access ai android api apple attack authentication backdoor breach business ceo china cisa cisco ciso cloud compliance control credentials crypto cve cyber cyberattack cybercrime cybersecurity data data-breach defense detection email exploit finance flaw framework fraud google governance government group hacker hacking healthcare identity infrastructure injection intelligence Internet jobs law leak linux malicious malware microsoft monitoring network open-source password phishing privacy ransomware remote-code-execution resilience risk russia scam service software strategy supply-chain technology theft threat tool unclassified update usa vulnerability windows zero-day
-
Why Your AI Project Will Probably Fail (And the 3 Warning Signs I Wish I’d Known)
MIT found 95% of generative AI pilots produce no measurable return. After running AI agents in production for hundreds of B2B SaaS customers, here are the three warning signs I wish I’d caught earlier. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/why-your-ai-project-will-probably-fail-and-the-3-warning-signs-i-wish-id-known/ also interesting: The 7 most in-demand cybersecurity skills today Simplifying SaaS Security with…
-
Google Tightens Android Sideloading: Unverified Apps Now Face a 24-Hour Wait
Google’s new Android verification flow adds a 24-hour wait for apps from unverified developers as broader identity checks approach. The post Google Tightens Android Sideloading: Unverified Apps Now Face a 24-Hour Wait appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-google-android-sideloading-24-hour-wait/ also interesting: New Android Identity Check locks settings outside trusted locations…
-
ToxicPanda 2.0 Gets a Major Upgrade, Expanding Attacks Across 16 Countries
ToxicPanda 2.0 targets 349 financial apps and abuses Android Wireless Debugging to gain deeper device access and steal banking credentials. ToxicPanda used to be a Europe-focused nuisance targeting a manageable list of banks. That version is gone. Zimperium’s zLabs team just documented ToxicPanda 2.0, and the numbers alone tell the story: 349 targeted financial institutions…
-
Postal Service moves to finalize mail ballot regs before SCOTUS ruling
The rules have already been rejected by multiple state courts, but the Trump administration said it’s preparing in case of a favorable Supreme Court decision. First seen on cyberscoop.com Jump to article: cyberscoop.com/postal-service-finalizes-mail-in-ballot-rules-before-scotus-ruling/ also interesting: Atroposia malware kit lowers the bar for cybercrime, and raises the stakes for enterprise defenders Europa im Visier von Cyber-Identitätsdieben…
-
BSidesCharm 2026 Keynote
Tags: unclassifiedPresenter: Robert M. Lee ________________________________________________________________ Our thanks to BSidesCharm for publishing their Creators, Authors and Presenter’s outstanding BSidesCharm 2026 content on the Organizations’ YouTube Channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/bsidescharm-2026-keynote/ also interesting: New Trend: Trojan Which Steals Your Pics Instead Of Your Text Kiteworks’ New MSSP/MSP Partner Program Addresses Stringent Regulatory…
-
Digitalisierung ohne Insellösungen Wie Unternehmen ihre Systeme und Prozesse besser miteinander verbinden
Tags: softwareNeue Software ist schnell eingeführt. Schwieriger wird es, wenn sie mit dem zusammenspielen muss, was im Unternehmen bereits vorhanden ist. Während Kundendaten beispielsweise im CRM liegen und Aufträge über das ERP laufen, werden Dokumente oder Informationen aus der Buchhaltung oft an anderer Stelle verarbeitet. In den einzelnen Bereichen wirkt die Arbeit damit zunächst digital. Reibungsverluste…
-
Frontier AI labs still won’t say how they’d contain a rogue model
Tags: aiA new study finds leading AI labs have few publicly documented plans for containing rogue models, raising questions about preparedness as AI systems increasingly demonstrate unexpected and potentially dangerous behavior. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/22/frontier-ai-labs-still-wont-say-how-theyd-contain-a-rogue-model/ also interesting: KI-Gadget Rabbit R1: Holpriger Deutschlandstart durch Sicherheitsprobleme How Bots and AI are Fueling Disinformation How…
