Content Paint

cybersecurity

Critical MCP vulnerability in nginx-UI now actively exploited in the wild

The popular nginx-UI tool, with over 11,000 stars on GitHub and 430,000 Docker pulls, is missing authentication middleware.

Anthropic's zero day machine "Mythos" triggers hype, criticism

Canny marketing but “vulnpocalypse” fears are real

A hitchhiker's guide to RSAC: what you may have missed, from post-quantum to NSA veterans

Iain Thomson wraps up the most notable dispatches from the biggest security conference of the year.

A child using an abacus. Google has counted four zero day vulnerabilities in Chrome this March.

Chrome has already seen half as many zero days this year as it did in 2025.

Security researchers are in the last-chance saloon to save their jobs from AI

Katie Moussouris calls on security researchers to sandbag human-in-the-loop processes against AI automation.

Open source scanner compromise reveals CI/CD's vulnerable underbelly

"GitHub’s Immutable badge was intended as a trust signal..."

"I have customers running things on Humvees in the desert... Choose your own adventure"

EU sanctions and CISA warnings: Iran's cyber attacks are evolving

Iran's tradecraft is evolving, and sanctions can't keep up.

Hackers turned a compromised npm package into full AWS admin access in 72 hours

Hackers "enumerated and accessed objects within S3 buckets, terminated production EC2 and RDS instances, and decrypted application keys."

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.