The MerchantStore
DirectoryAbout UsLink to Us

3,267 Internet — Security Issues Entries

Internet — Security Issues — August 13th, 2026

153GB of stolen credentials surface after LiteLLM supply chain attack
A massive 153GB archive stolen during the LiteLLM supply chain attack exposes credentials and other sensitive data linked to thousands of corporate domains, including AWS, Samsung, Cisco, and Salesforce.
August 13th, 2026Source

A10 Networks introduces AI Gateway to secure and manage enterprise AI
A10 Networks has announced the general availability of the A10 AI Gateway, a centralized, intelligent control plane that gives organizations unified routing, cost management, and governance across every AI agent, application and large language model (LLM) they use.
August 13th, 2026Source

Adobe Commerce Bug Targeted Immediately After Disclosure
The first exploitation attempts targeting CVE-2026-71362 were observed shortly after Adobe released patches.
August 13th, 2026Source

As passkeys become default in Entra ID, IT admins may have to worry more about security
Microsoft Entra ID is making passkeys the default in September, but experts warn attackers could exploit unfamiliarity to target users.
August 13th, 2026Source

Attackers exploit critical SharePoint flaw after PoC goes public (CVE-2026-55040)
Threat actors have begun exploiting a critical Microsoft SharePoint flaw following the release of proof-of-concept (PoC) exploit code by Rapid7.
August 13th, 2026Source

Cisco fixes vulnerability exploited to DoS its firewalls (CVE-2026-20349)
A high-severity vulnerability (CVE-2026-20349) is being leveraged by attackers to temporarily interrupt the operation of Cisco firewalls, the company has confirmed.
August 13th, 2026Source

Cisco Sees AI Fueling Network Upgrade Supercycle
Customers Are Reprioritizing Budgets for AI, Security and Quantum Readiness
August 13th, 2026Source or Source or Source or Source

Coin-sized device can hack a Boeing 737's Flight Management Computer, mess with takeoff weights, or even divert an aircraft — gadget connects to an easily accessible port that overrides commands from the pilots, uses in-flight Wi-Fi
While it does not let hackers control the plane remotely, it could potentially confuse pilots and add to their workload while in-flight.
August 13th, 2026Source

Critical VMware vCenter Vulnerability in Attackers' Crosshairs
Tracked as CVE-2026--59310, the directory traversal bug allows remote attackers to execute arbitrary code.
August 13th, 2026Source

Critical 'Zoomsday' flaw enables total device takeover during Zoom calls — AI-assisted research only used 20 prompts to find an exploit to hack hundreds of millions of people.
And two of those prompts were probably "no bugs plz" and "kk thx."
August 13th, 2026Source

Cybersecurity M&A Roundup: 21 Deals Announced in July 2026
Significant cybersecurity M&A deals announced by Barracuda, CrowdStrike, Cyera, Okta, Palo Alto Networks, and Qualcomm.
August 13th, 2026Source

DataGrout helps enterprises control AI usage, governance and LLM costs
SelectHub has announced the launch of DataGrout, its specialized AI research lab introducing an LLM inference optimization platform and AI governance solution for enterprises. DataGrout's mission is to drive token reduction for agentic workflows, chatbots and AI tools, while equipping IT and FinOps leadership with a policy-driven, auditable LLM payload and cost monitoring system to track company-wide AI utilization.
August 13th, 2026Source

Flock CEO: 'We got this one wrong'
After reports that some cops misused tracking data it collects, Flock is rolling out policy changes.
August 13th, 2026Source

Fortinet Patches Authentication Flaws in FortiWeb and FortiManager
The vulnerabilities could allow attackers to log in with random usernames and passwords or impersonate any FortiGate appliance.
August 13th, 2026Source

In a first, US will allow some private firms to carry out cyberattacks
The U.S. government will for the first time allow vetted private companies to launch offensive cyber operations against international criminal gangs and hackers, the White House said on Wednesday.
August 13th, 2026Source

IPVanish 4.3.30.12 released
IPVanish has released version 4.3.30.12 of its high-speed, cross-platform VPN service, which emphasizes user privacy and security through a strict zero-logging policy. This ensures that users can browse the internet with confidence, knowing their activities and connection data are not recorded. The VPN is equipped with essential features such as a kill switch that halts all network traffic if the VPN connection drops, preventing any data leaks. Additionally, IPVanish includes IPv6 Leak Protection to ensure that internet traffic is routed through IPv4, thereby preventing any potential exposure of IPv6 addresses. For users sharing a local area network, LAN Blocking is a feature that effectively stops device communications, enhancing security.
August 13th, 2026Source

Microsoft is killing off SMS login codes, citing AI-powered hacking
Microsoft Entra ID to phase out SMS authentication on February 1,2027
August 13th, 2026Source

Mystery attacker spent a year raiding Salesforce and ServiceNow portals
Custom tools harvested whatever over-permissioned guest accounts would surrender
August 13th, 2026Source

NightmareEclipse strikes again at Windows 11 exploit with ShieldBreak proof of concept
NightmareEclipse has released another Windows exploit after Microsoft released its Patch Tuesday updates. ShieldBreak gives attackers admin power.
August 13th, 2026Source or Source

Passwords stored in public Google Doc then showed up in search results
Developer spotted hostname and credential string lurking in autocomplete
August 13th, 2026Source

Patched SharePoint vulnerability now being exploited in the wild, here's why
Rapid7 released a proof-of-concept exploit a month after Microsoft fixed an issue in SharePoint. Now attackers are using it to hit unpatched targets.
August 13th, 2026Source

Rsync 3.5 Fixes 33 Security Issues at Once — and Most of Them Start With a Symlink
The maintainers call it an "extraordinary release.” The changelog reads more like an audit report than a version bump.
August 13th, 2026Source

Searchlight Cyber combines exposure and threat intelligence in new PTEM platform
Searchlight Cyber has launched its Preemptive Threat Exposure Management (PTEM) platform, combining exposure visibility with real-world attacker intelligence to help organizations prioritize and reduce the exposures most likely to be exploited.
August 13th, 2026Source

The 3 best VPNs we've tested in 2026
Here's who to trust with your privacy (and money).
August 13th, 2026Source

Uncle Sam Seeks Private Hackers to Disrupt Criminal Networks
White House Program Will Tap Private Sector for Surveillance and Cyber Operations
August 13th, 2026Source or Source or Source or Source

Venture Firm Team8 Secures Additional $365 Million
The Israeli company has nearly $2 billion in total assets under management since 2014.
August 13th, 2026Source

WhatsApp rolls out new feature that flags potential scam messages
WhatsApp has begun rolling out a new optional "Scam Alert" feature, which uses a local machine learning model to warn users when scammers are targeting them.
August 13th, 2026Source

White House taps security firms for offensive hack-back operations
A new White House memo signed by U.S. President Donald Trump instructs the National Coordination Center (NCC) to establish a program that would allow private security companies to apply for approval to hack foreign cybercrime organizations.
August 13th, 2026Source or Source or Source

Zoom Fixes Bug That Let Call Participants Take Control of Other Devices
Attackers just needed to join a meeting to run code on attendees' devices without their knowledge or consent.
August 13th, 2026Source

Internet — Security Issues — August 12th, 2026

A severe ASUS Armoury Crate vulnerability affects laptops, handhelds, and desktop PCs — Here's how to check if you're in the clear
It's an 8.4 out of 10 on the CVSS scale, so it shouldn't be taken lightly.
August 12th, 2026Source

A stranger has been reading Salesforce and ServiceNow portals worldwide for 17 months
Most security stories start with something broken. This one starts with everything working as designed.
August 12th, 2026Source

After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug
A security researcher has published details of a new vulnerability in the latest versions of Windows that allows hackers to gain system-wide access to the user's device and data, despite facing a legal threat from Microsoft weeks earlier over the release of previously unknown software flaws.
August 12th, 2026Source

Akira ransomware scum blocked victim's security tools -- and broke their own encryptor
Gives a whole new meaning to Safe Mode
August 12th, 2026Source

AMD Acknowledges TPM Vulnerability, but Everything Is Now Patched
AMD has acknowledged today that a new vulnerability in the trusted platform module has been found, but fortunately, it was patched before the public announcement. According to AMD, a potential out-of-bounds (OOB) read was present in the TPM 2.0 reference implementation, which could send malicious commands to TPM 2.0 and completely bypass its functionality. If an attacker were able to access and even disable the TPM, all digital signing and encryption would be compromised, earning this vulnerability a very high severity score. Reported under CVE-2026-6726 with a CVSS score of 8.5, and the second being CVE-2026-6727 with a CVSS score of 8.3, these attacks affected every AMD Ryzen CPU from the 3000 to 9000 series of desktop processors.
August 12th, 2026Source

Brit rail cops bring live facial recognition to the London Underground
Victoria is the first stop as privacy campaigners warn the technology is becoming routine
August 12th, 2026Source

California Puts AI Inside Critical Infrastructure Defenses
California Bets on AI Defense as Federal Cyber Funding Dries Up
August 12th, 2026Source or Source or Source or Source

CBTS brings continuous penetration testing to enterprise security
CBTS has launched Penetration Testing as a Service (PTaaS), combining autonomous penetration testing with security expertise to help organizations continuously identify exploitable risks, validate attack paths, and prioritize remediation as their environments evolve.
August 12th, 2026Source

Ceva Logistics Operations Disrupted by Cyberattack
Affecting European contract logistics operations at eight Ceva warehouses, the incident caused shipment delays for multiple customers.
August 12th, 2026Source

Chipmaker Patch Tuesday: Intel, AMD Fix Over 80 Vulnerabilities Combined
Intel has informed customers about several high-severity vulnerabilities that can lead to privilege escalation and even code execution.
August 12th, 2026Source

Chrome's anti-abuse protections block 7 billion unwanted Android notifications daily
Google Chrome's latest measures against abusive web push notifications include automatically revoking notification permissions for inactive and suspicious websites, helping reduce scams, phishing attempts, and other deceptive content.
August 12th, 2026Source

Cloudflare Report Shows Massive Spike in High-Volume DDoS Attacks: Here Is What the Data Shows
Cloudflare says 805 DDoS attacks topped 1 Tbps in Q2 2026 as high-bandwidth attacks surged, raising new concerns for network defenses.
August 12th, 2026Source

ConnectSecure helps MSPs automate Microsoft 365 security remediation
ConnectSecure has announced that Microsoft 365 Auto Remediation and AI-powered Training Assessments are now live on the ConnectSecure platform. The capabilities help managed service providers (MSPs) address supported M365 security findings, create and measure assessments, support client training and strengthen security posture from one platform.
August 12th, 2026Source

Crytica's RDAi detects OT device tampering from within
Crytica Security has developed a patented solution that delivers rapid, deterministic threat detection for operational technology (OT), protecting the embedded systems and connected devices that underpin critical infrastructure, national security, and healthcare without disrupting operations.
August 12th, 2026Source

Deloitte strengthens AI governance to support trusted enterprise adoption
Deloitte has expanded AI Controls and Assurance services and solutions designed to help organizations confidently adopt, scale and govern AI across the enterprise.
August 12th, 2026Source

Exposed: Woeful security at UK criminal records office that led to sensitive data leak
Nobody patched the CMS or read the alerts, and ACRO still cannot tell whether info was exfiltrated
August 12th, 2026Source

FBI: Hackers target online accounts to steal nude photos
The FBI warns that cybercriminals are targeting adults' and children's social media and other online accounts to steal sexually explicit images or videos.
August 12th, 2026Source or Source or Source

Fresh Windows Zero-Day Exploited in North Korean Cyberattacks
The bug allowed attackers to gain full control of the victims' systems and deploy the ForestTiger backdoor.
August 12th, 2026Source

ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact
CISA has also published several advisories describing vulnerabilities in ICS and other OT products.
August 12th, 2026Source

Ivanti EPM Update Patches Remotely Exploitable Flaws
The vulnerabilities could be exploited to leak credentials for external SQL connections or crash an agent service.
August 12th, 2026Source

Joint guidance on opportunities for artificial intelligence in cyber defence
The Canadian Centre for Cyber Security (Cyber Centre) has joined the Australian Signals Directorate's Australian Cyber Security Centre (ASD's ACSC) and the following international partners in releasing cyber security guidance on opportunities for artificial intelligence (AI) in cyber defence:
August 12th, 2026Source

Lazarus hackers exploited Windows zero-day to target defense firms
North Korean hackers have been exploiting a Windows zero-day vulnerability (CVE-2026-68820) to target defense-sector companies as part of the Operation Dream Job campaign.
August 12th, 2026Source or Source

Microsoft patches 400+ vulnerabilities, one zero-day under attack (CVE-2026-68820)
Microsoft's August 2026 Patch Tuesday delivered security fixes for 400+ vulnerabilities, including one that has been exploited in zero-day attacks (CVE-2026-68820) and three that were publicly disclosed prior to the release of the patches.
August 12th, 2026Source

Microsoft releases KB5120249 as the latest Windows 10 extended security update
Microsoft has released the eighth extended security update for Windows 10 since mainstream support for the operating system came to an end toward the end of last year.
August 12th, 2026Source

Mindgard Raises $30 Million to Protect AI Systems
The cybersecurity startup will use the fresh investment to scale its product, engineering, sales, and marketing teams.
August 12th, 2026Source

New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges
A security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named "ShieldBreak" after Microsoft released the August 2026 Patch Tuesday security updates.
August 12th, 2026Source

Over 2,500 Organizations Impacted by LiteLLM Supply Chain Attack
LiteLLM was compromised through the Trivy hack and abused to distribute information-stealing malware to its users.
August 12th, 2026Source

Passenger returning from DEF CON 34 spoofs Delta Wi-Fi network while in flight using pentest tool — pilots tell ground crew to alert corporate security after attendee from hacking conference brings the party to the sky
"We believe they are trying to scam the other passengers.”
August 12th, 2026Source

Researchers found a way to hijack devices through Zoom screen sharing
A public AI tool found the dangerous Zoom flaw in under 20 prompts.
August 12th, 2026Source

ScienceLogic delivers secure AI deployment and smarter IT operations with Skylar AI 2.5
ScienceLogic has announced Skylar AI 2.5, expanding secure deployment options for organizations with stringent security, sovereignty, and compliance requirements, while introducing enhancements that strengthen AI performance, operational intelligence, and enterprise integrations. The release further improves AI accuracy, platform performance, and natural language user experience across the ScienceLogic AI Platform.
August 12th, 2026Source

SharePoint Vulnerability Exploited Shortly After PoC Release
The vulnerability was patched by Microsoft in July and CISA warned that it could end up being exploited in the wild.
August 12th, 2026Source

Signal adds new security feature to thwart man-in-the-middle attacks
Signal has introduced Automatic Key Verification, a new security feature that gives users a new way to ensure their encrypted chats haven't been intercepted.
August 12th, 2026Source or Source

Smooth-talking fraudsters clone contactless cards, authorize payments in just 13 minutes
Social engineering and malware combine to enable financial fraud before banks have time to act
August 12th, 2026Source

Stealthy 'City-Forum' Attacks Target Salesforce and ServiceNow With Custom Toolset
Researchers observed the novel campaign exploiting unauthenticated guest access to quietly enumerate and exfiltrate exposed data from both platforms.
August 12th, 2026Source

Suspected China-linked hackers used AI to run the first-ever end-to-end autonomous cyberattack on Taiwan's government, Israeli firm says — open-source-built tool continuously devised effective hack strategies in real-time
Experts warn that every government should now assume it is under permanent automated assault.
August 12th, 2026Source

The Threat Hiding in Your Hiring Process: How Fake Remote Workers Get In
For many security teams, the expected route into the corporate network begins with a phishing email or exploited vulnerability. Certain techniques differ, exploiting the hiring process to gain legitimate access.
August 12th, 2026Source

These Clothing Patterns Can Help You Hide From Surveillance Cameras
Don't want your identity recorded? It's time to become acquainted with swirls.
August 12th, 2026Source

Uber Freight keeps on trucking after extortion crew breaks in
Helix claims nearly a million files, while the logistics biz says operations never hit the brakes
August 12th, 2026Source

WhatsApp Unveils New Scam Alert Feature
Signal has also made a security announcement: an automatic key verification feature to complement its safety number system.
August 12th, 2026Source

Internet — Security Issues — August 9th, 2026

A new attack slips past the latest defenses built into your computer's processor
Chipmakers and operating system developers have spent years building defenses. A new study from MIT's Computer Science and Artificial Intelligence Laboratory (CSAIL) shows that a key assumption behind many of them doesn't hold.
August 9th, 2026Source

Farbar Recovery Scan Tool 09.08.2026 released
The Farbar Recovery Scan Tool (FRST) has released its version 09.08.2026, a free and portable application designed to assist users in diagnosing malware-related issues on Windows systems. This tool is available for both 32-bit and 64-bit architectures. Users can run FRST not only on their regular Windows environment but also within the Windows Recovery Environment, which is particularly useful for diagnosing and resolving boot problems.
August 9th, 2026Source

Framework's Data Breach Revealed Customer Data: Here's What to Know
The computer company has notified all customers of a data breach.
August 9th, 2026Source or Source

iDefender 6.0.1.0 released
iDefender 6.0.1.0 has been released as an advanced security solution tailored for home users, combining an Intrusion Prevention System (HIPS) and Real-time Endpoint Detection and Response (EDR). This integrated platform is designed to protect devices from various cyber threats by actively monitoring and responding to suspicious activities, thereby ensuring safety and integrity.
August 9th, 2026Source

Ransomware gangs skip the CEO, head straight for the 40-something IT manager
Gen Xers who feel triggered by this should remember to unplug the network cable and call the cops
August 9th, 2026Source

SoftEther VPN Client + VPN Gate Client Plugin 2026.08.10 Build 9807 released
The recently released SoftEther VPN Client + VPN Gate Client Plugin (2026.08.10 Build 9807) is a powerful open-source alternative to popular VPN services like OpenVPN and Microsoft's SSTP VPN. Developed by the University of Tsukuba in Japan, this tool provides users with a secure and unrestricted internet experience, making it easier to bypass censorship, protect connections on public Wi-Fi, and access geo-blocked content.
August 9th, 2026Source

The AI safety test is becoming a safety risk
Over the past few months, AI agents undergoing cybersecurity evaluations have escaped their boundaries, accessed the internet, and, in some cases, hacked into real-world systems. The incidents have involved models from OpenAI, Anthropic, Meta, and, most recently, Chinese AI lab Moonshot AI, with testing conducted by several different organizations, including a cyber evaluation startup called Irregular.
August 9th, 2026Source

This 'adversarial' pattern can prevent surveillance cameras from detecting you
Bill Swearingen has spent the past year running largely the same test, over and over again. The goal was to produce a computer-generated pattern that could block the surveillance cameras lining America's streets from detecting it.
August 9th, 2026Source

Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
August 9th, 2026Source

Internet — Security Issues — August 8th, 2026

Critical One-Click Vulnerability in Atlassian's Rovo AI Exposed Enterprise Data
The RovoBlast attack method identified by Varonis researchers could have been exploited to steal Confluence, Jira and SharePoint data.
August 8th, 2026Source

Hackers breach TrueConf to trojanize client installers with backdoors
The Head Mare hacktivist group has been exploiting vulnerabilities in unpatched TrueConf video conferencing servers to replace client installers with malicious versions that deliver backdoors.
August 8th, 2026Source

OpenAI Is Watching Astra Think. Can It See Trouble?
Chain-of-Thought Monitoring Faces a Tougher Cyber Test
August 8th, 2026Source

Internet — Security Issues — August 7th, 2026

200 accounts compromised in Swiss government's Microsoft SharePoint breach
Hackers exploited vulnerabilities in Microsoft SharePoint servers belonging to Switzerland's Federal Office of Information Technology, Systems and Telecommunication (BIT), compromising the login credentials of around 200 accounts.
August 7th, 2026Source

3.8 Million Impacted by Unlimited Technology Systems Data Breach
Hackers stole personal, medical, and health insurance information from a company's data center.
August 7th, 2026Source

Are Ray-Ban Meta glasses a privacy risk? Here's what you should know
Not all features are equal when it comes to securing your data.
August 7th, 2026Source

Attacker phished way into US defense supplier's Microsoft 365 account
Intruder gained access to engineering files and potentially export-controlled technical data
August 7th, 2026Source

Black Hat USA 2026 -- Summary of Vendor Announcements (Part 4)
Companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas.
August 7th, 2026Source

Chinese AI model Kimi escaped its cybersecurity testing environment, researchers say
Kimi K3, the latest AI model made by Chinese company Moonshot, escaped an environment set up to test its cyber capabilities, researchers said in a blog post published on Friday.
August 7th, 2026Source

Cloudflare Rides Surge in Bot Traffic and AI Workloads
CEO Matthew Prince Says Non-Human Traffic Could Reach 1,000 Times Human Use
August 7th, 2026Source

Computer maker Framework notifies 'all customers' of a data breach
Framework, a company that makes modular repairable computers, said it has notified all of its customers that hackers stole their names, email addresses, phone numbers, and physical addresses, due to an incident at a company that provides business intelligence.
August 7th, 2026Source

Flock's biggest investor also backs a company that can rewrite camera footage
Andreessen Horowitz backs both Flock Safety and camera-hacking firm Toka
August 7th, 2026Source

Framework customer information was accessed as part of a data breach
The company says payment details weren't exposed.
August 7th, 2026Source

In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street
Noteworthy stories that might have slipped under the radar: ban on Chinese data center tech, QuickFox VPN supply chain attack, IEH Corporation mailbox breached via phishing.
August 7th, 2026Source

Intrusion at US healthcare software provider puts 3.8M people's data at risk
Unlimited Technology Systems says names, Social Security numbers, diagnoses, and insurance details may have been swiped
August 7th, 2026Source

Keepit AI Truth Cloud protects the data behind enterprise AI
Keepit announced AI Truth Cloud, transforming backup from a compliance requirement into the strategically valuable data asset an organization can hold.
August 7th, 2026Source

Kimi K3 AI broke out of its cybersecurity test sandbox, firm says
Moonshot AI's Kimi K3 model broke out of an isolated cybersecurity testing sandbox by exploiting a network misconfiguration, Frontier Security researchers Paul Kassianik and Yaron Singer said in a blog post published Aug. 7, 2026. The Beijing-based Moonshot AI model was being tested on its defensive cybersecurity skills using a benchmark built on a framework from the UK's AI Security Institute when it located the gap and used it instead of solving the assigned problem.
August 7th, 2026Source or Source or Source or Source or Source

Levi Strauss & Co. says hackers stole corporate data in cyberattack
Levi Strauss & Co. (Levi's) says that hackers used social engineering on three of its employees to gain access to and steal corporate data stored on their machines.
August 7th, 2026Source

Mastering Enterprise Security in Microsoft Power Platform
Learn how environments, DLP policies, Dataverse roles, and a Center of Excellence keep Power Platform secure without slowing teams down.
August 7th, 2026Source

Microsoft starts sending out emails to warn about big Entra ID change to authentication
Microsoft has started emailing its customers to set up passkeys for users to login with. In February, SMS and voice authentication will be gone.
August 7th, 2026Source

Microsoft, Apple Release Fresh Security Updates
Microsoft fixed critical vulnerabilities across Azure, Entra, and SharePoint, while Apple patched a high-severity authentication bypass.
August 7th, 2026Source

MIT boffins' TONTOU attack slips through Spectre defenses on Intel and AMD CPUs
Timer interrupts reopen branch predictor poisoning window, with a working Zen 2 exploit to prove it
August 7th, 2026Source

New N-able Zero Day Puts MSPs on Defensive
Second Hotfix Issued for RMM Technology Widely Used by Managed Security Providers
August 7th, 2026Source or Source or Source or Source

North Carolina Ports confirms cyberattack disrupting operations
The North Carolina Ports Authority has confirmed that a cyberattack disrupted IT systems and slowed operations at the Port of Wilmington, Port of Morehead City, and Charlotte Inland Port.
August 7th, 2026Source

Scot NHS trust probes access to medical records of 9-year-old girl after man arrested on suspicion of murder
Investigation into whether staff improperly accessed Minnie Merriman's file after she was named for the first time this week
August 7th, 2026Source

ShinyHunters called cancer diagnostics biz and tricked staffers into giving them access. Now they've dumped 10.9M email addresses
Cancer diagnostics breach spills personal and health info as extortion crew says healthcare giant 'should've paid the ransom'
August 7th, 2026Source

Snowflake attacker pleads guilty to hack of 165 companies' data
Connor Riley Moucka faces between 2 and 30 years in prison for the hacks.
August 7th, 2026Source

The best free VPNs: 5 no-cost top picks
VPNs are best when they're paid for, but the top free VPNs can still keep you private without breaking the bank.
August 7th, 2026Source

This VPN Ad Blocker Is So Good, I Can't Go Back to Anything Else
Windscribe's ROBERT gives you unparalleled control for content and ad blocking bliss.
August 7th, 2026Source

Time for GPS Spoofing-Resistant Quantum Clocks, Says DARPA
Optical Clocks Could Maintain Precise Timing When GPS Signals Are Disrupted
August 7th, 2026Source or Source or Source or Source

Truck Brake Controller's Safety Recall Doubled as Hidden Security Fix
NMFTA research shows a Bendix EC80 brake controller safety recall also patched remote code execution and DoS vulnerabilities.
August 7th, 2026Source

Weak Passwords Just Exposed Our Water Supply to Iranian Hackers
Our critical utility infrastructure can make the same classic mistakes as we do with our everyday connected devices.
August 7th, 2026Source

When security becomes a risk factor—privacy risks of public URL-scanning services
URL scanning services are now a common component of modern security workflows. They help detect phishing websites or malware early and warn users before they visit a URL. However, the practice of some of these services—publishing scanned URLs—can inadvertently expose sensitive user data. CISPA researcher Ali Mustafa, together with colleagues from the Max Planck Institute for Security and Privacy and Ca' Foscari University of Venice, conducted the first systematic investigation of the risks arising from this practice.
August 7th, 2026Source

Why 'America First' in AI Shouldn't Mean 'America Only'
Former US Cyber Director on Cooperation, AI Supply Chains and National Security
August 7th, 2026Source or Source or Source or Source

Internet — Security Issues — August 5th, 2026

15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic
TP-Link prints the serial number of an Omada router on its packaging and on a label attached to the device. Those numbers run in sequence, and feeding a guessed one to the Omada cloud service returns the matching device's MAC address and model. Serials beginning 22460J500 appear to be ER605 routers, and serials beginning 224608100 appear to be the ER7206.
August 5th, 2026Source

311,000 Impacted by Brown Health Medical Group-MA Data Breach
Hackers stole personal information, medical records, and financial information from the organization's server.
August 5th, 2026Source

AI agent deception moves from theory to reality in UK cyber tests
"During a routine cyber evaluation, AI agents took sustained, unsanctioned action directed at real people and organisations,” UK's AI Security Institute (AISI) disclosed on Tuesday.
August 5th, 2026Source

AI Agents Targeted Real People and Projects During Cybersecurity Tests
AI Security Institute reports Anthropic and OpenAI models going rogue against real people, organizations, and open source projects.
August 5th, 2026Source

ArmorCode enhances attack path analysis with new AI agents and Context Risk Graph
ArmorCode has announced a major expansion of its Agentic Control Plane. Four new Anya AI agents help security teams analyze cloud risks, assess vulnerability exploitability, identify mitigation strategies, and coordinate patch orchestration.
August 5th, 2026Source

Bank of America impersonators weaponize ScreenConnect, then make it hard to remove
A phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and then making it difficult to uninstall it.
August 5th, 2026Source

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities
The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass.
August 5th, 2026Source

Cloudflare gives AI agents wallets with built-in spending controls
Cloudflare's Wallets will give AI agents running on its platform a human-readable wallet handle for paying APIs and online content within limits set by their creator. Handle reservations have opened, while the service will become available in the coming months. It will include two types of digital wallets: Account Wallets and Virtual Wallets.
August 5th, 2026Source

Code review used to be the only way to catch these bugs
An automated system called NOVA read the source code of 3,915 open-source projects over two months and came back with 14,090 vulnerabilities, each one confirmed through the system's validation pipeline.
August 5th, 2026Source

CrowdStrike Warns AI Adoption Is Creating 'Underdefended' Attack Surfaces
CrowdStrike warns that AI adoption, rapid vulnerability exploitation, cloud attacks, and malicious npm packages are creating new enterprise security risks.
August 5th, 2026Source

Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data
The guidelines are the work of the recently launched Open Secure AI Alliance, which now includes 120 organizations.
August 5th, 2026Source

Enhanced Phishing Protection: Is It Worth Turning On?
You've probably seen Windows Defender SmartScreen at work before: it's that occasional, annoying pop-up that prevents you from running "unrecognized" apps. SmartScreen's other, lesser-known function is Enhanced Phishing Protection. In short, it keeps your Microsoft work or school passwords safe from phishing attempts, malicious apps, and websites.
August 5th, 2026Source

How AI-powered phishing killed blocklists for good
Blocklists were already losing ground before AI entered the picture. Phishing domains have been getting shorter-lived for years, campaigns have been burning infrastructure faster, and the gap between blocklists and attacker campaigns keeps getting wider. AI just finished the job.
August 5th, 2026Source

How hackers attack municipal water systems—and why the utilities are so vulnerable
The attackers did not try to infiltrate the computers that utility offices use. Instead, they tried to seize control of small computers in equipment like pumps and valves that deliver drinking water to millions of people.
August 5th, 2026Source

How the Canadian Centre for Cyber Security used frontier AI to accelerate detection engineering
An introduction to the Communications Security Establishment Canada's work on artificial intelligence in cyber defence
August 5th, 2026Source

Human-aware robots adapt to partners, reducing back strain during team lifting
When people work in pairs or teams, they can often solve a wider range of problems, completing some tasks faster and more efficiently than they would alone. To assist users similarly to how other humans would, robots should be able to rapidly interpret human behaviors and commands, using their predictions to plan and precisely execute helpful actions.
August 5th, 2026Source

INTERPOL flags AI as the new engine of African cybercrime
Africa's growing digital economy is exposing governments, businesses and internet users to a rising wave of cybercrime. The continent recorded more than 1.1 billion mobile subscriptions and over $1.1 trillion in digital transactions in 2025, while more than 570 million people relied on the internet for banking, government services, healthcare and education.
August 5th, 2026Source

Introduction to Post-training
How post-training transformed language models with raw intelligence into the AI assistants used by billions of people today
August 5th, 2026Source

London cops handed victim's new address and number to her stalker, watchdog says
Met ordered to improve safeguards after two preventable data breaches
August 5th, 2026Source

Lumu launches live threat intelligence platform for real-time cyber defence
Lumu has announced the release of Lumu Threat Observatory as part of Maltiverse, its threat intelligence solution. Lumu Threat Observatory is Maltiverse's live, personalized threat-intelligence experience, providing organizations with a complete, live view of the active threats targeting their specific sector, helping them spot malicious adversaries early, prioritize vulnerabilities, and automatically block them.
August 5th, 2026Source

New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts
Palo Alto Networks researchers have demonstrated attacks against Google's synced passkey implementation.
August 5th, 2026Source

Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack
The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials.
August 5th, 2026Source

SEC bought access to over a billion airline records to track travelers, no warrant required
Records included passenger names, itineraries, and credit card numbers
August 5th, 2026Source

Tenable broadens AI visibility across major LLMs and AI tools
Tenable has announced enhanced AI security capabilities within the Tenable One Exposure Management Platform. Tenable One AI Exposure now delivers expanded platform coverage with support for Google Gemini, extending its coverage across major LLMs: Google Gemini, Anthropic Claude, OpenAI ChatGPT Enterprise and Microsoft Copilot.
August 5th, 2026Source

The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict
CrowdStrike co-founder Dmitri Alperovitch discusses how cyber operations support kinetic warfare, signal coming conflicts, and reshape the global battlefield.
August 5th, 2026Source

Tuskira expands exposure management with Agentic Control Plane
Tuskira has launched its Agentic Control Plane for Exposure Management, a new capability within the Tuskira platform that governs AI-discovered vulnerabilities from scan to verified closure. The capability extends Tuskira's existing zero-day and exposure-response capabilities to frontier-model scanning.
August 5th, 2026Source

Water Sector Cyberattacks Reportedly Hit at Least 12 States
Georgia has been confirmed as one of the attacked states after Clayton County reported a pump station disruption.
August 5th, 2026Source

Internet — Security Issues — August 3rd, 2026

AI Is Expanding Your Attack Surface. Identity Is Where Security Starts.
Artificial intelligence is changing the way organizations operate, but it is also transforming how attackers gain access. Every AI agent, cloud workload and automated process introduces new identities that must be secured, monitored and governed. As identity becomes the common thread across users, systems and AI, it is rapidly emerging as the foundation of enterprise security.
August 3rd, 2026Source or Source or Source

Attackers exploit N-able N-central flaw to reach managed endpoints (CVE-2026-18577)
Attackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) in N-able N-central, a remote monitoring and management (RMM) solution widely used by managed service providers, to gain access to managed endpoints.
August 3rd, 2026Source

Brinks Home Discloses Data Breach as Hackers Leak Files
The physical security firm says its alarm monitoring and system functionality have not been affected.
August 3rd, 2026Source

Chinese hacker used DeepSeek to launch autonomous cyberattacks on vulnerable servers
A Chinese threat actor operating under the aliases "knaithe” and "KnYuan” used multiple LLMs to automate cyberattacks against internet-facing systems with limited human intervention.
August 3rd, 2026Source

CISA lays out new guidance for using open-source software
The US Cybersecurity and Infrastructure Security Agency (CISA) has published the Open Source Software: Security Principles and Practices guide, which provides federal agencies with recommendations for managing the security of open source software, contributing to OSS projects, and evaluating open source AI systems.
August 3rd, 2026Source

EFF at BSidesLV, Black Hat, and DEF CON 👨‍💻
It's time. Time for tinkerers, security researchers, hackers, and fellow nerds to gather together in signature black hoodies and utilikilts to beat the heat in Las Vegas for the summer security conferences: BSidesLV, Black Hat USA, and DEF CON.
August 3rd, 2026Source

ExfilSquad hackers leak info of over 100,000 UK police officers, staff
A cyberattack on the U.K.'s Police National Legal Database (PNLD) has compromised contact data of more than 100,000 police officers and other criminal justice professionals.
August 3rd, 2026Source

Google Earth Pulls AI Image Generator After Users Created Misleading Images
The speedy U-turn is because users were generating images that "violated” Google's policies. These included making misleading satellite images like the Eiffel Tower in Paris toppled over, fake nuclear plants in Iran, and streams of refugees at the Mexico-U.S. border.
August 3rd, 2026Source

Horizon3 Raises $250 Million to Fund Continuing Growth
Venture financing has become an essential factor in growing new business in today's fast moving economy. Horizon3's latest funding explains how and why.
August 3rd, 2026Source or Source

Inside the Underground Business of the Android BTMOB RAT malware
The Android RAT's official operation is surrounded by cheaper resellers, alleged source-code vendors, independent server owners, and possible impersonators.
August 3rd, 2026Source

KindaRails2Shell threatens Ruby on Rails apps (CVE-2026-66066)
A critical security vulnerability (CVE-2026-66066) in Ruby on Rails (aka Rails), one of the most widely used frameworks for building websites and web apps, may allow attackers to read sensitive files off a server and, in some cases, take full control of it.
August 3rd, 2026Source

Mimecast introduces AI agent governance and managed threat response
Mimecast has unveiled Agent Risk Center, a beta capability for discovering, monitoring, and governing AI agents, alongside Managed Threat Response, a redesigned 24/7 service that combines AI-assisted triage with analyst-confirmed remediation.
August 3rd, 2026Source

N‑able Patches Vulnerability Exploited to Hack N-central Servers
The N‑central vulnerability CVE-2026-18577 has been exploited in the wild after threat actors found a patch bypass.
August 3rd, 2026Source

OpenAI reveals how criminals used ChatGPT to run scams
OpenAI banned a coordinated network of ChatGPT accounts that likely originated in Cambodia's Preah Sihanouk province, a region reports have linked to online scam compounds and human trafficking operations.
August 3rd, 2026Source

Police National Legal Database confirms data theft after dark web leak
ExfilSquad claims 135,000 contact records weeks after hitting the Department for Education
August 3rd, 2026Source

Qodana 2026.2 adds post-quantum crypto checks for JVM code
Qodana 2026.2 shipped with new security inspections, published benchmark results, post-quantum cryptography checks, and coverage reporting that no longer has to be pointed at the reports.
August 3rd, 2026Source

Recent SonicWall Vulnerabilities Exploited in Ransomware Attacks
The INC Ransomware gang has been targeting vulnerable SMA1000 appliances for root access and lateral movement.
August 3rd, 2026Source

River Bank Says Hackers Deleted Data Stolen in Ransomware Attack
The bank holding company was hacked in June, but the investigation into the incident continues.
August 3rd, 2026Source

Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking
Midnight Blizzard has been stealing Microsoft account credentials via compromised Wi-Fi networks at hospitality organizations.
August 3rd, 2026Source

SentinelOne expands security operations automation with governed AI
SentinelOne has today announced governed, closed-loop response across the Singularity Platform, delivering trustworthy automation for security operations. Purple AI and Singularity Hyperautomation now autonomously investigate alerts, reach verdicts, and execute responses.
August 3rd, 2026Source

Simbian adds AI threat hunting agent to expand autonomous SecOps platform
Simbian has released its autonomous AI Threat Hunt Agent, that investigates potential threats and identifies malicious activity across enterprise environments.
August 3rd, 2026Source

Three AI security mistakes that will haunt enterprises
The enterprise AI nightmare is not a killer robot, but an erosion of our ability to see and control what's running in our own environments.
August 3rd, 2026Source

UK government investment arm cops to 40-hour leak of officials' contact details
Employee failed to follow security policy, leaving internal management file open to the public
August 3rd, 2026Source

US Water Cyberattacks Extend Beyond Minnesota to at Least 6 Other States
Michigan, South Dakota, and Georgia are reportedly on the list of states whose water systems have been targeted by Iran-linked hackers.
August 3rd, 2026Source

Water system cyberattacks spread to Georgia, Michigan amid US-Iran conflict
Trump rejects Tehran theory, blames 'grossly incompetent' governor of Minnesota instead
August 3rd, 2026Source

Internet — Security Issues — July 31st, 2026

8 Things to Know About Staying Safe When Using ChatGPT, Gemini and Other AI Tools
Using AI like ChatGPT, Copilot, Claude, Perplexity or Gemini? Here's how to protect yourself.
July 31th, 2026Source

AI scammers outperform humans when it comes to building trust
The AI chatbot was more effective at creating "exploitable trust” than the humans.
July 31th, 2026Source

Amazon: Custom Frontier Model Can Cut Costs, Target Niches
AWS Wants Greater Control Over Training Priorities and Model Economics
July 31th, 2026Source or Source or Source

Anthropic's Claude breached three companies during security tests
Anthropic has disclosed that its AI model Claude gained unauthorized access to the systems of three different organizations during cybersecurity evaluations.
July 31th, 2026Source

Anthropic's Opus 4.7 and Mythos 5 attacked real companies online
OpenAI's bots aren't the only ones attacking real targets online, Anthropic has revealed three of its models also attacked real entities online.
July 31th, 2026Source

AttackIQ targets CTEM execution with AVA Agentic OS
AttackIQ has announced AVA Agentic OS, an agentic operating system designed to operationalize Continuous Threat Exposure Management.
July 31th, 2026Source

Best Password Manager for 2026
Whether you need a password manager for a single user or entire company, these services will protect your identity without sacrificing your sanity.
July 31th, 2026Source

Bitwarden Review: The Best Free Password Manager for 2026
You'll sacrifice some nice-to-have features by going with a free password manager, but Bitwarden doesn't skimp on the ones that matter.
July 31th, 2026Source

CareCloud Data Breach Impacts Over 350,000
In March 2026, hackers stole personal, financial, and medical information from the company's AWS environment.
July 31th, 2026Source

CEO of OpenAI says we're 'in the singularity' with AI: Is he right?
"We are now, like, in the singularity." These are the words of Sam Altman, CEO of OpenAI, speaking on the Relentless podcast on July 25.
July 31th, 2026Source

Charities remain locked out of CAF Bank online accounts
A week into shutdown, 14,000 customers still have no restoration date and some are struggling to pay staff
July 31th, 2026Source

Criminals used AI and children's coding software to build a multimillion-dollar ad fraud empire
A security investigation into inexpensive Android TV boxes led researchers to an ad fraud operation that had remained unnoticed for several years.
July 31th, 2026Source

Critical Flaw Allowed to Azure Cosmos DB Pwnage
Named CosmosEscape, the vulnerability exposed the primary key for Cosmos DB accounts, granting full read and write access.
July 31th, 2026Source

Cyberattacks on Minnesota Water Systems Investigated as Officials Warn About Iranian Hackers
Iran has the "geopolitical motivations” and a recent history of targeting water systems, experts pointed out.
July 31th, 2026Source

Cybercrime goes subscription: AI, malware and infrastructure on demand
Cybercrime has become a commercialized ecosystem where criminals can buy or rent nearly every capability needed to launch sophisticated attacks. These services provide anonymity, plausible deniability, and access to short-lived infrastructure that is difficult to detect, attribute, and disrupt, enabling low-skilled actors to operate at scale, according to the Infoblox 2026 Threat Landscape Report.
July 31th, 2026Source

EU to Crack Down on AI Deepfakes, Illicit Imagery and Hacking With New Team in Brussels
When the AI Act comes into force, AI companies will be required to make clear to consumers with labels or digital watermarks that chatbots or imagery are generated with AI.
July 31th, 2026Source

ESET tracks rise in malicious AI skills and adaptable malware
The first half of 2026 shows how attackers continue to improve the efficiency and scalability of their operations. Rather than relying on entirely new methods and tools, they are quickly adapting established techniques to new platforms, technologies, and user behaviors.
July 31th, 2026Source

Google AI Uncovers 13-Year-Old Chrome Flaw Amid Record Patching Pace
The internet giant has built an agent harness to find vulnerabilities across Chrome's codebase.
July 31th, 2026Source

Horizon3.ai expands NodeZero with automated web application attack path testing
Horizon3.ai has expanded its NodeZero platform with AI-powered web application pentesting. The platform can now autonomously test web applications and identify attack paths that chain application vulnerabilities, credential theft, lateral movement, cloud access, and data exposure.
July 31th, 2026Source

JetBrains says a crafted HTTP request could break TeamCity
The company has patched a critical pre-authentication flaw in TeamCity that could let attackers execute arbitrary commands, expose credentials, and compromise supply chains on self-hosted servers.
July 31th, 2026Source

Record AI Bug Fixes Push Google To Twice-Weekly Chrome Updates
Google has begun piloting a twice-weekly update cadence for its massively popular Chrome web browser, a decision it made in the wake of fast-moving, AI-powered attacks. And for major Chrome milestones, the company is aiming to deliver new builds twice a month, along with weekly security updates, to ensure billions of users stay protected from surging AI threats.
July 31th, 2026Source

Resecurity expands threat intelligence integration ecosystem with IBM QRadar
Resecurity has announced the availability of native integration with IBM QRadar SIEM, a widely used Security Information and Event Management (SIEM) platform used by the leading Fortune 100 corporations worldwide. The plugin is available for activation via IBM Application Exchange.
July 31th, 2026Source

Scotland's university procurement center confirms cybercrooks broke in
APUC investigating after criminals claim historical data theft
July 31th, 2026Source

Sports venues are offering facial recognition to let people in: What are the risks?
Queues at sports events can be very long, even at large venues with many entrance gates. To speed things up, Geelong Football Club recently introduced an "express lane" option for club members.
July 31th, 2026Source

The Stuff of Nightmares: Windows App That Scans User Files, Incorporates Biometrics, Doesn't Need an Account, and Can't Be Uninstalled
Oh, Windows 11, we barely know thee, but it seems you may know far more about us than we ever wanted you to, and your hunger for more personal data is as insatiable as ever. Perhaps the biggest contribution of cell phone technology isn't its ability to provide mobile communication, tracking no matter who is using it or where they are, or the countless hours spent crushing candy; it's actually the ability to help create an unfathomable number of photos. Well, Microsoft is aware of this and has made accessing photos on PCs a top priority, no matter how invasive it may be, or asking users if they want this service or giving them the means to remove it.
July 31th, 2026Source

This Week in AI: Agents, Gatekeepers, and World Models
Plus pressure on the open web and what publishers are doing about it
July 31th, 2026Source or Watch Video

Traefik Labs introduces Distro Zero secure runtime for API and AI gateways
Traefik Labs has introduced the Distro Zero image, a hardened, vendor-supported secure runtime delivered as Traefik Hub in proxy mode. It gives platform and security teams a container whose entire executable content is a single memory-safe binary, with validated cryptography built inside it and every advanced capability, from API gateway to AI and MCP gateway to full API management, unlocked by license on that same binary. No binary swap, no migration, no re-validation as needs grow.
July 31th, 2026Source

Internet — Security Issues — July 29th, 2026

1Password targets standing privileges with new access management capabilities
1Password has launched 1Password Privileged Access, extending the 1Password Unified Access platform with privileged access management (PAM). It enables just-in-time, least-privilege access to critical infrastructure and is accompanied by the public preview of 1Password Credential Broker for GitHub Actions and new Enterprise Password Manager capabilities for developer and AI security.
July 29th, 2026Source

Accuris uses AI to improve BOM decisions and supply chain resilience
Accuris has announced new AI capabilities for BOM Intelligence, part of its Supply Chain Intelligence suite. The launch gives engineering, procurement and supply chain teams a clearer way to move from spotting component risk to acting on it: catching obsolescence early, closing compliance gaps and governing sourcing decisions across programs.
July 29th, 2026Source

Claude and ChatGPT's latest models are nitpicky and burning tokens. Here's the fix
Claude Opus 5 and GPT-5.6 keep flagging minor issues as major flaws, burning through usage limits fast. Here's a prompt that fixes it.
July 29th, 2026Source

Cloudflare reveals what's behind major internet outages
Storms, earthquakes, and infrastructure failures disrupted internet access throughout the second quarter, while governments deliberately shut networks down, according to Cloudflare's latest Internet Disruption Summary.
July 29th, 2026Source

Contrast CVE Shield aims to protect applications while security teams deploy patches
Contrast Security has announced Contrast CVE Shield, designed to help organisations defend against the growing number of exploits generated with advanced AI models such as Claude Mythos.
July 29th, 2026Source

Critical VM Escape Vulnerability Patched in VMware ESXi
A total of five vulnerabilities have been patched in VMware ESXi, vCenter, Workstation, and Fusion.
July 29th, 2026Source

Dozens of Minnesota Water Utilities Targeted in Coordinated OT Attacks
State and federal agencies respond after intrusions disrupt automated controls at municipal water and wastewater utilities.
July 29th, 2026Source

FortiGate 1200G brings FortiSASE Outpost to customer-controlled environments
Fortinet has announced the FortiGate 1200G series, the newest addition to the FortiGate G series with FortiSASE Outpost, which brings cloud-delivered security services into customer-controlled environments.
July 29th, 2026Source

Hackers disrupt over 30 Minnesota water utilities in coordinated OT attack
The Minnesota IT Services (MNIT) agency activated its cybersecurity incident response capabilities across the entire state after hackers targeted more than 30 community water systems in "a coordinated cyberattack.”
July 29th, 2026Source

How to Protect Your AI Agents from Prompt Injection Attacks: An Active Defense Approach
Stop just blocking prompt injections. Learn how to use MIRAGE to trap AI agents in honeypots and force them to burn their own API tokens.
July 29th, 2026Source

Iran-linked CyberAv3ngers suspected in attacks on Minnesota water systems
More than 30 facilities disrupted in 'coordinated cyberattack,' though officials have yet to name a culprit
July 29th, 2026Source

JFrog Zero-Days Exploited in OpenAI-Hugging Face Hack
The OpenAI models targeted services beyond Hugging Face as they attempted to solve the tasks they were given.
July 29th, 2026Source

Joint guidance on minimum elements for a software bill of materials
The Canadian Centre for Cyber Security (Cyber Centre) has joined the United States' Cybersecurity and Infrastructure Security Agency (CISA) and other international partners in issuing guidance on the minimum elements for a software bill of materials (SBOM).
July 29th, 2026Source

Mate Security Raises $35 Million for Agentic SOC
The startup will use the investment to expand its customer support, sales, and R&D teams.
July 29th, 2026Source

MIND AI DLP Agents automate DLP classification, investigations and remediation
MIND has announced MIND AI DLP Agents with capabilities focused on classification, investigation, policies, remediation and exception management. MIND also includes a Model Context Protocol (MCP) interface that enables security teams to direct data security work through any MCP-connected client using natural language.
July 29th, 2026Source

Online Cyber Scams Cost Americans $150 Billion Last Year
A recent report has highlighted the massive financial toll that online scams are taking on individuals across the country. The Consumer Federation of America just released new estimates showing that Americans lost almost $150 billion to cyber fraud last year. This new figure reveals a staggering truth about the problem: the actual damage is about seven times higher than the official numbers reported to law enforcement.
July 29th, 2026Source

OpenAI says rogue AI agent attack hit other companies
ChatGPT-maker OpenAI has revealed that an autonomous artificial intelligence agent that hacked a popular platform for computer programmers also attempted to breach four other companies during the incident.
July 29th, 2026Source

OpenAI's rogue AI agent did more than hack Hugging Face -- it compromised accounts across four services
The model spent more than four days loose on the internet
July 29th, 2026Source

OpenAI's Rogue AI Ventured Beyond Hugging Face
Hugging Face has published an anatomy of the attack and OpenAI has shared additional information from its investigation.
July 29th, 2026Source

ShutterGap: Aryon Security finds 3.7M AWS cloud resources exposed beyond CSPM/CNAPP visibility
Research from Aryon reveals that each year, 3,731,699 short-lived cloud resources containing highly sensitive information are publicly exposed. This impacts any organization using AWS services that support public sharing.
July 29th, 2026Source

Spur Raises $200 Million for IP Intelligence Platform
The IP intelligence company will use the fresh investment to accelerate and scale its operations.
July 29th, 2026Source

Stairwell launches Backstory, pioneering agentic investigation for malware blast radius
Stairwell, the AI SOC that stops breaches no one else can, today announced the availability of Backstory, an agentic investigation platform that traces related malware variants, identifies affected systems, and maps the full blast radius of an incident in seconds, so enterprises know what happened, where it spread, and what needs to be contained before precious time is lost.
July 29th, 2026Source

Stolen Meta and Google ad accounts are worth more than the money they hold
Ad account theft, the systematic hijacking of Meta Business Manager and Google Ads accounts, has grown into a commodity-driven cybercrime economy complete with tiered pricing, escrow services, and money-back warranties for stolen accounts.
July 29th, 2026Source

Supply Chain SecurityUS Bans Foreign-Made Humanoid Robots, Targeting China Over National Security
The agency said imports of advanced robots pose cybersecurity and other national security risks.
July 29th, 2026Source

Tengu botnet reboots Linux devices to survive removal
A new Mirai-derived IoT botnet can force an infected Linux device to reboot once its main process is killed, giving its persistence mechanisms another opportunity to relaunch it, Nozomi Networks Labs has found.
July 29th, 2026Source

ThreatLocker Raises $190 Million in Series F Funding
The company was previously valued at $1.6 billion, and the latest raise has significantly increased that valuation.
July 29th, 2026Source

US, Australia Release OT Isolation Guidance for Critical Infrastructure
The guidance details steps organizations can take to isolate vital OT and supporting systems, and operate in isolation for an extended period.
July 29th, 2026Source

What really happens to your data when you click 'delete'?
Deletion is a common part of modern life. We send files and folders to the recycle bin all the time and often get rid of unwanted personal accounts. But do you know what really happens when you hit the "delete" button?
July 29th, 2026Source

WhatsApp brings end-to-end encrypted voice and video calls to the web
WhatsApp has launched support for voice and video calls on the web, allowing users to make and receive calls directly from their browser without installing the desktop app.
July 29th, 2026Source

Internet — Security Issues — July 27th, 2026

7AI expands platform with Federated SIEM and AI workflow builder
7AI has announced two major platform capabilities: 7AI Federated SIEM, which lets security teams query, investigate, and act on data wherever it lives, including within 7AI, and 7AI Build, which lets enterprises and partners define agentic workflows, skills, and AI-native security services on top of the 7AI platform.
July 27th, 2026Source

Anthropic's Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits
Binary-based vulnerability scanning, penetration testing, and exploit generation are blocked in Opus 5.
July 27th, 2026Source

AWS gives DevOps teams an AI investigator for firewall incidents
AWS DevOps Agent helps administrators inspect logs, review firewall rules and network paths, identify configuration changes that caused AWS Network Firewall to block traffic, and restore connectivity.
July 27th, 2026Source

Beelzebub Raises $3.4 Million for Hacker-Trapping Platform
The company plans to expand its research team, open new offices in Rome and San Francisco, and acquire new clients.
July 27th, 2026Source

Booz Allen expands Vellox Suite with AI-driven threat detection platform
Booz Allen Hamilton has announced an expansion of its powerful suite of AI-powered cyber defense products. Now generally available, Vellox Ranger provides automated, environment-specific threat detections, developed on Booz Allen's proprietary agentic AI framework, that identify exploitable paths and vulnerabilities based on the actual state of an enterprise's infrastructure.
July 27th, 2026Source

C1 adds shadow AI discovery to its identity governance platform
C1 has launched shadow AI discovery to eliminate the massive security blind spots created by unauthorized AI agents, tools, and credentials. By automatically discovering and folding every AI-adjacent identity into C1's existing identity governance platform, organizations can finally ensure that the governed path is the fastest path to safe AI adoption.
July 27th, 2026Source

ChatGPT joins the most impersonated brands in phishing attacks
Microsoft continued to be the most impersonated brand in Q2 2026, accounting for 23% of all brand phishing attempts. LinkedIn, Google, Apple, and Amazon followed, with the five brands together making up more than half of all brand phishing attempts tracked during the quarter, according to Check Point's Q2 2026 Brand Phishing Report.
July 27th, 2026Source

Coca-Cola confirms data theft in Fairlife ransomware attack
The Coca-Cola Company has confirmed that hackers stole data from its dairy subsidiary, Fairlife, during a ransomware attack earlier this month.
July 27th, 2026Source or Source

DentaQuest Data Breach Potentially Impacts Over 23 Million People
In May 2026, hackers stole personal and dental health information from DentaQuest's computer network.
July 27th, 2026Source

Designing Secure REST APIs With Spring Boot
Learn how to secure Spring Boot REST APIs with JWT validation, method-level authorization, input validation, rate limiting, CORS, secure logging, and more.
July 27th, 2026Source

Dynatrace Intelligence automates incident triage and remediation with AI agents
Dynatrace has announced major advancements to Dynatrace Intelligence that help automatically resolve incidents, prevent disruptions, and accelerate operations while maintaining the human oversight and governance enterprises require.
July 27th, 2026Source

Ernst & Young data breach claimed by ShinyHunters extortion gang
The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company's systems via a supply-chain attack.
July 27th, 2026Source

Google changes how it names cyber threat actors
Google Threat Intelligence Group (GTIG) has started using a new naming system for the threat actors it tracks. The change comes after Mandiant and Google's Threat Analysis Group (TAG) merged into one unit, leaving the company with two separate naming schemes built up over years.
July 27th, 2026Source

Google goes it alone with a new cybercrime crew taxonomy
So much for Microsoft and CrowdStrike's plans for consistent names across the industry
July 27th, 2026Source

Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials
A threat actor has been using the compromised appliances to target the Microsoft 365 accounts of traveling corporate employees.
July 27th, 2026Source

Hugging Face is billing OpenAI $100mn for hacking it
Hugging Face was broken into by an OpenAI model this month. Its chief executive has now told OpenAI what he wants in return: every execution trace from the agents, and $100mn worth of compute. OpenAI has agreed to neither, and the two companies have just landed on opposite sides of a new industry alliance.
July 27th, 2026Source

Illinois Man Gets Six Years For Hacking Women's Snapchat Accounts
A federal judge recently sentenced an Illinois man to more than six years in prison after he set up a large scam to steal private photos from hundreds of women. The 27-year-old used fake text messages to trick his victims into handing over their account security codes. Once inside their private profiles, he locked the actual owners out and sold their personal pictures across various internet forums.
July 27th, 2026Source

JetStream Security enables on-demand shutdown of compromised AI agents
JetStream Security has announced the release of an AI Kill Switch that allows organizations to shut down compromised AI agents on-demand without impacting other AI operations. This new control plane for AI agents solves the inability to stop a single agent that falters, begins overspending, or needs to be taken offline for compliance reasons without affecting other agents.
July 27th, 2026Source

Keyfactor Expands Into AI Agent Identity With Cofide Deal
Deal Extends Certificate-Based Trust Framework to AI Agents and Software Workloads
July 27th, 2026Source or Source or Source or Source

Malware found hidden inside popular 'Meccha Chameleon' game maps
An infected system engineer's PC also led to attackers seizing control of the game's nearly 100,000-member Discord server.
July 27th, 2026Source

MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection
The malware-as-a-service operation launches legitimate browsers on an invisible desktop, giving attackers persistent and covert remote access to compromised Windows systems.
July 27th, 2026Source

New GitHub, PyPI Policies Boost Supply Chain Security
Dependabot gets a three-day cooldown window before opening pull requests, and PyPI rejects file uploads to releases older than 14 days.
July 27th, 2026Source