-
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit
The U.S. Department of Justice (DoJ) announced on Friday that ByteDance-owned TikTok will pay $400 million to settle a 2024 lawsuit accusing the company of violating child privacy laws in the country.As part of the settlement, the social media platform will pay $300 million immediately, and an additional $100 million “upon entry of an order…
-
BSidesCharm 2026 Opening Ceremonies
Tags: unclassifiedPresenter: BSides Charm Organizers Our thanks to BSidesCharm for publishing their Creators, Authors and Presenter’s outstanding BSidesCharm 2026 content on the Organizations’ YouTube Channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/bsidescharm-2026-opening-ceremonies/ also interesting: MCTTP 2025 – Save the date für Taktik, Technik und Teamwork Post-Quantum-Sicherheit im Fokus – Quantencomputing bringt die IT-Sicherheit ins…
-
Airpods mit Kamera: Ab wann die umstrittenen KI-Devices verfügbar sein könnten
Tags: aiFirst seen on t3n.de Jump to article: t3n.de/news/airpods-mit-kamera-ab-wann-die-umstrittenen-ki-devices-verfuegbar-sein-koennten-1759005/ also interesting: Why and How to Secure GenAI Investments From Day Zero What You Need To Know About The EU AI Act Black Hat Europe 2023: Sollten wir KI regulieren? Policymakers assess nuclear energy for AI data centers
-
Kabel beim Cyberangriff durchtrennt: So schützte sich T-Mobile vor einer Spionageattacke
First seen on t3n.de Jump to article: t3n.de/news/kabel-cyberangriff-durchtrennt-t-mobile-1758997/ also interesting: Cyberattack Wipes 13,000 School Devices in Mobile Guardian Breach RSA 2025: AI’s Promise vs. Security’s Past”Š”, “ŠA Reality Check” European Commission Mitigates Cyberattack Aimed at Employee Mobile Information Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities
-
Wissenschaft am Ende? ExChef Eric Schmidt erklärt, wie Forscher mit KI wirklich weiterkommen
First seen on t3n.de Jump to article: t3n.de/news/wissenschaft-ex-google-eric-schmidt-ki-1757410/ also interesting: The CISO’s 5-step guide to securing AI operations BNY Partners With Google on Financial Services AI Platform Google Chrome tests Gemini-powered AI “Skills” Heading to RSA Conference 2026? Mark your Calendar and Meet Thales!
-
Falsche Konferenz: Wie Hacker Sicherheitsforscher mit einem Google Doc in die Falle lockten
First seen on t3n.de Jump to article: t3n.de/news/falsche-konferenz-hacker-sicherheitsforscher-google-doc-1759103/ also interesting: Hackers Repeatedly Using Same iOS Chrome Exploits to Attack Government Websites Breach Roundup: Kimsuky Serves Linux Trojan Turkish Hackers Hit Google Pakistan The biggest data breach fines, penalties, and settlements so far
-
Neue Android-Malware kombiniert Fernzugriff und NFC für Kontodiebstahl in Echtzeit
First seen on t3n.de Jump to article: t3n.de/news/android-malware-nfc-betrug-spynote-windrelay-1759120/ also interesting: New Android Malware NGate Steals NFC Data to Clone Contactless Payment Cards Chinese Hackers Use NFC-Enabled Android Malware to Steal Payment Information New “Ghost Tap” Attack Hijacks Android Phones to Drain Bank Accounts NGate NFC malware targets Android users through trojanized payment app
-
KI in der Medizin: Hohes Datenschutzrisiko für bestimmte Personengruppen entdeckt
Tags: aiFirst seen on t3n.de Jump to article: t3n.de/news/ki-medizin-datenschutz-risiko-1758928/ also interesting: Zwischen Automatisierung und Verantwortung: KI-Agenten in der Identity Governance Key questions CISOs must ask before adopting AI-enabled cyber solutions Identity-First AI Security: Why CISOs Must Add Intent to the Equation The new economics of fraud: Cheaper, faster, more convincing
-
Halbwertszeit unter drei Jahren: Warum Microsoft-Produkte ständig neu heißen
