Zero Days

One VS Code Extension. One Developer. 3,800 GitHub Repositories Gone.

GitHub confirmed 3,800 internal repositories were compromised after one developer installed a poisoned VS Code extension. The same hacking group has hit Trivy, Checkmarx, Bitwarden CLI, and TanStack in 2026 alone. Here's what it means for your team.

Your Staff Are Feeding AI Tools 18,000 Terabytes of Company Data. Most Bosses Have No Idea.

New research from Zscaler reveals employees transferred 18,033 terabytes of corporate data to AI apps in 2025, a 93% jump. Grammarly received more than ChatGPT. Here's what you need to do about it.

AI Just Dethroned Stolen Passwords as the Number One Way Hackers Break In

Verizon's 2026 Data Breach Investigations Report reveals a seismic shift: vulnerability exploitation, supercharged by AI, has overtaken stolen credentials as the top way attackers get in.

Microsoft Defender Has Two Zero-Days Being Exploited Right Now. Patch Immediately.

CISA has ordered federal agencies to patch two actively exploited zero-day vulnerabilities in Microsoft Defender within two weeks. Here's what you need to know and how to check if you're protected.

Cloudflare Just Taught an AI to Chain Security Bugs Into Real Exploits

Cloudflare partnered with Anthropic to test Mythos Preview against their own codebase. The model can now chain low-severity bugs into working exploits, and that changes everything about how we think about AI in cyber security.

No posts to display

spot_imgspot_img

Subscribe

Popular articles

One VS Code Extension. One Developer. 3,800 GitHub Repositories Gone.

GitHub confirmed 3,800 internal repositories were compromised after one developer installed a poisoned VS Code extension. The same hacking group has hit Trivy, Checkmarx, Bitwarden CLI, and TanStack in 2026 alone. Here's what it means for your team.

Your Staff Are Feeding AI Tools 18,000 Terabytes of Company Data. Most Bosses Have No Idea.

New research from Zscaler reveals employees transferred 18,033 terabytes of corporate data to AI apps in 2025, a 93% jump. Grammarly received more than ChatGPT. Here's what you need to do about it.

AI Just Dethroned Stolen Passwords as the Number One Way Hackers Break In

Verizon's 2026 Data Breach Investigations Report reveals a seismic shift: vulnerability exploitation, supercharged by AI, has overtaken stolen credentials as the top way attackers get in.

Microsoft Defender Has Two Zero-Days Being Exploited Right Now. Patch Immediately.

CISA has ordered federal agencies to patch two actively exploited zero-day vulnerabilities in Microsoft Defender within two weeks. Here's what you need to know and how to check if you're protected.

Cloudflare Just Taught an AI to Chain Security Bugs Into Real Exploits

Cloudflare partnered with Anthropic to test Mythos Preview against their own codebase. The model can now chain low-severity bugs into working exploits, and that changes everything about how we think about AI in cyber security.