‘Tiny11’ Gives Windows 10 Users a Risky Upgrade Path

Tiny11 can help older Windows 10 PCs run a lighter Windows 11 build, but the unofficial project comes with security and support tradeoffs. The post ‘Tiny11’ Gives Windows 10... Read more »

FBI Warns: ‘Kali365’ Phishing Service Targets Microsoft 365 Accounts

The FBI warned that Kali365 can hijack Microsoft 365 accounts by abusing device code authentication and capturing OAuth tokens. The post FBI Warns: ‘Kali365’ Phishing Service Targets Microsoft 365... Read more »

Scottish social enterprise supports national cyber efforts

Cyber and Fraud Centre has supported community cyber resilience in Scotland to the tune of £3m in its first year operating as a social enterprise. Read more »

The LA Metro Attack Wasn’t Hacktivism. It Was a State Operation With a Costume On.

Iran’s “hacktivist” group Ababil of Minab, which hit LA Metro and wiped terabytes of data, is forensically linked to Iran’s intelligence service MOIS. In late March, a group calling... Read more »

How cybersecurity firms took down Glassworm botnet in one shot

Glassworm infected developers through poisoned tools and packages until a coordinated takedown killed all four of its C2 channels at once. On May 26, 2026, at 14:00 UTC, CrowdStrike... Read more »

Glassworm botnet that targeted OS devs smashed to pieces

CrowdStrike, Google and the Shadowserver Foundation worked together to take down a botnet that poisoned over 300 GitHub repositories, risking widespread supply chain compromise Read more »

UK has ‘narrowing window’ to stay ahead of tech threats, says GCHQ chief Keast-Butler

UK needs to treat cyber security 10 times more urgently in the wake of threats from Russia, China and other adversaries, says GCHQ director Anne Keast-Butler Read more »

Dutch Government just said no to an American firm buying the keys to their digital State

The Dutch government blocked Kyndryl’s €100M bid for Solvinity, citing national security concerns over critical digital infrastructure. Dutch Government told Kyndryl it can’t buy Solvinity. That sentence doesn’t sound... Read more »

When your biggest security risk has never signed a contract

The Computer Weekly Security Think Tank considers the intersection of AI and IAM. In this article we explore how the frontiers of identity are expanding in the agentic era,... Read more »

Microsoft SharePoint Has a New RCE Flaw. If You Haven’t Patched Yet, Go Do That.

A critical vulnerability, tracked as CVE-2026-45659, in Microsoft SharePoint can allow attackers to achieve remote code execution with little effort. Microsoft released security updates to patch a high-severity SharePoint... Read more »
Subscribe to our Newsletter