Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Alert: AI is Accelerating Targeted Social Engineering Attacks

AI tools are drastically improving the speed of the reconnaissance stage of targeted social engineering attacks, according to researchers at ESET. Attackers can use these tools to trawl the internet for publicly available information about potential victims, and incorporate this information into personalized spear phishing attacks.

Research - From Square Root to /root: Escalating Privileges in Azure Containers with Python in Excel

Isolation is not the same thing as security. Ron Ben Yizhak from SafeBreach Labs presented this research at Black Hat USA and DEF CON: when Microsoft shipped Python in Excel, the code didn't run on a machine. It ran in an isolated container in Azure. So he asked the obvious question. How isolated is it, really? An isolated environment still has an attack surface. It just moves. See how Ron: If your teams are evaluating cloud-executed code features, this one is worth the full read—the methodology matters as much as the findings.

Tanium Scan Engine 7.0, "Better, Faster, Stronger": Tanium Tech Talks #170

Vulnerability and compliance scans just got faster with Tanium's new scan engine. Today we're digging into Tanium Scan Engine 7.0, a rebuild of Comply scanning that moves enumeration onto Tanium Index instead of scanning live every time. The result: faster scans, lower resource usage, and one less dependency to worry about (goodbye, JRE!!).

From CVE Disclosure to Internet-Wide Exposure: How Bitsight Uses AI to Accelerate Product Fingerprinting

When a new CVE drops, getting notified is the easy part. The real challenge comes right after. Depending on how your organization is set up, different teams have to scramble to figure out if you're actually using the affected product, which specific versions are exposed, whether it's lurking anywhere in your subsidiaries or vendor ecosystem, and how urgently you need to patch it.

Cryptography is negotiated, not configured: Why PQC readiness needs network data

Post-quantum cryptography (PQC), and the many ways it intersects with IT and cybersecurity, is becoming increasingly important to organizations of every size. While it seemed like an esoteric concept a few years ago, relegated to cryptographers' conference talks, it’s now something that comes up in many of our customer conversations.

Corelight Sensor v29.2: Visibility into multi-stage intrusions, Shadow AI governance, and self-managing sensors

With Corelight Sensor v29.2, generally available September 16, 2026, your team gains the ability to behaviorally detect and disrupt multi-stage intrusions, govern AI usage across your network without decryption, and deploy sensors in minutes instead of hours. This post covers what’s new and how it accelerates your security operations.

Close the Discovery Gaps in Your CTEM Program with Seemplicity

CTEM Discovery is about more than finding assets. It’s about understanding what exists, what’s actually being scanned, and how data from different tools connects. Seemplicity correlates security, inventory, identity, and ownership data across sources to create a unified view of each asset, expose coverage gaps, and give security teams the context they need to prioritize, validate, and remediate exposures effectively.

How Memes Can Make Your Digital Marketing More Engaging

Digital marketing is crowded. Every day, people scroll past advertisements, promotional offers, product announcements, and carefully polished brand messages. Getting someone to stop for even a few seconds has become a challenge. That is why brands are increasingly looking for content that feels less like advertising and more like something people would naturally want to see and share.