Identity was the primary target in approximately 50% of all confirmed malicious activity investigated between May and July 2026.
The US Cybersecurity and Infrastructure Security Agency (CISA) has revised its insider threat guide to include new mitigation advice for hybrid work environments and AI-driven risks.
The US Cybersecurity and Infrastructure Security Agency (CISA) has warned that threat actors are actively exploiting a critical authentication bypass flaw in NetScaler appliances.
A new security flaw called "workflow identity hijacking" allows unauthenticated users to trigger privileged AI workflows and access sensitive enterprise systems.
Anthropic has revealed a fourth instance of a Claude AI model acting autonomously to access real-world systems, including harvesting credentials and reading personal information.