The CNAPP company will use the fresh investment to scale its runtime-first cloud security offering across data, AI and code.
Hi, what are you looking for?
The CNAPP company will use the fresh investment to scale its runtime-first cloud security offering across data, AI and code.
Priced $2,000 - $6,000 on a cybercrime forum, the MaaS toolkit promises publication on the Chrome Web Store.
10 years after disrupting the Ukrainian power grid, the APT targeted Poland with data-wiping malware.
The critical-severity vulnerability can be exploited via crafted network packets for remote code execution.
Similar to recent FortiCloud single sign-on (SSO) login vulnerabilities, the attacks bypass authentication.
Threat actors are leveraging the file-sharing service for payload delivery in AitM phishing and BEC attacks.
CISA has added the Zimbra flaw to the KEV catalog along with three other bugs exploited in the wild.
The exploitation of the authentication bypass vulnerability started two days after patches were released.
The startup’s AI-native platform unifies exposure analysis, threat intelligence, investigation, and response.
Hackers bypass the FortiCloud SSO login authentication to create new accounts and change device configurations.
The startup will use the new funding to accelerate product development and deepen remediation capabilities.
Fixes were rolled out for over two dozen vulnerabilities, including critical- and high-severity bugs.
The startup’s platform leverages AI to automate forensic investigations, accelerating incident response.
The hackers trick victims into accessing GitHub or GitLab repositories that are opened using Visual Studio Code.
Impacting Anthropic’s official MCP server, the vulnerabilities can be exploited through prompt injections.
Oracle’s January 2026 CPU resolves roughly 230 unique vulnerabilities across more than 30 products.
The two bugs, an arbitrary file read and an SSRF bug, can be exploited without user interaction to leak credentials, databases, and other data.
Providing cyberespionage and remote code execution capabilities, the malware is executed via DLL sideloading.
A simple payload allowed attackers to create a new event leaking summaries of the victim’s private meetings.
Operating as an access broker, the defendant sold unauthorized access to compromised networks to an undercover agent.