Greatness PhaaS Adds Device Code Phishing to Bypass MFA and Steal Tokens
The commercial phishing-as-a-service (PhaaS) toolkit known as Greatness has become the latest crimeware solution to add support for device code phishing, a r...
20 articles
The commercial phishing-as-a-service (PhaaS) toolkit known as Greatness has become the latest crimeware solution to add support for device code phishing, a r...
Cybercriminals are cloning popular GitHub repositories for AI tools and developer resources to distribute an infostealer, according to Netskope Threat Labs. ...
A credential-stealing npm worm that first appeared in keyv@6.0.
We created the Cloudflare Codex, a governed body of engineering standards that AI agents consume across the development lifecycle. By pairing structured RFCs...
Seeking to protect users' iCloud accounts, Apple is reportedly mounting a new challenge to British legal demands for ways around the company's Advanced Data ...
Security flaws in automated workflows in the GitHub repository for Google’s Agent Development Kit for Python could allow public-facing AI agents to trigger m...
Thermo Fisher patched CVE-2026-17583 in five supported DNA analysis products by adding digital signatures that help laboratories detect modified forensic files.
You don’t need to be a fortune teller to understand where enterprise IT is headed. McKinsey reported in November that 62% of global organizations were experi...
More than 30 Minnesota community water systems were hit by coordinated cyber activity against their operational technology on July 26 and 27; several lost re...
The U.S.
CVE-2026-58048 is a critical privilege-escalation vulnerability in the database management functionality of cPanel & WHM. This flaw allows an authenticated c...
IBM's 2026 Cost of a Data Breach report highlights a 56% surge in AI-driven cyberattacks, leading to an average cost of $6 million per breach.
Dataminr's 2026 Mid-Year Threat Landscape Report reveals that the median time to patch vulnerabilities has increased to 43 days, contrasting sharply with the...
In this interview with Help Net Security, Brian Hill, Field CISO, Client Advisory for BlackCloak, explains how attackers reach companies through the personal...
LLMs made it cheap to flood bug bounty programs with submissions.
LLMs made it cheap to flood bug bounty programs with submissions.
The INC Ransomware operation has emerged as the "dominant threat actor" exploiting the recently disclosed security flaws in SonicWall Secure Mobile Access (S...
The surge in malicious activity began around July 29, with initial reports identifying the "openconnect-sso" package as compromised.
Amgen detected the breach in July 2026 and initiated its cybersecurity response plan, engaging forensic experts to investigate.
Today marks the release of Metasploit Pro 5.1 - building upon the foundation laid in 5.