Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Microsoft Security Change for Azure VMs Creates Pitfalls

Firms using Azure infrastructure gained a reprieve from a security-focused switch that could have broken apps that relied on public Internet access.

DARKReading
#microsoft
Botnets Step Up Cloud Attacks Via Flaws, Misconfigurations

Infamous botnets like Mirai are exploiting Web-exposed assets such as PHP servers, IoT devices, and cloud gateways to gain control over systems and build strength.

From Power Users to Protective Stewards: How to Tune Security Training for Specialized Employees

The best security training programs build strong security culture by focusing on high-risk groups, including developers, executives, and finance pros.

Cybersecurity Firms See Surge in AI-Powered Attacks Across Africa

Africa becomes a proving ground for AI-driven phishing, deepfakes, and impersonation, with attackers testing techniques against governments and enterprises.

AI-Generated Code Poses Security, Bloat Challenges

Development teams that fail to create processes around AI-generated code face more technical and security debt as vulnerabilities get replicated.

Inside the Data on Insider Threats: What 1,000 Real Cases Reveal About Hidden Risk

Security analyst Michael Robinson spent 14 months mining thousands of legal filings to uncover who malicious insiders really are, how they operate, and why traditional detection models keep missing them.

From Chef to CISO: An Empathy-First Approach to Cybersecurity Leadership

Myke Lyons, CISO at data-processing SaaS company Cribl, shares how he cooked up an unconventional journey from culinary school to cybersecurity leadership.

The AI Trust Paradox: Why Security Teams Fear Automated Remediation

Security teams invest in AI for automated remediation but hesitate to trust it fully due to fears of unintended consequences and lack of transparency.

YouTube Ghost Network Utilizes Spooky Tactics to Target Users

The malware operation uses compromised accounts and bot networks to distribute infostealers and has tripled its output in 2025.

Oracle EBS Attack Victims May Be More Numerous Than Expected

Numerous organizations have been attacked via Oracle EBS zero-day CVE-2025-61882, and evidence suggests more like Schneider Electric could be on that list.