Kiteworks has acquired Bonfy.AI to integrate runtime data governance directly into its core security control plane. The acquisition allows organizations to govern data exchanges at the exact moment they happen, regardless of... Read more »
Identity verification firm IDScan.net has confirmed that unauthorized actors accessed customer data hosted on its cloud platform, following reports that over 153 million scanned driver’s licenses appeared on a dark web marketplace.... Read more »
Autonomous AI-driven cyberattack campaign compromises at least 440 PaperCut instances across 48 countries using newly disclosed print management software vulnerabilities. Security researchers at GreyNoise have uncovered an automated attack campaign where autonomous... Read more »
Google has rolled out a new credential transfer capability on Android that enables users to migrate passwords and passkeys directly between supported password managers without relying on insecure export files. The feature... Read more »
Attackers target employees’ personal phones in sophisticated Microsoft 365 cloud compromise campaign
Threat actors are executing a social engineering campaign targeting employees on unmanaged personal phones to compromise Microsoft 365 cloud environments and extract sensitive enterprise data. Tracked by researchers since May 2026, the... Read more »
State-sponsored groups and ransomware operators are actively exploiting critical vulnerabilities within Cisco Secure Firewall Management Center software. Cisco Talos threat intelligence analysts have confirmed active exploitation targeting two distinct security flaws in... Read more »
Mars Security has introduced Real-Time Intel-Based Detection, an enterprise security platform designed to automatically convert threat advisories into validated production rules within minutes. The newly unveiled capability translates intelligence reports from sources... Read more »
According to the Google Threat Intelligence Group Q3 2026 AI Threat Tracker, cybercriminals are increasingly deploying autonomous AI agents to automate reconnaissance, credential harvesting, and vulnerability scanning with minimal human intervention. During... Read more »
Researchers have weaponized a zero-click vulnerability in WeChat to create a self-propagating worm capable of hijacking user accounts and spreading via incoming VoIP calls. Security researchers at Calif uncovered the vulnerability within... Read more »
Threat actors are leveraging ASCII smuggling techniques and invisible Unicode characters from the Tags block (U+E0000–U+E007F) to bypass email security filters in ongoing finance-themed phishing operations. Microsoft threat researchers uncovered a high-volume... Read more »