Tags: microsoftFirst seen on t3n.de Jump to article: t3n.de/news/microsoft-rebrand-registry-namenswechsel-1759308/ also interesting: Last Windows 10 Patch Tuesday Features Six Zero Days Energy sector targeted in multi-stage phishing and BEC campaign using SharePoint Microsoft fixes broken Windows update days after vowing fewer broken updates Attackers abuse Microsoft Teams to impersonate the IT helpdesk in a new enterprise intrusion…
-
Trotz Fachkräftemangel: Warum plötzlich weniger IT-Experten gesucht werden
Tags: unclassifiedFirst seen on t3n.de Jump to article: t3n.de/news/fachkraeftemangel-it-experten-gesucht-1756380/ also interesting: Report: Voice of Practitioners 2024 The True State of Secrets Security #BHUSA: 99% of Global 2000 Firms Have Recently Breached Vendors Auckland museum enhances digitisation efforts with storage upgrade Kommerzielle SNORT-Lösungen: Sourcefire baut den Channel aus
-
(g+) Artificial Intelligence: AI hasn’t gone rogue. It’s worse than that
Recent cyber attacks reflect what the technology was trained to do but safeguards are falling short First seen on golem.de Jump to article: www.golem.de/news/artificial-intelligence-ai-hasn-t-gone-rogue-it-s-worse-than-that-2608-212188.html also interesting: The 7 most in-demand cybersecurity skills today FAQ on CVE-2026-21514: OLE bypass N-Day in Microsoft Word 6 key takeaways from RSA Conference 2026 (g+) Artificial Intelligence: AI hasn’t gone…
-
(g+) Artificial Intelligence: AI hasn’t gone rogue. It’s worse than that
Recent cyber attacks reflect what the technology was trained to do but safeguards are falling short First seen on golem.de Jump to article: www.golem.de/news/artificial-intelligence-ai-hasn-t-gone-rogue-it-s-worse-than-that-2608-212188.html also interesting: 5 ways CISOs are experimenting with AI CISOs’ security priorities reveal an augmented cyber agenda What is AI fuzzing? And what tools, threats and challenges generative AI brings FAQ…
-
Hackers infect Android car head units with proxy botnet malware
A supply-chain attack targeting Android-based car head units is using a legitimate device-update app to spread malware that enlists compromised devices in a proxy botnet or uses them for ad fraud. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-infect-android-car-head-units-with-proxy-botnet-malware/ also interesting: The most notorious and damaging ransomware of all time Cybersecurity Snapshot: AI Will Take…
-
Named Pipes Under Attack: Securing Windows Interprocess Communication
Windows named pipes provide fast interprocess communication, but weak access controls can expose privileged services to untrusted processes. ThreatLocker explains how endpoint verification, command authorization, strict input validation, and narrowly scoped privileges can help secure named-pipe communication. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/named-pipes-under-attack-securing-windows-interprocess-communication/ also interesting: 6 ways hackers hide their tracks What is…
-
6 NIST Software Criteria for Financial Institutions
Tags: compliance, cyber, cybersecurity, dora, finance, framework, nist, regulation, software, threat<div cla Financial institutions face overlapping requirements from SEC cyber disclosure rules, NYDFS cybersecurity regulations, and sector-specific mandates like DORA in Europe. When your compliance team juggles multiple frameworks while your security operations center monitors threats in real time, the gap between technical findings and boardroom reporting grows wider by the day. First seen on…
-
Your Expired Visa Card Could Be ‘Zombified’ to Make Contactless Payments
Plus: Apple sends out an “unprecedented” number of spyware warnings, Ukraine hits a Russian ecommerce giant with cyber and drone attacks, and more. First seen on wired.com Jump to article: www.wired.com/story/security-news-this-week-your-expired-visa-card-could-be-zombiefied-to-make-contactless-payments/ also interesting: Russian cyberespionage groups target Signal users with fake group invites Russian Cyber-Attacks Home in on Ukraine’s Military Infrastructure Russian APTs Exploit LotL…
-
AI supplier assurance and governance expectations for UK SMEs
