Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
RovoBlast: One-Click Atlassian Rovo AI Attack Exposed Confluence, Jira, and SharePoint Data — Detection and Hardening Guide
Introduction Varonis researchers have disclosed an attack technique dubbed RovoBlast that targeted Atlassian Rovo, the AI assistant embedded...
UNC6671 Vishing Campaign Targets Personal Phones to Bypass MFA and Steal SaaS Data — Detection and Hardening Guide
Introduction A data extortion group tracked as UNC6671 is running an active voice phishing (vishing) campaign against financial services, pr...
Fake IT Help Desk Phishing Campaign Hits Blackstone, Bridgewater, KKR: Detecting and Defeating MFA Credential Theft
Fake IT Help Desks Are Stealing MFA Credentials from Wall Street's Biggest Firms A coordinated phishing campaign operating under the aliases...
Cisco Catalyst SD-WAN and IOS XE Critical Flaws: Three CVSS 9.8 Bugs — Detection, Hardening, and Remediation Guide
Cisco Ships Fixes for 12 SD-WAN and IOS XE Flaws — Three of Them Are CVSS 9.8 Cisco has released security updates addressing a dozen vulnera...
4,400+ Rockwell PLCs Exposed Online — 22 Found in Cities Hit by Water Utility Cyberattacks: Exposure Discovery, Detection, and Hardening Guide
What Happened On August 3, Forescout researchers completed an internet-wide scan and counted 4,407 Rockwell Automation programmable logic co...
AWS, Google, and Vercel AI Agent Flaws Bypass Model Guardrails — Detection and Hardening Guide
Introduction Security researchers have disclosed a class of architectural flaws in agent infrastructure from Amazon Web Services, Google, an...
Paperclip AI Control Plane Flaws Enable Host Command Execution via Malicious Agent Imports — Detection and Hardening Guide
Paperclip AI Control Plane Flaws: Host Command Execution via Malicious Agent Imports Security researchers have disclosed three vulnerabiliti...
Poison Claude Shadow AI: Detecting Unauthorized LLM Access and Data Exfiltration
Introduction In August 2026, cybersecurity researchers uncovered a disturbing trend in the underground economy: the commodification of unaut...
Google ADK AI Workflows Vulnerability: Prompt Injection Detection and Remediation Guide
Google ADK AI Workflows Vulnerability: Prompt Injection Detection and Remediation Guide Introduction Google has taken immediate action by de...