Sponsored Article Multi-factor authentication (MFA) was designed to stop credential-based attacks. But modern phishing techniques have corrupted it into another attack vector. If your cloud…
Mobile apps now drive the majority of digital commerce and financial transactions, yet security teams continue to treat them as an afterthought. Once an app…
In today’s cybersecurity news… cPanel, WHM release fixes for three new vulnerabilities This is not a follow-up from last week’s report of a cPanel and…
This week’s Department of Know is hosted by Rich Stroffolino, with guests Jonathan Waldrop, CISO, Acoustic, and Jason Elrod, CISO, MultiCare Health System. Missed the…
In today’s cybersecurity news… PAN-OS RCE exploit under active use enabling root access and espionage This is a recently disclosed CVE-numbered flaw that researchers at…
We often frame cybersecurity as an endless reactive process. We’ve heard the term cat and mouse game between attackers and defenders. It’s a viscious cycle.…
In today’s cybersecurity news… Google Chrome installs 4GB AI model on devices Computer scientist and lawyer Alexander Hanff reports that recent versions of Google Chrome…
Fraudsters have gotten smarter and faster. Social engineering and authorized push payment scams have surged as traditional account takeover becomes harder to pull off, pushing…
In today’s cybersecurity news… Video game platform hit by supply chain attack Researchers at ESET documented a campaign by the North Korea-aligned threat group ScarCruft…
A “Best-of” compilation article, sponsored by ThreatLocker Zero Trust has achieved near universal buy-in. Even the federal government is on board. So why does implementation…
Early research is showing that Ai provides clear productivity gains, but the ROI is harder to pinpoint. Almost all LLMs will confidently produce seemingly high-quality…
In today’s cybersecurity news… Instructure discloses breach amid leak threats Education software provider Instructure disclosed a cyberattack that disrupted services tied to API keys and…
The identity verification model most enterprises rely on is falling apart. Authentication used to be a checkpoint; you know the password, you have the device,…
In today’s cybersecurity news… Telegram Mini Apps deliver Android malware Researchers at Bahrain-based cybersecurity research firm CTM360 are warning of “a large-scale fraud operation that…
This week’s Department of Know is hosted by Rich Stroffolino, with guests Janet Heins, CISO, ChenMed, and TC Niedzialkowski, Head of IT & Security, Opendoor.…
In today’s cybersecurity news… Critical cPanel and WHM bug exploited as zero-day Experts are warning about a critical CVE numbered (CVE-2026-41940) authentication bypass vulnerability in…
In today’s cybersecurity news… Hackers arrested for selling Roblox accounts Ukrainian authorities arrested three individuals for hijacking more than 610,000 Roblox accounts using info-stealing malware…
Denying by default sounds simple, and it is. The hard part is knowing what to allow, and building a system that makes permit-by-exception actually manageable.…
In today’s cybersecurity news… FIDO Alliance working on securing AI agent payments The industry association said its working with Google and Mastercard on a pair…
In today’s cybersecurity news… PhantomRPC flaw enables privilege escalation A Kaspersky researcher disclosed an unpatched Windows vulnerability dubbed “PhantomRPC” that allows privilege escalation by exploiting…
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.