For many UK SMEs, the biggest risk with artificial intelligence is not whether the tool looks impressive in a demo. It is whether the supplier can be trusted to handle your data, support your business safely, and behave predictably when something goes wrong. That is where AI supplier assurance and governance expectations matter. In plain……
-
Malware Hijacks Android Car Head Units
Malware is abusing car infotainment updates to install proxy software, turning Android head units into nodes for the BADBOX network. Kaspersky researchers found something in June 2026 that made them stop and look twice: an Android app with no interface at all, installed like any ordinary app but making zero effort to disguise itself as…
-
Chinese Hacker Uses DeepSeek and Hermes Agent to Launch Autonomous Cyberattacks
A Chinese-speaking threat actor has been observed using DeepSeek through the Hermes Agent framework to automate reconnaissance, vulnerability research, exploit acquisition, and attack attempts against internet-facing infrastructure. According to Unit 42, the actor tracked under the aliases knaithe and KnYuan built an AI-assisted offensive environment that combined DeepSeek’s reasoning capabilities with Hermes Agent’s terminal access,…
-
U.S. CISA adds Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the Zimbra Collaboration Suite (ZCS) flaw CVE-2026-73570 to its Known Exploited Vulnerabilities (KEV) catalog. CERT Polska, Poland’s national computer emergency response team, confirmed this week that threat actors…
-
Critical Flaw in NASA/JPL Open-Source Spacecraft Command Software Allowed Unauthenticated Command Execution
A critical flaw (CVSS 9.4) in NASA/JPL’s AIT-GUI let anyone send unauthenticated commands to spacecraft instruments. Cycode researchers found that AIT-GUI, the browser-based operator console in NASA/JPL open-source AMMOS Instrument Toolkit, shipped with no authentication, no session checks, and no CSRF protection on any of its state-changing endpoints. >>AIT-GUI, the web front end of NASA/JPL’s…
-
What Is CPU Cache? L1, L2, and L3 Explained
Tags: unclassifiedCPU cache is the fast memory between the cores and main memory. What L1, L2, and L3 each do, why cache lines are 64 bytes, and when more cache actually makes a processor faster. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/what-is-cpu-cache-l1-l2-and-l3-explained/ also interesting: Without validation, exposure management is just a half measure SMART on…
-
768 Leaked AWS Keys Still Active With Full Admin Access to Corporate Accounts
Tags: access, cloud, corporate, credentials, cyber, data, data-breach, iam, infrastructure, risk, theftA large-scale investigation has uncovered 768 publicly exposed AWS access keys that remain active and grant full administrative privileges to corporate cloud environments, posing a serious risk of account takeover, data theft, infrastructure abuse, and cloud billing fraud. The credentials include 526 root access keys and 242 IAM user keys attached to AWS’s AdministratorAccess managed…
-
Microsoft patches max severity code execution, privilege escalation flaws
Microsoft has patched a maximum-severity vulnerability in the Entra ID identity and access management (IAM) platform that has been exploited in attacks. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-warns-of-max-severity-entra-id-flaw-exploited-in-attacks/ also interesting: Cybersecurity Snapshot: CISA’s Best Cyber Advice on Securing Cloud, OT, Apps and More Cybersecurity Snapshot: AI Will Take Center Stage in Cyber in…
-
Zero-Click Grok Attack Lets Hackers Steal Chat History Using Encrypted Prompt Injection
A newly disclosed prompt-injection technique could turn a routine request to summarize a webpage in xAI’s Grok web chat into a silent data-exfiltration attack, potentially exposing a user’s name, approximate location, subscription tier, and active conversation history. Security researchers at Adversa AI have dubbed the technique >>Cryptographic Context Injection.<< The attack targets Grok's ability to…
-
