
cybersecurity


The European Union’s pursuit of a resilient cyber future has become a defining feature of its strategic identity.

What They Actually Prove. Organisations treat the pentest report as a verdict on their security posture. It is not. It is a record of what a specific person found, in a specific scope, within a specific number of days, using a specific set of credentials. Everything outside those four constraints is untested — and the report almost never says so loudly enough. Security Researcher • Penetration Te…

Attackers are exploiting a chain of RouterOS vulnerabilities to hijack MikroTik devices with SSH open to the internet, CERT Polska found. CERT Polska, Poland’s national CSIRT team, have discovered six vulnerabilities in RouterOS and coordinated their disclosure with MikroTik. Among the six, two combined let an attacker take full control of a device without authentication, provided the device has …

A file transfer flaw in ScreenConnect Remote Access Support and Access sessions affects both Cloud and On-Premise deployments, ConnectWise confirmed. “A CVE identifier and an official fix will be issued within the week,” the company wrote in its September 3 advisory. ScreenConnect is a popular remote support and access solution tailored for IT departments and managed service providers (MSPs). The…
Qatar is racing toward a knowledge-based, fully digital economy. Smart infrastructure, cloud-first government services, a financial sector that's increasingly API-driven, and critical energy assets like QatarEnergy's LNG operations layering more connected OT/ICS systems every year. That pace of transformation makes Qatar an attractive target in the cyber realm, right now. Attackers don't need to …

Security teams cannot manage an AI attack surface they cannot see. Models, inference APIs, agents, experimental applications, service identities, and supporting cloud resources may appear outside the inventory used for routine security reviews. Those gaps make it harder to spot exposed endpoints, risky configurations, or unmanaged deployments before they become overlooked exposures.

Before you prompt AI to answer another question or perform another task, a Wake Forest computer scientist wants you to know it could expose your sensitive data.
Businesses received a staggering amount of cyberattacks in June, according to Check Point , showing a rise of 20% over the previous 12 months. The breakout of AI agents from OpenAI in July to hack into the Hugging Face website, and subsequent similar events from Anthropic and Meta, indicate agentic-powered attacks will explode over the coming year. Currently, malicious hackers have the advantage …
Attack Guile continuously explores your stack like an attacker, testing real paths across code, APIs, apps, infrastructure, and cloud. An always-on red team that tests your code, APIs, and infrastructure, then proves every finding before it becomes an incident. Offensive coverage, always on Modern stacks move too quickly for periodic testing to keep up. Guile continuously attacks the places your …
research.ioSign up to keep scrolling
Create your feed subscriptions, save articles, keep scrolling.









