Latest stories — Page 102

Illustration: An AI scanning software code for vulnerabilities
AI Security

Anthropic Says Project Glasswing AI Has Flagged 10,000 High-Severity Bugs in a Month

The Claude-based scanner has been pointed at widely deployed open-source code since October. Anthropic has not named the affected projects.

3 min read
Illustration: cybersecurity experts analyzing a network map with highlighted compromised routers
Threat Intelligence

GRU Operators Drained Microsoft 365 Tokens by Rewriting DNS on 18,000 SOHO Routers

Forest Blizzard shifted from targeted router malware to mass DNS hijacking after a UK advisory in August, intercepting OAuth tokens on Outlook on the web.

3 min read
Illustration: a classroom with a laptop showing a hacked login page, symbolizing a cyber attack on education
Breaches

The Login Page That Demanded a Ransom

ShinyHunters defaced Canvas mid-finals week, taking the learning platform offline and exposing what one researcher calls an eight-month attack arc against Instructure.

3 min read
Illustration: A digital montage of AI technology identifying vulnerabilities in software code
Vulnerabilities

Microsoft Skips a Zero-Day for the First Time in Two Years. Nobody Wants to Talk About Why.

118 fixes shipped, none under active exploit, and a quiet Anthropic project keeps surfacing in vendor briefings. Microsoft, Apple and Oracle declined to discuss it on the record.

3 min read
Illustration: A digital representation of cybersecurity chaos, featuring bugs, botnets, and supply chain imagery
Threat Intelligence

The Week the Backlog Came Due: Linux Holes, Defender Zero-Days, and a Poisoned Dev Tool

A messy seven days for defenders, where forgotten servers and trusted tooling did most of the damage.

3 min read
Illustration: A futuristic AI network integrating with various cybersecurity vendor logos
AI Security

Anthropic Adds 28 Enterprise Security Integrations to Claude, Including CrowdStrike and Okta

The AI company is wiring Claude into the core of enterprise security stacks, from endpoint detection to identity management.

3 min read
Illustration: a hacker targeting Microsoft 365 through OAuth
Identity & Access

FBI flags Kali365, the latest phishing kit pitched at draining Microsoft 365 tenants

The bureau says the subscription-priced service abuses OAuth device-code flows to lift session tokens and walk straight past MFA.

3 min read
© 2026 Threat Vectr