Microsoft has warned customers to expect a surge in the number of security updates they will need to apply to Windows, as it uses cutting-edge AI techniques to find more zero-day vulnerabilities. The tech giant claimed in a blog post… Read More "Microsoft Warns of Increase in Number of Security Updates"
Over 2,500 Organizations Impacted by LiteLLM Supply Chain Attack
More than 2,500 organizations and over 430,000 CI/CD pipelines were affected by the LiteLLM supply chain attack earlier this year, CloudSEK reports. The LiteLLM compromise was disclosed shortly after the supply chain attack on Aqua Security’s Trivy open source vulnerability… Read More "Over 2,500 Organizations Impacted by LiteLLM Supply Chain Attack"
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed them. Threat intelligence firm CloudSEK now… Read More "Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations"
New Ransomware Exploits Malicious Driver to Remove Security Protection
The latest incarnation of a family of ransomware which has been hitting organizations since 2022 has evolved to exploit Microsoft-signed malicious drivers to prevent endpoint defenses from detecting and disrupting its attacks. Detailed by cybersecurity researchers at Symantec, GodDamn ransomware… Read More "New Ransomware Exploits Malicious Driver to Remove Security Protection"
WhatsApp Unveils New Scam Alert Feature
WhatsApp has begun a limited beta rollout of Scam Alert, an optional feature that uses an on-device machine learning model to flag suspicious messages from non-contacts. The company says the tool is designed to work alongside end-to-end encryption rather than… Read More "WhatsApp Unveils New Scam Alert Feature"
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
Ravie LakshmananAug 12, 2026Vulnerability / Cyber Espionage The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a never-before-seen backdoor targeting defense and… Read More "Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor"
NIST Seeks Public Input on AI-Ready NVD Modernization
The US National Institute for Standards and Technology (NIST) is looking to modernize its National Vulnerability Database (NVD) to address challenges posed by AI and incorporate more automation and AI workflows. In a request for information (RFI) published on August… Read More "NIST Seeks Public Input on AI-Ready NVD Modernization"
Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNow With Custom Toolset
Reco is tracking a sophisticated and innovative campaign targeting both Salesforce and ServiceNow via what appears to be a custom made multi-platform toolset. Researchers believe the primary targets include telecoms, banks and financial-services firms, enterprise-software vendors (including security and data-privacy… Read More "Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNow With Custom Toolset"
Enterprise Defenses Recovered at the Edge and Collapsed Inside
Enterprise defenses are tuned to catch the attacks that make noise. This year’s data shows attackers winning by making none. According to Picus Labs’ new Blue Report 2026, which measured more than 338 million real attack simulations across actual client… Read More "Enterprise Defenses Recovered at the Edge and Collapsed Inside"
Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastruc
Gunra ransomware actors are exploiting two Fortinet vulnerabilities to target government and critical national infrastructure organizations, a joint advisory issued by US and Republic of Korea authorities has warned. Gunra is a ransomware-as-a-service (RaaS) which primarily exploits known vulnerabilities in internet-facing… Read More "Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastruc"