Ruby on Rails critical bug puts every image upload under scrutiny
A new critical vulnerability in the Ruby on Rails (“Rails”) web application framework, CVE-2026-66066, could turn a seemingly i...
222 articles in this category
A new critical vulnerability in the Ruby on Rails (“Rails”) web application framework, CVE-2026-66066, could turn a seemingly i...
A self-propagating worm-like attack is hitting the npm registry, having infected 444 packages from more than a dozen publishers so...
Airlock Digital, a leader in preventative endpoint security, today announced Agentic AI Control & Governance at Black Hat U...
A critical vulnerability in Microsoft Azure’s Cosmos DB database service could have enabled attackers to escape the platform’s Gre...
Black Hat 2026 is shaping up to be another AI-heavy conference, but this year’s announcements suggest the industry is moving be...
Black Hat 2026 is shaping up to be another AI-heavy conference, but this year’s announcements suggest the industry is moving be...
Security flaws in automated workflows in the GitHub repository for Google’s Agent Development Kit for Python could allow public...
You don’t need to be a fortune teller to understand where enterprise IT is headed. McKinsey reported in November that 62% of gl...
More than 30 Minnesota community water systems were hit by coordinated cyber activity against their operational technology on J...
AI agents are increasingly being deployed across the enterprise, a rapid adoption that has significantly broadened the organizatio...
While AI security today is largely focused on restricting what an agent can do, Zero Networks says it has built a failsafe. The...
In cybersecurity, third-party risk management normally looks simple on paper: evaluate your vendor, learn the risk, report out...
When OpenAI disclosed that one of its models escaped a test environment and broke into Hugging Face’s systems on its own, headl...
It’s a sign of the times: Security conference DefCon has added smart glasses to its list of banned audio- or video-recording de...
Google is creating a new naming scheme for the bad actors behind cybersecurity threats, hoping that it will help to standardize...
Broadcom has addresses five vulnerabilities in its VMware product range, three of which have been accorded a “critical” rating....
Microsoft has had a narrow escape from total embarrassment: A security company uncovered a critical vulnerability that could have...
JetBrains is warning of a critical security vulnerability in its TeamCity DevOps platform that could allow unauthenticated atta...
Less than two weeks after OpenAI disclosed that an experimental AI model breached Hugging Face during a cybersecurity evaluatio...
Two major conferences loom large on the US cybersecurity events calendar: The RSA Conference and Black Hat. RSA was launched in...