top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


ShieldBreak Windows Zero-Day Bypasses Microsoft’s RoguePlanet Patch
A newly disclosed Windows zero-day is raising fresh questions about Microsoft Defender after Cyderes researchers found that the exploit can bypass a security fix Microsoft released just last month. Dubbed ShieldBreak, the vulnerability allows a standard Windows user to escalate privileges to NT AUTHORITY\SYSTEM, effectively gaining the highest level of local access without exploiting the Windows kernel, corrupting memory, or requiring administrator rights. Cyderes researchers
14 minutes ago


AI Is Reshaping Cybersecurity: Why Data, Governance and Exposure Management Matter
As artificial intelligence reshapes cybersecurity, security teams are confronting a new challenge: moving at machine speed without sacrificing accuracy, visibility, or control. In this interview, Nick Lantuh, President of Interpres Group within CyberProof, discusses how AI is changing the threat landscape, security operations, and enterprise risk. He also explains why strong data foundations, agent governance, and proactive exposure management will be critical as both attacke
23 minutes ago


How Attackers Weaponize Social Media At Scale with AI
This guest article was authored by Rachel Vrabec, CEO of Kanary Every CISO can tell you where their network ends. Far fewer can tell you where their organization's human attack surface begins. That gap is exactly where adversaries are operating. The most sophisticated attack campaigns targeting enterprises today don't start with a vulnerability scan or a zero-day exploit. They start with a LinkedIn search. They continue with a cross-referenced Instagram account, a data broker
50 minutes ago


Hackers Target Blackstone, KKR, Apollo and Wall Street Firms in Vishing Campaign
Hackers are targeting some of the biggest names in private equity and finance with a sprawling social engineering campaign that shows attackers do not need sophisticated malware when they can simply convince employees to hand over access. According to Google threat intelligence and internet infrastructure data reviewed by Reuters, attackers created at least 72 malicious websites designed to steal credentials from employees at firms including Blackstone, Apollo Global Manageme
2 days ago


Suisun City Cyberattack Disrupts 911 Systems and Forces Emergency Declaration
A malware attack knocked municipal systems offline in Suisun City, California, disrupting 911 routing, police and fire communications, and online government services while exposing the growing cyber risk facing local governments. Suisun City has declared a state of emergency after a cyberattack forced officials to shut down the Northern California municipality’s IT network, disrupting systems connected to emergency communications and other government operations. The incident
2 days ago


PleaseFix Flaws Expose Agentic Browsers to Zero-Click Data Theft and Device Takeover
Security researchers at Zenity Labs say a vulnerability class affecting some of the biggest names in agentic browsing can let attackers hijack AI agents, steal sensitive data and, in some cases, take control of a victim’s computer without requiring an intentional click. The research, presented at Black Hat USA 2026, expands on Zenity’s earlier work involving Perplexity Comet and shows what the company calls “PleaseFix” attack chains affecting Claude in Chrome, Gemini in Chrom
2 days ago
bottom of page