Software companies once worried about employees physically walking away with sensitive information. Today, intellectual property can … IP Leakage Risks Grow as Code Moves Across Modern DevelopmentRead more
cloud security
Credit Agricole Phishing Scam Stole Nearly 1,000 Bank Logins
A sophisticated Credit Agricole phishing scam exposed a large-scale operation designed to steal online banking credentials … Credit Agricole Phishing Scam Stole Nearly 1,000 Bank LoginsRead more
Microsoft OAuth Phishing Campaign Uses Real Login Pages to Hijack Accounts
A newly identified Microsoft OAuth phishing campaign is changing the rules of phishing by eliminating one … Microsoft OAuth Phishing Campaign Uses Real Login Pages to Hijack AccountsRead more
Hidden Web Text Can Trigger AWS Kiro RCE
A newly disclosed AWS Kiro vulnerability shows how a hidden line of text on a webpage … Hidden Web Text Can Trigger AWS Kiro RCERead more
AWS Warns Unmonitored Outbound Traffic Is Becoming a Major Cloud Security Risk
Cloud security teams have traditionally focused on preventing attackers from getting into their environments. Firewalls, web … AWS Warns Unmonitored Outbound Traffic Is Becoming a Major Cloud Security RiskRead more
CodeStorm Phishing Campaign Exploits Compromised Microsoft 365 Accounts
A sophisticated CodeStorm phishing attack is redefining how adversaries exploit trust in cloud ecosystems. Security researchers … CodeStorm Phishing Campaign Exploits Compromised Microsoft 365 AccountsRead more
Salesforce OAuth Attack Exploits Klue Integration to Steal CRM Data
A stealthy new Salesforce OAuth attack is exposing a critical weakness in how enterprises rely on … Salesforce OAuth Attack Exploits Klue Integration to Steal CRM DataRead more
ServiceNow Data Breach Exposes Customer Data via Misconfigured Endpoint
A newly disclosed ServiceNow data breach has raised serious concerns across the enterprise SaaS landscape, after … ServiceNow Data Breach Exposes Customer Data via Misconfigured EndpointRead more
Browser-in-the-Browser Attack Targets Microsoft 365 Logins
A sophisticated Browser-in-the-Browser phishing attack is targeting Microsoft 365 users, leveraging highly realistic fake login popups … Browser-in-the-Browser Attack Targets Microsoft 365 LoginsRead more
How This Linux Flaw Triggers Critical Container Escape
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has officially added a critical Linux kernel cgroups … How This Linux Flaw Triggers Critical Container EscapeRead more