Microsoft Patch Tuesday September 2026 set a record with 966 vulnerabilities patched, but security analysts say an ...
PaperCut vulnerability CVE-2026-81578 and CVE-2026-82078 let a single attacker deploy AI agents that hacked 395 organizations ...
More than 100 of this month's vulnerabilities are rated critical. AI-assisted vulnerability discovery has played a role in that growth as Microsoft uses automated tools to find flaws that may have ...
A likely Russian-speaking attacker used hundreds of AI agents to exploit PaperCut systems, compromising at least 440 systems ...
A suspected Russian-speaking actor used AI-assisted workflows to exploit PaperCut flaws and compromise at least 440 instances ...
Cisco FMC vulnerability CVE-2026-20079 (CVSS 10.0) is under active exploitation by Sandworm -- the Russian GRU hacking unit - ...
ScreenConnect abuse shows worm-like propagation of a four-stage VBScript chain; ConnectWise advises disabling file transfers ...
Microsoft 365 phishing MFA bypass platform BigBear 2.0 compromised 258 organizations across 40+ countries by using custom JavaScript to disable FIDO2 hardware key authentication before stealing ...
Attackers abuse Active Directory replication in DCSync attacks to impersonate domain controllers and steal privileged password hashes.
For many UK SMEs, the hardest part of defensive security is not collecting more tools. It is understanding whether the controls and detections already in place actually cover the behaviours an ...
A boutique investment house based in Johannesburg is looking for a Junior Systems Administrator to help run its Windows server environment. This is a Microsoft server and infrastructure role rather ...
Threat actors are increasingly abusing a stealthy Active Directory technique known as DCSync to impersonate domain controllers and extract password hashes from enterprise networks.