Nvidia and Tech Giants Launch AI Security Alliance
The Nvidia-led coalition aims to give defenders more open tools for testing, auditing and protecting AI models and agents.
July 27th, 2026Source

Older people's media literacy can be boosted in just 60 minutes—new study
An influential political commentator posts a reel on social media, cherry-picking facts to manipulate a situation for political gain. His post gets no likes, no shares and no angry emojis from users.
July 27th, 2026Source

Origin Energy Data Breach Exposes Customer and Partial Card Details
Origin Energy confirms hackers stole customer and partial payment-card data, but the number affected and the method of access remain unknown.
July 27th, 2026Source

PoC exploit released for critical AD CS domain-takeover flaw (CVE-2026-54121)
Security researchers who discovered and reported CVE-2026-54121 (aka "Certighost”), a critical privilege elevation vulnerability in Active Directory Certificate Services (AD CS), have released a proof-of-concept (PoC) exploit for and technical details related to the flaw.
July 27th, 2026Source

Protect your devices from SMS blasters (ITSAP.00.104)
Text messages (SMS) have become one of the most common ways for threat actors to try and scam victims. SMS blasters are a type of cell site simulator, which are portable devices that impersonate legitimate mobile networks to trick nearby devices to connect to them. Threat actors use SMS blasters to carry out SMS phishing attacks (known as smishing) and other malicious activities designed to steal sensitive or financial information or spread disinformation. This publication offers information on the threats posed by SMS blasters and how to best protect yourself.
July 27th, 2026Source

PTC Windchill Vulnerability Exploited in Ransomware Campaign
The critical unsafe deserialization flaw allows attackers to execute arbitrary code remotely, without authentication.
July 27th, 2026Source

Scammers are setting up fake websites to download Windows applications in latest operation
Scammers are impersonating popular Windows app websites, raising fears of a coordinated malware campaign targeting unsuspecting users.
July 27th, 2026Source

Tech giants form alliance to put open AI in cyber defenders' hands
NVIDIA and a group of tech companies have formed an alliance to promote the use of open AI models in cybersecurity, days after OpenAI disclosed that one of its own AI models breached Hugging Face's systems during an internal security evaluation.
July 27th, 2026Source

usbliter8 lawsuit forces 'unpatchable' iPhone hack offline
Digital forensics firm Magnet Forensics says a former engineer stole its confidential iPhone-hacking research and gave it away to a rival company. That rival company — Paradigm Shift — then published the research as an original discovery.
July 27th, 2026Source

Your Claude conversations may have leaked online if you did this
Claude's sharing feature allowed search engines to index private-looking chats, prompting Google to begin removing the exposed pages.
July 27th, 2026Source

What's Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out
The new Mobile Security Exposure Center creates SBOMs for enterprise mobile apps to uncover vulnerable components, dependencies and hidden risks.
July 27th, 2026Source

Zenity advances AI governance with Runtime Boundaries
Zenity has announced a major expansion of its platform, making it the AI security platform for autonomous AI built around a new security architecture designed to govern AI decisions before they become enterprise actions, including those made by long-horizon agents operating autonomously across extended, multi-step workflows.
July 27th, 2026Source

Internet — Security Issues — July 24th, 2026

AegisAI Raises $36 Million for AI-Powered Email Security
The company has raised a total of $49 million in funding, including from Battery Ventures, Accel and Foundation Capital.
July 24th, 2026Source

Chick-fil-A data breach affects more than 13,000 customers
American fast food restaurant chain Chick-fil-A has confirmed that over 13,000 customers had their data stolen in a recent wave of credential stuffing attacks.
July 24th, 2026Source

Clop ransomware targets Windchill, FlexPLM in data theft attacks
The Clop ransomware gang (also tracked as Cl0p) is targeting Internet-exposed PTC Windchill and FlexPLM instances in a new data theft extortion campaign.
July 24th, 2026Source

Europol flags 4,340 URLs for removal in 'The Com' crackdown
Europol has flagged 4,340 URLs for removal during a multi-week operation targeting online content linked to "The Com," a loosely organized network of nihilistic violent extremist groups.
July 24th, 2026Source or Source or Source or Source or Source

Google gives developers an AI bug hunter that also writes patches
Google has launched a preview of CodeMender, an AI agent built to scan code for security flaws, confirm they are exploitable, and generate fixes for developers to review.
July 24th, 2026Source

Google's newest sign-in method asks you to look at the camera
Google's selfie video sign-in option verifies that an account owner is a real person and that the account wasn't created or used by computer programs or bots for the purpose of abuse, such as spamming. It is not available for all regions, accounts, or devices.
July 24th, 2026Source

Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts
Hackers are changing the DNS settings on Wi-Fi devices at hotels and conference centers to redirect users to fake Microsoft 365 login pages.
July 24th, 2026Source

In Other News: Dolphin X AI-Powered Malware, Car Anti-Theft Device Hack, 400 Linux Kernel Flaws
Noteworthy stories that might have slipped under the radar: Siemens ROX II industrial switch vulnerabilities, Russian Zimbra webmail espionage campaign, Stadler Rail ransomware extortion attempt.
July 24th, 2026Source

Industry Reactions to OpenAI Models Hacking Hugging Face: Feedback Friday
Industry professionals debate whether it represents a lab containment failure or an unprecedented agentic capability milestone.
July 24th, 2026Source

Meta is making its AI chatbot more like an assistant
The latest Meta AI update allows it to pull from your calendar to generate daily briefings.
July 24th, 2026Source

Meta tackles AI-generated accounts with a free Facebook verification badge
Meta has introduced Facebook Verified, a free badge meant to show that a person behind a profile has completed identity verification through a selfie check.
July 24th, 2026Source

Meta wins dismissal of WhatsApp privacy suit as judge questions whistleblower detai
The ruling found insufficient detail about the whistleblowers' knowledge but did not call the case frivolous, denied Meta's request for sanctions, and gave plaintiffs until August to refile
July 24th, 2026Source

Microsoft tightens Windows enterprise activation security
Microsoft is making Trusted Platform Module (TPM)-backed attestation a requirement for Windows Key Management Service (KMS), the on-premises service used for Windows volume activation, replacing the software-only trust model with hardware-backed verification to strengthen enterprise activation security.
July 24th, 2026Source

OpenAI's HuggingFace breach heralds an unprecedented age of AI cyber warfare — contemporary LLMs have caused massive upheaval in cybersecurity, and it's only going to get worse
Can the rest of us keep up?
July 24th, 2026Source

Patient Sues Abbott Labs, Exact Sciences in Data Theft
Class Action Suit Claims Labs Failed to Safeguard Data in ShinyHunters Hack
July 24th, 2026Source or Source or Source

Russian hackers exploit unpatched Zimbra servers to steal emails
Russian state-backed hacker group Laundry Bear has been breaking into government and commercial networks for at least a year by exploiting a vulnerability in the Zimbra Collaboration Suite (ZCS) webmail platform.
July 24th, 2026Source or Source or Source or Source

Securing Model Context Protocol Servers: 4 Gates From Code to Production
Secure MCP servers against prompt injection, data leaks, and denial-of-wallet with four practical, OWASP-aligned gates from code to production. Runnable code.
July 24th, 2026Source

Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI Attack
Three attacks, three names, and one identical flaw: AI coding agents treat a hallucinated identifier as a verified command.
July 24th, 2026Source

Uncle Sam tells overseas cybercrooks their visas are canceled
Policy targets online scammers, sextortionists, and potentially their immediate families
July 24th, 2026Source

When the Sandbox Won't Hold: Lessons From Hugging Face
Experts Call for Hard Stops at Every New Privilege and Network Boundary
July 24th, 2026Source or Source or Source or Source

Internet — Security Issues — July 23rd, 2026

Abstract Raises $25 Million to Expand Composable Security Operations Platform
The latest investment round brings the total raised by Abstract to nearly $50 million.
July 23rd, 2026Source

AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing
Hackers are increasingly using AI to launch attacks on a massive scale, with email emerging as a primary target. AI can quickly aggregate personal information — such as information about co-workers, active projects, and recent travel itineraries — allowing bad actors to instantly craft convincing messages that look authentic.
July 23rd, 2026Source

AI arms race in line for a reckoning after OpenAI hacking incident
Aggressive training techniques sharpens threat of bad behavior by leading models.
July 23rd, 2026Source

Assaf Keren Appointed New CISO of Meta
He replaces Guy Rosen, who announced his retirement from the company after 13 years.
July 23rd, 2026Source

Attackers exploit critical Check Point flaw to take over firewall management (CVE-2026-16232)
Attackers are exploiting a critical authentication bypass vulnerability (CVE-2026-16232) that affects Check Point Security Management and Multi-Domain Security Management, the management servers that push policy to Check Point security gateways (i.e., firewalls).
July 23rd, 2026Source

Axonius expands Asset Cloud with Cyber Assets and Exposures enhancements
Axonius has announced new capabilities across the Axonius Asset Cloud to better address asset intelligence and exposure management use cases. The enhancements make it easier than ever to address CMDB visibility gaps and respond to vulnerabilities, while extending asset intelligence capabilities to IoT and OT devices.
July 23rd, 2026Source

Chaos ransomware msaRAT hides its C2 channel inside a legitimate browser process
Cisco Talos has identified a Rust-based remote access trojan it attributes to the Chaos ransomware group, named msaRAT after four of the binding names left in the binary. The tool starts its own instance of Chrome or Edge on the victim machine and controls it through Chrome DevTools Protocol, a debugging interface built into both browsers. The browser then carries the command-and-control traffic over a WebRTC channel.
July 23rd, 2026Source

Check Point warns of SmartConsole zero-day exploited in attacks
Israeli cybersecurity firm Check Point Software has addressed an actively exploited zero-day flaw in the company's SmartConsole graphical user interface (GUI) admin panel.
July 23rd, 2026Source

Chick-fil-A Accounts Get Fried in Credential Stuffing Attack
hreat actors used credentials obtained from other companies to hack into Chick-fil-A One accounts.
July 23rd, 2026Source

Cobalt adds Autonomous Pentest to scale application security testing
Cobalt has introduced Cobalt Autonomous Pentest, a new offering that enables continuous offensive security across an organization's application portfolio by delivering actionable penetration testing results in as little as 24 hours.
July 23rd, 2026Source

Cryptohack Roundup: BitMex Shuts Down
Also: BitShine Fraudster Jailed, Upbit Sanctions Begin
July 23rd, 2026Source or Source or Source or Source

FedRAMP Rev5 Is Ending: What the 20x Transition Really Requires
I spent years on the offensive side of security performing red and purple team assessments, bypassing controls that GRC teams, and often times even auditors, were convinced were working.
July 23rd, 2026Source

GitHub revamps bug bounty program with new VIP tier, payout changes
GitHub is changing its bug bounty program to reward higher-quality vulnerability reports and reduce low-effort submissions, including AI-generated reports.
July 23rd, 2026Source or Source

Hackers abuse Notepad++ plugins to stealthily install malware
Ukraine's CERT has uncovered attacks distributing an archive containing the legitimate Notepad++ application and a malicious utility called LunchPoke disguised as a plugin to establish persistence.
July 23rd, 2026Source

How attackers hosted a fake Claude download page on the claude.ai domain
A threat actor abused Anthropic's Claude Artifacts feature to funnel users toward malware, Huntress researchers have disclosed.
July 23rd, 2026Source

If you get knocked on the head and get all your devices stolen and have amnesia, Google will let you back in with a selfie
You'll need to be able to move your head side to side to make sure you're not a deepfake
July 23rd, 2026Source

Is Patching Dead? Vulnerability Management in the Post-Mythos Era
You cannot out-patch a machine that writes a working exploit from a vulnerability description in twenty hours. Stop trying to optimize a game you cannot win.
July 23rd, 2026Source

Joint cyber security advisory on Russian state-sponsored phishing campaign targeting Zimbra webmail
The Canadian Centre for Cyber Security (Cyber Centre) has joined the United States National Security Agency (NSA) and other international partners in releasing a cyber security advisory warning of a Russian state-sponsored phishing campaign targeting users of Zimbra Collaboration Suite (ZCS).
July 23rd, 2026Source

Microsoft Warns Critical SharePoint Flaw Is Under Active Attack
Another new vulnerability for Microsoft SharePoint, tracked as CVE-2026-50522, is now being actively exploited in the wild, Microsoft warns. Security team watchTowr found evidence of exploits in use, and noted that attacks started the same day, July 20th, as when a Proof of Concept (PoC) attack was published. Another security company, Defused, detected attacks as early as July 17th, which points to private versions of the attack developed in parallel rather than the published PoC version of the attack.
July 23rd, 2026Source

Millions of California-bought cars can be hijacked via Bluetooth
Aftermarket dealer-installed KARR/SWDS security systems all use the same secure key, say UCSD researchers
July 23rd, 2026Source

Mobile Synthetic Identity Scams Can Outscore Real Borrowers
Point Predictive's Matt Vega on Detecting Identity Fraud and $30 Liveness Kits
July 23rd, 2026Source or Source or Source or Source

New Check Point Zero-Day Vulnerability Exploited in the Wild
The vulnerability tracked as CVE-2026-16232 has been exploited against customers with certain configurations.
July 23rd, 2026Source

Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models
SentinelOne's new benchmark, built on the Fast16 case, shows which AI models can sustain a malware investigation and which cannot.
July 23rd, 2026Source

One ChatGPT link could smuggle a rogue AI agent into your company
Researchers say OpenAI flaw let phishing bait create an autonomous corporate mole armed with employee access
July 23rd, 2026Source

Oracle drops 1,449 security patches like it's the new normal
Experts say the era of AI bug hunting is here, so defenders will simply have to adapt to busier workloads
July 23rd, 2026Source

PyPI hardens package security with new upload restrictions
The Python Package Index (PyPI) now rejects uploads of new files to releases older than 14 days to prevent attackers from poisoning long-stable releases if a project's publishing tokens or release workflows are compromised.
July 23rd, 2026Source

Russian hackers exploit Zimbra zero-click flaw for email theft
CISA is warning that the Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is targeting organizations using Zimbra Collaboration email servers by combining phishing attacks with the exploitation of a now-patched Zimbra vulnerability.
July 23rd, 2026Source

Stop! 7 ways you're making your personal info public online
You don't have to stop using the internet to protect your privacy. But you probably need to stop making these common mistakes.
July 23rd, 2026Source

Swiss train maker tells ransomware crooks to get off at the next stop
Stadler refuses $12.3M demand after thieves swipe technical data through supplier platform
July 23rd, 2026Source

Swiss rail manufacturer Stadler refuses to pay $12.3 million ransom after cyberattack
Cybercriminal group Everest is demanding 10 million Swiss francs ($12.3 million) from Swiss rail vehicle manufacturer Stadler after breaching a data exchange platform shared with one of its suppliers through compromised credentials.
July 23rd, 2026Source

Talking smack about a doctor got him access to private medical files
Who needs a working security badge when you know how to talk your way into the records room?
July 23rd, 2026Source

Upbound Group Says Data Breach Led to $13 Million in Fraudulent Contract Losses
Hackers recently obtained non-sensitive customer information and other documents from the company.
July 23rd, 2026Source

US government says Iran-linked hackers are disrupting American water and energy providers
The U.S. government is warning that Iranian state-backed hackers are actively breaking in and disrupting industrial control systems at American water and energy providers. This new alert comes months after federal agencies warned of an escalation in hacking from Iranian actors amid the ongoing war.
July 23rd, 2026Source

Why AI-Generated Code Fails Security Reviews 45% of the Time
AI coding tools produce security flaws in 45% of outputs, yet developers trust the code more despite no security gains in two years.
July 23rd, 2026Source

Year-long Russian attacks infect users as soon as they look at an email
Kremlin cyber goons have been breaking into government and commercial networks for at least a year by exploiting a Zimbra bug with a novel twist on Russia's usual phishing expeditions: this attack occurs as soon as the victim looks at an email, with no need to even click on a link or open a file.
July 23rd, 2026Source

You can now sign in to your Google Account with a selfie video
Google is rolling out selfie video sign-ins for some accounts, using facial checks and liveness detection to verify your identity.
July 23rd, 2026Source

Internet — Security Issues — July 22nd, 2026

Adobe Chrome extension flaw let sites access private WhatsApp chats
The Adobe Acrobat extension for Chrome could be used to access conversations and data rendered in WhatsApp Web without any form of authentication.
July 22nd, 2026Source

AI is rewriting cybersecurity's rules
AI is giving cybercriminals new speed and scale, but researchers say the technology could also become one of cybersecurity's strongest defenses.
July 22nd, 2026Source

AI Models Caught Cheating in Cyber Evaluations
OpenAI, Anthropic Models Broke Test Rules, Left Few Reasoning Clues
July 22nd, 2026Source or Source or Source

Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522)
Attackers are exploiting a critical SharePoint remote code execution (RCE) vulnerability (CVE-2026-50522) to extract the servers' IIS machine keys.
July 22nd, 2026Source

Anubis Ransomware Halts Fairlife Milk Production in the US
Gang Claims 1TB of Stolen Data and Sets Deadline for Ransom Talks
July 22nd, 2026Source or Source or Source or Source

Arista adds AI-driven zero trust to VeloCloud SD-WAN
Arista Networks has announced the launch of its new AI-driven Edge Threat Management (ETM) for VeloCloud SD-WAN, delivering integrated zero trust security for enterprise branch offices. Customers can leverage this integration to simplify the branch, collapsing multiple disparate boxes into a single unified secure SD-WAN edge platform.
July 22nd, 2026Source

As Ransomware Blackmail Surges, Governments Mull a Ban on Paying Up
With AI-powered ransomware, attackers are becoming ever more sophisticated.
July 22nd, 2026Source

Astelia extends reachability analysis with agentic AI for vulnerability management
Astelia has added agentic capabilities to its reachability analysis platform as organizations face shrinking exploit windows and the growing challenge of managing vulnerabilities.
July 22nd, 2026Source

Best Password Manager for 2026
Whether you need a password manager for a single user or entire company, these services will protect your identity without sacrificing your sanity.
July 22nd, 2026Source

Box expands enterprise AI governance with new agent security featuresox
Box has announced new security capabilities designed to give organizations greater control over AI agents working with enterprise content. With new agent guardrails, third-party agent activity oversight, prompt injection detection, agent classification-based access policies, and more, customers will be able to extend Box's security controls to both Box Agents and third-party agents, such as Claude, ChatGPT, and Gemini.
July 22nd, 2026Source

CISA orders urgent action on actively exploited Langflow RCE flaw
The Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday ordered U.S. government agencies to prioritize patching an actively exploited vulnerability in the Langflow visual framework for building AI agents.
July 22nd, 2026Source

EU Huawei Ban Backlash Report Exaggerated, Says Critic
GSMA Intelligence Says Ejecting Huawei Equipment Will Cost Up to 40B Euros
July 22nd, 2026Source or Source or Source

Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation
Using AI, the startup provides adaptive prevention through environment mapping, risk analysis, and automated policy enforcement.
July 22nd, 2026Source

Flaw in Adobe Extension With 300M Installs Enabled WhatsApp Data Theft
An attacker only needed to convince the targeted user to visit a malicious website to exfiltrate WhatsApp messages and contacts.
July 22nd, 2026Source

Fourth SharePoint Vulnerability Exploited in Past Month's Wave of Attacks
CVE-2026-50522 is being exploited by threat actors to steal machine keys and retain long-term access.
July 22nd, 2026Source

Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era
Glow, a cybersecurity startup founded by former Meta and Snowflake executives, emerged from stealth as a unicorn, betting that artificial intelligence is reshaping how enterprises secure employee devices.
July 22nd, 2026Source or Source

Glow Launches With $180M to Thwart AI Risk at the Endpoint
Startup Platform Combines Endpoint Activity, Business Context and Security Policies
July 22nd, 2026Source or Source or Source or Source

Google's Gemini 3.5 Flash Cyber becomes a vulnerability hunter
Google's Gemini 3.5 Flash Cyber model finds, validates, and patches vulnerabilities before they can be exploited while helping mitigate broader misuse. It is part of a limited-access pilot program that will soon be available to governments and trusted partners through CodeMender, Google DeepMind's AI coding agent, with broader access planned over time.
July 22nd, 2026Source

Greedy ransomware crews return for seconds after victims cough up first extortion payments
Some never saw their files again either, infosec biz Proofpoint finds
July 22nd, 2026Source

Hackers stole Estee Lauder staff's bank and health data. The company took nearly a year to say so.
Estee Lauder has told employees that hackers took their most sensitive records, from social-security numbers to bank details to health data. The break-in happened in August 2025. The company only worked that out this June. It is the latest name on a very long list.
July 22nd, 2026Source

How enterprise GenAI can amplify ransomware risk — and how to contain it
Generative AI is rapidly becoming part of everyday business operations. Employees use AI assistants to summarize documents, search enterprise knowledge, draft content and automate routine tasks. Organizations are also beginning to deploy AI agents that interact with business applications and execute workflows with minimal human intervention.
July 22nd, 2026Source

How OpenAI's human mistake led to the AI-powered hack on Hugging Face
On Tuesday, OpenAI revealed that one of its models went rogue during a test and hacked the systems of AI dataset platform Hugging Face in a fully AI-enabled attack, a dramatic example of the dangers posed by advanced AI models.
July 22nd, 2026Source

If you pay a hacker's ransom, chances are that they'll come back for more
Governments have long warned not to pay a hacker's ransom demands, arguing that doing so only lets criminals profit from their cyberattacks and funds the next one. There's also another reason: The hackers are unlikely to leave you alone if you pay up once, and many will come back demanding more.
July 22nd, 2026Source

Lookout identifies exploitable vulnerabilities in mobile apps
Lookout has announced the launch of the Lookout Mobile Software Exposure Center (MSEC). Integrated natively into the Lookout Mobile Endpoint Security platform, MSEC enables organizations to continuously detect, validate, prioritize, and remediate exploitable vulnerabilities across their mobile software ecosystem.
July 22nd, 2026Source

Microsoft Confirms Windows Has a Global Device ID You Can't Turn Off
It's designed to manage software licensing, but Microsoft can also use it to identify individual users.
July 22nd, 2026Source

Microsoft to stop Exchange 2016 / 2019 security updates in October
Microsoft has reminded customers that it will stop shipping security updates for Exchange 2016 and 2019 through the Extended Security Update (ESU) program in October.
July 22nd, 2026Source

New Data Shows Suno Breach Affected 55M Accounts
New data shows 55.3 million Suno accounts were affected in a breach exposing contact details, purchases, and partial payment card information.
July 22nd, 2026Source

New InfraTrust report reveals infrastructure flaws admins should patch first
Eclypsium has launched InfraTrust, a new infrastructure cybersecurity knowledge base and monthly InfraTrust Pulse report designed to help organizations prioritize vulnerabilities affecting infrastructure, firmware, networking, and edge devices.
July 22nd, 2026Source

Nvidia's AI Detector Can Tell Whether a Video Is AI-Generated in Milliseconds
Accuracy is said to hover between 85% and 92%.
July 22nd, 2026Source

OpenAI helps address a terrible AI security flaw following Hugging Face incident
The AI was able to breach its isolation and gain access to the internet.
July 22nd, 2026Source

OpenAI Presence connects AI agents to enterprise data with built-in guardrails
OpenAI has introduced Presence, a product designed to help companies deploy AI agents that handle customer support and internal service requests across voice and chat.
July 22nd, 2026Source

OpenAI says its AI agent broke out of testing sandbox to hack Hugging Face
"This is day one for cybersecurity in the age of agents," Hugging Face CEO says.
July 22nd, 2026Source

OpenAI: Our models breached Hugging Face during a cyber capability test
The recent Hugging Face breach was the work of several OpenAI models, the AI research company claimed in a blog post.
July 22nd, 2026Source or Source

Oracle Patches Over 1,400 Vulnerabilities With Quarterly Security Updates
Many of the vulnerabilities fixed with the July 2026 Critical Patch Update were likely discovered by AI.
July 22nd, 2026Source

Oracle's July update fixes ten 10.0 vulnerabilities in Fusion Middleware
The record number of fixes in this quarter's Critical Patch Update cover 32 product families.
July 22nd, 2026Source

Origin Energy investigates potential breach of customer data
Australia's largest energy retailer has confirmed a breach of customer data, with names, contact details, and partial card and bank account numbers among the information taken.
July 22nd, 2026Source

Palo Alto Networks to Acquire Observability Platform Provider Embrace
Acquisition follows January's Chronosphere deal, deepening Palo Alto Networks' push beyond core security into observability.
July 22nd, 2026Source

Pixels Tracking Every Loan You Take on EU Bank Websites
Jscrambler Detects Cookies Exporting Detailed View of Customer Financial Intent
July 22nd, 2026Source or Source or Source or Source

Police dismantle Kratos phishing platform behind 15,000 monthly campaigns
German and US law enforcement have dismantled the infrastructure behind Kratos, a notorious phishing-as-a-service (PhaaS) platform. Its alleged developer and administrator was arrested in Indonesia by local police.
July 22nd, 2026Source

Ransomware Group Threatening to Leak Data Stolen From Coca-Cola's Fairlife
The Anubis ransomware group claims to have stolen 1 TB of confidential data from the Coca-Cola subsidiary.
July 22nd, 2026Source

Refresh Token Rotation in Node.js: Stopping Token Theft Without Logging Users Out
Implementing refresh token rotation with reuse detection, a pattern that limits the damage of a stolen token while keeping legitimate users logged in.
July 22nd, 2026Source

Sneaky Windows stealer targets 300+ apps, gives crims an AI profiler to maximize profits
Move over Flipper. There's a new Dophin X in town
July 22nd, 2026Source

South Korea discloses data breach impacting diplomats worldwide
South Korea disclosed that hackers breached the National Diplomatic Academy's online education system for ten months and stole personal information belonging to current and former employees of the Ministry of Foreign Affairs (MFA), including overseas diplomats.
July 22nd, 2026Source

Still on Windows 10? You're carrying 3x the security risk of Windows 11
A new study finds Windows 10 PCs average 1,903 active vulnerabilities versus 652 on Windows 11—nearly triple the security risk.
July 22nd, 2026Source

StrongestLayer Raises $4.1 Million in Seed Funding Extension
The startup will use the fresh investment to accelerate its go-to-market strategy and to expand its platform.
July 22nd, 2026Source

Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts
Hackers leaked names, email addresses, phone numbers, passwords, and financial information stolen from the two platforms.
July 22nd, 2026Source

Swimlane AI SOC automates security operations for MSSPs
Swimlane has announced the launch of Swimlane AI SOC for MSSPs, which the company says is designed to empower managed security service providers through agentic AI automation rather than compete for their customers.
July 22nd, 2026Source

Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattack
Swiss rail vehicle manufacturer Stadler Rail says the Everest ransomware gang demanded about $12.3 million after breaching a data exchange platform shared with one of its suppliers.
July 22nd, 2026Source

Third-Party SDKs Raise Privacy Questions for Apps Marketed to U.S. Military
Researchers found Chinese and Russian SDKs in Android apps marketed to U.S. military users, highlighting software supply chain and enterprise privacy risks.
July 22nd, 2026Source

This Malware Kills Your Apps 5 Times a Second Until You Give Up Your Password
It collects data from eight web browsers, some cryptocurrency wallet extensions, password managers, FTP clients, and shell history—then sends it to the attackers.
July 22nd, 2026Source

ThreatDown expands security visibility to AI tools and machine identities
ThreatDown has announced a synchronized expansion of its AI and identity security capabilities to protect organizations from emerging, unmanaged risks. The company launched AI visibility, giving security and managed service provider (MSP) teams a full inventory of the AI tools running across their environments, while simultaneously extending its ITDR capabilities to secure non-human identities (NHI).
July 22nd, 2026Source

or Source

Vibe-Coded Apps Riddled With Exploitable Security Flaws
Analysis found 434 exploitable flaws in AI-generated apps, with denial-of-service, authorization and secrets exposure risks among the most common issues.
July 22nd, 2026Source

When Identity Verification Fails: Lessons from a Real-World SIM Swap and Near Account Takeover
Identity confidence changes throughout every interaction and should be reassessed continuously as new risk signals emerge.
July 22nd, 2026Source

Internet — Security Issues — July 16th, 2026

2 Young Hackers Jailed for Disrupting London Underground
Police Say Arrests 'Effectively Halted' Scattered Spider Cybercrime Collective
July 16th, 2026Source or Source or Source or Source

23andMe to pay $18 million in new genetics data breach settlement
Genetic testing company 23andMe (now Chrome Holding Co.) has agreed to pay $18 million to settle claims from a coalition of 43 attorneys general that it failed to protect customers' genetic data.
July 16th, 2026Source

Adaptiva simplifies secure patch management for air-gapped networks
Adaptiva has announced AirGap for OneSite Patch, a new capability that extends autonomous patch management to air-gapped environments. Developed in response to growing demand from government agencies, critical infrastructure operators, and large enterprises managing highly secure environments, AirGap for OneSite Patch enables organizations to securely patch isolated systems without compromising the physical separation those environments require.
July 16th, 2026Source

AI Agents Broke the Security Playbook. Here's What Replaces It.
For most of the last two decades, enterprise security ran on a workable assumption: the environment was knowable. Security teams could buy tools, inventory users, map systems, define policies, and rely on vendor-built dashboards and workflows to manage most of what happened next.
July 16th, 2026Source

AI Leaders Are Pulling Ahead on Quantum Readiness
Strong Data Foundations Give AI Leaders an Edge in Quantum Security
July 16th, 2026Source or Source

China's Top Cybersecurity Firms Hit by Mounting Military Procurement Bans
Chinese cybersecurity firms are facing action from the country's military, but it's not due to product or technical failures.
July 16th, 2026Source

CISA folds its own hard-won lessons into coordinated vulnerability disclosure guidance
On Wednesday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and four allied cyber authorities published a guide telling software vendors how to build a coordinated vulnerability disclosure (CVD) program.
July 16th, 2026Source

CISA orders feds to patch actively exploited Oracle flaw by Saturday
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to secure their systems by Saturday against ongoing attacks exploiting a critical vulnerability in the Oracle E-Business Suite (EBS) financial application.
July 16th, 2026Source

Claude for Chrome Flaw Puts Gmail at Risk From Rogue Extensions
Researchers say a Claude for Chrome flaw lets rogue extensions trigger Gmail, Docs, and Calendar tasks, with greater risk in unattended mode.
July 16th, 2026Source

'ClickLock Stealer' Bypasses macOS Security With Social Engineering, Process Killing
The new macOS malware has targeted at least 100 users to steal their passwords and cryptocurrency.
July 16th, 2026Source

Cribl Targets TTP-Based Detection With CardinalOps Purchase
Startup Maps Detections Against MITRE ATT&CK and Recommends Missing Protections
July 16th, 2026Source or Source

F5 Patches Multiple NGINX, BIG-IP Vulnerabilities
Attackers could exploit the bugs to modify configurations, terminate or restart processes, cross security boundaries, leak memory, and execute code.
July 16th, 2026Source

Facial movement analysis detects deepfake videos with more than 95% accuracy
So-called deepfakes, that is, images and videos generated with the help of artificial intelligence, are becoming increasingly difficult to detect. An international research team from the University of Tokyo and the Max Planck Institute for Informatics in Saarbrücken, Germany, has developed a method that identifies manipulated videos more reliably than previous approaches—not by searching for visual artifacts, but by analyzing the naturalness of facial expressions. In tests on established benchmark datasets, the approach achieved an average detection accuracy of more than 95 percent and successfully identified manipulations that caused many existing detectors to fail.
July 16th, 2026Source

Google Makes Security Objections to EU Order Opening Android
EU Forces Google to Give Rival AI Services Android Access and to Share Search Data
July 16th, 2026Source or Source or Source or Source

How data brokers get your information, even if you're careful
Being careful online only goes so far. Learn where data brokers get their information and the best ways to limit what they collect.
July 16th, 2026Source

Intruder brings AI-powered, on-demand penetration testing to web applications
Intruder has announced the launch of AI Pentesting for web applications, providing on-demand penetration testing. Following its initial release of issue-level investigations last quarter, the platform now allows organizations to securely connect their codebases via GitHub or GitLab to automatically scope and launch penetration tests in minutes, with results and audit-ready reporting in hours.
July 16th, 2026Source

Law firm insisted on one password to rule them all
Using the admin password, you could be anyone and see anything
July 16th, 2026Source

Legacy Systems, Real-World Impacts: The Reality of OT Security
Legacy systems, safety concerns, and critical infrastructure risks make OT vulnerability disclosure one of cybersecurity's most challenging balancing acts.
July 16th, 2026Source

Lineation.ai focuses on runtime security for autonomous AI agents
Lineation.ai has announced the public launch of its comprehensive agentic security platform. Delivering a solution at the intersection of genAI application security and runtime defense, lineation introduces a zero trust unified control plane and a lightweight endpoint daemon that secures autonomous AI agents directly at execution.
July 16th, 2026Source

Microsoft is rebuilding its security business around AI, and cutting hundreds
Microsoft is overhauling its security business around AI and cutting several hundred jobs, as it races to win back spending flowing to OpenAI and Anthropic.
July 16th, 2026Source

Microsoft makes Windows SSO prompts easier to manage
Microsoft is introducing a new registry-based policy that lets IT administrators automatically accept Windows SSO permissions on Windows 11 versions 24H2 and 25H2 devices managed with Microsoft Entra ID.
July 16th, 2026Source

Microsoft's latest Patch Tuesday fixes 570 security bugs, but some Dell PCs will have to wait
AI is finding more Windows bugs than ever, but patches still aren't reliable
July 16th, 2026Source

New Spirals ransomware encrypts victim network in under 24 hours
A new ransomware actor called Spirals completed a corporate intrusion, from initial access to data theft and encryption, in less than 24 hours.
July 16th, 2026Source

'No company is going to go to jail for you': Proton's CTO on balancing privacy, policy, and trust
Bart Butler on encryption, child safety, and why there's no such thing as a backdoor for only the good guys.
July 16th, 2026Source or Watch Video

Node.js security starts before CI
Modern JavaScript teams do not just need more vulnerability reports. They need dependency decisions that developers can understand before risky code becomes part of the application.
July 16th, 2026Source

Oak Emerges From Stealth Mode With $60 Million in Funding
The startup has built an AI-powered Identity Operating System that governs all identities across an organization's environment.
July 16th, 2026Source

Old UEFI Shims Expose Systems to Secure Boot Bypass
Signed by Microsoft, the vulnerable UEFI shim bootloaders could be abused on any system, regardless of the OS.
July 16th, 2026Source

Police take down investment fraud network that stole €100 million a month
Dutch police, working alongside Belgian authorities and Europol, have dismantled a major criminal network accused of operating a global investment fraud scheme through dozens of fraudulent call centers.
July 16th, 2026Source

Researcher Drops 9th Windows Zero-Day
LegacyHive Is a Local Privilege Escalation Bug
July 16th, 2026Source or Source

Romania's land registry hit by cyber attack, data allegedly for sale
Romania's National Agency for Cadastre and Land Registration (ANCPI) suffered a major disruption on Tuesday, July 14, when its e-Terra cadastre and land registry app became unavailable to users.
July 16th, 2026Source

Russian cybercriminal used jailbroken Gemini CLI to rebuild botnet infrastructure in six minutes
A Russian-speaking threat actor known as "bandcampro" used a jailbroken Gemini CLI, Google's open-source terminal-based AI agent, to deploy and operate a small command-and-control (C2) botnet, according to TrendAI.
July 16th, 2026Source

Russian hackers trojanize WebEx, Zoom apps to push Starland malware
A financially motivated Russian threat actor tracked as UAT-11795 is using trojanized software to steal credentials and cryptocurrency by deploying a new backdoor called Starland RAT.
July 16th, 2026Source

Scattered Spider members behind TfL hack get five years in prison
Two leading members of the Scattered Spider cybercrime collective were sentenced to five years and six months in prison each for hacking Transport for London (TfL) in 2024.
July 16th, 2026Source or Source

Splunk, Zoom Patch Critical Vulnerabilities
The flaws could allow attackers to access credentials and data, take over accounts, and escalate their privileges.
July 16th, 2026Source

Telegram shortlinks knocked offline over sanctioned VPN connection
t.me borked for a day until platform proved it had no ties to service favored by cybercriminals
July 16th, 2026Source

Tenable One unifies code risks with enterprise exposure data
Tenable has announced the expansion of the Tenable One Exposure Management Platform, unifying application security risks with all other exposure data. By integrating static code vulnerability data, Tenable One delivers complete, code-to-runtime visibility across the entire attack surface.
July 16th, 2026Source

The Biggest Data Breaches of 2026 So Far, Ranked by Impact
The biggest data breaches of 2026 so far, ranked by impact, with details on exposed data, affected users, and what readers should do next.
July 16th, 2026Source

UK cops say arrest of two young hackers disrupted the operations of an infamous hacking group
Owen Flowers, 18, and Thalha Jubair, 20, pleaded guilty earlier this year to hacking Transport of London (TfL), the government body overseeing the U.K. capital's public transit system, in 2024. The two were sentenced to five years and six months in prison on Thursday.
July 16th, 2026Source

UK Sees Data Infrastructure, Water System Cyberattack Risks
National Risk Assessment Cites CrowdStrike Lessons Learned, Hybrid Warfare Risks
July 16th, 2026Source or Source or Source or Source

ValorC3 extends SaaS protection with immutable cloud backups
ValorC3 Data Centers today announced the general availability of Backup as a Service, a fully managed offering that protects the SaaS data businesses rely on most, including Microsoft 365, Entra ID and Salesforce. Every backup is immutable, so data stays recoverable after deletion, corruption or a ransomware attack.
July 16th, 2026Source

VS Code agent host runs Copilot, Claude, and Codex in a dedicated process
Developers who lean on AI coding agents often keep several editor windows open at once, each tied to its own session. The 1.129 release of Visual Studio Code reworks that setup with a dedicated agent host.
July 16th, 2026Source

Why AI in Healthcare Demands Stronger Data Oversight
Attorney Jordan Cohen of Akerman on AI Challenges Ahead
July 16th, 2026Source or Source

Windows 10 refuses to die, and the security bill is coming due
One in six machines still run the old OS as migration stalls and patch deadlines creep closer
July 16th, 2026Source

Internet — Security Issues — July 12th, 2026

Microsoft's patch for a Windows Defender 0-day may have created a new attack path
Exploiting the bug could let attackers quarantine massive files until a system's storage is completely full
July 12th, 2026Source

Week in review: Accenture data breach, great open-source cybersecurity tools
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
July 12th, 2026Source

Internet — Security Issues — July 11th, 2026

A VPN Can Only Protect Your Privacy So Much. Here's What to Consider
A VPN is a powerful privacy tool, but knowing what one can and can't do is important for protecting yourself online.
July 11th, 2026Source

Australia warns of global campaign targeting vulnerable CMS platforms
The Australian Cyber Security Centre (ACSC) issued an alert about a global exploitation campaign targeting vulnerable content management systems (CMS) and plugins.
July 11th, 2026Source

Fake Go DNS scanner spread malware through over 200 GitHub repos — 'Operation Muck and Load' has published 700 malicious modules since January
Socket traced the module to 222 repos across 190 accounts staging Vidar, RATs, and XMRig miners, with encrypted payload locations hidden on Pastebin, Telegram, and YouTube.
July 11th, 2026Source

'Ghostcommit' hides prompt injection in images to fool AI agents, steal secrets
Researchers have built a pull request that steals a repository's secrets by hiding the malicious instruction inside a PNG that AI code reviewers never open.
July 11th, 2026Source

The 6 biggest cybersecurity breaches of 2026 so far
The year is only halfway through, yet 2026 has already been filled with data breaches, hacks, and cybersecurity incidents.
July 11th, 2026Source

US Cyber Agency Built Its Incident Playbook During A Live Hack
The federal group in charge of protecting government networks recently admitted a surprising fact about its own planning. The US cybersecurity agency CISA had to build its incident playbook during the incident, the agency reveals in a new public report. Instead of having a ready plan to follow, the team figured out their response steps in real time when a data leak occurred.
July 11th, 2026Source

Internet — Security Issues — July 10th, 2026

AI Coding Tools Can Fake Approval Prompts
Old Unix Symlink Trick Lets Malicious Code Bypass User Checks
July 10th, 2026Source or Source or Source or Source

Anthropic Tops AI Safety Index, Despite a C+ Grade
AI Firms Weakened Safety Pledges as Risks Grow, Says Report
July 10th, 2026Source or Source or Source or Source

Android 17 Root Exploit Chains Firefox Bug with 15-Year Kernel Vulnerability (By pressing a Link)
Security researchers have disclosed a proof-of-concept exploit capable of obtaining root access on Android 17 by combining vulnerabilities in Firefox for Android and the Linux kernel. The exploit chain, called IonStack, demonstrates how two individually patched security flaws can be linked together to achieve complete system compromise after a user simply opens a specially crafted link. According to Nebula Security, the attack begins with a vulnerability in Firefox for Android affecting versions up to 151.0.3. The flaw resides in the browser's JavaScript engine and provides the initial code execution needed to launch the second stage of the exploit.
July 10th, 2026Source

Chat Control 1.0 sneaks through the EU Parliament, letting companies scan user data without warrants — legal tactic used to force a majority-required re-vote on eve of Parliament break
Opponents to the rule suggest the maneuver is unprecedented.
July 10th, 2026Source

China, India-Linked Hackers Both Targeted Same Pakistani Police Force
Both foes and allies have targeted the Balochistan Police force in Pakistan for at least two years, according to SentinelOne.
July 10th, 2026Source

CrowdStrike identifies five new AI prompt injection threats
Awareness of all the ways prompt injection can be effected will help security teams spot a new generation of attacks.
July 10th, 2026Source

Fashion mart Miinto unzips breach details, warns shoppers to watch for phisherfolk
Copenhagen company 'sorry' after 'perpetrator' pops order management system
July 10th, 2026Source

Florida ransomware negotiator convicted for helping ransomware gang extort US companies
Florida man Angelo Martino has been sentenced to more than five years in prison for conspiring with hackers to deploy ransomware during his job as a ransomware negotiator for a U.S. cybersecurity company.
July 10th, 2026Source

Former ransomware negotiator gets 4 years for BlackCat attacks
A former employee of cybersecurity incident response company DigitalMint was sentenced to 70 months in prison for targeting U.S. companies in BlackCat (ALPHV) ransomware attacks.
July 10th, 2026Source

GigaWiper Combines Multiple Malware for System-Level Sabotage
The backdoor's destructive capabilities include a standalone wiper, ransomware encryption, and a multi-pass wiping command.
July 10th, 2026Source

Hackers exploit critical auth bypass in Gitea Docker image
Hackers are actively exploiting a critical vulnerability in the official Docker image for the Gitea self-hosted Git service that allows attackers to impersonate any user, including administrators.
July 10th, 2026Source

'HalluSquatting' Turns AI Hallucinations Into Botnet Delivery Mechanism
Researchers demonstrate adversarial hallucination squatting against popular AI assistants to achieve remote code execution.
July 10th, 2026Source

In Other News: DHS Database Hacked, Adobe Boosts Patch Cadence, Canada Disrupts Ransomware Ops
Other noteworthy stories that might have slipped under the radar: Abnormal AI sued by Anthropic, AssuranceAmerica data breach affects 7 million people, NSA brings back TAO.
July 10th, 2026Source

Incode brings on-device processing to age estimation for privacy-focused verification
Incode has launched On-Device Age Estimation, an age verification capability that performs age estimation and liveness detection directly on the user's device, without transmitting facial data off the device. The company's age estimation models are now available to run entirely on-device. The solution combines on-device age estimation with deepfake and spoofing detection.
July 10th, 2026Source

Is Microsoft Teams really going to start tracking employee locations?
A new "Workspace Check-in" feature rolled out last month.
July 10th, 2026Source

July 2026 Patch Tuesday forecast: Is CVE tracking still practical?
I was off by a month in my forecast of record-setting CVE releases from Microsoft. In June, we saw the deluge of over 200 reported CVEs that I expected in May. There were 116 CVEs for Windows 11 and 104 for Windows 10. In addition, we saw large numbers in both common applications like Office and SharePoint Server as well as the host of development tools and libraries like Visual Studio and .NET. Will the trend continue this month?
July 10th, 2026Source

Microsoft is now using AI to fix Windows bugs before hackers exploit them
As AI helps hackers find exploits faster, Microsoft says it's now using AI as well. Expect more security fixes in future Windows patches.
July 10th, 2026Source

Money launderer accused of stealing seized crypto while in prison
A Bulgarian national has been charged with stealing $290,000 in government-seized cryptocurrency while serving 121 months in prison for helping launder millions stolen from American fraud victims.
July 10th, 2026Source

Network of 200 GitHub Repositories Used for Malware Infection
A Go module is used to load PowerShell code that fetches a resolver from public dead drops to execute Windows malware.
July 10th, 2026Source

Okta Warns of Vishing Attacks Targeting Microsoft 365 Customers
The attackers call victims to direct them to phishing websites mirroring Microsoft Entra ID login pages.
July 10th, 2026Source

RoguePlanet let hackers take over your PC. Microsoft just patched it
Microsoft has patched RoguePlanet—a Defender zero-day vulnerability that lets hackers gain full access to your PC—via Windows Update.
July 10th, 2026Source

SharpViewStateKing: The stealthy implant framework
The Canadian Centre for Cyber Security (Cyber Centre) is actively tracking a compromise that exploited several web shell payloads, enabling multiple hacking techniques. Following incident response activities, analysis revealed that the web shell was part of a stealthy implant framework called SharpViewStateKing
July 10th, 2026Source

The EU just revived a law that lets Meta and Google scan your messages -- critics call it mass surveillance
Encrypted messaging services are currently exempt, but a proposed stricter version could change that
July 10th, 2026Source

The open source library holding up your stack might have one maintainer
Every serious software product runs on code that someone else wrote and released for free. A web service leans on a cryptography library, a data pipeline pulls in a parser, and a mobile app ships a handful of small utilities that one person maintains in spare time. All of it carries the same label. A new paper argues that the single label hides differences large enough to change how each piece behaves once it lands in production.
July 10th, 2026Source

Third US Security Expert Sentenced to Prison for Helping Ransomware Gang
Angelo Martino, a former ransomware negotiator, was sentenced to 70 months for helping the BlackCat/Alphv group.
July 10th, 2026Source

Why you should never sell old electronics without checking them first
Anyone selling old smartphones, SSDs or printers often unwittingly reveals passwords, photos and sensitive documents. We'll show you which devices pose the greatest risk and how to delete your old digital data securely.
July 10th, 2026Source

Workato expands Agent Studio with Headless API, AI guardrails
Workato has announced two new capabilities for Agent Studio: Headless API and Agent Guardrails. Headless API lets Genies, Workato's AI agents built on Agent Studio, be embedded into any business application surface, on web, mobile, or inside another agent's own environment.
July 10th, 2026Source

Zimbra urges customers to patch critical web client XSS flaw
The Zimbra security team urged customers to patch a critical vulnerability affecting the Classic Web Client used to access the Zimbra Collaboration suite.
July 10th, 2026Source

Internet — Security Issues — July 9th, 2026

5,811 arrests, $293 million seized over social engineering scams
Criminals who pose as police officers, romantic partners, and business suppliers have built fraud operations that reach across continents. A four-month enforcement campaign against these schemes wrapped up, and police in 97 countries and territories took part.
July 9th, 2026Source

AI Coding Tools Tricked Into Hacking Developer Machine via Decades-Old Technique
Wiz has disclosed the details of a new AI coding assistant attack method it has dubbed GhostApproval.
July 9th, 2026Source

AssuranceAmerica data breach exposes records of 6.9 million drivers
American insurance company AssuranceAmerica has disclosed a data breach impacting nearly 7 million drivers after attackers gained access to its systems earlier this year.
July 9th, 2026Source

AWS centralizes access, spending, and governance for Claude
Claude apps gateway for AWS is a self-hosted control plane that gives organizations a single point of control over access, costs, and policies for Claude Code and Claude Desktop. It replaces per-developer cloud credentials, manual distribution of managed settings to developer laptops, and centralizes usage attribution and spending controls. The gateway can be deployed with Amazon Bedrock or Claude Platform on AWS, providing the same capabilities in either environment.
July 9th, 2026Source

Hidden Backdoor Found in Tenda Router Firmware
Unauthenticated Flaw Allows Full Router, Network Takeover
July 9th, 2026Source or Source or Source or Source

I argued with a security expert about guest Wi-Fi... and won
Context matters.
July 9th, 2026Source

Meta CTO says employee-tracking data landed 'where it wasn't supposed to go'
Andrew Bosworth offers new detail on why Meta paused its keystroke-logging AI training programme, insisting there was no breach.
July 9th, 2026Source

Microsoft Patches Defender 'RoguePlanet' Vulnerability
The privilege escalation vulnerability tracked as CVE-2026-50656 has been patched with a Microsoft Malware Protection Engine update.
July 9th, 2026Source

Mount Royal University Confirms Data Stolen in Ransomware Attack
Hackers accessed the institution's internal network and deleted two drives containing employee, student, and university data.
July 9th, 2026Source

NetSPI pairs AI pentesting with expert-validated security findings
NetSPI has announced the expansion of its AI-powered continuous pentesting platform, broadening the suite of services that organizations can use to ensure critical assets are always protected. The new services comprise continuous web application penetration testing, continuous AI penetration testing, continuous internal penetration testing and continuous AI findings validation which applies expert human judgement to AI-generated security findings.
July 9th, 2026Source

New hack exploits AI hallucinations to trick agents into running malicious code — 'HalluSquatting' attack exploits a fundamental weakness in every available model
Today, a tale from the book of We Told You So.
July 9th, 2026Source

Police arrests 5,800 suspects in global anti-fraud crackdown
Law enforcement agencies have arrested 5,811 suspects and seized $293 million in illicit assets in a global anti-fraud operation spanning 97 countries.
July 9th, 2026Source

Thief posed as Wi-Fi fixing hero, then stole priceless trophy
If people think you are doing a legitimate job, you can get away with anything
July 9th, 2026Source

Your coding agent says no in chat and yes in the code
Millions of developers share their keyboard with GitHub Copilot. Inside Visual Studio Code, it opens their files, writes and edits code, runs scripts, and reworks its own output across many turns. The safety testing that vets these agents still runs on chatbot rules: one harmful prompt, one response, graded alone. That rulebook misses where the real danger sits, according to a study from the Alan Turing Institute in London.
July 9th, 2026Source

Internet — Security Issues — July 8th, 2026

3 Ways AI Powers Service Desk Attacks and How to Prevent Them
IBM's 2025 Cost of a Data Breach Report found that 16% of breaches studied involved attackers using AI tools, most often for phishing or deepfake impersonation attacks. For security teams, that has direct implications for the service desk.
July 8th, 2026Source

Accenture acknowledges security incident following 35GB data theft claim
Accenture appears to have suffered a data breach, the extent of which is currently unknown.
July 8th, 2026Source

American Hackers-for-Hire Proposal Sparks Heavy Criticism
US Senate Committee Approves Private Sector Hacking Pilot
July 8th, 2026Source or Source

Attackers using Langflow flaw for credential harvesting (CVE-2026-55255)
The US Cybersecurity and Infrastructure Security Agency (CISA) is warning about yet another Langflow vulnerability (CVE-2026-55255) leveraged by attackers in the wild.
July 8th, 2026Source

Attestiv DeepScan combines AI and forensic analysis for file validation
Attestiv announced the launch of DeepScan, a new platform built to help organizations automatically validate submitted files before they drive critical business decisions.
July 8th, 2026Source

Automox MCP Server adds visual reviews and AI-driven patch policy creation
The "Rogue Agent" vulnerability could have enabled attackers to silently manipulate AI conversations, exfiltrate data, and compromise every Dialogflow CX agent within the same Google Cloud project.
July 8th, 2026Source

Blackpoint AI SOC Agent autonomously contains identity-based attacks
Blackpoint Cyber has unveiled the generally available autonomous response capability, Blackpoint AI SOC Agent for identity threat detection and response (ITDR). Using an AI + human hybrid model, the AI SOC Agent acts on high-confidence threats targeting Microsoft 365 and Google Workspace accounts, enabling Blackpoint to contain credential-based attacks in less than two minutes on average and in as little as 21 seconds.
July 8th, 2026Source

Bug in top AI coding agents shows that Unix-era security headaches never really die
'GhostApproval' problem highlights human-in-the-loop fails
July 8th, 2026Source

Censys Internet Map links real-time DNS data to internet infrastructure
Censys has announced the expansion of the Censys Internet Map to include real-time DNS visibility. Security teams can now seamlessly pivot between domains, names, and the Internet infrastructure behind them on the Censys Platform. With active DNS data now part of the Internet Map, security teams can replace workflows that relied on multiple datasets and investigative interfaces with a single cohesive platform.
July 8th, 2026Source

China tells devs to ditch Claude Code over 'backdoor code' fears
National vulnerability database claims monitoring mechanism can forward Chinese users' data to remote servers
July 8th, 2026Source

CISA orders feds to prioritize patching Langflow auth bypass flaw
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) gave federal agencies until Friday to patch an actively exploited vulnerability in the Langflow visual framework for building AI agents.
July 8th, 2026Source

CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws
Two newly disclosed critical vulnerabilities in Adobe ColdFusion and Langflow join two Joomla extension flaws in CISA's Known Exploited Vulnerabilities catalog, with federal agencies given until July 10 to patch.
July 8th, 2026Source

Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection
Researchers show how attackers can use a crafted public GitHub Issue to trick AI-powered workflows into exposing data from private repositories without authentication.
July 8th, 2026Source

Crusoe brings serverless fine-tuning to AI model development
Crusoe has announced Serverless Fine-Tuning and Self-Serve Deployments in Crusoe Intelligence Foundry, the managed AI platform for Crusoe Cloud. These capabilities give data scientists and ML engineers a complete path from proprietary data to production-ready models, on purpose-built AI infrastructure, without the overhead of managing it.
July 8th, 2026Source

DNSFilter makes its DNS threat protection available to OEM partners
DNSFilter has launched an Original Equipment Manufacturing (OEM) program that lets external ISPs, cybersecurity firms, device makers, and other consumer app developers to embed their DNS threat protection, domain analysis, and privacy solutions into their own platforms and solutions.
July 8th, 2026Source

FalconStor Cloud Clean Room enables validated recovery without dedicated infrastructure
FalconStor has announced FalconStor Cloud Clean Room, an on-demand infrastructure platform designed to let organizations perform validated recovery testing in a persistent secure enclave. Each test starts from a known state, reducing the risk of carrying issues over from previous recovery exercises.
July 8th, 2026Source

First Recon AI Security Runtime helps enterprises govern AI with audit-ready evidence
First Recon AI has announced the public launch and general availability of First Recon's AI Security Runtime, a security platform that both governs and secures how enterprises use artificial intelligence across an organization. First Recon's runtime inspects every AI interaction (human to model, agent to tool, and agent to agent), applies policy inline before data reaches a model, and records every decision as audit-ready evidence, so organizations can adopt AI quickly and govern it with confidence.
July 8th, 2026Source

Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations
The "Rogue Agent" vulnerability could have enabled attackers to silently manipulate AI conversations, exfiltrate data, and compromise every Dialogflow CX agent within the same Google Cloud project.
July 8th, 2026Source

Hackers can use 9 of the most popular AI tools to assemble massive botnets
"HalluSquatting" weaponizes LLMs' inability to say "I don't know."
July 8th, 2026Source

Hidden backdoor in Tenda routers goes unpatched as company ignores warnings from cybersecurity researchers — Chinese company's firmware allows admin access without a password
The CERT Coordination Center (CERT/CC), a U.S. government-backed cybersecurity group at Carnegie Mellon University's Software Engineering Institute, disclosed a firmware flaw on July 6 that can hand attackers full administrative control over several Tenda networking devices. The vulnerability, tracked as CVE-2026-11405, is an undocumented authentication backdoor in the affected models' firmware that bypasses the normal login process and grants access to the devices' web management interface without valid credentials. Compounding the risk, there is currently no security patch available, as Tenda — a Shenzhen-based budget networking brand with a large presence in India and other markets — is yet to respond despite CERT/CC reaching out on the issue.
July 8th, 2026Source

Online Privacy Shouldn't Be So Much Effort and So Expensive
Commentary: Protecting your personal data often requires more time, energy and money than the average person might be able to invest.
July 8th, 2026Source

Solo GP Ashley Smith announces second $25M fund to back startups in AI, security and more
Vermilion Cliffs Ventures announced Wednesday the close of a $25 million Fund II. The firm was founded in 2023 by operator-turned-investor Ashley Smith, who runs it as one of the few solo women GPs in venture capital. Speaking to TechCrunch, Smith said this fund will continue the firm's thesis of backing technical founders, specifically those building in AI infrastructure, security, and dev tools.
July 8th, 2026Source

Telco giant KDDI says data breach affects over 12 million people
Japanese telecommunications giant KDDI revealed that millions of people had their email addresses and passwords exposed after attackers breached an email platform used by five internet service providers (ISPs) in the country.
July 8th, 2026Source

Ubiquiti warns of new max severity UniFi OS vulnerability
Ubiquiti has released security updates to patch seven critical vulnerabilities in UniFi OS, including a maximum-severity flaw tracked as CVE-2026-50746 that can be exploited in command injection attacks.
July 8th, 2026Source

Internet — Security Issues — July 4th, 2026

Confidential computing's trust mechanism is broken. The fix may not exist
Attested TLS: the handshake that can't prove who's on the other end
July 4th, 2026Source

JadePuffer ransomware used AI agent to automate entire attack
Researchers identified what they believe is the first documented case of a ransomware operation, JadePuffer, conducted entirely by a large language model (LLM) agent.
July 4th, 2026Source

Internet — Security Issues — July 2nd, 2026

Alleged Scattered Spider hacker extradited to the United States
19-year-old Peter Stokes (who used the online handles "Bouquet," "Spencer," and "Jordan") was arrested in Finland on April 10 while attempting to board a flight to Japan at Helsinki's airport and is accused of having helped extort millions of dollars from multiple high-profile companies worldwide.
July 2nd, 2026Source

Apple's Hide My Email service reportedly reveals users' actual email addresses with little effort — Cupertino has seemingly known about the problem for a year but has yet to fix it
Millions of users risk having their real email addresses exposed
July 2nd, 2026Source

Best Data Removal Services of 2026: Reduce Your Online Presence
Data brokers and people-finder sites are everywhere, but the top data removal services could help you clean up your online footprint.
July 2nd, 2026Source

CISA Warns of Actively Exploited Microsoft SharePoint Vulnerability
CISA says threat actors are exploiting a recently patched SharePoint remote code execution vulnerability (CVE-2026-45659).
July 2nd, 2026Source

CISA: Microsoft SharePoint RCE flaw now actively exploited
Cisco finally confirms attackers exploiting Unified CM flaw
July 2nd, 2026Source

Cisco Confirms In-the-Wild Exploitation of Unified CM Vulnerability
A PoC exploit has been available since public disclosure, and the first exploitation attempts were observed last week.
July 2nd, 2026Source

Cisco finally confirms attackers exploiting Unified CM flaw
Unified CM (formerly known as Cisco CallManager) is the central control system for Cisco IP telephony systems, handling call routing, device management, and telephony features.
July 2nd, 2026Source

Cloudflare changes AI crawler access rules
Cloudflare introduced new controls that let website owners manage AI traffic across three categories: Search, Agent, and Training. The feature is available to all Cloudflare customers, including those on the Free plan, and gives website owners more control over how different types of AI crawlers access their content.
July 2nd, 2026Source

ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds
It can start with something as mundane as dragging a link into your browser. Three seconds later, a threat actor has the tokens needed to take over your Microsoft 365 account, and you never did anything that traditional security awareness training would flag. You just followed what looked like a normal set of instructions.
July 2nd, 2026Source

Cryptohack Roundup: Chinese Fraudster Gets 30 Years in Prison
Also: Hollywood Director Jailed for $11M Fraud
July 2nd, 2026Source or Source or Source or Source

Ctrl+Alt+Oops: FortiBleed criminal's logins stitch two gangs together
Researchers scoured logs, finding opsec fail for at least one person who was working with INC and Lynx simultaneously
July 2nd, 2026Source

DeleteMe Review: The Swiss Army Knife of Data Removal Services
A tried and tested data removal service that has a few more tricks up its sleeve than its younger competitors.
July 2nd, 2026Source

EasyOptOuts Review: A Budget-Friendly Service You Can Set and Forget
EasyOptOuts performs just as well as other data removal services at a fraction of the price, but you give up some transparency and regular security audits.
July 2nd, 2026Source

EFF and Allies: X's FTC Petition to Waive Privacy Violation Order Should be Rejected
X Corp. should not be able to escape privacy compliance because it changed its name.
July 2nd, 2026Source

FortiBleed Campaign Linked to INC, Lynx Ransomware Attacks
Researchers say credentials harvested from hundreds of thousands of FortiGate firewalls are being used to facilitate ransomware attacks by the INC and Lynx operations.
July 2nd, 2026Source

Governance in the Age of AI: Navigating the Mirror Maze
Security Leaders Need to Act Now to Set Guardrails, Seize Opportunities
July 2nd, 2026Source or Source or Source or Source

Hackers shoveled snow for company, were rewarded with network admin access
Fortunately, they were professional red teamers. Unfortunately, they pwned the network
July 2nd, 2026Source

How to Conduct a Successful Audit of AI-Driven Software Development
As AI-generated code becomes commonplace, CISOs need new audit strategies to measure developer practices, govern AI tool usage, and identify software risks before they reach production.
July 2nd, 2026Source

Incogni Review: Comprehensive and Transparent Data Removals
Incogni has wide-reaching coverage, but it lacks third-party efficacy testing data.
July 2nd, 2026Source

India gives WhatsApp three days to defend username rollout amid security fears
Government of the messenger's largest market demands a pause while Meta explains how it plans to stop impersonators
July 2nd, 2026Source

Kanary Review: A Data Removal Service Aimed at Tackling Serious Modern Issues Like Doxxing
Alongside data removals, Kanary offers niche but useful features to combat issues like reputation abuse and doxxing. It's also beta-testing the removal of your information from AI chatbots and LLMs.
July 2nd, 2026Source

Microsoft Flags MCP Tool Descriptions as Hidden AI Agent Attack Path
Microsoft warns that poisoned MCP tool descriptions can steer AI agents into leaking sensitive data through approved tool calls.
July 2nd, 2026Source

Microsoft said exploitation was 'less likely' ... but CISA just added SharePoint RCE to KEV list
Attackers need little more than a valid SharePoint account to execute code on vulnerable on-prem servers
July 2nd, 2026Source

New Chrome Update Fixes 382 Security Bugs Across Desktop, Mobile
Google released a Chrome update addressing 382 security bugs, including sandbox-escape risks. Users and IT teams should update quickly.
July 2nd, 2026Source

New malicious clipboard clone raises serious security concerns for Mac users
Malware disguises itself as this clipboard manager utility to steal your information.
July 2nd, 2026Source

Opera's new security feature stops copy paste attacks from malicious websites
Paste Protect offers the first native defense against 'ClickFix clipboard attacks.
July 2nd, 2026Source or Source or Source

Optery Review: An Effective, but Expensive, Data Removal Service
Optery is one of the best data removal services out there, but it comes with a hefty price tag.
July 2nd, 2026Source

Oracle E-Business Suite was under attack via critical flaw before the public exploit code was even released
Attackers appear to have reverse-engineered Big Red's patch
July 2nd, 2026Source

OWASP CRS v4.28.0 Drops With Critical Security Fixes and First LTS Track
OWASP Core Rule Set v4.28.0 released today delivers critical security patches including XML attribute inspection across attack rules and the elimination of catastrophic backtracking in Unix shell evasion detection. The update adds new protections for quote-based SQL injection evasion, ORM lookup operator injection, and RCE evasion prefixes while removing exponential backtracking from several performance-critical rules. The project also announced v4.25.0 as its first Long-Term Support release, providing enterprise stability as legacy CRS 3.3.x support wraps up in Q3 2026.
July 2nd, 2026Source

Pacemaker manufacturer Medtronic warns patients cybercrooks may have swiped health data
Company that also makes insulin pumps and other devices tells users what was exposed months after ShinyHunters attack
July 2nd, 2026Source

Proton Introduces Lumo 2.0 With Privacy-Focused Upgrade to Its AI Assistant
On Tuesday, Proton introduced Lumo 2.0, the second iteration of its privacy‑first AI assistant. The company says Lumo 2.0 uses new reasoning models that respond faster and handle complex, multi‑step queries better than the previous version.
July 2nd, 2026Source

Scattered Spider Suspect Extradited From Finland to US
FBI Says Peter Stokes, 19, 'Exhibited Substantial Wealth for a Person of His Age'
July 2nd, 2026Source or Source or Source or Source or Source

Smooth AI criminal drives 'first' end-to-end agentic ransomware attack
Don't count on the LLM to return your data - even if you pay up
July 2nd, 2026Source

Why a Windows Hello PIN Beats a Password for Enterprise Security
As phishing campaigns, AI-driven identity attacks, and Windows migration planning raise authentication stakes, IT teams should recheck how Windows Hello PIN security works.
July 2nd, 2026Source

You Won't Buy the New Meta Glasses After Reading About Their Bizarre Subscription Model
Some of the smart glasses' offline features are behind a paywall, because of course they are.
July 2nd, 2026Source

Internet — Security Issues — June 28th, 2026

AI coding agents can be tricked into installing malware via 'clean' GitHub repositories — Mozilla's 0din team shows how Claude Code can be exploited by its own helpfulness
Three levels of indirection, all with seemingly innocuous steps, will catch a bot off-guard.
June 28th, 2026Source

Data breach exposes up to 14.2 million email logins at six ISPs
Japanese telecommunications operator KDDI Corporation disclosed a data breach where threat actors gained access to one of its email systems used by five other internet service providers (ISPs) in the country.
June 28th, 2026Source

FBI Warns That Traffic Distribution Systems Are Being Used to Spread Malware and Scams
The FBI just dropped a Public Service Announcement warning that cybercriminals are abusing Traffic Distribution Systems (TDS platforms) to silently redirect users to phishing pages, malware downloads, ransomware, and financial scams. The kicker? The redirect happens before you ever realize anything is wrong. You click what looks like a legitimate ad or search result and end up somewhere completely different.
June 28th, 2026Source

Week in review: Fortibleed campaign's impact on orgs, Cisco Unified CM flaw exploited
Encrypted DNS runs across much of the Internet. DNS over TLS, HTTPS, and QUIC keep the contents of a query away from anyone watching a network link. The encryption covers the message inside each packet. The packet still carries plaintext headers, and those values mark a flow as DNS.
June 28th, 2026Source

Internet — Security Issues — June 27th, 2026

Apple Helps Tata Electronics Fix Security After A Huge Data Leak
Apple is stepping in to help one of its main suppliers clean up a massive security mess. Tata Electronics, a major partner that builds iPhones in India, just confirmed a serious cybersecurity incident that exposed tons of secret client files on the dark web. In response to the breach, the tech giant sent its own security team to work directly with the manufacturer to lock down its internal systems and stop further leaks.
June 27th, 2026Source

Chinese Framework Powers 200,000 Scam Sites
Threat actors are selling investment scam templates created using the legitimate DCloud Uni-App toolkit.
June 27th, 2026Source

Clean GitHub repo tricks AI coding agents into running malware
An agentic coding tool tasked with cloning and setting up a seemingly benign GitHub repository could execute a malicious payload that remains invisible to security scanners, AI agents, and human reviewers.
June 27th, 2026Source

FBI says Russian intelligence hackers have a new trick for reading your Signal messages, and it works even after you change phones
An updated FBI and CISA advisory names two Russian hacking groups, UNC5792 and UNC4221, and warns that handing over a Signal backup key gives attackers persistent access to an account's entire message history
June 27th, 2026Source

Internet — Security Issues — June 26th, 2026

$3 Million Reportedly Stolen in Polymarket Hack
The decentralized prediction market said hackers targeted some of its users through a compromise of a third-party vendor.
June 26th, 2026Source

Amazon Q Flaw Enabled Cloud Credential Theft via Malicious Repositories
AWS has patched the vulnerability and published its own advisory to inform customers about the potential impact.
June 26th, 2026Source

Apple supplier Tata Electronics tightens security after data breach
Tata Electronics, a major Indian supplier to Apple, has restricted internal access to sensitive systems while it investigates a leak of thousands of confidential client files on the dark web, according to a Tata source and two industry officials, Reuters reports.
June 26th, 2026Source

Critical open-source projects get a new security framework
Open source software projects are getting a new framework for handling security vulnerabilities as AI shortens the time between flaw discovery and exploitation.
June 26th, 2026Source

Cybersecurity firms targeted by fraudulent OpenAI organization invites
Threat actors are creating OpenAI tenants that impersonate legitimate companies and inviting employees to join them, in what appears to be a ploy to trick targets into submitting sensitive company information in chats and projects.
June 26th, 2026Source

First-Ever Exploitation of PTC Windchill Vulnerability Discovered in the Wild
Threat actors have successfully exploited a vulnerability in PTC Windchill in the wild, marking the first confirmed real-world abuse of the popular product lifecycle management (PLM) platform.
June 26th, 2026Source

How Accenture Acquisition Could Push Dragos Beyond Energy
Forrester: Transaction Reflects Move From Services Toward Owning Security Technology
June 26th, 2026Source or Source or Source

ISMG Editors: Prep Now, Hackers Will Soon Wield Frontier AI
Also: AI Model for Drug Development Allegedly Stolen; Accenture's Dragos Deal
June 26th, 2026Source or Source or Source or Source

Miasma campaign poisons 20-plus npm packages, hunts for developer secrets
Microsoft says latest attack targets Leo Platform and RStreams packages, harvesting creds and going after more maintainersz
June 26th, 2026Source

Microsoft Quietly Gives Windows 10 Home Users an Extra Year of Free Security Updates
We didn't see this one coming.
June 26th, 2026Source

Mirage2FA phishing kit uses HTML smuggling to steal Microsoft 365 credentials
Mirage2FA, a phishing kit that combines short-lived HTML smuggling with obfuscated JavaScript loaders to deliver fake Microsoft 365 login pages and steal credentials during MFA prompts, has been identified by researchers at Fortra.
June 26th, 2026Source

More Klue Breach Victims Identified as Hackers Get Hacked
Roughly two dozen companies have notified their customers of the Klue-Salesforce incident impact.
June 26th, 2026Source

Mystery hackers use novel SharkLoader dropper against governments, software devs
Kaspersky researchers have uncovered a previously unknown cyberattack campaign that has compromised government organizations and software development companies in multiple countries.
June 26th, 2026Source

Nebulock Raises $25 Million for AI-Native Contextual Security
The cybersecurity startup provides threat hunting, proactive detection, and behavioral security analytics.
June 26th, 2026Source

New Enterprise-Ready MCP Specification Brings New Security Challenges
A major overhaul of the Model Context Protocol shifts critical security responsibilities from the protocol itself to developers and platform operators.
June 26th, 2026Source

Proof's x401 establishes an open protocol for AI agent identity and authorization
With x401, a service can ask for the proof it requires: verified identity, age, membership, organizational affiliation, signing authority, proof of humanness, orf another trusted claim. The agent presents a compatible credential and authorization. The service verifies the issuer, claim, scope and action before proceeding.
June 26th, 2026Source

Ransomware gangs find Europe's weakest link in third-party suppliers
Ransomware attacks against European organizations increased during the first months of 2026, with third-party suppliers becoming a major entry point for attackers. Black Kite examined 2,066 ransomware incidents across 31 countries between January 2025 and April 2026 in its 2026 European Cyber Risk Report.
June 26th, 2026Source

Russian APT Deploys 'StockStay' Backdoor Against Ukrainian Targets
Turla has been using the backdoor against government and military organizations in Ukraine for espionage.
June 26th, 2026Source

Secukinumab rapidly reduces hidden joint inflammation in psoriasis patients
Before joints become painful, psoriatic arthritis (PsA) often begins silently as enthesitis - inflammation where tendons and ligaments attach to bone. This hidden condition is invisible to routine exams but detectable by ultrasound.
June 26th, 2026Source

SIM-swapping gang busted in international police operation
Officers from Poland's Central Bureau for Combating Cybercrime (CBZC) arrested four suspected members of an organized cybercrime group accused of SIM swap attacks, cryptocurrency theft, and money laundering.
June 26th, 2026Source

Synology issues critical fix for MailPlus Server vulnerabilities
Synology has has fixed critical vulnerabilities in MailPlus Server, a software package used to run private email infrastructure on Synology NAS devices.
June 26th, 2026Source

ThreatModeler introduces Nexus to automate threat modeling with AI governance
ThreatModeler introduces Nexus to automate threat modeling with AI governance
June 26th, 2026Source

Xprize founder says 'humans behave better when they're being watched'
Xprize Foundation founder Peter Diamandis has joined a growing list of tech executives who think that global surveillance is a good idea, saying, "[h]umans behave better when they're being watched."
June 26th, 2026Source

ZeroTier Quantum RC2 brings post-quantum security closer to general availability
ZeroTier has announced the release candidate 2 (RC2) for ZeroTier Quantum, its end-to-end quantum-secure networking platform. This milestone marks the final testing phase, positioning the platform one step away from general availability (GA).
June 26th, 2026Source

Internet — Security Issues — June 23rd, 2026

Algerian Man Extradited to US for Running Cybercrime Marketplaces
26-year-old Abdellah Belmili faces up to 30 years in prison for allegedly operating the marketplaces Market0Day and Spoxy.
June 23rd, 2026Source

Apple and Tesla trade secrets reportedly exposed following a Tata Electronics cyberattack
Up to 630GB of data was reportedly stolen by hackers, but Tata says its operations have not been impacted.
June 23rd, 2026Source

Canadian Electricity Provider London Hydro Discloses Data Breach
Hackers stole customers' names, addresses, email addresses, phone numbers, and account information.
June 23rd, 2026Source

CISO Conversations: Carl Froggett -- Combining CISO and CIO at Deep Instinct
Carl Froggett combines CISO and CIO. He currently occupies both positions at Deep Instinct. Before then, he was CISO at Citi for almost 17 years.
June 23rd, 2026Source

Data Exposure Flaws Threaten Dify AI Platform Used by 1 Million Apps
Attackers could abuse Dify's multi-tenant cloud service to read private chats, preview other tenants' documents, and reach internal APIs.
June 23rd, 2026Source

Don't Panic If You've Been Scammed. Here's What to Do Instead
Take these steps to minimize the damage -- and protect yourself from being scammed again.
June 23rd, 2026Source

Dragos unveils OT-native AI to help critical infrastructure teams prioritize threats faster
Dragos has announced the release of EmberAI, an OT-native AI built on the Dragos Intelligence Fabric. EmberAI gives every analyst immediate access to Dragos's OT-specific intelligence, gained from more than a decade of OT operations, activity, and expertise.
June 23rd, 2026Source

Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks
The high-severity use-after-free vulnerability in Samsung's KNOX security framework affected Android-powered Galaxy devices from the S9 through S25.
June 23rd, 2026Source

FFmpeg PixelSmash Flaw Allows RCE on Video Players, Media Servers, NAS Appliances
Attackers can send crafted media files to execute code in any application that uses FFmpeg's libavcodec library.
June 23rd, 2026Source

GTA 6 early access offers are taking gamers' crypto
Scam websites are circulating across the internet with a pitch aimed at millions of gamers: a way to play Grand Theft Auto VI before its release. The pages promise early access for a few hundred dollars in cryptocurrency, ask buyers to enter a payment code, and claim the game will then unlock.
June 23rd, 2026Source

Hack The Box adds crisis simulations and SOC training to strengthen cyber readiness
Hack The Box (HTB) has announced new capabilities to help security leaders gain greater visibility into skills, performance and operational readiness. As AI transforms cyberattacks and cybersecurity operations, HTB is expanding its cyber readiness platform to help organizations identify gaps, evaluate team performance and strengthen organizational resilience.
June 23rd, 2026Source

How To Manually Update Microsoft Defender in Windows 11
Windows Defender can't really do its job as an antivirus if it's outdated. So, if you suspect you're missing an update or two, you can manually check. It should only take a couple of minutes.
June 23rd, 2026Source

LastPass confirms data breach in Klue supply chain attack
LastPass announced that hackers accessed support cases containing customer data from its Salesforce environment after stealing the company's OAuth tokens in the Klue supply chain attack earlier this month.
June 23rd, 2026Source

Mavenir turns NOC knowledge into automation for autonomous networks
Mavenir has announced its Agentic Service Assurance Framework, a TM Forum IG1251/IG1453-aligned, multi-agent system that automates complex network operations across multiple domains without replacing existing systems.
June 23rd, 2026Source

New N-able feature gives IT teams visibility into AI usage across endpoints and networks
N-able has announced the availability of Shadow AI Visibility across its Unified Endpoint Management (UEM) solutions, N‑central and N‑sight, and its Security Operations platform, Adlumin. The new capability helps organizations identify, classify, and monitor AI tool usage across managed environments, providing IT and security teams with the visibility needed to address a rapidly growing operational and security blind spot.
June 23rd, 2026Source

North Korean Hackers Poison Mastra AI Framework
More Than 140 npm Packages Carried Credential-Stealing Code
June 23rd, 2026Source or Source or Source

Omada Identity Sovereign targets Europe's growing digital sovereignty demands
Omada has introduced Omada Identity Sovereign, a new solution that enables organizations to take direct control over where and how their identity governance is deployed. The solution addresses the digital sovereignty requirements, including data, operational, and jurisdictional control, that regulated organizations cannot meet with standard cloud deployments.
June 23rd, 2026Source

OpenAI Refocuses Cybersecurity Efforts on Patching Over Discovery
OpenAI has expanded its Daybreak cybersecurity initiative with a new suite of tools and partnerships.
June 23rd, 2026Source

OpenAI wants AI to fix vulnerabilities, not just find them
OpenAI expanded Daybreak, its cybersecurity initiative that combines AI models, Codex Security, security researchers, maintainers, industry partners, and access controls to support vulnerability discovery and remediation. Organizations can use the initiative to identify, validate, and fix software vulnerabilities, while developers, maintainers, and security teams can use its tools to strengthen defensive security capabilities.
June 23rd, 2026Source

Russian Initial Access Broker Behind FortiBleed Campaign
Using a custom sniffer, the threat actor has captured over 110 million credentials since at least February 2026.
June 23rd, 2026Source

Scattered Spider members plead guilty to hacking Transport for London
Two members of the 'Scattered Spider' cybercrime group pleaded guilty to hacking the Transport for London (TfL) systems in 2024.
June 23rd, 2026Source

The cybersecurity industry built a $200B business selling you problems. Nobody got paid to fix them.
Cybersecurity has never been better at finding risk. Organizations can identify vulnerable servers, dormant user accounts, excessive privileges, exposed cloud assets, and software flaws in near real time. The market has rewarded that capability handsomely, with global cybersecurity spending projected to exceed the half-trillion-dollar range as enterprises continue investing in tools that promise greater visibility into their environments.
June 23rd, 2026Source

The Exploit Doesn't Exist. You Can Still Prove It Works Against You
For thirty years, vulnerability management has run on what now looks like an impossible luxury: a buffer of months between when a vulnerability was found and when someone could figure out how to weaponize it. Triage by severity, schedule the fix, validate, move on.
June 23rd, 2026Source

Top Indian tech supplier reports 'cybersecurity incident'
A top Indian maker of iPhone parts has confirmed it was hit by a "cybersecurity incident," with media reports alleging that Apple supplier specifications had been leaked.
June 23rd, 2026Source

Trump Signs Executive Order Accelerating Post-Quantum Cryptography Migration
Trump Signs Executive Order Accelerating Post-Quantum Cryptography Migration
June 23rd, 2026Source

Two Scattered Spider hackers plead guilty over Transport for London cyberattack
Two members of the notorious hacker group Scattered Spider have pleaded guilty to charges related to a 2024 cyberattack on Transport for London (TfL) that resulted in £29 million in loss and recovery costs.
June 23rd, 2026Source

Using Reddit to manipulate AI search results is surprisingly easy
A Reddit comment that takes only a few seconds to write can end up influencing the answers generated by AI research tools.
June 23rd, 2026Source

What the Fortibleed campaign means for organizations running FortiGate firewalls
A massive credential-harvesting campaign targeting FortiGate firewalls has exposed thousands of organizations to potential network compromise, and a trove of attacker tools, scripts, and credentials left inadvertently exposed on a server has given researchers an unusually detailed look at how the operation worked.
June 23rd, 2026Source

Windows Secure Boot certificates expire tomorrow. Don't ignore this deadline
Windows Secure Boot certificates must be updated by June 24th. Here's how to check your status and what happens if you miss it.
June 23rd, 2026Source

Internet — Security Issues — June 22nd, 2026

23 ClawHub plugins squatting official scopes expose AI registry security gaps
Plugin registries for AI agents use npm-style scopes like @openclaw/ and @clawhub/ to signal who published a package. But on ClawHub, a registry whose plugins run with Claude, OpenClaw, and other agents, those official scopes weren't reserved to their owners for every package already published.
June 22nd, 2026Source

A Glimpse into the "Search Your Target" Market for Stolen Credentials
Threat actors are increasingly turning massive infostealer-derived credential collections into searchable underground services, allowing buyers to request credentials for a specific company, platform, domain, geography, or account type.
June 22nd, 2026Source

A Vulnerability in PAN-OS Could Allow for Authentication Bypass
A vulnerability has been discovered in the GlobalProtect portal and gateway of PAN-OS which could allow for authentication bypass. The PAN-OS GlobalProtect Portal acts as the central control plane for Palo Alto Networks VPN infrastructure. Successful exploitation of the vulnerability allows the attacker to bypass security restrictions and establish an unauthorized VPN connection.
June 22nd, 2026Source

Attackers Exploit Gravity SMTP Plugin Flaw to Harvest Valuable WordPress Data
Vulnerable WordPress plugin iterations leak API keys, secrets, tokens, server information, and other data.
June 22nd, 2026Source

AWS Continuum offers devs help with securing code
Continuum is a new service intended to hep developers and security teams secure their own code and that of others too, with a goal of automating remediation.
June 22nd, 2026Source

Brazil probes emergency warning system after nationwide rogue alert
Severe weather event alert platform buzzed devices across the country with the word 'misanthropy'
June 22nd, 2026Source

Canadian utility fesses up to data breach, but key details remain off-grid
London Hydro says names, addresses, account details may have been exposed, but much about the intrusion is unknown
June 22nd, 2026Source

Crypto Clipper uses USB drives and Tor to steal wallet data
Microsoft Threat Intelligence and Microsoft Defender Experts have identified a Windows cryptocurrency clipper campaign that has affected users since February 2026. The malware targets clipboard data, wallet credentials and cryptocurrency addresses through Windows Script Host and ActiveX-driven logic.
June 22nd, 2026Source

Decades-Old Squid Proxy Flaw 'Squidbleed' Can Expose User Data
Squidbleed, discovered with the aid of Claude Mythos Preview, has been described as a Heartbleed-style vulnerability.
June 22nd, 2026Source

Europe Seeks to Advance 6G Security, Privacy
EU Projects Seek to Protect Fast New Network, Secure Information Sharing
June 22nd, 2026Source or Source or Source or Source

Five Eyes cyber security agencies statement on the AI shift in cyber risk: why leaders must act now
As the leaders of the Five Eyes cyber security agencies, we are united in our call to action: the evolving landscape of artificial intelligence (AI) is rapidly transforming cyber risk, and we must act swiftly to remain ahead.
June 22nd, 2026Source

Fortinet Responds to FortiBleed Campaign
A database of over 86,000 confirmed working credentials was created during the credential-harvesting campaign.
June 22nd, 2026Source

Gizmodo readers hit with ClickFix malware prompts after account compromise
Infosec buffs say Windows users could have been infected with a nasty trojan, while Mac users got off lightly
June 22nd, 2026Source

Health board apologizes for phishing staff with with bogus vacation day
IT thought a fake offer of extra time off for hard-pressed Canadian medical workers was the way to go
June 22nd, 2026Source

I Turned Off All Antivirus Protection for a Week. Here's What I Learned
Disabling my antivirus for a week taught me that the most important security tool you have isn't software.
June 22nd, 2026Source

Klue hack results in data breach at several cybersecurity firms
A hacking group has taken credit for a breach at market intelligence provider Klue that allowed hackers to steal reams of data from the company's corporate customers, which include some of the biggest names in cybersecurity.
June 22nd, 2026Source

Microsoft fixes AutoGen Studio flaw that enabled code execution
A vulnerability chain dubbed AutoJack in Microsoft's AutoGen Studio interface for prototyping AI agents could let attackers manipulate an agent into executing arbitrary commands on its host system simply by visiting a malicious webpage.
June 22nd, 2026Source

Microsoft scrambles to patch a Defender security flaw called RoguePlanet
A zero-day vulnerability in Microsoft Defender lets attackers gain full system access on up-to-date Windows 10 and 11 PCs. No fix yet.
June 22nd, 2026Source

More Cybersecurity Firms Disclose Impact From Klue Hack
HackerOne, Huntress, Jamf, OneTrust, Recorded Future, Snyk, and Tanium are among the affected Klue customers.
June 22nd, 2026Source

New Exploit Bypasses Apple's Boot Defenses, Affects Millions of iPhones
The vulnerability exploited by the Usbliter8 exploit cannot be patched and a PoC exploit has been released by researchers.
June 22nd, 2026Source

North Korean Hackers Blamed for Mastra NPM Supply Chain Attack
A malicious dependency the attackers added to over 140 Mastra packages fetches a payload targeting cryptocurrency extensions.
June 22nd, 2026Source

Prinz Eugen Ransomware Hits Recent Files First and Skips Ransom Notes
Prinz Eugen ransomware prioritizes recently modified files and leaves no ransom note on disk, creating new pressure on backup windows, endpoint alerts, and incident response playbooks.
June 22nd, 2026Source

Protect yourself: How to make sure your VPN is shielding you
A VPN only protects you when it stays connected.
June 22nd, 2026Source

Internet — Security Issues — June 20th, 2026

Hackers are mass-exploiting a Gravity SMTP flaw to steal API keys from 100,000 WordPress sites
CVE-2026-4020 exposes a REST API endpoint with no authentication check, returning 365 KB of JSON containing email service credentials, database details, and the full software stack to anyone who asks
June 20th, 2026Source

Microsoft finds USB worm that steals cryptocurrency through clipboard hijacking and Tor
The malware, tracked as Trojan:Win32/CryptoBandits.A, spreads through .lnk files on USB drives, replaces wallet addresses for six cryptocurrencies, and uses a portable Tor client to hide its command-and-control traffic
June 20th, 2026Source

ShinyHunters published 45GB of Madison Square Garden data, including facial recognition surveillance records
The leaked data includes internal risk profiles of celebrities, customer emails about facial recognition concerns, and biometric surveillance logs from up to 26 million visitors
June 20th, 2026Source

The UK will scan asylum-seekers' faces for age checks—despite knowing the tech is flawed
Tests of age-verification technology show the risks of life-altering errors.
June 20th, 2026Source

Why Amazon hates 'human-in-the-loop' AI governance
VP Eric Brandwine explains people aren't all that great, actually
June 20th, 2026Source

Why you need to take back control of your synced passwords and how to go about doing that
In this editorial, I explain why I took back control of my synced passwords and share the software I used to accomplish this.
June 20th, 2026Source

Internet — Security Issues — June 19th, 2026

Accenture to buy Dragos, runZero, and NetRise in $4.2 billion cybersecurity deal
Accenture is expanding its position with the acquisition of a majority stake in Dragos and all of runZero and NetRise to deliver end-to-end operational technology (OT) security for the critical infrastructure and industrial operations underpinning power grids, pipelines, manufacturing, distribution facilities and data centers.
June 19th, 2026Source

BlackFog brings shadow AI visibility to macOS endpoints with ADX Vision
BlackFog has announced the general availability of ADX Vision for macOS, extending its shadow AI detection, governance, and prevention platform to Apple endpoints. With this release, enterprises can now apply a single, consistent AI data-loss policy across Windows and macOS devices to stop sensitive data from leaving the organization through unsanctioned LLMs.
June 19th, 2026Source

Britain's privacy watchdog quits after 'poor judgment' admission
John Edwards says his position had become 'untenable' following investigation into conduct including inappropriate attempts at humor
June 19th, 2026Source

Cisco to Acquire WideField Security to Boost Splunk's Agentic SOC
WideField will accelerate Agentic SOC capabilities by expanding the lens on threat investigation to include identity, credentials, sessions, and blast radius.
June 19th, 2026Source

Cybercriminals abused GitHub, YouTube and VirusTotal to push crypto-stealing malware
A cryptocurrency-stealing malware campaign used inflated GitHub activity, software reviews, YouTube tutorials and favorable VirusTotal comments to make malicious trading and gambling tools appear trustworthy, Check Point researchers found.
June 19th, 2026Source

Cybercrime Initial Access Service SocGholish Disrupted
Police Seize Evil Corp-Tied Group's Servers, Clean Subverted WordPress Sites
June 19th, 2026Source or Source or Source or Source

Cybersecurity Firms Impacted by Klue Supply Chain Attack
The hackers exfiltrated data from Salesforce instances of Klue customers, such as Huntress and Recorded Future.
June 19th, 2026Source

CryptoBandits Malware Doubles as a Backdoor, Abuses Tor
CryptoBandits uses a local SOCKS5 proxy for traffic routing, blending data theft with remote code execution.
June 19th, 2026Source

Everything's bigger and better in Texas -- even data breaches
Hunting and fishing license incident catches 3M residents
June 19th, 2026Source

Experts Warn of 'Mismatch' in US Response to OT Hacking
Cross Sector Dependencies in OT Hinders Attack Response
June 19th, 2026Source or Source or Source or Source

Forget traffic lights, Google's reCAPTCHA may ask for hand gestures
Google has introduced hand gesture verification for reCAPTCHA, a new method for verifying that a user is human.
June 19th, 2026Source

FortiBleed: 86,000 Fortinet Device Credentials Compromised
The large-scale credential theft campaign hit roughly half of the internet-accessible Fortinet firewalls and VPNs.
June 19th, 2026Source

France and Germany Boost Digital Sovereignty Push
Franco-German Plan Defines Digital Sovereignty, Paris Unveiles Tech Fund
June 19th, 2026Source or Source or Source or Source

From Reflection to Shadow: AI, Us and the Space in Between
When AI Partnerships Deepen, Security Leaders Can Access Powerful Joint Cognition
June 19th, 2026Source or Source or Source or Source

Frontier Airlines site leaks all personal info with just a glance at a boarding pass, researcher claims — booking number and last name nets you every passenger's personal info, including address, passport, TSA PreCheck, and most credit card info
Bob is a hacker. Just over three months ago, they found serious vulnerabilities in Frontier Airlines' API and website that would let anyone with a boarding pass code for a flight retrieve every passenger's personal information, including but not limited to home address, nearly all credit card info, full passport details, and even TSA PreCheck codes. The boarding pass code (called PNR) is written on the pass itself, or scannable via its barcode; plus, since it's only six digits, it's easy to loop through, something they replicated to find several passengers' full info.
June 19th, 2026Source

GitLab 19.0 Embeds Agentic AI in Secrets, Merge Requests, and Supply Chain Security
GitLab has released GitLab 19.0, moving its agentic AI from code generation into the work that surrounds it: securing credentials, reviewing and merging changes, and scanning released packages. The 21st May release adds a public beta of GitLab Secrets Manager, extends the Developer Flow agent across the full merge request lifecycle, and makes software bill of materials (SBOM) dependency scanning generally available.
June 19th, 2026Source

Google sets timeline for Android developer verification enforcement
Android's developer verification protections will take effect on September 30, 2026, starting with users in Brazil, Indonesia, Singapore, and Thailand. Developers distributing apps through participating stores in those markets must complete the verification process by the deadline. Google Play, HONOR App Market, OPPO App Market, Galaxy Store, Palm Store, V-Appstore, and GetApps will begin verifying app installations, with expansion to certified Android devices globally planned for 2027.
June 19th, 2026Source

Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin
Threat actors are exploiting an unauthenticated information disclosure vulnerability in the WordPress plugin Gravity SMTP, active on 100,000 sites.
June 19th, 2026Source

Hackers have stopped breaking in. They're abusing the things developers already trust.
Two campaigns this week tell the same story. A group called TeamPCP has poisoned more than 1,000 open-source packages, and other hackers turned Anthropic Claude's own 'Shared Chats' into a malware delivery system. Neither broke in. Both abused trust, and AI is making it easier.
June 19th, 2026Source

HIPAA's No Joke: Gag Gift Firm's Health Plan Pays $450K Fine
Investigation of Spencer's Gifts Ransomware Breach Unearths Data Privacy Violations
June 19th, 2026Source or Source

In Other News: Apple Patches Beats Eavesdropping Flaw, DOT Closes Delta CrowdStrike Probe, AWS Continuum
Other noteworthy stories that might have slipped under the radar: Android TV botnet Popa linked to Israeli firm, Velvet Ant maintained decade-long stealth, unpatched GCP Config Connector flaw enables takeover.
June 19th, 2026Source

Intel hires former SK hynix chief Seok-Hee Lee to lead Intel Foundry advanced packaging — company establishing section as 'focused business with dedicated leadership'
Intel has appointed Seok-Hee Lee, the former chief executive of memory maker SK hynix and battery maker SK On, as executive vice president of Intel Foundry, handing the semiconductor veteran control of advanced packaging, system integration, and all back-end technology development and manufacturing. Lee reports directly to CEO Lip-Bu Tan, and his arrival comes with a structural change at the foundry: Intel is splitting advanced packaging out as a dedicated business, with Naga Chandrasekaran narrowing his focus to front-end work on the Intel 18A and 14A nodes.
June 19th, 2026Source

Is That Call, Text or Email Real? Here's How to Identify Scams
Scams are more advanced than ever, in large part thanks to AI. But there are still ways to identify them.
June 19th, 2026Source

ISMG Editors: Cyber Backlash Over the US Ban on Anthropic AI
Also: Why Smaller AI Models Are Gaining Ground, CISOs Navigating the AI Trust Gap
June 19th, 2026Source or Source or Source or Source

Klue breach lead to Salesforce data theft, Huntress affected
Cybersecurity vendor Huntress was among multiple companies hit by a breach originating at Klue, a market intelligence platform used to integrate CRM and sales data across various business tools.
June 19th, 2026Source

Klue Confirms OAuth Token Theft Led to Salesforce Data Heist
'Compromised Legacy Credential' Wielded by Extortion Group Calling Itself Icarus
June 19th, 2026Source or Source or Source or Source

Mastodon 4.6 adds profile Collections and two-factor controls
People who run accounts on the open source social network Mastodon can now group profiles together and share those groups across the web. The 4.6 release centers on a feature called Collections, along with reworked profiles, email newsletters, server administration controls, and a set of accessibility changes.
June 19th, 2026Source

NY man charged after harassing college student with AI-generated nudes
A New York man faces cyberstalking charges after allegedly sharing AI-generated nude images and fabricated racist messages using fake social media profiles to harass a Georgia college student.
June 19th, 2026Source

Rights groups brand Home Office's AI age guesser for asylum-seekers as biased and inaccurate
Campaigners say tech is unable to reliably distinguish between kids and adults at the boundary where use is planned
June 19th, 2026Source

ShinyHunters Threatens to Leak Amazon One Medical Records
Extortion Gang Claims It Stole 8.8TB of Healthcare Firm's Data
June 19th, 2026Source

Texas govt data breach exposes over 3 million driver's licenses
The Texas Parks and Wildlife Department (TPWD) disclosed a data breach at its license system vendor that exposed personal information for more than three million individuals.
June 19th, 2026Source

Unauthenticated RCE in Splunk Enterprise under active attack (CVE-2026-20253)
CISA has added CVE-2026-20253, a critical, remotely exploitable vulnerability in Splunk Enterprise, to its Known Exploited Vulnerabilities catalog, and ordered US federal civilian agencies to apply mitigations by June 21, 2026.
June 19th, 2026Source

Why Your Apple Account Needs Two-Factor Authentication Today
Two-factor authentication (2FA) is a crucial security feature designed to enhance the protection of your Apple account. It requires two forms of identification to verify your identity, making sure that even if someone obtains your password, they cannot access your account without completing an additional verification step. By combining your password with a six-digit verification code, 2FA establishes a multi-layered defense that significantly reduces the risk of unauthorized access.
June 19th, 2026Source

Windows Platform Security and the Race to Secure AI Agents
In a new Windows Developer Blog post titled "Windows platform security for AI agents", Microsoft positions Windows as the trustworthy operating system for autonomous agents and introduces the Microsoft Execution Containers (MXC) SDK as the core of that strategy. The post argues that containment, identity and manageability must be built into the operating system so that agents can be deployed and governed safely at scale. It describes a spectrum of isolation mechanisms, from process and session isolation through to planned micro virtual machines and Linux containers, all driven by MXC policy.
June 19th, 2026Source

Internet — Security Issues — June 16th, 2026

AI and Cybersecurity -- Everything You Wanted to Know, But Were Afraid to Ask
From defending networks to enabling attacks, artificial intelligence is changing every aspect of cybersecurity. Here's what dozens of experts say security leaders need to understand now.
June 16th, 2026Source

AppViewX extends machine identity security to AI agents and post-quantum environments
AppViewX has announced Agent Identity Security, a new product within the AppViewX platform that discovers, governs, secures, and monitors AI agents across the entire enterprise.
June 16th, 2026Source

Are Chrome extensions safe? This security expert advises caution
An ethical hacker explains how add-ons can leave you vulnerable to attack.
June 16th, 2026Source

Attackers are exploiting FortiSandbox vulnerabilities
Attackers have been spotted exploiting three vulnerabilities (CVE-2026-39813, CVE-2026-39808, CVE-2026-25089) in FortiSandbox, a platform that other Fortinet security products depend on for threat verdicts to enforce blocking decisions and trigger automated responses.
June 16th, 2026Source

Attackers hijacked over 1,500 Arch Linux packages to steal developers' secrets, no hacking required
The malware never touched Arch Linux's official repositories. It didn't have to: the attackers simply adopted abandoned packages in the community-run AUR and rewrote their build scripts to plant a credential stealer, exposing the trust model the repo runs on.
June 16th, 2026Source

Atomic Arch Supply Chain Attack Hits 1,500 AUR Packages
Arch Linux suspended account registrations in response to the wave of malicious packages being uploaded to AUR.
June 16th, 2026Source

Cal Water Investigating Iranian Hackers' Claims
California Water Service says there is no indication of operational disruptions to its water and wastewater systems.
June 16th, 2026Source

Can CISOs Trust Their Applications? TrustCloud Wants to Replace the Questionnaire
By continuously analyzing security, infrastructure, and governance data, TrustCloud aims to give CISOs a real-time view of application risk and board-ready assurance.
June 16th, 2026Source

Cardiac monitor maker's security skips a beat as data thieves go for the jugular
Attackers used social engineering to access third-party business apps and steal patient information
June 16th, 2026Source

Cisco discloses second exploited SD-WAN vulnerability in two weeks (CVE-2026-20262)
Cisco has revealed another Catalyst SD-WAN Manager vulnerability (CVE-2026-20262) that its Product Security Incident Response Team observed being exploited by attackers.
June 16th, 2026Source

CISA warns of another cPanel plugin flaw exploited in attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. government agencies three days to secure their servers against an actively exploited vulnerability (CVE-2026-54420) in the LiteSpeed cPanel user-end plugin.
June 16th, 2026Source

Critical Copilot vulnerability allowed hackers to steal 2FA code from users
SearchLeak exploit shows why the industry's approach to LLM security fails over and over.
June 16th, 2026Source

Critical Fortinet FortiSandbox flaws now exploited in attacks
Attackers are now exploiting several critical vulnerabilities in Fortinet's FortiSandbox cyber threat detection platform, according to threat intelligence company Defused.
June 16th, 2026Source

Crooks found a new way to collaborate using Teams -- by hiding command-and-control traffic
Custom malware routed communications through legitimate Microsoft services, making malicious activity look like routine corporate collaboration
June 16th, 2026Source

Crypto scammers are sending couriers to victims' homes to collect cash
Scammers behind cryptocurrency investment schemes are dispatching couriers to pick up cash from victims in person, the FBI warns.
June 16th, 2026Source

Cyber Resilience Summit Dallas Prioritizes Risk Management
CISOs Discussed Governance, Security Operations and Cyber Risk
June 16th, 2026Source or Source or Source or Source

Cybercrime Group Claims Novo Nordisk Hack
The hack-and-leak group FulcrumSec claims to have stolen 1.3TB of data from the pharmaceutical giant.
June 16th, 2026Source

Cybercriminals mask malicious communications through Microsoft Teams relays
The DragonForce ransomware group used a custom malware called Backdoor.Turn to hide command-and-control traffic inside Microsoft Teams relay infrastructure during an intrusion at a U.S. services company, according to Symantec.
June 16th, 2026Source

Endpoint Security Startup Ent Emerges From Stealth With $100 Million Seed Round
Ent has developed an intent-aware platform designed to interpret user and agent behavior before risky actions are carried out.
June 16th, 2026Source

FTC warns of record $3.5 billion losses to imposter scams in 2025
The U.S. Federal Trade Commission (FTC) warned that Americans lost $3.5 billion to imposter scams in 2025, with reported losses nearly tripling since 2020.
June 16th, 2026Source

GhostTree Attack Abused Recursive Windows Junctions to Hide Malware
Most security teams think of NTFS junctions and symbolic links as niche file system features. They let one directory point to another, like a shortcut that the OS treats as real. They exist for backward compatibility, storage management, things that rarely come up in a SOC. But they have a property that makes them interesting from an offensive perspective: any user can create them.
June 16th, 2026Source

Google crushes massive AI scam ring to quiet your inbox
Chinese network used AI templates to impersonate popular brands and services.
June 16th, 2026Source

Hacker Conversations: Isira Adithya, the Evolution of an Ethical Hacker
From building LED bulbs to graduating college and buying a house with money earned from bug bounties.
June 16th, 2026Source

iRhythm Confirms Data Stolen in Hack
The digital health company said it learned of the breach on June 8 and the attackers demanded a ransom.
June 16th, 2026Source

Keep up with HIPAA Expectations amid Growing Cyber Threats
In the healthcare industry, a security failure isn't just an information technology (IT) problem. It's a patient safety problem that can result in non-compliance fines under the Health Insurance Portability and Accountability Act (HIPAA).
June 16th, 2026Source

Magnitude Emerges From Stealth Mode With $10 Million in Funding
The company is enhancing third-party risk management (TPRM) through autonomous AI agents.
June 16th, 2026Source

Radware AI Xploit Shield delivers virtual patching for newly identified application and API flaws
Radware has announced AI Xploit Shield, a new service that provides organizations with protection for their applications and APIs from exploitation of newly discovered vulnerabilities.
June 16th, 2026Source

Ransomware gang abuses Microsoft Teams relays to hide malicious traffic
DragonForce ransomware used a custom malware named 'Backdoor.Turn' to hide command-and-control traffic inside Microsoft Teams relay infrastructure.
June 16th, 2026Source

Scammers keep scoring: Brits fleeced for £1.3B as Americans lose $3.5B to impersonators
More reasons to love social media and AI
June 16th, 2026Source

ShinyHunters Claims Council of Europe HR Data, Threatens Leak
ShinyHunters claims it stole 297GB of data from the Council of Europe, including payroll and medical records, but the organization has not confirmed a breach.
June 16th, 2026Source

SimpleHelp RMM flaw could give attackers full access to managed endpoints (CVE-2026-48558)
A critical vulnerability (CVE-2026-48558) in SimpleHelp, a popular remote monitoring and management (RMM) tool, can be exploited remotely by unauthenticated attackers to create a new "Technician" account and use it to remote into managed endpoints, execute scripts, and more.
June 16th, 2026Source

Software supply chains are heading for a transparency test
Software supply chain visibility is becoming part of product security work as the EU Cyber Resilience Act (CRA) moves toward application in December 2027. ENISA's SBOM Adoption State of Play 2026 shows organizations preparing for CRA obligations through SBOM tooling, automation, and changes to software development practices.
June 16th, 2026Source

South Korea Fines Coupang $409M Over Massive Data Breach
Investigators Found Months of Unchecked Database Scraping Activity
June 16th, 2026Source or Source or Source or Source

TekStream launches Proactive Cyber Defense to counter AI-driven threats
TekStream has announced the launch of TekStream Proactive Cyber Defense, a new expert-operated security service powered by Cosmos, the company's cyber defense intelligence platform.
June 16th, 2026Source

Teleport adds LLM Proxy and Delegated Identity to secure AI agent actions and access
Teleport has announced the debut of two foundational capabilities of its Agentic Identity Framework in the public beta of Beams: LLM Proxy and Delegated Identity. These capabilities address a critical gap in how organizations deploy AI agents: the lack of identity, access control, and auditability at the two most consequential points in an agentic workflow—what the agent is instructed to do and what it is permitted to access.
June 16th, 2026Source

The Trust Problem in Modern SaaS: Why Your Authentication Succeeded, and You Still Got Breached
Modern SaaS breaches often happen after successful authentication. Learn how trust drift, weak authorization, and stale tokens create hidden risks.
June 16th, 2026Source

UK confirms social media ban for kids is coming -- Meta, YouTube, and Snapchat respond
Keir Starmer says he won't compromise on children's safety, but Australia's experience shows bans are hard to enforce
June 16th, 2026Source

UK to require ID or face scan before you can make social media accounts
The UK government will ban under-16s from social media, with regulations due before Christmas and the rules taking effect in spring 2027.
June 16th, 2026Source

White House Issues Memo to Bolster NSS Cybersecurity
NSPM-12 establishes a clear structure for NSS cybersecurity governance and accountability and reestablishes CNSS.
June 16th, 2026Source

Windows version of SprySOCKS Linux malware used to attack govt orgs
Windows variants for the SprySOCKS Linux malware have been used in attacks targeting government organizations in at least four countries.
June 16th, 2026Source

Internet — Security Issues — June 15th, 2026

1Password Buys Apono to Expand AI Access Governance
Buying New York Startup Adds Just-in-Time Authorization and Governance Controls
June 15th, 2026Source or Source or Source or Source

1Password Credential Broker reduces secret sprawl through identity-based credential delivery
1Password has announced 1Password Credential Broker, a new product that securely brokers credentials, tokens, and federated access from 1Password to trusted requesters. The 1Password Credential Broker is available in private beta today, with support for GitHub Actions and a roadmap that extends trusted access across humans, machine workloads, and AI agents through a common identity fabric.
June 15th, 2026Source

2021 Honda Civic infotainment system can be jailbroken via USB — flaw uses public Android test keys to install unauthorized apps, enables for 'EvilValet' attacks
This isn't a new issue at all, but it seems that automakers still don't care enough for cybersecurity on their vehicles.
June 15th, 2026Source

Administration's AI security order acknowledges risks but stops short of regulating industry
The new executive order focuses on using AI to boost the security of federal and private computer systems. It also aims to ensure that the federal government has access to major new AI models before they are released to the public to determine whether they pose a threat.
June 15th, 2026Source or Watch Video

AI vulnerability discovery is pushing 2026 CVEs toward 66,000
Vulnerability disclosures are piling up faster in 2026 than anyone expected at the start of the year. The running count for the first few months sits well above the original projection, and the Forum of Incident Response and Security Teams (FIRST) now expects the year to land near 66,000 CVEs.
June 15th, 2026Source

China-linked spies backdoored authentication stack to stay hidden for years
A China-linked cyber espionage group known as Velvet Ant spent nearly a decade inside the internal network of an unnamed organization without being detected, according to the results of a forensic investigation published by cybersecurity firm Sygnia.
June 15th, 2026Source

Chinese hackers breach REDCap servers, steal medical research
A China-linked espionage campaign targeted exposed REDCap servers to deploy the InfiniteRed malware and steal sensitive data from a medical institution in North America.
June 15th, 2026Source

Chinese Hackers Target Medical, Military, and AI Research in North America
Google's Threat Intelligence Group has been tracking the cyberespionage group as UNC6508 since early 2025.
June 15th, 2026Source

Cybersecurity vets protest 'dangerous' US government ban on Anthropic's most powerful models
A group made up of dozens of cybersecurity experts, including several well-known veterans of the industry, published an open letter to the U.S. government asking it to lift the export control order on Anthropic's Fable and Mythos models.
June 15th, 2026Source

Delinea and Cyera integrate for data-aware identity security
Delinea and Cyera announced a product integration that connects privileged access to sensitive data exposure, automatically correlating identities with the data they can access. Together, Delinea and Cyera help security teams identify, prioritize, and remediate the highest-risk access paths across every human, machine, and AI agent.
June 15th, 2026Source

FBI And Google Crush AI Scam Ring Behind 1.59 Million Phishing URLs
SMS spam has evolved far beyond the era of low-effort annoyances, transforming into a massive, industrialized ecosystem. Today, it's a highly calculated numbers game consisting of fake package notifications, urgent bank alerts, and non-existent security breaches designed to prey on everyday users. While these text alerts may appear random and disconnected on your phone, a look under the hood reveals a highly coordinated, centralized infrastructure.
June 15th, 2026Source

FBI: Fraudsters use couriers to steal money in crypto scams
Such scams usually start with the fraudsters reaching out to their targets via social media, dating sites, and messaging apps, building trust, and then luring victims into fake investment schemes. However, instead of investing their funds, the scammers will steal the money by moving it into accounts under their control.
June 15th, 2026Source

FBI, Google Dismantle 'Outsider Enterprise' Phishing Service
The platform used more than 9,000 phishing sites, stealing nearly 4 million credit cards and causing roughly $1.9 billion in losses.
June 15th, 2026Source

French Government Messaging Platform Breached by Mysterious 'Misere' Hacker
French officials say roughly 73,000 government accounts were affected, while the threat actor claims to have stolen messages and user data from the sovereign Tchap platform.
June 15th, 2026Source

I write about online scams. A fake Nvidia livestream still almost fooled me
The stream was fake. The warning signs were real.
June 15th, 2026Source

Infinite Campus data breach affects 137,000 school staff accounts
The ShinyHunters extortion gang stole personal information from more than 137,000 school staff accounts in a Salesforce data theft attack that targeted the widely used Infinite Campus K-12 student information system in March.
June 15th, 2026Source

Maine Disables Data Breach Portal Due to Fake Submissions
Someone posted fake VRChat and Discord data breach reports on the system, prompting the Maine AG to take action.
June 15th, 2026Source

Microsoft site throwing warnings after someone forgot to renew cert
Connectivity checker trips browser alarms thanks to lapsed security paperwork
June 15th, 2026Source

Modat enhances Magnify with Passive DNS for faster threat hunting and infrastructure analysis
Modat has launched native Passive DNS intelligence in Magnify, its internet intelligence platform, unifying IP, device fingerprint, certificate, and passive DNS into a single pivot-driven investigation flow.
June 15th, 2026Source

New attack turned Microsoft 365 Copilot into 1-click data theft tool
A critical vulnerability chain dubbed SearchLeak in Microsoft 365 Copilot Enterprise could allow attackers to steal sensitive data from a target's mailbox, OneDrive, or SharePoint account through a specially crafted URL.
June 15th, 2026Source

NewCore Emerges From Stealth Mode With $66 Million in Funding
The startup has built a security-first identity platform to protect humans, machines, and AI agents.
June 15th, 2026Source or Source

Omada Agent Governance helps organizations manage AI agent access, risk, and compliance
Omada has announced Omada Agent Governance, a new solution designed to help organizations bring the same governance discipline to AI agents and non-human identities that they already apply to people.
June 15th, 2026Source

Oracle Warns PeopleSoft Customers After Critical Zero-Day Exploited
Oracle issued emergency guidance for CVE-2026-35273, a critical PeopleSoft flaw exploited in a ShinyHunters-linked campaign targeting universities.
June 15th, 2026Source

Ozempic Maker Novo Nordisk Says Hackers Breached IT Systems
The pharmaceutical giant says the attackers gained access to personal data stored on the compromised systems.
June 15th, 2026Source

PhishLumos: Exposing phishing campaigns that evade detection by hiding content
Phishing remains one of the most stubbornly persistent threats in cybersecurity: humans are tired, distracted, trusting, and susceptible to urgency and authority in ways that no amount of awareness training can completely overcome.
June 15th, 2026Source

PRC-linked spies hid inside medical and military networks for more than a year, snooping through Gmail and stealing data
Google says the intruders were on the hunt for everything from drone tech to pathogens
June 15th, 2026Source

Ransomware Attack Shuts Down Mills of Australia's Second-Largest Sugar Producer
Mackay Sugar was targeted in a cyberattack carried out by a threat group known as The Gentlemen.
June 15th, 2026Source

Red Sift, GMO GlobalSign partnership simplifies email authentication and BIMI adoption
Red Sift has announced a partnership with GMO GlobalSign to provide organizations with a direct path from email authentication to verified brand visibility in the inbox. Red Sift OnDMARC is now available through GMO GlobalSign, enabling secure outbound email protection and the activation of Brand Indicators for Message Identification (BIMI) through a GMO GlobalSign Verified Mark Certificate (VMC) or Common Mark Certificate (CMC), all through a single trusted provider.
June 15th, 2026Source

ShinyHunters Claims Council of Europe Hack
The extortion group threatens to leak 297 GB of data allegedly stolen from the Council of Europe, including employee personal information.
June 15th, 2026Source

The FBI built a small town to simulate cyberattacks
The Kinetic Cyber Range has a fake hotel, a gas station, and even its own data center for people to protest.
June 15th, 2026Source

The FBI Warns That Chinese Spies Are Using Job Boards Like LinkedIn For Serious Scams
Today's job market can be tough to navigate, which is why many people use LinkedIn and other job search apps to help narrow down the hunt. Just be sure to be aware of some of the common scams that users need to watch out for. But while it can be a useful tool, it's also become the target of controversy. In a document entitled "Safeguarding Our Secrets," the FBI is warning that Chinese intelligence is using LinkedIn and other professional networking platforms to get access to sensitive information.
June 15th, 2026Source

Trust3 AI's AgentDOS monitors AI agent activity, data access, and token consumption
Trust3 AI has announced AgentDOS, an enterprise control plane that provides visibility into AI agents, including real-time token consumption monitoring across platforms such as Databricks Agent Bricks and Microsoft Copilot Studio.
June 15th, 2026Source

Ukrainian national pleads guilty in connection with Conti ransomware
A Ukrainian national pleaded guilty to conspiracy to commit wire fraud in connection with the deployment of Conti ransomware, which targeted more than 1,000 victims worldwide.
June 15th, 2026Source or Source

US Anthropic Export Controls Sparks Sharp EU Reaction
Decision to Restrict Access Exposes EU Dependency on US-Made Models
June 15th, 2026Source or Source or Source or Source

