Attack exploiting SimpleHelp vulnerability deploys novel loader, infostealerLaura FrenchJune 30, 2026The TaskWeaver loader delivers Djinn Stealer, which targets dev credentials and AI tokens.
Five nines and the SaaSpocalypse: Why credential security survives the AI resetJohn BennettJune 26, 2026
Critical Infrastructure SecurityICIT founder on AI, quantum and critical infrastructureSC StaffJune 30, 2026Parham Eftekhari discusses AI, quantum and the future of critical infrastructure trust.
Data SecurityTrump signs executive order to accelerate US quantum computing strategySC StaffJune 29, 2026Trump order accelerates U.S. quantum strategy, boosting post-quantum security.
Vulnerability Management2 Linux kernel flaw PoCs published, enabling local privilege escalationLaura FrenchJune 26, 2026One of the flaws, DirtyClone, is a variant of the DirtyFrag vulnerability class.
Critical Infrastructure SecurityThink tank warns US markets face hidden infrastructure risksSC StaffJune 26, 2026ICIT: Hidden infrastructure concentration threatens U.S. market resilience.
PhishingNew ‘Blacksite’ phishing kit bundles AiTM with scanner evasionLaura FrenchJune 25, 2026The kit includes Cloaked.gg, which displays benign sites to detected scanners and sandboxes.
MalwareStealC infrastructure takedown assisted by AI analysis, C2 infiltrationLaura FrenchJune 25, 2026Microsoft, Proofpoint, IBM, Europol and other partners took aim the StealC and Amadey “assembly line.”
Network SecurityFortiBleed campaign steals 110M credentials from FortiGate targetsLaura FrenchJune 24, 2026A tool called FortigateSniffer abuses a diagnostic utility to continuously monitor network traffic.
Vulnerability ManagementFFmpeg vulnerability ‘PixelSmash’ could enable RCE via video fileLaura FrenchJune 23, 2026An attacker can use a crafted file to trigger a heap buffer overflow and overwrite a function pointer.