The Disk Image That Skated Past Your Scanner
A VHDX file mounted itself and dropped Remcos. Here's why your cybersecurity stack missed it, and what to change this week.
A VHDX file mounted itself and dropped Remcos. Here's why your cybersecurity stack missed it, and what to change this week.
A WordPress CDN, an OIDC flow, and an SD-WAN console all got owned this week. The cybersecurity lesson is uncomfortable. See what to do.
UNC6508 spent a year exfiltrating research emails using Workspace forwarding rules. Here's the cybersecurity gap that let it happen, and how to close it.
SearchLeak proved one click on microsoft.com can drain a Copilot tenant. Here's how to lock down the AI surface your cybersecurity team just bought.
A CISO admits the green-yellow-red dashboard hides the real cybersecurity risks. Hardware backdoors and CI/CD attacks prove it. See what to do next.
Adversaries treat Friday evening through Monday morning as prime time. Here's how to close the weekend cybersecurity gap without 24/7 staffing.
The summer conference circuit is dense, but the patch queue doesn't move on its own. Here's what actually buys down cybersecurity risk this quarter.
The FBI nuked a million phishing URLs this week. The credentials already moved. Here's where cybersecurity defenders should actually invest next.
Three scanners and an LLM won't fix the real cybersecurity gap behind this week's VPN and ERP attacks. Here's where to look instead.
An ex-IT admin got 21 months in prison because his old credentials still worked. The npm 12 change tells the same story. Here is what to fix this week.