darkreading Public RSS feed
- Mission-Driven Security: Inside a Global Bank’s Defenseby Kristina Beek on August 14, 2026 at 7:24 pm
In this video interview, Standard Chartered’s group CISO shares insights on transitioning from technical roles to strategic leadership, the importance of business-savvy security executives, and how AI is reshaping both defensive capabilities and adversarial tactics in banking.
- Amid AI-Driven Bug-Hunt Tsunami, NIST Looks to … AIby Robert Lemos on August 14, 2026 at 5:32 pm
Driven by AI-augmented research and scanning, vulnerability volumes continue to surge, driving the National Institute of Standards and Technology to ask whether AI could be the answer.
- Scottish Govt Suffers Potentially Widening Data Breach at Prosecutor’s Officeby Nate Nelson on August 14, 2026 at 3:58 pm
One Caledonian government agency reported a breach, thanks to a third party that may have serviced other agencies as well.
- What Boards Need to Know About Tech Riskby Chris Drumgoole on August 14, 2026 at 2:00 pm
Why do so many boards underestimate technology risk until it becomes a crisis?
- Cyera’s Oasis Security Buy Is All About AI Agent Controlby Jeffrey Schwartz on August 14, 2026 at 12:17 pm
The $1 billion deal aims to converge data security and identity into a single control plane for agents, with privileged access redefined around business context rather than static roles.
- Global Threat Campaign Hits Critical VMware vCenter Flawby Rob Wright on August 13, 2026 at 8:45 pm
Exploitation against CVE-2026–59310 began earlier this month, and patching the vulnerability may not be enough to fully mitigate the threat.
- ‘Jewelbug’ APT Balances State Espionage & Cryptocurrency Theftby Nate Nelson on August 13, 2026 at 10:00 am
Researchers discovered hackers-for-hire performing cyber espionage and financially motivated heists from the same Web panel.
- Belgium’s eID Authentication Opens Citizen Accounts to RCEby Nate Nelson on August 13, 2026 at 7:00 am
The trust framework underlying Belgium’s electronic ID system was fully compromised by severe vulnerabilities in a key browser extension, showcasing bigger problems with extensions in general.
- Long-running Data Theft Campaign Targeting Salesforce, ServiceNowby Jai Vijayan on August 12, 2026 at 9:08 pm
The “City-Forum” campaign has been active since at least March 2025 and has targeted organizations across multiple sectors with custom tooling.
- Walmart Takes a ‘Trusted Agent’ Approach to Purple Teamingby Richard Thurston on August 12, 2026 at 4:28 pm
Walmart colocates red and blue teams to build trust and improve security through collaborative purple teaming exercises
- Ransomware Hits Colombian Justice Ministry Days Before Presidential Transitionby Robert Lemos on August 12, 2026 at 2:00 pm
Attackers continue to target critical infrastructure and government-linked organizations in the country, mirroring the increased activity across Latin America.
- Walmart Leaders Transform Security Operations Without Going Bananasby Richard Thurston on August 12, 2026 at 12:41 pm
The big-box giant has scaled its defenses by encouraging trust and innovation. Good communications, transparency, and team spirit are key factors.
- Microsoft’s Patch Tuesday Deluge Continues With August Updatesby Jai Vijayan on August 11, 2026 at 9:42 pm
The most concerning bug in the batch is CVE-2026-62878 (CVSS: 9.8), a remote code execution (RCE) vulnerability in Windows DNS Server that requires no user interaction.
- Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFAby Rob Wright on August 11, 2026 at 9:16 pm
The ransomware-as-a-service operation is finding success against critical infrastructure targets with leaked Conti code and old flaws in firewalls and VPN appliances.
- ‘GhostJacking’ Exposes Identity Governance Gaps in AI Agentsby Jai Vijayan on August 10, 2026 at 9:54 pm
New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents.





_pichetw_Alamy.jpg?width=720&quality=80&disable=upscale)













