General cybersecurity industry news, market trends, and analysis
AI weaponizes the kill chain across hours or days, forcing continuous exposure and agentic defense to reduce exploitation risk.
Remotely exploitable, the integer underflow vulnerability impacts StrongSwan releases spanning 15 years.
A faulty software update led to the exposure of mobile banking users’ transactions to other users of the application.
It's not every day that you read that the head of America's top law enforcement agency has been hacked, but then - these aren't ordinary times.
Researchers found an OpenAI Codex vulnerability that could have been exploited to compromise GitHub tokens.
Axios 1.14.1 and 0.30.4 injected malicious plain-crypto-js@4.2.1 after npm compromise on March 31, 2026, deploying cross-platform RAT malware.
The massive amount of junk code that hides the malware's logic from security scans was almost certainly generated by AI, researchers say.
In a conversation with Dark Reading’s Terry Sweeney, Black Duck CEO Jason Schmitt explains how AI is reshaping application security and why it must evolve to keep pace.
CVE-2025-53521 was initially disclosed in October as a high-severity denial-of-service (DoS) flaw, but new information has revealed the bug is actually much more dangerous.
ChatGPT and Codex flaws patched Feb 2026 exposed DNS exfiltration and GitHub tokens, raising enterprise AI security risks.
The two key economic sectors struggle with security for a reason: Many insiders view access management as a roadblock, while attackers see it as a way in.