CYBERSECURITY

5 Practical Ways to Use Security AI Without Losing Control

5 Practical Ways to Use Security AI Without Losing Control

According to the report, there has been a 1,200% increase in phishing attacks since generative AI became popular, and there is an increasing

AI and the Death of Accuracy: Implications for Zero-Trust

AI and the Death of Accuracy: Implications for Zero-Trust

As AI tools start to train on themselves, the abundance of AI-generated content may pose a threat to large language models (LLMs) This article

Vibe-Coded 'Sicarii' Ransomware Can't Be Decrypted

Vibe-Coded 'Sicarii' Ransomware Can't Be Decrypted

The decryption process is ineffective for victims of the new Sicarii ransomware, which was probably created by an inexperienced cybercriminal using

Microsoft Rushes Office Zero-Day Emergency Patch

Microsoft Rushes Office Zero-Day Emergency Patch

A security flaw in several Microsoft Office and Microsoft 365 versions that hackers are actively taking advantage of has prompted Microsoft to

Forgotten Attack Surface Revealed by a Critical Telnet Server Flaw

Forgotten Attack Surface Revealed by a Critical Telnet Server Flaw

An often-overlooked threat vector is once again in the spotlight as threat actors take advantage of a critical vulnerability that impacts hundreds

WorldLeaks Extortion Group Claims It Stole 1.4TB of Nike Data

WorldLeaks Extortion Group Claims It Stole 1.4TB of Nike Data

After the extortion group WorldLeaks claimed to have stolen more than 1.4TB of files from the multinational sportswear company and posted them on

WhatsApp Rolls Out Lockdown-Style Security Mode to Protect Targeted Users From Spyware

WhatsApp Rolls Out Lockdown-Style Security Mode to Protect Targeted Users From Spyware

In order to protect specific users from sophisticated cyberattacks based on their identity and activities, Meta announced on Tuesday that it is

ClickFix Assaults Extend Using Microsoft Scripts, Trusted Web Services, and Fake CAPTCHAs

ClickFix Assaults Extend Using Microsoft Scripts, Trusted Web Services, and Fake CAPTCHAs

Cybersecurity researchers have revealed information about a new campaign that uses a signed Microsoft Application Virtualization (App-V) script and

Hand CVE Over to the Private Sector

Hand CVE Over to the Private Sector

VIEWS In order to address a gap that never really existed in the first place, the Common Vulnerability Enumeration (CVE), now known as Common

Beauty in Destruction: Exploring Malware's Impact Through Art

Beauty in Destruction: Exploring Malware's Impact Through Art

In the lobby of the Finnish security firm WithSecure, a striking enormous heart hangs from the ceiling This article explores click love art. .

RCE Attacks via Spreadsheet Formulas Are Made Possible by a Critical Grist-Core Vulnerability

RCE Attacks via Spreadsheet Formulas Are Made Possible by a Critical Grist-Core Vulnerability

Grist-Core, an open-source, self-hosted version of the Grist relational spreadsheet database, has been found to have a serious security flaw that

Five Useful Strategies for Security AI Without Losing Control

Five Useful Strategies for Security AI Without Losing Control

According to the report, there has been a 1,200% increase in phishing attacks since generative AI became popular, and there is an increasing

Emergency Patch for Active Exploitation of Microsoft Office Zero-Day (CVE-2026-21509)

Emergency Patch for Active Exploitation of Microsoft Office Zero-Day (CVE-2026-21509)

Out-of-band security patches for a high-severity Microsoft Office zero-day vulnerability that has been used in attacks were released by Microsoft

Wiper Attack on Polands Power Grid Caused by Sandworm

Wiper Attack on Polands Power Grid Caused by Sandworm

Last month, Russia's Sandworm advanced persistent threat (APT) group was blamed for a devastating cyberattack against Poland's electrical grid.

A Tax Phishing Campaign Targets Indian Users Blackmoon Malware Delivery

A Tax Phishing Campaign Targets Indian Users Blackmoon Malware Delivery

As part of a suspected cyber espionage campaign, cybersecurity researchers have found an ongoing campaign that targets Indian users with a multi-stage

With 1.5 million installs, malicious VS Code AI extensions steal developer source code.

With 1.5 million installs, malicious VS Code AI extensions steal developer source code.

Two malicious Microsoft Visual Studio Code (VS Code) extensions have been found by cybersecurity researchers This article explores code extensions

Winning Against AI-Based Attacks Requires a Combined Defensive Approach

Winning Against AI-Based Attacks Requires a Combined Defensive Approach

When it comes to cybersecurity, one thing is certain: adversaries are constantly coming up with new ideas This article explores ai orchestrated cyber. .

Konni Hackers Deploy AI-Generated PowerShell Backdoor Against Blockchain Developers

Konni Hackers Deploy AI-Generated PowerShell Backdoor Against Blockchain Developers

PowerShell malware created with artificial intelligence (AI) tools has been seen to be used by the North Korean threat actor Konni to target blockchain

Additional Fortinet Issues: Exploited Critical FortiSIEM Flaw

Additional Fortinet Issues: Exploited Critical FortiSIEM Flaw

Fortinet customers are already familiar with 2026 even though the year has only just begun because a new vulnerability has been exploited This article explores fortisiem vulnerabilities cv

Security Leaders: CISOs Gain Notoriety Enter the Executive Suite.

Security Leaders: CISOs Gain Notoriety Enter the Executive Suite.

Because of the world's growing reliance on technology, companies are increasingly designating top cybersecurity leaders as Chief Information Security Officers (CISOs) and treating them as

An AI system cuts the time it takes to reconstruct an attack from weeks to hours.

An AI system cuts the time it takes to reconstruct an attack from weeks to hours.

In order to enable security teams to more rapidly determine whether their systems are resistant to the most recent attacks, a federal lab seeks to improve the efficiency of threat emulatio

2025 served as a reminder to safeguard human judgment rather than just systems.

2025 served as a reminder to safeguard human judgment rather than just systems.

COMMENTARY I keep returning to one unsettling realization about 2025 as 2026 gets underway. Attackers were not misinterpreted by us. We misinterpreted failure.

The majority of the d

The malware GootLoader uses 500–1,000 Concatenated ZIP Files to Avoid Recognition

The malware GootLoader uses 500–1,000 Concatenated ZIP Files to Avoid Recognition

GootLoader, a JavaScript (also known as JScript) malware loader, has been seen to use a corrupted ZIP file that is intended to evade detection by concatenating between 500 and 1,000 archiv

Top 5 this week

Page 19 of 22