[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
[
privacy
|
malware
|
research
|
vendor
]
Wiz - Incidents
NCC Group Research
Threat Research - Sophos
Citrix NetScaler vulnerability (CVE-2026-88779) in active exploitation
TerminalFix and Lorem Ipsum Loader enable covert tunneling
Citrix NetScaler vulnerabilities (CVE-2026-88771, CVE-2026-88772) in active exploitation
Kiteworks recommends server shutdown pending possible attack
September Patch Tuesday haul includes 973 CVEs
ai research messageboards
Cisco Secure Email Gateway vulnerability (CVE-2026-76461) in active exploitation
Devil’s advocate? Uncensored Luciferus AI service advertised underground
“Eye” spy: Cyclops Blink returns with extended capabilities
Dissecting a PHP web server rootkit
PortSwigger Research
Smashing the token limit with overlapping fragments
HTTP/3 in Burp Suite - it’s time to find a bigger wordlist
What's in a tag name? JavaScript, apparently
CSS:the bomb inside your inbox
CRLF-Powered Desync Attacks: Beheading HTTP Streams
Can AI do novel security research? Meet the HTTP Terminator
Top 10 web hacking techniques of 2025
Top 10 web hacking techniques of 2025: call for nominations
The Fragile Lock: Novel Bypasses For SAML Authentication
Introducing HTTP Anomaly Rank
Google Project Zero
AI Research - Sophos
Jevs Paradox Hidden Cost of Cheap AI Decisions
ai research messageboards
Three-headed dogs and long tails: Sophos at BSides LV
2607-secai
A double-edged bleeding edge: Classifying AI threats
A needle in a stack of needles: Hunting infostealers with AI
Where AI in the SOC is actually delivering — and where it isn’t
Locking it down: A new technique to prevent LLM jailbreaks
Getting salty with LLMs: SophosAI unveils new defense against jailbreaking at CAMLIS 2025
Using AI to identify cybercrime masterminds
Unit 42
Threat Brief: NetScaler Zero Days CVE-2026-88771 and CVE-2026-88772 Exploited in the Wild (Updated September 30)
OperTraitors: How Kubernetes Operators Betray Your Security Posture
3 Consulting Myths Debunked by Unit 42 Experts
From Exposure to Lockdown: How AWS Neutralizes Compromised IAM Credentials through Managed Policies
A Vault with a Heap-View: The Uncomfortable Space Between AgentCore Harness and Identity
Inside the Modern SOC: Defending the Cross-Environment Pivot
Atomic macOS (AMOS) Stealer Activity
Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection
The Machine With Many Faces: Post-Exploitation Identity Misuse in SPIFFE/SPIRE
Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure
Talos Intelligence
Give yourself room to be human
The Fine Art of Frustrating the Adversary
China-nexus UAT-11587 targets government and policy organizations across Asia with Antino backdoor
Securing the keys to the kingdom: Announcing Executive Threat Detection
Trust and the enticing consultancy offer
The Closed Quorum: Inside the first reported autonomous AI C2 implant
Introducing CAIRN: Frontier tracking for AI-integrated malware
Should you care about an “AI slowdown?”
Ransomware incidents in Japan in the first half of 2026: Investigation of The Gentlemen’s infrastructure and evidence of Qilin's AI use
Securing the unpatchable in an age of AI-driven vulnerabilities
© 2026 RiskDiscovery | Sponsored by:
Deception Logic