Reading view
ThreatsDay Bulletin: Defender 0-Day, SonicWall Brute-Force, 17-Year-Old Excel RCE and 15 More Stories
Git identity spoof fools Claude into giving bad code the nod
Forged metadata made AI reviewer treat hostile changes as though they came from known maintainer
Security boffins say Anthropic's Claude can be tricked into approving malicious code with just two Git commands by spoofing a trusted developer's identity.…
[Webinar] Find and Eliminate Orphaned Non-Human Identities in Your Environment
Textbook titan McGraw Hill on ransomware crew's reading list after 13.5M records exposed
Publisher claims misconfigured Salesforce-hosted page leaked data
Textbook giant McGraw Hill has landed on a ransomware crew's leak site after an alleged Salesforce-linked misconfiguration spilled 13.5 million records into the wild.…
Cisco Patches Four Critical Identity Services, Webex Flaws Enabling Code Execution
Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto Attacks
Hidden Passenger? How Taboola Routes Logged-In Banking Sessions to Temu
Microsoft announces product it doesn't want you to buy: Extended security updates for old Exchange, and Skype for Biz
Just migrate already, would you? But if you can't, Redmond will take your cash
Microsoft will keep delivering security updates for old versions of Exchange Server and Skype for Business Server, after admitting that some customers aren't ready to make the move to newer products.…
This stroller turns into a carry on-suitcase, and I recommend it for traveling parents
The best small business VoIP providers of 2026: Expert tested and reviewed
Protect your devices with our pick for the best antivirus software, now over 60% off
Server-room lock was nothing but a crock
Your cybersecurity is only as good as the physical security of the servers
PWNED Welcome back to Pwned, the column where we immortalize the worst vulns that organizations opened up for themselves. If you’re the kind of person who leaves your car doors unlocked with a pile of cash in the center console, this week’s story is for you.…
UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware Campaign
I found a way to roll back buggy Google Services updates on Android - in just a few clicks
Google Chrome lacks protection against one of the most basic and common ways to track users online
Browser fingerprinting is everywhere
Google markets its Chrome browser by citing its superior safety features, but according to privacy consultant Alexander Hanff, Chrome does not protect against browser fingerprinting – a method of tracking people online by capturing technical details about their browser.…
The same Microsoft Surface I bought 4 months ago is 69% more expensive now - here's why
Anthropic's Project Glasswing CVE tally is still anyone's guess
Like the majority of the companies participating, it remains a mystery
Last week, Anthropic surprised the world by declaring that its latest model, Mythos, is so good at finding vulns that it would create chaos if released. Now, under the title of Project Glasswing, over 50 selected companies and orgs are allowed to test the hyped up LLM to find security holes in their own products. But just how many problems have they really discovered?…