Dolphin X Stealer Targets 300+ Apps and Profiles Users with AI
Varonis Threat Labs discovered Dolphin X advertised on a cybercrime forum by a vendor using the alias “Kontraktnik.”
Varonis Threat Labs discovered Dolphin X advertised on a cybercrime forum by a vendor using the alias “Kontraktnik.”
Okta’s vision of building a world where anyone can safely use any technology, powered by their Identity, continues to be our guiding factor. Today, almost 20,000 customers rely on Okta’s…
For 96 years, the World Cup has been a global phenomenon, uniting nations and communities through a shared love of sportsmanship. While its popularity is nothing new, what is novel…
Phishing campaigns are increasingly shifting away from traditional malware in favor of trusted business applications and legitimate IT tools. Research from BlueVoyant shows attackers are using realistic DocuSign-themed pages to…
“People who work in SOCs are now seeing overwhelming volumes of data, and they’re getting fatigued,” Griffiths tells CSO. AI can help automate portions of analysis, validate alerts, and improve…
Amelia Coen | Tuesday, 5 August 2025 at 11:08 UTC Ever wondered how attackers can compromise modern websites by exploiting invisible cracks in HTTP infrastructure to win big bounties? In…
Security Operations Centers (SOCs) are currently confronting scalability challenges on two fronts: structural and cognitive. The day-to-day reality of modern defensive operations is stark: an analyst frequently begins a shift…
Varonis security brief On July 16, 2026, HuggingFace disclosed a security breach in which an autonomous AI attacker infiltrated its internal infrastructure. The attacker chained two remote code execution (RCE) vulnerabilities in HuggingFace’s dataset processing pipeline,…
CSO Conversations is a blog series interviewing Okta’s Regional CSOs supporting David Bradbury, Okta’s Chief Security Officer in providing the best service for our customers. Okta’s Regional CSOs are integral…
Hugging Face disclosed that attackers breached its production infrastructure using an autonomous AI agent attack. The attackers gained access to internal datasets and credentials by exploiting vulnerabilities in the company’s…