Vendors' News

Vendor announcements

Wordfence Intelligence Weekly WordPress Vulnerability Report (July 27, 2026 to August 2, 2026) 
  

Wordfence Intelligence Weekly WordPress Vulnerability Report (July 27, 2026 to August 2, 2026) 

Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were

Inside the Modern SOC: The Identity Front Door 
  

Inside the Modern SOC: The Identity Front Door 

Identity-based attacks drive 90% of incidents. Learn how modern attackers exploit identities and what SOC leaders can do to respond.

July 2026 Detection Highlights: 10 New VTIs, 50+ YARA Rules, and 4 Config Extractors 
  

July 2026 Detection Highlights: 10 New VTIs, 50+ YARA Rules, and 4 Config Extractors 

The Labs team at VMRay actively gathers publicly available data to identify any noteworthy malware developments that demand immediate attention.

Unifying Workers AI and AI Gateway into a single AI control plane 
  

Unifying Workers AI and AI Gateway into a single AI control plane 

Cloudflare is unifying AI Gateway and Workers AI into a single control plane, giving developers observability, billing, and dynamic routing

Introducing Radar Researcher: An AI tool for exploring Internet data in plain language 
  

Introducing Radar Researcher: An AI tool for exploring Internet data in plain language 

Cloudflare Radar Researcher is a new AI-powered tool that lets you explore global Internet trends and traffic data using plain

Announcing Cloudflare Ambassadors, Community Engineers, and another $1M in open-source funding 
  

Announcing Cloudflare Ambassadors, Community Engineers, and another $1M in open-source funding 

We are launching updated community programs, including Cloudflare Ambassadors and Community Engineers, backed by $1M in open-source funding. Learn how

Unveiling good and bad behaviors on the Agentic Internet 
  

Unveiling good and bad behaviors on the Agentic Internet 

Cloudflare is shifting bot mitigation from point-in-time Risk assessment to continuous Trust evaluation. Learn how new good and bad behaviors

The Good, the Bad and the Ugly in Cybersecurity – Week 32 
  

The Good, the Bad and the Ugly in Cybersecurity – Week 32 

Snowflake hacker’s guilty plea covers a 100M-record breach, Mythos 5 spends 34 hours trying to backdoor real code, and ChainDrop’s

When Agentic Glue Melts: Exploiting Cloudflare Code Mode and Workers 
  

When Agentic Glue Melts: Exploiting Cloudflare Code Mode and Workers 

By Yarden Porat, Check Point Research Key Points The short version We set out to break Cloudflare Code Mode, and ended

ChainDrop: Inside a Self-Propagating npm Worm 
  

ChainDrop: Inside a Self-Propagating npm Worm 

Analysis of ChainDrop, an npm supply chain worm extracting GitHub Actions runner secrets and using Ethereum smart contracts for C2

  

Accelerating Enterprise AI from Proof of Concept to Production 

Discover how Akamai AI Professional Services helps enterprises bridge the gap from proof of concept to secure, scalable, and manageable

Day 2 at Black Hat: Check Point Research Takes the Stage 
  

Day 2 at Black Hat: Check Point Research Takes the Stage 

Day two at Black Hat, and Check Point Research brought two talks to the stage that gave the room plenty

Give any website a WebMCP interface 
  

Give any website a WebMCP interface 

Today we’re launching a developer preview of WebMCP on Cloudflare. With one switch, any site becomes usable by browser AI

The next generation of MCP 
  

The next generation of MCP 

The next version of MCP has a rewritten, stateless core that just works on Workers. We cover upgrades to the

Latest

New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens
 

New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens

New research shows content inside an email can escape its message boundary and interfere with the webmail interface. Across attack

New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens

New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens

New research shows content inside an email can escape its message boundary and interfere with the webmail interface. Across attack

Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers

Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers

Attacker-controlled instructions can make Atlassian’s Rovo assistant collect Jira or Confluence data that a signed-in user can access, then send

Write Once, Shell Everywhere – Turning Arbitrary File Writes into RCE (DEF CON Bug Bounty Village)

Write once, shell everywhere. Sun Microsystems didn’t mean it like this. Talk from today at DEF CON’s Bug Bounty Village.

