You can now nominate vulnerabilities for CISA’s KEV with this formLaura FrenchMay 22, 2026CISA seeks to engage the wider community to more quickly identify active exploitation.
A 6-step guide for responding to the Foxconn ransomware/supply chain incidentDavid BalabanMay 19, 2026
Detectify launches MCP server to integrate security testing into AI coding workflowsSC StaffMay 26, 2026
Critical vulnerability in Universal Robots’ PolyScope OS allows remote command executionSC StaffMay 26, 2026
The Oncology Institute reports patient data potentially exposed in third-party vendor breachSC StaffMay 26, 2026
Securing every door: Scalable strategies to manage machine and AI agent risksPaul WagenseilApril 29, 2026
Handling shadow AI at the source: Why the browser is the new control layerPaul WagenseilApril 29, 2026
Trust or fail: AI unlocks the value of unstructured data but raises new challenges for AI successPaul WagenseilApril 28, 2026
Controlling AI at machine speed: Detecting risk, protecting systems, and reversing mistakesPaul WagenseilApril 24, 2026
Vulnerability ManagementCisco patches critical 10.0 flaw in Secure Workload APIsSteve ZurierMay 22, 2026Cisco patches critical 10.0 API flaw in Secure Workload platform.
Network Security‘Underminr’ exploitation poses similar risks to domain fronting, researchers sayLaura FrenchMay 22, 2026ADAMnetworks estimates about 42% of domains could be abused using the technique.
Critical Infrastructure SecuritySenator urges classified briefing after CISA data leak on GitHubSteve ZurierMay 21, 2026A GitHub leak exposed CISA credentials, sparking concerns over secrets management and leadership.
RansomwareWantToCry ransomware evades detection through SMB abuse, remote encryptionLaura FrenchMay 20, 2026More than 1.5 million exposed SMB ports may be susceptible to brute force attacks.
IdentityNew Mini Shai-Hulud attack targets npm ecosystemSteve ZurierMay 20, 2026Mini Shai-Hulud campaign hits 323 npm packages, GitHub Actions and VS Code tools.
Threat ManagementVerizon DBIR 2026: Vulnerability exploits top initial access as patching coverage fallsLaura FrenchMay 20, 2026The report also highlighted ransomware trends and the evolving role of AI in breaches.
Vulnerability ManagementUniversal Robots patches critical 9.8 flaw in ‘cobots’ OSSteve ZurierMay 19, 2026Critical flaw in Universal Robots cobots could let attackers hijack production systems remotely.
OT SecurityIran suspected in breaching automatic tank gauges at US gas stationsLaura FrenchMay 19, 2026The automatic tank gauge systems were reportedly exposed online without passwords.