A single unauthenticated HTTP request to Metabase's password-reset endpoint was all it took for an attacker to gain full administrator access to an analytics platform trusted by tens of thousands of ...
LexisNexis took its Diligence, Metabase API, and Newsdesk services offline last week after detecting "unusual activity on ...
A critical Gremlin API vulnerability exposed a path to any Cosmos DB instance, including Microsoft’s own services, before the company redesigned the platform.
Azure Cosmos DB's Gremlin flaw let Wiz escape the sandbox and retrieve an account key. Microsoft found no unauthorized ...
Invicti Security, a leader in web application and API security, today announced Invicti Agentic Pentest, a new approach to penetration testing that combines autonomous AI reasoning with Invicti's ...
Snyk brought Evo Continuous Offensive Security to general availability at Black Hat USA 2026, adding an autonomous, AI-powered penetration testing ...
Development environments have evolved into toolkits for directing coding models and coordinating agents. GitHub Copilot, ...
Sigma Computing needed GraphQL-native DAST, not a REST crawler with GraphQL bolted on. Here's how they got full endpoint coverage and slashed their triage time with Escape.
Microsoft remains a Buy: learn how agentic orchestration, in-house silicon, and SLMs cut AI costs. Click here to know more.
The Hacker News is the top cybersecurity news platform, delivering real-time updates, threat intelligence, data breach ...
Wiz Research disclosed Wednesday that a chain of vulnerabilities in Azure Cosmos DB's Gremlin query engine — which the firm named CosmosEscape — allowed any attacker with a standard Cosmos DB account ...
Discover the best open-source vulnerability scanners of 2026 that help CIOs minimize security costs while ensuring robust protection against software vulnerabilities. Learn about their features and ...