Geek Guy

Cybersecurity Architecture and Identity Shielding: Hardening Online Registrations Against Data Harvesting

In this post, I will talk about cybersecurity architecture and identity shielding and how to harden online registrations against data harvesting. Cybersecurity audits routinely reveal that corporate data aggregators treat mobile phone numbers as primary cross-platform tracking keys, making a secure virtual number infrastructure essential for privacy-conscious users and DevSecOps engineers alike. Surrendering primary cell…

Cybersecurity Services for Businesses That “Don’t Have Anything Worth Stealing”

In this post, I will talk about cybersecurity services for businesses that “don’t have anything worth stealing”. Every business owner has said it at least once. Usually during a conversation about budgets, insurance, or that nagging feeling that they should probably be doing more about security. “We’re small. We don’t really have anything worth stealing.”…

The Agentic AI threat cluster: Seven incidents, three actors, and what they mean for your exposure

Tenable’s Research Special Operations (RSO) team has been tracking a cluster of agentic AI threat activity since late July 2026. The Taiwan autonomous AI cyber attack confirmed what the cluster data already showed: near-autonomous offensive AI has crossed from theoretical risk to operational reality. Key Takeaways Taiwan’s Ministry of Digital Affairs confirmed a near-autonomous AI…

Gridheart Expands Nordic MSP Security with OpenText Deal

Gridheart, a provider of cloud-based cybersecurity solutions for MSPs in the Nordic region, is expanding its cybersecurity offering with OpenText Cybersecurity. OpenText portfolio expands Gridheart’s Nordic MSP offering Via the partnership, MSPs across the Nordics will gain access to OpenText’s SMB security portfolio through Gridheart. This will enable MSPs to offer customers a unified, end-to-end…

IGEL, Menlo Security Unite Endpoint and Browser Security

IGEL and Menlo Security are combining IGEL’s Adaptive Secure Endpoint Platform with Menlo Secure Application Access to extend Zero Trust controls from endpoints to browser and SaaS applications. The joint solution is designed to reduce reliance on virtual desktop infrastructure for browser-first workflows, limit endpoint agent sprawl, and simplify secure application access across enterprise environments.…

TD SYNNEX Expands IBM Distribution Into 20 Countries

TD SYNNEX is expanding its IBM distribution footprint into 20 new countries across Europe, Asia-Pacific, and Latin America, giving partners broader access to IBM solutions and support for scaling their businesses across global markets. The additional new countries include: Europe: Bulgaria, Denmark, Finland, Ireland, Slovakia, Sweden, Serbia, Macedonia, Montenegro, Albania, and Bosnia & Herzegovina. Asia…

Trezor Says ShipMonk Breach Exposed Data of Nearly 14,000 Customers

Trezor, the Prague-based manufacturer of cold crypto storage devices, disclosed a significant data breach on Thursday that exposed the personal information of nearly 14,000 customers.  The incident, which the company described as occurring at its third-party logistics partner ShipMonk, compromised the names, shipping addresses, phone numbers, and email addresses of 11,742 buyers. An additional 1,947…

Claude Agents Started a ‘Turf War’ That Escalated to Self-Replicating Malware

Claude agents given conflicting coding assignments began sabotaging one another in a controlled Anthropic experiment, with some encounters escalating to self-replicating malware. Researchers were testing how autonomous models behave when several agents work in the same environment under incompatible goals. Some Claude instances treated competing work as interference and entered what Anthropic called a “multiagent…

SAP Commerce Cloud RCE Flaw Actively Exploited 

A vulnerability in SAP Commerce Cloud that can allow unauthenticated attackers to execute arbitrary code is being exploited in the wild just days after SAP released a security update.  Threat intelligence company Defused detected exploitation attempts targeting the flaw three days after the patch was issued.  “First exploitation attempts against CVE-2026-58231 (unauth RCE in SAP…

CrowdStrike Expands Project QuiltWorks to SMBs via Channel

CrowdStrike is expanding Project QuiltWorks, its industry-wide framework for addressing security risks tied to frontier AI, to small and midsize businesses (SMBs). The expansion will make QuiltWorks available to SMBs through distributors, cloud marketplaces, MSPs, and other channel partners, giving smaller organizations access to AI-driven vulnerability discovery and prioritization, expert-led remediation, and cyber risk protection…

Shell Investigates Clop Data Theft Claims Tied to PTC Flaw 

Energy giant Shell is investigating a potential incident after the Clop ransomware group claimed it stole 89 GB of company data, including engineering drawings, facility reports, photographs, and project plans.  The claim places Shell among dozens of organizations reportedly targeted through vulnerable, internet-facing product lifecycle management (PLM) systems. “We are aware of a potential incident.…

August’s Patch Tuesday is a monster: 751 fixes, with an exploited Windows flaw

Microsoft’s August 2026 Patch Tuesday closes at 751 CVE entries (across all product families), with 108 rated as critical. One flaw is already exploited, CVE-2026-68820, an elevation of privilege in the Windows WinSock driver (afd.sys). Two more were disclosed but not exploited, CVE-2026-62832 (User Profile Service) and CVE-2026-72971. This security-only release earns Patch Now for…

