How to reduce cybersecurity backlogs and fix vulnerability debt
An increasing backlog indicates a failure in the operating model Security teams often become the default owners of any issue labeled as a security concern. For example, when a scanner…
An increasing backlog indicates a failure in the operating model Security teams often become the default owners of any issue labeled as a security concern. For example, when a scanner…
Kieron Hughes | Wednesday, 12 August 2026 at 09:04 UTC We already know AI can find vulnerabilities. James Kettle, PortSwigger’s Director of Research, wanted to answer a harder question: can…
The Good | Courts Sentence “The Com” Online Syndicate Member for Blackmail & Sextortion A court in the UK has sentenced a member of the decentralized online cybercrime collective known…
Exploited Zero-Day Vulnerability in Windows Ancillary Function Driver for WinSock CVE-2026-68820 is an Important elevation of privilege vulnerability affecting the Windows Ancillary Function Driver for WinSock and has a…
A legacy Entra ID endpoint kept alive for Office 2013 clients lets attackers spray passwords past Smart Lockout, confirm valid credentials on MFA-protected accounts, and leave only partial logs behind.
Introduction Okta is determined to raise the bar for cloud security. In May 2024, Okta was one of the first technology providers to sign the CISA Secure by Design pledge….
Security teams are being asked to defend a growing attack surface with fewer people and around the clock, against threat actors who never take a night off. As cyberattackers increasingly…
Welcome to the 25th edition of Cloudflare’s DDoS Threat Report. This is the first half-year edition in the series: rather than publishing separate reports for the first and second quarters…
A cyberattack at CEVA Logistics is now surfacing in customer notices across Europe. CEVA said the intrusion affected part of its European contract-logistics operation, including eight warehouses. Several clients have…
SigninLogs | where TimeGenerated > ago(1h) | where ResultType in (“50034”, “50126”, “700016”) or isempty(AppDisplayName) | summarize DistinctClientIDs = dcount(AppId), ResultCodes = make_set(ResultType), Usernames = make_set(UserPrincipalName) by SourceIPAddress, UserAgent, bin(TimeGenerated,…