
Third-Party Vendors Are the New Breach Vector Organizations Should Fear
Organizations face growing cybersecurity risks from trusted vendors, SaaS tools, and subcontractors that bypass traditional security measures.

Organizations face growing cybersecurity risks from trusted vendors, SaaS tools, and subcontractors that bypass traditional security measures.

Detailed analysis of a .cmd malware found in an email, escalating privileges and bypassing antivirus.

Drift Protocol faces a substantial breach, leading to administrative control loss and financial damages exceeding $280 million.

Anthropic confirms internal code leak of Claude Code due to human error, no sensitive data involved.

The FBI alerts users about data privacy issues connected to Chinese mobile applications, urging caution.

A new malvertising campaign abuses Google Ads, targeting U.S. users searching tax-related documents to serve malware-laden installers.

December 2025 breach at QualDerm Partners exposes personal and health data of over 3.1 million individuals.

UK Companies House vulnerability exposed millions of firm details, potentially allowing unauthorized access and record alteration.

Stryker’s internal Microsoft environment breach led to the remote wiping of tens of thousands of employee devices last week.

England Hockey is assessing a potential data breach by the AiLock ransomware gang that listed it on its data leak
Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.