Duncan Riley
Latest from Duncan Riley
Silverfort uncovers critical Netlogon flaw affecting Windows domain controllers
A new report out today from unified identity security company Silverfort Inc. details a previously undisclosed denial-of-service vulnerability in Microsoft Corp.’s Netlogon protocol that could allow low-privilege machines to crash Windows domain controllers remotely, disrupting core Active Directory services. The vulnerability, dubbed “NOTLogon,” has been assigned CVE-2025-47978 and was patched by Microsoft in its July 8 Patch ...
New Barracuda backup tool extends Microsoft Entra ID data retention
Cybersecurity company Barracuda Networks Inc. today announced the launch of Barracuda Entra ID Backup Premium, a new solution to safeguard Microsoft Entra ID environments from accidental and malicious data loss. Barracuda Entra ID Backup Premium has been designed to give users centralized visibility into backup status, data health and storage insights through a unified dashboard. The service ...
Morphisec warns of Iran-backed ransomware campaign driven by political motives
A new report out today from endpoint security firm Morphisec Inc. reveals the resurgence of Pay2Key, a ransomware operation with ties to Iran’s Fox Kitten advanced persistent threat group, now rebranded as Pay2Key.I2P. Originally exposed in 2020, the updated threat actor is leveraging a ransomware-as-a-service model and incorporating techniques and components associated with the Mimic ransomware family, including a ...
Sonatype report finds 188% spike in open-source malware in the second quarter
Software supply chain management firm Sonatype Inc. today said it found a sharp rise in malicious activity targeting software developers and supply chains in the second quarter. The company’s Q2 2025 Open Source Malware Index report identifies 16,279 newly discovered malicious open-source packages across popular ecosystems such as npm, PyPI and Maven Central. That brings the total ...
Splunk uncovers surge in social engineering through fake CAPTCHA attacks
A new report out today from big data company Splunk Inc. warns of a new trend in cybercrime: a surge in sophisticated social engineering campaigns that use fake CAPTCHA systems to deliver malware without relying on any traditional software vulnerabilities. Dubbed “ClickFix” and “FakeCAPTCHA” attacks, these campaigns are designed to trick users into self-infecting their own ...
Coralogix and AWS team up to enhance AI observability and threat detection
Observability platform company Coralogix Ltd. today announced a new strategic collaboration agreement with Amazon Web Services Inc. to advance artificial intelligence-powered observability and security. Under the collaboration, Coralogix and AWS will create and deliver solutions that leverage Amazon Bedrock to offer comprehensive advance monitoring. The collaboration seeks to address the issue wherein many observability platforms today rely ...
Global VC funding climbs to $91B in second quarter as AI leads investment trends
Global venture capital funding showed renewed strength in the second quarter of this year, with total funding increasing to $91 billion, up from $82 billion in the same quarter of last year. That’s according to a new report released today by market intelligence company Crunchbase Inc. The figure, though up year-over-year, was down from $113 billion in the ...
New Clarifai tool lets AI models run locally and scale through the cloud
Intelligent application development startup Clarifai Inc. today announced the launch of AI Runners, a new offering designed to provide developers and MLOps engineers with uniquely flexible options for deploying and managing their artificial intelligence models. AI Runners allows users to connect models running on their local machines or private servers directly to Clarifai’s platform via a publicly ...
Ingram Micro confirms ransomware attack disrupted systems over July 4 weekend
Information technology products and services giant Ingram Micro Holding Corp. has confirmed that it was targeted by a ransomware attack that resulted in disruption to its services over the July 4 long weekend. The ransomware attack is believed to have first struck the company on July 3, when Ingram Micro’s website and ordering systems first ...
Pimloc raises $5M to expand AI video privacy platform globally
Artificial intelligence video privacy and analytics startup Pimloc Inc. announced today that it has raised $5 million in a strategic investment to accelerate its global expansion, scale up adoption of its platform, and enhance capabilities for privacy-first video and data intelligence. Founded in 2016, Pimloc specializes in developing advanced visual AI systems that allow organizations ...









