Cybercriminals exploit OAuth client ID spoofing to bypass cloud security
The technique involves attackers issuing POST requests to Microsoft's OAuth 2.0 token endpoint using the Resource Owner Password Credentials (ROPC) flow.
Weak Security Continues to Fuel Russian Cyberattacks
In a first, the UK and the EU jointly impose sanctions on Russian individuals and entities for cyberattacks and disinformation campaigns in the region.
Consistent security model deployment with FPR calibration
In our previous Dynamic AI Security blog and the underlying CAMLIS 2025 paper, we described a release platform built to move new protections into production without disrupting customer workflows. Such a platform is a requirement for security......
'Yellow Teams' Are Defining the Future of AI Security
In some companies, engineers are building defense and attack tools to test the potential of artificial intelligence for cybersecurity — and its threat.
GigaWiper Lets Threat Actors Choose Their Own Destructive Attack
A modular implant borrows from various malware families to combine both backdoor and wiper activities to maximize impact and minimize operational output.