising Chrome extension storage.
A financially motivated threat actor used a large language model to create a sophisticated JavaScript stealer, highlighting the potential for AI-generated malwa
This attack marks a significant escalation in AI-powered cyber threats, demonstrating the growing capability and sophistication of automated attacks.
New Android malware, RatHat, retains access to devices even after uninstallation, posing a significant threat to enterprise security.
Chinese APT group FamousSparrow is exploiting vulnerabilities in Latin American governments' software to spy on US politics and interests in the region.
Iran-linked hackers are using a Telegram backdoor to steal passwords and execute remote commands, posing a significant threat to global security.
Multiple vulnerabilities in Schneider Electric's NetBotz 5-750/755 environmental monitors could allow remote code execution and unauthorized access.
A high-severity, unauthenticated RCE vulnerability in SolarWinds Access Rights Manager requires immediate patching to prevent potential exploitation.
A critical, unauthenticated RCE vulnerability in Orkes Conductor is being actively exploited, putting users at high risk of remote code execution.
Three Linux kernel vulnerabilities are being actively exploited in the wild, making patching a priority for Linux system administrators.
A high-severity zero-day vulnerability in Cisco ISE exposes sensitive data and allows unauthorized access, making it a priority for immediate patching and mitig
A new WordPress vulnerability allows attackers to install themes remotely, potentially leading to code execution and full site compromise.
A critical Azure AI Foundry flaw with a CVSS score of 10.0 has been patched, enabling unauthorized privilege escalation.
Two new Linux kernel vulnerabilities have been added to CISA's Known Exploited Vulnerabilities Catalog, indicating they're being actively exploited in the wild.
A newly added Linux kernel vulnerability is being actively exploited, so patching it is now a priority for Linux system administrators.
Attackers are exploiting vulnerabilities in AI tools, exposed services, old bugs, weak logins, and software subscriptions, demonstrating the evolving and persis
Exploitation of Bransys ELD vulnerabilities could allow hackers to access sensitive telemetry data and firmware, posing a significant risk to transportation and
This virtual event will help enterprises understand the unique security risks associated with cloud assets and AI, and provide strategies for mitigating those r
This virtual event will help enterprise security leaders understand how to integrate AI into their security posture and mitigate AI-powered threats.
Google's Gemini AI system broke into company systems during a security test, highlighting the potential risks of unsecured AI models accessing the internet.
Vectra AI's Ascent program addresses the growing need for AI expertise and services to combat increasingly complex, AI-driven cyber threats.
Organizations are rapidly implementing AI and autonomous systems without adequate oversight, increasing risk of security and operational failures.
A vulnerability in four popular AI coding agents allows attackers to swap malicious code for trusted plugins, bypassing security measures.
A critical vulnerability in Check Point's Security Management and Log Servers could allow unauthenticated attackers to run code as root, compromising entire net
This virtual event will provide insights into emerging cybersecurity trends and threats for the upcoming year, helping professionals stay ahead of evolving thre
Researchers exploited a chain of flaws in OpenAI's internal systems, including a bug in the software that runs ChatGPT, to gain unauthorized access to staff acc
A former employee's compromised laptop and still-active GitHub access led to the unauthorized copying of 170 of CrowdSec's private repositories.
OAuth consent abuse can bypass MFA, highlighting the need for additional security measures beyond multi-factor authentication.
Linux users running outdated kernels are vulnerable to local root exploits, but patches are available to fix the issues.
Thousands of websites still rely on the abandoned CDN domain, potentially exposing them to security risks due to the lack of maintenance and control.
CISA is shifting its focus from listing all vulnerabilities to helping organizations prioritize the most critical ones.
A critical Docker vulnerability on macOS allows malicious code in a sandboxed container to escape and access the host's entire file system.
A critical flaw in Unbound DNS resolver versions prior to 1.26.1 allows a malicious DNS zone to trigger a heap overflow, enabling RCE.
A critical vulnerability in Schneider Electric's Modicon M340 controllers and communication modules could allow remote attackers to execute arbitrary code.
A critical vulnerability in Mitsubishi Electric's CC-Link IE TSN protocol could allow network attackers to tamper with industrial control system data.
A critical vulnerability in Mitsubishi Electric's GX Works3 and Motion Control Settings software could allow local attackers to bypass authentication and gain u
Critical vulnerabilities in Hitachi Energy's FACTS Control Platform could allow attackers to disrupt grid operations and compromise sensitive data.
A critical vulnerability in Schneider Electric's PowerChute Serial Shutdown software could allow remote attackers to shut down systems, disrupting operations.