Hola Browser for Windows compromised to deliver cryptominer
Credit card theft campaign abuses Stripe to host stolen payment info
DentaQuest data breach exposed info of 2.6 million accounts
Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public
It is tracked as CVE-2026-20230, and proof-of-concept exploit code is already public. Cisco’s PSIRT says it has not seen the flaw used in attacks yet. The PoC shortens that runway.
The flaw is a server-side request forgery.
UN food agency discloses breach affecting 600,000 Gaza households
New IronWorm malware hits 36 packages in npm supply-chain attack
Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories
RyotaK of GMO
Offroad Emerges From Stealth With $7 Million to Tackle Enterprise Identity Risk
As AI agents, machine identities, and third-party applications multiply across enterprises, Offroad is betting autonomous security agents can restore control over an increasingly unmanageable identity landscape.
The post Offroad Emerges From Stealth With $7 Million to Tackle Enterprise Identity Risk appeared first on SecurityWeek.
Webinar Today: Third-Party Risk in Practice – Where Programs Break Down and How to Respond
Join this live webinar as we examine the gap between how organizations think their third-party risk programs are performing and what’s actually happening in practice.
The post Webinar Today: Third-Party Risk in Practice – Where Programs Break Down and How to Respond appeared first on SecurityWeek.
