News
Your Secret Scanner Has A Blind Spot: Here’s How To Fix It
6+ hour, 15+ min ago (374+ words) Every penetration tester has had the moment. You are two days into an engagement, sifting through cloned repositories and intercepted HTTP responses, and a hardcoded AWS key appears in a config file that has been sitting in version control for…...
Managing App Access On Frontline Devices In An Always-On World
1+ day, 2+ hour ago (554+ words) Australia's recent decision to restrict social media access for children under 16 marks one of the most significant digital policy interventions the country has seen in years. The new policy reflects rising concern among policymakers around youth access to social media…...
Ad Fraud Is Much More Than A Marketing Problem
4+ day, 11+ hour ago (303+ words) Both marketing and cybersecurity need to see this problem for what it is " a shared threat. Defending it requires breaking down silos between the two disciplines and treating advertising as part of the attack surface. It's worth noting that, today,…...
AI Is Making Social Engineering Harder To Detect—But We're Still Training People Like It's 2015
5+ day, 5+ hour ago (729+ words) This wasn't a zero-day exploit or supply chain attack. Just an AI-generated video and audio, and an employee whose security awareness training had never prepared them for anything like this. The Arup case exposed an uncomfortable truth: while threat actors…...
Why Cyber Risk Gets Lost In The Boardroom
1+ week, 5+ day ago (583+ words) Cyber Risk is now a standing item in most boardrooms.You'llfind it in annual reports, audit committees, and regulatory filings. And still, cyber risk is not being addressed. Not because boardsdon'tcare, or because CISOs are not reporting. But because something…...
Lazarus Group Turns To Medusa Ransomware In Escalating Global Extortion Campaign
1+ week, 5+ day ago (341+ words) New evidence indicates'that the North Korean state-sponsored Lazarus Group has adopted the infamous Medusa ransomware in its extortion attacks, including those against the healthcare and nonprofit sectors.' The Threat Hunter Team from Symantec and Carbon Black says these attacks have…...
PayPal Customer Data Exposed For Six Months In Breach
2+ week, 6+ hour ago (347+ words) The company said it happed due'to an error in its PayPal Working Capital (PPWC) loan'application, an offering that gives businesses a cash advance based on their PayPal sales history.' Between 1 July and 13 December'2025,'the PII of a small number of…...
Customer Data From Volvo Group North America Exposed In Conduent Breach
3+ week, 1+ day ago (217+ words) In a'filing with the Maine Attorney General,'Volvo Group North America'said it learned'in late January that employee data had been exposed through systems run by Conduent." "Upon discovery of the incident, we safely restored our systems and operations and notified…...