Category index

Cyber Security

4276 articles

4276 ARTICLES

FEATURED REPORT

Amazon identifies North Korean hacker group behind open-source supply chain attacks

Amazon is sharing new findings about how a threat actor linked to the Democratic People’s Republic of Korea (DPRK) is targeting open source software libraries, the shared building blocks that companies around the world use to develop applications. Amazon Threat Intelligence has linked several recent compromises of popular Node Package Manager (NPM) libraries to the

BY CJ Moses
MIN READ 1 MIN READ
EXPLORE north_east
Amazon identifies North Korean hacker group behind open-source supply chain attacks
Critical Rails Flaw Could Let Unauthenticated Attackers Read Server Files via Image Uploads
CYBERSECURITY

Critical Rails Flaw Could Let Unauthenticated Attackers Read Server Files via Image Uploads

Ruby on Rails has released fixes for a critical Active Storage vulnerability that could let unauthenticated attackers read arbitrary files from application servers through crafted image uploads. Tracked as CVE-2026-66066 (CVSS score: 9.5), the flaw can expose the Rails process environment and secrets such as secret_key_base, the Rails master key, database passwords, cloud storage credentials,

1 MIN READ arrow_forward
How to Control AI Assets Before They Become Shadow AI
CYBERSECURITY

How to Control AI Assets Before They Become Shadow AI

A developer on your team just told Claude Code to connect to a new MCP server, the protocol coding agents use to reach organizational tools and data. Nobody in security reviewed it. Nobody in security even knows it happened. For two-thirds of enterprises, the primary obstacle to scaling agentic development isn’t budget or headcount —

1 MIN READ arrow_forward
Measuring the Tendency of AI Agents to Go Rogue
CYBERSECURITY

Measuring the Tendency of AI Agents to Go Rogue

This essay was written with Barath Raghavan, and originally appeared in The Guardian. In July, Hugging Face, a company that hosts much of the world’s AI software and open-source AI models, was hacked. A malicious dataset had been used to run code on one of its servers. Whoever was behind it captured internal security credentials and moved through systems over a weekend, running thousands of actions from a swarm of temporary server environments. It looked like the work of a sophisticated criminal group. It was not. It was one of OpenAI’s new, still unreleased GPT models…

1 MIN READ arrow_forward
​​Better security starts with better questions
CYBERSECURITY

​​Better security starts with better questions

Learn how better questions, trusted AI, and human judgment help security leaders make confident decisions and build resilient systems. The post ​​Better security starts with better questions appeared first on Microsoft Security Blog.

1 MIN READ arrow_forward
Tame Dependabot: Group your updates, slow the cadence, keep security fast
CYBERSECURITY

Tame Dependabot: Group your updates, slow the cadence, keep security fast

Dependabot keeps your dependencies current, but its defaults can flood your repository with pull requests. Here’s how grouping updates, slowing the cadence, and keeping security fixes fast cut the noise on a Microsoft open source project. The post Tame Dependabot: Group your updates, slow the cadence, keep security fast appeared first on The GitHub Blog.

1 MIN READ arrow_forward
Ruflo MCP Flaw Lets Unauthenticated Attackers Run Commands and Poison AI Memory
CYBERSECURITY

Ruflo MCP Flaw Lets Unauthenticated Attackers Run Commands and Poison AI Memory

Cybersecurity researchers have flagged a maximum-severity security flaw in Ruflo, an open-source agent meta-harness for Anthropic Claude Code and OpenAI Codex, that could result in unauthenticated remote code execution. The vulnerability, tracked as CVE-2026-59726 (CVSS score: 10.0), impacts all versions of the project before version 3.16.3. It has been codenamed RufRoot by Noma Security’s

1 MIN READ arrow_forward
Three Critical VMware Flaws Allow Auth Bypass, Code Execution, and VM Escape
CYBERSECURITY

Three Critical VMware Flaws Allow Auth Bypass, Code Execution, and VM Escape

Broadcom has released security updates to address multiple security flaws impacting VMware ESX, vCenter, Workstation, and Fusion, three of which have been designated as critical in severity. The first of the three critical-rated flaws is CVE-2026-59309 (CVSS score: 9.8), which has been described as an authentication bypass in VMware vCenter. “A malicious actor with network access to vCenter

1 MIN READ arrow_forward
What Can the World Cup Teach Us About Stopping Agentic AI Attacks?
CYBERSECURITY

What Can the World Cup Teach Us About Stopping Agentic AI Attacks?

TL;DR: The OpenAI agent’s attack on Hugging Face showed how quickly AI can chain vulnerabilities, steal credentials, and move through an environment. It also showed why strong runtime defense matters. Like a World Cup goalkeeper, runtime security does not need to know how the attack developed. It needs to stop the final action, contain the

1 MIN READ arrow_forward