Security researchers warn that attackers can gain lasting access to SaaS and cloud accounts simply by tricking a logged-in user into approving a malicious OAuth application, sidestepping passwords, malware, and multifactor authentication entirely. Once granted, these app permissions can let attackers read email, browse files, pull source code, or touch CI/CD systems through legitimate API access until the tokens or grants are revoked.
darkreading.com
· 2026-09-18
A virtual event titled Cybersecurity Outlook 2027 will bring together industry analysts, researchers and experts to discuss emerging cyber threats from criminals and nation-states as the new year approaches. The sessions will also cover how AI-driven tools and other technologies can help organizations protect multi-cloud and hybrid environments.
darkreading.com
· 2026-09-17
Zscaler reported fiscal fourth-quarter adjusted earnings of $1.19 per share on revenue of $898 million, topping Wall Street forecasts of $1.09 and $877 million respectively. Revenue climbed 25% year-over-year, and annual recurring revenue reached $3.77 billion, while the company's net loss narrowed to $3.4 million from $17.6 million a year earlier. CEO Jay Chaudhry credited demand for the company's Zero Trust cloud security architecture, including a new version built for AI agents, for the strong results.
cnbc.com
· 2026-09-03
Pharmaceutical distributor McKesson confirmed hackers broke into several cloud-hosted accounts and stole data tied to its oncology and medical-surgical units. The ShinyHunters group told TechCrunch it used phishing and social engineering to trick employees into granting access, then pulled millions of rows of patient records from Snowflake and Salesforce environments, including names, Social Security numbers, diagnoses, medications, and employee home addresses.
techcrunch.com
· 2026-08-31