AI Security, Cloud Security, Incidents & Breaches, Security Operations

Kaspersky Analysis Reveals GPU Performance Gains Render Eight-Character Passwords Obsolete

A new study by Kaspersky analyzing 231 million leaked passwords shows that 48% can be cracked in under a minute. Rapid advancements in consumer GPU hardware, specifically the shift to the NVIDIA RTX 5090, have dramatically reduced the time required to break simple hashes, rendering traditional eight-character passwords virtually useless against modern brute-force and AI-assisted attacks.

Read more

AI Infrastructure Risk, Identity & Governance, Vulnerability Intelligence

Convergence of Human and System Vulnerabilities: Analyzing ‘Copy Fail’ and Recent Japanese Security Breaches

Recent high-profile security incidents involving Hatena and Money Forward, combined with the discovery of the ‘Copy Fail’ Linux kernel vulnerability (CVE-2026-31431), highlight a dangerous trend where attackers combine social engineering with local system exploits to bypass traditional network defenses.

Read more

AI Infrastructure Risk, Cloud Security, Identity & Governance

Passkeys and SSO Adoption Drive First Decline in Managed Password Volume Since 2020

A 2026 study by NordPass reveals that the average number of managed passwords per user has decreased to 120, marking a reversal of a multi-year growth trend. The shift is attributed to the rise of passkeys, biometric authentication, and Single Sign-On (SSO) platforms, signaling a transition toward passwordless infrastructure.

Read more

AI Infrastructure Risk, AI Security, Cloud Security, Vulnerability Intelligence

Google Identifies First Cases of AI-Driven Zero-Day Exploitation by Threat Actors

Google’s Threat Intelligence Group (GTIG) has reported the first observed instances of hackers using AI to discover zero-day vulnerabilities and generate exploit tools for large-scale attacks. The activity involved several notorious hacking groups collaborating to bypass two-factor authentication (2FA) in open-source network management tools.

Read more

AI Infrastructure Risk, AI Security, Incidents & Breaches, Security Operations

Wistron Accelerates Blue Team Response from Hours to Minutes via Generative AI Integration

At the 2026 CYBERSEC Taiwan conference, high-tech manufacturer Wistron revealed how its security operations center (SOC) successfully integrated generative AI to reduce incident analysis time from 15 minutes to 1 minute and overall response times from hours to under 10 minutes, achieving a 97.5% accuracy rate in threat detection.

Read more

AI Infrastructure Risk, Cloud Security, Identity & Governance, Incidents & Breaches

PCPJack Malware Framework Targets Cloud Infrastructure while Displacing Rival Threat Group

Security researchers have identified a new cloud-native malware framework, PCPJack, which specializes in credential theft across Docker, Kubernetes, and Redis environments. Uniquely, the framework actively removes tools associated with the TeamPCP (PCPcat) threat group, suggesting a possible internal rift or turf war over compromised cloud assets.

Read more

AI Infrastructure Risk, AI Security, Cloud Security, Identity & Governance

Taiwan FSC Unveils Post-Quantum Cryptography Migration Guidelines for Financial Sector

Taiwan’s Financial Supervisory Commission (FSC) has announced a new roadmap for financial cybersecurity resilience, focusing on the ‘AI Vulnerability Storm’ and the transition to Post-Quantum Cryptography (PQC). The commission is set to release a formal PQC migration guide to prepare the industry for ‘Y2Q’ risks by 2029.

Read more