Model Security Is the Wrong Frame – The Real Risk Is Workflow Security

15/01/2026 0 Comments 0 tags

As AI copilots and assistants become embedded in daily work, security teams are still focused on protecting the models themselves. But recent incidents suggest the bigger risk lies elsewhere: in

4 Outdated Habits Destroying Your SOC’s MTTR in 2026

15/01/2026 0 Comments 0 tags

It’s 2026, yet many SOCs are still operating the way they did years ago, using tools and processes designed for a very different threat landscape. Given the growth in volumes

Palo Alto Fixes GlobalProtect DoS Flaw That Can Crash Firewalls Without Login

15/01/2026 0 Comments 0 tags

Palo Alto Networks has released security updates for a high-severity security flaw impacting GlobalProtect Gateway and Portal, for which it said there exists a proof-of-concept (PoC) exploit. The vulnerability, tracked

Microsoft Legal Action Disrupts RedVDS Cybercrime Infrastructure Used for Online Fraud

15/01/2026 0 Comments 0 tags

Microsoft on Wednesday announced that it has taken a “coordinated legal action” in the U.S. and the U.K. to disrupt a cybercrime subscription service called RedVDS that has allegedly fueled

Researchers Null-Route Over 550 Kimwolf and Aisuru Botnet Command Servers

14/01/2026 0 Comments 0 tags

The Black Lotus Labs team at Lumen Technologies said it null-routed traffic to more than 550 command-and-control (C2) nodes associated with the AISURU/Kimwolf botnet since early October 2025. AISURU and

AI Agents Are Becoming Privilege Escalation Paths

14/01/2026 0 Comments 0 tags

AI agents have quickly moved from experimental tools to core components of daily workflows across security, engineering, IT, and operations. What began as individual productivity aids, like personal code assistants,

Hackers Exploit c-ares DLL Side-Loading to Bypass Security and Deploy Malware

14/01/2026 0 Comments 0 tags

Security experts have disclosed details of an active malware campaign that’s exploiting a DLL side-loading vulnerability in a legitimate binary associated with the open-source c-ares library to bypass security controls

Fortinet Fixes Critical FortiSIEM Flaw Allowing Unauthenticated Remote Code Execution

14/01/2026 0 Comments 0 tags

Fortinet has released updates to fix a critical security flaw impacting FortiSIEM that could allow an unauthenticated attacker to achieve code execution on susceptible instances. The operating system (OS) injection

Microsoft Fixes 114 Windows Flaws in January 2026 Patch, One Actively Exploited

14/01/2026 0 Comments 0 tags

Microsoft on Tuesday rolled out its first security update for 2026, addressing 114 security flaws, including one vulnerability that it said has been actively exploited in the wild. Of the

New Research: 64% of 3rd-Party Applications Access Sensitive Data Without Justification

14/01/2026 0 Comments 0 tags

Research analyzing 4,700 leading websites reveals that 64% of third-party applications now access sensitive data without business justification, up from 51% in 2024.  Government sector malicious activity spiked from 2%