Security Insights

Latest threat analysis, industry news, and security best practices from our expert team.

Has:
supply-chain-security22 articles
Sep 11, 2026

JFrog Artifactory Chained Exploit Grants Admin Access: Detection, Hunting, and Remediation for Self-Hosted Servers

Chained JFrog Artifactory Flaws Hand Attackers the Keys to Your Build Pipeline Between August 15 and September 8, researchers at Wiz observe...

managed-socmdrsecurity-monitoring
Vulnerability ManagementRead Now
Sep 10, 2026

Trezor Third-Party Email Provider Breach: Defending Hardware Wallet Users Against Targeted Phishing and Social Engineering

Trezor Warns of Email Provider Breach Fueling Social Engineering Attacks Trezor has disclosed that threat actors breached its third-party em...

incident-responseransomwarebreach-response
Incident ResponseRead Now
Sep 6, 2026

CVE-2026-84361: openSUSE php-composer2 Moderate Fix — Patch, Verify, and Hunt Guide

CVE-2026-84361: openSUSE php-composer2 Moderate Fix — Patch, Verify, and Hunt Guide openSUSE advisory openSUSE-2026-11689-1 ships php-compos...

mdrthreat-huntingendpoint-detection
Vulnerability ManagementRead Now
Sep 6, 2026

Securing Edge AI in Customer-Owned Environments: Attestation, Trust Verification, and Defensive Architecture (2026)

Introduction Microsoft's recent guidance on securing edge AI in customer-owned environments surfaces a problem I've watched grow steadily th...

alert-triagealert-fatiguesoc-automation
Platform & AutomationRead Now
Sep 6, 2026

Why Dependency Modernization in Security Tools Matters: Lessons from Malwarebytes' Engineering Overhaul

The Security Product Itself Is Part of Your Attack Surface Malwarebytes recently published a candid look inside its own engineering organiza...

incident-responseransomwarebreach-response
Vulnerability ManagementRead Now
Sep 5, 2026

Trezor–ShipMonk Third-Party Breach: 67,000 U.S. Customers' 'Deleted' Data Exposed — Detection and Response Guide

Introduction On Friday, hardware wallet manufacturer Trezor disclosed that a breach at its shipping provider, ShipMonk, has exposed the pers...

healthcare-cybersecurityhipaa-compliancehealthcare-ransomware
Incident ResponseRead Now
Sep 3, 2026

H1 2026 Malware & Vulnerability Trends: Defending Against Trusted Tool Abuse, AI-Driven Attacks, and Supply Chain Compromise

The Threat Landscape Has Shifted — And Your Detections Need to Shift With It Recorded Future's H1 2026 malicious software and vulnerability ...

incident-responseransomwarebreach-response
Vulnerability ManagementRead Now
Sep 1, 2026

CVE-2026-82329: JFrog Artifactory Auth Bypass Under Active Exploitation — Detection and Remediation Guide

A Critical Artifactory Flaw Is Being Exploited — And Your Build Pipeline Is the Prize Within days of public disclosure, threat actors began ...

penetration-testingred-teamoffensive-security
Vulnerability ManagementRead Now
Aug 25, 2026

llm-anthropic 0.27 and the anthropic-sdk-python v1.0.0 Breaking Change: A Defender's Guide to Managing the httpx-to-httpx2 Dependency Shift

Introduction On August 24, 2026, Simon Willison released llm-anthropic 0.27, an update to the Anthropic plugin for his LLM command-line tool...

criticalzero-daycve
Vulnerability ManagementRead Now
Previous
Page 1 of 3
Next