Articles by Category: Security_compliance

The Art of Deception: How Threat Actors Master Typosquatting Campaigns to Bypass Detection

2026-02-23 00:00
🚨 Typosquatting is a growing threat in the cyber landscape. Threat actors register misspelled domains of legitimate organizations to deceive users. These domains can be used for phishing, credential harvesting, and malware delivery. Recent insights reveal that the tactics used in these campaigns are becoming increasingly sophisticated, making them harder to detect. Organizations need to be aware of these risks and strengthen their defenses against brand impersonation. #CyberSecurity...
Alen Peric

GitLab extends Omnibus package signing key expiration to 2028

2026-02-20 00:00
🚀 GitLab has extended the expiration of its Omnibus package signing key to February 16, 2028. This key ensures the integrity of packages created within CI pipelines. 🔑 Users are advised to update their copy of the package signing key if they validate signatures. No action is needed if you simply install Omnibus packages. For more details on verification, check the Omnibus documentation or download the key directly from GitLab. #GitLab #Omnibus #Cybersecurity #PackageManagement #GPG
Source: GitLab Blog
Pratik Singh

How to check the impact of third-party CVEs on your Elastic deployment

2026-02-20 00:00
🚀 The Elastic Support Hub has launched a new feature for instant self-service lookup of CVE impact statements! This tool enables users to quickly determine if third-party vulnerabilities impact their Elastic deployments. It helps filter out unnecessary noise from security scanners. Access these reliable assessments through the Native Search bar or the Elastic Support Assistant. Stay informed and act quickly when vulnerabilities arise. #CyberSecurity #Elastic #CVE #VulnerabilityManagement...
Source: Elastic Blog
Arsalan Khan,InfoSec Business Enablement

Why Your AI Agents Need an Identity Layer: Lessons from OWASP Top 10 for Agentic Applications

2026-02-20 00:00
In today's fast-paced world of AI agents, security is crucial. The article discusses the importance of an identity layer to prevent issues like goal hijacking and tool misuse. 🔒 It references the OWASP Top 10 for Agentic Applications, which identifies key security risks for AI systems. These include risks such as Agent Goal Hijack and Tool Misuse, highlighting the need for robust protections. Learn more about securing AI agents effectively! 💻🔍 #AI #CyberSecurity #OWASP #TechSafety #IdentityLayer
Source: Auth0 Blog
Carla Urrea Stabile

AI agents are accelerating vulnerability discovery. Here’s how AppSec teams must adapt.

2026-02-19 21:31
AI is transforming how security vulnerabilities are discovered. With the help of autonomous AI tools, like XBOW, vulnerabilities are found faster and on a larger scale. In just 90 days, XBOW identified over 1,060 vulnerabilities, showcasing the efficiency of AI in application security. Companies like JPMorgan Chase are also leveraging AI for threat modeling, enhancing their security frameworks and enabling developers to address vulnerabilities effectively. #CyberSecurity #AI...
Josh Lemos

Rising identity complexity: How CISOs can prevent it from becoming an attacker’s roadmap

2026-02-19 20:47
Identity management in enterprise IT has evolved significantly. Previously, identity meant simple usernames and passwords. Now, it includes a diverse range of entities like contractors, machines, and APIs, expanding the identity surface and attack vectors. This shift has led to identity sprawl and increased security risks, making credential misuse a common threat. Recent breaches highlight the importance of effective identity management as a defense mechanism. #IdentityManagement...
Jay Reddy

Use Genie Everywhere with Enterprise OAuth

2026-02-19 18:50
Unlocking data access just got easier! 🔑 The article discusses the integration of Enterprise OAuth with Genie, enhancing secure and seamless access to insights for users. This advancement aims to democratize data and improve usability across platforms. Stay informed on how this technology can transform your data experience! 📊✨ #DataAccess #EnterpriseOAuth #TechInnovation #Genie #SecureInsights

How Medplum Secured Their Healthcare Platform with Docker Hardened Images (DHI)

2026-02-19 14:00
📢 Medplum recently shared their successful migration to Docker Hardened Images (DHI), enhancing their HIPAA-compliant EHR platform's security with minimal code changes. This move, involving only 54 lines of changes, demonstrates how enterprise-grade security can be achieved with low friction. Medplum now serves over 20 million patients, emphasizing trust in handling sensitive data. Their open-source platform is designed for developers, supporting FHIR R4 API and offering various deployment...
Source: Docker Blog
Jennifer Kohl

