-
Hackers actively exploit critical RCE in WordPress Alone theme
Hackers actively exploit critical RCE in WordPress Alone theme Threat actors are actively exploiting a critical unauthenticated arbitrary file upload vulnerability in the WordPress theme ‘Alone,’ to achieve remote code execution and perform a full site takeover. … Read more Published Date: Jul 30, 2025 (14 hours, 11 minutes ago) Vulnerabilities has been mentioned in this article.…
-
Securing MCP Servers: A Comprehensive Guide to Authentication and Authorization
MCP (Model Context Protocol) is emerging as a standard interface for connecting LLM agents to developer tools and APIs. From GitHub workflows to CLI utilities, early adopters like Claude Code and Cursor are using MCP to let agents trigger real-world actions. But as the adoption grows, comes a critical question: How secure are these integrations?…
-
Measuring and Managing Abstraction Debt: Key to Building Flexible Platforms
A few months ago, when the KubeCon London program committee selected my talk for Platform Engineering Day and scheduled it for April 1, I thought it was a prank. It turns out it wasn’t. As I stood on stage delivering my talk, “Platform Abstractions: An Asset or Liability?” I realized how much the platform engineering…
-
China’s Covert Capabilities | Silk Spun From Hafnium
China-linked hackers used patented spyware tech from front companies tied to Hafnium, exposing gaps in cyber threat attribution. Executive Summary SentinelLABS identified 10+ patents for highly intrusive forensics and data collection technologies that were registered by companies named in U.S. indictments as working on behalf of the Hafnium threat actor group. These technologies offer strong,…
-
AI Cloud Security Essentials: Protecting Data, Models, and Infrastructure
Organizations are increasingly relying on AI/ML models for essential functions. The convergence of AI with cloud-based infrastructure provides unprecedented opportunities, but also introduces significant risks, including data breaches, model theft, and regulatory compliance violations. Consider a typical AI deployment journey: Imagine an AI model lifecycle from early data collection and training to deployment and continuous…
-
macOS NimDoor | DPRK Threat Actors Target Web3 and Crypto Platforms with Nim-Based Malware
NimDoor shows how threat actors are continuing to explore cross-platform languages that introduce new levels of complexity for analysts. Executive Summary DPRK threat actors are utilizing Nim-compiled binaries and multiple attack chains in a campaign targeting Web3 and Crypto-related businesses. Unusually for macOS malware, the threat actors employ a process injection technique and remote communications…
-
How to Build Scalable AI Systems in the Cloud
Traditional infrastructure often struggles to meet compute-intensive processing demands, unpredictable resource demands, and the data velocity of complex AI models. An AI cloud, particularly a GPU-based cloud platform, overcomes these shortcomings by offering extremely elastic computational resources, high-performance storage, and scalable infrastructure optimized for both AI training and inference. In contrast to generic compute-based traditional…
-
Follow the Smoke | China-nexus Threat Actors Hammer At the Doors of Top Tier Targets
This report uncovers a set of related threat clusters linked to PurpleHaze and ShadowPad operators targeting organizations, including cybersecurity vendors. Executive Summary In October 2024, SentinelLABS observed and countered a reconnaissance operation targeting SentinelOne, which we track as part of a broader activity cluster named PurpleHaze. At the beginning of 2025, we also identified and…
-
On-Premise AI vs. Cloud AI: Making the Right Infrastructure Choice
Artificial intelligence (AI) has become a critical component of modern business operations. As it becomes more prevalent, making the right infrastructure decision, on-premises, in the cloud, or a hybrid of both, has become essential. This decision has significant implications for cost, scalability, security, and compliance. According to the Evans Data report, nearly 9.7 million developers…
-
FreeDrain Unmasked | Uncovering an Industrial-Scale Crypto Theft Network
FreeDrain is a modern, scalable phishing operation exploiting weaknesses in free publishing platforms to steal cryptocurrency on a global scale. Executive Summary FreeDrain is an industrial-scale, global cryptocurrency phishing operation that has been stealing digital assets for years. FreeDrain uses SEO manipulation, free-tier web services (like gitbook.io, webflow.io, and github.io), and layered redirection techniques to…