Left hand, meet right hand
MeetingTV wants to see the evidence
Google has significantly degraded NetNut, one of the biggest networks that turns home devices into rented relays for other people's traffic. Working with the FBI, Lumen, and others, Google's...
Threat actors associated with the Anubis ransomware operation have been observed exploiting the Citrix Bleed 2 (CVE-2025-5777) vulnerability to obtain initial access. "Although tactics differ...
A look inside the reverse-engineering journey of building the first RDP client outside of Windows to support WebAuthn redirection. The post How We Added WebAuthn to a Browser-Based RDP Client...
This week’s security news is mostly about weak spots. Browsers, bots, sandboxes, AI systems, and email flows all show the same problem in different ways. Everything looks normal until someone...
Don't count on the LLM to return your data - even if you pay up
AL26-016 - Vulnerability impacting Citrix NetScaler CVE-2026-8451
The threat actor known as ToddyCat has been attributed to a new malware called Umbrij that's designed to gain surreptitious access to a victim's email correspondence via the Google API. "In this...
What do board games and cybersecurity have in common? Pattern recognition. Strategy. Adaptation. In this week’s Threat Source Bill explores why curiosity may be a defender’s most valuable skill.
Google Chrome security advisory (AV26-648)
Adobe security advisory (AV26-647)
Researchers scoured logs, finding opsec fail for at least one person who was working with INC and Lynx simultaneously
Cisco security advisory (AV26-646)
Identity lifecycle management was architected around a person with an employment record, a manager, and a departure date. AI agents have none of those. As autonomous principals proliferate across...
Attackers need little more than a valid SharePoint account to execute code on vulnerable on-prem servers
The same technology protecting online activity is concealing malware, C2 traffic, and data exfiltration. Here’s the fix.
AL26-015 - Critical vulnerability impacting Microsoft SharePoint Server – CVE-2026-45659
Peter Stokes boasted on social media about the luxurious globetrotting life he enjoyed while he was still a child. The post Alleged longstanding member of Scattered Spider extradited to US...
Company that also makes insulin pumps and other devices tells users what was exposed months after ShinyHunters attack
Security firm Sysdig says it has found what it believes is the first ransomware attack run from start to finish by an AI agent. Its Threat Research Team calls the operator JADEPUFFER and says a...
Over the past two weeks, LevelBlue SpiderLabs has been tracking an active phishing campaign distributing malicious spreadsheet attachments. What initially appeared to be a limited phishing attempt...
Background Today, in coordination with the FBI, Lumen, and others, Google took action against the NetNut residential proxy network, also known as Popa. This action builds on our disruption of the...
Government of the messenger's largest market demands a pause while Meta explains how it plans to stop impersonators
Many analysts expected cyber operations to play a major role in Iran’s response to the U.S.-Israeli military campaign. Yet Iranian-linked cyber activity initially played little visible operational...
The recently discovered financially-motivated FortiBleed campaign has been attributed to INC and Lynx ransomware operations, indicating that the verified, stolen credentials were intended for...
AI can turn high-level malicious ideas into concrete techniques, and can independently design and implement novel attack paths that have not yet appeared in real-world campaigns. In Check Point’s...
Defense Secretary Pete Hegseth has signed a new memo creating a Direct Reporting Portfolio Manager (DRPM) for autonomy, as part of a high-level effort to keep pace with adversaries’ drone...
Yes, the Fable ban may be over. But America’s debate over the degree to which the federal government should control access to cutting-edge AI tools is just heating up. There is growing awareness...
Compaction cut input tokens 86% across long-running agent evals with no quality loss. Context discipline matters as much as model selection.