Internet — Security Issues — June 10th, 2026

After AI Reaches Production: 12 Ways Security Teams Can Take Control
Security teams need more than visibility into AI applications, they need a repeatable framework for monitoring, investigating, and defending them in production.
June 10th, 2026Source

AISLE Snapshot keeps source code under enterprise control during vulnerability scanning
AISLE has introduced AISLE Snapshot, a new offering that gives regulated and security-sensitive enterprises access to frontier-class vulnerability detection inside their own environments, at a fraction of the cost, with source code and security data that never leave their control.
June 10th, 2026Source

Anthropic's Claude Fable 5 is out for public use, with safeguards for high-risk requests
Days after publishing research on how advanced AI systems could amplify cyber operations in the wrong hands, Anthropic released Claude Fable 5, a Mythos-class model for general use.
June 10th, 2026Source

Apple extends Private Cloud Compute to third-party data centers
Apple is bringing its Private Cloud Compute (PCC) platform to Google Cloud, expanding the infrastructure behind Apple Intelligence to third-party data centers.
June 10th, 2026Source

Are Small Models Closing the Gap on Frontier AI Cyber Tools?
Fable 5 Release Fuels Debate Over Whether Frontier Models Are Worth the Higher Cost
June 10th, 2026Source or Source or Source or Source

Aryon Security Raises $29 Million in Series A Funding
In the post-Mythos era, the company's platform helps organizations enforce security controls across environments.
June 10th, 2026Source or Source

Best VPNs for torrenting: 5 top picks for speed, privacy, and security
Stay safe while torrenting with these top VPN picks.
June 10th, 2026Source

Building reusable workflows with custom agents in Copilot CLI
Developers spend much of their working time in the terminal, generating commands, debugging issues, and running scripts close to their systems. Repeated terminal work tends to pile up small steps such as re-running the same commands, re-explaining context, and translating logs into a form a team can act on. Custom agents in GitHub Copilot CLI address these patterns by turning repeated tasks into reusable workflows.
June 10th, 2026Source

China-linked JDY botnet expands targeting of U.S. military networks
The JDY botnet, a malware network previously associated with Chinese threat actors like Volt Typhoon, has significantly expanded its targeting scope and reconnaissance efforts.
June 10th, 2026Source

Critical HVAC and UPS Vulnerabilities Could Let Hackers Disrupt Data Centers
Claroty researchers have analyzed the security of Vertiv UPS network cards and the Trane Tracer SC+ HVAC controller.
June 10th, 2026Source

Critical Ivanti Sentry flaw allows root-level remote code execution (CVE-2026-10520)
Ivanti has patched two critical vulnerabilities (CVE-2026-10520 and CVE-2026-10523) in Ivanti Sentry and has urged customers to implement the fix right away.
June 10th, 2026Source

Critical Vulnerabilities Patched in Fortinet, Ivanti Products
Two OS command injection flaws can be exploited remotely, without authentication, for arbitrary code execution.
June 10th, 2026Source

Cybersecurity researchers aren't happy about the guardrails on Anthropic's Fable
Anthropic released its latest model Fable on Tuesday, billing it as a public and limited version of its powerful and much-hyped cybersecurity model Mythos.
June 10th, 2026Source

Cyera Raises $600 Million at $12 Billion Valuation
Cyera is positioned as one of the most valuable privately held cybersecurity firms in the world with total funding topping $2 billion.
June 10th, 2026Source

Data Center OT Flaws Could Help Hackers Kill Power and AC
Claroty Warns of Downtime, 'Devastating' Impact of Vulnerabilities in OT Systems
June 10th, 2026Source or Source or Source or Source

Drata brings visibility, control and auditability to enterprise AI agents
Drata has introduced AI Agent Governance, a new security category focused on managing the risks and oversight requirements of AI agents, while extending its trust platform to support enterprise adoption of autonomous AI systems.
June 10th, 2026Source

Election Systems Are Now a Persistent Cyber Target
Long Dwell Times and Persistent Footholds Are Redefining the Election Threat Model
June 10th, 2026Source or Source or Source or Source

EU rules on securing IT products could affect open source software users beginning this week
The EU's Cyber Resilience Act aims to make hardware and software more secure — but enterprises are still unaware of its implications for open-source software usage.
June 10th, 2026Source

Essential Cybersecurity Tools Every Developer Should Use in 2026
Security is no longer a concern you can hand off to a dedicated team at the end of a project. In 2026 developers are expected to think about security at every stage from writing the first line of code to deploying on a production framework.
June 10th, 2026Source

Every set of AI guardrails can be broken by the right prompt
Companies that build AI systems wrap them in guardrails meant to block harmful output, including deepfakes, malware, and instructions for making biological weapons or illicit drugs. When a user prompts the system for such content, the guardrails are designed to flag the request and refuse. A new mathematical proof sets a limit on how secure those guardrails can ever be.
June 10th, 2026Source

F5 adds AI-powered threat detection and API security for on-premises environments
F5 has introduced new web application and API protection (WAAP) capabilities for its Application Delivery and Security Platform. The company said the updates are intended to address a threat landscape in which AI models can accelerate the time between vulnerability discovery and exploitation, giving attackers faster access to offensive capabilities. The new features expand the AI-powered web application firewall (WAF) functionality in F5 Distributed Cloud Services.
June 10th, 2026Source

GitHub pulls pin on npm's auto-run scripts
Shai-Hulud worm exploited exactly this. Better late than never, says everyone except the malware authors
June 10th, 2026Source

Google Search knows where you live. Here's how to claw back some privacy
You probably can't disappear from Google completely, but you can make yourself much harder to find.
June 10th, 2026Source

ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact
In addition, Rockwell Automation announced some enhancements to its SecureOT cybersecurity solution for OT.
June 10th, 2026Source

Identity theft is turning into a chain reaction for victims
More than one in four people who contacted the Identity Theft Resource Center during the reporting period were dealing with multiple identity-related incidents, according to the organization's 2026 Trends in Identity Report.
June 10th, 2026Source

Infostealers Turn Millions of Devices Into Credential Theft Machines
As attackers increasingly favor stolen credentials over exploits, infostealers have become a primary source of access for ransomware and other cybercrime operations.
June 10th, 2026Source

Ivanti tells Sentry customers to patch now as critical bugs hit 10.0 and 9.9
Remote, unauthenticated RCE with root privileges is about as bad as it gets
June 10th, 2026Source

Microsoft patches Exchange Server zero-day exploited in attacks
Microsoft has patched an actively exploited Exchange Server vulnerability that allows threat actors to execute arbitrary JavaScript code in cross-site scripting (XSS) attacks targeting Outlook Web Access users.
June 10th, 2026Source

Microsoft patches YellowKey, GreenPlasma, MiniPlasma zero-days
On Tuesday, Microsoft patched two zero-day vulnerabilities that let attackers gain SYSTEM privileges on fully patched Windows systems, and a third one that grants access to BitLocker-protected drives.
June 10th, 2026Source

Microsoft releases KB5094127 Extended Security Update for Windows 10 -- and it's causing problems
For anyone who has decided to stick with Windows 10 and has signed up for the Extended Security Updates program, Microsoft has released the KB5094127 update.
June 10th, 2026Source

Microsoft's June 2026 Patch Tuesday Smashes Record With Over 200 Security Fixes
Another month, another Patch Tuesday for Windows users. This one's a bit bigger than usual, though: Microsoft has released a record-breaking Windows 11 patch addressing a whopping 206 vulnerabilities. The former record-holder was this past October's Patch Tuesday, which fixed 175 vulnerabilities.
June 10th, 2026Source

New Browser-in-the-Browser phishing uses fake login popups to steal Microsoft 365 credentials
A new Browser-in-the-Browser (BitB) phishing campaign is targeting Microsoft 365 users with fake login popups designed to closely mimic legitimate browser authentication windows, according to Palo Alto Networks Unit 42.
June 10th, 2026Source

New Intel 471 assessment helps organizations measure CTI program maturity
Intel 471 has announced its new Cyber Threat Intelligence (CTI) Maturity Pulse Check, a free, lightweight self-assessment for practitioners based on the Cyber Threat Intelligence Capability Maturity Model (CTI-CMM v1.3).
June 10th, 2026Source

New Windows Zero-Day Exploit 'RoguePlanet' Released
Exploiting a race condition in Microsoft Defender, the exploit leads to local privilege escalation to SYSTEM.
June 10th, 2026Source

Oracle PeopleSoft servers hacked in ShinyHunters data theft attacks
Oracle PeopleSoft servers are being targeted in ongoing data theft attacks by the ShinyHunters extortion gang, which claims to have stolen data from over 100 organizations.
June 10th, 2026Source

Record Microsoft Patch Tuesday, fresh zero-day
Microsoft marked its largest-ever Patch Tuesday this month, by shipping fixes for nearly 200 vulnerabilities.
June 10th, 2026Source

Rubrik launches Autonomous Business Recovery to rebuild cloud applications after cyberattacks
Rubrik has unveiled Autonomous Business Recovery (ABR) for Cloud Applications, the agentic cyber resilience solution that recovers cloud applications from data to network, identity and configurations. The end result is a rebuild of an organization's Minimum Viable Business (MVB) at machine speed.
June 10th, 2026Source

Scam Calls Have Gotten Out of Control. This One Strategy Actually Helps
Scam calls are smarter and more frequent than ever, but one targeted strategy can keep most of them from ever reaching you.
June 10th, 2026Source

ServiceNow Patches Vulnerability Exploited Against Some Customers
The company updated hosted customer instances to patch a security issue it reportedly had known about since April 7.
June 10th, 2026Source

Signal attacks UK plan to scan devices for nude images as "mass surveillance"
The UK says tech firms could face fines if they fail to adopt stronger protections for children
June 10th, 2026Source

The 5 Best Practices for Secure Identity Verification
The challenge for security teams has evolved from simply verifying identities to verifying them securely without creating friction for legitimate users. Weak onboarding processes, overreliance on static credentials, and inconsistent authentication policies all create opportunities for attackers to exploit.
June 10th, 2026Source

Windows Secure Boot deadline won't brick your PC, but don't ignore it
Microsoft clarifies the June 24 Secure Boot deadline isn't a hard cutoff. Here's what you should do before October.
June 10th, 2026Source

Your face is the ticket: Google's Gemini and biometric gates are the World Cup's quieter tech story
Two layers are rolling out across the 16 host cities: consumer AI from Google, and biometrics that turn a fan's face into a ticket. Both are aimed at fans, and both will outlast the tournament.
June 10th, 2026Source

Internet — Security Issues — June 8th, 2026

174,000 Impacted by Lansing Community College Data Breach
Hackers accessed personal information stored on certain Lansing Community College systems in February 2025.
June 8th, 2026Source

A Qilin ransomware affiliate exploited a Check Point VPN zero-day for a month before a patch existed
CVE-2026-50751 bypasses authentication on VPN gateways using the deprecated IKEv1 protocol, and the attackers are also hitting Palo Alto, Fortinet, and F5
June 8th, 2026Source

A Security Raises $37 Million for Autonomous Offensive Security Platform
The company founded by Yossi Torati, Omer Gull, and Yuval Itzchakov has emerged from stealth mode.
June 8th, 2026Source

AI Exploit Risks Pushing Healthcare Security Shift
MultiCare Health CISO Jason Elrod on Need for Faster Cyber Resilience
June 8th, 2026Source

AI-Powered Toys Spark Privacy Concerns in Australia
AI toys are finding their way into Australian homes and schools, raising new concerns about how children's data and safety are protected.
June 8th, 2026Source

Anthropic Calls for Pause on Frontier AI Development
Era of Self-Replicating AI Is Coming, Firm Says
June 8th, 2026Source or Source or Source or Source

Anthropic Urges Industry Coordination to Allow for a 'Pause' in AI Development if Risks Grow
The proposed coordination would let advanced AI labs verify that global rivals have actually stopped or slowed their work.
June 8th, 2026Source

Artificial Intelligence-Driven Phishing: How Phishing Technique Is Evolving and Implemented
The Microsoft Digital Defense Report 2025 provides an updated overview of the phishing landscape, marked by a significant increase in both the scale and efficiency of attacks in recent years. This phenomenon is largely attributable to the capabilities provided by artificial intelligence.
June 8th, 2026Source

Blockchain framework could curb credential fraud in online degrees, tests suggest
The researchers explain that these platforms usually rely on a single administrative infrastructure for authentication, records and content delivery. This, they suggest, creates a single point of failure, where disruption or compromise of the central system might affect the entire environment. This could open up the possibility of data tampering, credential fraud and unauthorized access, while undermining trust in online degrees.
June 8th, 2026Source

Check Point links VPN zero-day attacks to Qilin ransomware gang
Israeli cybersecurity company Check Point has released security updates to patch a critical flaw affecting Remote Access VPN and Mobile Access deployments, which was exploited in zero-day attacks.
June 8th, 2026Source

CISA: Patch actively exploited SolarWinds Serv-U DoS vulnerability (CVE-2026-28318)
A vulnerability (CVE-2026-28318) that can be exploited to crash SolarWinds Serv-U file transfer servers is being leveraged by attackers in the wild, the US Cybersecurity and Infrastructure Security Agency (CISA) confirmed on Friday.
June 8th, 2026Source

ConnectSecure's Patch 360 gives MSPs control over patch testing and deployment
ConnectSecure has announced the launch of Patch 360, a patch management solution built for managed service providers (MSPs) to reduce deployment risk while accelerating vulnerability remediation.
June 8th, 2026Source

Critical UniFi OS bug lets hackers gain root without authentication
Attackers can chain three already fixed vulnerabilities in the Ubiquiti UniFi OS server to execute remote code with root privileges and without authentication.
June 8th, 2026Source

Cybersecurity M&A Roundup: 26 Deals Announced in May 2026
Significant cybersecurity M&A deals announced by Akamai, Check Point, Cisco, Cyera, Dragos, WatchGuard and Zscaler.
June 8th, 2026Source

Edge's Master Password is gone. Your face now protects your passwords
Microsoft killed Edge's Master Password feature on June 4th. Now Windows Hello is the only way to protect your saved passwords and auto-fills.
June 8th, 2026Source

Everest Forms Vulnerability Exploited to Hack WordPress Sites
The flaw allows attackers to execute arbitrary code remotely and has been exploited in the wild for two months.
June 8th, 2026Source

Everybody Is Vibe Coding But Nobody Told the Security Team
AI-driven development is not something organizations can or should block. But it must be governed.
June 8th, 2026Source

For the 2nd time in weeks, Microsoft packages laced with credential stealer
73 packages run self-replicating stealer as soon as they're opened by an AI agent.
June 8th, 2026Source

Four suspects identified in Finland undersea cable damage investigation — criminal case referred to prosecutors for consideration of charges
It's the second Finnish anchor-drag incident to reach prosecution.
June 8th, 2026Source

From Verizon to Apple, a hidden texting flaw has finally been patched
A major security vulnerability that allows attackers to easily fake their identity in smartphone text conversations has been fixed in the United States thanks to a team of computer scientists at the University of California San Diego. The vulnerability affected both Android and Apple smartphones as well as all major wireless carriers, including Verizon, T-Mobile and Google Fi, and smaller independent operators such as Mint Mobile.
June 8th, 2026Source

Gogs patches critical zero-day enabling remote code execution
Gogs has patched a critical security zero-day flaw that can allow attackers to compromise Internet-facing instances and access any repositories (including private ones).
June 8th, 2026Source

Hackers likely hijacked over 20,000 Instagram accounts with Meta's AI chatbot
Meta blames a bug on an exploit that allowed hackers to ask its AI support bot to link a victim's account with their own email.
June 8th, 2026Source

Hackers used Meta's AI support system to hijack over 20,000 Instagram accounts
Meta has revealed that attackers hijacked 20,225 Instagram accounts by exploiting a flaw in the company's AI-assisted account recovery system.
June 8th, 2026Source

How I Built a 47-Signal Website Audit Tool That Runs in 15 Seconds
Every time I needed a complete picture of a site's health, I would open an SEO scanner, then a security checker, then an AEO validator, then something else for GEO signals. Each tool gave me a slice. None of them talked to each other. And the gaps between those slices were exactly where the real problems lived.
June 8th, 2026Source

How sex workers are protecting their digital futures — and yours
From Sheri's Ranch in Nevada to Australia, adult workers are fighting for online safety.
June 8th, 2026Source

GitHub nukes 70+ Microsoft repos, breaks CI/CD pipelines, following suspected worm infections
Miasma worm shapeshifts, but cloud secret-scouting remains the goal
June 8th, 2026Source

Massachusetts votes to pass new privacy rights bill that bans sale of precise location data
Massachusetts lawmakers have voted to pass privacy protections that grant the state's residents new rights over accessing and deleting their data held by big tech giants. The bill also bans companies from selling their users' precise location data.
June 8th, 2026Source

Meta claims NSO Group still targets WhatsApp users despite court order
Meta claims it disrupted spear-phishing attempts linked to NSO Group and is asking a US federal court to hold the spyware vendor in contempt for allegedly violating an injunction that bars it from targeting WhatsApp and its users.
June 8th, 2026Source

Meta is dragging NSO back to court, saying the spyware firm never stopped targeting WhatsApp
A year after winning a permanent injunction against the maker of Pegasus, Meta says it has foiled fresh NSO phishing attacks and is filing for contempt.
June 8th, 2026Source

Miasma Worm Hits Microsoft's AI Coding Ecosystem
Attackers Compromised More Than 70 Microsoft Repositories in Under 2 Minutes
June 8th, 2026Source or Source

Microsoft changes how Defender for Endpoint EDR updates are delivered on Windows
Microsoft will distribute Defender for Endpoint EDR updates through Microsoft Update, enabling EDR security improvements to be released independently of monthly Windows operating system updates.
June 8th, 2026Source

Microsoft making much needed change to Windows 11, 10 Patch Tuesday security updates
Microsoft will deliver Defender EDR updates via Microsoft Update, enabling faster security improvements independent of Windows patches.
June 8th, 2026Source

Microsoft's open source tools were hacked to steal passwords of AI developers
Microsoft has cut off access to dozens of its open source projects hosted on GitHub as it investigates how hackers apparently breached the projects and injected password-stealing malware into the code.
June 8th, 2026Source

Minimus Expands Enterprise Security Platform with General Availability of Advanced Supply Chain Controls
This article was provided by TechnologyWire and does not represent the editorial content of DZone.
June 8th, 2026Source or Source

New Relic expands observability into AI-assisted software development
New Relic has announced AI Coding Observability, an open-source tool for monitoring AI-assisted software development workflows. As organizations adopt AI coding assistants, these tools often operate outside existing observability systems, limiting visibility into their use. AI Coding Observability extends monitoring into the software development process, enabling organizations to track, analyze, and audit AI-assisted coding activities.
June 8th, 2026Source

New Shai-Hulud attack trojanizes 19 science-focused PyPI packages
Hackers compromised 19 packages on the PyPI, collectively downloaded hundreds of thousands of times, in a new Shai-Hulud supply-chain attack that delivered malware designed to steal developer secrets.
June 8th, 2026Source

NSO Group back in Meta's crosshairs after alleged WhatsApp targeting
Zuckercorp says surveillance-for-hire vendor was still running phishing operations after federal court told it to knock it off
June 8th, 2026Source

OpenAI is locking down parts of ChatGPT to reduce data theft risks
OpenAI has started rolling out Lockdown Mode for ChatGPT, an optional security setting that restricts access to external resources and several product capabilities. It is available for personal accounts, including Free, Go, Plus, and Pro plans, as well as self-serve ChatGPT Business accounts.
June 8th, 2026Source

OpenAI Rolling Out ChatGPT Account Security Controls
The Active Sessions and Lockdown Mode features are being made more broadly available by the AI giant.
June 8th, 2026Source

Oxford University discloses data breach after careers platform hack
The University of Oxford disclosed a new data breach last week after being informed by its third-party provider, Group GTI, that its CareerConnect career services platform had been compromised.
June 8th, 2026Source

Qilin ransomware affiliate exploited Check Point VPN zero-day (CVE-2026-50751)
A Qilin ransomware affiliate is believed to be exploiting CVE-2026-50751, an authentication bypass vulnerability in Check Point VPN Remote Access and Mobile Access, the company announced on Monday.
June 8th, 2026Source

Pinterest Uses Content Fingerprints for URL Deduplication across Millions of Domains
Pinterest Uses Content Fingerprints for URL Deduplication across Millions of Domains
June 8th, 2026Source

Post-Quantum Prep Should Start Now, Says German State
It May Already Be Too Late, Says Athene
June 8th, 2026Source or Source or Source or Source

Protocol Buffers schemas expose remote code execution risk
Researchers at Cyera found six vulnerabilities in protobuf.js, including a flaw that can turn attacker-controlled schema data into executable code and expose downstream software supply chains.
June 8th, 2026Source

Ransomware crims got a month-long head start on Check Point VPN 0-day that now has a fix
Scumbags, including a Qilin ransomware affiliate, began hitting this hole May 7
June 8th, 2026Source

Ransomware sends Illinois high school on an early summer vacation
Meanwhile, 13 schools in Wales affected by separate attack
June 8th, 2026Source

Reducing security operations complexity with Wazuh Cloud
Security teams today manage increasingly complex environments in which threats such as ransomware, advanced persistent threats, and supply chain attacks evolve rapidly. Organizations operate hybrid infrastructures spanning on-premises systems, multi-cloud platforms, containers, and Kubernetes clusters, all while navigating strict compliance requirements from frameworks including PCI DSS, HIPAA, GDPR, NIST 800-53, and CIS Benchmarks.
June 8th, 2026Source

RidgeBot 7.0 automates Active Directory attack simulations for security validation
RidgeBot 7.0 automates Active Directory attack simulations for security validation
June 8th, 2026Source

Samsung just made Galaxy phones more secure in One UI 9 beta
Samsung's One UI 9 beta integrates Lockdown mode into the power menu. This is the screen that contains Power off, Restart, and emergency options. Opening it initiates Lockdown mode, disabling biometric authentication.
June 8th, 2026Source

Secondary silylium ion drives one-pot ketone sulfonamidation, reaching 95% yields
A research team has developed a novel organocatalysis method based on a silylium Lewis acid. This technology employs an ion-pair catalyst combining a diethylsilylium ion with a weakly coordinating anion, enabling the direct installation of sulfonamide groups into functionalized ketone compounds, including &beta-ketoesters, which had previously been difficult to react using conventional catalytic methods.
June 8th, 2026Source

Silent Ransom Group Uses DNS Fast Flux in Attacks
Focusing on hacking law firms in the US, the ransomware group relies on fast flux to hide its C&C infrastructure.
June 8th, 2026Source

Social media accounts uncover how fake jobs trap people in cross-border scam compounds
Under the pretext of employment prospects, hundreds of thousands of job seekers are lured by scammers to cross the border into countries such as Myanmar, Laos or Cambodia. Instead of the promised lucrative positions, they are forced to work long hours in heavily guarded scam compounds, facing strict quotas and violence as punishment. Their main task is to fabricate online identities and defraud people, for example by operating "pig-butchering" scams, in which they introduce fraudulent investment schemes after establishing romantic relationships with random targets online.
June 8th, 2026Source

SolarWinds Serv-U Vulnerability Exploited in the Wild
Unauthenticated attackers can exploit the flaw via specially crafted POST requests that crash the Serv-U service.
June 8th, 2026Source

Supply Chain Attack Hits Microsoft GitHub Repos, AI Coding Tools
GitHub disabled 73 Microsoft repositories on June 5 after a malicious commit landed in an Azure project, in what researchers described as a supply chain attack aimed at developer workstations and AI coding environments.
June 8th, 2026Source

System designed to detect and track potential attacks on electric vehicle charging stations
The increasing adoption of electric vehicles is creating growing demand for charging infrastructure, driving a transformation in access to and use of energy through the controlled deployment of fast, efficient and secure charging stations.
June 8th, 2026Source

The wake-up call: How a secret 2025 meeting forced Apple to finally begin trying to catch up in AI
In early 2025, a group of Apple's top executives gathered in a conference room — without Tim Cook — and confronted a harsh reality: the company was dangerously behind in the AI race. That closed-door meeting sparked a dramatic turnaround, reshuffling leadership on Siri, pulling Cook deeper into the fray, and setting the stage for one of the most significant software overhauls in Apple's history.
June 8th, 2026Source

These fake World Cup websites are here to scam you
Here's how to avoid getting tricked.
June 8th, 2026Source

WhatsApp Catches Spyware Firm NSO Defying No-Hacking Court Order
The Meta-owned communications app is filing a federal court contempt order against NSO.
June 8th, 2026Source

WhatsApp says it disrupted new NSO spyware phishing attacks
WhatsApp has detected and stopped spear-phishing campaigns allegedly conducted by the NSO Group after investigating user reports of social engineering attacks.
June 8th, 2026Source

Why AI Is Making Malware Harder to Detect
Ray Canzanese of Netskope Threat Labs on AI-Generated Threats and Supply Chain Risk
June 8th, 2026Source

Why Tool Count Is the Wrong Security Metric
CybaVerse's Oliver Spence on Matching Tools to Business Outcomes
June 8th, 2026Source or Source or Source or Source

Internet — Security Issues — June 7th, 2026

C0XMO botnet spreads via DD-WRT router flaw, kills rival malware
A new variant of the Gafgyt botnet called C0XMO is targeting DD-WRT router firmware and can move to other device types with various CPU architectures.
June 7th, 2026Source

Emphere Raises $2.1 Million for AI-Powered Vulnerability Remediation
Emphere's solution delivers AI-driven remediation to software companies to speed up releases.
June 7th, 2026Source

Hacked, leaked, and held for ransom: The worst breaches of 2026 so far
If anything, 2026 has made clear that cybersecurity is no longer a background concern — it's front and center, woven into almost every major story of the year. Yes, wars are still raging, the climate keeps worsening, and we're seemingly one dodgy sneeze away from the next global pandemic.
June 7th, 2026Source

Signal, DuckDuckGo, and NordVPN threaten to exit Canada if metadata surveillance law passes
Canada's metadata retention bill is the latest government attempt to build surveillance into the internet's infrastructure
June 7th, 2026Source

Silent Ransom Group targets law firms with fake IT support calls
The Silent Ransom Group extortion gang is actively targeting U.S. law firms and professional services organizations in social engineering attacks that often lead to data theft within hours of initial contact, according to a new report by cybersecurity firm Mandiant.
June 7th, 2026Source

The Delivery You Didn't Order: Breaking Down the 'Free Phone' Scam
If a phone you didn't order arrives on your doorstep, there's a good chance someone's trying to scam you. Here's how to recognize this scam and make sure you don't get tricked.
June 7th, 2026Source

Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
June 7th, 2026Source

Why Autonomous Robot Dogs Are Becoming a National Security Threat
Autonomous robot dogs are rapidly becoming a fixture in industries ranging from law enforcement to private security, but their rise comes with serious concerns. Benn Jordan examines how these machines, while technologically impressive, suffer from critical flaws that challenge their reliability and safety. For instance, many models struggle with basic tasks like navigating uneven terrain or carrying heavy loads, limiting their effectiveness in real-world scenarios. Compounding these issues are significant cybersecurity vulnerabilities, such as weak authentication protocols, which leave robot dogs susceptible to hacking and misuse.
June 7th, 2026Source

Internet — Security Issues — June 6th, 2026

Critical Everest Forms Pro flaw exploited to take over WordPress sites
Hackers are actively exploiting a critical vulnerability (CVE-2026-3300) in the Everest Forms Pro plugin, which lets them take complete control of a WordPress website.
June 6th, 2026Source

Finland deploys new system to detect threats to undersea cables — distributed acoustic sensors measure vibrations from the seabed and informs the authorities and operators of suspicious activities
This tech allows undersea cables to act as sonar sensors.
June 6th, 2026Source

Former IBM cybersecurity exec accuses company of covering up years of Chinese hacking
A newly unsealed lawsuit alleges IBM knew its network was breached more than 56,000 times by a Chinese state-linked group and told no one
June 6th, 2026Source

Gaming soundbar can be hijacked from over 16 yards away without touch or pairing — the company allegedly refuses to label the blatant security flaw a cybersecurity risk
It accepts unsigned firmware over an unauthenticated Bluetooth link.
June 6th, 2026Source

Google Chrome tests another massive change to Search that puts AI in front
The company's really pushing the limits of its search experience.
June 6th, 2026Source

Opal Security Raises $23 Million for AI-Native Identity Governance
Raising $59 million to date, Opal also announced five senior leadership appointments.
June 6th, 2026Source

Oxford Uni student data pwned yet again - this time via career platform breach
Totally different attack from the break-in last month. Oh so that's OK then
June 6th, 2026Source

Internet — Security Issues — June 5th, 2026

A Vulnerability in Cisco Products Could Allow for Server-Side Request Forgery
A vulnerability has been discovered in Cisco products that could allow for Server-Side Request Forgery. Cisco Unified Communications Manager (Unified CM) / Cisco Unified Communications Manager Session Management Edition (Unified CM SME) is Cisco's central, software-based call control and session management platform for enterprise communication.
June 5th, 2026Source

AI is helping low-skill hackers pull off advanced cyberattacks
Anthropic has published an analysis of cyber-related misuse of its AI systems, examining 832 accounts that were banned for malicious cyber activity between March 2025 and March 2026.
June 5th, 2026Source

Article Series: Securing the AI Stack: from Model to Production
AI has officially shifted from experimentation to production, outpacing legacy defenses and creating a volatile new security landscape. This challenge is defined by three critical frontiers: data poisoning, AI-driven phishing, and shadow cloud governance.
June 5th, 2026Source

Attackers obtained encrypted password vaults from some Dashlane user accounts
Dashlane has disclosed new details about a brute-force attack that let a threat actor access some customer accounts and copy encrypted vaults.
June 5th, 2026Source

Chrome 149 Patches 429 Vulnerabilities
Over 100 bugs are critical or high-severity, mainly use-after-free and insufficient validation of untrusted input flaws.
June 5th, 2026Source

Cisco SD-WAN 0-day exploited, no patch available (CVE-2026-20245)
A 0-day privilege escalation vulnerability (CVE-2026-20245) in Cisco Catalyst SD-WAN Manager that has yet to be patched by Cisco is being leveraged by attackers.
June 5th, 2026Source

Council in UK's City of York outs hundreds of disabled residents with a single email blunder
Blue Badge holders exposed to each other after BCC function proves too complex
June 5th, 2026Source

DentaQuest Cyberattack Tied to 2.6M Exposed Accounts
DentaQuest confirmed a cybersecurity incident after health data tied to 2.6 million accounts surfaced in a public breach listing.
June 5th, 2026Source

Ex-CISA CIO Breaks Down Trump's New AI Executive Order
Bob Costello on Voluntary Plan's Impact on Collaboration - and CISA's Pivotal Role
June 5th, 2026Source or Source or Source or Source

Five Eyes: Chinese Spies Target Government, Military Staff With Fake Job Opportunities
Posing as recruiters on online platforms, Chinese intelligence officers target personnel with access to classified or privileged information.
June 5th, 2026Source

Forget SEO: Spammers Push 'AI‑Engine Optimization' by Flooding Reddit to Shape AI Search
AI often mistakes Reddit posts for reliable sources.
June 5th, 2026Source

Google and FBI warn of ransomware group that sends fake IT workers to hack victims in person
A ransomware gang has escalated its attacks on law firms by sometimes sending fake IT workers in person to the victims' offices, where the imposters steal data directly from the victims' computers using USB drives or help other gang members connect to the computers remotely, according to Google and the FBI.
June 5th, 2026Source

Hackers Leak DentaQuest Information Impacting 2.6 Million
The ShinyHunters extortion group leaked roughly 234 GB of data allegedly stolen from the dental benefits administrator.
June 5th, 2026Source

How OpenAI Built a Secure Windows Sandbox for Codex Agents
OpenAI has published details of the Windows sandbox architecture that powers its Codex coding agent, highlighting the engineering tradeoffs required to balance security, usability, and developer productivity on Microsoft's operating system. The company explained that it built a custom sandboxing approach after finding that existing Windows isolation mechanisms did not fully satisfy the requirements of autonomous coding agents. As OpenAI noted, Windows does not provide a single primitive that cleanly maps to a safe execution environment for agentic workloads.
June 5th, 2026Source

In Other News: Anthropic Maps AI Threats, Unpatched Comodo Flaw, Palantir Chief Eyed for CISA
Other noteworthy stories that might have slipped under the radar: Ultrahuman data leak, The Gentlemen ransomware analysis, Hola Browser bundles miner.
June 5th, 2026Source

Industry Reactions to New Trump AI Cybersecurity Executive Order: Feedback Friday
Experts commented on the EO's voluntary nature, the balance between innovation and security, and potential implementation gaps.
June 5th, 2026Source

ISMG Editors: Wrapping Up Infosecurity Europe 2026
Conference Highlights AI Maturity, Agentic Risks and Human Factors in Cybersecurity
June 5th, 2026Source or Source or Source or Source

Let's Encrypt works toward post-quantum certificates at web scale
Let's Encrypt plans to pursue a post-quantum-safe Web PKI through Merkle Tree Certificates (MTCs), a new approach that adds post-quantum authentication to the web without sacrificing the speed and reliability that have made TLS universal. The project is targeting late 2026 for a staging environment that issues MTCs, with a production-ready environment planned for 2027.
June 5th, 2026Source

Microsoft 365 Android Coding Error Put Account Tokens at Risk
A coding error in several Microsoft 365 Android apps could have allowed a malicious app on the same device to silently obtain account tokens and act as the signed-in user, according to new research from Enclave.
June 5th, 2026Source

Microsoft lists 15 new reasons to switch to the New Outlook but many users say it still isn't ready
Microsoft lists 15 new features shipping to the New Outlook, potentially making the jump from the Classic client sweeter.
June 5th, 2026Source

New CISA Warning: Hackers Are Targeting Fuel Tank Monitoring Systems
CISA warns attackers are targeting internet-exposed Automatic Tank Gauge systems used in fuel storage. Here's what operators should fix now.
June 5th, 2026Source

New WebAssembly memory layout could stop Heartbleed-style browser attacks with no visible slowdown
Google Earth, Zoom, Twitch.tv or Photoshop—thanks to the WebAssembly standard, many powerful applications now run directly in a browser without installation. However, some of these web apps have serious security vulnerabilities. Researchers from paluno—The Ruhr Institute for Software Technology at the University of Duisburg-Essen—have developed a solution to secure COTS applications by automatically reorganizing their memory.
June 5th, 2026Source

Nightclub Giant RCI Says Data Breach Affects 40,000 Individuals
The company detected a network intrusion in March and an investigation showed that some files were stolen during the attack.
June 5th, 2026Source

Outlook may have allowed unencrypted connections for decades, report claims — Fedora and Dovecot upgrade reveal protocol downgrade issue present since at least 2007
"Customers have likely been retrieving their emails in plaintext for over a decade, mistakenly believing encryption was enabled"
June 5th, 2026Source

Over 900 US gas station tank gauge systems exposed to attacks
Over 900 automatic tank gauge (ATG) systems across the United States, used to monitor fuel and chemical storage tanks across various critical infrastructure sectors, have been found exposed online and are vulnerable to ongoing attacks.
June 5th, 2026Source

Photos: Infosecurity Europe 2026
Infosecurity Europe 2026 is a cybersecurity event that took place from June 2 to 4 in London. Help Net Security was on-site and here's a closer look at the conference.
June 5th, 2026Source

Q&A: How organic glass scintillators could improve nuclear security
As the demand for nuclear security solutions grows, distinguishing a benign medical isotope from a potential threat is critical. Organic glass scintillators can help meet the need for accurate, cost-effective radiation detectors.
June 5th, 2026Source

Southeast Asia Scam Compounds Turn AI Into a Cybersecurity Threat
Scam compounds across Southeast Asia are using AI, malware, and automation to scale fraud, forcing APAC security teams to rethink phishing, identity, and mobile-risk controls.
June 5th, 2026Source

What 2026 DBIR Confirms: Attacks Are Living in the Browser
Every year, the Verizon Data Breach Investigations Report serves as a ground-truth benchmark for the industry. Its value comes not just from the headline numbers but from the convergence signals: when multiple independent data sources point to the same structural shift in how attackers operate, that convergence is worth paying attention to.
June 5th, 2026Source

World Food Programme breach exposes data of 600k vulnerable Gazan families
Those receiving aid in the famine-threatened, war-torn territory told support will remain
June 5th, 2026Source

Internet — Security Issues — May 30th, 2026

Exploit Code Published for Critical Flowise RCE Vulnerability
The one-click vulnerability allows attackers to execute arbitrary code on self-hosted Flowise servers by tricking users into importing a malicious chatflow.
May 30th, 2026Source

Meta's employee mouse tracking program could reportedly violate EU privacy laws
'Reuters' says the tracking tool could capture emails and chats by non-US employees.
May 30th, 2026Source

Microsoft is threatening legal action for disclosing exploits
The company is feuding with a security researcher publicly posting vulnerabilities.
May 30th, 2026Source

Microsoft threatened a security researcher with criminal prosecution. The cybersecurity community is furious.
The researcher says Microsoft revoked their vulnerability reporting account. Microsoft says publishing the bugs without coordination was irresponsible.
May 30th, 2026Source

Russian Spies Are Aggressively Seeking Western Technology as Sanctions Bite, Officials Say
Moscow's agents are building fake companies, recruiting middlemen and deploying cyber spies and hackers who gather information that could be used to attack key infrastructure.
May 30th, 2026Source

Yale's New Google-Friendly Smart Lock Makes a Great Security Starter. Here's Why
The new Matter-friendly Yale Smart Lock is especially great for Google Home users, but anyone will find it easy to get started.
May 30th, 2026Source

Internet — Security Issues — May 29th, 2026

A Complete Breakdown of the Claude Mythos 1 Leak and Features
The recent leak of Claude Mythos 1 has provided a rare look at Anthropic's advanced AI model, sparking discussions about its potential applications and implications. In a detailed hands-on review, World of AI examines the leaked outputs, including standout examples like solving Erdos Problem 90, a challenging geometry problem and generating a Python-based visualization titled Saturn spaceship pie art. These examples highlight the model's strengths in mathematical reasoning, creative problem-solving, and programming expertise, underscoring its potential to tackle complex, high-stakes challenges. Anthropic's cautious approach to a possible public release reflects its focus on safety, making sure that such capabilities are deployed responsibly.
May 29th, 2026Source

AI and ultralow-energy lasers enable an ultrafast authentication system
The security of modern communications heavily relies on systems that can rapidly and reliably verify users and the devices they are using. This process, known as authentication, essentially entails confirming that users or devices are legitimate (i.e., who or what they claim to be).
May 29th, 2026Source

Bluesky accounts hijacked in pro-Russia propaganda campaign
A Russian influence campaign hijacked hundreds of Bluesky accounts—many belonging to influential Americans—to spread propaganda, researchers said, in a striking disinformation tactic that weaponized authentic identities rather than relying on fake accounts.
May 29th, 2026Source

Anthropic launches Claude Opus 4.8, prepares Mythos-class models for all customers
Anthropic has released Claude Opus 4.8 and outlined plans for broader access to its Mythos-class models, which the company expects to make available to all customers in the coming weeks.
May 29th, 2026Source

California Sues 23andMe, Alleging It Failed to Protect User Data in 2023 Breach
Attorney General Rob Bonta filed the lawsuit against Chrome Holding Co., which 23andMe rebranded under after filing for bankruptcy last March.
May 29th, 2026Source

Charter Communications data breach affects 4.9 million accounts
The ShinyHunters extortion gang stole personal information from 4.9 million accounts after hacking the U.S. telecom giant Charter Communications in early April, according to data breach notification service Have I Been Pwned.
May 29th, 2026Source

ChatGPT blindly trusts browser content, turning the page into a payload
You and me go ChatGPhish-ing in the dark
May 29th, 2026Source

Chrome 148 Update Patches 151 Vulnerabilities
The browser update resolves critical-severity security defects that could potentially lead to remote code execution.
May 29th, 2026Source

Claroty targets cyber-physical system risks with AI-powered security agent
Claroty has launched Claroty Claire, a CPS-native AI security agent designed to help organizations defend mission-critical infrastructure. Claire is powered by a CPS language model trained on more than a decade of industry expertise and CPS-related data. The launch expands organizations' capabilities for supporting the safety, uptime, and availability of cyber-physical systems.
May 29th, 2026Source

Dutch cops wrest 17M devices from mystery botnet's clutches
Hosting provider pulled the plug after police traced 200 servers to the Netherlands
May 29th, 2026Source

Dutch govt disrupts malware botnet with 17 million infected devices
Dutch authorities have taken offline a massive botnet of 17 million devices and seized more than 200 servers at a local provider that supported the operation.
May 29th, 2026Source

Dutch police disrupts botnet composed of 17 million devices
The Dutch National Police and the country's National Cyber Security Center (NCSC) have taken offline 200 servers controlling a botnet of 17 million devices, the law enforcement agency announced on Thursday.
May 29th, 2026Source

From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service Market
You have probably experienced the following scenario yourself. A website suddenly stops loading, a login page times out, or an online service becomes unreachable at the worst possible moment. Sometimes the cause is not an internal outage, but a Distributed Denial-of-Service (DDoS) attack designed to overwhelm the service from the outside.
May 29th, 2026Source

Gogs Zero-Day Exposes Servers to Remote Code Execution
The critical-severity issue, assigned a CVSS score of 9.4, is an argument injection flaw that can be exploited by authenticated attackers via pull requests with malicious branch names.
May 29th, 2026Source

Humanix expands detection to identify live violations of security procedures
Humanix has announced a capability to identify live violations of organization-defined procedures governing IT support workflows. Designed to prevent unauthorized access, these procedures typically require help desk and service desk agents to follow identity verification steps before fulfilling sensitive requests, such as credential resets. Attackers have learned that pressuring agents to bypass these safeguards is among the fastest paths to a breach.
May 29th, 2026Source

LinkedIn-themed phishing abuses Adobe's A/B testing platform
A newly documented phishing campaign is targeting professionals with fake LinkedIn business emails and abusing a trusted service operated by Adobe.
May 29th, 2026Source

Man sent to prison for selling data of 7 millions elderly Americans
07.13.2013
May 29th, 2026Source

Microsoft 365 Copilot redesign brings context and actions into one workspace
Microsoft 365 Copilot, an AI assistant that helps people write, summarize, analyze information, and complete work tasks, has been redesigned. It now serves as a single, flexible entry point to Copilot across Microsoft 365 apps, suggesting relevant actions based on the user's work.
May 29th, 2026Source

Microsoft quietly removes a blog post claiming Windows 11 offers sufficient security
Microsoft recently made a pretty bold claim in saying that the security tools built into Windows 11 are enough to keep users protected. It was back in January that the company used an article in the Windows Learning Center to talk about the built-in security provided by Microsoft Defender Antivirus.
May 29th, 2026Source

Microsoft warns GPU mining malware is being spread to users through SEO poisoning and AI chatbots — cryptojacking campaign targets gamers and high-end PC users with downloads disguised as popular PC utilities
Malware avoids detention by monitoring GPU usage and shutting down during heavy activity
May 29th, 2026Source

MokN Raises $15 Million for Phish-Back Platform
MokN's platform deploys realistic decoy access points to lure attackers into revealing compromised credentials, enabling organizations to respond before abuse occurs.
May 29th, 2026Source

Netskope extends data localization capabilities with NewEdge updates
Netskope has enhanced its NewEdge Network infrastructure, expanding data sovereignty capabilities to more regions than any other SASE cloud provider.
May 29th, 2026Source

New infostealer reaches enterprise devices through FortiClient EMS vulnerability
Attackers are delivering a broad-spectrum infostealer to enterprise computers by exploiting a known vulnerability (CVE-2026-35616) in FortiClient Enterprise Management Server (EMS).
May 29th, 2026Source

Research investigation shows 'bossware' is spying on workers and sharing their data
A new investigation finds that workplace monitoring platforms are systematically sharing personal data about workers and online activity with hundreds of outside data brokers and big tech companies in ways that are not clearly disclosed and that, in some cases, may contradict the platforms' own privacy policies.
May 29th, 2026Source

Russia-linked threat group put ChatGPT to work from lure to payload
Researchers say 'GREYVIBE' crew used AI tools throughout a campaign targeting Ukrainian military and government
May 29th, 2026Source

ShinyHunters adds Charter to trophy shelf after 4.9M customer records leak
Telco giant says no sensitive data was taken, though names, addresses, phones, and emails are now out there
May 29th, 2026Source

This chip startup just raised $135M on a bet that AI's biggest bottleneck isn't compute — it's memory
Every time you ask ChatGPT a question, your request triggers a data relay race. Information leaves memory, passes through a CPU for preprocessing, travels to a GPU for heavy computation, and then makes its way back — and that entire journey repeats for every single word the AI generates.
May 29th, 2026Source

US charges Google security engineer with Polymarket insider trading
A Google security engineer was charged with insider trading after winning $1.2 million using confidential company data to place bets on the cryptocurrency-based Polymarket decentralized prediction market.
May 29th, 2026Source

Websites Can Now Peek at Your SSD to See What Else You're Up To
So far, this looks more practical in lab conditions than in the real world.
May 29th, 2026Source

Websites can spy on user activity by analyzing SSD behavior
Websites have spent years collecting information about visitors through browser fingerprinting, tracking scripts, and other techniques designed to identify devices and monitor behavior. Researchers have demonstrated another method that relies on something most users would never expect a website to observe: activity on their SSD (Solid-State Drive), the storage device where applications and files are stored.
May 29th, 2026Source

Internet — Security Issues — May 28th, 2026

A single typo could derail your World Cup plans
Cybercriminals are spoofing Federation Internationale de Football Association (FIFA) websites ahead of the 2026 FIFA World Cup, the FBI warns.
May 28th, 2026Source

AI Agents Are the New Insiders
Rethinking Insider Threats in the Age of Autonomous Systems
May 28th, 2026Source or Source or Source or Source

AI Agents Present Massive New Attack Surface
With Great Capabilities Comes Great Risk
May 28th, 2026Source or Source or Source or Source

Best Windows Antivirus 2026: Keep Your Devices Safe With These Anti-Malware Tools
We've tested top antivirus solutions -- and their accompanying digital security tools -- to help you find the best cybersecurity suite for your needs.
May 28th, 2026Source

Carnival confirms ShinyHunters cruised off with 6M customer records after April breach
Travel and leisure giant was just one of many victims of the cybercrooks' crime spree this year
May 28th, 2026Source

Carnival Cruise confirms data breach affecting nearly 6 million people
Carnival Corporation, the world's largest cruise line operator, has confirmed a data breach affecting nearly 6 million people claimed by the ShinyHunters extortion gang in April 2026.
May 28th, 2026Source

Carnival Data Breach Exposed 6 Million People
Data breach leaves nearly 6 million Carnival customers navigating identity theft risks.
May 28th, 2026Source

Checksum introduces Continuous Quality Agent for automated test generation and healing
Checksum has launched its Continuous Quality Agent, an autonomous system that runs nightly against deployed applications and automatically heals broken tests without waiting for an engineer to open a dashboard or write a prompt.
May 28th, 2026Source

Company CEO flooded file share with smut, called for help after he deleted it
Also, missing school iPad resurfaced after coach's kids uploaded video to YouTube
May 28th, 2026Source

Critical FortiClient EMS Vulnerability Exploited in Fresh Attacks
Fortinet rolled out hotfixes for the security defect in April, warning that it had been exploited in the wild as a zero-day and urging immediate patching.
May 28th, 2026Source

Cryptohack Roundup: US Sanctions Hit Sinaloa Cartel Networks
Every week, ISMG rounds up cybersecurity incidents in digital assets. This week, the U.S. sanctioned Sinaloa Cartel-linked networks, the U.K. sanctioned a HTX-linked entity, Syndicate Labs shuttered, Missouri sued CoinFlip, Verus attacker took a bounty deal, StablR was exploited and malicious packages targeted crypto developer systems.
May 28th, 2026Source or Source or Source or Source or Source

Cybercriminals sail away with data from 6 million Carnival customers
Carnival Corporation, one of the world's largest cruise operators, confirmed a data breach weeks after the ShinyHunters hacking group claimed it had stolen millions of customer records.
May 28th, 2026Source

Detecting Advanced Persistent Threats Using Behavioral Analytics and Log Correlation
Behavior is the signal, correlation is the proof. Adaptive baselines plus time-windowed cross-plane correlation are limited by log quality, not model sophistication.
May 28th, 2026Source

Digimarc adds provenance, audit, and verification controls for AI agent workflows
Digimarc has announced new provenance and verification infrastructure designed to secure autonomous and AI-enabled workflows.
May 28th, 2026Source

FBI Urges Microsoft 365 Defenders To Watch for Kali365 Phishing Attacks
Quantum Unbreakable Breakthrough: 'Perfect Randomness' Could Revolutionize Data Encryption
May 28th, 2026Source or Source

Financial services firms have slowest response to cyberattacks despite being a prime target
A new report finds that 93 percent of financial services firms have been hit by a cyberattack, yet the sector continues to face the slowest response times of any critical industry.
May 28th, 2026Source

Gitea Vulnerability Exposed 30,000 Deployments to Attacks
The security flaw allowed attackers to pull private container images, exposing source code, credentials, and infrastructure.
May 28th, 2026Source

Google Unveils AI Threat Defense Platform to Fight AI-Powered Cyberattacks
New AI Threat Defense platform combines capabilities from Mandiant, Wiz and Gemini to help customers fight AI with AI.
May 28th, 2026Source

How Deno's New Firewall Stops AI Agents from Leaking Passwords
Deno has officially open-sourced Claw Patrol, a firewall designed to enhance the security of AI agents interacting with external systems. This framework addresses key challenges such as credential protection, action control, and real-time activity monitoring. By functioning as a gateway server, Claw Patrol ensures sensitive data like API keys and database passwords are securely managed while allowing developers to define strict rules for agent actions.
May 28th, 2026Source

How SIEM helps MSPs reduce noise and stop threats faster
MSPs are flooded with security alerts every day, yet many still struggle to separate operational noise from the threats that actually put customers at risk.
May 28th, 2026Source

"I have proof for every single word": This security researcher's GitHub and Microsoft accounts were deleted after claiming a Windows 11 exploit in BitLocker is by design
Microsoft seemingly bans a security researcher from GitHub, sparking threats of retaliation and a bug bounty controversy.
May 28th, 2026Source

IBM and Red Hat are betting $5 billion that open source needs a security guard
IBM and Red Hat announced Project Lightwell, a $5 billion commitment backed by new frontier AI capabilities and a global force of more than 20,000 engineers to help enterprises secure open source software. Together, these investments establish a new model for enterprise use of open source software, from upstream development through production environments.
May 28th, 2026Source or Source or Source

Ketch brings multi-agent AI orchestration to enterprise privacy programs
Ketch has unveiled its vision for agentic privacy with the Ketch Agent Network, a multi-agent orchestration layer for enterprise privacy programs. The platform is designed to continuously reason across legal obligations, internal policies, and operational realities within a unified AI-driven system.
May 28th, 2026Source

Microsoft is finally bringing All Accounts view to Outlook on Windows
The latest Microsoft 365 Roadmap entry says that Microsoft is finally bringing the All Accounts view to Outlook on Windows and the web.
May 28th, 2026Source

Microsoft's Copilot trust test: Zero findings, more models, wider oversight
Microsoft 365 Copilot and Copilot Chat (Copilot) have been recertified under ISO/IEC 42001:2023 by an independent auditor for the second consecutive year. Copilot first received ISO 42001 certification in March 2025. This year's recertification recorded zero non-conformities and zero improvement observations, resulting in a second audit in a row.
May 28th, 2026Source

Microsoft's new cloud PCs place AI agents under enterprise controls
Microsoft's Windows 365 for Agents, a cloud PC platform for agentic workloads, runs AI agents in secure environments. Organizations can direct agents with natural language to interact with applications, browsers, files, and enterprise systems. The platform is available in public preview.
May 28th, 2026Source

New BTMOB Android Malware Enables Full Device Takeover
Delivered via phishing lures, the malware combines financial theft with data exfiltration and remote access.
May 28th, 2026Source

New Edamame Platform Aims to Catch AI Coding Agents Going Off the Rails
New Edamame Platform Aims to Catch AI Coding Agents Going Off the Rails
May 28th, 2026Source

New Gogs zero-day flaw lets hackers get remote code execution
An unpatched zero-day vulnerability in the Gogs self-hosted Git service can allow attackers to gain remote code execution (RCE) on Internet-facing instances.
May 28th, 2026Source

Oil shipments, drone makers, and a poisoned code library targeted in recent APT campaigns
Geopolitical pressure drove much of the state-sponsored cyber activity recorded between October 2025 and March 2026, according to ESET's latest APT Activity Report. Espionage groups aligned with China, North Korea, Russia, and Iran adjusted their targets to match the economic and security concerns of their governments.
May 28th, 2026Source

Qevlar's new AI agents correlate CVEs, incident data, and active exploitation signals
Qevlar has announced a new set of AI agents designed to bridge the disconnect between Security Operations Centers (SOCs) and vulnerability management teams. The new capabilities help security teams correlate CVEs with live incident data for real-time risk prioritization, automatically identify asset owners to speed remediation, and autonomously hunt for active CVE exploitation. General availability is scheduled for Fall 2026.
May 28th, 2026Source

Quantum Unbreakable Breakthrough: 'Perfect Randomness' Could Revolutionize Data Encryption
The problem with most existing encryption methods is that since they are bound to machines reliant on binary code composed of 1s and 0s, and apparently-random sequences of numbers are not fully random. This reality makes a looming scenario of quantum computing "Q-Day" for compromising at least current encryption technologies inevitable. But what if computers could produce true, perfect randomness for the purpose of encryption, thereby mitigating this limitation and preventing a veritable encryption apocalypse?
May 28th, 2026Source

OpenAI prepares ChatGPT for the election misinformation wave
AI-generated election misinformation could shape public opinion and influence the lives of millions of people. To address those risks, OpenAI outlined a series of safeguards ahead of the 2026 election cycle.
May 28th, 2026Source

Qumulo NeuralProtect uses AI to detect and stop ransomware before encryption
Qumulo has unveiled Qumulo NeuralProtect, a ransomware resilience solution built to protect data at the storage layer by detecting and stopping threats before data is encrypted, corrupted, or lost.
May 28th, 2026Source

Raising the Cybersecurity Stakes: Ante up for the Agentic Era
CISOs are now facing machine-speed attacks and asking, "How do I agent?" The industry must provide remediation at scale.
May 28th, 2026Source

Researchers say they can spy on your browsing by measuring SSD activity through a browser API — claim FROST attack requires no permissions or user interaction to identify which apps and websites you're using
The technique correctly identified visited websites with roughly 89% accuracy and running applications with roughly 96% accuracy on a test Mac
May 28th, 2026Source

Romanian gets 5 years in prison for hacking Oregon govt network
A Romanian national was sentenced this week to 56 months in federal prison for breaking into an Oregon state government computer network and fr cyberattacks targeting dozens of other U.S. victims.
May 28th, 2026Source

Scammers are Exploiting GTA 6 Hype to Spread Malware
It's been 13 years since the last true GTA installment came out, and scammers are eager to take advantage of players' impatience.
May 28th, 2026Source

Wide-ranging 7-zip vulnerability with 8.8 CVE rating allows for code execution — hundreds of millions of machines potentially at risk
Everyone, get your update hats on immediately; we're at DEFCON 1
May 28th, 2026Source

XM Cyber enhances identity risk visibility with continuous exposure management capabilities
XM Cyber has announced platform enhancements aimed at helping organizations reduce identity risk, compounded by AI-enabled attackers. According to Gartner, "By 2028, 70% of CISOs will use identity visibility and intelligence capabilities to shrink the IAM attack surface, reducing the risks of credential compromise."
May 28th, 2026Source

Zapier exploit chain shows how known anti-patterns compose into critical risk
A five-stage exploit chain disclosed by Token Security researchers turned a free Zapier account into write access on Zapier's public developer SDK packages and on internal packages that load in every authenticated zapier.com session. Each link in the chain was a known anti-pattern. The composition across five systems was the finding.
May 28th, 2026Source

Internet — Security Issues — May 24th, 2026

Everyone is navigating AI security in real time — even Google
Everyone is navigating AI security in real time — even Google
May 24th, 2026Source

Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign
A large-scale campaign is exploiting a critical SQL injection vulnerability (CVE-2026-26980) in Ghost CMS to inject malicious JavaScript code that triggers ClickFix attack flows.
May 24th, 2026Source

The AI security gap nobody wants to admit is already here
On March 31, 2026, Anthropic accidentally shipped the entire source code of Claude Code to the public npm registry. Around 512,000 lines of TypeScript across 1,906 files, including 44 hidden feature flags and references to an unreleased model codenamed Mythos, sat openly accessible on a Cloudflare storage bucket until a security researcher found it and posted the link on X. Within hours the codebase had been mirrored across GitHub, amassing thousands of stars before Anthropic could issue DMCA takedowns.
May 24th, 2026Source

Week in review: GitHub breached via poisoned VS Code extension, critical NGINX flaw exploited
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
May 24th, 2026Source

Internet — Security Issues — May 23rd, 2026

AI eyes scanning for bugs create a worrisome Linux security trend
Dirty Frag, Copy Fail, and Fragesia show the new reality
May 23rd, 2026Source