South Korean satellite spots SpaceX lunar impact

South Korean satellite spots SpaceX lunar impact

Before and after shots of Elon’s ejecta snapped by Danuriwww.theregister.com – ArticlesRead More

CVE-2026-19323 | azer react-analyzer-mcp up to 335f2a3585f265e2e88352b59b10d3b478d678b0 analyze-projec src/index.ts generateProjectDocs projectName path traversal

A vulnerability classified as critical was found in azer react-analyzer-mcp up to 335f2a3585f265e2e88352b59b10d3b478d678b0. Affected by this vulnerability is the function

Introducing Kitesurf: The agent-first browser that runs in V8 isolates on Cloudflare Workers 
  

Introducing Kitesurf: The agent-first browser that runs in V8 isolates on Cloudflare Workers 

We should be giving all agents tools that excel at what’s important for an AI model. Kitesurf is Cloudflare’s new

From ranking to recommended: get your site ready to thrive in the age of AI agents 
  

From ranking to recommended: get your site ready to thrive in the age of AI agents 

More than half of requests now come from machines, not people. Agent Readiness shows how well agents can discover and

Building an open Agentic Internet: readable, discoverable, callable, and payable 
  

Building an open Agentic Internet: readable, discoverable, callable, and payable 

Agents are a new kind of visitor. They don’t render CSS or click ads, but they have a paying human

Cloudflare AI Search: give your agents a search engine for your data 
  

Cloudflare AI Search: give your agents a search engine for your data 

AI Search makes search easier than ever, with no Cloudflare primitives to stitch together. Point it at your data to

Introducing Unit 42 Threat Intelligence: Know What Matters, Understand the Adversary, and Act Faster 
  

Introducing Unit 42 Threat Intelligence: Know What Matters, Understand the Adversary, and Act Faster 

Security teams do not need another threat feed. Instead, they need to know which threats matter to their organization, what’s

Prisma AIRS – Unified Data Protection for Claude 
  

Prisma AIRS – Unified Data Protection for Claude 

As AI adoption shifts from experimental tools to the business core, enterprises are deploying AI agents and assistants across every

Redefining Network Security for the Frontier AI Era 
  

Redefining Network Security for the Frontier AI Era 

Modern enterprise security is at a pivotal moment where CIOs and CISOs have a clear opportunity to build a cybersecurity

Token Jacking: Cybercriminals Could Be Stealing Your AI Resources 
  

Token Jacking: Cybercriminals Could Be Stealing Your AI Resources 

Discover how attackers hijack AI tokens to fuel gray market transfer stations by stealing developer API keys. The post Token

Cloudflare is the only vendor named a Visionary in 2026 SASE and SSE reports 
  

Cloudflare is the only vendor named a Visionary in 2026 SASE and SSE reports 

We’re honored to announce that Cloudflare is the only vendor that has been recognized as a Visionary in both the

​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP) 
  

​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP) 

Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report. The post ​​Microsoft

From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide 
  

From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide 

A macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change

Cloudflare OS: an open platform for agents, apps, and work 
  

Cloudflare OS: an open platform for agents, apps, and work 

Cloudflare OS is an open-source platform that lets everyone in your company build apps, automate work, and safely access internal

WriteGuard: fine-grained controls for MCP Servers 
  

WriteGuard: fine-grained controls for MCP Servers 

At Cloudflare, we knew we could not depend on every employee to configure every agent perfectly or watch every tool

  

Shadow AI, Rogue Agents, and Data Leaks: A Special Report on Navigating AI Risk 

Discover top enterprise AI risks — from shadow AI to rogue agents and data leaks — plus practical CISO strategies

Catching rogue AI behavior with identity-aware analytics 
  

Catching rogue AI behavior with identity-aware analytics 

Identity-aware AI Gateway is now in open beta. User Insights turns that traffic into a behavioral baseline for every person

