This is a predictions blog. We know, we know; everyone does them, and they can get a bit same-y. Chances are, you’re already bored with reading them. So, we’ve decided to do things a little bit differently this year. Instead of bombarding you with just our own predictions, we’ve decided to cast the net far and wide. We’ve spoken to cybersecurity experts from around the world to answer what’s, for us, the most pressing question…
The attack landscape has been dynamic following the disclosure of the React Server Components RCE vulnerability. New information has emerged…
As the year draws to a close, it’s worth pausing to look back on what has been an extraordinary year…
On December 3, 2025, React maintainers disclosed a critical unauthenticated remote code execution (RCE) vulnerability in React Server Components (RSC),…
The API supply chain is the new security blind spot. Attackers no longer need to breach your APIs directly; they…
Earlier this month, Microsoft uncovered SesameOp, a new backdoor malware that abuses the OpenAI Assistants API as a covert command-and-control…
Can you ever imagine the impact on your business if it went offline on Black Friday or Cyber Monday due…
Over the past few years, API security has gone from a relatively niche concern to a headline issue. A slew…
Wallarm’s latest Q3 2025 API ThreatStats report [link placeholder] reveals that API vulnerabilities, exploits, and breaches are not just increasing;…
As Cybersecurity Awareness Month continues, we wanted to dive even deeper into the attack methods affecting APIs. We’ve already reviewed…