survey

Vulnerabilities from years ago still opening doors for attackers

Vulnerabilities from years ago still opening doors for attackers 2026-03-24 at 14:02 By Sinisa Markovic Exploitation timelines continued to compress in enterprise environments, with newly disclosed flaws reaching active use almost immediately and older weaknesses remaining active years after disclosure. (Source: Cisco Talos) Findings from Cisco Talos’ 2025 Year in Review show how attackers combined […]

Vulnerabilities from years ago still opening doors for attackers Read More »

The devices winning the race to get hacked in 2026

The devices winning the race to get hacked in 2026 2026-03-23 at 17:17 By Sinisa Markovic Enterprise networks keep adding connected devices, expanding the attack surface as threat actors target a wider range of systems, many of which are difficult to inventory, secure, and patch consistently. (Source: Forescout) Forescout’s 2026 Riskiest Devices research maps that […]

The devices winning the race to get hacked in 2026 Read More »

Cybercriminals scale up, government sector hit hardest

Cybercriminals scale up, government sector hit hardest 2026-03-18 at 09:27 By Sinisa Markovic Government agencies faced the highest volume of cyberattack campaigns in 2025, according to new findings from HPE Threat Labs, which tracked 1,186 active campaigns over the course of the year. The data covers activity observed between January 1 and December 31, 2025, […]

Cybercriminals scale up, government sector hit hardest Read More »

Agentic attack chains advance as infostealers flood criminal markets

Agentic attack chains advance as infostealers flood criminal markets 2026-03-12 at 08:35 By Mirko Zorz Cybercriminals spent much of 2025 automating their operations, shifting from one-off attacks to systems that can run entire intrusion cycles with minimal human input. Data collected from criminal forums, illicit marketplaces, and underground chat services shows a threat environment where […]

Agentic attack chains advance as infostealers flood criminal markets Read More »

Software vulnerabilities push credential abuse aside in cloud intrusions

Software vulnerabilities push credential abuse aside in cloud intrusions 2026-03-11 at 07:17 By Sinisa Markovic Cloud intrusions are unfolding on shorter timelines, with attackers leaning more on unpatched software and compromised identities. H2 2025 distribution of initial access vectors exploited in Google Cloud (Source: Google) Google Cloud’s Cloud Threat Horizons Report H1 2026 reflects incident […]

Software vulnerabilities push credential abuse aside in cloud intrusions Read More »

Your dependencies are 278 days out of date and your pipelines aren’t protected

Your dependencies are 278 days out of date and your pipelines aren’t protected 2026-03-02 at 09:00 By Mirko Zorz Applications continue to ship with known weaknesses even as development workflows speed up. A new Datadog State of DevSecOps 2026 report examines how dependency management and pipeline practices are influencing exposure across cloud native environments. Across […]

Your dependencies are 278 days out of date and your pipelines aren’t protected Read More »

The $19.5 million insider risk problem

The $19.5 million insider risk problem 2026-02-26 at 09:09 By Mirko Zorz Routine employee activity across corporate systems carries an average annual cost of $19.5 million per organization. That figure comes from the 2026 Cost of Insider Risks Global Report, conducted by the Ponemon Institute and based on data from 354 organizations that experienced one […]

The $19.5 million insider risk problem Read More »

Open-source security debt grows across commercial software

Open-source security debt grows across commercial software 2026-02-26 at 08:36 By Mirko Zorz Open source code sits inside nearly every commercial application, and development teams continue to add new dependencies. Black Duck’s 2026 Open Source Security and Risk Analysis Report data shows that nearly all audited codebases contain open source components, with average component counts […]

Open-source security debt grows across commercial software Read More »

Cyber valuations climb as capital concentrates, AI security expands

Cyber valuations climb as capital concentrates, AI security expands 2026-02-25 at 08:59 By Sinisa Markovic Venture funding in cybersecurity continued to concentrate in large private rounds at the end of 2025, driving valuations higher across stages. Data from DataTribe shows total capital invested approached $150 billion for the year, with a disproportionate share flowing into […]

Cyber valuations climb as capital concentrates, AI security expands Read More »

AI is driving a new kind of phishing at scale

AI is driving a new kind of phishing at scale 2026-02-05 at 09:11 By Sinisa Markovic Email remains a primary entry point for attackers, and security teams continue to manage high volumes of malicious messages that change form across campaigns. Attackers generate large numbers of messages with small variations in wording, structure, and delivery paths. […]

