Vulnerability
-
Critical flaws allow hackers to exploit zero-touch provisioning process in TP-Link Omada
Attacks can cause widespread damage to trusted devices and data.
By David Jones • Aug. 7, 2026 -
Hackers grow more willing to destroy, not just disrupt, OT systems
Experts said the alarming trend has further stressed infrastructure providers that are already struggling with strong passwords, comprehensive logging and other basics.
By Eric Geller • Aug. 6, 2026 -
Explore the Trendline➔
Getty Images
TrendlineVulnerability Management
The rapid advancement Ai has changed the debate over secure software in the entrprise.
By Cybersecurity Dive staff -
Microsoft launches agentic security platform designed to combat AI-based attacks
The rollout comes amid growing concerns about the ability of hackers to launch campaigns using autonomous methods.
By David Jones • July 28, 2026 -
Coca-Cola restores most production capacity at dairy unit after ransomware attack
The company said it does not expect the Fairlife disruption to have a material impact on financial performance or operations.
By David Jones • July 27, 2026 -
Zero-day flaw in Check Point SmartConsole is under exploitation
Researchers warned the vulnerability offers an attacker the ability to make key changes to security configurations.
By David Jones • July 24, 2026 -
The most vulnerable AI products are also some of the most commonly exposed online
It is becoming increasingly easy for hackers to target vulnerable AI tools on companies’ networks, even as those companies come to depend on them for more tasks.
By Eric Geller • July 24, 2026 -
Russia-backed threat actor targets Western organizations in phishing campaign
The threat actor exploited a zero-day flaw in Zimbra to exfiltrate months of emails and other sensitive information.
By David Jones • July 23, 2026 -
Microsoft SharePoint under attack via new exploit
Security researchers warn the potential risk could rival the widespread ToolShell campaign of 2025.
By David Jones • Updated July 23, 2026 -
Researchers trace SonicWall SMA1000 exploitation to late June
Multiple threat actors, including INC ransomware, have targeted vulnerable firewall systems.
By David Jones • July 20, 2026 -
CISA warns that multiple vulnerabilities in SharePoint are under exploitation
Security researchers say additional flaws are being chained together and a patch will not be available until August.
By David Jones • July 15, 2026 -
US authorities warn that state-linked hackers are targeting vulnerable networking devices
Hackers linked to Russian intelligence have exploited vulnerabilities in Cisco Smart Install devices.
By David Jones • July 13, 2026 -
Sponsored by HERE Enterprise Browser
Copy-paste might be the riskiest thing your enterprise employees do all day
This source of data leakage takes them less than a second and happens hundreds of times a day.
By Mazy Dar • July 13, 2026 -
Citrix via Flickr
Initial access broker linked to weaponization of CitrixBleed2 flaw
A similar pattern of exploitation was seen in prior attacks involving an open-source machine emulator.
By David Jones • July 10, 2026 -
Deep Dive
Sophisticated threat campaign pushes Cisco to the very edge
A monthslong exploitation wave against Cisco SD-WAN systems raises larger questions about trust and the insecurity of network infrastructure.
By David Jones • July 7, 2026 -
FortiBleed campaign traced to INC and Lynx ransomware operations
Researchers are also investigating the role of a suspected zero-day vulnerability.
By David Jones • July 2, 2026 -
Critical flaw in Oracle E-Business Suite is under immediate threat
Researchers warn that successful exploitation of the vulnerability could allow an attacker to compromise Oracle Payments.
By David Jones • July 1, 2026 -
Critical flaw in SimpleHelp exploited in attacks targeting sensitive credentials
Researchers found two previously undisclosed malware samples used to steal AI assistant tokens and other valuable secrets.
By David Jones • June 30, 2026 -
Retrieved from iStock.
Insurance body confirms hackers posted Oracle PeopleSoft breach data
NAIC warned that some ratings agencies have suspended data feeds as a precaution.
By David Jones • Updated June 29, 2026 -
Software, AI companies form alliance to tackle open-source security flaws
The emergence of frontier AI models has increased the speed and capabilities of malicious hackers.
By David Jones • June 26, 2026 -
Sponsored by SHI
3 ways AI is transforming security operations - and where it delivers real impact
Security operations (SecOps) teams have long been exhorted to “work smarter, not harder,” but they need the right tools and processes to actually achieve that aim.
June 22, 2026 -
Critical vulnerabilities in Fortinet FortiSandbox are under exploitation
An OS command-injection flaw was disclosed earlier this month, according to researchers.
By David Jones • June 16, 2026 -
China-nexus group linked to multiyear campaign targeting US, Canadian medical research
A report from Google links a sophisticated espionage effort targeting information about viruses, AI and military information.
By David Jones • June 15, 2026 -
ShinyHunters linked to exploitation of critical flaw in Oracle PeopleSoft
More than 100 organizations, about two-thirds in higher education, have been notified of potential impact.
By David Jones • Updated June 12, 2026 -
CISA, researchers warn of escalating attacks using Cisco Catalyst SD-WAN flaws
Multiple vulnerabilities are being chained together to gain additional access to systems.
By David Jones • June 10, 2026 -
Check Point warns of zero-day flaw targeted by ransomware affiliate
A vulnerability in the company’s VPN deployments has faced exploitation since early May.
By David Jones • June 9, 2026