How much cybersecurity risk does AI create?
Over a 30 day period, Tenable detected 457 million AI-related security issues among 7,000-plus organizations, an average of 62,000 exposures per organization. If we didn’t already know that shadow AI…
Over a 30 day period, Tenable detected 457 million AI-related security issues among 7,000-plus organizations, an average of 62,000 exposures per organization. If we didn’t already know that shadow AI…
At Black Hat, every new data source is a trade-off. More telemetry means better visibility – but also more data for threat hunters to sift through. From SMA to SAA: Same Need,…
Key Points Check Point Research (CPR) tracks ‘Cavern Manticore’ as an Iran-nexus threat actor operating against Israeli targets, with a focus on the government and IT sectors. Cavern Manticore shares…
Anyone trying to understand continuous red teaming usually gets the same high-level explanation: it is ongoing, attacker-informed, and designed to uncover risk between formal assessments. Useful as that description is,…
Welcome to this week’s edition of the Threat Source newsletter. “I do not know everything; still many things I understand.” ― Madeleine L’Engle, A Wrinkle in Time “Don’t try to comprehend…
TL;DR Cato AI Labs has discovered two critical remote code execution (RCE) vulnerabilities in Cursor IDE, the popular development environment which, according to Cursor, is used by over half of…
Malware: CanisterWorm, dbmux, GlassWorm, hackerbot-claw, Hades, IronWorm, JS.Worm.ShaiHulud, kitty-monitor, Megalodon, Miasma, Miasma: The Spreading Blight, Miasma worm, Mini Shai-Hulud, Phoenix Locker, Python.Loader.Shai-Hulud, s1ngularity, SANDWORM_MODE, sha1-hulud, Sha1-Hulud, SHA1-Hulud, Sha1-Hulud: The Second…
As artificial intelligence (AI) adoption surges and organisations move from the ‘should we?’ phase to the ‘how do we?’ phase, it’s natural to evaluate the likelihood of positive returns on…
CISA’s BOD 26-04 changes how federal agencies patch and how security leaders must measure, justify, and communicate cyber risk to executives and boards. Key takeaways BOD 26-04 requires agencies to…
Cisco Security and Splunk Security released the Findings Report from the Security Operations Center at RSAC 2026 Conference. This year marked the 10th year of the SOC at RSAC. Since…