Doch nicht ausgenutzt – Microsoft korrigiert Entra-ID-Warnung
Tags: microsoftEine Entra-ID-Lücke erhält die Höchstwertung 10,0. Anders als zunächst gemeldet, wurde sie laut Microsoft aber nicht ausgenutzt. First seen on computerbase.de Jump to article: www.computerbase.de/news/apps/doch-nicht-ausgenutzt-microsoft-korrigiert-entra-id-warnung.98977 also interesting: CrowdStrike CEO says 97% of Windows sensors restored in IT outage recovery effort Billions of Android Devices Open to ‘Dirty Stream’ Attack Microsoft slips Task Manager and processor…
-
Cyber Talk-11 Palo Alto Networks: A Security Company That Never Stops Rebuilding Itself
On August 19, 2026, Palo Alto Networks announced an industry initiative called the Frontier AI Critical Defense Program, bringing together partners including Anthropic, OpenAI, IBM, Microsoft, Siemens, Red Hat, Idaho National Laboratory, and organizations across technology, energy, healthcare, and industrial control. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/cyber-talk-11-palo-alto-networks-a-security-company-that-never-stops-rebuilding-itself/ also interesting: Cybersecurity Snapshot: CISA Analyzes…
-
Hacker missbrauchen Google-OAuth und WhatsApp-Geräteverknüpfung
Ein Spionage-Cluster missbraucht die Anmeldeverfahren, um Privatpersonen aus Wissenschaft, Diplomatie und Verteidigung in Europa und den USA anzugreifen. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/whatsapp-hacker also interesting: FLUXROOT: Phishing Hackers Exploit Serverless Google Cloud PINEAPPLE and FLUXROOT Hacker Groups Abuse Google Cloud for Credential Phishing The most notorious and damaging ransomware of all time…
-
Building RAMP: Turning a Reporting Vision Into a Real Platform
Tags: unclassifiedHow I built Doppel’s reporting platform as a summer intern First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/building-ramp-turning-a-reporting-vision-into-a-real-platform/ also interesting: Sicherheitsbehörden warnen vor chinesischer Hackerbande Novel payloads added to More_eggs MaaS operator’s arsenal Defamation case against DEF CON terminated with prejudice Mid-sized customers go it alone with security
-
Machine Identity for the AI Era: Building Doppel API V2 With OAuth 2.0
How we introduced organization-bound machine authentication while preserving the API contract customers already know. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/machine-identity-for-the-ai-era-building-doppel-api-v2-with-oauth-2-0/ also interesting: Smarter Threats Need Smarter Defenses: AI, APIs, and the Reality for Critical Infrastructure Security Rethinking Identity Security in the Age of AI Why access decisions are becoming the weakest link in…
-
ISMG Editors: AI-Assisted Cyberattacks Gain Speed and Scale
Also: OpenAI Hits Pause as AI Risks Rise, Black Hat Sharpens AI Security Debate. In this week’s panel, four ISMG editors discussed AI’s growing role in cyberattacks, OpenAI’s unusual decision to pause frontier-model training and, one week on from our Black Hat coverage, which conversations from Las Vegas really mattered – and which didn’t. First…
-
AI Analytics Hits a Trust Barrier
Widespread Experimentation Has Yet to Produce Enterprise-Scale Adoption. Enterprises are pushing AI analytics into production, but most employees still rely on dashboards and manual requests. A new survey finds limited confidence in AI-generated answers is holding back organization-wide adoption and changing the skills required of data teams. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/ai-analytics-hits-trust-barrier-a-32632…
-
Mandiant Opens Agentic Security Harness to Industry
AVDH Scans Enterprise Code at Scale to Find and Validate Exploit Paths. Google Mandiant opened its playbook on agentic security by releasing the architecture it used to develop its Agentic Vulnerability Discovery Harness to analyzes code and quickly identify exploit paths during reviews, penetration testing and red team operations. First seen on govinfosecurity.com Jump to…
-
Who Is REvil’s Ransomware Developer Anatoly Sergeevitsch Kravchuk?