How we’re rethinking work at Cloudflare with Cloudflare OS 
  

How we’re rethinking work at Cloudflare with Cloudflare OS 

We built Cloudflare OS to equip our teams to safely rethink how they get work done with AI. The platform

The Agent Access Model 
  

The Agent Access Model 

The Agent Access Model proposes a new architecture to secure task-scoped agents using strict identity brokering, continuous mediation, and stateful

Building for the AI Surge 
  

Building for the AI Surge 

What Cisco data reveals about networks, AI, and the infrastructure powering a changing digital world.More RSS Feeds: https://newsroom.cisco.com/c/r/newsroom/en/us/rss-feeds.htmlCisco Newsroom: Feature

Safeguarding 200M Users: How ChongLuaDao Scales Threat Validation with ANY.RUN 
  

Safeguarding 200M Users: How ChongLuaDao Scales Threat Validation with ANY.RUN 

ChongLuaDao protects over 200 million users from cybercrime, having detected more than 1.4 million malicious websites since 2020. Rapid processing

ChainDrop supply chain compromise: Anatomy of a self-propagating worm 
  

ChainDrop supply chain compromise: Anatomy of a self-propagating worm 

A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates.

128 Seconds to disruption: Microsoft Defender stops ransomware at QNET  
  

128 Seconds to disruption: Microsoft Defender stops ransomware at QNET  

Microsoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist

Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps 
  

Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps 

Microsoft expands its Zero Trust for AI strategy to enhance security for AI and DevSecOps environments with new tools and

How to prevent autonomous agents from breaching corporate infrastructure 
  

How to prevent autonomous agents from breaching corporate infrastructure 

Launching AI-driven cyberattacks on businesses no longer requires advanced OpenAI models. We analyze a recent breach to build an effective

From Input to Impact: Secure AI Where It Runs 
  

From Input to Impact: Secure AI Where It Runs 

Defend the entire AI agentic stack across endpoints, identities, cloud, and apps with SentinelOne’s unified platform.SentinelOneRead More

Almost Half of Malware Samples Communicate Direct to IP 
  

Almost Half of Malware Samples Communicate Direct to IP 

Nearly half of C2 malware bypasses DNS by connecting directly to IP addresses. Zero trust IP enforcement secures networks against

Run CI/CD for millions of repos — on your platform, on Cloudflare 
  

Run CI/CD for millions of repos — on your platform, on Cloudflare 

Learn how to build customizable, sandboxed CI/CD pipelines natively on Cloudflare using Workflows, Artifacts, and the CI SDK. We walk

Announcing Cloudflare Wallets: The programmable wallet for the agentic Internet 
  

Announcing Cloudflare Wallets: The programmable wallet for the agentic Internet 

Cloudflare Wallets will provide AI agents with native payments and verifiable identity on the web. Using the x402 protocol, agents

The Agent Development Lifecycle has arrived on Cloudflare 
  

The Agent Development Lifecycle has arrived on Cloudflare 

Agents can write code faster than teams can review, deploy, and maintain it. Today we’re introducing the Agent Development Lifecycle

Introducing: Cloudflare Agents 
  

Introducing: Cloudflare Agents 

Cloudflare Agents brings all of your deployed agent sessions into a single experience, surfacing key information and insights into how

Your agent can now debug Workers with local tracing 
  

Your agent can now debug Workers with local tracing 

wrangler dev now produces structured traces for every local request. Your coding agent can hit a single API to pinpoint

How we built a software factory to drive Astro’s GitHub issue count to zero 
  

How we built a software factory to drive Astro’s GitHub issue count to zero 

By replacing manual issue verification with isolated AI subagents running in GitHub Actions, the Astro maintainers reduced open issue count

How Cloudflare enforces engineering standards using AI 
  

How Cloudflare enforces engineering standards using AI 

We created the Cloudflare Codex, a governed body of engineering standards that AI agents consume across the development lifecycle. By

The Frontier AI Vulnerability Burst: Industrializing Autonomous Zero-Day Discovery in Open-Source Software 
  