Cisco explores the expanding threat landscape of AI security for 2026 with its latest annual report

2026-02-19 12:57
🚀 Cisco has released its 2026 State of AI Security report, highlighting the evolving challenges in AI security as adoption accelerates. 🔍 The report outlines the expanding threat landscape, emphasizing the need for a new approach to digital security due to emerging vulnerabilities and malicious AI campaigns. 📊 It also examines advancements in AI threat intelligence and global policy, signaling a significant shift in how organizations must navigate these challenges. #AISecurity #Cybersecurity...
Emile Antone

GitLab Threat Intelligence Team reveals North Korean tradecraft

2026-02-19 00:00
📊 GitLab's Threat Intelligence Team has published insights on North Korean threat actors involved in "Contagious Interview" campaigns. These actors pose as recruiters to lure software developers into executing malicious code, facilitating credential theft and device control. In 2025, GitLab banned 131 accounts linked to these activities. The report includes case studies on synthetic identity creation and financial records tied to IT worker cells. Over 600 indicators of compromise are shared...
Source: GitLab Blog
Oliver Smith

How safe are gpt-oss-safeguard models?

2026-02-18 23:03
🔍 Large language models (LLMs) are vital for organizations, especially with the flexibility offered by OpenAI's gpt-oss series. This includes standard and safeguard models designed for safety classification tasks. 🛡️ Recent evaluations showed that safeguard variants don't consistently improve security compared to standard models. Instead, model size plays a larger role in resilience against threats like prompt injection. 📊 OpenAI's "Safety Reasoner" aims to classify outputs for better safety...
Nicholas Conley

Mind the gap: Closing the AI trust gap for developers

2026-02-18 17:00
Developers are increasingly using AI tools, with over 84% engaging or planning to do so in 2025. However, trust in these tools has significantly declined, with only 29% expressing confidence in their reliability. This gap highlights the importance of ensuring AI outputs are accurate and safe before deployment. The shift towards AI in development is complex, as developers seek value and assurance in their workflows. #AI #DeveloperTrust #SoftwareDevelopment #TechTrends #Innovation 🤖🔍📉
Eira May

Why post-quantum cryptography matters for securing campus and branch networks

2026-02-18 16:00
As quantum computing evolves, it poses a significant risk to current cryptographic systems, particularly in campus and branch networks. These environments are increasingly vulnerable to advanced attacks, including "harvest now, decrypt later" strategies. 🔒 Cisco emphasizes the importance of post-quantum cryptography (PQC) as a solution. PQC aims to protect digital communications against both classical and quantum threats by using new mathematical problems. The first set of PQC standards was...
Albert Chiang

Exposing Insider Threats through Data Protection, Identity, and HR Context

2026-02-18 00:00
Insider threats are a major concern for organizations, involving malicious actions, negligence, or accidental errors that can harm assets and reputation. Understanding user behavior and detecting anomalies early is essential for identifying these threats. CrowdStrike offers tools like Falcon Data Protection and Next-Gen SIEM to help organizations detect and respond quickly through user behavior analytics and risk scoring. 📊🔍 The article outlines the key features of these dashboards, including...
Radu-Emanuel Chiscariu - Emilian Duca

Automated security audits now available for skills.sh

2026-02-17 13:00
🚀 Great news for developers! Skills on skills.sh now feature automated security audits. These audits, in collaboration with Gen, Socket, and Snyk, provide transparency and confidence in using skills. 🔍 Key highlights include: - Public security audit results on each skill's page. - Malicious skills are hidden from the leaderboard. - Audit results and risk levels displayed before installation. Explore more at skills.sh! #Security #Developers #SkillsAudit #TechNews
Source: Vercel Blog
Liz Hurder

Changes to TLS clientAuth Certificates: Ensuring You’re Not Impacted

2026-02-17 13:00
🚨 Attention Cisco users! Upcoming changes to public TLS client authentication certificates may impact your services. From June 15, 2026, Google Chrome will no longer allow public certificates to include clientAuth EKUs. It's crucial to audit and update your trust stores to maintain secure operations. Remember, this change does not affect private PKI certificates. Stay informed and ensure your systems remain secure! 🔒 #Cisco #TLS #Cybersecurity #ClientAuthentication #TechUpdate
Chad Dandar

