Application securityThe human factor in Salesforce security: From permission creep to social engineeringPaul WagenseilNovember 21, 2025Many enterprises are running unsafe Salesforce instances, and lack of awareness and misunderstandings may be the reasons why.
AI/MLWhy the industry must collaborate in the AI eraRoi Cohen November 20, 2025Here’s the case for more integrations and partnerships as AI expand.
Vulnerability ManagementA second Fortinet FortiWeb zero-day spurs 7-day CISA KEV deadlineLaura FrenchNovember 19, 2025An authenticated user could use the flaw to execute unauthorized code.
Cloud SecuritySeven ways to develop a workable browser security strategyOr EshedNovember 18, 2025Teams need to turn the browser from a blind spot to a control plane – here’s how.
Vulnerability ManagementXWiki bug actively exploited by multiple threat actorsSteve ZurierNovember 17, 2025CVE-2025-24893 could let attackers perform remote code execution to facilitate cryptomining.
Vulnerability ManagementSamsung flaw added to CISA list after spyware uncovered on devicesSteve ZurierNovember 11, 2025Android spyware spread in zero-day attacks on high-end Samsung devices running WhatsApp.
RansomwareScattered Spider, LAPSUS$, and ShinyHunters form extortion allianceSteve ZurierNovember 6, 2025Trustwave warns the new group aims to spread fear and extort companies for big payouts.
AI/MLISC2 Security Congress: The shaky state of AI security todayPaul WagenseilOctober 31, 2025AI development is progressing by leaps and bounds. Too bad AI security isn't keeping up, said several speakers at the ISC2 2025 Security Congress.