The Frontier AI Vulnerability Burst: Industrializing Autonomous Zero-Day Discovery in Open-Source Software 

Frontier AI is reshaping vulnerability discovery. Learn how our NOVA system found 14,000+ unknown vulnerabilities across the open-source software supply

Cisco Antares: helping to make AI secure for all 
  

Cisco Antares: helping to make AI secure for all 

Cisco’s Amin Karbasi on a new family of open-weight, small-language AI models ready for the big task of pinpointing vulnerabilities

How legitimate cloud platforms enable phishers to bypass MFA 
  

How legitimate cloud platforms enable phishers to bypass MFA 

We cover a cloud-based AitM attack scenario leveraging service workers and Ultraviolet, and provide detailed phishing hosting statistics across platforms

Detecting Certighost (CVE-2026-54121): Sigma Coverage Across the Full Attack Chain 
  

Detecting Certighost (CVE-2026-54121): Sigma Coverage Across the Full Attack Chain 

The post Detecting Certighost (CVE-2026-54121): Sigma Coverage Across the Full Attack Chain appeared first on Nextron Systems.Nextron SystemsRead More

Major Cyber Attacks in July 2026: US and EU Organizations Hit by Phishing, RATs, and Stealers 
  

Major Cyber Attacks in July 2026: US and EU Organizations Hit by Phishing, RATs, and Stealers 

July 2026 showed how trusted business workflows can quickly turn into account takeover, data exposure, fraud, and persistent access. ANY.RUN

Best AI Malware Analysis Tools: 9 Platforms Compared for 2026 
  

Best AI Malware Analysis Tools: 9 Platforms Compared for 2026 

9 malware analysis platforms and services compared 6 layers of trust in agentic malware analysis 5 critical control points for

CrashStealer, a new infostealer for macOS: how it works and how to stay safe | Kaspersky official blog 
  

CrashStealer, a new infostealer for macOS: how it works and how to stay safe | Kaspersky official blog 

We break down CrashStealer — a new macOS infostealer: how it spreads, what data it steals, how it bypasses Apple’s

Workers RPC now works across Python and JavaScript 
  

Workers RPC now works across Python and JavaScript 

One coding agent can write a Python Worker and another can write a JavaScript Worker. At runtime, those Workers can

Smaller, faster, safer: running Kimi and GLM at scale 
  

Smaller, faster, safer: running Kimi and GLM at scale 

Serving frontier models like Kimi and GLM means fighting for GPU memory. Here’s how we quantize KV caches, compress model

Introducing the Billable Usage API: programmatic cost visibility for Cloudflare 
  

Introducing the Billable Usage API: programmatic cost visibility for Cloudflare 

Cloudflare has launched a new Billable Usage API for accounts, giving developers and FinOps teams single-endpoint programmatic visibility into cost

Cloudflare Workers and Containers now support inbound TCP connections and gRPC 
  

Cloudflare Workers and Containers now support inbound TCP connections and gRPC 

Cloudflare Workers now support inbound TCP connections via Spectrum, allowing direct socket forwarding to Durable Objects and Containers. Developers can

An analysis of incidents at Brazilian educational institutions 
  

An analysis of incidents at Brazilian educational institutions 

Kaspersky expert provides statistics and details on several incident response cases at educational institutions in Brazil, as well as tips

Your agent needs a computer, not a container — introducing @cloudflare/computer 
  

Your agent needs a computer, not a container — introducing @cloudflare/computer 

Agents need more than just a container to scale. We’re introducing @cloudflare/computer, an agent runtime that dynamically orchestrates between fast,

3rd August – Threat Intelligence Report 
  

3rd August – Threat Intelligence Report 

For the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin. TOP

Pass the Passkey: A Novel Attack Surface in Passwordless Authentication 
  

Pass the Passkey: A Novel Attack Surface in Passwordless Authentication 

Explore how passkey implementation gaps undermine security when relying parties fail to validate the User Verified flag, reducing MFA to

Welcome to Agents Week 
  

Welcome to Agents Week 

Agents Week explores how cloud infrastructure must evolve to serve autonomous agents rather than human browsers. Join us as we

CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft 
  

CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft 

Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals of hospitality-related organizations

Wordfence Bug Bounty Program Monthly Report – April 2026 
  

Wordfence Bug Bounty Program Monthly Report – April 2026 

In April 2026, the Wordfence Bug Bounty Program received 1288 vulnerability submissions from our growing community of security researchers working

  

Thinking Outside the Black Box: Defenders Need Open Source AI 

Discover why open source AI is vital for cybersecurity as we join the Open Secure AI Alliance to build an

The Good, the Bad and the Ugly in Cybersecurity – Week 31 
  

The Good, the Bad and the Ugly in Cybersecurity – Week 31 

Police flag 4,000 URLs to disrupt The Com, theft victims sue Apple over a $1.8M wallet scam, and OpenAI and

An API for MoQ: provision your own isolated relays 
  

An API for MoQ: provision your own isolated relays 

Last year we made every Cloudflare server a Media over QUIC (MoQ) relay. Now the new provisioning API lets you

Network Anomaly Detection in KATA 
  

Network Anomaly Detection in KATA 

An analysis of how Network Anomaly Detection (NAD) rules work within Kaspersky Anti Targeted Attack, using Kerberoasting and DNS tunneling

The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version 
  

The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version 

Analysis of XCSSET v40 reveals a macOS malware targeting developers via Xcode. Unit 42 used advanced pattern matching and AI

Wordfence Intelligence Weekly WordPress Vulnerability Report (July 20, 2026 to July 26, 2026) 
  

Wordfence Intelligence Weekly WordPress Vulnerability Report (July 20, 2026 to July 26, 2026) 

Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were

​​​​What’s new in Microsoft Security: July 2026 
  

​​​​What’s new in Microsoft Security: July 2026 

This month’s updates help security and IT teams secure their AI environments, use AI to defend, and strengthen the foundations

TrendAI™ Joins Nvidia’s Open Secure AI Alliance: Closing the Gap Between AI Builders and AI Defenders 
  

TrendAI™ Joins Nvidia’s Open Secure AI Alliance: Closing the Gap Between AI Builders and AI Defenders 

TrendAI joins Nvidia as an inaugural partner in the Open Secure AI Alliance, advancing open models, harnesses, and research to

Dogfooding at scale: migrating cdnjs to Cloudflare’s Developer Platform 
  

Dogfooding at scale: migrating cdnjs to Cloudflare’s Developer Platform 

We moved cdnjs, serving 9 billion requests a day, entirely onto Cloudflare’s Developer Platform. That means we’re running one of

OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia 
  

OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia 

Our experts discovered OctLurk and SilkLurk, backdoors operating primarily in memory, targeting Central Asia. They inject plugins to launch shells,

Two Providers, a Stubborn Plateau and a Very Long Tail: Email in the Tranco Top-1M 
  

Two Providers, a Stubborn Plateau and a Very Long Tail: Email in the Tranco Top-1M 

Ten years of DNS measurements reveal three trends across the Internet’s most popular domains: email continues to consolidate around two

Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks 
  

Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks 

Unit 42 details a Chinese speaking threat actor combining autonomous AI scanning across seven vulnerabilities with manual exploitation. Read more.

Toy Ghouls’ new toy: the GenieLocker ransomware 
  

Toy Ghouls’ new toy: the GenieLocker ransomware 

Kaspersky experts dissect GenieLocker: new custom ransomware variants for Windows, Linux, and ESXi systems. We found this family in attacks

Threat Coverage Digest: New TI Report, Threat Research and 750+ Detection Rules 
  

Threat Coverage Digest: New TI Report, Threat Research and 750+ Detection Rules 

July brought another set of threat coverage updates designed to help security teams work faster and with more confidence. ANY.RUN

Tracking Over 35,000 Fake Sites in the 2026 World Cup Scam Wave 
  

Tracking Over 35,000 Fake Sites in the 2026 World Cup Scam Wave 

Between January and June 2026, TrendAI™ tracked more than 35,000 fake sites exploiting the 2026 FIFA World Cup, spanning counterfeit