How To Easily Backup and Import Windows Defender Firewall Rules
If you put in a lot of effort in setting up your Windows Defender Firewall rules, you'll probably want to back them up. You can then quickly import and restore all of your settings at once when needed. It will only take a couple of minutes.
May 23rd, 2026Source

Italy disrupts CINEMAGOAL piracy app that stole streaming auth codes
Italian authorities have dismantled a piracy ecosystem centered around the CINEMAGOAL app that provided access to various streaming platforms, including Netflix, Disney+, and Spotify.
May 23rd, 2026Source

These special phone and app features can help protect you from spyware
Spyware attacks on journalists, human rights defenders, and political dissidents are no longer rare or exotic. In early 2025, WhatsApp notified roughly 90 users — many of them journalists and civil society members across Europe — that they had been targeted by Israeli spyware company Paragon Solutions. Months later, Apple sent threat notifications to a new group of iOS users; forensic analysis confirmed two of them, both journalists, had been hit with Paragon's Graphite spyware using a zero-click attack, meaning they didn't even have to tap a link to be compromised. These aren't isolated incidents. They're the norm.
May 23rd, 2026Source

'Underminr' Vulnerability Lets Attackers Hide Malicious Connections Behind Trusted Domains
The stealthy vulnerability impacts roughly 88 million domains and can be exploited to bypass DNS filtering and hide command-and-control traffic.
May 23rd, 2026Source

Wi-Fi controlled hacking USB cable stealthily packs in a microcontroller, microSD storage, and more — cable executes remote payload execution, keystroke injection, and more, but is 'built for makers, developers, enthusiasts, and cybersecurity learners'
The $82 Hacknect 'looks like a normal USB cable' and its makers are enjoying a very successful crowdfunding campaign.
May 23rd, 2026Source

Internet — Security Issues — May 22nd, 2026

A hacker group is poisoning open source code at an unprecedented scale
GitHub is just the latest victim of TeamPCP, a gang that has carried out a spree of software supply chain attacks.
May 22nd, 2026Source

Canadian Man Arrested for Operating Kimwolf Botnet
Jacob Butler, 23, has been arrested in Canada and US authorities are seeking his extradition on computer hacking charges.
May 22nd, 2026Source

CISA's new KEV nomination form opens reporting to vendors and researchers
The Cybersecurity and Infrastructure Security Agency launched a new nomination form that lets researchers, vendors, and industry partners report known exploited vulnerabilities for possible inclusion in its KEV catalog.
May 22nd, 2026Source

Cybercrime'First VPN' Cybercrime Service Disrupted, Administrator Arrested
The FBI says First VPN has been used by dozens of ransomware groups for network reconnaissance and intrusions.
May 22nd, 2026Source

Deleted Google API keys keep working for up to 23 minutes, researchers warn
Google API keys are credentials that let applications access Google services, from Maps to the Gemini AI. If a key is leaked, an attacker can use it to make API calls, rack up charges, and, if Gemini is enabled, access uploaded files and cached conversations.
May 22nd, 2026Source

Drupal Vulnerability in Hacker Crosshairs Shortly After Disclosure
Drupal is warning users that it has already seen attempts to exploit CVE-2026-9082 and security firms are seeing attacks against thousands of websites.
May 22nd, 2026Source

Drupal: Critical SQL injection flaw now targeted in attacks
Drupal is warning that hackers are attempting to exploit a "highly critical" SQL injection vulnerability announced earlier this week.
May 22nd, 2026Source

Europol's Operation Saffron takes down First VPN service over ransomware attacks — 33 'bulletproof' servers spread across 27 countries seized
This particular case seems clear enough, but the slippery slope is getting steeper.
May 22nd, 2026Source

Everyone Suddenly Wants Claude's Audit Logs
27 Enterprises Integrate Claude's Compliance API
May 22nd, 2026Source or Source or Source or Source

FBI warns Kali365 phishing kit is stealing Microsoft OAuth tokens at scale
MFA? No problem, says crimeware that tricks users into handing attackers the keys to M365
May 22nd, 2026Source

Former US execs plead guilty to aiding tech support scammers
Two former executives of a call-tracking and analytics company pleaded guilty to concealing a years-long tech support fraud scheme that victimized individuals worldwide.
May 22nd, 2026Source

GitLab 19.0 adds AI workflows, secrets management, and self-hosted model support
GitLab released GitLab 19.0 with expanded secrets management, agentic merge request workflows, improved CI pipeline visibility, support for self-hosted open-source models, and supply chain visibility enhancements.
May 22nd, 2026Source

Grafana Says Codebase and Other Data Stolen via TanStack Supply Chain Attack
Hackers accessed Grafana's GitHub repositories after a token compromised in the TanStack attack was not rotated.
May 22nd, 2026Source

In Other News: Industrial Router Exploitation, CISA KEV Nomination Form, Gas Station Hacking
Other noteworthy stories that might have slipped under the radar: CISA contractor exposes credentials, Mythos testing and new features, Huawei router flaw triggered telecom blackout.
May 22nd, 2026Source

Kash Patel's clothing brand website shut down after reports it was hacked
The merchandise website of FBI director Kash Patel was taken offline on Friday after reports that it had been hijacked by hackers trying to infect visitors with malware, as first reported by Straight Arrow News.
May 22nd, 2026Source

Keepnet contributes voice and SMS phishing data to the 2026 Verizon DBIR
Keepnet, an Extended Human Risk Management (xHRM) platform, today announced that its voice and SMS phishing simulation data contributed to the 2026 Verizon Data Breach Investigations Report (DBIR). The 2026 edition is the first to include voice and SMS phishing simulation data at this scale. The DBIR records this as "an increase of 40% in the median click rate" between phone-centric and email-based simulations (Verizon 2026 DBIR, p. 50).
May 22nd, 2026Source

Kore.ai unveils AI-native platform for enterprise multiagent systems
Kore.ai has launched the new-generation Kore.ai Agent Platform Artemis edition, the AI-programmable, AI-native foundation that builds, governs, and optimizes the agents, systems, and workflows running across the enterprise. The platform launches initially on Microsoft Azure, with broader cloud availability to follow.
May 22nd, 2026Source

Media giant settles for $930k with FTC over allegations it lied about eavesdropping on conversations through smart devices
Cox Media Group allegedly sold a bogus AI-powered snoopfest service
May 22nd, 2026Source

Meet Fractal, an OS made for microarchitecture reverse engineering
Probing how a CPU isolates user code from kernel code is messy work. Researchers patch kernels, write drivers, or boot stripped-down bare-metal programs, and any of those choices change variables they were trying to hold still. Fractal, a new operating system from MIT CSAIL, was built to take that mess out of the loop, and its authors used it to surface previously undocumented behavior in the Apple M1 branch predictor.
May 22nd, 2026Source

Microsoft 365 users targeted by new phishing threat that bypasses MFA
Microsoft 365 access tokens are being targeted by an emerging Phishing-as-a-Service (PhaaS) platform called Kali365, the FBI is warning.
May 22nd, 2026Source

Most data breaches start with a stolen password. Here's how to fix that
Somewhere in your organisation right now, an employee is reusing a password they created in 2019. Another is sharing login credentials for a team account through a Slack DM. A third is storing client portal access in a browser's built-in autofill, synced to a personal Google account your IT team does not control. None of these people are careless. They are simply doing what most workers do when their company has no password infrastructure.
May 22nd, 2026Source

Proton Pass adds monitored credential sharing for AI agents
Proton Pass, a secure, end-to-end encrypted password manager, added credential sharing through AI access tokens, allowing users to give AI agents access to selected items and monitor activity. To gain access, an agent must provide a reason for the request so users can see what actions are being performed.
May 22nd, 2026Source

Suspected KimWolf botnet admin arrested over DDoS-for-hire operation
U.S. and Canadian authorities arrested and charged a Canadian man accused of operating the KimWolf DDoS botnet, a service linked to attacks that infected more than one million devices worldwide.
May 22nd, 2026Source

Techie claims Trump Mobile website was leaking thousands of people's data
Customers' info potentially handed to anyone who could send an HTTP request
May 22nd, 2026Source

TrendAI Patches Apex One Zero-Day Exploited in the Wild
CVE-2026-34926 is a directory traversal flaw that can be exploited against the on-premise version of Apex One.
May 22nd, 2026Source

Ubiquiti patches three max severity UniFi OS vulnerabilities
Ubiquiti has released security updates to patch three maximum severity vulnerabilities in UniFi OS that can be exploited by remote attackers without privileges.
May 22nd, 2026Source

US and Canada arrest and charge suspected Kimwolf botnet admin
U.S. and Canadian authorities arrested and charged a Canadian man with operating the KimWolf distributed denial-of-service (DDoS) botnet, which infected nearly two million devices worldwide.
May 22nd, 2026Source

Versa extends zero trust principles to AI agents and MCP workflows
Versa has introduced a patent-pending zero trust architecture for the Model Context Protocol (MCP), applying zero trust principles to AI execution. The company said every AI-generated action is validated against user identity, role-based access controls, and system policies before execution, with human approval required when defined by administrators.
May 22nd, 2026Source

Water, the Soft Underbelly of Critical Infrastructure
Fragmented Governance and Scarce Resources Make America's Water Sector Vulnerable
May 22nd, 2026Source or Source or Source or Source

Why Chargebacks are Just One Piece of the Fraud Puzzle
For most teams, fraud performance is still summed up in a single metric: chargeback rate. It is visible, painful, and tied directly to card network thresholds, so it naturally becomes the north star for fraud programs.
May 22nd, 2026Source

Why legacy security tools are missing AI-generated malware [Q&A]
Recent research from Deep Instinct suggests that legacy security tools have a high miss rate whenit comes to detecting AI-generated threats.
May 22nd, 2026Source

Xfinity Customers Still Have Time to Claim a Part of Comcast's $117.5M Data Breach Settlement
The settlement claim period has been extended. Here's how to file before the Sept. 14 deadline.
May 22nd, 2026Source

Internet — Security Issues — May 21st, 2026

AI Bug Reports Have Made Linux Security List Unmanageable, Creator Says
These reports duplicate the same issues over and over—including ones that have already been solved.
May 21st, 2026Source

AI is not your strategy: Author and business advisor Brian Evergreen explains why vision comes first
If someone showed up at your door with a saw and said "let's walk through your house and figure out how to make it better," you'd think you hired the wrong contractor. But that's how most companies are approaching AI — focusing on the capabilities of the tool rather than their vision for the work.
May 21st, 2026Source

Apple Rejected 2 Million App Store Submissions in 2025 for Security and Fraud Prevention
The company blocked over 1.1 billion accounts and $2.2 billion in potentially fraudulent transactions.
May 21st, 2026Source

ASAPP expands adversarial testing for enterprise AI systems
ASAPP has launched Continuous Red Teaming, a new capability that integrates adversarial AI testing directly into ASAPP's model evaluation framework. The new capability is built on Promptfoo, an AI security platform that helps enterprises detect and address vulnerabilities in AI systems during development.
May 21st, 2026Source

Attackers spill plaintext passwords of 46k Myspace93 users after 2021 breach
Leakage blamed on treacherous friends exposed unencrypted credentials, email addresses
May 21st, 2026Source

Chinese hackers target telcos with new Linux, Windows malware
A Chinese cyber-espionage campaign has been targeting telecommunications providers with newly discovered Linux and Windows malware dubbed Showboat and JFMBackdoor, respectively.
May 21st, 2026Source

Cisco Patches Critical Vulnerability in Secure Workload
Insufficient validation and authentication in the Secure Workload's REST APIs provide remote attackers with Site Admin privileges.
May 21st, 2026Source

Cryptohack Roundup: US Extradition of Accused in $340M Scam
Also: Hackers Stole From Verus Bridge, ThorChain and Echo Protocol
May 21st, 2026Source or Source or Source

CTERA brings AI insights and automation for unstructured data
CTERA has announced the launch of CTERA InsightAI, an agentic AI intelligence layer for the CTERA Intelligent Data Platform. The new capability is designed to help enterprises understand, manage, secure, and optimize unstructured data environments. CTERA InsightAI adds AI-driven insights and automation to data operations, expanding traditional data observability capabilities.
May 21st, 2026Source

Drupal Patches Highly Critical Vulnerability Exposing Websites to Hacking
CVE-2026-9082 can be exploited without authentication for information disclosure, privilege escalation, and remote code execution.
May 21st, 2026Source

Eight out of 10 organizations experience web-based security incidents
New research from network security platform NordLayer finds that 82 percent of surveyed IT professionals report that their organization experienced a web-based security incident in the past year, with half describing the impact as moderate or severe.
May 21st, 2026Source

Forward launches Predict to test network changes before deployment
Forward has unveiled Forward Predict, a new capability that allows organizations to evaluate the impact of network changes before deployment. By testing proposed changes against a digital twin of the production network, Forward Predict helps identify potential issues before they reach live environments and supports safer network operations at scale.
May 21st, 2026Source

Google's Surge in Chrome Vulnerability Discoveries Likely Driven by AI
More than 200 vulnerabilities patched in recent Chrome releases are marked as 'reported by Google'.
May 21st, 2026Source

Hollywood Secures Broad "Omnibus" Pirate Site Blocking Order in UK High Court
A recent UK High Court "omnibus" order reportedly grants Hollywood studios the power to block rotating networks of pirate sites, without the need to link them to known pirate brands. The order is a response to rapid domain-hopping and other evasion tactics of pirate site operators. However, aside from the Motion Picture Association's brief description in a WIPO submission, the order itself remains under wraps.
May 21st, 2026Source

Inside a Crypto Drainer: How to Spot it Before it Empties Your Wallet
In recent years, cryptocurrency theft operations have evolved far beyond isolated phishing pages and fake NFT mint scams. What once consisted mainly of individual actors running malicious wallet-connection pages has increasingly developed into a structured underground service economy built around "Drainer-as-a-Service" (DaaS) platforms.
May 21st, 2026Source

LLMs outperform humans for cybersecurity knowledge
New research carried out at the RSAC Conference challenged cybersecurity professionals to pit their domain knowledge against the capabilities of a battery of 39 different LLMs in a game we called 'AI Showdown.'
May 21st, 2026Source

Max severity Cisco Secure Workload flaw gives Site Admin privileges
Cisco has released security updates to address a maximum-severity Secure Workload vulnerability that allows attackers to gain Site Admin privileges.
May 21st, 2026Source

Microsoft Defender vulnerabilities exploited in the wild (CVE-2026-41091, CVE-2026-45498)
Attackers are exploiting two Microsoft Defender vulnerabilities (CVE-2026-41091 and CVE-2026-45498), Microsoft acknowledged and CISA confirmed by adding them to its Known Exploited Vulnerabilities catalog.
May 21st, 2026Source

Microsoft Patches Exploited UnDefend and RedSun Defender Zero-Days
The bugs could be exploited to elevate privileges to System or create a denial-of-service (DoS) condition.
May 21st, 2026Source

Microsoft storms RAMPART, adds Clarity to agentic AI safety
Redmond open sources two tools for building and maintaining safer agents
May 21st, 2026Source

Microsoft warns of new Defender zero-days exploited in attacks
CVE-2026-41091 is a Microsoft Defender local privilege escalation (LPE) flaw known as RedSun, and CVE-2026-45498 is known as UnDefend, a security flaw that can be exploited by standard users to block Microsoft Defender definition updates, according to a security researcher known as "Nightmare Eclipse" who disclosed them last month.
May 21st, 2026Source

Microsoft won't send you SMS texts for login anymore - why it's pushing passkeys instead
Text messages are a weak, vulnerable way to authenticate account logins. Soon, you'll have to switch to one of these safer, more secure methods.
May 21st, 2026Source

Ocean Emerges From Stealth With $28M for Agentic Email Security Platform
The company has developed a platform that uses specialized AI agents to inspect every incoming message.
May 21st, 2026Source

Police seize "First VPN" service used in ransomware, data theft attacks
A virtual private network service called 'First VPN,' used in ransomware and data theft attacks, has been taken offline in a joint international law enforcement operation.
May 21st, 2026Source

Riverbed introduces new Aternity tools for autonomous IT operations
Riverbed has announced new capabilities for Aternity designed to support autonomous IT operations for digital experience management. The updates help digital workplace teams move toward prevention-focused operations through broader visibility, context-aware intelligence, and governance controls that support automated workflows.
May 21st, 2026Source

Scammers are abusing an internal Microsoft account to send spam links
For months, scammers have been taking advantage of a loophole that allows them to send spammy emails from an internal Microsoft email address typically used for sending legitimate account alerts.
May 21st, 2026Source

Socket Raises $60 Million at $1 Billion Valuation
The company will invest in its firewall, certified patches, protection extensions, new products, and team expansion.
May 21st, 2026Source

Software supply chain attacks hit record highs thanks to AI development
A new report from JFrog reveals an unprecedented acceleration in enterprise software supply chain risk as threat actors expand strikes beyond traditional package registries into AI model registries and developer tooling, creating a blind spot in current software governance frameworks.
May 21st, 2026Source

Supply Chain Security Crisis: Too Many Vulnerabilities, Too Little Visibility
New vulnerabilities are being discovered too fast, the time-to-exploitation is too short, and our visibility into them is largely lacking.
May 21st, 2026Source

Tenable Hexa AI automates remediation across attack surfaces
Tenable has announced the general availability of Tenable Hexa AI, the agentic AI engine of the Tenable One Exposure Management Platform. Tenable Hexa AI is an advanced agentic AI for cybersecurity solution, equipped with advanced multi-step reasoning and Model Context Protocol (MCP) support, enabling custom agent building and workflows that accelerate risk reduction at machine speed.
May 21st, 2026Source

Terra adds continuous network exploitation validation to its platform
Terra Security has announced the public preview of continuous exploitation validation for network infrastructure, now available to all customers through the Terra Platform. The launch expands Terra's offensive security capabilities from web applications to network infrastructure and extends coverage across three areas: web applications, AI, and network environments. Terra said the update expands its continuous offensive security capabilities across web applications, AI, and network infrastructure within a single platform.
May 21st, 2026Source

Virtru centers file collaboration around data-level protection
Organizations that handle sensitive data consistently face a dilemma: lock data down and lose productivity, or share it freely and lose control. Virtru unveiled Virtru Collaborate, a new offering that eliminates that tradeoff, a FedRAMP authorized space where sensitive files are encrypted and protected by the Trusted Data Format (TDF), and where that protection travels seamlessly with the data as teams work together across organizational boundaries.
May 21st, 2026Source

Internet — Security Issues — May 18th, 2026

7-Eleven Data Breach Confirmed After ShinyHunters Ransom Demand
The hackers claimed to have stolen more than 600,000 Salesforce records, including personal information and corporate data.
May 18th, 2026Source

201 arrested in INTERPOL disruption of phishing and fraud networks
Operation Ramz, a cybercrime initiative coordinated by INTERPOL across the MENA region, focused on disrupting phishing campaigns, malware activity, and cyber scams that caused substantial financial losses across the region. The operation resulted in the arrest of 201 individuals and the identification of an additional 382 suspects.
May 18th, 2026Source

Apple Is Losing Its Negotiation Prowess For DRAM Chips To Hyperscalers; New Goal Titled Towards Securing Supply, Not Getting The Best Prices
The latest-generation DDR5 RAM has broken records thanks to being slapped with a 400+ percent premium in overseas markets, as supply has been gobbled up by massive hyperscalers. The future is looking far too grim as NVIDIA's Rubin AI platform is expected to starve smartphone LPDDR supply like there's no tomorrow.
May 18th, 2026Source

Attackers accessed, downloaded code from Grafana Labs' GitHub
A threat actor has managed to access Grafana Labs' GitHub environment and download the company's codebase, the open-source observability and data visualization firm announced on Sunday.
May 18th, 2026Source

Attackers are exploiting critical NGINX vulnerability (CVE-2026-42945)
A critical NGINX vulnerability (CVE-2026-42945) disclosed last week is being exploited by attackers, VulnCheck security researcher Patrick Garrity revealed on Saturday.
May 18th, 2026Source

Attackers bypass traditional security tools with 'user driven' attacks
Cyber attackers are increasingly bypassing traditional security tools altogether, using sophisticated social engineering techniques to trick users into compromising their own organizations, according to a new report from Bridewell.
May 18th, 2026Source

Bridging Gaps in SOC Maturity Using Detection Engineering and Automation
SOC maturity is a feedback loop. Sigma rules, quality gates, and explicit telemetry contracts turn noise into a measurable, improvable signal.
May 18th, 2026Source

Bug bounty businesses bombarded with AI slop
"Never-ending" AI slop strains corporate hacking reward schemes.
May 18th, 2026Source

'Claw Chain' OpenClaw Flaws Allow Sandbox Escape, Backdoor Delivery
Four vulnerabilities in OpenClaw can be chained together to steal credentials, escape the sandbox, and pla nt persistent backdoors.
May 18th, 2026Source

Cybersecurity a priority for SMBs as AI exposes weaknesses
A new survey of over 2,000 SMBs finds 52 percent rank cybersecurity and data protection among their top business priorities for the next 12 months, second only to growth (59 percent) and well ahead of scaling AI adoption (33 percent).
May 18th, 2026Source

Dutch cops' shame game works wonders as most wanted scammers now turned in
Game Over?! gamified the identification of scammers who sought thrills from terrorising the elderly
May 18th, 2026Source

Exploit available for new DirtyDecrypt Linux root escalation flaw
A recently patched local privilege escalation vulnerability in the Linux kernel's rxgk module now has a proof-of-concept exploit that allows attackers to gain root access on some Linux systems.
May 18th, 2026Source

Exploitation of Critical NGINX Vulnerability Begins
The flaw leads to denial-of-service on default configurations and to remote code execution if ASLR is disabled.
May 18th, 2026Source

First Shai-Hulud Worm Clones Emerge
At least one threat actor has adopted the recently released malware source code in attacks against NPM developers.
May 18th, 2026Source

Grafana Confirms Breach After Hackers Claim They Stole Data
Grafana appears to have been targeted by Coinbase Cartel, a cybercrime group linked to ShinyHunters, Scattered Spider, and Lapsus$.
May 18th, 2026Source

Grafana says stolen GitHub token let hackers steal codebase
Grafana Labs disclosed that hackers have downloaded its source code after breaching its GitHub environment using a stolen access token.
May 18th, 2026Source

Microsoft acknowledges May 2026 Windows 11 security update install problems
Another month, another update for Windows which is problematic. This time around, it is the May 2026 Windows 11 security update -- or the KB5089549 update.
May 18th, 2026Source

Microsoft confirms Windows 11 security update install issues
Microsoft has confirmed that the May 2026 Windows 11 security update (KB5089549) fails to install on some systems and triggers 0x800f0922 errors.
May 18th, 2026Source

Millions Impacted Across Several US Healthcare Data Breaches
Several healthcare data breaches impacting hundreds of thousands and even millions were added to the HHS tracker.
May 18th, 2026Source

Most agentic AI projects fail to meet objectives
New research reveals a widening gap between agentic AI adoption and outcomes as 97 percent of organizations have deployed or are piloting AI agents, yet 57 percent of AI projects are not reported to be delivering their objectives.
May 18th, 2026Source

Mozilla warns UK: Breaking VPNs will not magically fix Britain's age-check mess
Firefox maker says the tools are basic security infrastructure, not teenage contraband
May 18th, 2026Source

NGINX Rift attackers waste no time targeting exposed servers
Researchers say 18-year-old flaw already being probed and exploited just days after disclosure
May 18th, 2026Source

NYC Health + Hospitals says hackers stole medical data and fingerprints during breach affecting at least 1.8 million people
New York public health provider NYC Health + Hospitals says a months-long data breach that allowed hackers to steal personal data, medical records, and fingerprints scans affects at least 1.8 million people.
May 18th, 2026Source

Poland directs officials to ditch Signal in favor of 'secure' state-developed alternative
Shift comes amid mounting reports of successful social engineering attacks targeting higher-ups in government
May 18th, 2026Source

Researcher Drops MiniPlasma Windows Exploit for Unpatched 2020 CVE
The researcher dropped the MiniPlasma exploit that uses the original proof-of-concept (PoC) code targeting the bug.
May 18th, 2026Source

SmartBear expands ReadyAPI with AI-powered API testing capabilities
SmartBear has announced ReadyAPI's new AI test generation capability that accelerates API testing by up to 80% while giving teams control to enable or disable AI.
May 18th, 2026Source

TanStack weighs invitation-only pull requests after supply chain attack
Shai-Hulud worm exploited GitHub Actions misconfiguration to poison shared cache, now project weighing nuclear option on unsolicited contributions
May 18th, 2026Source

Internet — Security Issues — May 17th, 2026

Crackdown in Southeast Asia pushes scam networks to Sri Lanka
A surge in arrests of suspected foreign scammers in Sri Lanka has authorities concerned that the island is fast becoming a hub for online crime, following sweeping crackdowns in hotspots Cambodia and Myanmar.
May 17th, 2026Source

Tycoon2FA hijacks Microsoft 365 accounts via device-code phishing
The Tycoon2FA phishing kit now supports device-code phishing attacks and abuses Trustifi click-tracking URLs to hijack Microsoft 365 accounts.
May 17th, 2026Source

Wanted: Digital chief for England's schools. Must enjoy data, AI, and concrete problems
Are you ready to RAAC?
May 17th, 2026Source

Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploited
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
May 17th, 2026Source

Internet — Security Issues — May 16th, 2026

AI could steal fingerprints from high-resolution selfies, experts warn
Although fingerprint authentication has known security limitations, modern laptops, tablets, and smartphones continue to rely on it for device unlocking and passkey authentication. As phone cameras become increasingly powerful, security experts are warning that lifting fingerprints from ordinary photos is becoming more feasible.
May 16th, 2026Source

AI Doctors? Lawsuits Say No, Some Doctors Say Yes
Medical professionals are pushing back against artificial intelligence assuming the persona of a doctor, arguing it amounts to practicing without a license. One solution floated in the Journal of the American Medical Association would be to license AI as if it went to medical school.
May 16th, 2026Source or Source or Source or Source

First Apple M5 memory exploit discovered using Anthropic AI, gives root access on MacOS — Claude Mythos helps security researchers bypass Memory Integrity Enforcement
AI-assisted security research is producing exploits at a frightening rate.
May 16th, 2026Source

ISMG Editors: Should We Trust Ransomware Gangs?
In this week's panel, four ISMG editors discussed a ransomware case that once again raises questions about paying extortionists, why security leaders fear artificial intelligence is accelerating attacks faster than humans can respond and how the rise of instant payments is reshaping fraud programs at banks.
May 16th, 2026Source or Source or Source or Source

New Cisco SD-WAN Zero-Day Grants Admin Access
Broken vdaemon Peering Authentication Enables Unauthenticated Admin Access
May 16th, 2026Source or Source or Source or Source

PoC Code Published for Critical NGINX Vulnerability
Introduced in 2008, the critical-severity security defect was patched this week in NGINX Plus and NGINX open source.
May 16th, 2026Source

Russian hackers turn Kazuar backdoor into modular P2P botnet
The Russian hacker group Secret Blizzard has developed its long-running Kazuar backdoor into a modular peer-to-peer (P2P) botnet designed for long-term persistence, stealth, and data collection.
May 16th, 2026Source

SecurityScorecard Buys Driftnet for More Internet Visibility
Driftnet Acquisition Adds Real-Time Visibility Into Exposed Assets and AI Risks
May 16th, 2026Source or Source or Source or Source

Snap, YouTube, and TikTok settle school addiction lawsuit, leaving Meta to face trial alone
Snap, YouTube, and TikTok settled the first school district addiction trial. Only Meta heads to court on 12 June.
May 16th, 2026Source

Upscale versus Upskill: The Real Cybersecurity Gap
AI Adoption Is Accelerating, but Workforce Capability Isn't Keeping Pace
May 16th, 2026Source or Source or Source or Source

Internet — Security Issues — May 15th, 2026

Akamai to acquire LayerX for $205 million
Akamai has entered into a definitive agreement to acquire LayerX, a provider of browser-based AI usage control and secure enterprise browser (SEB) technology.
May 15th, 2026Source

American Lending Center Data Breach Affects 123,000 Individuals
The non-bank lender discovered a ransomware attack nearly one year ago, but only recently completed its investigation.
May 15th, 2026Source

Avada Builder WordPress plugin flaws allow site credential theft
Two vulnerabilities in the Avada Builder plugin for WordPress, with an estimated one million active installations, allow hackers to read arbitrary files and extract sensitive information from the database.
May 15th, 2026Source

Cisco patches another actively exploited SD-WAN zero-day (CVE-2026-20182)
Cisco has patched yet another Catalyst SD-WAN Controller authentication bypass vulnerability (CVE-2026-20182) that has been exploited as a zero-day by "a highly sophisticated cyber threat actor".
May 15th, 2026Source

Exchange Server has a "critical" security bug, but Microsoft does not have a proper fix yet
A newly disclosed Exchange Server vulnerability is forcing some admins into messy trade-offs, and not everyone will receive Microsoft's permanent fix.
May 15th, 2026Source

Exploited Exchange Server flaw turns OWA inboxes into script launchpads
Microsoft mitigation may bork inline images, calendar printing while admins wait for a proper patch
May 15th, 2026Source

How deep learning is reshaping cybersecurity in the age of AI-driven attacks [Q&A]
With the power of AI, attackers are smarter and stealthier than ever. They can exploit existing workflows, blend in with normal operations, and avoid detection for longer periods.
May 15th, 2026Source

In Other News: Big Tech versus Canada Encryption Bill, Cisco's Free AI Security Spec, Audi App Flaws
Other noteworthy stories that might have slipped under the radar: Nvidia cloud gaming data breach, Android 17 security upgrades, FBI warning after ShinyHunters hacks Canvas.
May 15th, 2026Source

Inside the REMUS Infostealer: Session Theft, MaaS, and Rapid Evolution
In recent months, a new infostealer malware known as REMUS has emerged across the cybercrime landscape, drawing attention from security researchers and malware analysts. Several technical analyses published in recent months focused on the malware's capabilities, infrastructure, and similarities to Lumma Stealer, including browser targeting mechanisms, and credential theft functionality and more.
May 15th, 2026Source

Keycard helps developers secure autonomous AI agents with scoped access
Keycard has announced Keycard for Multi-Agent Apps, extending its platform to support delegated, session-based access across systems of autonomous agents. Keycard lets developers build apps where every agent has its own identity, access is scoped to each task and every action is fully attributable across agents, users and systems.
May 15th, 2026Source

Microsoft warns of Exchange zero-day flaw exploited in attacks
On Thursday, Microsoft shared mitigations for a high-severity Exchange Server vulnerability exploited in attacks that allow threat actors to execute arbitrary code via cross-site scripting (XSS) while targeting Outlook on the web users.
May 15th, 2026Source

MPs want social media treated more like unsafe toys than harmless apps
Parliamentary committee tells ministers online safety regime is failing children and warns 'no action is not an option'
May 15th, 2026Source

Patch time for Cisco SD-WAN admins as vendor drops yet another make-me-admin zero-day
CISA hands feds super-tight deadline for this perfect-10, actively exploited flaw
May 15th, 2026Source

Rocky Linux launches opt-in security repository for urgent fixes
Rocky Linux has introduced a Security Repository that allows the distribution to ship urgent security fixes ahead of upstream Enterprise Linux when public exploit code exists and upstream patches are unavailable.
May 15th, 2026Source

Security researchers, aided by Anthropic's Mythos, claim to have breached macOS
Apple's operating systems are known for their security, especially compared to their rivals in mobile and computing. Now, security researchers from a Palo Alto-based company called Calif claim they were able to breach macOS after designing a privilege escalation exploit with help from Anthropic's Claude Mythos Preview. As The Wall Street Journal reports, the exploit could be used to access parts of the MacBook that should be inaccessible and, thus, allows the attacker to take control of a Mac computer.
May 15th, 2026Source

Thieves unlock stolen iPhones using cheap tools sold on Telegram
Helping a friend recover a stolen phone, Infoblox researchers uncovered a thriving Telegram-based underground marketplace selling unlocking tools and phishing infrastructure used to monetize stolen iPhones.
May 15th, 2026Source

Unpatched Microsoft Exchange Server vulnerability exploited (CVE-2026-42897)
A critical cross-site scripting (XSS) vulnerability (CVE-2026-42897) in Microsoft Exchange Server is being exploited by attackers, Microsoft warned on Thursday.
May 15th, 2026Source

Was Your Data Exposed in the Massive New Cyberattack?
Artificial intelligence is reshaping the cybersecurity landscape, creating both opportunities and challenges for organizations worldwide. As Wes Roth highlights, AI is not only allowing faster detection of vulnerabilities but also being weaponized by cybercriminals to launch increasingly sophisticated attacks. A recent example is the discovery of a critical macOS 26.4.1 vulnerability by the AI system Mythos, which allowed privilege escalation on Apple M5 hardware. While this demonstrates the potential of AI to enhance defensive measures, it also underscores the growing risk of AI-assisted exploitation, where attackers use the same technology to automate and accelerate their efforts.
May 15th, 2026Source

You can now explore Wikipedia through a Windows XP-esque desktop on the web
A clever web project turns Wikipedia into a nostalgic Windows XP-style filesystem you can actually browse and customize.
May 15th, 2026Source

Internet — Security Issues — May 14th, 2026

18-year-old NGINX vulnerability allows DoS, potential RCE
An 18-year-old flaw in the NGINX open-source web server, discovered using an autonomous scanning system, can be exploited for denial of service and, under certain conditions, remote code execution.
May 14th, 2026Source

A spyware investigator exposed Russian government hackers trying to hijack Signal accounts
Earlier this year, Donncha Ó Cearbhaill, a security researcher who investigates spyware attacks, found himself in an unusual position. For once, he became the target of hackers.
May 14th, 2026Source

AI cyber capability is speeding past earlier projections
AI cyber capability is improving faster than expected, with newer models surpassing earlier projections, according to the UK government's AI Security Institute (AISI).
May 14th, 2026Source

Akamai to Acquire AI and Browser Security Firm LayerX for $205 Million
The acquisition enables Akamai to expand its Zero Trust portfolio to add protection directly into the browser.
May 14th, 2026Source

Beyond Algorithms: The Human Element in AI-Driven Cybersecurity
AI is pushing cybersecurity from reactive defense to proactive intelligence — but human judgment, explainable AI, and ethical design remain essential.
May 14th, 2026Source

CERN's open source KiCad library gives the world 17,000 circuit board components
CERN has released its complete KiCad component library under an open source license, making it available to hardware designers anywhere in the world. The library, maintained by CERN's Design Office, contains more than 17,000 electronic components in the form of schematic symbols and printed circuit board footprints.
May 14th, 2026Source

Chinese APTs Expand Targets, Update Backdoors in Recent Campaigns
Salt Typhoon has hit an energy entity in Azerbaijan. Twill Typhoon has targeted Asian entities with an updated RAT.
May 14th, 2026Source

Cisco CEO Robbins Ties AI Push to Unpatchable Tech Risk
Chuck Robbins Warns Customers Face Growing Exposure From Equipment Past Support
May 14th, 2026Source or Source or Source

Cofense adds AI-powered campaign detection to stop phishing attacks
Cofense has announced new advancements to its Phishing Defense Platform aimed at improving detection and response to AI-powered phishing attacks. The updates include AI-driven phishing detection, enhanced triage automation, and AI-assisted training campaign creation designed to strengthen protection across the phishing lifecycle.
May 14th, 2026Source

Cyber-Enabled Cargo Crime: How Cybercrime Tradecraft is Used to Steal Freight
Working in cybersecurity, you are well aware of the playbook that ransomware operators use. Stolen credentials, established persistence, network recon, pivoting to a high-value target cash out. These techniques are well documented; we have attack frameworks and well-documented kill chains for their techniques. What you may not have been exposed to is that same playbook being used to steal freight.
May 14th, 2026Source

F5 Patches Over 50 Vulnerabilities
The company's latest quarterly advisory describes high and medium-severity issues in BIG-IP, BIG-IQ, and NGINX.
May 14th, 2026Source

G7 Countries Release AI SBOM Guidance
The goal of the guidance, which outlines minimum elements, is to help organizations enhance transparency in AI systems and supply chains.
May 14th, 2026Source

Hackers Targeted PraisonAI Vulnerability Hours After Disclosure
The first exploitation attempts were observed less than four hours after the authentication bypass was publicly disclosed.
May 14th, 2026Source

High-Severity Vulnerability Patched in VMware Fusion
The patch was announced as Broadcom is attending the Pwn2Own hacking competition in Berlin this week.
May 14th, 2026Source

HYCU aiR detects insider risk and AI activity from backups
HYCU has announced HYCU aiR (AI Resilience), an AI-native solution that turns backup data across dozens of applications into a live and actionable intelligence for security, compliance, and IT teams.
May 14th, 2026Source

KongTuke hackers now use Microsoft Teams for corporate breaches
Initial access broker KongTuke has moved to Microsoft Teams for social engineering attacks, taking as little as five minutes to gain persistent access to corporate networks.
May 14th, 2026Source

Kubernetes v1.36 Released: Security Defaults Tighten as AI Workload Support Matures
The Kubernetes project has released version 1.36, named Haru, marking the first major Kubernetes release of 2026. The release contains 70 enhancements: 18 graduating to Stable, 25 entering Beta, and 25 new Alpha features, with a strong emphasis on security hardening, AI and machine learning workloads, and API scalability at scale. The release blog, authored by editors Chad M. Crowell, Kirti Goyal, Sophia Ugochukwu, Swathi Rao, and Utkarsh Umre, describes the release as arriving "as the season turns and the light shifts on the mountain", with contributions from 106 companies and 491 individuals.
May 14th, 2026Source

Microsoft Faces New BitLocker Security Concerns With YellowKey
Security researcher Chaotic Eclipse, also known online as Nightmare-Eclipse, has disclosed two new Windows zero-day exploits named YellowKey and GreenPlasma. The vulnerabilities target BitLocker encryption and Windows privilege handling respectively, with YellowKey attracting particular attention because it reportedly allows access to BitLocker-protected drives under certain conditions. According to the published technical details, YellowKey works by placing specially prepared files onto a USB storage device with write access to the "System Volume Information" directory. After rebooting into the Windows Recovery Environment using a specific keyboard sequence, affected systems reportedly launch directly into an elevated command prompt with full access to the encrypted drive contents without requesting BitLocker recovery credentials.
May 14th, 2026Source

Microsoft Pushes Agentic AI Security with New Multi-Model Defense System
A new agentic AI security multi-model defense system built by Microsoft's Autonomous Code Security team helped researchers find 16 new vulnerabilities across the Windows networking and authentication stack.
May 14th, 2026Source

Microsoft turns Copilot Studio into an AI agent control center
The Microsoft Copilot Studio April 2026 updates improve visibility and governance for admins and expand workflow capabilities for managing agents.
May 14th, 2026Source

Microsoft's WinUI agent plugin trims token use by over 70% during development
Microsoft published a plugin on May 13 that lets GitHub Copilot CLI and Claude Code drive the full WinUI 3 development cycle, from project scaffolding through signed MSIX packaging. The WinUI agent plugin ships one agent, eight skills, and several supporting tools targeting the loop developers run dozens of times a day: scaffold, build, run, test, iterate.
May 14th, 2026Source

Mythos Proves Potent in Vulnerability Discovery, Less Convincing Elsewhere
Independent benchmarking finds Mythos highly effective for source code audits, reverse engineering, and native-code analysis, though its exploit validation and reasoning capabilities remain inconsistent.
May 14th, 2026Source

Over half of MSPs breached several times in the past year
According to a new report three quarters of managed service providers (MSPs) admit to suffering at least one breach in the last 12 months, with 54 percent reporting being breached two or more times and nearly a third (32 percent) of respondents admitting to experiencing three or more breaches.
May 14th, 2026Source

Researcher Drops YellowKey, GreenPlasma Windows Zero-Days
YellowKey is a BitLocker bypass that requires physical access. GreenPlasma enables elevation of privileges to System.
May 14th, 2026Source

The AI Trust Gap: How to Ensure Your Security Stack is Ready for Autonomous Agents
AI agents are moving at machine speed and most enterprises aren't ready. Shadow AI, over-permissioned agents, and autonomous systems that act on sensitive data are creating a new class of risk that siloed security tools just weren't built to handle.
May 14th, 2026Source

To gain root access at this company, all an intruder had to do was ask nicely
Human IT managers thought they were being nice to the boss, but were assisting a threat actor
May 14th, 2026Source

Two brothers deleted 96 federal databases after being fired -- one googled how to hide the evidence afterward
Government contractor unknowingly hired felons who hacked the government in 2015
May 14th, 2026Source

Understanding the Hidden Cost of Faster Payments
As Regulators Tighten Liability Rules, Banks Face Pressure to Justify Fraud Losses
May 14th, 2026Source or Source or Source or Source

Internet — Security Issues — May 11th, 2026

A million baby monitors and security cameras were easily viewable by hackers
Meari Technology: the Wi-Fi camera maker you've probably never heard of.
May 11th, 2026Source

AI Is Involved in Most Modern Security Breaches: Report
AI plays a major role in modern security breaches, as a new report from the cybersecurity firm Gigamon demonstrates. Attackers are increasingly using AI to write more convincing phishing emails, automate password attacks, tailor malware to targets, and more, making older tactics much more dangerous. And while AI is also used in defense, such as monitoring, detection, and response, companies often leave themselves open to attacks by rolling out AI tools faster than they can implement proper security protocols.
May 11th, 2026Source

Alation AI Governance creates a system of record for AI oversight
Alation has introduced Alation AI Governance, a new offering that gives enterprises the system of record they are missing for AI compliance.
May 11th, 2026Source

BWH Hotels guests warned after reservation data checks out with cybercrooks
Customers urged to keep an eye out for phisherfolk
May 11th, 2026Source

Build Application Firewalls Aim to Stop the Next Supply Chain Attack
Rather than scanning code alone, Build Application Firewalls inspect runtime behavior inside the software build pipeline.
May 11th, 2026Source

Canvas System Is Online After a Cyberattack Disrupted Thousands of Schools
Tens of thousands of students studying for final exams around the world have regained access to a key online learning system after a cyberattack had earlier knocked it offline.
May 11th, 2026Source

Checkmarx Jenkins AST Plugin Compromised in Supply Chain Attack
A malicious version of the plugin was published to the Jenkins Marketplace late last week.
May 11th, 2026Source

Checkmarx tackles another TeamPCP intrusion as Jenkins plugin sabotaged
Cybercrooks ruin engineers' weekends with Saturday attack
May 11th, 2026Source or Source

Claude Mythos Just Flagged 271 Hidden Vulnerabilities in Firefox
Mozilla's Claude Mythos AI experiment has unveiled a striking new chapter in software vulnerability detection. By employing advanced AI to analyze the Firefox 150 codebase, the project identified 271 vulnerabilities in a single release cycle, an extraordinary leap from the 22 issues found in a prior evaluation. This effort, as highlighted by Nate Jones, underscores the limitations of traditional manual code reviews, which often fail to catch critical flaws due to human oversight. The findings not only emphasize the precision of AI-driven analysis but also challenge long-standing assumptions about the reliability of human-written code in making sure software security.
May 11th, 2026Source

Cloudflare Lays Off 1,100 Employees in AI-Driven Restructuring
The company topped revenue and earnings forecasts for the first quarter of 2026, but its shares plunged more than 20%.
May 11th, 2026Source

Google Detects First AI-Generated Zero-Day Exploit
The zero-day was designed to bypass 2FA and it was developed by a prominent cybercrime group.
May 11th, 2026Source

Google researchers uncover criminal zero-day exploit likely built with AI
Google's threat intelligence researchers have linked a zero-day exploit to AI-assisted development by a criminal group.
May 11th, 2026Source

Google stopped a zero-day hack that it says was developed with AI
Google researchers found evidence in the exploit's code that it may have been created using AI, like a 'hallucinated' CVSS score.
May 11th, 2026Source

Google: Hackers used AI to develop zero-day exploit for web admin tool
Researchers at Google Threat Intelligence Group (GTIG) say that a zero-day exploit targeting a popular open-source web administration tool was likely generated using AI.
May 11th, 2026Source

How deepfakes are redefining digital identity security [Q&A]
Deepfakes are rapidly evolving from media curiosities to one of the biggest threats to digitalidentity, payments, and financial security.
May 11th, 2026Source

Instagram messaging encryption removed, and privacy advocates are pushing back
After introducing optional end-to-end encrypted messaging in 2023, Instagram announced in March 2026 that encryption for direct messages would be discontinued, and the feature was removed on May 8.
May 11th, 2026Source

Instructure confirms hackers used Canvas flaw to deface portals
Education technology giant Instructure has confirmed that a security vulnerability allowed hackers to modify Canvas login portals and leave an extortion message.
May 11th, 2026Source

Lyrie.ai Deploys Real-Time Zero-Day Tracking Across Global Enterprise Infrastructure
OTT Cybersecurity LLC announced several milestones that position the company as foundational security infrastructure for the agentic AI era.
May 11th, 2026Source

Malicious Hugging Face model masquerading as OpenAI release hits 244K downloads
The repository reached the #1 trending position on Hugging Face within 18 hours, highlighting how public AI repositories are becoming a new software supply chain attack vector.
May 11th, 2026Source

pCloud online backup review: An affordable lifetime of secure files
This online storage service doesn't mess around with monthly charges, it's yearly or lifetime only -- but very affordable as such, with top-notch local client software.
May 11th, 2026Source

Police take down relaunched criminal marketplace with 22,000 users, €3.6 million in revenue
German authorities shut down a relaunched version of the criminal marketplace Crimenetwork and arrested its suspected operator.
May 11th, 2026Source

Poor security left hackers inside water company network for nearly two years
The UK's data protection regulator, the Information Commissioner's Office (ICO), fined South Staffordshire Water's parent company £963,900 over security failures linked to a cyberattack that exposed the personal data of 633,887 people.
May 11th, 2026Source

Resurrected 'Crimenetwork' Marketplace Taken Down, Administrator Arrested
The second iteration of the German-speaking online crime marketplace had over 22,000 users and more than 100 sellers.
May 11th, 2026Source

SailPoint Agentic Fabric expands identity governance to autonomous AI agents
SailPoint has introduced SailPoint Agentic Fabric, a new platform designed to help enterprises secure AI agents and other non-human identities at scale.
May 11th, 2026Source

SailPoint Discloses GitHub Repository Hack
The incident occurred on April 20 and did not affect customer data in the company's production and staging environments.
May 11th, 2026Source

Skoda Data Breach Hits Online Shop Customers
Using a vulnerability in the portal, hackers accessed names, addresses, email addresses, and phone numbers.
May 11th, 2026Source

Taiwan's train cyber-trauma reveals a global system that's coming off the tracks
That's not a radio. THIS is a radio
May 11th, 2026Source

The questionnaire-based TPRM model is broken, and TrustCloud has a fix
TrustCloud announced a new version of TrustLens, its third party risk management (TPRM) solution. The new TrustLens agentic AI capabilities focus on delivering four requirements every CISO wants in their TPRM program: speed, accuracy, coverage, and proactive risk mitigation.
May 11th, 2026Source

The scam economy has found its AI upgrade
Scam attempts continue to reach consumers via email, text messages, social media, online advertising, and phone calls. The volume of exposure has remained stable over the past year, with more than half of consumers encountering scam attempts at least monthly, according to the F-Secure Scam Intelligence & Impacts Report 2026.
May 11th, 2026Source

The Threat Window Is Shrinking. The Response Gap Isn't
Patching Workflows Built for Weekly Cycles Can't Survive an Era of Hourly Exploits
May 11th, 2026Source or Source or Source or Source

TrickMo Android banker adopts TON blockchain for covert comms
A new variant of the TrickMo Android banking malware, delivered in campaigns targeting users across Europe, introduces new commands and uses The Open Network (TON) for stealthy command-and-control communications.
May 11th, 2026Source

Water company's leaky security earns near-£1M fine
Utility provider failed to detect Cl0p ransomware attack for nearly two years
May 11th, 2026Source

Why Changing Passwords Doesn't End an Active Directory Breach
Password resets are often the first response to a suspected compromise. It makes sense; resetting credentials is a quick way to cut off an attacker's most obvious path back in.
May 11th, 2026Source

Internet — Security Issues — May 10th, 2026

A cyberattack on Canvas knocked out access for students at Harvard, Columbia, and hundreds of other schools during finals
The breach is a case study in how a single platform compromise can take down an entire sector at once
May 10th, 2026Source

Police shut down reboot of Crimenetwork marketplace, arrest admin
German authorities have shut down a relaunch version of the criminal marketplace 'Crimenetwork' that generated more than 3.6 million euros, and arrested its operator.
May 10th, 2026Source

Russian Hackers Are Inside American Home Routers. The FBI Has a 5-Step Fix
A coordinated cyberattack by Russia's GRU targeted home and small office routers across 23 states. Here's how to check yours and lock it down.
May 10th, 2026Source

Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scams
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
May 10th, 2026Source

Internet — Security Issues — May 9th, 2026

A manual pentest costs 50,000 dollars. Intruder built an AI that does it in minutes.
Intruder, a GCHQ-accelerated UK cybersecurity startup, launched AI pentesting agents that replicate manual pen testing methodology in minutes. The broader market is racing to automate vulnerability discovery as AI compresses the gap between offence and defence.
May 9th, 2026Source

Anthropic's Mythos found thousands of zero-day vulnerabilities. The Fed chair called the banks.
Anthropic's Claude Mythos Preview found thousands of zero-day vulnerabilities across major operating systems and browsers, prompting the Fed chair and Treasury secretary to convene bank CEOs. The company warns of a six-to-twelve month window before adversaries replicate the capability.
May 9th, 2026Source

Canvas system is online after a cyberattack disrupted thousands of schools
Tens of thousands of students studying for final exams around the world Friday regained access to a key online learning system after a cyberattack had earlier knocked it offline, throwing schools and universities into turmoil.
May 9th, 2026Source

FCC reverses course, allows software updates for foreign-made drones and routers until 2029 — agency says blocking security patches could create cybersecurity risks
The FCC is extending a software lifeline for millions of already-deployed drones and routers.
May 9th, 2026Source

JDownloader site hacked to replace installers with Python RAT malware
The website for the popular JDownloader download manager was compromised earlier this week to distribute malicious Windows and Linux installers, with the Windows payload found deploying a Python-based remote access trojan.
May 9th, 2026Source

Meta has killed end-to-end encryption on Instagram
Starting today, end-to-end encryption (E2EE) is no longer available for direct messages on Instagram, as Meta has removed the privacy feature years after it began testing it.
May 9th, 2026Source

NVIDIA Confirms GeForce NOW Data Breach Affecting Regional Alliance Partner
Hackers have managed to infiltrate a regional GeForce NOW partner and make off with sensitive user information, including full names, email addresses, and other private data, NVIDIA confirmed. Fortunately, the data breach is limited to one specific region and does not affect GeForce NOW users worldwide, only a third-party Alliance partner in Armenia.
May 9th, 2026Source

UK wants fresh fingerprints on £300M biometrics platform
Home Office probes supplier interest as core police and immigration system heads for support shake-up
May 9th, 2026Source

Internet — Security Issues — May 8th, 2026

A Canvas outage tied to a cyberattack has wreaked havoc on colleges' final exam season
Schools and universities across the country are recovering from an outage that knocked down Canvas, an online platform that manages exams, course notes, lecture videos and grades. The disruption tied to a cyberattack hit in the middle of finals period for many colleges, a high-stress time when students and instructors rely heavily on the platform.
May 8th, 2026Source

AI Firm Braintrust Prompts API Key Rotation After Data Breach
Hackers accessed one of the company's AWS accounts and compromised AI provider secrets stored in Braintrust.
May 8th, 2026Source

Avantra's new AI can diagnose SAP failures in seconds
Avantra launched Avantra 26, an advancement in AI-driven operations, strengthening native integration with SAP Cloud ALM, and delivering automated visibility across SAP Business Technology Platform (BTP).
May 8th, 2026Source

'Dirty Frag' Linux flaw one-ups CopyFail with no patches and public root exploit
Broken disclosure embargo left admins facing a fresh root-level flaw with no CVE
May 8th, 2026Source or Source or Source

CISA gives feds four days to patch Ivanti flaw exploited as zero-day
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. federal agencies four days to secure their networks against a high-severity vulnerability in Ivanti Endpoint Manager Mobile (EPMM) that has been exploited in zero-day attacks.
May 8th, 2026Source

Cyberattack Hits Canvas System Used by Thousands of Schools as Finals Loom
A system that thousands of schools and universities use went offline due to a cyberattack, creating chaos as students tried to study for finals
May 8th, 2026Source

Former govt contractor convicted for wiping dozens of federal databases
A 34-year-old Virginia man was found guilty of conspiring to destroy dozens of government databases after getting fired from his job as a federal contractor.
May 8th, 2026Source

Google is turning Android Studio into a policy watchdog
Google has expanded Play Policy Insights in Android Studio to help developers catch policy issues while coding, including warnings for common problems such as missing login credentials. Later this year, developers who connect their Play developer account directly to Android Studio will receive tailored insights.
May 8th, 2026Source

Hackers ate my homework: Educational SaaS Canvas down after cyberattack
ShinyHunters takes the credit and gives developer an F for security
May 8th, 2026Source

Helping North Korean IT remote workers is becoming a fast track to prison
Two U.S. nationals were sentenced to 18 months in prison for operating "laptop farms" that helped North Korean IT workers gain employment at nearly 70 American companies, generating more than $1.2 million for Pyongyang's government.
May 8th, 2026Source

How GitHub Is Securing Agentic Workflows in Modern CI CD Systems
GitHub has detailed the security architecture behind its agentic workflows, outlining a defense-in-depth approach to safely integrate autonomous AI agents into CI/CD pipelines. The design emphasizes isolation, constrained execution, and auditability to mitigate risks introduced by AI-driven automation.
May 8th, 2026Source

If you downloaded this popular software recently, you might have installed malware
Hackers exploited an unpatched security vulnerability on JDownloader's website and used it to serve malware-laced downloads.
May 8th, 2026Source

In Other News: Train Hacker Arrested, PamDOORa Linux Backdoor, New CISA Director Frontrunner
Other noteworthy stories that might have slipped under the radar: US gov targets 72-hour patch cycles, malware uses Windows Phone Link to steal OTPs, spy operation targets Eurasian drone industry.
May 8th, 2026Source

Instructure breach update: ShinyHunters claim second hack, deface school websites
The hackers are looking to 'negotiate a settlement.'
May 8th, 2026Source

Instructure hackers claim they stole data from nearly 9,000 schools
ShinyHunters, the extortion group that infiltrated cloud-based educational tech provider Instructure, claims to have stolen data from 8,809 schools around the world. Instructure is mostly known for Canvas, its cloud-based management system used by educational institutions to host course websites and readings, grade assignments, and provide discussion boards, among other uses. The bad actors said they have stolen 280 million records from teachers, students and staff members.
May 8th, 2026Source

Ivanti EPMM vulnerability exploited in zero-day attacks (CVE-2026-6973)
Ivanti has released fixes for 5 high-severity vulnerabilities in its Endpoint Manager Mobile (EPMM) solution, one of which (CVE-2026-6973) has being exploited as a zero-day by attackers.
May 8th, 2026Source

Kaspersky warns that passwords hashed with MD5 algorithm can be cracked in minutes using a GPU
Moving away from insecure passwords is now a critical priority
May 8th, 2026Source

Kids Are Using Fake Mustaches to Bypass Online Age Verification
It is only one of many simple tricks kids use to bypass the rules.
May 8th, 2026Source

macOS security spotlight: 3 new Tahoe features you should know
Apple made security changes to better secure your Mac experience.
May 8th, 2026Source

Meta fights Ofcom over how many billions count as billions
Social media biz says watchdog's fine formula is 'disproportionate' and should stop counting global revenue
May 8th, 2026Source

Meta U-turns on encryption push for Instagram as DMs go plaintext
After years of insisting end-to-end encryption was the future of online comms, Zuckcorp has handed itself full visibility into user chats once again
May 8th, 2026Source

Mothers bear the brunt of food insecurity, study shows
Lead author Dr Ioanna Katiforis, who completed the research at Otago's Department of Human Nutrition, says these women prioritized feeding their infants by stretching limited resources, sacrificing the quality of their own diets, and seeking support, despite the shame and embarrassment it caused them.
May 8th, 2026Source

NVIDIA confirms GeForce NOW data breach affecting Armenian users
NVIDIA has confirmed in a statement for BleepingComputer that GeForce NOW user information has been exposed in a data breach.
May 8th, 2026Source

Object First Fleet Manager simplifies distributed backup storage
Object First released Object First Fleet Manager, a cloud-based service that simplifies the management of distributed Ootbi backup storage deployments for Veeam Software environments.
May 8th, 2026Source

OpenAI tunes GPT-5.5-Cyber for more permissive security workflows
Trusted Access for Cyber is OpenAI's identity and trust-based access framework for cybersecurity users, designed to give verified defenders broader access to GPT-5.5's cybersecurity capabilities for defensive tasks while maintaining restrictions on requests that could contribute to real-world harm.
May 8th, 2026Source

'PCPJack' Worm Removes TeamPCP Infections, Steals Credentials
The malware framework targets web applications and cloud environments, including AWS, Docker, Kubernetes, and more.
May 8th, 2026Source

Polish Security Agency Reports ICS Breaches at Five Water Treatment Plants
The hackers gained the ability to modify equipment operational parameters, creating a direct risk to the public water supply.
May 8th, 2026Source

Ransomware Group Takes Credit for Trellix Hack
RansomHouse has published several screenshots to demonstrate access to internal Trellix services.
May 8th, 2026Source