AI is driving a new kind of phishing at scale Read More »

Security work keeps expanding, even with AI in the mix

Security work keeps expanding, even with AI in the mix 2026-01-30 at 08:07 By Sinisa Markovic Board attention continues to rise, and security groups now operate closer to executive decision making than in prior years, a pattern reflected the Voice of Security 2026 report by Tines. Within that environment, large numbers of teams already rely […]

Security work keeps expanding, even with AI in the mix Read More »

Security teams are carrying more tools with less confidence

Security teams are carrying more tools with less confidence 2026-01-30 at 07:31 By Anamarija Pogorelec Enterprise environments now span multiple clouds, on-premises systems, and a steady flow of new applications. Hybrid and multi-cloud setups are common across large organizations, and they bring a constant stream of logs, alerts, and operational data. That environment already exists […]

Security teams are carrying more tools with less confidence Read More »

Wearable tech adoption continues as privacy worries grow

Wearable tech adoption continues as privacy worries grow 2026-01-30 at 07:09 By Sinisa Markovic Over 1 billion users wear devices for tracking steps, sleep, heart rate, and other personal metrics. These devices collect a continuous stream of sensitive data, often tied to detailed user profiles and companion apps. New Clutch survey data show that as […]

Wearable tech adoption continues as privacy worries grow Read More »

Gen AI data violations more than double

Gen AI data violations more than double 2026-01-07 at 08:32 By Sinisa Markovic Security teams track activity that moves well beyond traditional SaaS platforms, with employees interacting daily with generative AI tools, personal cloud services, and automated systems that exchange data without direct human input. These patterns shape how sensitive information moves across corporate environments […]

Gen AI data violations more than double Read More »

What European security teams are struggling to operationalize

What European security teams are struggling to operationalize 2026-01-07 at 08:32 By Anamarija Pogorelec European security and compliance teams spend a lot of time talking about regulation. A new forecast report from Kiteworks suggests the harder problem sits elsewhere. According to the report, many European organizations have strong regulatory frameworks on paper, driven by GDPR […]

What European security teams are struggling to operationalize Read More »

Identity security planning for 2026 is shifting under pressure

Identity security planning for 2026 is shifting under pressure 2026-01-07 at 08:32 By Anamarija Pogorelec Identity security planning is becoming more focused on scale, governance, and operational strain, according to the Identity Security Outlook 2026 report. The ManageEngine research draws on responses from 515 identity and security leaders in the United States and Canada and […]

Identity security planning for 2026 is shifting under pressure Read More »

From experiment to production, AI settles into embedded software development

From experiment to production, AI settles into embedded software development 2026-01-02 at 07:30 By Sinisa Markovic AI-generated code is already running inside devices that control power grids, medical equipment, vehicles, and industrial plants. AI moves from experiment to production AI tools have become standard in embedded development workflows. More than 80% of respondents to a […]

From experiment to production, AI settles into embedded software development Read More »

Security coverage is falling behind the way attackers behave

Security coverage is falling behind the way attackers behave 2025-12-31 at 07:46 By Sinisa Markovic Cybercriminals keep tweaking their procedures, trying out new techniques, and shifting tactics across campaigns. Coverage that worked yesterday may miss how those behaviors appear today. The 2025 Threat-Led Defense Report from Tidal Cyber draws on tens of thousands of observed […]

Security coverage is falling behind the way attackers behave Read More »

Non-human identities push identity security into uncharted territory

Non-human identities push identity security into uncharted territory 2025-12-30 at 07:34 By Sinisa Markovic Enterprises are grappling with an identity attack surface that keeps expanding and slipping out of reach, according to Veza. Permissions growth outstrips oversight Permissions now grow faster than teams can track them. Enterprises often operate with hundreds of millions of active […]

Non-human identities push identity security into uncharted territory Read More »

From AI to cyber risk, why IT leaders are anxious heading into 2026

From AI to cyber risk, why IT leaders are anxious heading into 2026 2025-12-26 at 07:35 By Sinisa Markovic Cybersecurity threats are shaping IT planning for 2026, with AI maturity and regulation emerging as another major source of disruption, according to a global survey from Veeam. Veeam surveyed 250 senior IT and business decision-makers worldwide […]

From AI to cyber risk, why IT leaders are anxious heading into 2026 Read More »

Scroll to Top