Explore real-world engineering experiences from top tech companies.
Receive daily AI-curated summaries of engineering articles from top tech companies worldwide.
This article covers the discovery of five malicious Rust crates on crates.io and an AI-powered bot campaign that targeted CI/CD pipelines to steal developer secrets.
SentinelOne reports a campaign exploiting FortiGate NGFW appliances to breach networks and steal service account credentials.
This post promotes a webinar on securing AI agents against emerging attack vectors that traditional security tools cannot address.
HCP Vault Dedicated expands its regional availability with new deployment locations on AWS and Azure for secrets, encryption, and identity management.
This article covers KadNap, a new malware targeting edge devices to build a stealth proxy botnet, and ClipXDaemon, a Linux clipboard hijacker targeting cryptocurrency users.
Google Cloud's Office of the CISO releases the Cloud Threat Horizons Report highlighting a major shift in cloud attack vectors and accelerating exploitation timelines.
Tenable researchers disclosed nine cross-tenant vulnerabilities in Google Looker Studio, collectively named LeakyLooker, that could have allowed attackers to run arbitrary SQL queries on victims' databases.
This article explains how Cloudflare's Log Explorer helps security teams investigate multi-vector attacks through correlated telemetry across 14+ log datasets.
Cloudflare describes the design and engineering behind their revamped Security Overview dashboard, built to shift security teams from reactive monitoring to proactive action.
This post examines why security remains the primary obstacle to widespread AI agent deployment, featuring practical approaches using containerization and sandboxing.
This article explains how proactive attack surface reduction can help security teams avoid the chaotic scramble that follows zero-day vulnerability disclosures.
This article covers APT28 (Fancy Bear/Sednit), a Russian GRU-affiliated threat actor, using two malware implants—BEARDSHELL and COVENANT—to conduct long-term surveillance of Ukrainian military personnel since April 2024.