Cisco ISE contains multiple vulnerabilities that compromise critical system functions (code execution, privilege escalation, data access) and pose a high risk to network authentication.
Deterministic security models are no longer sufficient when AI systems make unforeseen decisions at runtime and interact with APIs and environments in unanticipated ways.
AI-SOCs will automate routine tasks and create new specialized roles such as Data Engineer, Agent-Orchestrator, and Model-Trainer, rather than eliminating existing jobs.
ScarCruft uses fake Microsoft security alerts to distribute NarwhalRAT, a Python-based malware that operates in memory and communicates with command-and-control servers via compromised websites and pCloud APIs.
A large-scale attack affects at least 74,000 Fortinet firewalls and compromises administrative access to security appliances at the core of enterprise networks.
Ransomware group DragonForce disguises its command-and-control traffic via Microsoft Teams’ TURN protocol and exploits multiple CVEs and kernel exploits to bypass security software.