For years, CSOs have worried about their IT infrastructure being used for unauthorized cryptomining. Now, say researchers, they’d better start worrying about…
News
Critical bug in popular vm2 Node.js sandboxing library puts projects at risk
A critical vulnerability has been patched in vm2, a widely used library for the Node.js JavaScript runtime that allows untrusted code to…
Palo Alto unveils Quantum-Safe Security to mitigate cryptographic risk
Palo Alto Networks unveiled its Quantum-Safe Security solution at the company’s virtual Quantum-Safe Summit Tuesday. The solution is designed to help organizations…
Massives Datenleck bedroht rund 150 Millionen Benutzer
Die offengelegten Zugangsdaten stellen ein erhebliches Sicherheitsrisiko dar. Digineer Station – shutterstock.com Der Cybersicherheitsforscher Jeremiah Fowler deckte kürzlich ein Datenleck mit 149…
Critical FortiCloud SSO zero‑day forces emergency service disablement at Fortinet
Fortinet has disclosed a critical authentication bypass zero-day vulnerability affecting its FortiCloud single sign-on feature after the company took the emergency step…
Sicarii ransomware locks your data and throws away the keys
A newly observed Sicarii ransomware strain contains a critical encryption key handling defect that can leave encrypted data unrecoverable, even if a…
Always-on privileged access is pervasive — and fraught with risks
Privileged access management (PAM) has always been about ensuring least privilege. But the nature of enterprise cybersecurity — on top of the…
Delegation is a risk decision every leader makes, not an ops choice
You make delegation decisions every day. Sometimes they look like management choices: who owns a workflow, which team runs a tool, how…
Skills CISOs need to master in 2026
Three decades ago, when Steve Katz became the world’s first CISO at Citicorp/Citigroup, he quickly realized that his role was more than…
AI-powered polymorphic attack lures victims to phishing webpages
AI-fueled attacks can transform an innocuous webpage into a customed phishing page. The attacks, revealed in a research from Palo Alto Networks’…