IBM and AT&T Accused of Covering Up Foreign Hacks

What happened IBM and AT&T were accused in a whistleblower lawsuit of concealing repeated breaches by foreign hackers and failing to disclose those intrusions to the U.S. government. The complaint was filed ...

GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension

What happened GitHub has confirmed that a breach of its internal repositories resulted from a compromised employee device infected through a trojanized version of the Nx Console VS Code extension. The extension, ...
Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore

Five Years of US Privacy Breach Data Tell a Story Security Leaders Cannot Ignore

In April 2026 alone, the ShinyHunters extortion group breached ADT (5.5 million customers), Amtrak (2.1 million confirmed records), and McGraw-Hill (13.5 million student and educator accounts). All three attacks followed the same ...
19 Billion Passwords Are Circulating. The Number Isn't the Story

19 Billion Passwords Are Circulating. The Number Isn’t the Story

Every headline put the 19 billion figure in 60-point type. Almost none of them mentioned that the unique entry rate is in the single digits. Here is what the number actually means, ...

19 Billion Passwords Are Circulating. The Number Isn’t the Story

Every headline put the 19 billion figure in 60-point type. Almost none of them mentioned that the unique entry rate is in the single digits ...
Table with details of the timeline of the Canvas breach

Canvas breach: An Identity Security action plan for education

If you work in education IT security, the news about Canvas hit differently. Instructure, the company behind the learning management system used by more than 8,000 universities and schools, suffered a major ...
Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.

Mean Time to Exploit Has Gone Negative. Security Strategy Has to Change.

Mandiant's M-Trends 2026 report puts estimated mean time to exploit at negative seven days. That number should reset how security leaders think about vulnerability management. It means exploitation is now routinely occurring ...
How to Choose the Right Cybersecurity Vendor: An Enterprise Buyer's No-BS Guide (2026)

How to Choose the Right Cybersecurity Vendor: An Enterprise Buyer’s No-BS Guide (2026)

Most enterprises select cybersecurity vendors using broken signals: checkbox compliance, paid analyst reports, and feature demos. This guide reveals the framework that works - evaluating founder DNA, technical depth, and verified security ...

How to Choose the Right Cybersecurity Vendor: An Enterprise Buyer’s No-BS Guide (2026)

Most enterprises select cybersecurity vendors using broken signals: checkbox compliance, paid analyst reports, and feature demos ...