Securonix launches AI threat research agent and ThreatWatch validation tool
Securonix announced the Securonix Threat Research Agent and ThreatWatch for ThreatQ, expanding how security teams research threats, validate exposure, and turn intelligence into documented action. Built on the ThreatQ platform and connected to Securonix security operations workflows, the new capabilities help teams generate role-specific intelligence, validate emerging threats against historical telemetry, and deliver explainable findings for analysts, SOC leaders, and executives.
May 8th, 2026Source

Snyk integrates Claude to advance AI-native application security
Snyk has announced it is leveraging Anthropic's Claude models to advance software security. Snyk has integrated Claude into the Snyk AI Security Platform, enabling automated vulnerability discovery, prioritization, and developer-ready fixes across code, dependencies, containers, and AI-generated artifacts.
May 8th, 2026Source

Transilience AI unveils Security Operating System for cloud remediation
New platform replaces fragmented tool sprawl with an agent-powered, human-guided second brain, moving security posture from Detected to Eliminated.
May 8th, 2026Source

Trellix source code breach claimed by RansomHouse hackers
The attack on the Trellix source code repository disclosed last week has been claimed by the RansomHouse threat group, which leaked a small set of images as proof of the intrusion.
May 8th, 2026Source

Why More Analysts Won't Solve Your SOC's Alert Problem
Your security spend has roughly doubled in six years. Your time-to-investigate and respond hasn't moved. Your CFO is asking why the security headcount keeps growing while the metrics that matter to the business don't.
May 8th, 2026Source

Why organizations need to close the 'cybersecurity culture gap' [Q&A]
As AI agents become embedded across the enterprise, and cyber teams face record levels of burnout, security leaders are confronting an uncomfortable reality, that human error isn't going away it's becoming harder to control.
May 8th, 2026Source

Zara data breach exposed personal information of 197,000 people
Hackers who gained access to the databases of Spanish fast-fashion retailer Zara stole data belonging to more than 197,000 customers, according to data breach notification service Have I Been Pwned.
May 8th, 2026Source

Internet — Security Issues — May 7th, 2026

$250M crypto-robbing gang's dirty work guy sentenced to 6.5 years behind bars
The then-teen was told to break in and steal what the keyboard warriors couldn't
May 7th, 2026Source

A data centre fire in Almere disabled a university, a transport emergency system, and the assumption that physical infrastructure is someone else's problem
A data centre fire in Almere disabled a university, a transport emergency system, and the assumption that physical infrastructure is someone else's problem
May 7th, 2026Source

A student halted multiple Taiwan bullet trains by spoofing the rail network's emergency radio signals
Police say the 23-year-old decoded rail radio parameters and used handheld devices to trigger an emergency alarm
May 7th, 2026Source

Americans sentenced for running 'laptop farms' for North Korea
Two U.S. nationals were sentenced to 18 months in prison each for operating so-called laptop farms that helped North Korean IT workers fraudulently obtain remote employment at nearly 70 American companies.
May 7th, 2026Source

Attackers Could Exploit AI Vision Models Using Imperceptible Image Changes
Cisco's AI security researchers have analyzed ways to target vision-language models (VLMs) using pixel-level perturbation.
May 7th, 2026Source

Best VPN for Utah residents in 2026
How to keep your browsing private and still access the website once it's blocked in the Beehive State.
May 7th, 2026Source

Boost Security Raises $4 Million for SDLC Defense Platform
The company is expanding its platform's capabilities with the acquisition of SecureIQx and Korbit.ai.
May 7th, 2026Source

Cisco Patches High-Severity Vulnerabilities in Enterprise Products
Successful exploitation of the flaws could lead to code execution, server-side request forgery attacks, and denial-of-service conditions.
May 7th, 2026Source

Claude AI Guided Hackers Toward OT Assets During Water Utility Intrusion
Dragos has published a report describing how threat actors used Claude AI in an attack on a water and drainage utility in Mexico.
May 7th, 2026Source

Claude Code OAuth Tokens Can Be Stolen Through Stealthy MCP Hijacking
Mitiga researchers say attackers can silently redirect Claude Code MCP traffic, intercept OAuth tokens, and maintain persistent access to connected SaaS platforms.
May 7th, 2026Source

College student hacks Taiwan high-speed rail line with software defined radios, stopping four trains — 19 years without crypto key rotation ends in predictable result as hacker sails through 7 layers of protection
Hacking an open barn door doesn't take effort, but it can be done responsibly.
May 7th, 2026Source

Crypto gang member gets 6.5 years for role in $230 million heist
A 20-year-old California man was sentenced to 78 months in prison for serving as a home invader and money launderer in a criminal ring that stole over $250 million in cryptocurrency.
May 7th, 2026Source

ESET Home Security Premium review: Simple protection with a complex heart
Power users will appreciate the app's granular settings.
May 7th, 2026Source

Fake Claude AI website delivers new 'Beagle' Windows malware
A fake version for the Claude AI website offers a malicious Claude-Pro Relay download that pushes a previously undocumented backdoor for Windows named Beagle.
May 7th, 2026Source

Gemini CLI Vulnerability Could Have Led to Code Execution, Supply Chain Attack
Attackers could inject prompts into a GitHub issue and take over the AI agent designed to automatically triage the issue.
May 7th, 2026Source

How Anthropic's Mythos has rewritten Firefox's approach to cybersecurity
When Anthropic unveiled its new Mythos model in April, it also delivered a stern warning to anyone developing software. The model was so powerful at sniffing out software vulnerabilities, the lab claimed, that it had discovered thousands of high-severity bugs that would need to be fixed before it could be made public.
May 7th, 2026Source

Hungarian cops cuff suspected swatter after two-year FBI probe
20-year-old fessed up after investigators found video of crime in progress
May 7th, 2026Source

Ivanti warns of new EPMM flaw exploited in zero-day attacks
Ivanti warned customers today to patch a high-severity remote code execution vulnerability in Endpoint Manager Mobile (EPMM) exploited in zero-day attacks.
May 7th, 2026Source

Operation Fake Mustache: Kids Bypass UK's Digital Age Barriers
Kids used to draw on their faces for fun. Now, they're doing it so they can play Roblox.
May 7th, 2026Source

Palo Alto Networks firewall zero-day exploited for nearly a month
Palo Alto Networks warned customers that suspected state-sponsored hackers have been exploiting a critical-severity PAN-OS firewall zero-day vulnerability for nearly a month.
May 7th, 2026Source

Palo Alto Zero-Day Exploited in Campaign Bearing Hallmarks of Chinese State Hacking
The cybersecurity firm has not explicitly accused China of being behind the attack, but the evidence suggests it was.
May 7th, 2026Source

Police arrest SMS blaster crew that sent malicious messages to thousands across Toronto
Police have arrested and brought 44 charges against three men for allegedly operating an SMS blaster in downtown Toronto. The scheme, which began in November 2025, is the "first known instance" of an SMS blaster operating in Canada, according to the police report.
May 7th, 2026Source

Security Lost The Speed War: Context Is How We Win
AI-Driven Attacks Compress Breakout Times, Forcing Defenders to Rely on Context Now
May 7th, 2026Source or Source or Source or Source

State-backed hackers hammer Palo Alto firewall zero-day before patch lands
Internet-facing PAN-OS firewalls are once again doing impressions of initial access brokers
May 7th, 2026Source

The Browser Is Breaking Your DLP: How Data Slips Past Modern Controls
Preventing sensitive data loss has historically been treated as an endpoint or network problem. Deploy an agent, inspect files, monitor traffic, and you have coverage—or so you think.
May 7th, 2026Source

The largest education data breach in history was not an attack on a school. It was an attack on a vendor.
ShinyHunters breached Instructure's Canvas learning management system, claiming 3.65 terabytes of data from 275 million users across 9,000 institutions worldwide, including private messages between students and teachers. Forty-four Dutch universities and schools are confirmed affected, and the breach, the second at Instructure in eight months, exposes the structural risk of vendor concentration in education technology.
May 7th, 2026Source

The network password was a key plot point in one of the most famous movies of all time
Fortunately, it was a legit contractor who guessed it
May 7th, 2026Source

Vendor Says Daemon Tools Supply Chain Attack Contained
The software developer has identified the impacted systems, removed potentially compromised files, and validated installation packages.
May 7th, 2026Source

What really happens to leaked credentials?
We all know that cybercriminals are keen to steal login credentials as a path to carrying out more destructive attacks in search of money or data. But what actually happens to passwords after they're stolen?
May 7th, 2026Source

World Password Day: Fix these 4 security mistakes before hackers find them
This holiday is worth attention, unlike most spun out of thin air.
May 7th, 2026Source

Internet — Security Issues — May 4th, 2026

5 Windows Defender settings I change ASAP on any new PC
All Windows PCs use Microsoft's antivirus by default.
May 4th, 2026Source

A Vulnerability in WHM cPanel and WP Squared Could Allow for Remote Code Execution
A vulnerability has been discovered in WHM, cPanel, and WP Squared that could allow for remote code execution. WHM, cPanel, and WP Squared are Linux-based web hosting control panels for server and website management. While WHM provides server-level control, cPanel provides administrator access to the website backend, webmail, and databases. Successful exploitation could allow unauthenticated remote attackers to bypass authentication and gain unauthorized administrative access to the affected systems, ultimately leading to remote code execution.
May 4th, 2026Source

Backdoored PyTorch Lightning package drops credential stealer
A malicious version of the PyTorch Lightning package published on the Python Package Index (PyPI) delivers a credential-stealing payload targeting browsers, environment files, and cloud services.
May 4th, 2026Source

Best free password managers 2026: Online security doesn't have to cost a thing
Shore up your defenses, stat.
May 4th, 2026Source

Canvas Breach May Put 275M Users, 9,000 Schools at Risk
Instructure confirms a Canvas breach involving user information and messages as hackers claim 275M users and nearly 9,000 schools were affected.
May 4th, 2026Source

CISA flags actively exploited 'Copy Fail' Linux kernel flaw enabling root takeover across major distros — unpatched systems may remain vulnerable to attack
Researchers released a working exploit before patches were ready.
May 4th, 2026Source or Source

Cloudflare Processes 10M+ Daily Insights with New Security Overview Dashboard
Cloudflare has launched a revamped Security Overview dashboard designed to consolidate fragmented security signals into a single interface that emphasizes actionable insights over raw data visibility. The update addresses a longstanding challenge in security operations, quickly identifying what requires immediate attention without navigating multiple tools or dashboards.
May 4th, 2026Source

Cybersecurity M&A Roundup: 33 Deals Announced in April 2026
Significant cybersecurity M&A deals announced by Airbus, Cyera, Fortra, Palo Alto Networks, Silverfort, and Socket.
May 4th, 2026Source

DigiCert Revokes Certificates After Support Portal Hack
Hackers delivered malware via a customer chat channel, infected an analyst's system, and accessed the internal support portal.
May 4th, 2026Source

Edtech Firm Instructure Discloses Data Breach Amid Hacker Leak Threats
Hackers disrupted services and stole names, email addresses, student ID numbers, and user messages.
May 4th, 2026Source

Europe Cuts Off Funding for Chinese Solar Inverters
Solar Energy Spurt Comes Freighted With Chinese Nation-State Hacking Worries
May 4th, 2026Source or Source

Europe's finance chiefs want Mythos access to defend their banks. Washington has so far said no.
An Anthropic AI model that can find zero-days in every major operating system has become a geopolitical and prudential question. The Eurogroup met in Brussels on Monday with no answer in hand.
May 4th, 2026Source

Exploitation of 'Copy Fail' Linux Vulnerability Begins
CISA has added the bug to its KEV list, and Microsoft has observed limited exploitation, mainly associated with PoC testing.
May 4th, 2026Source

Hospital websites are still leaking patient data to advertisers, four years after the warnings
A new Bloomberg-Feroot investigation finds that nine of the 10 largest US health companies are still loading advertising trackers on the very pages where patients log in and register. The story keeps repeating because nothing has stopped it.
May 4th, 2026Source

If the vote you rocked, your personal info can be grokked
If the vote you rocked, your personal info can be grokked
May 4th, 2026Source

Instructure data breach: ShinyHunters says it stole data and private messages from 275 million teachers and students
ShinyHunters has struck yet again.
May 4th, 2026Source

Mythos AI is a cybersecurity threat, but it doesn't rewrite the rules of the game
The cybersecurity community went on alert when Anthropic announced on April 7, 2026, that its latest and most capable general-purpose large language model, Claude Mythos Preview, had demonstrated remarkable—and unintended—capabilities. The artificial intelligence system was able to find and exploit software vulnerabilities—the most serious type of software bugs—at a rate not seen before.
May 4th, 2026Source

OpenAI Rolls Out Advanced Security for ChatGPT Accounts
Advanced Account Security provides stronger login methods, more secure account recovery, shorter sessions, and training exclusion.
May 4th, 2026Source

Over 40,000 Servers Compromised in Ongoing cPanel Exploitation
The attacks likely target CVE-2026-41940, a recently patched zero-day leading to administrative access.
May 4th, 2026Source

Progress warns of critical MOVEit Automation auth bypass flaw
Progress Software warned customers to patch a critical authentication bypass vulnerability in its MOVEit Automation enterprise-grade managed file transfer (MFT) application.
May 4th, 2026Source

Securing the IT and OT Boundary in Geospatial Enterprise Systems
Enterprise GIS platforms blend IT & OT, offering vital operational insight. To protect critical systems, secure the boundary with zero-trust principles and segmentation.
May 4th, 2026Source

They don't hack, they borrow: How fraudsters target credit unions
Threat actors across underground forums and chat groups are increasingly crafting structured fraud methods aimed at exploiting weaknesses in work processes of financial institutions. Rather than isolated or opportunistic scams, these discussions reflect an organized, process-driven approach that combines stolen identity data, social engineering, and knowledge of financial workflows.
May 4th, 2026Source

Think online ads are harmless? They could be revealing your private life, say researchers
A new study has uncovered a significant and largely invisible privacy risk in the online advertising ecosystem: the ads you see may be enough to reveal sensitive personal information.
May 4th, 2026Source

Trellix discloses data breach after source code repository hack
Cybersecurity firm Trellix disclosed a data breach after attackers gained access to "a portion" of its source code repository.
May 4th, 2026Source

Trellix Source Code Repository Breached
The cybersecurity firm's investigation has not found any impact on its source code release or distribution process.
May 4th, 2026Source

Utah just passed the first US law targeting VPN use for age verification
A new Utah law assumes websites can detect VPNs and find your real location. They can't.
May 4th, 2026Source

Internet — Security Issues — April 27th, 2026

Anthropic's magic code-sniffer: More Swiss cheese than cheddar, for now
AI vuln-hunter finds what humans taught it to find. Funny that
April 27th, 2026Source

Best antivirus for Windows PC in 2026: 7 apps to keep your PC safe
You need more than just prayer and luck—choose from our top antivirus software picks to stay safe.
April 27th, 2026Source

Bitdefender Total Security review: Great, easy to use protection
Not all of this security suite's features are useful, though.
April 27th, 2026Source

Burglar alarm biz burgled: ADT confirms cyber intrusion after ShinyHunters extortion attempt
Security giant says attackers grabbed 'limited set' of data. Crooks claim 10 million records
April 27th, 2026Source

China blocks Meta's $2 billion Manus deal over national security concerns
China is tightening its grip on homegrown AI tech
April 27th, 2026Source

Critical infrastructure giant Itron says it was hacked
American energy technology company Itron has confirmed it was hit by a cyberattack in mid-April and that hackers had gained access to some of its systems.
April 27th, 2026Source

Cybersec is a thankless job: expanding workload and shrinking pay packet
Global recruitment giant says 71% of human firewalls saw wages stagnate last year as threats and responsibilities grew
April 27th, 2026Source

Energy and Water Management Firm Itron Hacked
Itron, which serves utilities and cities around the world, discovered unauthorized access to its systems on April 13.
April 27th, 2026Source

FTC: Americans lost over $2.1 billion to social media scams in 2025
The U.S. Federal Trade Commission (FTC) warned of a massive increase in losses from social media scams since 2020, exceeding $2.1 billion in 2025.
April 27th, 2026Source

Home Security Firm ADT Breach: 5.5M Customers' Data Exposed
Prolific ShinyHunters Extortion Group Made 'Pay or Leak' Threat to Victim
April 27th, 2026Source or Source or Source

Incomplete Windows Patch Opens Door to Zero-Click Attacks
The initial vulnerability was exploited by Russia-linked APT28 in attacks against Ukraine and EU countries.
April 27th, 2026Source

Instagram Adds Artificial Intelligence Video Tools to Its Edits App
Instagram is introducing a new artificial intelligence video generation tool inside its standalone Edits application. It is designed this feature to help creators build video clips from scratch without needing to record original footage with a camera. Users across the United States can now simply type out a detailed text description or upload existing photos and videos to generate custom media directly on their mobile phones.
April 27th, 2026Source

Is Adult Friend Finder safe to use? What a cybersecurity expert says.
To better understand the risks of using AdultFriendFinder, we consulted an expert from Kaspersky.
April 27th, 2026Source

Is Your IAM Ready for AI?
The rapid evolution of Artificial Intelligence has created a dual-edged sword for IT and security leaders. While AI agents offer unprecedented opportunities for operational efficiency, they also introduce sophisticated threats and complex identity management challenges.
April 27th, 2026Source or Source or Source

Malicious AI Prompt Injection Attacks Increasing, but Sophistication Still Low: Google
The tech giant found that many indirect prompt injection attempts are harmless, but some malicious exploits have also been identified.
April 27th, 2026Source

Medtronic confirms breach after hackers claim 9 million records theft
Medical device giant Medtronic disclosed last week that hackers breached its network and accessed data in "certain corporate IT systems."
April 27th, 2026Source

Money launderer linked to $230M crypto heist gets 70 months in prison
​22-year-old Evan Tangeman of Newport Beach, California, was sentenced to 70 months in prison for laundering funds stolen in a massive $230 million cryptocurrency heist.
April 27th, 2026Source

OpenSSH Flaw Allowing Full Root Shell Access Lurked for 15 Years
A code reuse issue enabled comma characters in certificate principals to be interpreted as list separators.
April 27th, 2026Source

Security Readiness Checklist: From AI Threats to Software Supply Chain Defense
Detect APTs with behavioral analytics and log correlation, building baselines and linking events to turn weak signals into actionable security detections.
April 27th, 2026Source

Streamline User Journeys with Verified Email via Credential Manager
In the modern digital landscape, the first encounter a user has with an app is often the most critical. Yet, for decades, this initial interaction has been hindered by the friction of traditional verification methods. Today, we're excited to announce a new verified email credential issued by Google, which developers can now retrieve directly from Android's Credential Manager Digital Credential API.
April 27th, 2026Source

Sync.com review: Superb online device sync and backup
This online storage service syncs your files across multiple devices but also allows you to back up to its single device vault.
April 27th, 2026Source

The FBI Says Warrant-Proof Encryption Is A Public Safety Problem - Here's What It Means
The FBI is vocally upset that tech companies won't make it easier to seize your private messages and data. That's made clear in a blog post from the agency decrying what it refers to as "warrant-proof encryption." You may know this technology better as end-to-end encryption, or E2EE. It's the reason your texts on iMessage or Google Messages can't be stolen by attackers if Apple or Google get hacked. It's a tool that allows journalists to report on those in power while keeping sources protected, and it allows political dissidents living under oppressive regimes to organize.
April 27th, 2026Source

UNC6692 Uses Email Bombing, Social Engineering to Deploy 'Snow' Malware
The threat actor infected victims with the Snow malware family -- Snowbelt, Snowglaze, and Snowbasin -- for persistent access.
April 27th, 2026Source

US Launches Sweeping Crackdown on Southeast Asia Cyberscams and Sanctions Cambodian Senator
US conducts sweeping crackdown on Southeast Asian cyberscam operations as part of what officials say is a "new theater of war".
April 27th, 2026Source

Internet — Security Issues — April 26th, 2026

American utility firm Itron discloses breach of internal IT network
Utility technology company Itron, Inc. has disclosed that an unauthorized third party accessed some of its internal systems during a cyberattack.
April 24th, 2026Source

Chernobyl virus turned 27 today, and it could brick your PC in ways modern malware can't by overwriting BIOS firmware
CIH was one of the first viruses capable of destroying hardware by overwriting BIOS firmware.
April 24th, 2026Source

Internet — Security Issues — April 24th, 2026

Bitwarden NPM Package Hit in Supply Chain Attack
Tied to a fresh Checkmarx supply chain attack claimed by TeamPCP, the incident references the Shai-Hulud worm.
April 24th, 2026Source

Chrome 147 update fixes two high-risk security vulnerabilities
The latest Chrome 147 security update patches 19 security vulnerabilities, two of which are high risk and one medium risk.
April 24th, 2026Source

Copperhelm Raises $7 Million for Agentic Cloud Security Platform
The Israel-based company, which just emerged from stealth mode, was founded by cloud and security experts from RSA, McAfee, and Unity.
April 24th, 2026Source

DORA and operational resilience: Credential management as a financial risk control
When a threat actor walks into your network using a legitimate username and password, which control stops them?
April 24th, 2026Source

Flurry of Supply-Chain Software Library Attacks
Continuous Integration Has Its Downsides
April 24th, 2026Source or Source

Health Records of 500,000 UK Biobank Volunteers Listed Online in China
Health data from 500,000 UK Biobank participants was found listed for sale online in China, raising concerns over research access misuse and data security.
April 24th, 2026Source

How a cavalcade of blunders gave unauthorized users access to Claude Mythos — restricted model accessed by third parties, thanks to knowledge from data breach
It's hard for AI tools to prevent social engineering and third-party hacks.
April 24th, 2026Source

In Other News: Unauthorized Mythos Access, Plankey CISA Nomination Ends, New Display Security Device
Other noteworthy stories that might have slipped under the radar: Supreme Court hacker sentenced, Lovable exposed user data, Google expands enterprise security.
April 24th, 2026Source

Locked Shields 2026: 41 Nations Strengthen Cyber Resilience in World's Biggest Exercise
Locked Shields has grown significantly over the past 16 years, with only four nations participating in the first edition.
April 24th, 2026Source

McAfee Total Protection review: Top security undermined by a major feature
The interface could use a touch more refinement, too.
April 24th, 2026Source

Microsoft beefs up Remote Desktop security with ... hard-to-read messages
Ailing scaling blamed by Windows-maker for unreadable missives
April 24th, 2026Source

New BlackFile extortion group linked to surge of vishing attacks
A new financially motivated hacking group tracked as BlackFile has been linked to a wave of data theft and extortion attacks against retail and hospitality organizations since February 2026.
April 24th, 2026Source

Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks
Over 10,000 Zimbra Collaboration Suite (ZCS) instances exposed online are vulnerable to ongoing attacks exploiting a cross-site scripting (XSS) security flaw, according to nonprofit security organization Shadowserver.
April 24th, 2026Source

Pre-Stuxnet Sabotage Malware 'Fast16' Linked to US-Iran Cyber Tensions
It targeted high-precision calculation software to tamper with results and packed a self-propagation mechanism.
April 24th, 2026Source

Ransomware groups are using "post-quantum" hype to intimidate victims
Quantum-resistant ransomware may be more marketing stunt than cryptographic leap
April 24th, 2026Source

Trump Administration Vows Crackdown on Chinese Companies 'Exploiting' AI Models Made in US
The Trump administration is vowing to crack down on foreign tech companies' exploitation of U.S. artificial intelligence models.
April 24th, 2026Source

US Federal Agency's Cisco Firewall Infected With 'Firestarter' Backdoor
The malware provides remote access and control of infected devices and maintains post-patching persistence.
April 24th, 2026Source

Vulnerabilities Patched in CrowdStrike, Tenable Products
CrowdStrike has fixed a critical LogScale vulnerability, while Tenable addressed a high-severity Nessus flaw.
April 24th, 2026Source

Weak IoT security could make EV chargers vulnerable to mass shutdowns
Predictable device IDs and weak authentication could let attackers knock public charging networks offline
April 24th, 2026Source

What Is Cloud Security? A 2026 Guide
Learn what cloud security is, why it matters in 2026, and the best practices for protecting data, identities, workloads, and cloud infrastructure.
April 24th, 2026Source

White House Warns of AI Model 'Extraction' Campaigns
Agencies Urged to Track and Disrupt Coordinated AI Extraction Campaigns
April 24th, 2026Source or Source or Source or Source

Why Cybersecurity Must Rethink Defense in the Age of Autonomous Agents
From autonomous code generation to decision-making systems that initiate actions without human intervention, the industry is entering a new phase.
April 24th, 2026Source

Internet — Security Issues — April 23rd, 2026

Age checks could turn internet into an ID checkpoint, complains Proton CEO
Push to protect minors risks hitting everyone online
April 23rd, 2026Source

AI Can Autonomously Hack Cloud Systems With Minimal Oversight: Researchers
Palo Alto Networks has developed Zealot, a multi-agent penetration testing PoC capable of reconnaissance, exploitation, and exfiltration.
April 23rd, 2026Source

Another customer of troubled startup Delve suffered a big security incident
The story of embattled compliance startup Delve keeps hitting twists and turns.
April 23rd, 2026Source

Apple fixes iPhone bug that let FBI retrieve deleted Signal messages(CVE-2026-28950)
Apple has rolled out security updates for iPhones and iPads that fix CVE-2026-28950, a logging issue in Notification Services that made devices unexpectedly retain notifications marked for deletion.
April 23rd, 2026Source

Apple Patches iOS Flaw Allowing Recovery of Deleted Chats
Apple rolled out the security patches for dozens of iPhone and iPad models and generations.
April 23rd, 2026Source

Apple Releases iOS 26.4.2 To Fix A Critical Settings Security Flaw
Apple released iOS 26.4.2 today for iPhone users in the United States and globally. This update arrives primarily to address lingering software bugs and close a significant security vulnerability. Minor point releases often focus purely on background optimization, but this specific download carries serious weight due to the nature of the patched exploit. You should install the update promptly to protect your personal data.
April 23rd, 2026Source

Aqua Compass MCP server enables real-time investigation and containment of runtime threats
Aqua Security has announced Aqua Compass, a Model Context Protocol (MCP) server that enables agentic investigation, containment and remediation of runtime incidents, and new runtime risk dashboards. These capabilities help security teams move beyond identifying risk and focus on containing threats in running applications.
April 23rd, 2026Source

Attackers adapt phishing tactics to avoid detection
As scanners become more effective at identifying newly created domains, cybercriminals are adapting their phishing tactics by relying more on familiar, reputable domains to avoid detection.
April 23rd, 2026Source

Chinese Cyersecurity Firm's AI Hacking Claims Draw Comparisons to Claude Mythos
360 Digital Security Group claims to have uncovered 1,000 vulnerabilities using AI, including at the Tianfu Cup hacking contest.
April 23rd, 2026Source

CISA orders feds to patch BlueHammer flaw exploited as zero-day
CISA has given U.S. government agencies two weeks to secure their Windows systems against a Microsoft Defender privilege escalation vulnerability that has been exploited in zero-day attacks.
April 23rd, 2026Source

Cloudsmith Raises $72 Million in Series C Funding
The company will use the investment to accelerate product development and grow go-to-market efforts.
April 23rd, 2026Source

Cosmetics giant Rituals discloses data breach affecting customers
Dutch cosmetics giant Rituals disclosed a data breach after attackers stole the personal information of an undisclosed number of customers from its "My Rituals" membership database.
April 23rd, 2026Source

Cryptohack Roundup: US-Sanctioned Grinex Hacked
Also: Updates in KelpDAO, Drift, Hyperbridge Hacks
April 23rd, 2026Source or Source

Device code phishing targets Microsoft 365 and Entra ID
New data from Barracuda Networks shows device code phishing is on the rise with seven million attacks detected in just four weeks. The EvilTokens phishing kit is driving this surge, targeting Microsoft 365 and Entra ID environments.
April 23rd, 2026Source

Google brings instant email verification to Android, no OTP needed
Google has introduced cryptographically verified email credentials for Android through the Credential Manager API. This API aligns with the W3C Digital Credential API standard. It provides a unified way for apps to request and retrieve user credentials for authentication and authorization.
April 23rd, 2026Source

GopherWhisper APT group hides command and control traffic in Slack and Discord
Attackers continue to lean on everyday collaboration platforms to hide command and control traffic inside normal enterprise noise. A newly identified China-aligned APT group pushes that trend further, running its operations through Slack workspaces, Discord servers, Outlook drafts, and the file.io sharing service.
April 23rd, 2026Source

Hacker with a special interest in breaching sports institutions ends behind bars
French police have arrested a suspected hacker linked to a series of data breaches affecting organizations in the country.
April 23rd, 2026Source

How McAfee Helped Me Tidy Up Decades of Digital Detritus
McAfee's online account cleanup tool makes it easy to eliminate accounts you're not using anymore -- even accounts you've forgotten exist.
April 23rd, 2026Source

Hybrid clouds have two attack surfaces and you're not paying enough attention to either
Windows Admin Center flaws mean on-prem can attack cloud, and vice-versa
April 23rd, 2026Source

If cyber espionage via HDMI worries you, NCSC built a device to stop it
A new cybersecurity device developed by the National Cyber Security Centre (NCSC) should be a helpful solution for protecting governments and businesses from malicious activity carried through display connections.
April 23rd, 2026Source

If malware via monitor cables is a matter of national security, this might be the gadget for you
Orgs can now buy UK cyber agency engineered commercial gadget, but details are slim
April 23rd, 2026Source

IP Fabric MCP server adds governance and control to enterprise AIOps workflows
IP Fabric has launched a new Model Context Protocol (MCP) server that removes key barriers to enterprise AIOps adoption, combining secure in-platform deployment with a built-in prompt library for network operations.
April 23rd, 2026Source

Is your Node.js project really secure?
JavaScript and Node.js teams do not lack security tools. What they still lack is a dependency security workflow that developers will actually use before release.
April 23rd, 2026Source

Luxury Cosmetics Giant Rituals Discloses Data Breach
The company is notifying My Rituals members that hackers downloaded part of their data, including names and addresses.
April 23rd, 2026Source

Master Claude AI Prompting: 4-Block Formula for Better Outputs
Claude's advanced AI capabilities can be unlocked with the right approach to prompt design, as demonstrated by AI Master. One key strategy highlighted is the Four-Block Formula, which organizes prompts into instructions, context, task and output format. This method ensures clarity and focus, allowing Claude to deliver more accurate and tailored responses. By addressing common pitfalls such as vague inputs or undefined context, users can significantly enhance the quality of their interactions with the model.
April 23rd, 2026Source

Medical data of 500k Biobank volunteers listed for sale on Alibaba, UK minister reveals
World's largest biomedical dataset lifted and shifted on Chinese mega marketplace
April 23rd, 2026Source

Microsoft launches hosted agents in Foundry with secure sandboxes
Microsoft has launched the preview of hosted agents within the Foundry Agent Service, to streamline the lifecycle of AI agents.
April 23rd, 2026Source

Microsoft taps Anthropic's Mythos to strengthen secure software development
The move is a clear signal that powerful AI models are making inroads into real software security work.
April 23rd, 2026Source

New Checkmarx supply-chain breach affects KICS analysis tool
Hackers have compromised Docker images, VSCode and Open VSX extensions for the Checkmarx KICS analysis tool to harvest sensitive data from developer environments.
April 23rd, 2026Source

New GopherWhisper APT group abuses Outlook, Slack, Discord for comms
A previously undocumented state-backed threat actor named GopherWhisper is using a Go-based custom toolkit and legitimate services like Microsoft 365 Outlook, Slack, and Discord in attacks against government entities.
April 23rd, 2026Source

Norton 360 Deluxe review: Excellent value and strong protection
Norton 360 Deluxe is a great product overall, but mid-range and budget PCs can see a dip in performance.
April 23rd, 2026Source

Offer customers passkeys by default, UK's NCSC tells enterprises
Developers of enterprise apps and websites will need to get to grips with passkeys: The UK's National Cyber Security Center the agency recommends them for their resistance to phishing and credential reuse, and warns that passwords are inherently vulnerable.
April 23rd, 2026Source

One Tech Tip: Logging on at a cafe? Privacy and security guidelines for remote workers
For digital nomads, logging on to work from a cafe, co-working space, hotel lobby or airport lounge is a way of life.
April 23rd, 2026Source

OpenAI tackles a bad habit people have when interacting with AI
Since people tend to paste personal data into AI tools such as ChatGPT, OpenAI has released Privacy Filter, an open-weight model designed to detect and redact personally identifiable information (PII) in text. The model is available under the Apache 2.0 license on Hugging Face and GitHub.
April 23rd, 2026Source

Pass the key, passwords have passed their sell-by date
NCSC passes judgment: passkeys pass muster, passwords fail
April 23rd, 2026Source

Recent Microsoft Defender Vulnerability Exploited as Zero-Day
The flaw allows attackers to access the SAM database, extract NTLM hashes, and gain System privileges.
April 23rd, 2026Source

Regular Password Resets Aren't as Safe as You Think
Research from Forrester estimates that every password reset costs around $70. As one of the most common helpdesk requests, many organizations have introduced self-service password reset (SSPR) tools to reduce the load. However, despite these tools, helpdesk teams still handle a significant number of password resets, whether it's supporting SSPR enrollment or dealing with edge cases.
April 23rd, 2026Source

Rilian Raises $17.5 Million for AI-Native Security Orchestration
The company will hire new talent and expand operations across the US and other allied countries.
April 23rd, 2026Source

Surveillance vendors caught abusing access to telcos to track people's phone locations, researchers say
Security researchers have uncovered two separate spying campaigns that are abusing well-known weaknesses in the global telecoms infrastructure to track people's locations. The researchers say these two campaigns are likely a small snapshot of what they believe to be widespread exploitation of surveillance vendors seeking access to global phone networks.
April 23rd, 2026Source

The Behavioral Shift: Why Trusted Relationships Are the Newest Attack Surface
New analysis from Abnormal AI reveals how attackers have abandoned technical exploits to weaponize routine workflows and internal trust.
April 23rd, 2026Source

UK spy agency releases malware-blocking gadget for HDMI and DisplayPort cables — SilentGlass blocks malicious traffic traveling between display and computer
This device is designed to protect against advanced cyberattacks that utilize video signals from the target computer.
April 23rd, 2026Source or Source

UK Cyber Spooks: 'Is Your Computer Monitor Spying On You?'
NCSC Designs 'SilentGlass' Gadget to Protect Overlooked Computer Peripheral
April 23rd, 2026Source or Source or Source or Source

Unwary Chinese Hackers Hardcoded Credentials into Backdoors
Eset Researchers Discover Trove of Go-Based Malware
April 23rd, 2026Source or Source or Source or Source

Using the password 'admin123' wasn't as bad as sharing it on Slack
Keeping it simple for the developers can lead to very complex headaches later
April 23rd, 2026Source

Vercel says some of its customers' data was stolen prior to its recent hack
App and website hosting giant Vercel on Thursday said hackers had accessed some of its customers' data before the company discovered its recent data breach, suggesting that this incident may have broader security implications than initially known.
April 23rd, 2026Source

Internet — Security Issues — April 21st, 2026

$290 Million Kelp DAO Crypto Heist Blamed on North Korea
The hackers targeted LayerZero's DVN, compromising certain RPCs and DDoSing others to trigger failover to the poisoned infrastructure.
April 21st, 2026Source

Adaptavist Group breach spawns imposter emails as ransomware crew claims mega-haul
Fake emails already doing the rounds as ransomware crew boasts about what it allegedly stole
April 21st, 2026Source

AI-assisted intruders pwned Vercel via OAuth abuse and a pilfered employee account
CEO suspects silicon sidekick behind 'surprising velocity' breach - cyber crims shop stolen data for $2M
April 21st, 2026Source

Actively exploited Apache ActiveMQ flaw impacts 6,400 servers
Nonprofit security organization Shadowserver found that over 6,400 Apache ActiveMQ servers exposed online are vulnerable to ongoing attacks exploiting a high-severity code injection vulnerability.
April 21st, 2026Source

CISA flags new SD-WAN flaw as actively exploited in attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given government agencies four days to secure their systems against another Catalyst SD-WAN Manager vulnerability it flagged as actively exploited in attacks.
April 21st, 2026Source

Contrary to popular superstition, AES 128 is just fine in a post-quantum world
A stubborn misconception is hampering the already hard work of quantum readiness.
April 21st, 2026Source

Crook claims to leak 'video surveillance footage' of companies
Mexican IT services firm admits it was hacked, but says client operations weren't affected
April 21st, 2026Source

Data Breaches at Healthcare Organizations in Illinois and Texas Affect 600,000Data breaches were disclosed by Southern Illinois Dermatology, Saint Anthony Hospital, and North Texas Behavioral Health Authority.
The devices would reportedly record video and collect the biometric data of migrants and protesters.
April 21st, 2026Source

Even trusted apps can spread PC malware now
You can do everything properly and still get rolled by life.
April 21st, 2026Source

Former ransomware negotiator pleads guilty to BlackCat attacks
41-year-old Angelo Martino, a former employee of cybersecurity incident response company DigitalMint, has pleaded guilty to targeting U.S. companies in BlackCat (ALPHV) ransomware attacks in 2023.
April 21st, 2026Source

Homeland Security reportedly wants to develop smart glasses for ICE
The devices would reportedly record video and collect the biometric data of migrants and protesters.
April 21st, 2026Source

Met police trials snoop tech platform in push to cuff more London shoplifters
No facial recognition privacy intrusions either! Well, maybe a little
April 21st, 2026Source

NGate Android malware uses HandyPay NFC app to steal card data
A new variant of the NGate malware that steals NFC payment data is targeting Android users by hiding in a trojanized version of HandyPay, a legitimate mobile payments processing tool.
April 21st, 2026Source

Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities
CISA expanded the KEV catalog with eight flaws, but five of them have been flagged as exploited before.
April 21st, 2026Source

Panasonic creates device-locked QR codes to speed facial biometric capture
Admins are tired of taking photos, so this enables secure on-site unattended enrolment
April 21st, 2026Source

Progress Patches Multiple Vulnerabilities in MOVEit WAF, LoadMaster
The security defects could be exploited for remote code execution, OS command injection, and WAF detection bypass.
April 21st, 2026Source

Stopping Fraud at Each Stage of the Customer Journey Without Adding Friction
Fraud prevention and user experience have long been treated as opposing forces: tighten security, and you risk alienating legitimate customers; loosen it, and you open the door to account takeovers, synthetic identities, and payment fraud. But modern threat intelligence platforms are dismantling that false choice.
April 21st, 2026Source

Third US Security Expert Admits Helping Ransomware Gang
Angelo Martino of Florida has pleaded guilty to collaborating with the BlackCat cybercrime group while working as a ransomware negotiator.
April 21st, 2026Source

Unpatched Microsoft Defender Flaw Lets Hackers Gain Admin Access on Windows
The exploit takes advantage of the way Defender handles high‑privilege tasks.
April 21st, 2026Source

Unsecured Perforce Servers Expose Sensitive Data From Major Orgs
Things are improving, but a researcher has still identified over 1,500 Perforce P4 instances allowing attackers to read files on the server.
April 21st, 2026Source

UK probes Telegram, teen chat sites over CSAM sharing concerns
Ofcom, the United Kingdom's independent communications regulator, has launched an investigation into Telegram based on evidence suggesting it's being used to share child sexual abuse material (CSAM).
April 21st, 2026Source

Why Anthropic is Restricting Its New Mythos AI Model to Tech Giants
Anthropic's Mythos AI model represents a significant development in artificial intelligence, designed to handle complex reasoning, autonomous coding and extended task execution. A notable aspect of this system, as discussed by Dave Plummer in the video below, is its capacity to identify software vulnerabilities with remarkable accuracy, including intricate scenarios like privilege escalation and operating system escapes. This capability underscores the dual-use nature of the model, requiring careful consideration to balance its benefits for cybersecurity with the risks of potential misuse.
April 21st, 2026Source

With US spy laws set to expire, lawmakers are split over protecting Americans from warrantless surveillance
A long-running law that has allowed U.S. intelligence agencies to collect and analyze huge amounts of overseas communications without needing search warrants is set to expire April 30, and lawmakers are in a deadlock over whether to allow the Trump administration to extend it without any changes.
April 21st, 2026Source

Yet another ex-ransomware negotiator admits turning rogue after payoff from crimelords
Plus: Court papers reveal nonprofit paid a ransom worth nearly $26.8 million
April 21st, 2026Source

You don't need extra antivirus on Windows 11, Microsoft officially says
In a blog post, Microsoft says Defender is enough for most Windows 11 users. No extra antivirus needed if you keep defaults enabled and update regularly.
April 21st, 2026Source or Source

Internet — Security Issues — April 17th, 2026

Another DraftKings Hacker Sentenced to Prison
Kamerin Stokes sold stolen credentials through an online marketplace even after pleading guilty to his role in the DraftKings attack.
April 17th, 2026Source

CISA tells feds to patch 13-year-old Apache ActiveMQ bug under active attack
Bug hiding in plain sight for over a decade lands on KEV list
April 17th, 2026Source

Clothing Retailer Patches Website Flaw Exposing Customer Data
A clothing retailer patched a website flaw that exposed customer data via order links, highlighting risks associated with predictable URL structures.
April 17th, 2026Source

CoChat Launches AI Collaboration Platform to Combat Shadow AI
CoChat is fundamentally an AI collaboration platform designed for teamwork and to bring visibility and governance into enterprise AI shadows.
April 17th, 2026Source

Critical infrastructure resilience and escalated threat navigation initiative
As geopolitical instability accelerates cyber threats to critical infrastructure (CI), the Canadian Centre for Cyber Security (Cyber Centre) has designed the Critical Infrastructure Resilience and Escalated Threat Navigation (CIREN) initiative to drive immediate preparedness across organizations to reinforce and protect Canada's sovereignty and essential services.
April 17th, 2026Source

Cursor AI Vulnerability Exposed Developer Devices
An indirect prompt injection could be chained with a sandbox bypass and Cursor's remote tunnel feature for shell access to machines.
April 17th, 2026Source

Cyber Centre launches new initiative to help Canada's critical infrastructure prepare for severe cyber threats
Today, the Canadian Centre for Cyber Security (the Cyber Centre) launched the Critical Infrastructure Resilience and Escalated Threat Navigation (CIREN) initiative. CIREN helps critical infrastructure (CI) organizations understand, prepare for and practice responding to severe cyber incidents. Its purpose is to help organizations maintain essential services during worst-case scenarios, including widespread and prolonged cyber disruptions.
April 17th, 2026Source

Europe Spurs Digital Sovereignty With $213M Cloud Contract
The European Union Is Cutting Ties With US Tech Companies
April 17th, 2026Source or Source or Source or Source

GitLab 18.11 brings agentic AI to security fixes, CI pipelines, and delivery analytics
GitLab has released GitLab 18.11, expanding agentic AI across the entire software lifecycle with security remediation, pipeline configuration, and delivery analytics.
April 17th, 2026Source

Google wipes out 602 million scam ads with Gemini on duty
Google claims that its security teams work around the clock using its Gemini AI models to detect and stop harmful ads.
April 17th, 2026Source

Hackers are abusing unpatched Windows security flaws to hack into organizations
Hackers have broken into at least one organization using Windows vulnerabilities published online by a disgruntled security researcher over the last two weeks, according to a cybersecurity firm.
April 17th, 2026Source

In Other News: Satellite Cybersecurity Act, $90K Chrome Flaw, Teen Hacker Arrested
Other noteworthy stories that might have slipped under the radar: ShinyHunters targets Rockstar Games, ShowDoc vulnerability exploited in the wild, and EPA to boost cybersecurity budget to $19 million.
April 17th, 2026Source

ISMG Editors: Adapting to the Looming Mythos AI Onslaught
Also: NY State Regs Test Resilience versus Compliance, OT Security Nears Breaking Point
April 17th, 2026Source or Source or Source or Source

Lawmakers Gathered Quietly to Talk About AI. Angst and Fears of 'Destruction' Followed
Thursday's discussion comes as leaders on Capitol Hill grapple with the dizzying pace of global developments in which technology plays a central role.
April 17th, 2026Source

Liongard upgrades LiongardIQ with AI access, live asset data, and deeper discovery
Liongard has announced the expansion of LiongardIQ with new capabilities spanning programmatic AI integration, conversational querying, enhanced network discovery, and deeper identity mapping, extending its system of authority for asset intelligence across the full IT stack.
April 17th, 2026Source

Maximizing Mythos Returns Requires AI Cybersecurity Pipeline
Optimizing Value and Utility Hinges on AI Scaffolding, Says Aisle's Ondrej Vlcek
April 17th, 2026Source or Source or Source or Source

Moving Toward Identity Intelligence in Fraud Detection
Point Predictive's Frank McKenna on Detecting Hidden Signals in Synthetic IDs
April 17th, 2026Source or Source or Source or Source

Mozilla challenges enterprise AI providers with Thunderbolt, open-source AI client under your control
For organizations that want to keep company data within their own systems and have more control over how AI is deployed, Mozilla is offering an alternative to externally hosted AI services with Thunderbolt, an open-source AI client designed for self-hosted use.
April 17th, 2026Source

New Phishing Attack Turns n8n Into On-Demand Malware Machine
Hackers are abusing n8n workflows to deliver malware and evade detection, according to Cisco Talos, using trusted automation to bypass security defenses.
April 17th, 2026Source

Open source malware sees a 21 percent increase
A new report from Sonatype identifies 21,764 malicious open source packages in the first quarter of the year, up 21 percent from the same period last year and bringing the total logged since 2017 to 1,346,867.
April 17th, 2026Source

Recent advances push Big Tech closer to the Q-Day danger zone
Here's which players are winning the race to transition to post-quantum crypto.
April 17th, 2026Source

Recent Apache ActiveMQ Vulnerability Exploited in the Wild
The remote code execution vulnerability tracked as CVE-2026-34197 came to light in early April.
April 17th, 2026Source

Rejected By Microsoft, 3 Defender Zero-Days Are Now Actively Exploited
A cyber security expert that goes by the name Nightmare-Eclipse attempted to disclose three zero day exploits to Microsoft, but the first attempt went so poorly, he elected to release it into the wild. That first exploit was dubbed "BlueHammer". Shortly following BlueHammer's release, two more zero day exploits of Windows Defender, dubbed "RedSun" and "UnDefend", were also released by Nightmare-Eclipse.
April 17th, 2026Source

Report: Google Chrome lacks a very important feature Microsoft Edge, Firefox, Brave have
Here's how Microsoft Edge, Mozilla Firefox and Brave protect you against browser fingerprinting, a security feature Google Chrome lacks.
April 17th, 2026Source

Researcher drops two more Microsoft Defender zero-days, all three now exploited in the wild
The security researcher who earlier this month published a proof-of-concept (PoC) exploit for a zero-day privilege escalation vulnerability in Microsoft Defender is back with two more.
April 17th, 2026Source

Researchers warn Microsoft Defender vulnerability is already being exploited
The "Red Sun" flaw can overwrite system files and grant elevated access through Defender's file handling behavior
April 17th, 2026Source

Stealing Your Data Via TotalRecall Reloaded Is A Feature, Not A Bug?
From The Author of TotalRecall Comes A Terrifying New Sequel
April 17th, 2026Source

Two North Korean IT Worker Scheme Facilitators Jailed in the US
Kejia Wang and Zhenxing Wang compromised the identities of dozens of US persons to help land jobs at over 100 companies.
April 17th, 2026Source

White House Chief of Staff to Meet With Anthropic CEO Over Its New AI Technology
A White House official said the administration is engaging with advanced AI labs about their models and the security of software.
April 17th, 2026Source

With US spy laws set to expire, lawmakers are split over protecting Americans from warrantless surveillance
A long-running law that has allowed U.S. intelligence agencies to collect and analyze huge amounts of overseas communications without needing search warrants is set to expire April 30, and lawmakers are in a deadlock over whether to allow the Trump administration to extend it without any changes.
April 17th, 2026Source

Windows Recall's 'Titanium Vault' Under Fire Again as Researcher Shows New Way to Steal Users' PC History
It's the same researcher who exposed Recall when it was first revealed.
April 17th, 2026Source

ZionSiphon Malware Targets ICS in Water Facilities
The malware is configured to operate on systems associated with Israeli water treatment and desalination plants.
April 17th, 2026Source

Internet — Security Issues — April 14th, 2026

5 Ways Zero Trust Maximizes Identity Security
Stolen credentials accounted for 22% of known initial access vectors in 2025. It's the most common way for attackers to breach a network, and once inside, excessive permissions and limited visibility often allow them to escalate unchecked.
April 14th, 2026Source

AI adoption is outpacing the safeguards around it
AI is becoming part of professional and private life, reaching mainstream adoption faster than the personal computer or the internet. These systems are tested in reasoning, safety, and real-world tasks, but the reliability of those measurements remains uncertain.
April 14th, 2026Source

Basic-Fit hack compromises data of up to 1 million members
Basic-Fit, a European gym chain, disclosed that hackers breached one of its internal systems, exposing members' personal data in several countries. The company operates more than 2,150 clubs in 12 countries under two brands, with more than 5.8 million members.
April 14th, 2026Source

Best Free Antivirus 2026: Keep Your Devices Safe With These Free Tools
Check out these free antivirus tools for great malware protection and extra layers of digital security.
April 14th, 2026Source

Binary Defense expands NightBeacon with threat-aligned Detection Coverage Index
Binary Defense has announced the launch of NightBeacon Detect, a new module within NightBeacon, the company's AI-driven SOC platform. The first capability released is Detection Coverage Index, a confidence-based view of how well an organization is covered against specific threat actors, their tactics, techniques, and sub-techniques, and how that coverage changes over time.
April 14th, 2026Source

Booking.com data breach: Customer reservation data exposed
"Unauthorized third parties may have been able to access certain booking information associated with your reservation," email alerts sent out by Booking.com over the weekend warn.
April 14th, 2026Source

Claroty advances CPS security with Visibility Orchestration in xDome
Claroty has revealed new Visibility Orchestration capabilities in its Saas offering Claroty xDome, transforming visibility from a vague concept into a quantifiable measurement that proves the value of a strong CPS protection program.
April 14th, 2026Source

DataVisor brings conversational AI agents to fraud and AML operations
DataVisor has announced Vera, a suite of conversational AI agents designed to combat financial crime. Vera enables institutions to manage risk using natural language, allowing teams to issue instructions that AI agents execute across the fraud and AML lifecycle. By reducing manual workflows, the platform supports a more efficient and adaptive operating model for modern financial crime prevention.
April 14th, 2026Source

DavMail 6.6.0 patches a regex flaw and advances its Microsoft Graph backend
Organizations that run DavMail to bridge standard mail clients to Microsoft Exchange or Office 365 received an update this week. Version 6.6.0 addresses a code-scanning alert tied to a regex vulnerability, adjusts OAuth redirect handling to match a recent Microsoft change, and ships fixes across IMAP, SMTP, CalDAV, and CardDAV subsystems.
April 14th, 2026Source

Europe's Largest Gym Chain Says Data Breach Impacts 1 Million Members
Basic-Fit has reported that hackers have stolen names, dates of birth, and even bank account details.
April 14th, 2026Source

'Mythos-Ready' Security: CSA Urges CISOs to Prepare for Accelerated AI Threats
CISOs face a shrinking window to prepare as AI models like Mythos collapse the gap between vulnerability discovery and exploitation, driving a new era of high-velocity cyberattacks.
April 14th, 2026Source

New Rowhammer Attacks on NVIDIA GPUs Enable Full System Takeover
Security researchers have demonstrated a new class of Rowhammer attacks targeting NVIDIA GPUs that can escalate from memory corruption to full system compromise, marking a significant shift in hardware-level security risks. Detailed in recent academic research and highlighted by Ars Technica, the attacks, known as GDDRHammer and GeForce/GeForge, exploit vulnerabilities in GDDR6 GPU memory to gain arbitrary read and write access, ultimately allowing attackers to take control of the host CPU and system memory.
April 14th, 2026Source

Nightclub Giant RCI Hospitality Reports Data Breach
The company said in an SEC filing that an IDOR vulnerability affecting RCI Internet Services exposed contractor data.
April 14th, 2026Source

No honor among thieves as 0APT threatens rival ransomware gang Krybit
Honey, the skids are fighting again
April 14th, 2026Source

Oligo enables real-time exploit detection and blocking at application runtime
Oligo Security has unveiled Runtime Exploit Blocking, a new capability that stops exploit attempts at the application layer in real time. By providing visibility into how applications execute and behave, Oligo identifies and blocks malicious activity at the point of execution, without killing containers or processes, or impacting the application.
April 14th, 2026Source

Only a third of cybersecurity professionals plan to stay in their current role
A new report finds that only 34 percent of cybersecurity professionals plan to stay with their current employer, highlighting declining job satisfaction across the field and challenging CISOs to be aggressive and innovative in how they retain talent in a challenging labor market.
April 14th, 2026Source

Organizations Warned of Exploited Windows, Adobe Acrobat Vulnerabilities
The security defects allow attackers to escalate privileges and execute arbitrary code remotely.
April 14th, 2026Source

Google Adds Rust DNS Parser to Pixel Phones for Better Security
The parser is meant to mitigate the entire class of memory safety bugs in the low-level environment.
April 14th, 2026Source

Google to penalize sites that hijack the back button
Google is broadening its spam policies to crack down on "back button hijacking," a deceptive practice where websites interfere with browser navigation, blocking users from returning to the page they came from.
April 14th, 2026Source

SAP Patches Critical ABAP Vulnerability
The company has released 19 new security notes addressing flaws in over a dozen enterprise products.
April 14th, 2026Source

Triad Nexus Evades Sanctions to Fuel Cybercrime
The sprawling cybercrime operation abuses major providers to prevent takedowns and distance itself from sanctions.
April 14th, 2026Source

W3LL phishing service sold for $500 dismantled by the FBI
The W3LL phishing kit, a cybercrime tool used to impersonate legitimate login pages and steal usernames and passwords, has been dismantled by the FBI and Indonesian law enforcement authorities. Officials estimate the operation was tied to more than $20 million in attempted fraud.
April 14th, 2026Source

X.Org Server 21.1.22 Released Due To Five New Security Vulnerabilities
X.Org Server 21.1.22 is out today and driven by five new security vulnerabilities being disclosed for the aging codebase. In turn these vulnerabilities also impact XWayland too and thus necessitating the XWayland 24.1.10 release.
April 14th, 2026Source

Internet — Security Issues — April 13th, 2026

$12 million frozen, 20,000 victims identified in crypto scam crackdown
More than $12 million has been frozen, and over 20,000 victims have been identified in an international law enforcement operation targeting cryptocurrency and investment scammers.
April 13th, 2026Source

Adobe issues emergency fix for Acrobat Reader flaw exploited in the wild (CVE-2026-34621)
Adobe has pushed out an emergency security update for Adobe Acrobat Reader, patching a zero-day vulnerability (CVE-2026-34621) exploited in the wild since November 2025.
April 13th, 2026Source

Basic-Fit hit by hack affecting members across multiple countries, including 200,000 in the Netherlands
The breach exposed names, addresses, email addresses, phone numbers, dates of birth, and bank account details. No passwords or identity documents were accessed. The Dutch Data Protection Authority has been notified. Basic-Fit operates over 1,300 clubs across seven European countries.
April 13th, 2026Source

CPUID Hacked to Serve Trojanized CPU-Z and HWMonitor Downloads
Download links were replaced by a Russian-speaking threat actor to distribute a recently emerged malware named STX RAT.
April 13th, 2026Source

Fake Claude Website Distributes PlugX RAT
The malware mimics the legitimate Anthropic installation, relies on DLL sideloading, and cleans up after itself.
April 13th, 2026Source

Google finally extends Gmail end-to-end encryption to mobile devices
Google has now extended Gmail's end-to-end encryption to include iOS and Android devices. In bringing E2EE to mobile devices, Google is making it easier to send and receive encrypted messages without the need for third party tools.
April 13th, 2026Source

Google makes it harder to exploit Pixel 10 modem firmware
Google is working to improve the security of Pixel phones by focusing on the cellular baseband modem, a part of the device that handles communication with mobile networks and processes external data.
April 13th, 2026Source

Gym giant Basic-Fit confirms data on a million members stolen in cyberattack
Names, addresses, dates of birth, and bank details accessed, though not passwords
April 13th, 2026Source

Hackers hijacked CPUID downloads, served STX RAT to victims
If you tried to download software from CPUID's website late last week, you might have downloaded malware instead.
April 13th, 2026Source

International Operation Targets Multimillion-Dollar Crypto Theft Schemes
Law enforcement in the US, UK and Canada identified more than $45 million in cryptocurrency and froze $12 million.
April 13th, 2026Source

OpenAI Impacted by North Korea-Linked Axios Supply Chain Hack
The AI giant is taking action after determining that a macOS code signing certificate may have been compromised.
April 13th, 2026Source

PwC: Cybersecurity Risk Outpaces Corporate Ability to Manage
American Corporations Upping Spend on AI and Technology
April 13th, 2026Source or Source or Source

Quantum computers are coming to break our codes faster than anyone expected
Online data is generally pretty secure. Assuming everyone is careful with passwords and other protections, you can think of it as being locked in a vault so strong that even all the world's supercomputers, working together for 10,000 years, could not crack it.
April 13th, 2026Source

Rockstar Games gets a taste of grand theft data
ShinyHunters claims it accessed Snowflake metrics via third-party tool
April 13th, 2026Source

