Command Your Cloud at Mach Speed: Find Orca Security at RSAC 2026
RSAC is one of our favorite weeks of the year. A chance to get off Zoom, get into the same...
RSAC is one of our favorite weeks of the year. A chance to get off Zoom, get into the same...
Table of contentsExecutive summaryIntroductionWhy GitHub Actions Are a New Frontier for AttackersWhat Happened?What Is the Impact?How HackerBot-Claw Works (Attack Chain)Scan...
AILM (AI-Induced Lateral Movement) is a new post-exploitation attack-vector where the pivot mechanism isn’t a subnet or an identity, but...
In the webinar titled "Runtime Reinvented: How Agentic AI is Transforming Cloud Native Protection," experts from Orca Security and Software...
In the intricate world of cloud-native technologies, Kubernetes stands as a formidable force, reshaping the way applications are managed and...
SolarWinds has released Serv-U 15.5.4 to address four critical vulnerabilities — CVE-2025-40538, CVE-2025-40539, CVE-2025-40540, and CVE-2025-40541 (CVSS 9.1) — that...
Key takeaways about AI in AppSec: Anthropic's integration of Claude into application security signals a major shift where AI is...
A high-severity vulnerability (CVE-2026-2441, CVSS pending vendor confirmation) has been disclosed in Google Chrome and the Chromium engine, allowing attackers...
This blog post complements our guide on What is Application Security? by diving deep into the organizational foundations required to...