May 8, 2026 | Podcast
https://www.kaspersky.com/blog/passwords-hacking-research-2026/55743 New research from Kaspersky, released on World Password Day 2026, delivers a wake-up call for organisations still relying on MD5 hashing to protect user credentials. Analyzing a dataset of more than...
May 7, 2026 | Podcast
https://www.cifas.org.uk/workplace-fraud-trends-2025 A alarming report from UK fraud prevention organisation Cifas has revealed that 13 percent of employees either have sold company login credentials in the past year or know someone who has, and an equally troubling...
May 6, 2026 | Podcast
https://www.zscaler.com/blogs/security-research/malicious-openclaw-skill-distributes-remcos-rat-and-ghostloader Zscaler ThreatLabz researchers have uncovered a campaign in which threat actors weaponised the OpenClaw open-source AI agent framework to distribute both...
May 5, 2026 | Podcast
https://www.cyber.gov.au/about-us/view-all-content/alerts-and-advisories/clickfix-distributing-vidar-stealer-via-wordpress-targeting-australian-infrastructure Australia’s cybersecurity authorities have issued an official warning regarding an active and...
May 4, 2026 | Podcast
https://securelist.com/amazon-ses-phishing-and-bec-attacks/119623 Security researchers have uncovered a new phishing campaign exploiting Amazon Simple Email Service (SES), Amazon’s legitimate cloud-based email platform, to send malicious emails that bypass...
May 1, 2026 | Podcast
https://www.manifold.security/blog/clawhub-clawswarm-agent-crypto-recruitment Head of Research, Ax Sharma, at Manifold Security have uncovered a sophisticated new threat campaign leveraging two related malware frameworks — dubbed “ClawHub” and...
Apr 30, 2026 | Podcast
https://www.knowbe4.com/press/knowbe4-research-finds-86-of-phishing-attacks-are-ai-driven New research from cybersecurity awareness training firm KnowBe4 has uncovered a striking and alarming trend in the phishing threat landscape: a staggering 86% of phishing attacks...
Apr 29, 2026 | Podcast
A CVSS 10.0 in Gemini CLI: How Agentic Workflows Are Reshaping Supply Chain Risk Google has patched a critical, maximum-severity vulnerability in its Gemini CLI tool — the @google/gemini-cli npm package and the google-github-actions/run-gemini-cli GitHub Actions...
Apr 28, 2026 | Podcast
https://www.rapid7.com/blog/post/etr-cve-2026-41940-cpanel-whm-authentication-bypass On April 28, 2026, cPanel issued an emergency security update addressing CVE-2026-41940, a critical authentication bypass vulnerability affecting cPanel & WHM and WP Squared...
Apr 27, 2026 | Podcast
https://xint.io/blog/copy-fail-linux-distributions A newly discovered Linux vulnerability, dubbed “copy_file_range” or “CopyFail,” is sending shockwaves through the cybersecurity community after researchers found it can be exploited to grant...