ShinyHunters Extorts Universities in New Instructure Canvas Hack

ShinyHunters-linked attackers defaced Canvas portals, disrupting finals week access and exposing SaaS security risks for schools.
The post ShinyHunters Extorts Universities in New Instructure Canvas Hack appeared first on TechRepublic.
Continue reading ShinyHunters Extorts Universities in New Instructure Canvas Hack

Google Update: Android Flaw Could Put Billions of Devices at Risk

Google patched an Android zero-click RCE flaw affecting multiple versions. Here’s what IT teams should know and how to reduce mobile risk.
The post Google Update: Android Flaw Could Put Billions of Devices at Risk appeared first on TechRepublic.
Continue reading Google Update: Android Flaw Could Put Billions of Devices at Risk

Microsoft Defender Bug Triggers False Malware Alerts for DigiCert Certificates

Microsoft fixed a Defender false positive that flagged legitimate DigiCert certificates as malware, disrupting Windows trust stores for some IT teams.
The post Microsoft Defender Bug Triggers False Malware Alerts for DigiCert Certificates appeared firs… Continue reading Microsoft Defender Bug Triggers False Malware Alerts for DigiCert Certificates

Cisco Introduces Model Provenance Kit to Strengthen AI Supply Chain Security

Cisco’s open-source Model Provenance Kit helps organizations verify AI model origins, trace lineage, and reduce AI supply chain security risks.
The post Cisco Introduces Model Provenance Kit to Strengthen AI Supply Chain Security appeared first on Tech… Continue reading Cisco Introduces Model Provenance Kit to Strengthen AI Supply Chain Security

ClickUp Data Leak Exposes Enterprise Emails for Over a Year

A hardcoded ClickUp API key exposed hundreds of corporate and government emails for over a year, raising new SaaS security concerns.
The post ClickUp Data Leak Exposes Enterprise Emails for Over a Year appeared first on TechRepublic.
Continue reading ClickUp Data Leak Exposes Enterprise Emails for Over a Year

Microsoft Patch Still Leaves 1,300 SharePoint Servers Exposed

More than 1,300 internet-exposed SharePoint servers remain unpatched against CVE-2026-32201, a spoofing flaw Microsoft says was exploited as a zero-day.
The post Microsoft Patch Still Leaves 1,300 SharePoint Servers Exposed appeared first on TechRepubl… Continue reading Microsoft Patch Still Leaves 1,300 SharePoint Servers Exposed

Malicious TikTok Downloader Extensions Quietly Compromised 130K Users

Malicious browser extensions disguised as TikTok downloaders compromised 130,000 users, exposing a growing blind spot in enterprise security.
The post Malicious TikTok Downloader Extensions Quietly Compromised 130K Users appeared first on TechRepublic.
Continue reading Malicious TikTok Downloader Extensions Quietly Compromised 130K Users

McGraw-Hill Confirms Data Exposure, Hackers Claim 45M Salesforce Records Leaked

McGraw-Hill confirms a data exposure tied to a Salesforce misconfiguration as hackers claim 45M records, raising concerns over SaaS security risks.
The post McGraw-Hill Confirms Data Exposure, Hackers Claim 45M Salesforce Records Leaked appeared first … Continue reading McGraw-Hill Confirms Data Exposure, Hackers Claim 45M Salesforce Records Leaked

Hackers Exploit Adobe PDF Flaw for Months to Steal Data, No Fix Yet

A critical Adobe Acrobat zero-day has been exploited for months via malicious PDFs to steal data and potentially take over systems, with no patch yet available.
The post Hackers Exploit Adobe PDF Flaw for Months to Steal Data, No Fix Yet appeared first… Continue reading Hackers Exploit Adobe PDF Flaw for Months to Steal Data, No Fix Yet

10 ChatGPT AI Prompts L1 SOC Analysts Can Use in Their Daily Work

Discover 10 practical ChatGPT prompts SOC analysts can use to speed up triage, analyze threats, improve documentation, and enhance incident response workflows.
The post 10 ChatGPT AI Prompts L1 SOC Analysts Can Use in Their Daily Work appeared first on… Continue reading 10 ChatGPT AI Prompts L1 SOC Analysts Can Use in Their Daily Work