This website uses cookies
Read our Privacy policy and Terms of use for more information.
Apr 13, 2026
Claude Managed Agents went live April 8. Four governance questions every security team needs answered first.
Apr 10, 2026
Anthropic's Glasswing, gemini-ai-checker DPRK malware, TrueConf KEV, and Secure Boot's June deadline.
Apr 9, 2026
Security Copilot activates April 20. Agents don't self-deploy. Here's what to do before your window opens.
Apr 7, 2026
How attackers are weaponizing OAuth to defeat MFA.
Apr 6, 2026
A 46-minute supply chain attack on LiteLLM proves that AI agent tool-trust is a critical liability. Here is your defense roadmap for the Model Context Protocol.
Apr 3, 2026
Two zero-days in Ivanti Endpoint Manager Mobile (EPMM) — CVE-2026-1281 and CVE-2026-1340, both CVSS 9.8 — allow any unauthenticated attacker to run arbitrary commands on the platform that manages your organization’s enrolled devices, push certificates, email accounts, and compliance policies.
Apr 2, 2026
Since at least November 2025, commercial surveillance vendors and a suspected Russian espionage group have been delivering full iPhone compromise through a single website visit. No interaction beyond the page load is required. CISA added three of DarkSword’s six CVEs to its Known Exploited Vulnerabilities catalog and set a federal patching deadline of April 3 — tomorrow.
Apr 1, 2026
SentinelOne’s DFIR team responded to multiple incidents where attackers exploited CVE-2025-59718 — a CVSS 9.8 FortiGate authentication bypass — extracted Active Directory credentials directly from the firewall’s own configuration file, and moved laterally across corporate networks.
Mar 31, 2026
On March 30, an attacker hijacked the npm account of axios’s lead maintainer and published two malicious versions of the library. The payload called home within two seconds of install, then deleted itself to avoid detection.
Mar 30, 2026
Non-human identities outnumber human users 100-to-1. 97% carry excessive privileges. 78% of organizations have no formal policy for removing them. The fastest-growing breach vector in enterprise infrastructure isn’t phishing. It isn’t ransomware.