Security detection usually depends on use case rules. PurpleIris goes beyond this to include rule-free detection, learning how each server behaves and flagging anything out of character in about 50 seconds.
Read more: https://t.co/eWOzfGQzih
#CyberSecurity#SIEM#ThreatHunting
Microsoft's emergency mitigation for the Exchange OWA zero-day breaks Print calendar, inline images, and the legacy OWA interface. It's also the only protection on offer five days into active exploitation of CVE-2026-42897.
We broke down the attack mechanics, the patching gap, and five controls that hold the window.
Read more: https://t.co/ttLolplcnv
#CyberSecurity #Exchange #ZeroDay #ThreatAnalysis
The mean time from CVE disclosure to working exploit fell from 56 days in 2024 to 10 hours in 2026.
We analyzed the collapse and what defensive programmes need to look like at this tempo.
Read more: https://t.co/zBuMBzRaYe
#cybersecurity#CVE
3.65TB of data from Instructure's Canvas LMS is on a leak site, with claims of 275 million users affected and billions of student-teacher messages exposed.
We analysed the Instructure disclosure and what the identity-layer attack pattern requires of defenders.
Read more: https://t.co/wjJPqEGPcL
#DataBreach #ThreatIntel #CyberSecurity #ShinyHunters
A compromised third-party AI tool gave attackers 22 months of access to Vercel, exposing customer environment variables not marked as sensitive.
We analysed the OAuth supply chain attack chain, why platform env vars are a systemic risk, and what teams running on Vercel should do now.
Read more: https://t.co/xPcGoRwnYx
#Vercel #OAuth #SupplyChainAttack #CyberSecurity
Stripe keys, SSH credentials, cloud tokens, and database strings were harvested from hundreds of web servers through one unpatched vulnerability.
We analysed how UAT-10608 exploits React2Shell (CVE-2025-55182) and how to address this.
Read more: https://t.co/Z7RHCh8nK4
#CyberSecurity #React2Shell #NextJS #ThreatAnalysis
A threat actor with a confirmed breach history claims 3TB of data from Remita and Sterling Bank, including 800GB of KYC documents, databases, and source code.
We analysed the alleged attack path, the cloud security gaps, and what financial institutions should do now.
Read more: https://t.co/iD5NeXFtLB
#CyberSecurity #DataBreach #Fintech #CloudSecurity
A ransomware attack delayed $17 million in pension payments to 2.9 million Kenyans. A separate attack took South Africa's Land Bank offline for two months.
Both incidents highlight gaps common across public sector institutions: unmonitored assets, limited pre-encryption detection, and inadequate disaster recovery.
Read more: https://t.co/IFG5JCsBEf
#InformationSecurity #CyberSecurity #ThreatDetection #Ransomware
In a single month, one fraud syndicate used 100 stolen faces to launch 160,000+ verification attacks across Africa's fintech platforms. Some faces appeared over 12,000 times.
We examined how injection attacks, deepfakes, and identity farming are breaking KYC.
Read more: https://t.co/A04l3V8UXT
#CyberSecurity #KYC #BiometricFraud #Fintech #InformationSecurity
A single ransomware attack on a U.S. payment gateway knocked card processing offline for thousands of merchants, cities, and hospitality brands for 72+ hours.
We examined the timeline and what the detection window really looked like.
Read more: https://t.co/eJqQMttdqv
#InformationSecurity #CyberSecurity #ThreatDetection #Ransomware
A West African payment processor handling 6M+ monthly transactions lost over $1M to a 3-country coordinated fraud.
We broke down the gaps and what every fintech needs to know.
Read more: https://t.co/yLSiIbTf4S
#InformationSecurity#CyberSecurity#ThreatDetection#fintech