(Adobe Stock) Iran-backed Handala uses Telegram for C2 to push malware, FBI saysSteve ZurierMarch 23, 2026FBI warns Iran-linked hackers use Telegram as stealthy malware C2, evading detection.
Entangled migrations: PQC, QKD, and US–PRC risk postures for critical infrastructureVal MoonMarch 23, 2026
Accelerated breakout time via AI has made it nearly impossible for humans to keep pace Gene Moody March 20, 2026
The industrialization of identity compromise: How attackers are scaling faster than defendersPaul WagenseilMarch 17, 2026
The ‘most important product’: Okta introduces new platform to manage AI agentsPaul WagenseilMarch 16, 2026
SOC unification in the age of AI: Five strategic takeaways for security leadersPaul WagenseilMarch 13, 2026
Vulnerability ManagementCritical Langflow RCE vulnerability exploited within 20 hoursLaura FrenchMarch 20, 2026CVE-2026-33017 could enable an unauthenticated attacker to execute arbitrary Python code on the server.
Network SecurityUS, Canada and Germany take down four large DDoS botnetsSteve ZurierMarch 20, 2026Experts warn that the botnet operators will likely regroup and come back stronger, armed with AI.
Threat ManagementFake interactive Zoom call leads to malicious ScreenConnect downloadLaura FrenchMarch 20, 2026JavaScript is used to imitate a glitchy Zoom call, prompting the user to install an “update.”
Critical Infrastructure SecurityLack of CISA leadership amid DHS shutdown raises risks, cyber pros saySteve ZurierMarch 19, 2026CISA operates short-staffed without a director, raising concerns over cyber risk.
RansomwareBeast Ransomware’s toolkit revealed by exposed directoryLaura FrenchMarch 19, 2026Researchers tracked the group’s tooling from reconnaissance to encryption.
Application securityApple rolls out ‘Background Security Improvements’ for WebKit browser engine bugSteve ZurierMarch 18, 2026Apple shifts to more continuous security patches versus waiting for the next big OS release.
AI/MLAI coding assistants twice as likely to leak secrets, as overall leaks rise 34%Laura FrenchMarch 18, 2026A total of 28.65 million hardcoded secrets were found in public GitHub commits in 2025.
Threat ManagementStryker cyberattack contained, but experts warn repair costs could soarSteve ZurierMarch 17, 2026Security pros call “containment” victory claim hollow as recovery could cost multi-millions.