• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
Mobile menu toggle
  • Blog on X
  • Blog on Youtube
  • RSS feed X

Decipher Logo Home

  • Articles
  • Video
  • AI
  • Apple
  • General
  • Government
  • Intrusions
  • Law Enforcement
  • Microsoft
  • Open Source Software Security
  • Podcast
  • Supply Chain
  • Vulnerabilities
  • All Topics
  • Home
  • Articles
  • Video
  • Blog on X
  • Blog on Youtube
  • RSS feed X

Author Bio


Dennis Fisher

Editor

Dennis Fisher is an award-winning journalist and author. He is one of the co-founders of Decipher and Threatpost and has been writing about cybersecurity since 2000. Dennis enjoys finding the stories behind the headlines and digging into the motivations and thinking of both defenders and attackers. He is the author of 2.5 novels and once met Shaq. Contact: dennis at decipher.sc.

dennis@decipher.sc

Featured Articles


Microsoft logo

New Campaign Weaponizes Microsoft Teams for Remote Access

Unlike standard commodity malware that aims for quick credential theft, this campaign features a manual, hands-on-keyboard scheme designed to escalate rapidly from a single compromised workstation to broad, network-wide access.

By Dennis Fisher

September 3, 2026 | 2 min read

MalwareMicrosoftRansomware

Critical Artifactory Bug Under Attack

CVE-2026-82329 is a simple authentication bypass that can allow an attacker to get admin privileges quite easily

By Dennis Fisher

September 2, 2026 | 2 min read

Vulnerability

TeamPCP Arrests, the QTFY Attacks, and the OpenAI Post-Mortem

This week we discuss the two arrests in Australia of alleged members of the TeamPCP cybercrime group that has targeted the open source ecosystem, the US government’s disclosure of intrusion activity by the Chinese QTFY threat actor, and finally the long report from OpenAI on the Hugging Face incident.

By Dennis Fisher

August 28, 2026 | 1 min read

AIVideo

Unauthenticated RCE Chain Found For Microsoft SharePoint CVE-2026-55040 and CVE-2026-63520

The chain leverages two distinct vulnerabilities—an authentication bypass and an unsafe .NET type instantiation flaw—to provide full server control without valid credentials.

By Dennis Fisher

August 25, 2026 | 2 min read

MicrosoftVulnerability

The Challenge of Hacking Back, the Origins of ExploitGym, and Water Plant Attacks

This week we discuss the new White House memo on using private sector operators in offensive cyber operations, Lindsey’s deep dive into the origins of the ExploitGym AI benchmark, and the rash of attacks on water utilities in the U.S. Links Inside ExploitGym: https://decipher.sc/2026/08/20/inside… White House memo: https://www.whitehouse.gov/presidenti… OpenAI post: https://openai.com/index/the-defender…

By Dennis Fisher

August 21, 2026 | 1 min read

AIVideo

MLflow Bug Actively Exploited to Steal Credentials

This flaw allows remote, unauthenticated attackers to read sensitive data from internal network services or cloud metadata endpoints.

By Dennis Fisher

August 18, 2026 | 2 min read

AIVulnerability
  • «
  • Page 1
  • Page 2
  • Page 3
  • Page 4
  • Interim pages omitted …
  • Page 30
  • »

sidebar

  • Blog on X
  • Blog on Youtube
  • RSS feed X
Home
  • Term & Conditions
  • ©2026 Decipher
  • Articles
  • Video

Powered by
Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
None
Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
None
Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
None
Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
None
Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
None
Powered by