Both state-affiliated cyberespionage group and cybercrime gangs are targeting AI-related documents, configuration files, and proprietary models during intrusions. In addition, the number…
News
A maximum severity GitLab flaw could turn your CI/CD server into an attacker’s treasure trove
Yet another security vulnerability has been discovered in GitLab infrastructure, this one a perfect 10 in severity. CVE-2026-85706, the second flaw GitLab…
What the 3M ChatGPT case reveals about AI governance
One detail in the Watson Grinding explosion litigation involving 3M changed the way I think about prompt governance. An engineering expert retained…
How to level up from security pro to security leader
There comes a time in a cybersecurity professional’s life when being a tech expert is no longer enough. The next step may…
Why AI raises the stakes for exposure validation
AI dominated the conversation at Fal.Con 2026, but one of the most important takeaways wasn’t simply how AI is changing cyber defense….
Update your firewall rules: Teams and Copilot are changing address
Microsoft is changing the destination address of two of its most popular services: starting this month, it will redirect M365 and Teams…
ConnectWise patches critical ScreenConnect authentication failure after five days
ConnectWise has issued a security update for ScreenConnect, five days after warning customers the product could allow files to be transferred and…
India’s STPI serves TerminalFix-style attack via fake Cloudflare check
A website linked to India’s Software Technology Parks of India (STPI) is serving a spoofed Cloudflare verification page that silently copies a…
Anthropic finds evidence of a fourth AI escaping from containment
Anthropic has owned up to a fourth security incident involving its AI model, Claude, escaping onto the open internet and attacking other…
How AI and cybersecurity are reshaping ServiceNow
The once stable era of IT service management (ITSM) has entered a period of disruption and uncertainty. At least if you’re an…