Webinar: Learn How to Answer "Are We Exposed?" Faster After a New CVE
A major vulnerability is disclosed. The alert lands immediately. Then comes the harder question: Are we actually exposed?
Breaches, defenses, and the quiet infrastructure risks that do not make headlines until they do.
A major vulnerability is disclosed. The alert lands immediately. Then comes the harder question: Are we actually exposed?
Adobe released patches for CVE-2026-75650 (CVSS 10.0), a Magento zero-day under active exploitation since September 4, 2026.
Researchers have disclosed a sprawling SEO poisoning campaign, codenamed BengalSEO, that delivers MayaBot malware and routes victims to tech support scams.
A flaw in FreeIPA lets a client that has never logged in create a Kerberos identity of its own choosing and end up in the administrators group.
Grindr has agreed to pay £26 million ($35.1 million) to settle a U.K. lawsuit alleging it shared users' HIV status with third parties.
Threat hunters have disclosed details of a widespread data theft and extortion threat cluster targeting Microsoft 365 and other SaaS offerings.
Researchers have disclosed details of a Chromium-based post-exploitation toolkit called PEEP that masquerades as a bookmarks extension.
Researchers revealed a flaw allowing fraudsters to "zombify" expired Visa cards for contactless payments using a man-in-the-middle app.
The FBI warned that cyberattacks have hit water utilities in no fewer than seven states, well beyond Minnesota alone.
Hours of San Francisco Police Department drone video footage exposed on the open web illustrates a new era of incredibly granular urban surveillance.