Zero knowledge vs. a malicious server: A look at ETH Zurich’s research

2026-02-16 00:00
ETH Zurich's Applied Cryptography Group released research on password managers and their "zero-knowledge" architecture against malicious servers. The findings confirm no new attack vectors for 1Password beyond previously documented limitations. Importantly, 1Password’s end-to-end encryption remains intact, ensuring users' data is only decrypted locally. 🔒 The paper highlights challenges in public-key authentication and vault-key substitution, which are recognized in 1Password’s Security...
info@1password.com (Jacob DePriest)

OpenClaw is being called a security “Dumpster fire,” but there is a way to stay safe

2026-02-15 15:00
Recent findings from Snyk engineers reveal significant security flaws in the OpenClaw marketplace, ClawHub. Over 7% of agent skills expose sensitive credentials, including API keys and passwords, through improper handling of secrets. 🔐 Deno’s new Sandbox offers a potential solution by providing isolated environments for running untrusted code securely, reducing risks of system compromise. For more details on the vulnerabilities and solutions, check out the full article! #CyberSecurity...
David Eastman

Supabase incident on February 12, 2026

2026-02-13 07:00
🚨 On February 12, 2026, Supabase faced a significant outage in the us-east-2 region, lasting 3 hours and 42 minutes. This impacted access to all services for customers in that area. 🔧 The outage was due to an internal monitoring deployment that unintentionally activated AWS's VPC Block Public Access feature, blocking internet traffic. 🔄 Supabase has rolled back this change, restoring normal connectivity. They are committed to improving infrastructure safeguards to prevent future incidents....

Securing modern workloads with HashiCorp Vault and WIF

2026-02-12 17:00
🔒 Modern enterprises face challenges with static credentials and perimeter-based security in cloud-native environments. HashiCorp Vault, paired with workload identity federation (WIF), addresses these issues by enforcing zero trust principles. ⚠️ Static secrets expose organizations to risks like credential leaks and overprivileged roles. Recent incidents highlight the dangers of "secret zero," the initial credential needed to access Vault. 🔑 WIF with Vault removes the need for static secrets,...
Nesh Chandarana

New deployments with vulnerable versions of the third-party package next-mdx-remote are now blocked by default

2026-02-12 13:00
🚨 Important Update for Developers! 🚨 New deployments using the vulnerable third-party package next-mdx-remote will be blocked by default on Vercel due to CVE-2026-0969. Upgrading to a patched version is strongly recommended, regardless of your hosting provider. For those needing to disable this automatic protection, you can set the DANGEROUSLY_DEPLOY_VULNERABLE_CVE_2026_0969=1 environment variable. Stay secure! 🔒 #CyberSecurity #Vercel #SoftwareDevelopment #NextJS #DevCommunity
Source: Vercel Blog
Tom Knickman

1Password's new benchmark teaches AI agents how not to get scammed

2026-02-12 00:00
1Password has introduced the Security Comprehension and Awareness Measure (SCAM) to enhance AI agents' ability to identify and avoid phishing scams. While AI models like GPT-4 can detect phishing with high accuracy, they may still fall short in executing secure actions. In tests, models exhibited critical failures, such as sharing passwords with phishing sites. By applying a 1,200-word security skill, the models showed significant improvement, reducing critical failures dramatically. This...
info@1password.com (Jason Meller)

Black History Month: meet Joseph Ojelade, security engineer at 1Password

2026-02-12 00:00
🌟 In celebration of Black History Month, 1Password highlights Joseph Ojelade, a security engineer and founding member of AfroBits. Joseph emphasizes trust, transparency, and collaboration in his role, focusing on Governance, Risk, and Compliance (GRC). He has built a “Trust Center” to enhance customer confidence and streamline compliance processes. Joseph's commitment to security stems from his core values. He aims to inspire others from diverse backgrounds to pursue careers in cybersecurity....
info@1password.com (1Password)

Agents Can Either Be Useful or Secure

2026-02-11 00:00
AI agents present a significant choice: they can be useful or secure. OpenClaw, a personal AI assistant, has gained popularity for its capability to access and manage various digital platforms seamlessly. While these agents enhance efficiency by breaking down silos between applications, they also pose security risks. The same features that streamline workflows can be exploited by attackers if not properly managed. Understanding the balance between utility and security is crucial in today's...
Source: Auth0 Blog

The hunt for truly zero-CVE container images

2026-02-10 19:30
Vendors are pursuing “zero-CVE” container images to enhance security, but face challenges due to the structural limits of traditional Linux distributions. Chainguard is leading the way with its Factory 2.0 software, enabling the direct rebuilding of containers from source code to ensure safety. Other options like Docker’s Hardened Images offer reduced attack surfaces but still depend on upstream distros like Debian or Alpine. The complexities of long dependency chains and slower release...
Steven J. Vaughan-Nichols

Hardened Images Are Free. Now What?

