Security researchers have developed a new image-based prompt injection attack that can manipulate how multimodal AI systems interpret user instructions without modifying…
News
‘Patched’ Windows bug resurfaces 6 years later as working SYSTEM-level exploit
An old elevation-of-privilege (EoV) vulnerability affecting the Cloud Filter driver “cldflt.sys” in Windows has come back to haunt Microsoft, as researchers claim…
Why the best security investment a board can make in 2026 isn’t another tool
There is a conversation that happens in boardrooms every quarter that security leaders will recognize. The CISO presents the threat landscape. The…
AI coding is fueling a secrets-sprawl crisis few CISOs are containing
When Matt Schlicht built Moltbook, the social network where AI agents talk to one another, he didn’t write the code himself. He…
Identity Management and Information Security News for the Week of May 15th: SailPoint, Cofense, Keeper Security, and More
The editors at Solutions Review have curated this list of the most noteworthy Identity Management and Information Security news from the week…
AI Governance in Cybersecurity Has a Leadership Problem, Not a Technology Problem
Enterprises are running AI risk programs that lack real accountability structures. This article, which expands on insights from a recent episode of The…
Identity Management and Information Security News for the Week of May 8th: Omada, LastPass, Ping Identity, and More
The editors at Solutions Review have curated this list of the most noteworthy Identity Management and Information Security news from the week…
World Password Day Quotes from Industry Experts in 2026
For World Password Day 2026, the editors at Solutions Review have compiled a list of comments from some of the leading industry…
The IAM Stack Was Built for Humans. AI Agents Are Breaking It.
The proliferation of non-human identities in enterprise environments isn’t a problem for the future. It’s the current state of the field, and…
Expired domain leads to supply chain attack on node-ipc npm package
A popular npm package called node-ipc has been compromised, with hackers publishing malicious versions that bundle credential stealing malware. The root cause…