The intelligence feedUpdated as material events develop
Analysis / Research / Guidance
The Briefing
Independent reporting on AI security, exploited vulnerabilities, and enterprise cyber risk. Built to help defenders understand what changed and what deserves action.
Session revocation after password reset is the containment step many response plans miss. ANSSI's new French tax breach report shows how a valid session survived a password change while attackers continued extracting sensitive data.
Apple patched CVE-2026-86950 after a report of a sophisticated targeted attack against older iOS versions. This response plan helps teams map older Apple operating systems, apply the fixed releases, and verify the update result for devices used by higher-risk staff.
The Times Car data breach exposed about 6.6 million current, former, and incomplete applicant accounts, including driver license and identity-document information. Here is what affected drivers should do now and what mobility services must learn about retaining identity data.
The DICT data breach investigation covers 48 accredited trust assessment providers and roughly 410 potentially exposed files, including cybersecurity credentials and employment records. This response guide explains how assessors can verify exposure, rotate secrets, preserve evidence, meet notification duties, and protect client trust.
The Kiteworks shutdown warning shows how to respond when a critical file-transfer platform may face an imminent zero-day attack. Use this practical plan to reduce exposure, preserve evidence, manage downtime, and restart safely.
Conversation history poisoning lets attackers plant fabricated approvals and prior actions in local AI agent state. New Darktrace research shows why teams must authenticate stored context, restrict tool authority, and monitor execution.
Tor critical vulnerabilities in version 0.4.9.13 affect relays, clients, and onion services, including memory safety and stream isolation flaws. Learn how to identify exposed components, upgrade safely, verify the deployed version, and monitor for anonymity or availability impact.
A new Honeywell benchmark finds only 21% of industrial security leaders report a complete OT asset inventory, even as 88% call their programs mature. Learn how to close visibility gaps before AI-driven defenses act on incomplete data.
Check Point disclosed active exploitation of CVE-2026-93616 on September 22, 2026, exposing security management and log servers to unauthenticated script execution. Learn how to identify affected systems, restrict port 19009, patch safely, hunt for compromise, and recover the management plane.