2026-02-10 14:00
🚀 Docker has made its Hardened Images (DHI) free, covering Alpine, Debian, and over 1,000 other images, including databases and runtimes. This shift impacts container vulnerability management significantly. DHI includes security fixes from Docker's team, allowing platform teams to quickly pull and redeploy patched images. However, teams must still manage vulnerabilities above the DHI boundary and adapt their security practices accordingly. DHI also enhances supply chain isolation, protecting...
Source: Docker Blog
Jin Kim

Security for the Agentic Era: Cisco AI Defense Breaks New Ground

2026-02-10 08:30
🚀 Cisco AI Defense has made significant strides in AI security over the past year, responding to the evolving landscape of AI risks. 🔐 The latest enhancements focus on three main areas: end-to-end AI supply chain security, advanced algorithmic red teaming, and real-time agentic guardrails. 📊 Cisco’s innovations aim to ensure the integrity of third-party AI components and protect sensitive data. Learn more about these advancements in the article! #CiscoAI #AISecurity #TechInnovation...
Emile Antone

Redefining Security for the Agentic Era

2026-02-10 08:30
The agentic era is transforming the landscape of security. AI agents now operate autonomously, posing new challenges for traditional security measures. 🚀 As enterprises increasingly adopt these technologies, only 24% feel equipped to manage agent actions effectively. This calls for intent-aware controls to ensure safety and accountability in autonomous systems. 🔒 Rethinking security is crucial to adapt to this evolving reality. #AI #Cybersecurity #AgenticEra #AutonomousSystems #TechTrends
Peter Bailey

February 2026 Patch Tuesday: Six Zero-Days Among 59 CVEs Patched

2026-02-10 00:00
🔒 Microsoft has released its February 2026 Patch Tuesday update, addressing 59 vulnerabilities. Among these, six are actively exploited, with three being publicly known. The update includes five Critical vulnerabilities. The primary risk types involve elevation of privilege (42%), remote code execution (20%), and spoofing (14%). Windows received the most patches, totaling 32. #CyberSecurity #PatchTuesday #MicrosoftUpdates #Vulnerabilities #TechNews
Falcon Exposure Management Team

How Duke Energy enforces cloud security at scale with Terraform & Vault, and 6 lessons

2026-02-09 17:00
Duke Energy's transition to the cloud highlighted key lessons in scaling security without sacrificing speed. 🌩️ Facing new security challenges, they standardized on tools like Terraform Enterprise and Sentinel for better governance. This shift helped manage security risks while maintaining rapid development. Discover the six lessons learned from their cloud journey and how they built a secure developer platform. 🔐 #CloudSecurity #DigitalTransformation #DukeEnergy #Terraform #DevOps
Michael Wood

Cisco Donates Project CodeGuard to the Coalition for Secure AI

2026-02-09 15:09
🚀 Cisco has donated Project CodeGuard to the Coalition for Secure AI (CoSAI). This initiative aims to address the challenge of securing AI-generated code, emphasizing the importance of industry collaboration. Project CodeGuard was first open-sourced in October 2025, marking a significant step in the journey toward safer AI practices. #Cisco #AI #Cybersecurity #OpenSource #Collaboration
Omar Santos

Black Hat Europe: Enhancing Security Operations With Cisco XDR and Foundation-sec-8b-Instruct LLM

2026-02-09 13:00
At Black Hat Europe, Cisco introduced an innovative solution to enhance security operations. The Foundation-sec-8b-Instruct LLM, with 8 billion parameters, assists security operations centers by summarizing alerts and tracing attack paths in real time. This tool aims to reduce the manual effort needed for triage and incident response. During testing in London, the model demonstrated its usefulness in improving efficiency and accuracy for SOC teams. #CyberSecurity #Cisco #AI #BlackHatEurope...
Piotr Jarzynka

