New runC Vulnerabilities Expose Docker and Kubernetes to Container Escape Attacks
This week, three new high-severity vulnerabilities were revealed in runC, the fundamental runtime technology used by most container platforms. This...
This week, three new high-severity vulnerabilities were revealed in runC, the fundamental runtime technology used by most container platforms. This...
On October 23rd, Microsoft released an unusual out-of-band security patch for CVE-2025-59287, a remote code execution vulnerability in WSUS (Windows...
TL;DR A new software supply chain attack has been identified, targeting the npm registry and this time impacting more than...
Looking for the latest rankings? Check out our updated list of the 10 Most Popular AI Models of 2026. According to Gartner,...
Today, we’re excited to release the 2025 State of Cloud Security Report, which reveals deep insights uncovered by the Orca...
Over the last year, we've witnessed a pivotal shift in how large language models (LLMs) are used - not just...
On March 24th, 2025, Wiz’s research team published information on five vulnerabilities in the Ingress NGINX Controller for Kubernetes (ingress-nginx)...
Over the past weekend, security researchers discovered that the popular GitHub Action tj-actions/changed-files has been compromised. Malicious code added to...
Orca Security today released its inaugural State of AI Security Report, a deep dive into the security risks of deployed...