top of page

Blog


Zero News | The Caller ID Shows Your Company, But It Isn't You Calling
Attackers spoofed Astrana Health's own phone number to talk employees into granting access. Here is why vishing works and how to stop it.
21 hours ago


Zero News | A Fake "I'm Not a Robot" Check Steals Every Password in Your Browser: Lunex Stealer
A fake CAPTCHA tricks users into running a command, then Lunex blinds antivirus with a vulnerable AMD driver and steals browser passwords and cookies.
21 hours ago


Zero News | AI Is Guessing Your Bank Balance: The RatHat Android Banking Trojan
RatHat uses Google's Gemini to estimate victims' bank balances from stolen SMS and target the richest ones. See how it works and how to protect your phone.
21 hours ago


Zero News | Update Your iPhone Now: Apple Zero-Day Used in Targeted Attacks (CVE-2026-86950)
Apple patched a CoreGraphics zero-day already used in targeted attacks. Here is who is affected, which versions fix it and what to do now.
3 days ago


The Credential Layer Is Expanding Faster Than Security Teams Can See It
Every modern enterprise depends on credentials. This is how humans, systems, and now AI, all connect to data, services, and each other securely. GitGuardian helps secure that credential layer through three connected capabilities: Detect, Remediate, and Prevent. The journey starts with detection, because organizations first need to understand what credentials exist, where they live, and what they can access. This is the first of three articles we are releasing that explain the
4 days ago


New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline
Citrix has released security updates for a high-severity security flaw in NetScaler ADC and Citrix NetScaler Gateway that has been exploited as part of targeted zero-day attacks. The vulnerability, tracked as CVE-2026-88779, carries a CVSS score of 8.7 out of 10.0. "CVE-2026-88779 is a memory overflow vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway that can lead to denial-of-service under specific deployment conditions," Citrix said. "The issue affects cust
4 days ago


Rapid7 InsightVM | Vulnerability Management Series Issue #04 | Can You Manage a Vulnerability from Start to Finish in Your Own Environment?
"Do we have it?" is only reliable if you know what you can see. Discover how to manage a vulnerability from visibility to verified remediation in your own environment.
Sep 29


Rapid7 InsightVM | Vulnerability Management Series Issue #03 | The Priority Is Clear. But Who Will Fix It, and By When?
The ticket is closed but the vulnerability is still there. Discover how ownership, due dates, ITSM integration and verification turn priorities into proven outcomes.
Sep 29


Rapid7 InsightVM | Vulnerability Management Series Issue #02 | Finding 10,000 Vulnerabilities Is Not Success
A long vulnerability report is not a plan. Discover how Active Risk and solution-based remediation show which action reduces the most risk, and why now.
Sep 29


Rapid7 InsightVM | Vulnerability Management Series Issue #01 | You Know the Date of Your Next Pentest. What About Your Next Critical Vulnerability?
New CVEs don't wait for your next pentest. Discover why continuous vulnerability management with Rapid7 InsightVM keeps the time between two tests under control.
Sep 29
bottom of page