Rockstar Games receives "pay or leak" warning after cyberattack
Rockstar Games, the developer behind titles such as Grand Theft Auto and Red Dead Redemption, has confirmed a cyberattack claimed by hacking group ShinyHunters, which says it accessed the company's Snowflake environment and obtained data.
April 13th, 2026Source

Seized VerifTools servers expose 915,655 fake IDs, 8 arrested
On April 7 and 8, Dutch police arrested eight suspects in a nationwide operation targeting users of the VerifTools platform as part of an identity fraud investigation. The suspects, all men aged 20 to 34, are accused of identity fraud, forgery, and cybercrime-related offenses. During searches, officers seized smartphones, laptops, cash, cryptocurrency, and weapons or items resembling them.
April 13th, 2026Source

Siemens expands Industrial Automation DataCenter with edge AI and cybersecurity
Siemens will present the next generation of its Industrial Automation DataCenter, a custom-configured data center for IT needs in production, expanding its turnkey solution into an AI-ready platform.
April 13th, 2026Source

Surfshark Just Dropped a Next-Gen VPN Protocol That Could Be Faster and More Secure Than Other VPN Connections
The new Dausos connection protocol has been independently audited and includes a few key innovations not found in other VPNs.
April 13th, 2026Source

The changing role of SIEM in the SOC [Q&A]
Security information and event management (SIEM) has long been at the core of cybersecurity efforts. It allows organizations to gather and aggregate data from various systems to meet compliance requirements and guard against threats.
April 13th, 2026Source

YouTube Shorts Introduces AI-Generated Avatars That Mimic Real Creators
The platform will add AI labels and watermarks to clips that incorporate the avatars.
April 13th, 2026Source

Internet — Security Issues — April 12th, 2026

Critical Marimo pre-auth RCE flaw now under active exploitation
Hackers started exploiting a critical vulnerability in the Marimo open-source reactive Python notebook platform just 10 hours after its public disclosure.
April 12th, 2026Source

Week in review: Windows zero-day exploit leaked, Patch Tuesday forecast
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
April 12th, 2026Source

Internet — Security Issues — April 11th, 2026

Alleged Supercomputer Hack Could Be The Biggest Breach In China's History
A hacker has allegedly stolen a massive amount of classified data from one of the nation's state-owned supercomputers. While it stopped short of revealing which of China's many supercomputers were affected by this breach, a CNN report claims that the stolen dataset contains more than 10 petabytes of data — enough to make it potentially the largest data breach in China's history. The affected supercomputer is believed to be housed at China's premier National Supercomputing Center (NSCC) in Tianjin, which has historically been home to several of the world's fastest supercomputers.
April 11th, 2026Source

Gmail encryption goes mobile, but email itself remains the weak link
Despite Google's best efforts, encrypted emails can still be a pain in the neck to deal with
April 11th, 2026Source

Over 20,000 crypto fraud victims identified in international crackdown
An international law enforcement action led by the U.K.'s National Crime Agency (NCA) has identified over 20,000 victims of cryptocurrency fraud across Canada, the United Kingdom, and the United States.
April 11th, 2026Source

Rockstar Games has confirmed it was hit by third-party data breach
The hacking group responsible has threatened Rockstar Games with a ransom that's due by April 14.
April 11th, 2026Source or Source

Two different attackers poisoned popular open source tools - and showed us the future of supply chain compromise
Time to start dropping SBOMs
April 11th, 2026Source

Internet — Security Issues — April 9th, 2026

5 AdultFriendFinder scams to avoid
It's easy to have a good time on the site, but it's also easy to get into trouble.
April 9th, 2026Source

8 phishing red flags hidden in everyday emails
Dare to resist phishing scams with these tips.
April 9th, 2026Source

10 petabytes of sensitive data stolen from China's National Supercomputing Center, hackers claim — daring heist would be largest ever China hack, covering 6,000 clients across science, defense, and beyond
A hacker (or hacker group) claims to have extracted more than 10 petabytes (1PB = 1000 TB) of highly sensitive information from China's National Supercomputing Center (NSCC) in Tianjin, which could be the largest known data breach involving Chinese infrastructure. Although the incident remains unverified, its nature and scale — data was stolen from 6,000 state-controlled entities — may point to a systemic weakness in China's critical infrastructure, which has serious implications, reports CNN.
April 9th, 2026Source

113,000 explicit prompts from AI girlfriend platform exposed, many linked to user IDs
MyLovely.AI, an AI girlfriend platform, suffered a data breach that exposed over 100,000 users.
April 9th, 2026Source

300,000 People Impacted by Eurail Data Breach
In December 2025, hackers stole names and passport numbers from the European travel company's network.
April 9th, 2026Source

$21 billion stolen from more than 1 million Americans due to cybercrime in 2025 — $11 billion come from stolen crypto, $8.6 billion taken from investment scams, while AI-related attacks cost $893 million
This is also the first time that the Internet Crime Complaint Center received more than a million complaints.
April 9th, 2026Source

A version of Windows 10 released a decade ago is now eligible for additional security patches
Windows 10 is dead, but its enterprise heart is still beating
April 9th, 2026Source

Acrobat Reader zero-day exploited in the wild for many months (CVE-2026-34621)
Unknown attackers have exploited a zero-day Adobe Acrobat Reader vulnerability since November 2025 and possibly even earlier, security researcher Haifei Li has discovered.
April 9th, 2026Source

Adobe Reader Zero-Day Exploited for Months: Researcher
Reputable researcher Haifei Li has come across what appears to be a PDF designed to exploit an unpatched vulnerability.
April 9th, 2026Source

Advenica's File Scanner Kiosk scans USB media for malware
Advenica announced the File Scanner Kiosk, a system that scans USB media for malware and helps businesses reduce infection risk.
April 9th, 2026Source

Apple Intelligence AI Guardrails Bypassed in New Attack
RSAC researchers hacked Apple Intelligence using the Neural Exect method and Unicode manipulation.
April 9th, 2026Source

Breach Roundup: German Police Expose REvil, GandCrab Boss
Also, Medusa Ransomware, Grafana Flaw, German Political Party Breach
April 9th, 2026Source or Source or Source or Source

Bug Management in the Mythos Era: 'Assume You're Unpatched'
Start Here: Strong Monitoring, Behavior-Based Controls, Virtual Patching
April 9th, 2026Source or Source or Source or Source

Can We Trust AI? No -- But Eventually We Must
From hallucinations and bias to model collapse and adversarial abuse, today's AI is built on probability rather than truth, yet enterprises are deploying it at speed without fully understanding the risks.
April 9th, 2026Source

Capita's pension portal exposes civil servants' private data
As if the backlog, the bugs, and the chatbot fixes weren't enough
April 9th, 2026Source

Chevin pulls the handbrake on FleetWave software after security scare
UK and US customers stuck waiting after fleet management SaaS vendor took affected environments offline
April 9th, 2026Source

Chrome 147 patch fixes 60 security flaws, including 2 critical ones
The latest update for Google Chrome patches 60 security vulnerabilities, including 2 critical buffer overflows in WebML.
April 9th, 2026Source

Claude helps researcher dig up decade-old Apache ActiveMQ RCE vulnerability (CVE-2026-34197)
In the latest demonstration of how AI assistants can help with bug hunting, Horizon3.ai researcher Naveen Sunkavally used Claude to unearth CVE-2026-34197, a remote code execution vulnerability in Apache ActiveMQ that's been introduced in the codebase 13 years ago.
April 9th, 2026Source

Claude Managed Agents bring execution and control to AI agent workflows
Anthropic's Claude Managed Agents are a suite of composable APIs for building and deploying cloud-hosted agents at scale, handling sandboxed code execution, checkpointing, credential management, scoped permissions, and end-to-end tracing for you.
April 9th, 2026Source

Claude Mythos Preview Creates Early Edge for Cyber Titans
Project Glasswing Strengthens Key Platforms, Leaves Broad Exposure Untouched
April 9th, 2026Source or Source or Source or Source

Court Backs Pentagon Anthropic Ban - But the Fight Continues
Ruling Keeps Claude Models Out of Defense Systems During Separate Legal Challenges
April 9th, 2026Source

Cryptographers place $5,000 bet whether quantum will matter
Quantum computing exists in a sort of superposition with regard to cryptography -- it's both a pending threat and a technology of no immediate consequence for decryption.
April 9th, 2026Source

Cryptohack Roundup: Bithumb's Recovery Plan
Also: Cambodia Moves to Combat Online Scam Networks
April 9th, 2026Source or Source or Source or Source

Eurail says December data breach impacts 300,000 individuals
Eurail B.V., a European travel operator that provides digital passes covering 33 national railways, says attackers stole the personal information of over 300,000 individuals in a December 2025 data breach.
April 9th, 2026Source

Fake QR codes make for easy scams—be careful what you scan out there
It's a simple thing we encounter many times every single week—often while in a hurry. You pull up at a parking spot, scan a QR code and pay within seconds. Or you sit down at a cafe, scan a code to view the menu and order your meal.
April 9th, 2026Source

German police identify REvil and GandCrab mastermind now living in Russia
They allege Daniil Shchukin ran two of the most prolific ransomware operations and helped rebuild them under a new name
April 9th, 2026Source

Go maintainer joins collective klaxon about encryption-breaking quantum computers — developer urges immediate switch to post-quantum methods to prevent worldwide disaster
Cryptographers see disaster looming — and nobody else is paying attention.
April 9th, 2026Source

Google API Keys in Android Apps Expose Gemini Endpoints to Unauthorized Access
Dozens of such keys can be extracted from apps' decompiled code to gain access to all Gemini endpoints.
April 9th, 2026Source

Google Warns of New Campaign Targeting BPOs to Steal Corporate Data
Tracked as UNC6783, the threat actor is likely linked to Mr. Raccoon, the hacker behind the alleged theft of Adobe data from a BPO.
April 9th, 2026Source

Hacker stole £700,000 from UK energy company by redirecting payment
British oil and gas company Zephyr Energy says someone stole £700,000 (close to $1 million) from one of its U.S.-based subsidiaries by redirecting a payment meant for a contractor into a hacker-controlled account.
April 9th, 2026Source

Hackers are turning home routers into tools to spy on Microsoft 365 users
Russian cyber-spies are back with a vengeance
April 9th, 2026Source

Hackers Exploit Adobe PDF Flaw for Months to Steal Data, No Fix Yet
A critical Adobe Acrobat zero-day has been exploited for months via malicious PDFs to steal data and potentially take over systems, with no patch yet available.
April 9th, 2026Source

Hackers steal $3.6 million from crypto ATM giant Bitcoin Depot
Bitcoin Depot, which operates one of the largest Bitcoin ATM networks, says attackers stole $3.665 million worth of Bitcoin from its crypto wallets after breaching its systems last month.
April 9th, 2026Source

Healthcare IT solutions provider ChipSoft hit by ransomware attack
Dutch healthcare software vendor ChipSoft has been impacted by a ransomware attack that forced the company to take offline its website and digital services for patients and healthcare providers.
April 9th, 2026Source

Intruder expands cloud security with agentless container image scanning
Intruder has announced the release of Container Image Scanning, a new upgrade to its cloud security capabilities that automatically scans container images for vulnerabilities, granting customers actionable insight into container risk without deploying and maintaining scanning agents across their estates.
April 9th, 2026Source

Iran-linked hackers are now targeting industrial controllers in US infrastructure
Attackers are exploiting internet-facing PLCs with legitimate tools, causing operational disruptions in energy, water, and government systems
April 9th, 2026Source

Massive Data Breach Exposes 337K LAPD-Linked Records
A massive breach exposed 337K LAPD-linked files, raising concerns over third-party risk, sensitive data exposure, and law enforcement cybersecurity gaps.
April 9th, 2026Source

Mallory brings contextual threat intelligence to security operations
Mallory is launching an AI-native threat intelligence platform, purpose-built to answer the questions CISOs and their teams are asking every day:
April 9th, 2026Source

Meta's Muse Spark takes AI a step closer to personal superintelligence
Meta Superintelligence Labs has introduced Muse Spark, a natively multimodal reasoning model with support for tool use, visual chain of thought, and multi-agent orchestration. The release includes a Contemplating mode, which is rolling out gradually and orchestrates multiple agents that reason in parallel.
April 9th, 2026Source

Microsoft Flags Fast-Moving Ransomware, Router-Based Espionage Threats
Microsoft is warning organizations about two active cybersecurity threats: a fast-moving ransomware campaign and a Russian espionage operation that abuses small office and home office routers to monitor victims' network traffic.
April 9th, 2026Source

Microsoft locks out VeraCrypt and WireGuard devs, blames verification process
No emails, no warnings, no humans -- just bots, catch-22s, and a 60-day appeals queue
April 9th, 2026Source

Mythos and Like AI Tools Raise Stakes for Healthcare Cyber
Experts Warn of Faster and Higher Volume Attacks, Rising Patient Safety Worries
April 9th, 2026Source or Source or Source

New 'LucidRook' malware used in targeted attacks on NGOs, universities
A new Lua-based malware, called LucidRook, is being used in spear-phishing campaigns targeting non-governmental organizations and universities in Taiwan.
April 9th, 2026Source

New VENOM phishing attacks steal senior executives' Microsoft logins
Threat actors using a previously undocumented phishing-as-a-service (PhaaS) platform called "VENOM" are targeting credentials of C-suite executives across multiple industries.
April 9th, 2026Source

Norton brings real-time AI Agent Protection to Norton 360
Norton has introduced a new AI Agent Protection feature to its Norton 360 software that monitors the actions of autonomous AI tools, reflecting growing concern over how much control these systems now have over personal devices and data.
April 9th, 2026Source

OPSWAT adds predictive AI engine to MetaDefender for pre-execution threat detection
OPSWAT has announced OPSWAT Predictive Alin AI, its first proprietary AI-based threat detection engine for the MetaDefender Platform. This AI-based innovation introduces a new category of capability within the MetaDefender Platform, a high-confidence predictive layer that works alongside existing detection and prevention engines to assess malicious intent before execution, driving greater efficiency across the platform. This enables organizations to act immediately, while minimizing the operational impacts of false positives.
April 9th, 2026Source

Over half of organizations have mobile devices with an out-of-date OS
According to the latest Security 360 report from Jamf 53 percent of organizations have at least one mobile device with a critically out-of-date operating system.
April 9th, 2026Source

Palo Alto Networks, SonicWall Patch High-Severity Vulnerabilities
The bugs could allow attackers to modify protected resources and escalate their privileges to administrator.
April 9th, 2026Source

Russia Behind Recent TP-Link Router Hacking, According to UK's Cyber Security Agency
Microsoft also identified several hundred organizations that were targeted in the attacks.
April 9th, 2026Source

Russian state hackers are hijacking TP-Link and MicroTik routers to steal Outlook credentials, cybersecurity center warns — APT28 group targets DNS and redirects traffic to attacker-controlled servers
Traffic is being redirected through attacker-controlled servers.
April 9th, 2026Source

Security researchers tricked Apple Intelligence into cursing at users. It could have been a lot worse
Wash your mouth out with digital soap
April 9th, 2026Source

'Several dozen' high-value corporations hit by new extortion crew in helpdesk phishing spree
Possible link to Mr. Raccoon's claimed Adobe break-in
April 9th, 2026Source

Smart Slider updates hijacked to push malicious WordPress, Joomla versions
Hackers hijacked the update system for the Smart Slider 3 Pro plugin for WordPress and Joomla, and pushed a malicious version with multiple backdoors.
April 9th, 2026Source

The Hidden ROI of Visibility: Better Decisions, Better Behavior, Better Security
Beyond monitoring and compliance, visibility acts as a powerful deterrent, shaping user behavior, improving collaboration, and enabling more accurate, data-driven security decisions.
April 9th, 2026Source

User Nearly Loses $15,000 After Calling Apple Pay Scam Number
You receive a message about a suspicious Apple Pay charge, and it looks urgent enough to make you act immediately, which is exactly how scammers pull people into a fast-moving situation where they control the conversation from the first call. That is what happened in a recent case where a simple text turned into a high-pressure scam attempt that nearly cost $15,000.
April 9th, 2026Source

WhatsApp brings long-awaited privacy feature to filter who can reach you
After years of waiting, WhatsApp is set to roll out a username feature that will allow people to connect and communicate without sharing their phone numbers. This means more privacy and better control over phone number visibility by choosing a unique username.
April 9th, 2026Source

When attackers already have the keys, MFA is just another door to open
The Figure breach exposed 967,200 email records without a single exploit. Understanding what that enables — and why your MFA cannot contain it — is an architectural problem, not a user education problem.
April 9th, 2026Source

Who Controls AI on Battlefields - the Military or the Model?
Former DoD CIO Beavers on Ethics, Reliability and AI as a National Security Tool
April 9th, 2026Source or Source or Source or Source

Why Anthropic is Secretly Holding Back the Claude Mythos Release
Anthropic, OpenAI and DeepSeek are navigating a pivotal moment in AI development, with each company unveiling or preparing significant advancements. Universe of AI explores the latest updates, including the leaked details of Anthropic's Claude Mythos, which reportedly excels in reasoning and cybersecurity, and OpenAI's GPT-6, code-named "Spud," featuring a rumored 2-million-token context window. Meanwhile, DeepSeek faces strategic decisions for its Version 4 release, balancing the need for innovation with resource constraints. These developments highlight not only technological progress but also the critical challenges of scalability and strategic planning in the AI sector.
April 9th, 2026Source

Yikes, Encryption's Y2K Moment is Coming Years Early
Google moved up its estimated deadline for quantum preparedness in cryptography to 2029—only 33 months from now. That's earlier than previous deadlines, and they proposed the new post-quantum migration deadline because of two new papers that comprise a big jump in the state of the technology. It's ahead of schedule, but not altogether unexpected. Cryptographers and engineers have been working on this for years, and as the deadline gets closer, it's not surprising to see more precise timeline estimates come up.
April 9th, 2026Source

Your TP-Link router is under attack from Russian state hackers
Russian hacking group Fancy Bear is targeting TP-Link routers worldwide. Update your router firmware now.
April 9th, 2026Source

Zephyr Energy loses £700K in cyber hit that rerouted contractor payment
Attackers slipped into the process and redirected funds, leaving the company scrambling to recover the cash
April 9th, 2026Source

Zero Days for the Masses: Mythos Presages Exploit Tsunami
Asymmetry Between Exploits Wielded by Nation-States and Hackers Will Disappear
April 9th, 2026Source or Source or Source or Source

Internet — Security Issues — April 8th, 2026

'BlueHammer' Exploit Targets Windows, Potentially Impacting 1 Billion+ Devices
A researcher released a working 'BlueHammer' Windows zero-day exploit that could impact over 1 billion devices, granting SYSTEM-level access and leaving no patch yet.
April 8th, 2026Source

Chaos malware expands from routers to Linux cloud servers
Chaos, Go-based malware first documented by Lumen's Black Lotus Labs, has historically targeted routers and edge devices. A new variant observed in March 2026 shows the malware operating against misconfigured Linux cloud servers, a category of infrastructure the botnet had not previously prioritized.
April 8th, 2026Source

Critical infrastructure devices exposed to online threats
A new study finds that some of the most critical infrastructure sectors, including power grids and railway networks, have exposed ICS devices.
April 8th, 2026Source

Cyber Defense for Education & SLTTs: Doing More with Less Using MDR
State, local, tribal, and territorial organizations are dealing with a tough reality. Cyber threats are increasing, but teams are often small, environments are complex, and budgets are tight. For many IT and security leaders, it can feel like you are constantly trying to keep up with more alerts than your team can realistically handle.
April 8th, 2026Source or Source or Source or Source

Data Leakage Vulnerability Patched in OpenSSL
A total of seven vulnerabilities, most of which can be exploited for DoS attacks, have been patched in OpenSSL.
April 8th, 2026Source

Dutch healthcare software vendor goes dark after ransomware attack
ChipSoft's website remains down but emails are functioning
April 8th, 2026Source

Enhancing Secure MCP Client--Server Communication With the Chain of Responsibility Pattern
A clean and common, yet decoupled, flexible, and open for extension solution when interacting with multiple API key-secured MCP servers.
April 8th, 2026Source

Evasive Masjesu DDoS Botnet Targets IoT Devices
Focused on persistence, the botnet does not engage in widespread infection and avoids blacklisted IPs and critical infrastructure entities.
April 8th, 2026Source

FBI: Cybercrime Losses Neared $21 Billion in 2025
The FBI received over 1 million complaints of malicious activity in 2025, with investment, BEC, and tech support scams causing the highest losses.
April 8th, 2026Source

Feds Are Still Assessing Proposed HIPAA Security Rule Update
HHS OCR Director Says Cost of Inaction May Outweigh Compliance Burdens
April 8th, 2026Source

Flatpak 1.16.4 fixes sandbox escape and three other security flaws
Flatpak, a Linux application sandboxing and distribution framework, released version 1.16.4, patching four security vulnerabilities.
April 8th, 2026Source

Hackers steal and leak sensitive LAPD police documents
Cybercriminals have allegedly stolen a large amount of sensitive internal documents from the Los Angeles Police Department and leaked the data online.
April 8th, 2026Source

Hackers Targeting Ninja Forms Vulnerability That Exposes WordPress Sites to Takeover
The vulnerability allows hackers to upload arbitrary files to a site's server and achieve remote code execution.
April 8th, 2026Source

Iranian cyber activity hits US energy, water, and government networks
U.S. government agencies on Tuesday warned American organizations about ongoing cyber activity targeting OT and PLC devices, including those manufactured by Rockwell Automation and Allen-Bradley, across multiple critical infrastructure sectors. The activity has been attributed to Iranian-affiliated APT actors seeking to disrupt operations in the United States.
April 8th, 2026Source

Is a $30,000 GPU Good at Password Cracking?
Compute power is growing at an extraordinary pace. The AI surge has driven massive investment in GPUs and specialized 'accelerators', with vendors building increasingly powerful hardware to train large language models.
April 8th, 2026Source

Massachusetts Hospital Diverts Ambulances as Cyberattack Causes Disruption
Signature Healthcare was forced to cancel some services, and pharmacies are unable to fill prescriptions due to the hacker attack.
April 8th, 2026Source

New Scam Alert: QR Codes Replace Links in Traffic Ticket Phishing
Scammers are using fake traffic violation texts with QR codes to steal personal and financial data, posing as state courts and government agencies.
April 8th, 2026Source

NHS Scotland-linked domains caught serving pr0n and dodgy sports streams
Two practice web addresses appear to have been compromised
April 8th, 2026Source

RCE Bug Lurked in Apache ActiveMQ Classic for 13 Years
The vulnerability requires authentication for successful exploitation, but another flaw exposes the Jolokia API without authentication.
April 8th, 2026Source

Russian state hackers are hijacking TP-Link and MicroTik routers to steal Outlook credentials, cybersecurity center warns — APT28 group targets DNS and redirects traffic to attacker-controlled server
Traffic is being redirected through attacker-controlled servers.
April 8th, 2026Source

Secureframe expands Comply with User Access Reviews for automated governance
Secureframe has announced the launch of User Access Reviews, a new capability within Secureframe Comply. Access reviews are the primary mechanism organizations use to validate that the right people have the appropriate access, but the process has historically been manual, fragmented, and difficult to audit. Most teams still conduct access reviews using exported spreadsheets and email threads, creating accountability gaps and leaving security incidents waiting to happen.
April 8th, 2026Source

Social engineering attacks on open source developers are escalating
North Korean hackers spent weeks socially engineering an Axios maintainer through a fake Slack workspace, a cloned company identity, and a fabricated Microsoft Teams call that tricked him into installing a RAT posings as a software update. They used the access they gained to inject malware into npm packages downloaded 100+ million times a week.
April 8th, 2026Source

Thousands of consumer routers hacked by Russia's military
End-of-life routers in homes and small offices hacked in 120 countries.
April 8th, 2026Source

Thousands of users got affected by OneDrive unstoppable spam on Windows, Android, Mac
This OneDrive bug leads to users getting spammed by hundreds of shared files and folders. Microsoft had admitted it's a real problem.
April 8th, 2026Source

US Disrupts Russian Espionage Operation Involving Hacked Routers and DNS Hijacking
The APT28 threat group exploited vulnerable TP-Link and MikroTik routers to conduct adversary-in-the-middle (AitM) attacks.
April 8th, 2026Source

Internet — Security Issues — April 6th, 2026

Attackers Target Zero-Day Flaw in Fortinet Security Software
Vendor Issues Hotfix for Critical Flaw in FortiClient Endpoint Management Server
April 6th, 2026Source or Source or Source or Source or Source

Best VPN Service for 2026: How to Choose the Right VPN for You
Streaming, gaming or traveling? You might want a virtual private network. Our expert testing team rigorously evaluated these top VPN services for privacy, speed and value.
April 6th, 2026Source

CISA orders feds to patch exploited Fortinet EMS flaw by Friday
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered federal agencies to secure FortiClient Enterprise Management Server (EMS) instances against an actively exploited vulnerability by Friday.
April 6th, 2026Source

Convicted spyware maker Bryan Fleming avoids jail at sentencing
The first convicted spyware maker in over a decade has avoided jail time after earlier pleading guilty to U.S. federal charges associated with running his surveillance company.
April 6th, 2026Source

Drift $280M crypto theft linked to 6-month in-person operation
The Drift Protocol says that the $280+ million hack it suffered last week was the result of a long-term, carefully planned operation that included building "a functioning operational presence inside the Drift ecosystem."
April 6th, 2026Source

Fortinet Rushes Emergency Fixes for Exploited Zero-Day
The improper access control bug in FortiClient EMS allows unauthenticated attackers to execute arbitrary code remotely.
April 6th, 2026Source

Google DeepMind Researchers Map Web Attacks Against AI Agents
A vulnerability named 'AI Agent Traps' allows attackers to manipulate, deceive, and exploit visiting agents via malicious web content.
April 6th, 2026Source

Guardarian Users Targeted With Malicious Strapi NPM Packages
Hackers published 36 NPM packages posing as Strapi plugins to execute shells, escape containers, and harvest credentials.
April 6th, 2026Source

Memristor chip combines security and compute-in-memory for edge devices
A cross-institutional research team has developed Co-Located Authentication and Processing (CLAP), a privacy-preserving system that overcomes the trade-off between security and performance in edge computing devices. The study, titled "Privacy-preserving data analysis using a memristor chip with co-located authentication and processing," is published in Science Advances.
April 6th, 2026Source

Microsoft links Medusa ransomware affiliate to zero-day attacks
Microsoft says that Storm-1175, a China-based financially motivated cybercriminal group known for deploying Medusa ransomware payloads, has been deploying n-day and zero-day exploits in high-velocity attacks.
April 6th, 2026Source

New Fortinet Flaw Allows Unauthorized Access to Enterprise Systems
Fortinet warns of a critical FortiClient EMS zero-day vulnerability that is currently being exploited, allowing attackers to bypass authentication and execute commands.
April 6th, 2026Source

North Korea's hijack of one of the web's most used open source projects was likely weeks in the making
A North Korean cyberattack that last Monday briefly hijacked one of the most widely used open source projects on the web took weeks to carry out as part of a long-running campaign to target the code's top developers.
April 6th, 2026Source

North Korean Hackers Target High-Profile Node.js Maintainers
The threat actor behind the Axios supply chain attack has been aiming at other maintainers in its social engineering campaign.
April 6th, 2026Source

Not Without My AI Agent: Models Break Rules to Save Peers
Researchers Find Frontier Models Defy Humans to Protect AI Peers
April 6th, 2026Source

The 2026 Guide to Ecommerce Security and Development
Ecommerce security is now a core business strategy. Companies must adopt security-by-design, zero trust, and AI-driven fraud detection to protect revenue and customers.
April 6th, 2026Source

Why Simple Breach Monitoring is No Longer Enough
In 2026, stolen credentials are a top-tier security priority. They are also a paradox: even though they are considered a significant risk, enterprises still opt for checkbox solutions and generic tools to mitigate the problem.
April 6th, 2026Source

Internet — Security Issues — April 3rd, 2026

Age-verification is hurting sex educators and sex workers, studies suggest
These laws aren't working to keep minors off adult sites, but they are hitting creators' incomes.
April 3rd, 2026Source

AI Breakthroughs, Security Breaches, and Industry Shakeups Define the Week in Tech
See what you missed in Daily Tech Insider from March 30--April 3.
April 3rd, 2026Source

AI's Achilles Heel is an Oil Shipping Strait
A Shipping Crisis in the Middle East Is Now a Chip Crisis Everywhere Else
April 3rd, 2026Source or Source or Source or Source

APERION releases SmartFlow SDK for secure, on-prem AI governance without cloud reliance
APERION launched SmartFlow SDK, providing a secure, on-premises path for enterprises migrating away from compromised cloud-based AI gateways. The launch coincides with a 200% increase in web traffic since the March 24 LiteLLM supply chain attack that compromised an estimated 36% of all cloud environments.
April 3rd, 2026Source

Application abuse and what to do about it [Q&A]
Using applications as an attack vector, in a DDoS campaign for example, is not new. But application abuse is evolving making it harder to spot.
April 3rd, 2026Source

CERT-EU blames Trivy supply chain attack for Europa.eu data breach
Attackers exploited a vulnerability scanner to steal 350GB of data that they then leaked on the dark web.
April 3rd, 2026Source

Cisco IMC auth bypass vulnerability allows attackers to alter user passwords (CVE-2026-20093)
Cisco has fixed ten vulnerabilities affecting its Integrated Management Controller (IMC), the most critical of which (CVE-2026-20093) could allow an unauthenticated, remote attacker to bypass authentication and gain access to the system as Admin.
April 3rd, 2026Source

Critical ShareFile Flaws Lead to Unauthenticated RCE
The vulnerabilities can be chained together to bypass authentication and upload arbitrary files to the server.
April 3rd, 2026Source

Crypto platform Drift suffers from hack suspected to total $270 million — firm goes into damage control mode, suspends deposits and withdrawals
This is an ongoing situation.
April 3rd, 2026Source

Die Linke German political party confirms data stolen by Qilin ransomware
The Qilin ransomware group has stolen data from Die Linke, a German democratic socialist political party, and is threatening to leak it.
April 3rd, 2026Source

Europe's cyber agency blames hacking gangs for massive data breach and leak
The European Union's cybersecurity agency said Thursday that a recent hack and data breach at the EU's executive body was the work of a cybercriminal group known as TeamPCP.
April 3rd, 2026Source

Evolution of Ransomware: Multi-Extortion Ransomware Attacks
In February 2026, the University of Mississippi Medical Center (UMMC) fell victim to a ransomware attack. The incident took the Epic electronic health record system offline across 35 clinics and more than 200 telehealth sites, forcing the cancellation of chemotherapy appointments and the postponement of non-emergency surgeries. Medical staff were required to revert to paper-based workflows, leaving countless patients to bear the consequences.
April 3rd, 2026Source

FBI Declares Surveillance System Breach a 'Major Incident'
China-linked hackers breached an FBI surveillance system, exposing sensitive investigation data and prompting a "major incident" classification.
April 3rd, 2026Source

Gen AI Stalls, Shadow AI Rises: A CISO Concern
Most organizations are exploring generative AI, but scaling it across the enterprise remains a challenge. According to Gartner, 60% of businesses are piloting M365 Copilot, yet only 6% have progressed to large-scale deployment, highlighting a critical gap between experimentation and operational impact.
April 3rd, 2026Source or Source or Source or Source

Hims & Hers warns of data breach after Zendesk support ticket breach
Telehealth giant Hims & Hers Health is warning that it suffered a data breach after support tickets were stolen from a third-party customer service platform.
April 3rd, 2026Source

In Other News: ChatGPT Data Leak, Android Rootkit, Water Facility Hit by Ransomware
Other noteworthy stories that might have slipped under the radar: Symantec vulnerability, anti-ClickFix mechanism added to macOS, FBI hack classified as major incident.
April 3rd, 2026Source

ISMG Editors: Vendor Breaches Expose Healthcare Risk
Also: RSAC Speakers Warn AI Is Outpacing Security, DoD's Zero Trust Reality Check
April 3rd, 2026Source or Source or Source or Source

Latest BreachForums Reboot Tied to Fake ShinyHunters Admin
After Hacker Site Gets Resurrected, Cybercrime Group Denies All Involvement
April 3rd, 2026Source or Source or Source or Source

LinkedIn secretly scans for 6,000+ Chrome extensions, collects data
A new report dubbed "BrowserGate" warns that Microsoft's LinkedIn is using hidden JavaScript scripts on its website to scan visitors' browsers for installed extensions and collect device data.
April 3rd, 2026Source

Man admits to locking thousands of Windows devices in extortion plot
A former core infrastructure engineer has pleaded guilty to locking Windows admins out of 254 servers as part of a failed extortion plot targeting his employer, an industrial company headquartered in Somerset County, New Jersey.
April 3rd, 2026Source

Mercor Breach Linked to LiteLLM Supply-Chain Attack
AI Dependency Attack Reportedly Exposes Data and Source Code
April 3rd, 2026Source or Source or Source or Source

Mobile Attack Surface Expands as Enterprises Lose Control
Shadow AI embedded in everyday apps, combined with outdated mobile devices and zero-click exploits, is creating a new and largely unseen mobile risk.
April 3rd, 2026Source

North Korean Hackers Drain $285 Million From Drift in 10 Seconds
The attackers prepared infrastructure and multiple nonce-based transactions, took over an admin key, and drained five vaults.
April 3rd, 2026Source

One-Time Passcodes Are Gateway for Financial Fraud Attacks
Report Reveals Growing Trend of Fraudsters Intercepting SMS-Based Verification
April 3rd, 2026Source or Source or Source or Source

Open Source Security Tool Trivy Hit by Supply Chain Attack, Prompting Urgent Industry Response
A major security incident affecting the widely used open source vulnerability scanner Trivy has exposed critical weaknesses in software supply chain security, after maintainers confirmed that a malicious release was briefly distributed to users. The incident, disclosed in a GitHub discussion by Aqua Security, revealed that attackers were able to publish a compromised version of the tool, potentially exposing downstream systems to credential theft and malicious code execution.
April 3rd, 2026Source

React2Shell Exploited in Large-Scale Credential Harvesting Campaign
Using automated scanning and the Nexus Listener collection framework, the hackers compromised over 750 systems.
April 3rd, 2026Source

Rowhammer Exploit Now Targets GDDR6 GPUs, Enables Full System Memory Access
Security researchers have demonstrated that the long-known Rowhammer vulnerability can now be applied to GPU memory, specifically targeting NVIDIA graphics cards equipped with GDDR6 VRAM. The findings show that disturbance-based attacks, previously limited to system DRAM, can be adapted to modern GPU architectures, including Ampere and Ada Lovelace.
April 3rd, 2026Source

Stryker Tells Customers Manufacturing Systems Restored
Device Maker Is Still Investigating March 11 Attack Claimed by Iranian Hacktivists
April 3rd, 2026Source or Source or Source or Source

T-Mobile Sets the Record Straight on Latest Data Breach Filing
The cybersecurity incident involved an insider and had a limited impact, the telecoms giant told SecurityWeek.
April 3rd, 2026Source

The FCC's Foreign Router Ban Has Security Experts Raising Alarms
A recent edict from the Federal Communications Commission has security experts bracing for the worst. On March 23, the agency announced a sweeping ban on all new "consumer-grade" routers produced outside the United States. The decision sent shockwaves through boardrooms and living rooms alike: Because no major wireless router brands manufacture in the U.S. -- including those headquartered stateside, such as Netgear -- a ban on foreign routers is difficult to differentiate from a ban on routers, period.
April 3rd, 2026Source

The Theranos Playbook Is Quietly Returning in Cybersecurity
Market Pressures Are Rewarding Storytelling More Than Validation, Operational Value
April 3rd, 2026Source

TrueConf Zero-Day Exploited in Asian Government Attacks
A Chinese threat actor exploited the video conferencing platform to perform reconnaissance, escalate privileges, and execute additional payloads.
April 3rd, 2026Source

What Happens When Data Centers Become Military Targets?
It's Time for CIOs to Rethink Business Continuity Plans and Cloud Resources
April 3rd, 2026Source or Source or Source or Source

Why I Use Additional Antivirus Protection on Top of Microsoft Defender
Microsoft Defender is good now, but I still treat it like a simple lock instead of a full security system.
April 3rd, 2026Source

Windows Security app gets Secure Boot certificate status indicators as 2026 expiration approaches
Microsoft's Secure Boot certificates, issued in 2011, are approaching expiration in 2026. To help IT administrators track whether devices have received replacement certificates, Microsoft has added new status indicators to the Windows Security app, under Device security > Secure Boot.
April 3rd, 2026Source

Internet — Security Issues — April 2nd, 2026

250,000 Affected by Data Breach at Nacogdoches Memorial Hospital
In January 2026, a threat actor hacked the hospital's internal network and stole personal and health information.
April 2nd, 2026Source

Adversaries Exploit Vacant Homes to Intercept Mail in Hybrid Cybercrime
Fraud operations have expanded beyond traditional hacking techniques to include methods that exploit legitimate services and real-world infrastructure. By combining publicly available data, weak identity verification processes, and operational gaps, threat actors are building scalable fraud workflows that are both low-cost and difficult to detect.
April 2nd, 2026Source

Apple Rolls Out DarkSword Exploit Protection to More Devices
Apple Rolls Out DarkSword Exploit Protection to More Devices
April 2nd, 2026Source

Axios npm Package Compromised in Supply Chain Attack
The npm ecosystem absorbed one of its most significant supply chain attacks on March 31, 2026, when two versions of Axios, the HTTP client library that sees over 100 million weekly downloads, were found to contain a fully functional Remote Access Trojan. The compromised releases, axios@1.14.1 and axios@0.30.4, were published to the npm registry via what appears to be a hijacked maintainer account and were live for a window long enough to reach an unknown number of developer environments before being removed.
April 2nd, 2026Source

Beehiiv expands into podcasting, taking aim at Patreon
Newsletter platform Beehiiv is introducing native podcast hosting, the company told TechCrunch exclusively. With this move, creators can now host, distribute, and monetize their podcast directly on Beehiiv. Users will be able to publish an episode, share it with subscribers, and track their analytics all on the platform.
April 2nd, 2026Source

Cisco Patches Critical and High-Severity Vulnerabilities
The bugs could lead to authentication bypass, remote code execution, information disclosure, and privilege escalation.
April 2nd, 2026Source

Critical Cisco IMC auth bypass gives attackers Admin access
Cisco has released security updates to address several critical and high-severity vulnerabilities, including an Integrated Management Controller (IMC) authentication bypass that allows attackers to gain Admin access.
April 2nd, 2026Source

Cybersecurity M&A Roundup: 38 Deals Announced in March 2026
Significant cybersecurity M&A deals announced by Airbus, Cellebrite, Databricks, Quantum eMotion, Rapid7, and OpenAI.
April 2nd, 2026Source

DarkSword exploit forces Apple to loosen its patching policy
Apple has extended security updates to a wider range of devices still running iOS 18, aiming to protect users from the DarkSword exploit kit.
April 2nd, 2026Source

Drift loses $280 million as North Korean hackers seize Security Council powers
The Drift Protocol lost at least $280 million after a threat actor took control of its Security Council administrative powers in a planned, sophisticated operation.
April 2nd, 2026Source

Even cybersecurity experts make simple mistakes. Here's the real lesson
No one's perfect.
April 2nd, 2026Source

Google now lets you direct avatars through prompts in its Vids app
Google on Thursday added new features to its video editor app Vids, including directing and customizing avatars through text prompts, Veo 3.1 support, the ability to export videos to YouTube, and recording with a Chrome extension.
April 2nd, 2026Source

Hasbro Cyberattack Knocks Systems Offline, Recovery Could Take Weeks
Hasbro is investigating a cyberattack that forced systems offline, warning recovery could take weeks as it works to contain the incident and assess the impact.
April 2nd, 2026Source

Hasbro Systems Nerfed by Data Breach; IT Recovery Underway
Transformers, Peppa Pig Toymaker Forecasts Delays, Says Product Shipping Continues
April 2nd, 2026Source or Source or Source or Source

ICE says it bought Paragon's spyware to use in drug trafficking cases
The acting head of U.S. Immigration and Customs Enforcement told lawmakers that it has bought and used spyware made by Paragon Solutions in drug trafficking cases, according to a letter seen by TechCrunch.
April 2nd, 2026Source

'Invisible' credential theft campaign targets senior executives
A new report from Abnormal AI uncovers a credential theft campaign that has been systematically targeting C-suite executives and senior officers at major global organizations over a five-month period from November 2025 through March 2026.
April 2nd, 2026Source

Medtech giant Stryker fully operational after data-wiping attack
Stryker Corporation, one of the world's leading medical technology companies, says it's fully operational three weeks after many of its systems were wiped out in a cyberattack claimed by the Iranian-linked Handala hacktivist group.
April 2nd, 2026Source

Mercor Hit by LiteLLM Supply Chain Attack
The AI recruiting firm is investigating the incident as Lapsus$ claimed the theft of 4TB of Mercor data.
April 2nd, 2026Source

New Rowhammer attacks give complete control of machines running Nvidia GPUs
GDDRHammer, GeForge and GPUBreach hammer GPU memory in ways that hijack the CPU.
April 2nd, 2026Source

New Progress ShareFile flaws can be chained in pre-auth RCE attacks
Two vulnerabilities in Progress ShareFile, an enterprise-grade secure file transfer solution, can be chained to enable unauthenticated file exfiltration from affected environments.
April 2nd, 2026Source

OpenSSH 10.3 patches five security bugs and drops legacy rekeying support
OpenSSH 10.3 shipped carrying five security fixes alongside feature additions and a set of behavior changes that will break compatibility with older SSH implementations that do not support rekeying.
April 2nd, 2026Source

Over 14,000 F5 BIG-IP APM instances still exposed to RCE attacks
Internet threat-monitoring non-profit Shadowserver has found over 14,000 BIG-IP APM instances exposed online amid ongoing attacks exploiting a critical-severity remote code execution (RCE) vulnerability.
April 2nd, 2026Source

Pentagon Commits to Reform of Cyber Talent Management System
Panel Calls for Modernization of Recruiting Processes for About 225,000 Cyber Jobs
April 2nd, 2026Source or Source or Source or Source

Quantum computers might crack today's encryption far sooner than we thought
Encrypted banking information, cryptocurrency wallets, and other sensitive data may be in danger
April 2nd, 2026Source

Reengineering AML in the Era of Instant Payments
Financial Institutions Are Rethinking Controls to Ensure Frictionless Transactions
April 2nd, 2026Source or Source or Source or Source

Residential proxies evaded IP reputation checks in 78% of 4B sessions
Researchers warn that residential proxies used to route malicious traffic are a big problem for IP reputation systems, as there is no clear distinction between attackers and legitimate users.
April 2nd, 2026Source

Software supply chain hacks trigger wave of intrusions, data theft
After linking the Axios npm supply chain attack to North Korean hackers, Google researchers warned that "hundreds of thousands of stolen secrets could potentially be circulating" as a result of this and the Trivy, KICS, LiteLLM, and Telnyx supply chain attacks (linked to TeamPCP).
April 2nd, 2026Source

Sophisticated CrystalX RAT Emerges
The malware can spy on victims, steal their information, and make configuration changes on devices.
April 2nd, 2026Source

Startup Linx Secures $50M as Identity Threats Intensify
AI-Native Platform Targets Identity Governance Gaps and Automation
April 2nd, 2026Source or Source

State AG Sues Change Healthcare in 2024 Ransomware Attack
Iowa Seeking Civil Monetary Fines, Damages for Alleged Violations
April 2nd, 2026Source or Source or Source or Source or Source

Suggested organizational security and privacy control and activity profile — Medium impact (ITSP.10.033-01)
This publication is part of a series of guidelines published by the Canadian Centre for Cyber Security (the Cyber Centre) under Cyber security and privacy risk management: A lifecycle approach.
April 2nd, 2026Source

Telehealth giant Hims & Hers says its customer support system was hacked
Hims & Hers, the telehealth company that sells weight-loss drugs and sexual health prescriptions, has confirmed a data breach affecting its third-party customer service platform.
April 2nd, 2026Source

The Best Way to Check Where Your Home Address Shows Up Online
Your home address almost certainly shows up on the web. Here's how to find out exactly where -- and how take action.
April 2nd, 2026Source

The company's biggest security hole lived in the breakroom
Connected devices can leave an otherwise secure network vulnerable
April 2nd, 2026Source

They thought they were downloading Claude Code source. They got a nasty dose of malware instead
Source code with a side of Vidar stealer and GhostSocks
April 2nd, 2026Source

TrueConf zero-day vulnerability exploited to target government networks
Suspected China-nexus attackers have leveraged a zero-day vulnerability (CVE-2026-3502) in the TrueConf client application to distribute malware within government networks in Southeast Asia, Check Point researchers discovered.
April 2nd, 2026Source

Variance Raises $21.5M for Compliance Investigation Platform Powered by AI Agents
Variance has raised a total of $26 million in funding and the latest investment will fuel platform growth.
April 2nd, 2026Source

Windows Security App Gains Secure Boot Certificate Status Ahead of Major Certificate Refresh
On your Windows PC, the Unified Extensible Firmware Interface (UEFI) uses Secure Boot certificates to ensure that only trusted software initiates the startup sequence. The certificates currently in use were originally issued in 2011 and are set to expire in late June 2026. To address this, Microsoft has been quietly rolling out updated certificates through Windows Update. Starting in April 2026, users can check their device's status via a new indicator in the Windows Security app. By navigating to Device security and then Secure Boot, a color-coded badge will show whether your device is fully updated, awaiting an update, or requires immediate attention.
April 2nd, 2026Source

Internet — Security Issues — April 1st, 2026

AI systems lack a fundamental property of human cognition: Understanding this gap may matter for safety
When a person reaches across a table to pass the salt, their brain is doing something far more complex than recognizing a request and executing a movement. It is drawing on a lifetime of bodily experience—where their hand is in space, what a saltshaker feels like, the social awareness of who asked and why. In a fraction of a second, their body and brain are working as one.
April 1st, 2026Source

Axios NPM Package Breached in North Korean Supply Chain Attack
A long-lived NPM access token was used to bypass the GitHub Actions OIDC-based CI/CD publishing workflow and push backdoored package versions.
April 1st, 2026Source

CIS Benchmarks March 2026 Update
The following CIS Benchmarks and CIS Build Kits have been updated or recently released. We've highlighted the major updates below. Each Benchmark and Build Kit includes a full changelog that references all changes.
April 1st, 2026Source

Egnyte expands Content Cloud with AI Governance and built-in Assistant
Egnyte has announced two major additions to the Egnyte Content Cloud: AI Safeguards, which give organizations granular control over how AI interacts with sensitive content, and an AI Assistant that acts as a built-in collaborator across Egnyte workspaces.
April 1st, 2026Source

Exabeam expands ABA to detect AI agent threats across ChatGPT, Copilot, and Gemini
Exabeam has announced the expansion of Exabeam Agent Behavior Analytics (ABA). Without direct visibility into how employees use AI assistants, what they query, what data they share, how frequently they interact, and from where, organizations cannot establish a baseline for normal AI behavior, investigate potential misuse, or detect emerging agentic insider threats.
April 1st, 2026Source

Exploited Zero-Day Among 21 Vulnerabilities Patched in Chrome
Google has announced fixes for CVE-2026-5281, a zero-day affecting Chrome's Dawn component.
April 1st, 2026Source

FBI Warns of Data Security Risks From China-Made Mobile Apps
The agency has not named the problematic foreign-made applications, but TikTok and Temu come to mind.
April 1st, 2026Source or Source

Google Addresses Vertex Security Issues After Researchers Weaponize AI Agents
Palo Alto Networks has disclosed the details of its analysis of Google Cloud Platform's Vertex AI.
April 1st, 2026Source

Google fixes Chrome zero-day with in-the-wild exploit (CVE-2026-5281)
Google has fixed 21 vulnerabilities affecting its popular Chrome browser, among them a zero-day (CVE-2026-5281) with an in-the-wild exploit.
April 1st, 2026Source

Google Warns Quantum Computers Could Crack Crypto Sooner Than Expected
Google warns that quantum computers could break crypto sooner than expected, heightening the urgency for post-quantum security across blockchain networks.
April 1st, 2026Source

Google research suggests encryption technique used by Bitcoin will be cracked by quantum computers around 2029 — search giant says quantum attacks need to be prepared for now
Cryptocurrencies aren't the only application at risk.
April 1st, 2026Source

Hacker charged for stealing $53 million in crypto, faces up to 30 years in prison — Uranium Finance thief spent $2 million of illicit funds on Magic: The Gathering, $1 million on Pokemon cards
The hacker used some of the proceeds to buy rare Magic: The Gathering and Pokemon cards and booster packs.
April 1st, 2026Source

Hasbro says it was hacked, and may take 'several weeks' to recover
American toy-making giant Hasbro has confirmed a cyberattack, and the company says it may take "several weeks" before the incident is resolved.
April 1st, 2026Source or Source

Microsoft: Hackers Are Using WhatsApp to Deliver Malware to Windows PCs
Hackers are using WhatsApp messages to deliver malware to Windows PCs, exploiting user trust and attachments to trigger stealthy, multi-stage attacks.
April 1st, 2026Source

New DeepLoad Malware Dropped in ClickFix Attacks
The malware steals credentials, installs a malicious browser extension, and can spread via USB drives.
April 1st, 2026Source

North Korean hackers linked to Axios npm supply chain compromise
The software supply chain attack that resulted in the compromise of npm packages of Axios, an extremely popular HTTP client library, is believed to be the work of financially-motivated North Korean attackers.
April 1st, 2026Source or Source

Routine Access Is Powering Modern Intrusions, a New Threat Report Finds
Remote access and trusted administrative tools play a central role in how organizations operate today. According to Blackpoint Cyber's 2026 Annual Threat Report, they are also increasingly central to how intrusions begin.
April 1st, 2026Source

Shift-Left Isn't Enough: Why Security Governance Must Be Baked Into Your CI/CD Pipeline From Day One
Shift-left alone won't protect your pipeline. Learn all about how security governance, policy-as-code, and SBOMs create a CI/CD pipeline built to last.
April 1st, 2026Source

Single antenna can steal AI model blueprints through walls
The ModelSpy attack system reconstructs deep learning architectures from GPU electromagnetic emissions at up to six meters, even through walls.
April 1st, 2026Source

Slack's upgraded AI can analyze how you work
It's part of Salesforce's broader pivot to AI.
April 1st, 2026Source

UK manufacturers under cyber fire with 80% reporting attacks
ESET says factory outages, lost revenue, and supply chain disruption are becoming routine
April 1st, 2026Source

US Charges Uranium Crypto Exchange Hacker
Jonathan Spalletta exploited smart contract vulnerabilities to steal approximately $55 million in cryptocurrency and cause Uranium to shut down.
April 1st, 2026Source

Why Would a Business Need to Use a Proxy Server?
Proxy servers offer critical benefits in security and competitive intelligence, but they introduce new complications and risks.
April 1st, 2026Source

Internet — Security Issues — March 31st, 2026

95 percent of organizations don't trust their cybersecurity vendors
As businesses rely more and more on data, trust ought to be a defining factor in cybersecurity decision-making. Yet new research from Sophos reveals that nearly all organizations lack full confidence in their cybersecurity vendors, and many struggle to assess vendor trustworthiness in the first place.
March 31st, 2026Source

2026 SANS State of Identity Threats & Defenses
New research from the 2026 SANS Identity Threats & Defenses Survey shows that 55% of organizations experienced an identity-related compromise last year, while 26% reported MFA fatigue as a factor in identity attacks.
March 31st, 2026Source

All Google users in the US can now change their Gmail address
Your old email will still be available as an alternate address.
March 31st, 2026Source

Android developers just got a new verification layer
To help prevent malicious actors from spreading harmful apps while hiding behind anonymity, Google is rolling out developer verification to all Android developers. The company is also introducing app registration, which links apps to verified developer identities.
March 31st, 2026Source

Apple counters ClickFix attacks with macOS Terminal warning
Apple has added a new security feature in macOS Tahoe 26.4 that warns users before they enter commands in Terminal that could cause harm. The goal is to stop ClickFix attacks, a social engineering trick that gets users to run malicious commands themselves.
March 31st, 2026Source

Axios npm packages backdoored in supply chain attack
An unknown attacker has compromised the GitHub and npm accounts of the main developer of Axios, a widely used HTTP client library, and published npm packages backdoored with a malicious dependency that triggered the installation of droppers and remote access trojans.
March 31st, 2026Source

Censys Raises $70 Million for Internet Intelligence Platform
The latest funding round brings the total venture capital investment in Censys to $149 million.
March 31st, 2026Source

CISA orders feds to patch actively exploited Citrix flaw by Thursday
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered government agencies to patch their Citrix NetScaler appliances against an actively exploited vulnerability by Thursday.
March 31st, 2026Source

Cloudflare Adds Active API Vulnerability Scanning to Its Edge
Cloudflare has announced the open beta of its Web and API Vulnerability Scanner. This Dynamic Application Security Testing (DAST) tool is part of the API Shield platform. The first release focuses solely on Broken Object Level Authorization (BOLA), ranked first in the OWASP API Top 10. Future updates will expand to cover the wider OWASP Web Top 10, including SQL injection and cross-site scripting.
March 31st, 2026Source

Codenotary AgentMon monitors agentic AI activity and behavior
Codenotary launched AgentMon, an enterprise-grade monitoring designed specifically for agentic networks, providing organizations with real-time visibility into the security, performance and cost of AI-driven agents operating across the enterprise.
March 31st, 2026Source

CrewAI Vulnerabilities Expose Devices to Hacking
Attackers can exploit the bugs through prompt injection, chaining them together to escape the sandbox and execute arbitrary code.
March 31st, 2026Source

DoControl provides security coverage for Google Gemini Gems
DoControl announced new capabilities that provide visibility, monitoring, and automated control for Google Gemini Gems, a newly introduced feature within Google Gemini that enables teams to create customizable AI GPTs.
March 31st, 2026Source

Dutch Finance Ministry takes treasury banking portal offline after breach
The Dutch Ministry of Finance took some of its systems offline, including the digital portal for treasury banking, while investigating a cyberattack detected two weeks ago.
March 31st, 2026Source

EtherHiding: The trojan in your toolchain
The Canadian Centre for Cyber Security (Cyber Centre) is actively tracking a campaign exploiting blockchain technology to covertly host and distribute malware . This campaign leverages a technique known as EtherHiding.
March 31st, 2026Source

Event-Driven Patterns for Cloud-Native Banking: Lessons from What Works and What Hurts
When discussing event-driven architectures in the context of cloud platforms and highly regulated industries, it helps to start with a shared foundation. This topic attracts people with very different backgrounds, from engineers who have lived through the realities of distributed systems to those encountering these ideas for the first time. That shared foundation matters because event-driven architecture introduces concepts that sound simple at first, but are easy to misuse if they are not clearly understood from the outset.
March 31st, 2026Source

EvilTokens ramps up device code phishing targeting Microsoft 365 users
Security researchers report a notable increase in device code phishing activity aimed at Microsoft 365 users, and have attributed this rise to the availability of EvilTokens, a new, specialized phishing toolkit that's being offered as-a-service via Telegram.
March 31st, 2026Source

Exploitation of Critical Fortinet FortiClient EMS Flaw Begins
The SQL injection vulnerability allows unauthenticated attackers to execute arbitrary code remotely, via crafted HTTP requests.
March 31st, 2026Source

Failure As a Means to Build Resilient Software Systems: A Conversation with Lorin Hochstein
In this podcast Michael Stiefel spoke to Lorin Hochstein about how real-world failures provide insight into how software systems actually work. Our first topic was understanding that while automated fault injection tools can introduce basic robustness into a system, they cannot replicate the understanding that comes from mitigating complicated software failures in the real world. We then pondered how do we get this information to software architects so that they can learn from failure. Ironically, in reliable systems, adding more reliability can often lead to complexity which can lead to new failures.
March 31st, 2026Source

Foxit flags hidden security risks in PDFs with new tool
The update is led by PDF Action Inspector, a new tool that proactively scans documents for embedded JavaScript and self-modifying behaviors — threats that can bypass redaction, expose sensitive data, or alter document output without detection. As organizations rely on PDFs to share critical infrastructure, these risks have become a growing but often overlooked attack surface.
March 31st, 2026Source

Google Drive now detects ransomware and auto-restores your files
No more paying hackers to restore your data.
March 31st, 2026Source

Google Slashes Quantum Resource Requirements for Breaking Cryptocurrency Encryption
Google researchers have shown that breaking the encryption of Bitcoin and Ethereum requires 20x fewer qubits.
March 31st, 2026Source

Hacker charged with stealing $53 million from Uranium crypto exchange
U.S. prosecutors have charged a Maryland man with stealing more than $53 million after hacking the Uranium Finance crypto exchange twice and laundering the proceeds through a cryptocurrency mixer.
March 31st, 2026Source

Hacker stripped more than $50 million from Uranium crypto exchange, spent it on trading cards
US prosecutors have charged a Maryland man in connection with two hacks of the Uranium Finance cryptocurrency exchange that led to losses exceeding $50 million.
March 31st, 2026Source

Hackers compromise Axios npm package to drop cross-platform malware
Hackers hijacked the npm account of the Axios package, a JavaScript HTTP client with 100M+ weekly downloads, to deliver remote access trojans to Linux, Windows, and macOS systems.
March 31st, 2026Source

Hackers Shun Malware for Social Engineering in Recent Trends
It's good to know systems are more secure, but humans remain the weakest link in the chain.
March 31st, 2026Source