Continuous Improvement at Black Hat Europe: Listen to Your Analysts! (They Know What They Need)

2026-02-09 13:00
At Black Hat Europe, discussions highlighted a key challenge for XDR analysts: lacking endpoint context makes it hard to trace network connections. A proposed solution involves automating workflows to enrich XDR incidents using DNS data, enabling analysts to access vital information quickly. This could streamline the process of identifying domains linked to public IPs. New workflows are being developed to enhance operational efficiency and visibility. #CyberSecurity #XDR #Automation #BlackHat...
Ivan Berlinson

Securing DNS With Secure Access at Black Hat Europe

2026-02-09 13:00
Cisco has been securing Black Hat events for nearly ten years with DNS security. This year, they advanced to Cisco Secure Access, enhancing visibility and protection. At Black Hat Europe, they monitored 66 million queries and 6,000 unique apps, focusing on DNS-layer security. Notably, they tracked the ApateWeb campaign, which showed reduced activity compared to previous events. #CyberSecurity #BlackHat #CiscoSecureAccess #DNSecurity #TechNews 🌐🔒🛡️
Rob DeCooman

Reduce Vulnerability Noise with VEX: Wiz + Docker Hardened Images

2026-02-05 23:25
🔍 Are you concerned about vulnerability noise in your applications? The new integration between Wiz and Docker Hardened Images (DHI) provides essential insights by utilizing the VEX (Vulnerability Exploitability eXchange) standard. This helps organizations determine if specific vulnerabilities impact their systems. With this integration, security teams can minimize false positives and gain clearer visibility into their software components. It streamlines the adoption of hardened images and...
Source: Docker Blog
Dan Berezin Stelzer

The one structural shift CISOs must make before AI outpaces their security strategy

2026-02-05 20:40
Enterprise CISOs face significant challenges as AI demands increase and budgets remain static. A traditional centralized security model is no longer effective. To adapt, CISOs must adopt a federated security governance model, empowering business unit leaders to implement security strategies tailored to their specific contexts. This shift offers three key benefits: faster decision-making, flexible policy implementation, and scalable security for organizational growth. #CISO #CyberSecurity #AI...
Josh Lemos

It took a researcher fewer than 2 hours to hijack OpenClaw

2026-02-05 16:37
🚨 Security concerns around the OpenClaw AI agent are proving valid. Researchers have found significant vulnerabilities in its social network, Moltbook. OpenClaw has full system access by default, which raises alarms. Vulnerabilities include remote code execution bugs and an unsecured social-graph database. The security risks stem from weak authentication in its Model Context Protocol (MCP), allowing unauthorized access to sensitive data. For example, a researcher noted that default settings...
Steven J. Vaughan-Nichols

Developing a National Cybersecurity Strategy in the AI Era: A Playbook for Government

2026-02-05 15:34
🌐 Last year, Rwandan Minister of IT, Paula Ingabire, emphasized global collaboration against emerging cyber threats linked to technologies like AI and blockchain. 💻 Cisco recognizes the urgency of these challenges, advocating for robust national cybersecurity strategies to protect economies and trust. 📊 The report by the Center for Cyber Security Law and Policy shares best practices for governments to enhance their cybersecurity measures. #Cybersecurity #AI #Collaboration #NationalSecurity...
Nicole Isaac

Facing the Quantum Threat: Cisco’s Strategic Approach to PQC

2026-02-05 13:00
Quantum threats are becoming a reality, posing risks to our data security. Cisco outlines its approach to Post-Quantum Cryptography (PQC) to tackle these challenges. Emerging quantum computers could compromise public-key cryptography and sensitive data in sectors like finance and healthcare. The "Harvest Now, Decrypt Later" tactic increases long-term risks for encrypted information. Additionally, the potential for trust breakdown in digital systems could lead to severe security...
Christian Chisholm

The Domains and Organizational Functions of AI Security

2026-02-04 20:35
Understanding "AI security" is crucial for effective enterprise operations. In a recent article, experts highlight the complexities surrounding AI security, which includes protecting systems, using AI for threat detection, and preventing data leakage. To address these challenges, a five-domain taxonomy has been introduced to clarify discussions and align strategies across organizations. This shared framework aims to reduce miscommunication and resource misallocation. #AISecurity...
Omar Santos