Codex Found The Bug. Every Major Web Server Has It.
An AI fuzzer just embarrassed five web server teams with HTTP/2 Bomb. Here is what your cybersecurity playbook should do about it.
An AI fuzzer just embarrassed five web server teams with HTTP/2 Bomb. Here is what your cybersecurity playbook should do about it.
Microsoft Coreutils ships native Linux binaries to Windows, expanding the LOLBin surface. Here's how to update your cybersecurity detections before attackers do.
WeedHack, Kali365, and copyright-phish kits sidestep your cybersecurity stack by hitting unmanaged devices and tokens. Close the gap before they hit yours.
One build flag exposed two billion Microsoft Android installs. Here's the cybersecurity pipeline discipline that actually prevents the next one. Read on.
SVG phishing attachments are slipping past mail filters that trust the image extension. Here's the gap and how to close it before users click.
NIST's vulnerability database is 27,000 tickets behind. Here's how cybersecurity teams should patch when the catalog stops working. Read on.
Meta's AI support bot reset passwords for hijacked Instagram accounts. Here's the cybersecurity playbook for AI in privileged workflows. Start here.
A critical Netlogon bug is under active attack while Microsoft fights three other fires. Here's the cybersecurity work your AD team owes itself this week.
AI agents got DNS-based discovery before anyone built a cybersecurity story around it. Here's what defenders should do before the breach reports start.
An unnamed loader is dropping NetSupport RAT in live networks. Here's why cybersecurity teams keep missing it, and what to do anyway.