2026-03-12 05:00 UTC
Vendor Research
Cloudflare Security · Jin-Hee Lee · indexed 2026-08-15 18:58 UTC
Blocking bots isn’t enough anymore. Cloudflare’s new fraud prevention capabilities — now available in Early Access — help stop account abuse before it starts.
P0
2026-03-11 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
The abuse of remote monitoring and management (RMM) tools is surging. See how threat actors daisy chain RMM software for initial access, persistence, and detection evasion.
P0
2026-03-11 13:00 UTC
Vendor Research
Cloudflare Security · Liam Reese · indexed 2026-08-15 18:58 UTC
Cloudflare AI Security for Apps is now generally available, providing a security layer to discover and protect AI-powered applications, regardless of the model or hosting provider. We are also making AI discovery free for all plans, to help teams find and secure shadow AI deployments.
P0
2026-03-11 13:00 UTC
Vendor Research
Cloudflare Security · Liam Reese · indexed 2026-08-15 18:58 UTC
Cloudflare AI Security for Apps is now generally available, providing a security layer to discover and protect AI-powered applications, regardless of the model or hosting provider. We are also making AI discovery free for all plans, to help teams find and secure shadow AI deployments.
P0
2026-03-10 19:32 UTC
Other
Black Lantern Security · Kevin O'Riley · indexed 2026-09-07 17:30 UTC
All work and no tokens makes Claude a dull boy...
P0
2026-03-10 13:00 UTC
Vendor Research
Cloudflare Security · Jen Sells · indexed 2026-08-15 18:58 UTC
Log Explorer customers can now identify and investigate multi-vector attacks. Log Explorer supports 14 additional Cloudflare datasets, enabling users to have a 360-degree view of their network.
P0
2026-03-10 09:58 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The resurgence of one of Russia’s most notorious APT groups
P0
2026-03-09 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Check out the top 10 worst places to store your password, as commented by IT and information security professionals.
P0
2026-03-06 21:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
A deep dive into a threat actor who exploited SolarWinds Web Help Desk, abused an Elastic Cloud SIEM free trial for exfiltration and triage, revealing key infrastructure.
P0
2026-03-06 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress has identified and detailed a full timeline of an intrusion in a customer environment that aligns with what others have identified as MuddyWater (Iranian-linked APT).
P0
2026-03-06 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The ability to continue operating safely in an unsafe environment where competitors cannot is a competitive advantage that is rarely measured or discussed
P0
2026-03-05 21:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
SSO vs. MFA: Why choose between the two? Learn how both single sign-on and multi-factor authentication can improve your cybersecurity posture.
P0
2026-03-05 21:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Learn how a single cyberattack on a pharmacy tech provider disabled access for millions of patients and what it means for the healthcare industry moving forward.
P0
2026-03-05 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
We speak to Director of ESET Threat Research Jean-Ian Boutin about where solutions that blend advanced technology with human expertise provide the most practical value for businesses
P0
2026-03-05 08:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Cybercrime and RMM abuse is up 277% as attackers exploit trusted tools for stealthy access. Learn how to shift from overtrust to verifying behavior and secure your network.
P0
2026-03-05 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Modern BEC attacks now abuse Google Workspace identities. Discover why BEC is an identity problem, and learn how to secure your organization against these threats.
P0
2026-03-04 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress warns of fake OpenClaw installers on GitHub deploying malware. Learn how these attacks happen, identify signs of infection, and stay protected.
P0
2026-03-04 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The education sector is notoriously short on cash, but rich in assets for threat actors to target. How can managed detection and response (MDR) help learning institutions regain the initiative?
P0
2026-03-03 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Learn about the narrowing threat gap, the rise of cross-platform attacks (like WSL abuse), and the specific ransomware and nation-state actors targeting Linux endpoints in 2026.
P15
2026-03-02 17:00 UTC
Government
CERT-EU Threat Intelligence · indexed 2026-08-15 18:50 UTC
Cyber Briefs are monthly executive reports that aim to present an overview of the most relevant developments in cyber security, based exclusively on open sources, with a view to inform political leadership and senior management in its constituency. Additional information on any item in this Brief can be provided upon request. Cyber Briefs are TLP:CLEAR.
P0
2026-03-02 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Adversaries leverage fake tech support to deploy a modified Havoc C2 agent, employing DLL sideloading, syscall evasion (HellsGate), and RMM tools for persistent access.
P0
2026-02-28 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
In this roundup, Tony looks at how opportunistic threat actors are taking advantage of weak authentication, unmanaged exposure, and popular AI tools
P0
2026-02-27 18:19 UTC
Vendor Research
Google Security Blog · Chrome Secure Web Networking Team · indexed 2026-08-15 18:55 UTC
Today we're announcing a new program in Chrome to make HTTPS certificates secure against quantum computers. The Internet Engineering Task Force (IETF) recently created a…
P0
2026-02-27 17:01 UTC
Vendor Research
Google Online Security Blog · Google · indexed 2026-08-15 14:33 UTC
Posted by Chrome Secure Web and Networking Team Today we're announcing a new program in Chrome to make HTTPS certificates secure against quantum computers. The Internet Engineering Task Force (IETF) recently created a working group, PKI, Logs, And Tree Signatures (“PLANTS”), aiming to address the performance and bandwidth challenges that the increased size of quantum-resistant cryptography introduces into TLS connections requiring Certificate Transparency (CT). We recently shared our call to ac…
P0
2026-02-27 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Start using a new app and you’ll often be asked to grant it permissions. But blindly accepting them could expose you to serious privacy and security risks.
P0
2026-02-26 18:38 UTC
Government
CERT-EU Security Advisories · indexed 2026-08-15 18:50 UTC
On 25 February 2026, Cisco released security advisories addressing multiple high and critical severity vulnerabilities in Cisco Catalyst SD-WAN controllers and Cisco SD-WAN Manager. If exploited, these vulnerabilities could allow attackers to gain administrative access to compromised systems. It is recommended to capture forensic evidence, hunt for indicators of compromise, and apply updates as soon as possible. One of the vulnerabilities, CVE-2026-20127, is exploited in the wild since 2023.
P25
2026-02-26 08:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
From an IT job to forced underground cybercrime, Mohammad’s story exposes the global trafficking network behind massive crypto scams. Learn the signs to stay safe.
P0
2026-02-26 07:55 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
How GTFire abuses Google Firebase and Google Translate to scale global phishing campaigns
P0
2026-02-25 15:17 UTC
Vendor Research
Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC
Posted by Lyubov Farafonova, Product Manager, Phone by Google; Alberto Pastor Nieto, Sr. Product Manager Google Messages and RCS Spam and Abuse We’ve shared how Android’s proactive, multi-layered scam defenses utilize Google AI to protect users around the world from over 10 billion suspected malicious calls and messages every month1. While that scale is significant, the true impact of these protections is best understood through the stories of the individuals they help keep safe every day. This…
P0
2026-02-25 00:00 UTC
Government
CERT-FR Alerts · indexed 2026-09-07 17:35 UTC
Une vulnérabilité a été découverte dans Cisco Catalyst SD-WAN. Elle permet à un attaquant de provoquer un contournement de la politique de sécurité. Cisco indique que la vulnérabilité CVE-2026-20127 est activement exploitée.
P5