Dark Reading

darkreading.com · EN

Public RSS feed

Latest posts

  1. [Virtual Event] Cybersecurity Outlook 2027

    · darkreading.com
  2. 'Salesbleed' Exploits Salesforce Agents to Enable Slack Phishing

    · darkreading.com · Nate Nelson

    Agentic AI can smuggle arbitrary instructions from the Web, across multiple apps, into trusted internal communications channels.

  3. SectopRAT Returns, Hiding Inside a Legitimate Application

    · darkreading.com · Jai Vijayan

    The latest activity from the remote access Trojan (RAT) shows why organizations should monitor the behavior of applications rather than blindly trusting them, experts say.

  4. 3 Cyber Threats That Defined the Summer of 2026

    · darkreading.com · Arielle Waldman

    This installment of the Reporters' Notebook video series discusses the impact of AI agents breaching Hugging Face, Fairlife's ransomware attack, and Iranian-linked threat actors compromising a dozen US water systems. It was a busy summer.

  5. How to Build A SASE Framework for Modern Cybersecurity

    · darkreading.com · George V. Hulme, Contributing Writer

    Keeping edge computing safe requires organizations to fundamentally rethink security governance. Here is a path forward: a step-by-step guide to building a SASE framework.

  6. Ghost Service Accounts Enable M365 Data Theft in Chile

    · darkreading.com · Nate Nelson

    Even if the organization locks down employee accounts, forgotten and lost service accounts can still undo the organization's entire M365 environment.

  7. Prompt-Injection Bug Hits $4B Agentic AI App 'Manus'

    · darkreading.com · Nate Nelson

    AI apps that interpret external data (read: most AI apps) need exceptionally rigorous security filters, or attackers can take advantage.

  8. SASE Converges Network & Security Into One Cloud Solution

    · darkreading.com · George V. Hulme, Contributing Writer

    Enterprise computing is moving to the edge. Keeping it secure requires tactics far beyond putting up firewalls.

  9. EDR Evasion Stack Helps Process Injection Slip Past Defenses

    · darkreading.com · Alexander Culafi

    A process parameter-poisoning technique evades EDR by injecting code into process initialization structures without using the Windows APIs that EDR tools typically watch out for.

  10. GitLab Email Addresses Can Be Weaponized for Supply Chain Attacks

    · darkreading.com · Rob Wright

    Incoming email addresses automatically assigned to each user on the platform contain highly privileged access tokens that attackers can use.

  11. UAE, Saudi Arabia Face Onslaught of Increasingly Complex Cyberattacks

    · darkreading.com · Robert Lemos

    The United Arab Emirates and Kingdom of Saudi Arabia together absorbed 50% of all cyberattacks recorded across the Gulf region in the first half of 2026.

  12. Attackers Manipulate AI Chatbots in Mass Disinformation, Phishing Campaign

    · darkreading.com · Elizabeth Montalbano

    Threat actors are poisoning ChatGPT, Gemini, and Google AI Overview answers by seeding the Web with malicious links and data and then optimizing the content.

  13. Relays Are Masking Chinese Access to Frontier AI Models in the US

    · darkreading.com · Jai Vijayan

    More than 80,000 AI relay servers are helping users in China mask their identities while they access cutting-edge large language models (LLMs), probably to clone them.

  14. How the CISO-CMO Alliance Builds Trust Before Crisis Strikes

    · darkreading.com · George V. Hulme, Contributing Writer

    Cybersecurity and brand reputation are inextricably linked. Security and marketing leaders who establish regular touchpoints, develop joint crisis communications plans, and translate security risks into their brand impact position their organizations to significantly outperform those treating…

  15. Microsoft Disrupts EvilTokens Device Code Phishing Service

    · darkreading.com · Alexander Culafi

    Microsoft seized 50 websites and disabled more than 150 domains as part of a coordinated disruption effort against a phishing-as-a-service platform targeting Microsoft 365 accounts.

  16. Deception by Design: CISA's Guide to Tricking Cybercriminals

    · darkreading.com · Arielle Waldman

    The Cybersecurity and Infrastructure Security Agency (CISA) is going old school to help organizations with limited resources set traps for hackers.

  17. Amid Ongoing Rogue Incidents, Debate Over AI Safety Gets Real

    · darkreading.com · Robert Lemos

    As more reports of misalignment incidents underscore AI risks, large AI labs, regular businesses, and even nations are searching for better ways to keep control and be secure.

  18. More Than a Third of Industrial Orgs See Cybersecurity Risk as a Top Obstacle to Growth, Study Finds

    · darkreading.com

    Industrial companies are increasing cybersecurity investment as connected operations, AI adoption, and IT/OT convergence expand operational risk.

  19. Shai-Hulud Attack Nips Cyber-Firm CrowdSec's GitHub Data

    · darkreading.com · Elizabeth Montalbano

    Threat actors stole the contents of 170 private repositories using an OAuth token stolen from a former employee's computer through the TanStack npm supply chain attack.

  20. How AI Agents Can Trigger Runaway Costs for Enterprises

    · darkreading.com · Jai Vijayan

    Unbounded consumption is an issue that OWASP currently ranks sixth in its Top 10 for LLM Applications, and it could be an extremely costly one.

In the directory since 25 Sept 2026 · last checked 25 Sept 2026 · RSS

Report a problem with this feed