Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

How Cloudflare addressed a cross-tenant data exposure vulnerability in Containers

On September 4, 2026, Oren Yomtov, a security researcher from Accomplish, responsibly reported a vulnerability affecting Cloudflare Containers and Cloudflare Sandboxes (which is built on Containers), through Cloudflare’s bug bounty program. Cloudflare has fully remediated the vulnerability, and we have no evidence that customer data has been compromised.

Uncovering indirect attack paths to virtualized domain controllers in Azure

Within Netwrix Security Research, we were helping a customer with an Entra ID assessment and knew they'd already done AD tiering on-prem. We also knew they had domain controllers virtualized in Azure, but it was hard to tell which Windows Server was actually a DC. We figured out that Azure Run Command lets you run commands as SYSTEM, so we used that to do reconnaissance and identify the DCs.

Streamline Prioritization in Your CTEM Program with Seemplicity

Prioritization in CTEM is the process of determining which exposures should be addressed first based on the risk they pose in your specific environment. Rather than relying on severity scores alone, effective prioritization combines internal business and asset context with external threat intelligence, then focuses teams on the fixes that reduce the most meaningful risk.

Bitdeer Extends Its Infrastructure Strategy From Bitcoin Mining to Full-Stack AI Cloud and Model Studio

Every mining cycle returns to the same unromantic question: what does one megawatt earn after the electricity bill? As hashprice narrows the margin on mining hardware, AI workloads offer power-rich operators another source of revenue. Bitdeer's move into full-stack AI Cloud is therefore less a change of identity than a change in how infrastructure gets paid.

Cloud Infrastructure Entitlement Management (CIEM): A Complete Guide

In the cloud, an identity is no longer necessarily a person. It can be an application calling an API, a workload accessing storage, a service account running an automated process, or a machine interacting with another cloud resource. Each needs permissions to operate, and each becomes part of an access environment that changes as quickly as the infrastructure itself. This has expanded identity security beyond managing users and accounts to governing a much larger ecosystem of human and non-human access.

How Technology Is Changing the Future of Cybersecurity

The digital world is growing faster than ever before. The security of sensitive information becomes increasingly critical as reliance on digital systems increases in business and daily life. Cybersecurity should not be a matter of merely deploying home-grown simple firewalls or installing basic antivirus. Security continues to be an arms race as attackers grow more sophisticated in their techniques, and more intelligent in their defense. The way you protect data has been radically changed by advanced technology today. Here is a closer look at how modern engineering is shaping the future of digital security.

CDN Streaming Showdown: Fastly vs. Akamai vs. Cloudflare vs. CloudFront

When you hit play on a video, you don't think about the army of servers that rush to deliver it. But for anyone running a streaming platform, choosing a CDN (Content Delivery Network) is crucial. Latency, throughput, and cache-hit ratio can be the difference between smooth streaming and angry users smashing the refresh button. Here's a practical, human-friendly look at four heavyweights in the streaming space: Fastly, Akamai, Cloudflare, and AWS CloudFront.
Featured Post

Data centres and the changing hybrid threat

The UK is in the middle of a data centre building boom. Government forecasts put AI capable capacity needs at 6GW by 2030, three times what exists today, while electricity demand from the sector is also expected to rise significantly.

Close the Discovery Gaps in Your CTEM Program with Seemplicity

CTEM Discovery is about more than finding assets. It’s about understanding what exists, what’s actually being scanned, and how data from different tools connects. Seemplicity correlates security, inventory, identity, and ownership data across sources to create a unified view of each asset, expose coverage gaps, and give security teams the context they need to prioritize, validate, and remediate exposures effectively.

Research - From Square Root to /root: Escalating Privileges in Azure Containers with Python in Excel

Isolation is not the same thing as security. Ron Ben Yizhak from SafeBreach Labs presented this research at Black Hat USA and DEF CON: when Microsoft shipped Python in Excel, the code didn't run on a machine. It ran in an isolated container in Azure. So he asked the obvious question. How isolated is it, really? An isolated environment still has an attack surface. It just moves. See how Ron: If your teams are evaluating cloud-executed code features, this one is worth the full read—the methodology matters as much as the findings.