Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
4+ hour, 29+ min ago (25+ words) An engineering breakdown of AitM authentication relays, Device Code phishing, post-compromise MFA registration …...
Cognito With the Safety Off: MFA Disabled, Advanced Security Disabled
10+ hour, 52+ min ago (722+ words) ✓ Human-authored analysis; AI used for formatting and proofreading. A Cognito user pool is an identity perimeter. The pool authenticates customers, issues JWTs the application trusts, and brokers federation to social identity providers. Whatever else the application does for security such…...
PaperCut AI Swarm Attack Breaches 395 Orgs [2026]
14+ hour, 25+ min ago (416+ words) Silverfort frames the incident as a warning specifically about identity security. Its analysis argues that automated, AI-driven credential harvesting and lateral movement can escalate to domain-admin control far faster than most organizations’ detection and response processes are built to handle,…...
sk-1234 Is Not a Secret, It's a Docs Example, and 10% of You Shipped It Anyway
12+ hour, 26+ min ago (325+ words) Nearly one in ten internet-facing LiteLLM gateways were running with the literal example admin key from the documentation still active. Not a weak key. Not a leaked key. The key that's printed in tutorials, sk-1234, sitting wide open on the…...
The Chain That Opened the Crisis: How SonicWall SMA1000’s First Zero-Day Turned VPN Appliances Into MFA Harvesting Machines
13+ hour, 27+ min ago (129+ words) CVE-2026-15409 chained SSRF and code injection to achieve root on SMA1000 appliances, stealing TOTP MFA seeds and turning the VPN gateway into a persistent surveillance platform. CISA flagged it for ransomware exploitation. We covered the second chain but never the first…...
Your Critical Vulnerabilities Might Not Be Your Biggest Risk
2+ day, 7+ hour ago (1309+ words) Security teams have become exceptionally talented at finding vulnerabilities. Now, it’s time to turn our attention to optimizing the process for determining which of those vulnerabilities actually create a path to compromise. A critical vulnerability may look alarming on a…...
One Click Away from Account Compromise: What a Recent Microsoft 365 Phishing Campaign Teaches Us
1+ day, 2+ hour ago (352+ words) Phishing is still one of the simplest ways to target an employee. A message does not always look …...
The PaperCut Pipeline: How Two Vulnerabilities Became an Automated RCE Factory
1+ day, 13+ hour ago (148+ words) Two PaperCut vulnerabilities are now chained into a fully automated attack pipeline with in-memory persistence—and 47% of installations can't patch. On August 26, security researchers at Huntress identified anomalous activity in customer logs involving base64-encoded commands like whoami and tasklist. This…...
More JFrog Artifactory bugs under attack, and all 3 have patches
2+ day, 1+ hour ago (603+ words) JFrog Artifactory instances continue to get hit hard. Multiple attackers are exploiting three JFrog Artifactory bugs to gain administrative control over vulnerable instances - in some cases, just days after the vendor published a patch - and then using this illicit access…...
Automox Mitigation Worklets cut endpoint exposure to unpatchable flaws
2+ day, 15+ hour ago (207+ words) Automox has announced its AI-speed Mitigation Worklet Pipeline, which automates mitigation to reduce risk from the increased volume and velocity of frontier-model AI vulnerabilities. Now the time from vulnerability disclosure to exposure mitigation is shortened from days or weeks to…...