In the news: @zscaler has announced plans to acquire Symmetry Systems, a move aimed at giving enterprises better visibility into how AI agents, service accounts, and other non-human identities access applications and data. The proposed acquisition would..hubs.la/Q04lryvV0
In the news: Cybercriminals began building infrastructure to target the 2026 FIFA #WorldCup well before the first match was played, according to a new report from Fortinet’s FortiGuard Labs. The company said it tracked FIFA-themed cyber activity from...
hubs.la/Q04lrx1g0
In the news: @Fortinet's FortiGuard Labs recently discovered a phishing campaign with the goal of stealing sensitive data from target devices using a PureLogs variant. The lure hidden behind business document theming exploits the urgency and routine ...
hubs.la/Q04kz8HJ0
In the news: Since the inception of AI security operations center (SOC) platforms, they have operated around and struggled against fragmented, context-free data. Architectures that center around security alerts treat each of these events in isolation...
hubs.la/Q04kwyv60
In the news: CVE-2026-9082 and the Hidden Risk in Drupal's Core - A recently discovered vulnerability in Drupal Core, tracked as CVE-2026-9082 has been exploited in the wild and added to the United States Cybersecurity and Infrastructure Security Agency..
hubs.la/Q04kx4fC0
In the news: Cyera’s $50M Genie Deal Signals the Rush for AI Security Startups - Cyera has acquired Genie Security a five-person Israeli cybersecurity startup founded only months ago, in a deal reportedly worth about $50 million, underscoring how quickly..
hubs.la/Q04kk32d0
In the news: Claw Chain Exposes the Blind Spot at the Center of Agentic AI Security.
Open-source agentic AI platform OpenClaw has undergone rapid adoption since its late 2025 launch. First introduced as Clawdbot, OpenClaw has seen broad enterprise ...
hubs.la/Q04jRT4V0
In the news: Twill Typhoon Modular Backdoor Rewrites Rules of Detection
Chinese-nexus threat actors have long demonstrated patience and operational sophistication. But newly-released research by Darktrace marks something more consequential than another...
hubs.la/Q04jrbmH0
In the news: How AI Is Collapsing the Federal Patching Window
The United States Cybersecurity and Infrastructure Security Agency (CISA) established the Known Exploited Vulnerabilities (KEV) catalog in November 2021 as a resource to aid federal agencies...
hubs.la/Q04jtZsr0
In the news: Fake Claude Code Page Turns Trusted Developer Workflow Into Credential-Stealing Attack. Fake code delivered an undocumented credential stealer by mimicking familiar developer workflow, according to new research from Ontinue.
hubs.la/Q04hSXxT0
In the news: The AiTM Campaign That Made Your Policies Work Against You. A recent large-scale credential theft campaign discovered by Microsoft Defender Research serves as a prime demonstration of how institutional culture can become the attack surface...
hubs.ly/Q04hQVmt0
In the news: On April 24 2026, the Elementary Open Source Python CLI was released containing malicious code injected by an attacker posting a crafted pull request comment. The GitHub Actions workflow interpolated the comment into a shell context ...
hubs.ly/Q04hQ5DR0
In the news: All it took was about nine seconds. An AI coding agent wiped out months of customer data essential to the PocketOS SaaS platform and its car rental clients. The Cursor agent running on an Anthropic Claude Opus v. 4.6 AI model was not asked...
hubs.la/Q04hk4nF0
Thank you to @Veracode for sponsoring the 2026 Cyberthreat Defense Report. For #AppSec security teams the findings offer useful context on where organizations are struggling, how mature current practices are, and where investment is likely to increase.
hubs.la/Q04g-Gj-0
In the news: A newly discovered vulnerability, dubbed Copy Fail and tracked as CVE-2026-31431, defies the profile of a classic kernel exploit by requiring no race condition, no version-specific offsets, and no compiled payloads. The same 732-byte Python...
hubs.la/Q04g-FfS0
In the news: Malicious versions of four SAP-related npm packages exposed developer machines and CI/CD systems to possible credential theft. Rather than targeting production SAP servers directly, the attack reached into the build pipeline used to create...
hubs.la/Q04g-p9K0
In the news: The Remote Procedure Call mechanism of the Interprocess Communication ecosystem is the universal communication backbone of Windows systems, embedded so deeply in the OS that its failure modes become everyone's problem. A recent report ...
hubs.la/Q04g-zpp0
ISC2 has sponsored the 2026 Cyberthreat Defense Report giving cybersecurity professionals another way to explore this year’s global benchmark data.The value is in seeing how your organization’s priorities compare against peers across industries and regions
hubs.la/Q04gHrtx0
Sstill spend the majority of your time responding to risk after it appear? Teams are getting more aggressive about identifying exposure before it becomes an incident. This @qualys guide looks at what proactive security means in practice.
Grab yours here: hubs.la/Q04d4qz70
Quick follow-up on yesterday's report drop.
What story do the stats tell? Boards are loosening the purse strings. Operators are bracing for AI-driven team consolidation. The money is going somewhere. It's just not necessarily going to people. 👉hubs.la/Q04cYGQZ0#CDR2026