Corporate cybersecurity leaders believe AI will be essential to their missions, but, so far, few are seeing big gains from agentic security products, according to a new EY survey. With AI...
Thousands of commercial and private vessels transit the world’s oceans daily, broadcasting positional data, transmitting communications through exploitable unencrypted satellite communications,...
On or about March 2, 2026, Heritage Financial Corporation (the "Company") detected a cybersecurity incident involving an internal file share server used by employees and the exfiltration of files...
Saturday saw the highest call-out rate of TSA officers at airports since the partial Department of Homeland Security shutdown began, according to exclusive data from the Transportation Safety...
The TeamPCP hackers behind the Trivy supply-chain attack continued to target Aqua Security, pushing malicious Docker images and hijacking the company's GitHub organization to tamper with dozens of...
Metro says it’s working to restore access to its internal administrative computers after the agency’s security team discovered “unauthorized activity.” The transit system said Thursday it was...
For the latest discoveries in cyber research for the week of 23rd March, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Navia Benefit Solutions, a United States-based...
The head of the UK’s National Crime Agency (NCA) has warned that the country’s teens are being “radicalized” into becoming cybercriminals by online platforms. The NCA was set up over a decade ago...
The co-founder of Super Micro Computer and two others were charged with diverting $2.5 billion worth of servers with Nvidia’s artificial intelligence chips to China, in violation of U.S. laws...
CISA and the Federal Bureau of Investigation have released a Public Service Announcement (PSA) warning about ongoing phishing campaigns by cyber actors associated with the Russian Intelligence...
The U.S. grid withstood Winter Storm Fern in January without disruption to the bulk power system, but the electric sector cannot become complacent because reliability risks are rising, Jim Robb,...
Domestic extremist actors are incorporating drone technology into operational capabilities and attack plots, taking inspiration from the battlefield. The number of violent plots utilising drones...
The White House released its policy recommendations for AI on Friday, stating its framework “can succeed only” without a patchwork of conflicting state laws on the emerging technology. The...
IBM security advisory (AV26-262)
President Donald Trump on Monday extended his deadline for Iran to reopen the crucial Strait of Hormuz to international shipping, saying the U.S. would hold off on strikes against Iranian power...
The Beers with Talos team unpack the biggest cybersecurity threats of 2025, from React2Shell to ransomware and identity abuse, and what it all means for defenders going forward.
Trio-Tech International initially said hack wasn’t 'material,' but then stolen data was published Trio-Tech International initially shrugged off a ransomware attack at a Singapore subsidiary as...
Infosec pros descend on San Francisco kettle When El Reg cybersecurity editor Jessica Lyons joins infosec industry colleagues in San Francisco for RSAC 2026 this week, she's expecting agentic AI...
The 2025 Talos Year in Review is available now. Understand evolving adversary playbooks and how to strengthen your organization’s defenses.
Secure every layer of AI applications — infrastructure, data, access, models, agents, and applications — from code to runtime, across every environment you build in.
A new security operating model powered by AI agents that removes bottlenecks and enables teams to act at the speed of AI
Use of Hard-coded Credentials vulnerability (CVE-2026-1958) has been found in KlinikaXP and KlinikaXP Insertino software.
Threat actors are suspected to be exploiting a maximum-severity security flaw impacting Quest KACE Systems Management Appliance (SMA), according to Arctic Wolf. The cybersecurity company said it...
On March 23, Citizen Lab director Ron Deibert will appear before the House of Commons’ Subcommittee on International Human Rights of the Standing Committee on Foreign Affairs and International...
Introducing Symantec CBX: Finally, a security platform for smaller teams fighting larger threats
The era of reliability begins... right after this out-of-band patch Microsoft has released an out-of-band update to resolve bugs introduced by a Windows patch just days after promising improved...
It’s an impressive feat, over a decade after the box was released: Since reset glitching wasn’t possible, Gaasedelen thought some voltage glitching could do the trick. So, instead of tinkering...
Ukraine's battlefield lessons show quantity and affordability now trump exquisite hardware NATO is unprepared to deal with attacks by cheap, mass-produced drones and urgently needs layered,...
AI agents can access data directly, making data security the foundation of AI security. Learn more about how Varonis Atlas helps orgs see, secure, and control AI systems and the data they can reach. [...]
In a place denied access to basic forensic technology—and where people disappear into Israeli detention—the fate of thousands remains unknown. One of them is an autistic teenager.