Dear blog readers. This is Dancho. A reader recently approached me with a detailed research and analysis for Quake3 a XSS forum moderator where he connected the dots that Quake3 is also the main developer of the REvil ransomware where he asked me to go ahead and publish it. So who’s Anatoly Sergeevitsch Kravchuk? Dark…
-
ShinyHunters Leaks 7.1 Million Baxter International Records
Gang Claims It Stole Medical Device Maker’s Salesforce Info Including Personal Data. Extortion gang ShinyHunters has struck the healthcare sector again. The notorious cybercriminal gang claims on its darkweb site of leaking 7.1 million Salesforce records stolen from medical device maker Baxter International, including personally identifiable information. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/shinyhunters-leaks-71-million-baxter-international-records-a-32630…
-
That Legitimate OAuth Login Might Be a Russian Hack
Attackers Use Real Google and Microsoft Authentication Before Redirecting Victims. Google says three Russia-linked espionage clusters are abusing legitimate Google and Microsoft authentication flows to steal tokens and account access from defense, government, academic and think tank targets, exposing a visibility gap around personal accounts. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/that-legitimate-oauth-login-might-be-russian-hack-a-32634 also interesting:…
-
The $2.83 Billion Security Lesson from GTA VI
Tags: unclassified<div cla Rockstar Games has suffered three major security exposures in four years. The latest wiped $2.83 billion in shareholder value from its parent company in under 48 hours. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/the-2-83-billion-security-lesson-from-gta-vi/ also interesting: SMB File Sharing Survey 2012: Kleine Firmen leichtsinnig beim Filesharing Ingenuity helicopter’s flying days cut short…
-
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
Cybersecurity researchers have discovered a set of trojanized npm packages that masquerade as working calendar and streak utilities but are engineered to stealthily deliver an artificial intelligence (AI)-powered Linux implant dubbed RedC2 4.0.”When the module loads, it”¯locates”¯the bundled binary, marks it executable, and launches it as a detached background process,” TrendAI, Trend Micro’s First seen…
-
Lawmakers call for investigation into impact of CISA staffing cuts
Tags: cisaLawmakers say little is known about how recent cuts have impacted CISA and how the knowledge that was lost has been replaced. First seen on therecord.media Jump to article: therecord.media/lawmakers-call-for-investigation-into-impact-of-cisa-cuts also interesting: SafeBreach Coverage for AA24-109A (Akira Ransomware) CISA Warns 2 SonicWall Vulnerabilities Under Active Exploitation CISA releases Thorium, an open-source, scalable platform for malware…
-
91 Spring CVEs: The AI Vulnerability Consumption Problem
Tags: access, advisory, ai, attack, cloud, cve, cvss, data, data-breach, framework, guide, injection, intelligence, open-source, risk, service, software, tool, update, vulnerability<div cla TL;DR Broadcom released a large batch of Spring security advisories on August 20, 2026, with Sonatype tracking 91 CVEs across Spring Framework and related projects. At the time of publishing, Sonatype Guide currently identifies 209,569 software components affected by the security event. The disclosure comes amid a dramatic rise in AI-assisted vulnerability discovery. Broadcom…
-
New Manic Android Malware Uses Offline Networks to Drain Bank Accounts
Manic Android malware steals banking credentials and can relay stolen data through nearby infected phones, complicating traditional device isolation. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-manic-android-malware-device-relay-data-theft/ also interesting: The most notorious and damaging ransomware of all time Cybersecurity Snapshot: Global Agencies Target Criminal “Bulletproof” Hosts, as CSA Unveils Agentic AI Risk Framework Cybersecurity Snapshot:…
-
Randall Munroe’s XKCD ‘Offside’
via the comic artistry and dry wit of Randall Munroe, creator of XKCD Permalink First seen on securityboulevard.com Jump to article: https://securityboulevard.com/2026/08/randall-munroes-xkcd-offside/ also interesting: Disaster recovery and business continuity: How to create an effective plan The Biggest Cyber Stories of the Year: What 2025 Taught Us Software developers: Prime cyber targets and a rising risk…

