top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


How Attackers Weaponize Social Media At Scale with AI
This guest article was authored by Rachel Vrabec, CEO of Kanary Every CISO can tell you where their network ends. Far fewer can tell you where their organization's human attack surface begins. That gap is exactly where adversaries are operating. The most sophisticated attack campaigns targeting enterprises today don't start with a vulnerability scan or a zero-day exploit. They start with a LinkedIn search. They continue with a cross-referenced Instagram account, a data broker
Aug 12


Hackers Target Blackstone, KKR, Apollo and Wall Street Firms in Vishing Campaign
Hackers are targeting some of the biggest names in private equity and finance with a sprawling social engineering campaign that shows attackers do not need sophisticated malware when they can simply convince employees to hand over access. According to Google threat intelligence and internet infrastructure data reviewed by Reuters, attackers created at least 72 malicious websites designed to steal credentials from employees at firms including Blackstone, Apollo Global Manageme
Aug 10


Suisun City Cyberattack Disrupts 911 Systems and Forces Emergency Declaration
A malware attack knocked municipal systems offline in Suisun City, California, disrupting 911 routing, police and fire communications, and online government services while exposing the growing cyber risk facing local governments. Suisun City has declared a state of emergency after a cyberattack forced officials to shut down the Northern California municipality’s IT network, disrupting systems connected to emergency communications and other government operations. The incident
Aug 10


PleaseFix Flaws Expose Agentic Browsers to Zero-Click Data Theft and Device Takeover
Security researchers at Zenity Labs say a vulnerability class affecting some of the biggest names in agentic browsing can let attackers hijack AI agents, steal sensitive data and, in some cases, take control of a victim’s computer without requiring an intentional click. The research, presented at Black Hat USA 2026, expands on Zenity’s earlier work involving Perplexity Comet and shows what the company calls “PleaseFix” attack chains affecting Claude in Chrome, Gemini in Chrom
Aug 10


North Korean Hackers Turn Ethereum Into Malware Infrastructure in New npm Campaign
DPRK-linked threat actors are abusing Ethereum transactions as a stealthy command-and-control mechanism in a new software supply chain campaign targeting npm developers, according to research from Sonatype. Sonatype Research Labs said it discovered six npm packages carrying the same malicious loader, including three legitimate packages that appear to have been compromised and three packages created with the malware already embedded. The affected legitimate packages include @k
Aug 10


OpenAI Pauses Astra Work as AI Cybersecurity Fears Escalate
OpenAI has paused some internal work involving an unreleased AI model called Astra after preliminary testing raised the possibility that the system could autonomously carry out sophisticated cyberattacks. The disclosure adds to growing concern over the cybersecurity capabilities of frontier AI models following a series of incidents involving systems developed by OpenAI, Anthropic and Meta. OpenAI said Astra may have reached what the company classifies as a “Critical” cybersec
Aug 10
bottom of page