top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


Dropbox Breach Exposes Identity Flaw in Legacy Lenovo Login Integration
A weakness in an old authentication connection between Dropbox and Lenovo allowed an attacker to enter roughly 5,000 Dropbox accounts without obtaining their passwords, according to company notifications. The compromise targeted Lenovo’s email verification process. An unauthorized party could allegedly create a Lenovo ID using another person’s email address, then present that identity to Dropbox as proof that the attacker controlled the corresponding account. Dropbox accepted
3 hours ago


HeroDevs Joins Akrites to Tackle AI-Discovered Open Source Vulnerabilities
Artificial intelligence is making software vulnerabilities easier to find. Fixing them before attackers strike is becoming the harder problem. HeroDevs, a company specializing in commercial support for end-of-life open source software, has joined Akrites, a Linux Foundation-backed initiative designed to coordinate the investigation, remediation, and responsible disclosure of open source security vulnerabilities. Akrites addresses a growing complication in software security. A
3 hours ago


Ambient.ai Launches Agentic Video Security Tools to Monitor Cameras and Accelerate Investigations
Ambient.ai is expanding its AI-powered physical security platform with new agentic monitoring, video management and forensic investigation capabilities designed to help security teams manage sprawling camera networks. The centerpiece is Agentic Video Walls, an AI system that continuously evaluates feeds from every connected camera. Instead of requiring operators to watch a fixed grid of screens, the system selects the most relevant activity across a site every 60 seconds and
Aug 26


Hidden AI Use Is Creating a New Blind Spot for Enterprise Security Teams
Artificial intelligence is spreading through corporate environments faster than security teams can track it, and new research suggests the biggest risks may be hiding outside traditional cybersecurity controls. Fable Security analyzed 90 days of security telemetry covering approximately 290,000 employees across more than 30 organizations during the second quarter of 2026. Its inaugural AI Behavior Index found that 34 percent of workers had a detectable generative AI applicati
Aug 25


Hackers Exploit Critical miniOrange SAML Flaws to Hijack WordPress Admin Accounts
Attackers are exploiting two authentication vulnerabilities in the Xecurify miniOrange SAML 2.0 Single Sign On plugin that could provide administrator access to vulnerable WordPress websites without passwords. The flaws affect how the plugin validates Security Assertion Markup Language, or SAML, responses used to connect identity providers with WordPress. The more critical vulnerability, CVE-2026-15981, carries a CVSS score of 9.8. It occurs because the plugin can interpret a
Aug 25


Citrix Turns Windows PCs Into Backup Workstations With UniconOS Dual Boot
New recovery option lets employees bypass a damaged Windows installation and securely reconnect to business applications within minutes Citrix has introduced a dual-boot recovery capability designed to keep employees working when ransomware, faulty updates or operating system failures disable their Windows environments. Available in Citrix UniconOS Release 7 2607, the technology installs a hardened UniconOS environment in a separate partition on compatible Windows computers.
Aug 25
bottom of page