UK issues alert over Russian zero-click email attacks
The UK's National Cyber Security Centre (NCSC) issued an alert regarding a new 'zero-click' threat campaign orchestrated by Russian state-backed hackers targ...
20 articles
The UK's National Cyber Security Centre (NCSC) issued an alert regarding a new 'zero-click' threat campaign orchestrated by Russian state-backed hackers targ...
GitHub is launching a two-tier bug bounty program starting July 27, 2026, in response to an increase in low-quality, AI-generated vulnerability reports.
Coverage from Bleeping Computer indicates that an Illinois man has been sentenced to 76 months in prison for hacking into the Snapchat accounts of over 750 w...
An open-source AI assistant named Hermes was used in a cyberattack targeting Thailand's Ministry of Finance, compromising sensitive personnel data and intern...
The United States will deny visas to foreign nationals involved in cybercrime, with potential extensions to their immediate families, according to a recent r...
As detailed in Bleeping Computer, Europol announced a significant operation targeting "The Com," a decentralized network of violent extremist groups responsi...
The ASM six-stage chain runs discovery → classify → assign → route → reduce → monitor.
ASM platform failures occur because executives approve purchases based on discovery validation while discounting classification and routing gaps
Leaders need decision inputs rather than performance measurements
Lower catch this year. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered.
The administration set a target date of September for CISA to finalize the rule, but where the agency is headed remains a mystery to some. The post Industry’...
Measure is how quickly new assets move from unknown to known, owned, and governed
EU fined Google €890M under the DMA for favoring its own services and restricting Play Store competition, with AI search features also under scrutiny.
Agentic endpoint security aims to close AI's growing enterprise security gaps.
OnTrac parcel delivery company is informing that hackers breached its corporate network and may have accessed personal details belonging to its customers. [.
Roughly 1 in 4 of those compromised IPs are based in the United States, Lumen’s Black Lotus Labs said. Botnets like IPIDEA have also rebounded quickly, surpa...
A threat actor used the open-source Hermes AI agent in unattended "YOLO" mode to automate post-exploitation activity during an alleged breach of Thailand's M...
Dependency mapping focuses on what breaks, not what exists
Hackers are changing the DNS settings on Wi-Fi devices at hotels and conference centers to redirect users to fake Microsoft 365 login pages. [.