News
69% of CISOs open to career move — including leaving role entirely
4+ hour, 38+ min ago (765+ words) Enterprise CISOs are increasingly willing " and eager "to jump ship, with some frustrated enough to want to leave cybersecurity entirely. A recent survey of security leaders from IANS Research and Artico Search found that 69% of security executives "are open to…...
Chinese APT group Velvet Ant deployed custom backdoor on Cisco Nexus switches
8+ hour, 19+ min ago (530+ words) A Chinese state-sponsored cyberespionage group tracked as Velvet Ant exploited a zero-day vulnerability in Cisco NX-OS earlier this year to deploy a custom malware implant on an organization's network switches, according to researchers from security firm Sygnia. The backdoor was…...
Anthropic’s DXT poses “critical RCE vulnerability” by running with full system privileges
8+ hour, 19+ min ago (727+ words) When LayerX Security published a report on Monday describing what it called "a critical zero-click RCE vulnerability in [Anthropic's] Claude Desktop Extensions (DXT) that allows a malicious Google Calendar invite to silently compromise an entire system," analysts, consultants, security leaders,…...
OpenClaw integrates VirusTotal malware scanning as security firms flag enterprise risks
23+ hour, 14+ min ago (340+ words) OpenClaw, the viral open-source AI agent that security firms warn is "insecure by default," has integrated VirusTotal's malware scanning into its ClawHub skills marketplace following weeks in which security researchers documented malicious extensions and widespread unauthorized deployments in enterprises. "As…...
Gartner-Prognose: Die sechs wichtigsten Cybersicherheits-Trends für 2026
1+ day, 1+ hour ago (469+ words) KI, geopolitische Spannungen und regulatorische Unsicherheiten z'hlen laut Gartner zu den wichtigsten Treibern f'r die Cybersicherheit. Auch im Jahr 2026 bleibt die Cybersicherheitslage angespannt. Doch was sind die wichtigsten Themen, Risiken und Chancen, mit denen sich Security-Entscheider aktuell befassen sollten? Das…...
DKnife targets network gateways in long running AitM campaign
1+ day, 5+ hour ago (446+ words) According to Cisco Talos" findings, the framework has been active since at least 2019 and remains operational as of early 2026. Rather than targeting endpoints directly, DKnife is deployed at the network edge, giving operators visibility into and control over the traffic…...
Schrödinger's cat and the enterprise security paradox
3+ day, 13+ hour ago (557+ words) Most security leaders quietly live with a paradox they rarely name out loud. Until you truly look inside the box of your environment, your organization is both secure and compromised. The dashboards might be green and the audit reports reassuring,…...
Six more vulnerabilities found in n8n automation platform
3+ day, 14+ hour ago (396+ words) Six more vulnerabilities have been discovered in the n8n workflow platform used for building LLM-powered agents to connect business processes. Four of the six are rated as critical, carrying CVSS severity scores of 9.4. Johannes Ullrich, dean of research at the SANS…...
Software developers: Prime cyber targets and a rising risk vector for CISOs
3+ day, 14+ hour ago (1441+ words) Threats against corporate software developers are increasing and diversifying, challenging security leaders to develop more agile defenses against this growing attack vector. Attackers are increasingly targeting the tools, access, and trusted channels used by software developers rather than simply exploiting…...
Zscaler extends zero-trust security to browsers with SquareX acquisition
3+ day, 23+ hour ago (510+ words) Cloud security company Zscaler has announced the acquisition of SquareX, a Singapore-based browser detection and response (BDR) technology startup. The deal will enable Zscaler to extend its Zero Trust Exchange capabilities directly into standard web browsers, across both managed and…...