AI Cyberattacks: How Threat Actors Use AI in Real Intrusions 

AI is becoming a bigger part of real-world cyberattacks, helping threat actors conduct intrusions, steal credentials, navigate networks, and identify valuable targets.   A Gambit Security investigation into three unrelated threat actors found attackers integrating AI throughout the intrusion lifecycle, extending its use beyond phishing and malware generation.  “One finding is worth separating out. In the…

DATA SECURITY MARKET OVERVIEW REPORT 2026

DATA SECURITY MARKET OVERVIEW REPORT 2026

Comprehensive Analysis of Trends, Market Changes, Technology Shifts & Statistics EXECUTIVE SUMMARY The global data security market is experiencing unprecedented growth driven by escalating cyber threats, digital transformation, and stringent regulatory requirements. The market has reached $17.21 billion in 2026 and is projected to grow at a CAGR of 17.12% through 2031, reaching $37.93 billion.…

AI Security Failures, Active Exploits, and Breaches Define the Week in August 2026

This week’s cybersecurity landscape combined actively exploited infrastructure flaws, ransomware resilience, social engineering, large-scale data breaches, and an expanding set of risks involving AI-generated code and autonomous agents. Research presented around DEF CON 34 and Black Hat 2026 also showed how AI systems can expose data, compromise development workflows, accelerate exploit creation, and take damaging…

Top 10 WiFi Mesh Systems & Routers at Amazon (2026) – Review-Based Report

Top 10 WiFi Mesh Systems & Routers at Amazon (2026) – Review-Based Report

Executive Summary Based on aggregated reviews from major tech publications (CNET, PCMag, Tom’s Guide, BroadMag, SmartHomeReview, RTINGS), this report ranks the top 10 WiFi mesh systems and routers available on Amazon. The rankings combine user satisfaction scores, expert test results, reliability metrics, and value propositions. Top 10 Rankings Rank Product Price Range Best For Overall…

Kiteworks AHEP Targets Human Error in Outbound Email

Kiteworks has launched a new security capability designed to prevent employees from accidentally sending sensitive information to the wrong recipients, extending the company’s data governance platform further into outbound email. Agent and Human Error Prevention (AHEP), now generally available, analyzes email activity as users compose messages and warns them when multiple signals indicate a potentially…

HIPAA Compliance for MSPs: Requirements and 2026 Updates

The Health Insurance Portability and Accountability Act (HIPAA) establishes federal standards for protecting the privacy and security of individuals’ health information. Its Privacy, Security, and Breach Notification Rules govern how protected health information (PHI) is used, disclosed, and safeguarded by covered entities and their business associates. For MSPs, the most important HIPAA development in 2026…

Fusion Connect Launches Flat-Fee AI-Powered CCaaS

Fusion Connect has launched an AI-powered Contact Center as a Service (CCaaS) platform with flat-fee pricing, replacing complex token-based consumption calculations with more predictable costs for customers and channel partners. Fusion Connect replaces consumption-based AI pricing This new structure is designed to eliminate unpredictable costs in enterprise AI adoption.  Fusion Connect is offering predictable monthly…

Taiwan Reports AI-Agent Cyberattacks on Government Networks

Hackers used coordinated artificial intelligence agents in cyberattacks targeting Taiwanese government networks, according to Taiwan officials and cybersecurity researchers. Taiwan’s Ministry of Digital Affairs said it detected an unusual wave of cyberattacks targeting government agencies last July, with investigators finding evidence that the operation combined traditional hacking techniques with artificial intelligence agents. According to the…

Akira ransomware reboots into Windows Safe Mode to knock EDR offline

Akira ransomware affiliates were seen using a new technique to evade endpoint detection and response (EDR), where they rebooted a compromised Windows system into Safe Mode with Networking enabled. According to Huntress, the technique successfully took both its agent and Microsoft Defender’s real-time protection offline. This, the researchers said, gave the attacker a window to…

The cybersecurity backlog is not a security problem

Cybersecurity teams should be responsible for risk oversight, rather than for executing every corrective action. Assigning security teams the tasks of finding, prioritizing, assigning, implementing, tracking and validating every remediation does not foster accountability. Instead, it results in an organizational repository for unresolved issues. A more effective model distinguishes roles clearly: security functions as the…

AmnesiaStealer Gives Attackers Live Control of Victims’ macOS Browsers

AmnesiaStealer targets macOS users through fake GitHub pages, stealing passwords, cookies and data while giving attackers live control of the browser. Jamf Threat Labs researchers disclosed AmnesiaStealer, a new multi-stage Rust-based macOS infostealer that spread through a counterfeit GitHub download page using the ClickFix technique. The lure looks convincing: correct GitHub dark theme, Octocat logo,…