Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Introducing Apex Discovery to secure every domain you actually own

Most tools will only test the domains you already know about. We’ve decided that’s not enough. TLDR: Detectify’s new Apex Discovery automatically identifies root domains likely to belong to your organization (from M&A, subsidiaries, and shadow IT) for complete security coverage. Review and confirm our curated suggestions in a click, and instantly start protecting them with the same continuous discovery and vulnerability assessment as the rest of your attack surface.

When AI agents look like attackers: what behavioral telemetry tells us

An X-Ops analysis of how AI coding agents trigger endpoint detection rules designed for adversaries AI coding agents (Claude Code, Cursor, Codex, and others built on skill packs such as GStack) are showing up in customer environments. They write code, install dependencies, automate browser tasks, and troubleshoot failures by trying alternative approaches.

Static DLP Is Leaving You in the Dark: Why It's Time for Intelligent, Self-Serve Outbound DLP and Misdirected Content Analysis

When we think about email security, our minds almost always jump to the inbound threats: the sophisticated phishing lures, the AI-generated business email compromise (BEC) attacks, and the malicious attachments knocking at the perimeter. But there is a silent, internal crisis happening on the way out of your organization. And chances are, you’re flying completely blind to it.

2026 Phishing by Industry Benchmarking Report: Findings on Human Risk

Every year, KnowBe4 analyzes millions of simulated phishing tests to measure one thing: how likely is your workforce to fall for a phishing attack? The results, published in the 2026 Phishing by Industry Benchmarking Report, paint a clear picture of where human risk concentrates — and what organizations can do about it. Here are the key findings security leaders need to know.

Step-by-Step Guide: Jira SAML SSO Setup with miniOrange as Identity Provider (IdP)

This video walks you through the complete setup of SAML Single Sign-On (SSO) in Jira using miniOrange as your Identity Provider (IdP). In just a few easy steps, you'll learn how to configure secure authentication for your Jira users using the miniOrange platform. With this integration, you can: Enable seamless SSO login to Jira using miniOrange credentials Improve security with SAML-based authentication Centralize user access control through miniOrange Streamline user access to Jira Software and Jira Service Management.

How to Configure Confluence OAuth/OIDC SSO Integration with Keycloak | Step-by-Step Guide

Simplify your team's access to documentation by centralizing authentication. By integrating Keycloak with Confluence using the miniOrange OAuth/OIDC SSO plugin, you can provide a secure, one-click login experience while maintaining full control over your user identity data. In this video, we walk through the end-to-end setup: starting with creating a Client in the Keycloak Admin Console and finishing with the final configuration in the Confluence Administration dashboard. You will see exactly how to manage Realm settings, redirect URIs, and attribute mapping to ensure a smooth SSO flow.

Ep. 5: The Heists

In the decade after Sony, North Korea learned something fundamental: Destructive cyberattacks make headlines. Financial cyberattacks make money. One year after Sony, North Korea pulled off one of the most audacious bank heists in history and reshaped cybercrime in the process. Today, the regime has expanded those same tactics into billion dollar cryptocurrency heists and sprawling money laundering schemes designed to evade sanctions and bankroll the state – and its nuclear weapons program.

Enable Jira 2FA for Customers and skip for Employees

Credential abuse is the common vector in 13% of data breaches. Cybercriminals can gain access to sensitive organizational data through weak, stolen, or reused passwords belonging to employees or customers. Single sign-on (SSO) and Multi-Factor Authentication (MFA) are industry-standard solutions for addressing these issues, and they can help to mitigate security threats. But external Jira Service Management (JSM) customers often authenticate differently.

Access to Your Systems No Longer Has Borders: Take Control of Who Gets In

It's 4 p.m. and a client calls. It's an employee's last day, and you need to make sure they no longer have access to company environments, applications, systems, sensitive information—or even the corporate laptop. You remove VPN access. Then remote desktop access. Then access to applications and internal systems. Multiple locations, multiple consoles, and it only takes missing one of them to leave a door open. Now multiply that by the number of clients you manage.