A new handbook for the zero window era

When patching isn’t fast enough, NDR helps contain the next generation of threats. If you’ve been following advances in AI, you know that the exploit window, the short buffer that organizations relied on to patch and protect vulnerabilities after they were made public, is rapidly closing. Anthropic’s new model, Claude Mythos and his project Glasswing, […]
Chinese Silk Typhoon hacker extradited to US for coronavirus research cyber attack

Ravi LakshmananApril 28, 2026Cyber espionage/vulnerabilities A Chinese national accused of being a member of the Silk Typhoon hacking group has been extradited from Italy to the United States. Xu Zewei, 34, was arrested by Italian authorities in July 2025 on suspicion of ties to a Chinese state-backed threat group and for orchestrating cyberattacks against U.S. […]
Microsoft patches Entra ID role flaw that allowed service principal takeover

Ravi LakshmananApril 28, 2026Vulnerability/Identity Management Administrative roles for artificial intelligence (AI) agents within Microsoft Entra ID could potentially enable privilege escalation and identity takeover attacks, according to new findings from Silverfort. Agent Identity Administrator is a privileged built-in role introduced by Microsoft as part of the Agent Identity Platform to handle all aspects of identity […]
Microsoft confirms active exploitation of Windows Shell CVE-2026-32202

Ravi LakshmananApril 28, 2026Vulnerability/Threat Intelligence Microsoft on Monday revised its advisory for a currently patched high-severity security flaw affecting Windows Shell, acknowledging that the vulnerability is indeed being actively exploited. The vulnerability in question is CVE-2026-32202 (CVSS score: 4.3), a spoofing vulnerability that could allow attackers to access sensitive information. This issue was addressed as […]
Checkmarx confirms GitHub repository data posted to dark web after March 23rd attack

Ravi LakshmananApril 27, 2026 Checkmarx has revealed that an ongoing investigation related to a supply chain security incident has revealed that a cybercriminal group had published data related to the company on the dark web. “Based on current evidence, we believe this data comes from Checkmarx’s GitHub repository and that access to that repository was […]
Fast16 Malware, XChat Launch, Federal Backdoor, AI Employee Tracking & More

Ravie LakshmananApr 27, 2026Cybersecurity / Hacking Everything is dumb again. This week feels broken in a very familiar way. Old tricks are back. New tools are doing shady crap. Supply chains got hit. Fake help desks worked. Weird research showed how easy some attacks still are. Most of it feels like stuff we should have […]
Myths have changed the calculus of vulnerability discovery. Most teams are not ready on the repair side.

Anthropic’s Claude Mythos Preview has dominated security discussions since its April 7th announcement. Initial reports describe powerful AI systems focused on cybersecurity that can identify vulnerabilities at scale and raise serious questions about how quickly organizations can verify, prioritize, and remediate discovered vulnerabilities. Subsequent discussions have largely focused on the pertinent question of whether this […]
PhantomCore exploits TrueConf vulnerability to infiltrate Russian networks

A pro-Ukrainian hacktivist group called PhantomCore is said to have actively targeted servers running TrueConf video conferencing software in Russia since September 2025. This is according to a report published by Positive Technologies, which found that attackers were able to leverage an exploit chain of three vulnerabilities to remotely execute commands on susceptible servers. “Despite […]
Researchers discover 73 fake VS Code extensions delivering GlassWorm v2 malware

Ravi LakshmananApril 27, 2026Malware/Software Supply Chain Cybersecurity researchers have reported that dozens of Microsoft Visual Studio Code (VS Code) extensions on the Open VSX repository have been linked to a persistent information theft campaign called GlassWorm. A cluster of 73 extensions has been confirmed to be cloned versions of legitimate extensions. Six of these are […]
Fake CAPTCHA IRSF scam and 120 Keitaro campaign triggers global SMS, crypto fraud

Cybersecurity researchers have revealed details of a telecom fraud campaign that uses fake CAPTCHA verification tricks to trick unsuspecting users into sending international text messages, charging them to their cell phone bills and generating illegal revenue for attackers who lease phone numbers. The operation is believed to have been active since at least June 2020, […]