Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Microsoft's 2026 NuGet Certificate Update and What It Means for Software Security

The significance of software supply chain security is on the rise in today’s software development practices. Organizations around the world are increasingly depending upon third-party software libraries, package managers, CI/CD pipelines, and automation for dependency management. Therefore, verifying the authenticity and integrity of software is critical. Starting September 23, 2026, Microsoft will adopt a new certificate for author-signing NuGet packages.

See How Many People Fell for My Fake Cybersecurity Award

Cybersecurity awards can create credibility surprisingly quickly, even when nobody stops to question where the recognition came from. A fake Canva award for “best shirts in cybersecurity” attracted more than 100 congratulations, demonstrating how easily perceived authority can influence people.

Request and Approve Privileged Access Directly in Google Chat With Keeper Security

Keeper Security, the leading zero-trust and zero-knowledge identity security platform, today announces a new integration that brings approval workflow management and secure credential access directly into Google Chat, extending zero-trust identity governance to Google Workspace environments.

How Soteria scaled its MDR practice on LimaCharlie

Soteria started as a consulting and advisory firm focused on penetration testing and incident response. Co-founder and managing principal Paul Ihme describes the company's growth from there as organic, expanding into virtual CISO work, offensive security, managed detection and response, and Microsoft 365 security products.

Investigate your network in plain English: introducing Natural Language Query

Every SOC analyst has been there. An alert fires. You know what you need to find. Maybe it's all outbound connections from a specific host that spiked overnight. Maybe it's every DNS query over 100 characters from a subnet you're watching. You know the question. What you don't know is the exact query syntax you need to ask it. So you open the documentation. You search for field names. You try a query, get it wrong, adjust, and try again. Minutes pass.

Canada Raises the Bar for Critical Infrastructure Cybersecurity. Is Your Network Ready?

Canada has taken a significant step toward strengthening national cyber resilience. With Royal Assent now granted to Bill C-8, the Government of Canada is establishing a new framework for protecting critical cyber systems and securing the country's most essential services.

What We Learned Testing Jev on Security Alert Triage

Yaniv Zimmer is an AI researcher at Torq, focusing on cybersecurity research at the crossroads of artificial intelligence, deep learning, and defensive operations. Drawing on extensive experience within Unit 8200 alongside industry and academic AI research roles, his work centers on advancing SOC AI architectures and threat detection capabilities Like a lot of people, we were excited when Jev launched. The premise is genuinely useful in production: an intelligent language model built for classification.