Verizon DBIR: Vulnerability Exploits Overtake Credentials as Top Access Vector
Verizon DBIR finds 31% of data breaches began with software flaws last year
20 articles
Verizon DBIR finds 31% of data breaches began with software flaws last year
Microsoft’s Digital Crimes Unit has taken down the infrastructure of Fox Tempest, a prolific cybercrime-enabling threat group
AI-powered vulnerability scanning leaves no excuse for unpatched bugs as the EU Cyber Resilience Act pushes firms toward secure-by-design software
Digital.
Open source tool maker Grafana says hackers stole codebase via GitHub breach
Bridewell report calls out emergence of “fix-style” attacks
Over 200 people were arrested in an anti-cybercrime operation that spanned 13 countries across the Middle East and North Africa
New for 2026, the Infosecurity Europe Startup competition will see five finalists pitch their ideas in front of a live audience, including senior industry le...
The UK’s National Cyber Security Centre is helping organizations to understand agentic AI security risks
The research community was awarded $1.
The UK’s financial authorities have set expectations for the sector on cybersecurity and operational resilience
A new Gremlin stealer variant has evolved into a modular toolkit with advanced evasion and data theft capabilities, according to new Unit 42 research
The zero-day vulnerability affects on-premises installations for all versions of Exchange Server 2016, 2019 and Subscription Edition
A suspected China-linked threat actor targeted the Indian branch of a global manufacturer leveraging an open source offensive toolkit
Mustang Panda campaign deploys updated FDMTP backdoor against Asia-Pacific and Japan networks
Google’s Android Advanced Protection Mode is getting a new feature allowing trusted security experts to investigate potential spyware infections
New Fragnesia kernel flaw lets unprivileged local users escalate to root on Linux systems
Semperis study finds 74% of organizations believe AI will increase attacks on identity infrastructure
The Information Commissioner’s Office has released new guidance on how to mitigate the risk of AI-powered attacks
Instructure says it reached an agreement with ShinyHunters over the Canvas breach data