Skip to content

Web Application Security Testing

Continuous Offensive Security Testing Is Becoming a Category. Here’s What Most Vendors Will Get Wrong.

COST vs CTEM: What Continuous Offensive Security Testing Requires

Looking for the full COST definition? This post covers the market analysis. For the complete framework, triggers, and how FireCompass delivers Continuous Offensive Security Testing (COST) you can refer to: www.firecompass.com/continuous-offensive-security-testing When someone tells you they do continuous offensive security testing or COST, ask two questions. Q1: Can it prove the exploit with reproduction steps… Read More »COST vs CTEM: What Continuous Offensive Security Testing Requires

Conduent Data Breach (Impacting Volvo Group North America)

Date of Incident: October 21, 2024 – January 13, 2025 Overview: The Conduent Data Breach, impacting Volvo Group North America, occurred between October 21, 2024, and January 13, 2025, and was reported on February 10, 2026. This breach exposed personal details of nearly 17,000 customers and staff, including full names, Social Security Numbers, dates of… Read More »Conduent Data Breach (Impacting Volvo Group North America)

Flickr Data Breach

Date of Incident: 2026-02-05 Overview: The Flickr Data Breach, reported on February 6, 2026, involved the exposure of user data including real names, email addresses, IP addresses, usernames, account types, general location, and platform activity. However, passwords and payment card details remained secure. The breach likely resulted from an exploitation of a vulnerability or compromised… Read More »Flickr Data Breach

Weekly Report: New Hacking Techniques and Critical CVEs 14 Oct – 21 Oct 2025

The week witnessed significant nation-state activity, ransomware campaigns, and infrastructure breaches. F5 Networks disclosed a supply chain compromise exposing 600,000+ BIG-IP devices to zero-day exploitation. North Korean APT groups deployed blockchain-based malware through EtherHiding. Vocus telecommunications suffered SIM swap attacks affecting 1,600 customers. Japanese retailer Askul’s ransomware cascaded through Muji and Loft operations. Key Statistics:… Read More »Weekly Report: New Hacking Techniques and Critical CVEs 14 Oct – 21 Oct 2025

Weekly Cybersecurity Intelligence Report Cyber Threats & Breaches 14 Oct – 21 Oct 2025

The week of October 14-21, 2025 witnessed a surge in sophisticated cyber attacks targeting critical infrastructure, enterprise software, and global supply chains. This period was marked by several high-impact security incidents. The sophistication and scale of these attacks underscore the evolving threat landscape, with nation-state actors leveraging supply chain vulnerabilities, zero-day exploits, and legitimate infrastructure… Read More »Weekly Cybersecurity Intelligence Report Cyber Threats & Breaches 14 Oct – 21 Oct 2025