
The era of valid credentials driven by IA to stop silent intrusions
The problem is not that companies ignore multifactor authentication or anti-phishing defenses, but that attackers have evolved into a model where stealing or supplanting legitimat…
News on technological advances, startups and new trends

The problem is not that companies ignore multifactor authentication or anti-phishing defenses, but that attackers have evolved into a model where stealing or supplanting legitimat…

The emergence of a macOS implant written in Rust that incorporates an explicit mechanism to deceive analysis tools assisted by artificial intelligence confirms a disturbing trend:…

Cordyceps, the name Novee Security gave to an exploitable pattern in CI / CD pipelines, is an urgent warning for open source projects and large organizations: apparently valid con…

A new risk scenario has emerged for customers of Cisco's unified communications platforms: researchers and malicious actors are exploiting a critical vulnerability identified as C…

A security company, AIR, demonstrated a structural weakness in the "skills" ecosystem for IA agents: it created an apparently harmless skill called brand-landingpage, he uploaded …

The recent intrusion that affected several plugins Pro of the developer ShapedPlugin illustrates with crudely the risk most feared by the WordPress community: a commitment of the …

On June 15, a written version of a court decision was published that reveals that the Canadian Intelligence Service (CSIS) obtained permission to remotely enter servers, domestic …

A new tree of malicious infrastructure has flourished taking advantage of what many thought harmless: forgotten domestic routers and out-of-support NAS boxes. QiAnXin XLab baptize…

Researchers have unravel a disturbing development within the criminal economy: the group behind the Gentlemen Ransomware is not limited to encryption or stealing data, but maintai…