DEFION and NCSC-NL warn of a growing trend: attackers increasingly route their traffic through residential proxy networks to evade detection. How they work, how to detect them, and how to reduce your risk.
CVE-2026-35273 is a CVSS 9.8 pre-authentication RCE in Oracle PeopleSoft PeopleTools, exploited as a zero-day for two weeks by ShinyHunters. Patching is step two. Here is what to check first.
Hundreds of publicly accessible AI agent dashboards found, sometimes protected only by a four-digit PIN. Research into agentic AI security risks by DEFION Offensive Security Specialist Jean de Cuba.
Threat actors increasingly use OSINT, public metadata, and psychological pressure to fabricate convincing cyber breach claims without proving compromise. Learn how these extortion tactics work.
A real-world IR case study: an attacker used an intern account with Domain Admin rights to compromise 26 systems, exfiltrate 175 GB of sensitive data, and nearly deploy ransomware across an educational institution.
NIS2 is the EU cybersecurity directive applying across Europe. Learn which sectors are covered, what obligations apply, and how to prepare your organization.
DORA is the EU regulation for digital resilience of financial institutions, in force since January 2025. Learn who falls under it, what the 5 pillars are, and how to comply.