top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


TDengine Flaw Lets Unauthenticated Attackers Crash Industrial Databases With One Packet
A high-severity vulnerability in the TDengine time-series database can allow an unauthenticated remote attacker to crash a server with a single malformed packet, according to research disclosed by Ridge Security. The flaw, tracked as CVE-2026-42542, affects TDengine versions 3.4.0.0 through 3.4.1.5 and is fixed in version 3.4.1.6. It stems from an integer underflow in the database's handling of a length field in its custom binary RPC protocol on TCP port 6030. No credentials,
8 minutes ago


AvisLoader Uses Tox Peer-to-Peer Messaging to Resist Domain Takedowns
A newly documented Windows malware loader uses the encrypted Tox peer-to-peer messaging network for command and control, making it less dependent on domains that defenders can seize or block. Varonis Threat Labs discovered AvisLoader on an exposed staging server alongside a ClickFix lure, supporting tools and a web-based command center. The loader was also advertised for sale on a cybercrime forum, according to the researchers. The observed delivery chain used a fake document
11 minutes ago


NVIDIA Launches Open Agent Safety Platform for Full-Stack AI Security
NVIDIA has introduced the Open Agent Safety Platform, an open software platform and reference architecture intended to secure autonomous AI systems from testing through deployment. The initiative is designed to connect controls across the agent runtime, underlying compute infrastructure and physical systems that execute agent-directed tasks. More than 100 companies are participating, according to NVIDIA and launch partner SentinelOne, including Netskope and 1Password. NVIDIA'
1 day ago


The Verification Gap: Why Security Teams Can't Keep Pace With AI-Generated Code
Generative AI removed nearly all the friction from writing code. Work that took days now takes minutes. That's a real gain. But the processes we use to confirm that code actually works, and works safely, haven't moved at anywhere near the same speed.
3 days ago


Team Cymru Finds 80,000 AI Relay Servers Hiding Access to Frontier Models
Team Cymru researchers uncovered more than 80,000 LLM relay servers that can conceal the location and identity of users accessing frontier AI models.
6 days ago


Malicious Bot Traffic Surges 124% as AI Agents Target Login Pages
DataDome says malicious bot traffic rose 124% as agentic browsers and commodity proxy networks made automated attacks cheaper and more human-like.
6 days ago
bottom of page