More than 200,000 WordPress websites are potentially exposed to takeover attacks via two critical-severity vulnerabilities in The Events Calendar plugin. A highly popular plugin with over 600,000 active installations, The Events Calendar allows administrators to easily create and manage an… Read More "Unauthenticated RCE Flaws Could Expose 200,000+ WordPress Sites to Takeover"
Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation
Ravie LakshmananSep 16, 2026Vulnerability / Mobile Security Google has disclosed that a high-severity security flaw in its Pixel Cellular Modem has come under exploitation in the wild. The vulnerability, tracked as CVE-2026-58704 (CVSS score: 8.0), is a privilege escalation flaw.… Read More "Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation"
Cyber-Attacks Cost Organizations $52,000 on Average
Nearly a third (29%) of organizations globally have been hit by at least one successful cyber-attack in the past 12 months, with incidents having substantial financial, operational and human impacts on victims. The Hiscox Cyber Readiness Report 2026 found that… Read More "Cyber-Attacks Cost Organizations $52,000 on Average"
Choosing Automated Vendor Risk Remediation Software
Vendor Risk Management is critical for reducing the impact of security risks associated with third-party vendors. But often included with this cybersecurity practice is a bloat of administrative processes that disrupt workflows and impact VRM efficacy, defeating the purpose of… Read More "Choosing Automated Vendor Risk Remediation Software"
Hackers Got Inside a Flock Camera. Its Data Shows How the System Really Works
Hackers ripped down a Flock camera above a roadway, made a near-complete copy of the data stored inside it, and shared the files with 404 Media and WIRED, revealing in new detail how exactly Flock Safety’s cameras track the movements… Read More "Hackers Got Inside a Flock Camera. Its Data Shows How the System Really Works"
Chrome, Firefox Updates Patch 115 Vulnerabilities
Google and Mozilla have released fresh security updates for Chrome and Firefox users, resolving a total of 115 vulnerabilities. The new Chrome 153 release patches 42 security defects, including three critical-severity and 28 high-severity bugs. The critical flaws include CVE-2026-91726,… Read More "Chrome, Firefox Updates Patch 115 Vulnerabilities"
AI made software development unrecognizable. Is cybersecurity next?
The rapid emergence of AI has radically changed a host of professions, with software engineering and development perhaps the most transformed of all pursuits. The usual “solitary ritual” of a developer writing code for hours is giving way to collaboration… Read More "AI made software development unrecognizable. Is cybersecurity next?"
Zero-Day Flaw in TP-Link Cameras Enables Covert Eavesdropping
Security researchers have released details of two zero-day vulnerabilities found in TP-Link security cameras commonly used in home and small offices, one of which could enable attackers to spy on users. OPSWAT said the bugs affect the TP-Link Tapo C200… Read More "Zero-Day Flaw in TP-Link Cameras Enables Covert Eavesdropping"
Vendor Risk Management Examples (3 Scenarios)
You understand the importance of a Vendor Risk Management strategy in mitigating the impact of third-party data breaches. However, you’re still unsure about its application to different vendor cyber risk contexts. To help you bridge this application gap and leverage… Read More "Vendor Risk Management Examples (3 Scenarios)"
Enterprises Warned of Attacks Exploiting WSO2 Vulnerability
A critical WSO2 vulnerability patched earlier this year is now being exploited in the wild by threat actors seeking access to sensitive enterprise data. WSO2 is an open source middleware platform that enables organizations to design, secure, integrate, and manage… Read More "Enterprises Warned of Attacks Exploiting WSO2 Vulnerability"