First up we talk with Threatlocker CTO Michael Jenkins about threat actors use of AI and keeping the bad things out with Zero ...
Since the release of Vue 2, Vuejs has grown rapidly. It is receiving awesome reviews from the users. Vuejs was one of the ...
"A malicious MCP server could trick an application built on the official MCP Python SDK into handing over the OAuth credentials it uses to log in to ...
Exploitation of CVE-2026-88772 bypasses authentication and triggers an unhandled termination of the NetScaler Packet Processing Engine (NSPPE) to establish initial root-level access. Analysis of the ...
Security researcher Patrick Wardle showed on September 21, 2026, that a hidden Muse for Mac setting lets malware running as ...
ControlTheory CTO Eric Anderson describes a production chat failure investigated with Dstl8 and passed to Claude Code. His ...
Explore how Model Context Protocol (MCP) is transforming AI-driven identity and security automation, and learn the best practices for mitigating risks ...
You have written the code to call an API. However, when authentication errors or timeouts occur, you don't know what to check ...
EvilTokens has quickly become one of the top PhaaS platforms, enabling device code phishing attacks through AI-assisted lures, automated infrastructure, and token theft. In collaboration with partners ...
I often see the word 'API,' but I don't know what it does.Why is an API key necessary when using AI or web services from ...
Exploiting Unauthenticated API Gateways in AWS September 21, 2026 sara.pearlman@guidepointsecurity.com BLOG  5 min. Over the past year, GuidePoint’s Threat and Attack Simulation (TAS) team has ...