Before the Login Prompt: How CVE-2026-32746 Enables Pre-Authentication Code Execution 

Before the Login Prompt: How CVE-2026-32746 Enables Pre-Authentication Code Execution TL;DR   Security researchers from Dream Security disclosed CVE-2026-32746 on March 11, 2026, a critical vulnerability affecting all versions of GNU InetUtils telnetd through 2.7. The flaw carries a CVSS score of 9.8 out of 10, enabling unauthenticated remote attackers to execute arbitrary code with root privileges. The vulnerability

Why 65% of Enterprises Lack Basic Data Controls Despite Rising Regulatory Penalties 

Why 65% of Enterprises Lack Basic Data Controls Despite Rising Regulatory Penalties TL;DR   Recent research reveals that 65% of enterprises lack data controls across the entire data lifecycle, despite regulatory frameworks worldwide imposing penalties reaching ₹250 crore in India, €20 million in Europe, and similar amounts globally. Organizations know requirements exist yet consistently fail to implement basic

87% Say AI Is the Fastest-Growing Cyber Risk: Are Enterprise Security Stacks Ready? 

87% Say AI Is the Fastest-Growing Cyber Risk: Are Enterprise Security Stacks Ready?  TL;DR The World Economic Forum’s Global Cybersecurity Outlook 2026 surveyed 804 cyber leaders across 92 countries and found that 87% identify AI vulnerabilities as the fastest-growing cyber risk. Yet only 64% are assessing AI security before deployment, and 47% have no security controls on

When Enterprise AI Tools Become Invisible Command-and-Control Infrastructure

When Enterprise AI Tools Become Invisible Command-and-Control Infrastructure TL; DR   Security researchers have discovered a novel attack technique that transforms enterprise AI assistants with web browsing capabilities into covert command-and-control channels. The method requires no authentication, bypasses traditional security controls, and enables bidirectional communication between malware and attackers through platforms your firewall already trusts.  What makes this