Search

The Leak Site Got Breached: What ShinyHunters’ Takeover of Clop Means for the Companies Listed on It

ShinyHunters says it breached Clop's ransomware leak site and holds the keys to its Tor onion service. Here's what that…

Your Identity Programme Was Built for People. Non-Human Identity Is Now the Leading Way In.

New research shows compromised non-human identity now drives more breaches than phishing. See why service accounts, API keys, and AI…

The Phishing Came From Your Real Domain: What a Marketing Platform Breach Does to Brand Trust

An attacker breached a marketing platform and sent phishing emails from a hardware wallet maker's genuine domain to 347,000 subscribers.…

Passwordless Is Not Takeover Proof: Where Passkey Attacks Actually Land

Passkey attacks published this year do not break the cryptography. They target the sync fabric, the recovery path, and the…

Your Security Vendors Are Your Highest-Privilege Third Parties, and Your TPRM Program Scores Them Low

Security vendors sit at the top of the privilege ladder, yet TPRM programs consistently score them low because certification substitution…

Agentic Ransomware: What Happens When Malware Doesn’t Need a Human Operator to Decide Who to Hit Next?

A documented ransomware operation completed reconnaissance, credential theft, lateral movement, and encryption with no human operator at any stage. This…

When Abandoned Digital Assets Become Someone Else’s Infrastructure

A 25-year-old wiki sat forgotten for years, then quietly became AI agent infrastructure: 18,000 posts in 52 days, unnoticed. Abandoned…

No Vulnerability Was Exploited: Inside the SaaS Extortion Wave That Breaks In Through Consent, Not Code

OAuth consent phishing let a single extortion group breach 1,000+ organizations without exploiting a CVE. See how attackers weaponize legitimate…

Continuous Monitoring vs. Annual Audit: Why the TPRM Calendar Is Broken

Annual vendor audits produce a snapshot; vendor risk is a movie. See why the 364 days between formal assessments is…