We’ve got one word for it, and it’s usually the wrong one
Welcome to this week’s edition of the Threat Source newsletter. Ask anybody in this industry what the work does to
Welcome to this week’s edition of the Threat Source newsletter. Ask anybody in this industry what the work does to
î „Ravie Lakshmananî ‚Sep 14, 2026Malware / Browser Security A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly
Sometimes it really is the details that matter. Or, in the case of cool new hardware, it’s the software that
I identified an attacker using a semi-autonomous coding agent to run an offensive operation: finding poorly secured LLM resale gateways,
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Zero trust AI agents demand
“I wouldn’t tell a CIO that yesterday’s announcement makes WordPress either safer or riskier today. I would tell them to
While monitoring Mirage Kitten activity, we uncovered a previously undocumented malware family that we dubbed NodeRabbit. We identified the first
Here’s a tip for any budding cybercriminals out there. If you’re going to steal a quarter of a billion dollars
Amazon has made its Quick desktop assistant generally available on macOS and Windows, pitching it to enterprise IT as the
An attacker breached an email marketing platform and launched targeted attacks against the newsletter subscribers of some of its customers,