News
AI shrinks vulnerability exploitation window to hours
4+ hour, 23+ min ago (409+ words) Time has become organizations" biggest vulnerability because the gap between vulnerability discovery and exploitation has narrowed to hours, according to Synack"s 2026 State of Vulnerabilities Report. Agentic AI systems that act autonomously across systems introduce new risks that require human…...
Lyrie: Open-source autonomous pentesting agent
3+ hour, 52+ min ago (215+ words) Penetration testing has usually required weeks of manual work, specialized tooling, and teams with narrow skill sets. Lyrie, an open-source autonomous security agent built by OTT Cybersecurity, compresses that process into a command line tool and publishes the entire codebase....
The AI backdoor your security stack is not built to see
3+ hour, 3+ min ago (647+ words) Enterprises deploying LLMs have spent the past two years building defenses around a reasonable assumption: malicious behavior leaves a trace in the input. Scan for suspicious tokens, filter unusual characters, watch for prompt injection patterns. New research from Microsoft and…...
Product showcase: Mc Afee + Chat GPT integration turns doubt into a scam check
4+ hour, 52+ min ago (276+ words) Mc Afee + Chat GPT integration brings real-time scam detection in conversations and gives users an easier way to verify suspicious content before clicking or responding. It is available to anyone, without requiring a Mc Afee or Chat GPT subscription. It…...
When ransomware hits, confidence doesn't restore endpoints
5+ hour, 22+ min ago (664+ words) Ransomware, supply chain vulnerabilities, insider threats, compliance failures, and software disruptions remain major concerns for security leaders, according to The Ransomware Reality: Zero Days to Recover report by Absolute Security. A survey of 750 CISOs from enterprise organizations with more than…...
Debian 13. 5 point release lands with security fixes, bug patches
11+ hour, 19+ min ago (436+ words) Help Net Security Debian 13. 5 point release lands with security fixes, bug patches Debian 13. 5 is the fifth point release for the stable distribution "trixie." The update folds in roughly 100 Debian Security Advisories and corrections for more than 130 source packages, covering everything…...
Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploited
1+ day, 1+ hour ago (1214+ words) Here's an overview of some of last week's most interesting news, articles, interviews and videos: The hidden smart fridge risks that emerge years after purchase Household refrigerators are built to last more than a decade. The software, cloud services, and…...
Google lets Workspace admins apply one policy across all SAML apps
2+ day, 20+ hour ago (209+ words) Google has updated Context-Aware Access (CAA) in Google Workspace to introduce a default policy assignment for SAML applications. SAML applications are third-party or internal applications that use the Security Assertion Markup Language (SAML) protocol to enable single sign-on (SSO) with…...
Cisco patches another actively exploited SD-WAN zero-day (CVE-2026-20182)
2+ day, 20+ hour ago (556+ words) Cisco has patched yet another Catalyst SD-WAN Controller authentication bypass vulnerability (CVE-2026-20182) that has been exploited as a zero-day by "a highly sophisticated cyber threat actor. CVE-2026-20182 " affecting both Cisco Catalyst SD-WAN Controller (the "brain of the Cisco Catalyst SD-WAN…...
Thieves unlock stolen i Phones using cheap tools sold on Telegram
2+ day, 22+ hour ago (681+ words) Helping a friend recover a stolen phone, Infoblox researchers uncovered a thriving Telegram-based underground marketplace selling unlocking tools and phishing infrastructure used to monetize stolen i Phones. Activation Lock can remotely disable a stolen i Phone and prevent normal resale,…...