Posts

Schneier - Jailbreaking the F-35 Fighter Jet

Countries around the world are becoming increasingly concerned about their dependencies on the US. If you’ve purchase US-made F-35 fighter jets, you are dependent on the US for software maintenance. The Dutch Defense Secretary recently said that he could jailbreak the planes to accept third-party software. from Schneier on Security https://www.schneier.com/blog/archives/2026/03/jailbreaking-the-f-35-fighter-jet.html

The Hacker News - Threat Actors Mass-Scan Salesforce Experience Cloud via Modified AuraInspector Tool

Salesforce has warned of an increase in threat actor activity that's aimed at exploiting misconfigurations in publicly accessible Experience Cloud sites by making use of a customized version of an open-source tool called AuraInspector. The activity, per the company, involves the exploitation of customers' overly permissive Experience Cloud guest user configurations to obtain access to sensitive from The Hacker News https://thehackernews.com/2026/03/threat-actors-mass-scan-salesforce.html

The Hacker News - CISA Flags SolarWinds, Ivanti, and Workspace One Vulnerabilities as Actively Exploited

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added three security flaws to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The vulnerability list is as follows - CVE-2021-22054 (CVSS score: 7.5) - A server-side request forgery (SSRF) vulnerability in Omnissa Workspace One UEM (formerly VMware Workspace One UEM) that from The Hacker News https://thehackernews.com/2026/03/cisa-flags-solarwinds-ivanti-and.html

KnowBe4 - AI-to-AI Communication and Secret AI Code Must Be Stopped At All Costs

Image
As I wrote in my recent book, How AI and Quantum Impacts Cyber Threats and Defenses , as we humans use AI more and more, AI will begin to communicate with itself using new AI-only communication methods that humans cannot easily see or read. from Human Risk Management Blog https://blog.knowbe4.com/ai-to-ai-communication-and-secret-ai-code-must-be-stopped-at-all-costs

The Hacker News - UNC4899 Breached Crypto Firm After Developer AirDropped Trojanized File to Work Device

The North Korean threat actor known as UNC4899 is suspected to be behind a sophisticated cloud compromise campaign targeting a cryptocurrency organization in 2025 to steal millions of dollars in cryptocurrency. The activity has been attributed with moderate confidence to the state-sponsored adversary, which is also tracked under the cryptonyms Jade Sleet, PUKCHONG, Slow Pisces, and from The Hacker News https://thehackernews.com/2026/03/unc4899-used-airdrop-file-transfer-and.html

KnowBe4 - Your KnowBe4 Fresh Compliance Plus Content Updates | February 2026

Image
from Human Risk Management Blog https://blog.knowbe4.com/your-knowbe4-fresh-compliance-plus-content-updates-february-2026

The Hacker News - Can the Security Platform Finally Deliver for the Mid-Market?

Mid-market organizations are constantly striving to achieve security levels on a par with their enterprise peers. With heightened awareness of supply chain attacks, your customers and business partners are defining the security level you must meet. What if you could be the enabler for your organization to remain competitive — and help win business — by easily demonstrating that you meet these from The Hacker News https://thehackernews.com/2026/03/can-security-platform-finally-deliver.html