Adapting to the New Age of AI-Powered Cyber Threats

When you log in to your computer on a Monday morning and see that ransomware screen demanding payment, you should realize that the attack didn’t start that weekend. As Net at Work CISO Michael Powell explains, “To stage an attack, it’s not uncommon for a threat actor to have been in the environment up to 90 days.”  For weeks or months, threat actors may have been cataloging[…] Read

Published by Corrine Hurt, Net at Work Inc.

Insecure API Endpoint Exposes Data and Enables Privilege Escalation

During a recent penetration test, we uncovered a critical vulnerability in a publicly accessible API endpoint that allowed unauthenticated users to escalate privileges all the way to an administrative level. This flaw ultimately exposed the Personally Identifiable Information (PII) of every user in the system. We’re sharing this finding because it’s a perfect example of[…] Read

Published by Maxwell Adams, Cybaverse

The double-edged sword of AI in cybersecurity

How AI-driven defences could prevent an uphill battle with modern cyberthreats In 2024, the UK government reported that 50 percent of businesses had experienced some form of cyber security breach or attack in the prior 12 months, with such attacks becoming increasingly sophisticated. Battling the latest cyberattacks involves leveraging the agility and intelligence of AI[…] Read

Published by Nathan Charles, OryxAlign

Multifactor Authentication: The One Step That Could Save Your DFW Business

You wouldn’t drive without a seat belt. You wouldn’t leave your office unlocked overnight. So why go online without multifactor authentication (MFA)? MFA is like a second lock on your digital door. Instead of relying on just a password which can be stolen, guessed, or phished it adds another layer of protection, such as a[…] Read

Published by Austin Justice, Justice IT Consulting LLC

CMMC Final Rule: How to Achieve Compliance

Defense contractors have anticipated the full implementation of CMMC (Cybersecurity Maturity Model Certification) for some time now. On September 10, 2025, the Federal Register published the DFARS Final Rule, giving defense procurement officers the power to require CMMC compliance—both in new contracts and renewals of existing contracts. In other words, CMMC compliance is now required for any contractor[…] Read

Published by Ross Filipek, Corsica Technologies

AI as a Weapon: The New Era of Cyber Threats

Artificial intelligence has become the sharpest double-edged sword in cyber security. On one side, defenders are using it to detect threats faster, triage incidents, and reduce noise. On the other hand, attackers are bending the same technology into weapons that are faster, stealthier, and harder to predict than anything we’ve faced before. We’re already seeing[…] Read

Published by Silvia Cardascia, Cybaverse

AI Cyber Threats: How to Stop the Latest Attacks

AI has changed the world of cybersecurity forever. New threats are appearing that were unthinkable before AI. Leaders in IT and business are asking themselves tough questions: “Are we educated on the latest AI cyber attacks?” “Is our team familiar with phishing email examples—and how AI makes them even more powerful?” “Are we using the latest[…] Read

Published by Ross Filipek, Corsica Technologies

Technical Deep Dive: Lynx Ransomware Variant Analysis

The Lynx Ransomware group has been increasingly active, employing sophisticated social engineering techniques and exploiting various vulnerabilities to conduct ransomware attacks on large organisations. Their TTPs include impersonation of IT staff and the abuse of legitimate tools to gain unauthorised access, culminating in data encryption and exfiltration. This post presents a technical analysis of a[…] Read

Published by Juliette Hudson, Cybaverse

Adaptive Malware Arrives: LameHug Uses AI to Evolve Mid-Attack

A newly discovered malware strain named LameHug is turning heads by becoming the first publicly documented malware to use a large language model (LLM) to generate real-time system commands during an active attack. Uncovered by Ukraine’s national CERT, the malware is believed to be linked to the Russian state-backed group APT28 (also known as Fancy[…] Read

Published by Courtney Grice, Cybaverse

How Microsoft Security Copilot Transforms Threat Detection and Response

Cyber threats are evolving faster than ever, and security teams are under immense pressure. A single missed signal can lead to devastating consequences. Traditional tools are no longer enough—organizations need AI-powered solutions that can outpace adversaries, uncover hidden risks, and respond with speed and precision. Enter Microsoft Security Copilot—the first generative AI security platform designed[…] Read

Published by John Saund, 360 Visibility