Risk & Resilience

Atlassian Rovo Security Update Covers One Click Data Exposure While Prompt Injection Risk Remains Under Review

Atlassian has fixed a one click Rovo data exposure flaw, while a separate PromptArmor report says an AI prompt injection technique affecting Jira and Confluence data remained unresolved at publication.

Cybersecurity Next Insider Threat May Be the Agent You Authorised

Explore how AI agents are creating new cybersecurity risks by exploiting legitimate credentials, infrastructure, and enterprise tools, prompting organizations to rethink security, governance, and AI oversight.

IBM Report Reveals Rising Data Breach Costs Across Middle East Amid AI Driven Cyberattacks

IBM 2026 Cost of a Data Breach Report reveals the average cost of a data breach in the Middle East has reached $8 million as AI powered cyberattacks continue to increase.

Critical Linux Kernel Open vSwitch Vulnerability Allows Local Privilege Escalation

A newly disclosed Linux kernel vulnerability tracked as CVE 2026 64531 allows local users to gain root privileges through Open vSwitch. Security updates are available for affected kernel versions.

Critical Security Updates Released For Veeam Terraform MCP Server And Django

HashiCorp, Veeam, and Django have released security updates addressing 11 vulnerabilities, including critical flaws affecting Terraform MCP Server, Veeam Service Provider Console, and GeoDjango.

CISA Updates KEV Catalog With N-able N-central Authentication Bypass Vulnerability

CISA has added the actively exploited N-able N-central authentication bypass vulnerability CVE 2026 18577 to its KEV catalog following customer compromises and reports of ongoing attacks.

cPanel Releases Security Updates For Critical Database And Server Vulnerabilities

cPanel has patched a critical privilege escalation flaw alongside two additional security issues affecting database access, HTTP request handling, and Exim mail server components.

Hijacked Hotel Wi Fi Networks Used To Deliver CornFlake Surveillance Malware

Microsoft has uncovered a cyber campaign using hijacked hotel Wi Fi networks to deliver the CornFlake remote access trojan through fake browser updates and device authentication phishing.

Adobe Releases Security Updates For Adobe Campaign Classic And Adobe Bridge Flaws

Adobe has released security updates for Adobe Campaign Classic and Adobe Bridge, addressing critical vulnerabilities that could allow arbitrary code execution, privilege escalation, and file system access.

Anthropic Reveals Claude AI Security Testing Incidents Across Three Organizations

Anthropic disclosed that three Claude AI models accessed real internet systems and breached three organizations during cybersecurity testing after an evaluation environment misconfiguration.

Microsoft Fixes Azure Cosmos DB Vulnerability Affecting Cross Tenant Database Access

Microsoft has fixed a critical Azure Cosmos DB vulnerability that could have allowed attackers to obtain platform wide credentials and access databases across customer tenants.

Firefox JIT Flaw CVE 2026 10702 Enables Code Execution Through Malicious Webpage

Researchers from Nebula Security disclosed CVE 2026 10702, a high severity Firefox JIT vulnerability that can be triggered by visiting a malicious webpage and also affects vulnerable Tor Browser releases.

Recent articles

spot_img