cybersecurity

Category

For many organizations, building an in-house cybersecurity team seems like the logical part of a business plan – hiring security professionals, investing in new technologies, and expanding internal capabilities appears to provide greater control over…

Kevin Landt, VP of Product, Cybersecurity
September 14, 2026 4 Min Read

March 24, 10:39 UTC. The first poisoned LiteLLM package landed on PyPI two minutes earlier, and on some CI runner somewhere, the credential harvest had already started. Nobody outside the attacker noticed for hours. That…

Simon White, Incident Response Analyst
August 19, 2026 4 Min Read

Howard University never signed up to be a proxy provider. But for months, anyone with five dollars in crypto and a burner email address could route their internet traffic through the university’s entire /16 IP…

Simon White, Incident Response Analyst
August 14, 2026 5 Min Read
Subscribe Via Email

On July 26 and 27, 2026, a coordinated cyberattack hit operational technology (OT) systems at more than 30 community water and wastewater utilities across Minnesota. Attackers disrupted automated control functions, forcing some plants to switch…

Simon White, Incident Response Team Lead
August 4, 2026 4 Min Read

OpenAI put two of its most advanced models inside a locked room to test how well they could hack. The models picked the lock, opened the door, walked out of the building, and broke into…

Thrive
July 31, 2026 3 Min Read

On July 28, 2026, JFrog confirmed what the security industry had been speculating about for a week, the package-registry proxy that OpenAI’s AI models exploited to escape their sandbox and hack Hugging Face was a self-hosted JFrog Artifactory…

Simon White, Incident Response Team Lead
July 26, 2026 5 Min Read

 On July 14, Microsoft released security updates addressing 570 vulnerabilities, nearly triple the previous record and more than any single Patch Tuesday in the company’s history. Almost 60 of those bugs were rated Critical. Three…

Simon White, Incident Response Team Lead
July 23, 2026 4 Min Read

Something we track in the Adversary Operations Group is residential proxy networks. Infoblox uncovered an operation they call Lurking Lizard, running since at least August 2022, that uses fake software installers to conscript devices as…

Simon White, Incident Response Analyst
July 20, 2026 2 Min Read

Someone pretending to be an Adidas recruiter sent me a meeting invitation last week. At least, that is what the email looked like. The branding was right.   The recruiter’s name was real. The company logo…

Simon White, Incident Response Analyst
July 18, 2026 2 Min Read

Cybersecurity architecture is the strategic framework that defines how an organization protects its users, applications, devices, networks, and data. Rather than focusing on individual security products, it creates a united security ecosystem where technologies work…

Thrive
July 16, 2026 3 Min Read

Microsoft released an emergency patch on July 9, 2026, for a Microsoft Defender zero-day vulnerability dubbed “RoguePlanet” (CVE-2026-50656) that allows attackers to gain SYSTEM privileges on fully patched Windows 10 and Windows 11 devices (BleepingComputer,…

Simon White, Incident Response Analyst
July 16, 2026 < 1 Min Read