A security company uncovered a critical vulnerability that could have compromised all Azure Cosmos DB databases — both those of customers and Microsoft’s own. Google subsidiary Wiz found a flaw in the ...
Wiz Research disclosed Wednesday that a chain of vulnerabilities in Azure Cosmos DB's Gremlin query engine — which the firm named CosmosEscape — allowed any attacker with a standard Cosmos DB account ...
Azure Cosmos DB's Gremlin flaw let Wiz escape the sandbox and retrieve an account key. Microsoft found no unauthorized ...
This article presents a defense-in-depth approach for securing Model Context Protocol (MCP) deployments in production. It outlines four architectural control layers: safe execution, management ...
New generally available feature helps organizations assess Linux virtual machines against CIS Benchmarks without deploying additional software.
Hackers have been exploiting a critical OS injection vulnerability in Arista VeloCloud Orchestrator as a zero-day.