Navigating AI Tokenomics: from cost uncertainty to operational scale 
  

Navigating AI Tokenomics: from cost uncertainty to operational scale 

Scale AI by mastering tokenomics. Align high-velocity innovation with budget oversight to mitigate risk and ensure sustainable production.More RSS Feeds:

​​Better security starts with better questions 
  

​​Better security starts with better questions 

Learn how better questions, trusted AI, and human judgment help security leaders make confident decisions and build resilient systems. The

Moving Beyond Alert Fatigue: 5 Things About SIEM Alerts Every Security Team Should Know 
  

Moving Beyond Alert Fatigue: 5 Things About SIEM Alerts Every Security Team Should Know 

7 common alert types across SOC deployments 4 structural problems fueling alert fatigue 5 principles that separate effective teams from

ScreenConnect leveraged in cyberattacks | Kaspersky official blog 
  

ScreenConnect leveraged in cyberattacks | Kaspersky official blog 

We analyze a campaign that leverages ScreenConnect: distribution through fake websites, AsyncRAT deployment, evasion tactics, and organizational defense recommendations.Kaspersky official

WP2Shell WordPress Exploit Technical Analysis and Real Attack Data 
  

WP2Shell WordPress Exploit Technical Analysis and Real Attack Data 

On July 17th, 2026, the WordPress Security Team released updates to WordPress core addressing a critical vulnerability chain that can

Post-quantum authentication to origins is now supported 
  

Post-quantum authentication to origins is now supported 

Cloudflare now supports post-quantum (PQ) authentication when connecting to customer origin servers via Authenticated Origin Pulls and Custom Origin Trust

The US CFO’s Playbook: How to Reduce Cyber Risk Without Scaling SOC Team in a Tight Labor Market 
  

The US CFO’s Playbook: How to Reduce Cyber Risk Without Scaling SOC Team in a Tight Labor Market 

Cyber risk is increasing, but so is the cost of managing it. More than 514,000 cybersecurity job listings appeared in

Cleaning Out Inboxes: TA488 Comes for Outlook with Another Half-Click Exploit 
  

Cleaning Out Inboxes: TA488 Comes for Outlook with Another Half-Click Exploit 

Threat Research would like to thank the Proofpoint Cloudmark Authority team for their collaboration. Key Findings On 22 July 2026,

Palo Alto Networks Achieves Global CBPR and PRP Certifications 
  

Palo Alto Networks Achieves Global CBPR and PRP Certifications 

Our mission is to be the cybersecurity partner of choice, protecting our digital way of life. Fulfilling that mission demands

Wordfence PRISM Detected Backdoored WordPress Plugin within Two Hours of it Being Introduced 
  

Wordfence PRISM Detected Backdoored WordPress Plugin within Two Hours of it Being Introduced 

On July 28th, 2026, our autonomous AI vulnerability intelligence agent, Wordfence PRISM, identified a critical Authentication Bypass backdoor in Advanced

  

How Partners Can Defend the Network and Ease AI Anxiety 

Learn how Akamai Guardicore Segmentation empowers partners to ease customer AI anxiety and contain machine-speed exploits with automated microsegmentation.BlogRead More

Natural disasters and government interference: examining Q2 2026’s major Internet disruption event 
  

Natural disasters and government interference: examining Q2 2026’s major Internet disruption event 

Cloudflare Radar tracked Internet disruptions driven by natural disasters, government-mandated shutdowns, and DNSSEC key rollovers over the last quarter. This

Security Roundup July 2026 
  

Security Roundup July 2026 

Curated advice, guidance, learning and trends in cybersecurity and privacy, as chosen by our consultants. NIS2 not yet law in

Building Resilience Against AiTM Phishing: What SOC Leaders Should Know 
  

Building Resilience Against AiTM Phishing: What SOC Leaders Should Know 

Email gateways, endpoint controls, and file-centric sandboxing remain essential layers of defense. But many of today’s phishing attacks unfold in

