New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure

A new CitrixBleed-like vulnerability has been exploited by threat actors barely 24 hours after its public disclosure. The bug, tracked as CVE-2026-8451 with a CVSS score of 8.8, affects NetScaler ADC and NetScaler Gateways configured as SAML IDP, allowing attackers to access sensitive information without authentication. The vulnerability was discovered in the XML parser of … Read more

Claude Fable relaunch disappoints users with nerfed performance

Claude Fable’s Relaunch Leaves Users Underwhelmed by Subpar Performance The long-awaited relaunch of Claude Fable, a powerful AI model from Anthropic, has been met with disappointment and frustration among users. Despite being made available to all users, including those with lower-tier subscriptions, the model’s performance falls short of expectations. According to reports, Fable 5 is … Read more

FortiBleed Campaign Linked to INC, Lynx Ransomware Attacks

A Massive Credential-Harvesting Operation is Feeding Ransomware Attacks on a Global Scale Cybersecurity researchers have uncovered a large-scale credential-harvesting operation that has compromised over 110 million credentials and led to the deployment of ransomware families, including INC Ransom and Lynx. The campaign, dubbed FortiBleed, targets organizations in 150 countries by exploiting vulnerabilities in FortiGate firewalls. … Read more

How to Conduct a Successful Audit of AI-Driven Software Development

**The Dark Side of AI-Driven Software Development: A Growing Concern for CISOs** Artificial intelligence (AI) has revolutionized software development, boosting efficiency and productivity. However, it also introduces new risks that can compromise security. Chief Information Security Officers (CISOs) are grappling with the challenge of ensuring their organizations’ code is secure, even when generated by AI-powered … Read more

New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure

A Critical Citrix Vulnerability was Exploited in Just 24 Hours After Public Disclosure A new vulnerability, tracked as CVE-2026-8451, has been exploited by threat actors just a day after its public disclosure. This bug affects NetScaler appliances configured as SAML IDP and allows attackers to gain access to sensitive information through an out-of-bounds read issue … Read more

Claude Fable relaunch disappoints users with nerfed performance

Claude Fable’s Relaunch Falls Flat Due to Nerfed Performance and Restrictive Limits The highly anticipated relaunch of Anthropic’s powerful model, Claude Fable, has left many users underwhelmed. Initially available to all users, including those with a $100 Max subscription, the model comes with significant restrictions that have sparked disappointment among early adopters. While it appears … Read more

Anthropic’s AI Finds Bugs. IBM Bets $5B It Can Fix Them.

IBM’s $5 Billion Bet on Fixing Open-Source Bugs: A Wake-Up Call for the Industry A recent announcement by IBM has sent shockwaves through the cybersecurity community, with a staggering $5 billion commitment to a new patching service aimed at addressing vulnerabilities in open-source software. This move comes as Anthropic’s AI-powered vulnerability discovery tool, Mythos, has … Read more

Ransomware Thugs Masquerade as Interpol to Entice Small Biz

Ransomware attackers have been masquerading as Interpol in a campaign targeting small businesses across multiple regions, including the US, Europe, Middle East, and elsewhere. The scammers send fake emails claiming the recipient’s organization is under investigation for suspicious activity, complete with fabricated evidence of alleged wrongdoing. These phishing attempts are designed to trick victims into … Read more