Explore real-world engineering experiences from top tech companies.
Receive daily AI-curated summaries of engineering articles from top tech companies worldwide.
Cybersecurity company Trellix announced a data breach involving unauthorized access to a portion of its source code repository.
Vietnamese-linked threat actors conducted a large-scale phishing campaign targeting Facebook Business account owners, compromising approximately 30,000 accounts through a multi-cluster attack strategy known as AccountDumpling.
Meta strengthens end-to-end encrypted backups through improvements to its HSM-based Backup Key Vault system.
Two cybercrime groups, Cordial Spider and Snarky Spider, are conducting rapid, high-impact extortion attacks targeting SaaS environments.
Chinese-aligned threat actors conducted coordinated campaigns targeting governments, journalists, and activists across Asia and Europe.
The U.S.
A supply chain attack campaign uses malicious Ruby gems and Go modules to steal credentials and compromise CI/build environments.
PyTorch Lightning, a popular Python framework with over 31,100 GitHub stars, was compromised in a supply chain attack with two malicious versions (2.6.2 and 2.6.3) deployed to conduct credential theft.
SPIFFE is an open identity framework designed to secure non-human actors and AI agents by providing verifiable, automatically rotated cryptographic identities.
Google Cloud proposes multi-AI and multi-cloud security strategies to protect enterprises in the agentic era.
Cloudflare IPsec now supports post-quantum encryption using hybrid ML-KEM (FIPS 203) to protect against harvest-now-decrypt-later attacks.
Multiple security incidents reported including SMS phishing, supply chain attacks, and exposed remote access infrastructure.