Notes from Underground: Adversarial Prompt Injection 
  

Notes from Underground: Adversarial Prompt Injection 

Key Takeaways Indirect Prompt Injection (IDPI) is increasingly being discussed by malicious actors on closed, underground forums. Tools and services

Mirage Kitten targets Middle East and Africa region with new malware 
  

Mirage Kitten targets Middle East and Africa region with new malware 

Kaspersky researchers reveal previously undocumented malware attributed to Mirage Kitten (UNC1549, Smoke Sandstorm, Nimbus Manticore): NightLedger backdoor, ArcBridge, and BridgeHead

ClickFix on macOS: how the Terminal-based attack works, and how to protect yourself | Kaspersky official blog 
  

ClickFix on macOS: how the Terminal-based attack works, and how to protect yourself | Kaspersky official blog 

We break down how ClickFix works on macOS: why attackers trick users into running commands in Terminal, what data the

Enhancing AI security through global AI red teaming 
  

Enhancing AI security through global AI red teaming 

Microsoft’s External Red Team Alliance (EXTRA) is a global AI security initiative designed to advance AI safety research and red

Rethinking security for the age of AI 
  

Rethinking security for the age of AI 

Why security needs a new Cyber Stack — Introducing Project Perception The physics of cybersecurity are changing. Autonomous systems can now reason, adapt

PureLogs, PureRAT and misleading zgRAT 
  

PureLogs, PureRAT and misleading zgRAT 

Please stop classifying malware as zgRAT. That malware label is confusing. As far as I know, there isnt a proper

27th July – Threat Intelligence Report 
  

27th July – Threat Intelligence Report 

For the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin. TOP

We’re open sourcing our privacy proxy CLI 
  

We’re open sourcing our privacy proxy CLI 

pvcli is a curl-like tool designed to simplify the testing of complex privacy protocols like OHTTP.The Cloudflare BlogRead More

BGP ORIGIN attribute manipulation and its impact on the Internet 
  

BGP ORIGIN attribute manipulation and its impact on the Internet 

By doing in-depth testing, we found nearly 70% of BGP paths experience ORIGIN attribute rewrites by transit providers seeking traffic

Why live chat agents can read your messages before you hit “Send” | Kaspersky official blog 
  

Why live chat agents can read your messages before you hit “Send” | Kaspersky official blog 

On some websites, agents can read your messages before you even send them. We explain how these tracking mechanisms work,

The Signs Were There: What the First Autonomous Ransomware Case Confirms 
  

The Signs Were There: What the First Autonomous Ransomware Case Confirms 

An AI agent has run a ransomware intrusion on its own for the first time, from break-in to data destruction.

The Good, the Bad and the Ugly in Cybersecurity – Week 30 
  

The Good, the Bad and the Ugly in Cybersecurity – Week 30 

Authorities arrest Kratos’s developer, HollowGraph hides C2 in 2050 calendar events, and OpenAI’s models breach Hugging Face to steal benchmark

Your Best Analyst Shouldn’t Be a Person. It Should Be a Capability Everyone Can Summon. 
  

Your Best Analyst Shouldn’t Be a Person. It Should Be a Capability Everyone Can Summon. 

Transform expert SOC analysis into an on-demand AI capability to empower all analysts and accelerate threat resolution.SentinelOneRead More

Federal Agencies Warn of Ongoing PLC Exploitation Against Critical U.S. Infrastructure 
  

Federal Agencies Warn of Ongoing PLC Exploitation Against Critical U.S. Infrastructure 

TrendAI™ Research breaks down what changed in CISA’s updated advisory on an ongoing PLC exploitation, why this activity might be

Inside the OpenAI – Hugging Face Incident: The AI Breach With No Human Attacker Behind It 
  

Inside the OpenAI – Hugging Face Incident: The AI Breach With No Human Attacker Behind It 

OpenAI’s own models broke out of a test sandbox and into Hugging Face’s servers to solve an evaluation, with no

  

PQC Migration Now Has a Deadline. Does Your DNS Estate? 

Learn why crypto-agility depends not just on adopting the right standards, but on maintaining a clear, unified view of your