News Articles
Latest articles, insights, and updates from the blog.

Researchers Report Chained OpenAI Account Takeovers
A reported chain involving a public help forum and login weakness shows why businesses must test identity boundaries and access controls.

Orkes Conductor Flaw Under Active Attack, Patch Now
CVE-2026-58138 is a critical unauthenticated RCE in Orkes Conductor under active exploitation, Fortinet reports. Update to 3.30.2 immediately.

Microsoft Fixes 18 Azure, AI Security Flaws This Week
Microsoft patched 18 vulnerabilities in Azure and AI products this week, most tied to privilege escalation. Here's what businesses should check now.

Chinese Hackers Deploy SparroWocky Backdoor on Governments
China-linked group FamousSparrow is using a new SparroWocky backdoor to target government agencies in Latin America, researchers report.

280,000 Patients Hit by Premier Medical Group Breach
Premier Medical Group says hackers accessed files on roughly 280,000 patients in June 2026, exposing diagnosis and insurance data. Here's what to do next.

Apple Fixes 200 Flaws in iOS 27, macOS Golden Gate 27
Apple's iOS 27 and macOS Golden Gate 27 fix roughly 200 vulnerabilities, including kernel bugs that enable privilege escalation. Update now.

AI Agents Are Outpacing CISOs' Access Controls
CISOs are tightening access controls on AI agents in 2026 to stop over-privileged bots from causing unintended harm, without losing automation value.

Microsoft Warns of Passkey Phishing Hitting Cloud Accounts
Microsoft disclosed passkey-phishing attacks and a mass CEO-spoofed scam email campaign hitting Microsoft 365 users in September 2026.

Company-Wide AI Adoption Is Flooding SOCs With Alerts
Enterprise-wide AI use is generating a fast-growing category of SOC alerts. Here's what's driving it and how security teams should adjust triage now.

Check Point Patches Critical VPN Flaws Enabling RCE
Check Point patched two critical VPN vulnerabilities, CVE-2026-85102 and CVE-2026-85103, that could allow remote code execution. Here's what to do.

Cisco Secure FMC Flaw Now Under Active Attack
Cisco and CISA warn that CVE-2026-20079, a Secure Firewall Management Center flaw disclosed in March 2026, is now being actively exploited.

September ICS Patch Tuesday Fixes Critical Flaws
Schneider Electric, Siemens, AVEVA, and Rockwell Automation patched ICS vulnerabilities in September 2026. Here's what OT operators should do now.
Stay ahead of cyber threats
Get proactive protection before the next breach makes headlines. Talk to our experts today.
