Russia’s Electrum linked to December 2025 cyber attack on Polish power grid

Ravi LakshmananJanuary 28, 2026Critical Infrastructure/Threat Intelligence A “coordinated” cyber attack targeting multiple sites across Poland’s electricity grid is believed with medium confidence to be the work of a Russian state-backed hacking group known as ELECTRUM. Operational technology (OT) cybersecurity firm Dragos said in a new intelligence brief released Tuesday that the late December 2025 activity […]
The AI infrastructure boom shows no signs of slowing down.

One way to track the speed of the AI boom is by tracking the hardware supply chain. Nvidia is a prime example. As AI companies build out data centers, they’re snapping up billions of dollars in GPUs every month, turning Nvidia into the most valuable company on the planet. But Nvidia also has suppliers, and […]
Standard Nuclear raises $140 million as nuclear power enters gold rush era

With the nuclear gold rush in full swing, fueled by AI companies’ desperate need for electricity, pick and shovel sellers are also starting to cash in. By the end of 2025, nuclear startups have raised $1.1 billion, all for small modular reactors. This deal flow is now expanding to key suppliers of the nuclear industry. […]
Anthropic, Apple, OpenAI CEOs condemn ICE violence, praise Trump

In a segment on NBC News Monday night, Anthropic CEO Dario Amodei expressed concern about “some of the things we’ve seen over the last few days,” citing violence by Border Patrol agents in Minneapolis. In both his NBC and X posts, Amodei focused on the importance of defending democracy at home, specifically calling out “the […]
Snap gets serious about specs, turning AR glasses into independent company

Later this year, Snap will launch its latest consumer version of AR glasses, called Specs. In anticipation of that big event, the company launched a new subsidiary, Specs Inc., which will focus solely on further developing the glasses. Snap announced the new company on Tuesday, saying the move will allow for “greater focus and coordination” […]
Scientists say ‘dangerous’ lithium-ion batteries will be out of use for days after breakthrough in fast-charging sodium-ion replacement

A newly developed sodium-ion (Na-ion) battery has the potential to charge much faster, have higher energy density and be safer than traditional lithium-ion (Li-ion) batteries, scientists say. Researchers at Tokyo University of Science have used a new carbon-based electrolyte to improve the energy density and charging speed of sodium ions using sodium-ion batteries, an alternative […]
Two high-severity flaws in n8n allow authenticated remote code execution

Ravi LakshmananJanuary 28, 2026Vulnerability/Workflow Automation Cybersecurity researchers have uncovered two new security flaws in the n8n workflow automation platform, including a critical vulnerability that could allow remote code execution. The vulnerabilities discovered by the JFrog Security Research team are as follows: CVE-2026-1470 (CVSS Score: 9.9) – eval injection vulnerability that allows an authenticated user to […]
From triage to threat hunting: how AI accelerates SecOps

If you work in security operations, you’ll be familiar with the concept of an AI SOC agent. Early stories promised complete autonomy. Vendors have seized on the idea of “autonomous SOCs” and proposed a future where algorithms replace analysts. That future has not yet arrived. We have never seen mass layoffs or empty security operations […]
Critical flaw in vm2 Node.js allows sandbox escape and arbitrary code execution

Ravi LakshmananJanuary 28, 2026Vulnerabilities / Open Source A critical sandbox escape vulnerability has been disclosed in the popular vm2 Node.js library. A successful exploit could allow the attacker to execute arbitrary code on the underlying operating system. This vulnerability is tracked as CVE-2026-22709 and has a CVSS score of 9.8 out of 10.0 in the […]
Mustang Panda Deploys Latest COOLCLIENT Backdoor to Government Cyberattacks

In the 2025 cyber espionage attack, Chinese-linked threat actors were observed using the latest version of a backdoor called COOLCLIENT to facilitate comprehensive data theft from infected endpoints. The activity was attributed to Mustang Panda (also known as Earth Preta, Fireant, HoneyMyte, Polaris, and Twill Typhoon), and the intrusions were primarily targeted at government agencies […]