The Small Model Cliff

CASI Leaderboard, Bias Jailbreak, and Three Coordinated Supply Chain Incidents - Read more

AI models more vulnerable than claimed when faced with iterative attacks

CISOs relying on LLM runtime guardrails and official safety scores when making security decisions about their organizations’ AI usage and...

Report ‘phone hack’ to police or I will do it for you, Labour chair...

Anna Turley gives Reform leader 24 hours to report Russian hacking claim in ‘public and national interest’The Labour chair has given Nigel Farage 24...

GHOST STADIUM Phishing Campaign Targets FIFA World Cup Fans With 300+ Fake Domains

As the 2026 FIFA World Cup draws closer, cybercriminals are moving fast to cash in on the excitement. Researchers have uncovered a massive fraud...

Gladinet Triofox Server Agent Multiple Vulnerabilities

Gladinet Triofox Server Agent Multiple Vulnerabilities Multiple vulnerabilities exist in Gladinet Triofox Server Agent 17.1.10488.57063. CVE-2026-8364 - Missing Authentication for Critical Function (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) Gladinet Triofox Cloud...

The Next AI Security Failure May Start With a Trusted Assistant

AI coding tool flaws highlight the need for data-layer governance, access controls, encryption, and audit logs for AI agents. The post The Next AI Security...

Scottish social enterprise supports national cyber efforts

Cyber and Fraud Centre has supported community cyber resilience in Scotland to the tune of £3m in its first year operating as a social...

MediaArea heap-based buffer overflow vulnerabilities

Cisco Talos’ Vulnerability Discovery & Research team recently disclosed four vulnerabilities in MediaArea MediaInfoLib library.The vulnerabilities mentioned in this blog post have been patched...

CrowdStrike, Google Take Down Glassworm Botnet

Operators of the malicious Glassworm botnet have been targeting software developers since at least early 2025 - Read more

Introducing EvidenceForge: Synthetic security logs that don’t look (as) fake

Security teams need high-quality, labeled datasets to train threat hunters and incident responders, validate detection logic, and develop robust analytic models. EvidenceForge helps teams overcome the limitations of anonymized or...

Latest article

GreatXML zero-day BitLocker bypass doesn’t seem to work, yet

A disgruntled researcher who has been publishing zero-day Microsoft Windows vulnerabilities for the past several months released a new exploit...

New Windows Zero-Day Claims BitLocker Bypass Amid Microsoft Disclosure Fight

A new Windows zero-day reportedly bypasses BitLocker, adding pressure on Microsoft as researchers debate the exploit’s real-world impact. The post New Windows Zero-Day Claims BitLocker...

Fancy Bear Hackers Abuse EdgeRouters and Cloud Services to Launch Stealthy Cyberattacks

One of the most persistent hacking groups in the world has found a new way to stay hidden. The threat actor known as...

Ransomware Payment Crypto Laundering Platform Taken Out by FBI and Europol

Domain of dark web money laundering platform AudiA6 seized and suspects arrested in joint operation by the FBI, Europol and others - Read...