Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

A broken DNSSEC rollover took down .AL. Now 1.1.1.1 tells you when validation is bypassed

On July 3, 2026, the Albanian communications authority (AKEP), the operator of the.AL country-code top-level domain (TLD) of Albania, attempted a DNSSEC key rollover. Something went wrong, resulting in DNSSEC validation failures. Any validating DNS resolver receiving these signatures was required by the DNSSEC specification to reject them and return errors to clients. That includes 1.1.1.1, the public DNS resolver operated by Cloudflare.

Ten Black Hat NOCs and counting: Corelight sees it all

Whenever I come back from a Black Hat NOC, people always ask the same question: “So, what did you see?!” They understand how unique it is to have access to the detailed logs generated by an NDR overseeing the network traffic of a conference with thousands of attendees. There is always something to see. There are always stories that come out of the packets; those stories evolve into patterns, and the patterns offer the gift of lessons.

VMware VCF 9, VAIO with Zerto, and 11:11 DRaaS: What Our Customers Should Know Now

If you have been hearing more about vSphere APIs for I/O Filtering (VAIO) in Zerto conversations, there is a simple explanation: VAIO is VMware’s I/O filtering framework that has been created for Independent Software Vendors (ISVs) to build solutions on. Directionally, Zerto has supported this framework for some time and, coupled with VMware changes, this will be the preferred and default replication method used by Zerto in the not too distant future.

Immutable backup: Why it matters for ransomware recovery

Backups are often the last line of defense when ransomware reaches business-critical systems. But modern ransomware attacks do not target production data alone. Attackers may also search for backup repositories, compromise backup administrator accounts, change retention policies or delete recovery points before encrypting the live environment. When clean backup copies are no longer available, recovery becomes slower, more expensive and less predictable.

The EU AI Act Is Here. Is Your AI Environment Ready?

AI has moved from experimentation to operational reality. Last year saw a 50% rise in access to AI for employees, with 88% of organizations using AI in at least one business function. Competitive pressure is accelerating AI adoption. While this creates opportunity, it also creates a new level of operational risk.

ClickFix Social Engineering is Now the Leading Malware Delivery Method

The ClickFix social engineering technique is now the top malware delivery method, according to a new report from ReliaQuest. These attacks trick users into copying a malicious command, then pasting it into a terminal and running it on their computers. “ClickFix remained the dominant delivery method this period and, for the first time, we observed it expand to macOS, delivering infostealers onto a platform many organizations still monitor less closely than Windows,” the researchers write.

Scammers Can Use AI Tools to Pinpoint Your Location Based on a Photo

Scammers can use AI tools to find your location in photos you post to social media, according to researchers at McAfee. This information can then be used in targeted social engineering attacks. The researchers found that free AI models can correctly identify a photo’s location with around 90% accuracy.