Health data giant CareCloud says hackers accessed patients' medical records
Healthcare technology giant CareCloud has confirmed that hackers accessed one of its stores of patients' electronic health records during a data breach earlier this month.
March 31st, 2026Source

How to Categorize AI Agents and Prioritize Risk
AI is entering a new phase. Enterprises have been experimenting with AI through chatbots and copilots that answered questions or summarized information. Now, the shift is toward implementing AI agents that can reason, plan, and take actions across enterprise systems on behalf of users or organizations.
March 31st, 2026Source

Iran's hackers are on the offensive against the US and Israel
Tehran hopes to stoke fear and extract intel in a series of cyber attacks.
March 31st, 2026Source

Lloyds Data Security Incident Impacts 450,000 Individuals
A faulty software update led to the exposure of mobile banking users' transactions to other users of the application.
March 31st, 2026Source

Meta reportedly tests way to secretly watch Instagram stories
It's a limited test right now.
March 31st, 2026Source

National Cyber Resilience Demands Unified Defense
UK NCSC's Richard Horne on Strengthening Cyber Defense and Incident Response
March 31st, 2026Source or Source or Source or Source

New Bitdefender assessment helps organizations identify and eliminate hidden internal attack paths
Bitdefender has announced the Bitdefender Internal Attack Surface Assessment, a complimentary evaluation that helps organizations identify and reduce hidden internal cyber risks caused by unnecessary user access to applications, tools, and operating system utilities commonly exploited in attacks. The assessment provides organizations with a data-driven view of their internal attack surface and offers actionable guidance to help prioritize and remediate exposure.
March 31st, 2026Source

North Korean hackers blamed for hijacking popular Axios open source project to spread malware
A suspected North Korean hacker has hijacked and modified a popular open source software development tool to deliver malware that could put millions of developers at risk of being compromised.
March 31st, 2026Source

One of JavaScript's most popular libraries compromised by hackers — Axios npm package hit in supply chain attack that deployed a cross-platform RAT
The hijacked maintainer account was used to publish two malicious versions of one of JavaScript's most popular libraries.
March 31st, 2026Source

Rspamd 4.0.0 ships memory savings, a new scan protocol, and a required migration step
The open-source spam filtering platform Rspamd released version 4.0.0, delivering infrastructure changes across its scan protocol, memory model, hash storage, and configuration system. Several of the changes are breaking, and at least one requires a migration step before upgrade.
March 31st, 2026Source

Supply chain blast: Top npm package backdoored to drop dirty RAT on dev machines
Hijacked maintainer account let attackers slip cross-platform trojan into 100M-downloads-a-week Axios
March 31st, 2026Source

Stolen Logins Are Fueling Everything From Ransomware to Nation-State Cyberattacks
Report shows how industrialized credential theft underpins ransomware, SaaS breaches, and geopolitical attacks, shifting security focus from prevention to detecting misuse of legitimate access.
March 31st, 2026Source

StrongSwan Flaw Allows Unauthenticated Attackers to Crash VPNs
Remotely exploitable, the integer underflow vulnerability impacts StrongSwan releases spanning 15 years.
March 31st, 2026Source

TeamPCP Moves From OSS to AWS Environments
After validating stolen credentials using TruffleHog, the hacking group started AWS services enumeration and lateral movement activities.
March 31st, 2026Source

The Next Cybersecurity Crisis Isn't Breaches—It's Data You Can't Trust
Data integrity shouldn't be seen only through the prism of a technical concern but also as a leadership issue.
March 31st, 2026Source

Venom Stealer Raises Stakes With Continuous Credential Harvesting
Licensed malware with built-in persistence and automation enables attackers to continuously siphon credentials, session data, and cryptocurrency assets.
March 31st, 2026Source

Vibrations in your skull may be your next password
A team led by Rutgers University researchers has developed a security system that could change how people log in to virtual and augmented reality platforms by eliminating passwords, personal identification numbers and eye scans and replacing them with something far more seamless.
March 31st, 2026Source or Source

Why 'Emerging Threats' Are Harder to Prioritize in the AI Era
Increased Speed, Scale and Automation Overwhelm Security Teams, Strategies
March 31st, 2026Source

Internet — Security Issues — March 24th, 2026

32% of top-exploited vulnerabilities are over a decade old
Exploitation timelines continued to compress in enterprise environments, with newly disclosed flaws reaching active use almost immediately and older weaknesses remaining active years after disclosure.
March 24th, 2026Source

99 percent of organizations hit by SaaS or AI security incidents
A new report finds that 99.4 percent of 500 US CISOs surveyed experienced at least one SaaS or AI ecosystem security incident in 2025, with only three of the 500 reporting zero incidents. At the same time, 89.2 percent claim strong or comprehensive OAuth token governance, while 77 percent report comprehensive behavioral monitoring.
March 24th, 2026Source

3.1 Million Impacted by QualDerm Data Breach
Hackers stole personal, medical, and health insurance information from the company's internal systems.
March 24th, 2026Source

Amnezia Has a New VPN Protocol to Stay a Step Ahead of Censors
The Cyprus-based company is implementing a new technique for keeping Iranians, Russians and others online.
March 24th, 2026Source

Chinese military-linked companies dominate US digital supply chain
Despite growing national security concerns and government restrictions, Chinese military-linked companies remain deeply embedded in the US digital supply chain, according to Bitsight.
March 24th, 2026Source

Critical Citrix NetScaler Vulnerability Poised for Exploitation, Security Firms Warn
An out-of-bounds read vulnerability can be exploited remotely without authentication to read sensitive information from memory.
March 24th, 2026Source

Critical NetScaler ADC, Gateway flaw may soon be exploited (CVE-2026-3055)
Citrix has fixed two vulnerabilities in NetScaler ADC and NetScaler Gateway, with the more serious flaw (CVE-2026-3055) potentially allowing attackers to extract active session tokens from the memory of affected devices.
March 24th, 2026Source

Darktrace expands MSSP offering with AI-driven managed email security
Darktrace has launched its managed security service for MSSPs, enabling partners to deliver AI-native email security with real-time detection, investigation, and response across the email ecosystem.
March 24th, 2026Source

DDoS attacks increase 150 percent year-on-year
Last year saw a surge in DDoS attacks, driven by new automated attack capabilities along with increased scale and frequency according to a new report from Gcore. Attack volumes surged to 12 Tbps in Q4 of 2025, representing a sixfold increase and highlighting unprecedented growth in attack capabilities.
March 24th, 2026Source

Detectify uncovers hidden assets and risks across entire IP ranges
Detectify has launched IP Range Scanning, enabling continuous discovery and monitoring of entire IP address blocks to help security teams identify forgotten assets and hidden risks before attackers exploit them.
March 24th, 2026Source

Dutch Ministry of Finance discloses breach affecting employees
The Dutch Ministry of Finance confirmed on Monday that some of its systems were breached in a cyberattack detected last week.
March 24th, 2026Source

Everything You Need to Know About the New Firefox Browser VPN
The next version of Mozilla's Firefox will offer a free built-in VPN.
March 24th, 2026Source

Extortion Group Claims It Hacked AstraZeneca
The Lapsus$ hackers allegedly compromised internal code repositories, credentials, and employee data.
March 24th, 2026Source

FCC bans import of new consumer routers made overseas, citing security risks
The Federal Communications Commission has ordered a ban on the import of new consumer routers that are manufactured overseas, citing cybersecurity risks.
March 24th, 2026Source or Source

HackerOne discloses employee data breach after Navia hack
Bug bounty platform HackerOne is notifying hundreds of employees that their data was stolen after attackers hacked Navia, one of its U.S. benefits administrators.
March 24th, 2026Source

How the AI Era Is Reshaping Data Protection
Google's Kristie Chon Flynn on Building Privacy Into the AI Development Life Cycle
March 24th, 2026Source or Source or Source or Source

Infinite Campus warns of breach after ShinyHunters claims data theft
Infinite Campus, a widely used K-12 student information system, is warning customers of a data breach following an extortion attempt by a threat actor.
March 24th, 2026Source

Iran Built a Vast Camera Network to Control Dissent. Israel Turned It Into a Targeting Tool
The role of Israel's hijacking of Iran's street cameras in the killing of the country's supreme leader underscores how surveillance systems are increasingly being targeted by adversaries in wartime.
March 24th, 2026Source

Leaked DarkSword iPhone Hack Is 'Extremely Worrisome.' How to Secure Your Phone Now
This is what Apple, cybersecurity professionals and CNET's iOS experts recommend you do to keep your data safe.
March 24th, 2026Source

Mazda Says Employee, Partner Information Stolen in Cyberattack
The hackers stole internal IDs, names, email addresses, and business partner IDs from an internal management system.
March 24th, 2026Source

Microsoft details AI prompt abuse techniques targeting AI assistants
Prompt abuse occurs when crafted inputs manipulate an AI system into producing unintended behavior, such as attempting to access sensitive information or overriding built-in safety instructions.
March 24th, 2026Source

Microsoft finally rolls out redesigned Outlook contact profiles
These changes bring smarter search, color-coding, and filters that let Microsoft 365 users find contacts by name, job title, department, city, or personal notes.
March 24th, 2026Source

Mimecast expands Incydr with runtime data security for AI and human risk
Mimecast has announced a major expansion of its Incydr offering with new data security capabilities and a preview of the Agent Risk Center. These enhancements deliver runtime data security through a unified approach to detect, govern, and remediate data exposure in real time, whether driven by employees or agents acting on their behalf.
March 24th, 2026Source

New 'StoatWaffle' malware auto-executes attacks on developers
The newly observed malware abuses VS Code's "runOn:folderOpen" feature to execute automatically from trusted projects, enabling near-frictionless compromise.
March 24th, 2026Source

Novee introduces autonomous AI red teaming to hunt LLM vulnerabilities
Novee today introduced AI Red Teaming for LLM Applications for its AI penetration testing platform, designed to uncover security vulnerabilities in LLM-powered applications before attackers can exploit them.
March 24th, 2026Source

Over 14,000 Routers Were Hijacked In Malicious Global Cyberattack
More than 14,000 routers have been compromised in one of 2026's most widespread cyberattacks so far. Mostly targeting Asus routers, the malware known as KadNap is taking devices and turning them into a botnet for large-scale attacks. Worse, the threat has no end in sight. Cybersecurity experts say KadNap is totally decentralized, so it's hard to detect and even harder to stop. Instead of one central command center, the activity's being split up over all 14,000+ devices. This peer-to-peer setup also lets the botnet blend into normal internet traffic. That way, any malicious activity just looks like routine browsing behavior.
March 24th, 2026Source

Physicists just turned glass into a powerful quantum security device
A laser-written glass chip may be the key to unlocking fast, secure quantum communication in the real world.
March 24th, 2026Source

RSAC 2026 Conference Announcements Summary (Day 1)
A summary of the announcements made by vendors on the first day of the RSAC 2026 Conference.
March 24th, 2026Source

Russian initial access broker helped ransomware gangs extort millions, sentenced to 81 months
A Russian citizen, Aleksei Volkov, was sentenced to 81 months in prison for helping ransomware groups carry out attacks causing over $9 million in actual losses and over $24 million in intended losses, after being arrested in Italy and extradited to the United States where he pleaded guilty.
March 24th, 2026Source

Russian initial access broker who fed ransomware crews gets 81 months in US prison
Aleksei Volkov sentenced after enabling attacks that cost victims millions
March 24th, 2026Source

Russia Launches First 16 Satellites for Starlink Competitor Constellation
Too little too late?
March 24th, 2026Source

Security teams struggle as cyberattacks become industrialized
A new threat report from SentinelOne shows threat actors are no longer simply focused on gaining access. They are moving beyond initial breaches to systematically abuse the trusted identity systems, infrastructure, and automation systems that power the modern enterprise.
March 24th, 2026Source

Self-propagating malware poisons open source software and wipes Iran-based machines
Development houses: It's time to check your networks for infections.
March 24th, 2026Source

Sensor chips help identify deepfakes by adding cryptographic signatures to camera data
AI-generated images and videos pose a threat to democratic processes and undermine trust within society. Researchers at ETH Zurich have now developed chip technology that enables verification of the authenticity of sensor data including images or videos.
March 24th, 2026Source

Stop Outlook meddling in your search results
When you search for emails, Outlook tries to "guess" what you're looking for. Fortunately, if you prefer a chronological list, you can turn off this feature.
March 24th, 2026Source

Stryker Says Malicious File Found During Probe Into Iran-Linked Attack
The FBI has published an alert describing the malware used by Iranian government hackers.
March 24th, 2026Source

The AI safety conversation is focused on the wrong layer
Organizations have spent years accumulating fragmented identity systems: too many roles, too many credentials, too many disconnected tools. For a workforce of humans, that fragmentation was manageable. Humans log in, log out, and make decisions slowly enough that gaps in control rarely turned into immediate incidents. AI agents operate differently.
March 24th, 2026Source

The DarkSword iPhone exploit has just leaked entirely on GitHub
A powerful hacking tool designed to break into Apple devices just surfaced on the open internet. Security researchers discovered that the source code for an exploit known as DarkSword was uploaded directly to GitHub earlier this week. This massive leak makes the complicated software freely available for anyone to download, copy, and study.
March 24th, 2026Source

The End of Static Security: Why AI Demands Real-Time Microsegmentation
Akamai's Ofer Wolf on AI, Segmentation and Threat Detection
March 24th, 2026Source or Source or Source

Uncle Sam closes the door on all new foreign-made routers
The US Federal Communications Commission (FCC) has imposed a ban on all new routers manufactured overseas being imported into and sold within the United States.
March 24th, 2026Source

U.S. bans import of routers due to "severe cybersecurity risks"
The FCC has banned imports of foreign routers over national security risks, a move aligned with Trump's strategy that could disrupt 60% of the U.S.
March 24th, 2026Source

Why AI Adoption Starts With Security
Meerah Rajavel of Palo Alto Networks on AI Security, Governance and Use-Case Fit
March 24th, 2026Source or Source or Source

Yanluowang ransomware access broker gets 81 months in prison
A Russian national was sentenced to nearly 7 years in prison after pleading guilty to acting as an initial access broker (IAB) for Yanluowang ransomware attacks.
March 24th, 2026Source

Zero Trust: Bridging the Gap Between Authentication and Trust
The traditional concept of a "secure perimeter" has effectively evaporated. As the workforce has transitioned from centralized offices to a hybrid model spanning kitchen tables, coffee shops, and co-working spaces, the old way of defending the network has become obsolete. Organizations can no longer rely on the assumption that anything inside the corporate network is "safe" and everything outside is "hostile."
March 24th, 2026Source

Internet — Security Issues — March 22nd, 2026

Russians are posing as Signal support to launch phishing attacks
PLUS: US takes down Iranian propaganda sites; Marketing company asks 'Why Do We Have Your Information?' And more!
March 22nd, 2026Source

The FBI Just Issued A Warning About A Hidden Threat In Your Home Wi-Fi Network
In an increasingly interconnected, digital world, it's essential to make the right choices for your security on the Internet. There are good habits to get into to improve online safety, and you should keep your ear to the ground to know when a new threat has emerged or become more prevalent. For example, the Federal Bureau of Investigation recently warned that something as seemingly safe and secure as a home or small business Wi-Fi network could be in danger. This increasingly common criminal threat is known as a residential proxy, and the implications of being victimized by one are no small matter.
March 22nd, 2026Source

Week in review: ScreenConnect servers open to attack, exploited Microsoft SharePoint flaw
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
March 22nd, 2026Source

Internet — Security Issues — March 21st, 2026

Critical Quest KACE Vulnerability Potentially Exploited in Attacks
The vulnerability is tracked as CVE-2025-32975 and it may have been exploited in attacks against the education sector.
March 21st, 2026Source

Microsoft Azure Monitor alerts abused for callback phishing attacks
Microsoft Azure Monitor alerts are being abused to send callback phishing emails that impersonate warnings from the Microsoft Security Team about unauthorized charges on your account.
March 21st, 2026Source

US Departments of Justice and Defense crush four massive botnets totaling 3,000,000 devices — botnets responsible for a combined 316,000 DDoS attacks globally
The U.S. Department of Justice (DoJ) and its network of partners are on quite a roll lately, scoring the third botnet takedown in this calendar month alone. Not content with putting a stake through the hearts of LeakBase and SocksEscort, the DoJ brought offline the combination of networks known as Aisuru, Kimwolf, JackSkid, and Mossad.
March 21st, 2026Source

Internet — Security Issues — March 20th, 2026

3 Men Charged With Conspiring to Smuggle US Artificial Intelligence to China
The men violated U.S. export controls laws by scheming to divert massive quantities of the high-performance servers assembled in the United States to China.
March 20th, 2026Source

4 ways to surf anonymously on your work PC
Worried that your personal activity might be visible on your work computer? Here are four tips to help protect your privacy.
March 20th, 2026Source

5 Best Password Managers for Teams (Free & Paid) in 2026
Check out the top password managers for teams in 2026, including their pricing, standout features, and pros and cons.
March 20th, 2026Source

6 Best Open Source Password Managers for Windows in 2026
Discover the best open-source password managers for Windows in 2026, and compare their features to find the right fit for your needs.
March 20th, 2026Source

A French Navy officer accidentally leaked the location of an aircraft carrier by logging his run on Strava
A French Navy officer went for a run on the deck of the Charles de Gaulle aircraft carrier and uploaded his workout to Strava, inadvertently leaking the location of the nuclear-powered warship as it heads to the Middle East.
March 20th, 2026Source

AI Analysis Reveals Future Job Security, Pitchers Use AI to Study, Best Spring Travel Gadgets| Tech Today
AI Analysis Reveals Future Job Security, Pitchers Use AI to Study, Best Spring Travel Gadgets| Tech Today
March 20th, 2026Source

AI optimization: How we cut energy costs in social media recommendation systems
Your endless scrolling is an energy vacuum, but "lazy logging" and cutting useless data features are finally reining in AI's massive carbon footprint.
March 20th, 2026Source

AI shows promise for flood forecasting and water security in data scarce regions
New research reveals that "foundation models" trained on vast, general time-series data may be able to forecast river flows accurately, even in regions with little or no local hydrological records. The approach could improve flood warnings, drought planning and water-resource management in parts of the world where monitoring data is limited.
March 20th, 2026Source

Aisuru, KimWolf Botnets Disrupted in International Operation
No Arrests, But Virtual Servers, IP Addresses Seized and Residencies Searched
March 20th, 2026Source or Source or Source or Source or Source

Allure Security Raises $17 Million for Online Brand Protection
The company will invest in expanding its digital brand protection platform and in scaling its go-to-market efforts.
March 20th, 2026Source

Android's New Advanced Flow: How To Sideload Apps After Google's 2026 Security Update
Android's most diehard fans were less than pleased when Google announced plans to limit the sideloading of apps, in an effort to create a more secure platform. The backlash from power users was immediate, with the developers behind the popular third-party app store F-Droid penning a scathing letter denouncing the coming clampdown. Today, fans can breathe a sigh of relief as the company has laid out how it plans to move forward with security best practices while also maintaining Android's openness.
March 20th, 2026Source

Authorities disrupt four IoT botnets behind record DDoS attacks
The U.S. Justice Department and international partners have disrupted four IoT botnets linked to DDoS attacks that reached 30 terabits per second, among the largest ever recorded.
March 20th, 2026Source

Best Cheap Home Security Systems for 2026: Safety Savings
These budget security kits performed well in my tests and can help protect a home while saving you some cash.
March 20th, 2026Source

Bonfy ACS 2.0 helps organizations control data use in AI environments
Bonfy.AI announced Bonfy Adaptive Content Security (Bonfy ACS) 2.0, a platform built to secure enterprise content across all systems, applications, and AI agents -- anywhere data moves, resides, or is processed.
March 20th, 2026Source

Cape Raises $100 Million for Protection Against Cellular Security Threats
Cape offers a privacy-focused mobile virtual network operator (MVNO) service for consumers, enterprises, and governments.
March 20th, 2026Source

CISA orders feds to patch max-severity Cisco flaw by Sunday
The Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity vulnerability, CVE-2026-20131, in Cisco Secure Firewall Management Center (FMC) by Sunday, March 22.
March 20th, 2026Source

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131)
A critical vulnerability (CVE-2026-20131) in Cisco Secure Firewall Management Center (FMC) that Cisco disclosed and patched in early March 2026 has been exploited as a zero-day by the Interlock ransomware gang, Amazon CISO and VP of Security Engineering CJ Moses revealed.
March 20th, 2026Source

ConductorOne unveils AI Access Management to accelerate secure, compliant AI adoption
ConductorOne has announced its AI Access Management product extension, a unified control plane for managing access to AI tools, agents, and MCP connections across the enterprise. The platform enables organizations to accelerate AI adoption while maintaining full visibility, policy enforcement, and compliance.
March 20th, 2026Source

Critical Langflow Vulnerability Exploited Hours After Public Disclosure
Because attacker-supplied flow data is used in public flows, the bug leads to unauthenticated remote code execution.
March 20th, 2026Source

Cyberattack on vehicle breathalyzer company leaves drivers stranded across the US
A cyberattack on a U.S. vehicle breathalyzer company has left drivers across the United States stranded and unable to start their vehicles.
March 20th, 2026Source

DuckDuckGo VPN review: Strong privacy, but missing key features
DuckDuckGo VPN offers solid speeds, strong privacy features and easy browser integration, but limited servers and missing tools like a kill switch hold it back from the best VPNs.
March 20th, 2026Source

Eclypsium Raises $25 Million for Device Supply Chain Security
The company will use the investment to expand its platform's capabilities and grow channel partnerships.
March 20th, 2026Source

Engineers devise a way to prevent manufacturing shutdowns during cyberattacks
A professor of mechanical and aerospace engineering and a team of Rutgers students are proposing a means to defend manufacturers from cyberattacks—and ensure the uninterrupted production of mission-critical national security and infrastructure parts. Rajiv Malhotra, an associate professor in the Rutgers School of Engineering Department of Mechanical and Aerospace Engineering, proposes using a digital twin framework to improve manufacturing resilience from cyberattacks.
March 20th, 2026Source

Fake AI songs streamed billions of times, netting fraudster $10 million
Michael Smith, 54, of Cornelius, North Carolina, has pleaded guilty in federal court to running a scheme that exploited music streaming platforms and diverted royalty payments from artists. He admitted to one count of conspiracy to commit wire fraud, which carries a maximum sentence of five years in prison, and agreed to forfeit $8,091,843.64.
March 20th, 2026Source

Fake 'Trusted Sender' Labels Misused in New Apple Mail Phishing Scheme
Fake "trusted sender" labels can mislead users, as scammers embed them into email bodies to disguise phishing emails and create a false sense of security.
March 20th, 2026Source

Fastest VPN of 2026: Improve Your Privacy Without Sacrificing Speed
The fastest VPNs let you stream movies, play online games and browse the web without making your internet connection unusably slow.
March 20th, 2026Source

FBI admits buying Americans' location tracking data
During the Senate Intelligence Committee's annual Worldwide Threats hearing on Wednesday, FBI Director Kash Patel told lawmakers that the bureau purchases commercially available information that can track the movement and location history of individuals in the United States.
March 20th, 2026Source

FBI links Signal phishing attacks to Russian intelligence services
The FBI has issued a public service announcement warning that Russian intelligence-linked threat actors are actively targeting users of encrypted messaging apps such as Signal and WhatsApp in phishing campaigns that have already compromised thousands of accounts.
March 20th, 2026Source

Feds Dismantle Botnets That Launched The Largest DDoS Attacks Ever Recorded
Law enforcement agencies have scored a major win against the world's most predatory botnet operations, dismantling the infrastructure of four major networks responsible for some of the most aggressive cyberattacks in internet history. The coordinated operation, led by the U.S. Department of Justice alongside authorities in Canada and Germany, successfully neutralized the command-and-control systems of the Aisuru, Kimwolf, JackSkid, and Mossad botnets.
March 20th, 2026Source

Feds disrupt monster IoT botnets behind record-breaking DDoS attacks
Millions of hijacked devices powered traffic floods targeting defense systems and beyond
March 20th, 2026Source

Gacha game hacked to deliver spyware, offers free pulls as an apology
If you play Duet Night Abyss on Windows, maybe change all your passwords before you feed the digital slot machine.
March 20th, 2026Source

Google shares 5 tools to help avoid tax scams
Here's what the search giant is doing to combat tax season scams.
March 20th, 2026Source

Google slows Android sideloading to trip up scammers
Google's advanced flow for Android changes how apps from unverified developers are installed, adding steps to reduce scam-driven sideloading.
March 20th, 2026Source

Here's how not to leak military information with your Strava run
This keeps happening, despite some easy fixes.
March 20th, 2026Source

How CISOs Can Survive the Era of Geopolitical Cyberattacks
Geopolitical tensions are increasingly spilling into cyberspace. For CISOs, that means preparing for attacks that are not motivated by money but by disruption.
March 20th, 2026Source

I Get My Password Manager for Free. Here's How You Can Get One That's Cheap or Free
Free tiers, cheap upgrades and a few pricing tricks can keep your password-manager bill low.
March 20th, 2026Source

In Other News: New Android Safeguards, Operation Alice, UK Toughens Cyber Reporting
Other noteworthy stories that might have slipped under the radar: vulnerabilities found in KVM devices, Claudy Day Claude vulnerabilities, The Gentlemen ransomware group.
March 20th, 2026Source

Inside the Growing 'Cyber Invasion' Targeting the US
Former DoD CIO Leslie Beavers on Nation-State Attacks and Defense
March 20th, 2026Source

ISMG Editors: Stryker Attack Hits Healthcare Supply Chain
Also: CISA Protocol Concerns, AI Agents Push Past Cybersecurity Controls
March 20th, 2026Source or Source or Source or Source

Jaguar Land Rover's cyber bailout sets worrying precedent, watchdog warns
Lack of clear criteria risks encouraging firms to lean on state support instead of worrying about insurance
March 20th, 2026Source

Modern Best Practices for Web Security Using AI and Automation
AI-driven security boosts threat detection, automates response, and enhances proactive defenses for smarter, faster, and safer cybersecurity operations.
March 20th, 2026Source

Multi-Month Cyberespionage Campaign Hits Libyan Oil Refinery
Phishing Campaign Used AsyncRAT to Maintain Long-Term Network Access
March 20th, 2026Source or Source or Source or Source

Musician admits to $10M streaming royalty fraud using AI bots
North Carolina musician Michael Smith has pleaded guilty to collecting over $10 million in royalty payments through a massive streaming royalty fraud scheme on Spotify, Apple Music, Amazon Music, and YouTube Music.
March 20th, 2026Source

Navia Data Breach Impacts 2.7 Million
Between late December 2025 and mid-January 2026, hackers stole personal and health plan information from Navia's environment.
March 20th, 2026Source

Next Week's Firefox Update Will Incorporate Free Built‑In VPN, Split‑Screen Browsing
On March 24, Mozilla will roll out Firefox 149, which will bring a free, built-in VPN‑style tool and a native split‑screen mode to the browser. The VPN will route Firefox traffic through remote servers, so websites see the server's IP address instead of yours. Reports say the free tier will include a 50GB monthly data cap.
March 20th, 2026Source

Oracle pushes emergency fix for critical Identity Manager RCE flaw
Oracle has released an out-of-band security update to fix a critical unauthenticated remote code execution vulnerability in Identity Manager and Web Services Manager tracked as CVE-2026-21992.
March 20th, 2026Source

Pentesting is prioritized but only 32 percent of attack surfaces are tested
While 95 percent of organizations say they rank pentesting as a top priority, they are currently testing only 32 percent of their global attack surface on average according to a new study.
March 20th, 2026Source

Police take down 373,000 fake CSAM sites in Operation Alice
An international law enforcement action called Operation Alice has shut down over 373,000 dark web sites that offered fake CSAM packages.
March 20th, 2026Source

Quantum cryptography pioneers win Turing Award for unhackable encryption breakthrough
Charles Bennett and Gilles Brassard's 1984 breakthrough now underpins efforts to secure data from future quantum attacks
March 20th, 2026Source

Rapid7 enhances Exposure Command with runtime validation and DSPM for risk analysis
Rapid7 has unveiled new cloud security capabilities within Exposure Command. The introduction of runtime validation and Data Security Posture Management (DSPM) enables organizations to identify, validate, and prioritize exploitable risks based on real-world attack paths and business impact.
March 20th, 2026Source

Secrets Management With Infisical and External Secrets Operator
No secrets in Git, but GitOps needs secrets. Learn how to use Infisical with the External Secrets Operator to bridge the gap in Kubernetes.
March 20th, 2026Source

Semgrep Multimodal brings AI reasoning and rule-based analysis to code security
Semgrep announced Semgrep Multimodal, a system that combines AI reasoning with rule-based analysis for detection, triage, and remediation.
March 20th, 2026Source

Terminated contract led to $2.5 million cyber extortion scheme
A federal jury convicted Cameron Curry, 27, a Charlotte resident, of carrying out an extensive cyber extortion scheme targeting a Washington, D.C.-based international technology company. He faces up to two years in prison on each of the six charges.
March 20th, 2026Source

Texas Gov. Orders State Review of Chinese-Made Medtech
Contec and Epsimed Monitors Containing 'Backdoors' Are at the Center of Order
March 20th, 2026Source or Source or Source or Source

Thousands of Magento Sites Hit in Ongoing Defacement Campaign
The attacks started on February 27 and have targeted e-commerce platforms, global brands, and government services.
March 20th, 2026Source

Unpatched ScreenConnect servers open to attack (CVE-2026-3564)
ConnectWise has patched a critical vulnerability (CVE-2026-3564) that could enable attackers to hijack ScreenConnect sessions by abusing ASP.NET machine keys to forge trusted authentication.
March 20th, 2026Source

Unwanted Scam Calls Are Out of Control, But One Strategy Can Silence Them
It is possible to make sure annoying unsolicited phones calls don't disrupt your day.
March 20th, 2026Source

US accuses Iran's government of operating hacktivist group that hacked Stryker
The U.S. Justice Department accused Iran's government of being behind the hacktivist group Handala, which last week claimed responsibility for the destructive cyberattack against the U.S. medical tech giant Stryker.
March 20th, 2026Source

US Confirms Handala Link to Iran Government Amid Takedown of Hackers' Sites
The US has seized several domains used by Handala in cyber-enabled psychological operations.
March 20th, 2026Source

White House AI Policy Blueprint Leaves Key Risks Unresolved
Federal Proposal Pushes AI Adoption While Avoiding Regulatory Detail
March 20th, 2026Source or Source or Source

Internet — Security Issues — March 18th, 2026

7 Tested Upgrades to Stop Porch Pirates and Package Theft Right Now
These tricks help protect your packages from all kinds of mischief, especially during Amazon's big sales.
March 18th, 2026Source

Almost half of manufacturers fail to revoke old credentials
New research from Pathlock finds that nearly half (48 percent) of manufacturers fail to revoke access within 24 hours of a role change or departure. During spring production ramp-ups, when organizations are rapidly onboarding temporary workers, contractors, and third-party system integrators -- many with privileged access -- the impact of delay can compound fast.
March 18th, 2026Source

Apple Debuts Background Security Improvements With Fresh WebKit Patches
The lightweight updates are meant to deliver security protections between security updates.
March 18th, 2026Source

Apple starts issuing lightweight security updates between software releases
Apple is delivering small security updates, called Background Security Improvements, starting with iOS 26.1, iPadOS 26.1, and macOS 26.1.
March 18th, 2026Source

Backslash adds cross-product support to secure AI skills in developer environments
Backslash Security has revealed new cross-product support for agentic AI Skills within its platform, enabling organizations to discover, assess, and apply security guardrails to Skills used across AI-native software development environments.
March 18th, 2026Source

Cloud Security Startup Native Exits Stealth With $42 Million in Funding
Phil Venables, former CISO of Google Cloud and now a venture partner at Ballistic Ventures, has joined Native's board of directors.
March 18th, 2026Source

Corelight's Agentic Triage turns SOC alerts into evidence-backed investigations
Corelight has introduced a new set of agentic AI capabilities aimed at helping security operations centers (SOCs) cut down on repetitive, time-consuming tasks. The updates are designed to boost analyst efficiency, speed up response times, and build trust through greater transparency.
March 18th, 2026Source

DOD says Anthropic's 'red lines' make it an 'unacceptable risk to national security'
The U.S. Department of Defense said on Tuesday evening that Anthropic poses an "unacceptable risk to national security," marking the agency's first rebuttal to the AI lab's lawsuits challenging Defense Secretary Pete Hegseth's decision last month to label the company a supply-chain risk. As part of its complaints, Anthropic had requested the court temporarily block the DOD from enforcing its label.
March 18th, 2026Source

Dropzone AI releases autonomous Threat Hunting agent for continuous SOC detection
Dropzone AI has released the AI Threat Hunter, its newest AI agent that enables security teams to proactively search for threats across their environments around the clock. The AI Threat Hunter is the next agent joining the Dropzone's Agentic SOC team, expanding what AI agents can do across the full spectrum of detection and response.
March 18th, 2026Source

EPT security update for Qubes OS
A vulnerability in the Intel EPT paging code allows attackers to access unintended memory regions due to transiently cached freed pages. This bulletin impacts Qubes OS systems running on x86 Intel hardware where stale entries could point to memory ranges not owned by the guest. Users must apply standard updates to install specific Xen packages like version 4.17.6-3 or 4.19.4-5 based on their Qubes version. After a Dom0 restart, Anti Evil Maid users will need to reseal their secret passphrase as PCR values change due to new Xen binaries.
March 18th, 2026Source

EU Sanctions Chinese, Iranian Firms Supporting Hacking Operations
The sanctions target two Chinese individuals, two Chinese companies, and one Iranian firm involved in hacking EU member states.
March 18th, 2026Source

Firefox is getting a free built-in VPN
Mozilla is adding a free built-in VPN to Firefox, with the feature arriving in Firefox 149 on March 24.
March 18th, 2026Source

From demons to mega behemoths: How 'monstrous' scam networks are growing
New research led by the University of Portsmouth uncovers how scammers operate worldwide, dividing them into five "monstrous" categories. Published in the International Journal of Law, Crime and Justice, the study explores how the size of scam groups, specialized roles, and involvement of corrupt actors help scams work more effectively.
March 18th, 2026Source

Graylog advances explainable AI and automated workflows for faster threat detection
Graylog has revealed advances in explainable AI and automated investigation workflows that help small-to-mid-sized security teams detect threats faster, investigate with confidence, and cut the manual documentation work that consumes analyst time.
March 18th, 2026Source

Iran's cyberattack against med tech firm is 'just the beginning'
Even without a navy, or air power, 'They'll still have the ability to hack'
March 18th, 2026Source

Iranian Hackers Likely Used Malware-Stolen Credentials in Stryker Breach
The medtech giant has been working on restoring systems affected by the cyberattack conducted by the Handala hackers.
March 18th, 2026Source

Man says wife stole $172 million in Bitcoin after hidden CCTV cameras captured wallet password
Court filings allege the seed phrase was used to transfer 2,323 Bitcoin
March 18th, 2026Source

Manifold Raises $8 Million for AI Detection and Response
Focused on securing autonomous AI on endpoints, the startup will invest in product development.
March 18th, 2026Source

Marquis: Ransomware gang stole data of 672K people in cyberattack
Marquis, a Texas-based financial services provider, revealed this week that a ransomware gang stole the data of over 670,000 individuals in an August 2025 cyberattack that also disrupted operations at 74 banks across the United States.
March 18th, 2026Source

Marquis says over 672,000 people had personal and financial data stolen in ransomware attack
Marquis, a technology company used by hundreds of banks to analyze and visualize their customers' data, says hundreds of thousands of people had their personal and sensitive financial information stolen in a ransomware attack last year.
March 18th, 2026Source

Menlo Security delivers unified governance and threat prevention for AI agents and humans
Menlo Security has unveiled the Browser Security Platform, purpose-built to secure the agentic enterprise, where autonomous AI agents will outnumber human employees and the browser has become the operating system for both. Menlo provides unified control plane to apply machine-speed governance and threat prevention to both human and non-human actors, deployed globally on Menlo's elastic cloud infrastructure.
March 18th, 2026Source

My most useful Chrome extension was stealing my data for years
An extension I used almost every day was bought by a new owner and loaded up with spyware.
March 18th, 2026Source

NemoClaw simplifies OpenClaw setup with built in security controls
NVIDIA has introduced the NemoClaw stack for the OpenClaw platform, and it focuses on making autonomous AI agents safer, easier to install, and more reliable for everyday use while keeping performance strong across both local and cloud systems.
March 18th, 2026Source

Nordstrom's email system abused to send crypto scams to customers
Customers of upscale department store chain Nordstrom received fraudulent messages from a legitimate company email address that promoted cryptocurrency scams disguised as a St. Patrick's Day promotion.
March 18th, 2026Source

North Korea's 100,000-strong fake IT worker army rake in $500M a year for Kim Jong Un
Researchers map full org chart of the scam from dodgy recruiters to helpful Western collaborators
March 18th, 2026Source

Ofiniti raises $6.8M to push its maritime fuel software into global shipping hubs
The Oslo-based DNV spinout processed over 25,000 bunker operations in 2025 and claims roughly 40% of Singapore's digital bunkering market. Verb Ventures leads a growth round that brings total funding to $9 million.
March 18th, 2026Source

OpenTelemetry Adoption: A Strategic Blueprint
Practical Guide to Collector-First Architecture and Phased OTel Migration
March 18th, 2026Source

Researcher Discovers 4th WhatsApp View Once Bypass; Meta Won't Patch
Meta does not plan on fixing the vulnerability because it involves the use of a modified client application.
March 18th, 2026Source

Russians caught stealing personal data from Ukrainians with new advanced iPhone hacking tools
A group of hackers suspected of working at least in part for the Russian government targeted iPhone users in Ukraine with a new set of hacking tools designed to steal their personal data, as well as potentially steal cryptocurrency, according to cybersecurity researchers.
March 18th, 2026Source

Shadow AI Risk: How SaaS Apps Are Quietly Enabling Massive Breaches
From Chaos to Control examines the chaos that often comes from shadow AI hidden in SaaS apps and urges better visibility and control over agentic AI.
March 18th, 2026Source

Social Feeds Are Powering India's Micro-Drama Boom: Meta-Ormax Report
As short-form video reshapes how audiences consume content on their smartphones, micro dramas are rapidly emerging not only as a new storytelling format but also as a new business vertical in India. At our inaugural Meta Marketing Summit: Micro-Drama Edition, we shed light on the rising number of micro-drama platforms that are now actively using Meta platforms to reach relevant audiences, launch new shows, and build their business.
March 18th, 2026Source

Tech companies are teaming up to combat scammers
The Online Services Accord Against Scams was signed by major tech companies including Google, Microsoft and OpenAI.
March 18th, 2026Source

The Refund Fraud Economy: Exploiting Major Retailers and Payment Platforms
Refund fraud is no longer just opportunistic abuse of return policies. Instead, it has evolved into a structured underground marketplace where fraud techniques are packaged and sold like digital products.
March 18th, 2026Source

These AI Agents Learned to Hack by Themselves, Without Human Input
These AI Agents Learned to Hack by Themselves, Without Human Input
March 18th, 2026Source

This site lets you create free temporary email addresses
IncognitoMail is a great way to protect your privacy and avoid potential spam.
March 18th, 2026Source

Token Security advances AI agent protection with intent-based controls
Token Security has unveiled intent-based AI agent security, a new approach that governs autonomous agents in enterprise environments by aligning their permissions with their intended purpose.
March 18th, 2026Source

TrojAI unveils new capabilities to secure agentic AI beyond the prompt layer
TrojAI has announced major new capabilities designed to secure the growing deployment of agentic AI in the enterprise going beyond the prompt layer.
March 18th, 2026Source

Veracode Fix for SCA automates open-source vulnerability fixes
Veracode has unveiled Veracode Fix for Software Composition Analysis (SCA), an AI-powered solution to address software supply chain risk. The enhanced automated remediation engine, the next evolution of Veracode's Fix solution, enables organizations to detect and remediate open-source vulnerabilities easily, before code reaches production. Designed to integrate seamlessly into existing developer workflows, it delivers third-party updates and first-party code refactoring without breaking builds or disrupting development.
March 18th, 2026Source

Virtual Summit Today: Supply Chain & Third-Party Risk Summit
Cyber risk doesn't stop at your perimeter. Today's most dangerous threats could be hiding in your software supply chain.
March 18th, 2026Source

Want to know which sites are selling your data? This free privacy tool gave me answers
Data is gold, and some companies go to great lengths to collect it, store it, and sell it. But you can put an end to it.
March 18th, 2026Source

Internet — Security Issues — March 16th, 2026

6 top free secure DNS services I trust - and why I always encrypt my web browsing
I've tested many DNS services for decades. These are the ones I actually trust to help me stay private online.
March 16th, 2026Source

8 Ring Security Settings to Turn Off If You're Worried About Privacy
Certain Ring features may be better off if you're concerned about AI surveillance, collected data or family privacy.
March 16th, 2026Source

45,000 malicious IP addresses taken down, 94 suspects arrested
An international law enforcement operation has taken down more than 45,000 malicious IP addresses and servers linked to phishing, malware, and ransomware activity.
March 16th, 2026Source

AI finally delivers those elusive productivity gains... for cybercriminals
Interpol says fraud schemes using the tech are 4.5x more profitable
March 16th, 2026Source

China-Linked Hackers Hit Asian Militaries in Patient Espionage Operation
The state-sponsored hackers deployed custom tools and stayed dormant in the compromised environments for months.
March 16th, 2026Source

Fake job applicant exposes North Korea's global remote worker scheme
A cybersecurity investigation involving a remote job applicant known as "Jo" revealed the inner workings of a North Korean remote employment operation that U.S. officials say generates hundreds of millions of dollars each year for Pyongyang.
March 16th, 2026Source

Fingerprint's MCP Server turns device intelligence into real-time AI-powered fraud insights
Fingerprint has announced the launch of its Model Context Protocol (MCP) Server, an open-source MCP implementation for the fraud prevention space. The new server enables organizations to connect any AI assistant or agent directly to Fingerprint's device intelligence platform, turning fraud analysis into real-time, AI-powered insights.
March 16th, 2026Source

Flaw in UK's corporate registry let directors rummage through rival records
Back button blunder in WebFiling service run by Companies House revealed confidential paperwork
March 16th, 2026Source

ForceMemo: Python Repositories Compromised in GlassWorm Aftermath
Hundreds of GitHub accounts were accessed using credentials stolen in the VS Code GlassWorm campaign.
March 16th, 2026Source

Hacking Attempt Reported at Poland's Nuclear Research Center
Initial evidence indicates Iran may be behind the attack, but officials admitted it could be a false flag.
March 16th, 2026Source

Hackers tried to breach Poland's nuclear research centre
Poland's National Centre for Nuclear Research (NCBJ) thwarted a cyberattack targeting its IT infrastructure. The attempted intrusion was detected and blocked before attackers could compromise systems or disrupt operations.
March 16th, 2026Source

JSOC IT's AUTOPSY platform puts security stacks under live API verification
JSOC IT has announced the launch of AUTOPSY, a security verification platform that investigates an organization's security stack through live API integrations before a breach occurs, rather than after one forces the conversation.
March 16th, 2026Source

KEEQuant advances chip-scale QKD for telecom, data centers, and critical infrastructure
KEEQuant has announced its commercial chip-scale QKD technology, marking an advance in quantum-secure communications. The system replaces bulky optical assemblies with photonic integration, lowering the cost and complexity of quantum key distribution and making quantum-safe key exchange a practical upgrade for telecom operators, data center providers, and critical infrastructure organizations.
March 16th, 2026Source

Meta commits up to $27 billion to Nebius in one of the largest AI infrastructure deals on record
The five-year agreement expands an existing relationship between the two companies and will involve one of the first large-scale deployments of Nvidia's new Vera Rubin chips. Nebius shares surged 14% in pre-market trading.
March 16th, 2026Source

Meta ditches end-to-end encrypted messaging on Instagram
End-to-end encrypted messaging on Instagram will no longer be supported after May 8, 2026.
March 16th, 2026Source

Meta is pulling the plug on Instagram's encrypted messages
The company says few people used the feature
March 16th, 2026Source

Microsoft Edge 146 adds IP privacy and local network access controls
Microsoft Edge version 146 (Stable) became available on March 13, 2026, bringing updates to tracking protection, IP privacy, and enterprise network security policies.
March 16th, 2026Source

NinjaOne Vulnerability Management enables real-time detection and autonomous patching
NinjaOne has unveiled NinjaOne Vulnerability Management, a new solution that helps IT teams identify, prioritize, and remediate vulnerabilities faster, without relying on periodic scans from security teams that often lack context and connection to remediation workflows.
March 16th, 2026Source

Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact
Broadcom, Bechtel, Estee Lauder, and Abbott Technologies are the only major companies that have yet to issue a public statement.
March 16th, 2026Source

Orca Platform enhancements use AI to cut cloud alert noise
Orca Security has announced major enhancements to the Orca Platform, introducing new AI-powered security agents, real-time detection of AI usage across cloud environments, remediation-focused workflows, and code reachability analysis. These innovations enable organizations to move beyond fragmented alerts toward faster investigation, clearer prioritization, and measurable risk reduction.
March 16th, 2026Source

Privacy Rollback: Instagram to End Support for Encrypted Messages
Instagram will officially discontinue end-to-end encryption (E2EE) for direct messages on May 8, 2026. Meta cited low user adoption as the primary reason, though the move follows years of regulatory pressure from governments seeking better content monitoring.
March 16th, 2026Source

Security Firm Executive Targeted in Sophisticated Phishing Attack
The attackers used a DKIM-signed phishing email, trusted redirect infrastructure, compromised servers, and Cloudflare-protected phishing pages, but the attack was unsuccessful.
March 16th, 2026Source

Shadow AI is everywhere. Here's how to find and secure it.
AI tools are everywhere now and used by virtually everyone in your org. For IT and security teams, that means the job has shifted from "should we allow AI?" to "how do we secure and govern it?" And that's no small task.
March 16th, 2026Source

Stellar Cyber 6.4.0 reduces alert noise and speeds investigations with Autonomous SOC capabilities
Stellar Cyber has announced the general availability of version 6.4.0 of its platform. With this release, Stellar Cyber delivers new Autonomous SOC capabilities designed to reduce alert noise, accelerate investigations, and transform the day-to-day experience of security analysts.
March 16th, 2026Source

Tech companies are teaming up to combat scammers
The Online Services Accord Against Scams was signed by major tech companies including Google, Microsoft and OpenAI.
March 16th, 2026Source

Threat Actor Targeting VPN Users in New Credential Theft Campaign
Storm-2561 is distributing fake VPN clients through SEO poisoning, deploying trojans, and stealing login information.
March 16th, 2026Source

UK Agency Exposed Corporate Executive Data
Directory Traversal Flaw Found in Companies House
March 16th, 2026Source or Source or Source or Source or Source

Why harmful content keeps reaching children online, and what advertising has to do with it
Children today can encounter harmful material online with alarming ease, including violent, sexual and self-harm content. While this is often treated as a moderation failure, the deeper cause is economic.
March 16th, 2026Source

Why I ditched Chrome for Tor Browser on Android - and you should, too
If you're looking for the safest way to browse on your Android phone, consider the Tor Browser over more popular options.
March 16th, 2026Source

Your browser's payment autofill can be hacked. Use these 3 alternatives instead
Storing payment details in your browser or online shops is convenient but poses a high security risk. Read on to find out what you should do instead.
March 16th, 2026Source

Internet — Security Issues — March 13th, 2026

6 top free secure DNS services I trust - and why I always encrypt my web browsing
I've tested many DNS services for decades. These are the ones I actually trust to help me stay private online.
March 13th, 2026Source

14,000 routers hijacked by KadNap malware to power a hidden proxy botnet
Security researchers have uncovered a malware operation that has infected about 14,000 routers and network devices, most of them produced by Asus, and incorporated them into a distributed proxy network used to carry internet traffic for cybercrime.
March 13th, 2026Source

Accertify's Attack State targets credential stuffing and ATO attacks
Accertify has announced the launch of Attack State, a new capability in its Account Protection solution designed to help organizations detect and respond to coordinated login attacks and other automated threats targeting customer accounts.
March 13th, 2026Source

AI agent 'lobster fever' grips China despite risks
Chinese entrepreneur Frank Gao used to spend long hours running his social media accounts but now outsources the chore to AI agent tool OpenClaw, which is taking the country by storm despite official warnings over cybersecurity.
March 13th, 2026Source

AI Agents May Redefine Risk in Industrial Operations
Gartner's Wam Voster on Potentially Harmful AI Decision Systems in OT Environments
March 13th, 2026Source or Source or Source or Source

Are free VPNs legit? I asked security experts to learn the true cost (and what services to avoid)
You want to protect your privacy, but you don't want to pay. Is the solution a free VPN? Here's what to know before subscribing to one.
March 13th, 2026Source

Authorities Disrupt SocksEscort Proxy Service Powered by AVrecon Botnet
Law enforcement agencies in the US and Europe targeted the cybercrime service that has impacted 360,000 devices since 2020.
March 13th, 2026Source or Source

Autonomous Agent Hacked McKinsey's AI in 2 Hours
Cybersecurity Startup Exposed Lilli Using a Flaw as Old as the Web
March 13th, 2026Source or Source or Source or Source

BioCatch DeviceIQ helps banks spot risky devices before login
BioCatch has announced the launch of DeviceIQ, a comprehensive new device identification and intelligence product that transforms how financial institutions evaluate the trustworthiness of devices used for digital banking.
March 13th, 2026Source

Bold Security Emerges From Stealth With $40 Million in Funding
The startup relies on AI to turn devices into active agents that understand users' actions and provide protection in real time.
March 13th, 2026Source

Chrome 146 Update Patches Two Exploited Zero-Days
The flaws can be exploited to manipulate data and bypass security restrictions, potentially leading to code execution.
March 13th, 2026Source

CyberwarfareIran-Linked Hackers Take Aim at US and Other Targets, Raising Risk of Cyberattacks During War
Pro-Iranian hackers are targeting sites in the Middle East and starting to stretch into the United States during the war, raising the risk of American defense contractors, power stations and water plants.
March 13th, 2026Source

Downloaded a malware-infected Steam game? The FBI wants to hear from you
The investigation covers compromised Steam games downloaded between 2024 and 2026
March 13th, 2026Source

EU Parliament backs extension of CSAM detection rules until 2027
The European Parliament has voted to extend a temporary exemption to EU privacy legislation that allows online platforms to voluntarily detect child sexual abuse material (CSAM).
March 13th, 2026Source

Fake enterprise VPN sites used to steal company credentials
A threat actor tracked as Storm-2561 is distributing fake enterprise VPN clients from Ivanti, Cisco, and Fortinet to steal VPN credentials from unsuspecting users.
March 13th, 2026Source

Google Paid Out $17 Million in Bug Bounty Rewards in 2025
Google paid over $3.7 million for Chrome vulnerabilities, and more than $3.5 million for cloud security defects.
March 13th, 2026Source

How to delete or hide yourself from the internet - 11 effective ways (and most are free)
Take control of your privacy, cut off data trackers, and erase your online presence with these expert-approved tips.
March 13th, 2026Source

Iran-Linked Hacker Attack on Stryker Disrupted Manufacturing and Shipping
Iran-Linked Hacker Attack on Stryker Disrupted Manufacturing and Shipping
March 13th, 2026Source

In Other News: N8n Flaw Exploited, Slopoly Malware, Interpol Cybercrime Crackdown
Other noteworthy stories that might have slipped under the radar: Telus Digital data breach, vulnerabilities in Linux AppArmor allow root privileges, US defense contractor behind Coruna exploits.
March 13th, 2026Source

Interpol cybercrime crackdown leads to 94 arrests, 45,000 IP takedowns
Operation Synergia's third season is the most productive to date
March 13th, 2026Source

Iran-Linked Hacker Attack on Stryker Disrupted Manufacturing and Shipping
Evidence indicates that the attackers leveraged existing endpoint management software rather than malware to wipe devices.
March 13th, 2026Source

Onyx Security Launches With $40 Million in Funding
The startup is building a control pane to help organizations oversee autonomous AI agents and rapidly adopt them.
March 13th, 2026Source

Police sinkholes 45,000 IP addresses in cybercrime crackdown
An international law enforcement action codenamed "Operation Synergia III" has sinkholed tens of thousands of IP addresses and seized servers linked to cybercrime operations worldwide.
March 13th, 2026Source

Red Access firewall-native SSE adds GenAI security and browser protection to existing firewalls
Red Access has announced firewall-native SSE, an agentless cloud layer that instantly upgrades any existing firewall with Security Service Edge (SSE), GenAI security, and browser-agnostic protection. Deployed directly on top of existing architecture, the firewall-native SSE eliminates the need for rip-and-replace projects, accelerating deployment while reducing operational overhead without compromising user experience.
March 13th, 2026Source

Starbucks discloses data breach affecting hundreds of employees
Starbucks has disclosed a data breach affecting hundreds of employees after threat actors gained access to their Starbucks Partner Central accounts.
March 13th, 2026Source

The FBI is investigating malware hidden inside games hosted on Steam
The FBI is investigating a hacker suspected of publishing several video games laced with malware on the popular PC games store Steam, the agency said Friday.
March 13th, 2026Source

VPN Pricing Explained: How to Compare Costs
VPN plans look simple until you factor in renewals, bundles, seasonal promos and long-term commitments. Here's how to understand the true cost of a VPN.
March 13th, 2026Source

When Liability Turns the CISO Into the Fall Guy
Rising Liability Risks Are Reshaping the CISO Role and Cybersecurity Leadership
March 13th, 2026Source or Source or Source or Source or Source

Internet — Security Issues — March 12th, 2026

10+ VPN tricks and tips I recommend to everyone (whether for personal or business use)
A VPN isn't just for privacy. Here are additional settings and features worth exploring.
March 12, 2026Source

€1 million online fraud scheme uncovered, three suspects arrested
A criminal group suspected of running an online fraud scheme in Germany, which defrauded victims of around €1 million, has been dismantled through judicial cooperation coordinated by Eurojust.
March 12, 2026Source

Ally WordPress Plugin Flaw Exposes Over 200,000 Websites to Attacks
The issue allows attackers to inject SQL queries and extract sensitive information from the database.
March 12, 2026Source

Apple Updates Legacy iOS Versions to Patch Coruna Exploits
The company has released iOS and iPadOS versions 16.7.15 and 15.8.7 to patch the vulnerabilities.
March 12, 2026Source

Best VPN for Torrenting 2026: Keep Your Downloading and Uploading Activity Private
Here are the best VPNs for torrenting to let you privately download public domain movies, open-source software like Linux distributions and other free but legal content.
March 12, 2026Source

Best VPNs for streaming of 2026: Expert tested and reviewed
Want to access Netflix, Hulu, and more abroad? These are the best VPNs for speed, security, and privacy while you're away from home.
March 12, 2026Source

Binary Defense's NightBeacon brings AI-driven analysis to SOCs
Binary Defense has announced the launch of NightBeacon, an AI-powered security operations platform built directly into the company's security operations center (SOC).
March 12, 2026Source

Chinese BCI startup Gestala raises $21.6M for non-invasive ultrasound brain tech
Phoenix Peng has already built one brain-computer interface company. NeuroXess, his first venture, develops implantable BCI systems designed to restore communication and motor function for people with severe neurological conditions.
March 12, 2026Source

CISA warns max-severity n8n bug is being exploited in the wild
No rest for project maintainers battered by slew of vulnerability disclosures
March 12, 2026Source

Cisco Patches High-Severity IOS XR Vulnerabilities
The security defects could lead to denial-of-service (DoS) conditions, command execution, or device takeover.
March 12, 2026Source

Critical N8n Vulnerabilities Allowed Server Takeover
The bugs allowed unauthenticated attackers to execute arbitrary code, steal credentials, and take over servers.
March 12, 2026Source

Cryptohack Roundup: Suspect Arrested in a $46M Theft Case
Also: Detainment in GainBitcoin Case, Solv Protocol and Gondi Hacks
March 12, 2026Source or Source

DPoP: What It Is, How It Works, and Why Bearer Tokens Aren't Enough
Bearer tokens grant access to anyone who holds them. DPoP fixes this by binding each token to a cryptographic key pair: every request must include a signed proof.
March 12, 2026Source

ENISA advisory examines package manager security risks
Developers install external libraries with a single command, and that step can introduce more code than expected into a project environment. Dependency resolution inside package managers extends software supply chains across large collections of external components. ENISA's Technical Advisory for Secure Use of Package Managers, released in March 2026, examines how this development practice expands exposure across software ecosystems.
March 12, 2026Source

Fresh indie broadband provider incoming as Google's fiber biz and Stonepeak's Astound merge
Alphabet is spinning out its US Google Fiber business and combining it with Astound Broadband as part of a joint venture with private equity investor Stonepeak.
March 12, 2026Source

Going the Extra Mile: Travel Rewards Turn into Underground Currency.
Airline miles were designed as rewards, however, in cybercrime markets, they are inventory. In many cases, the theft begins with and ends with miles quietly converted into flights and hotel stays.
March 12, 2026Source

Google paid $17.1 million for vulnerability reports in 2025
Google paid over $17 million to 747 security researchers who reported security bugs through its Vulnerability Reward Program (VRP) in 2025.
March 12, 2026Source

How I switched password managers without losing a single login - quickly and for free
I safely moved all my saved logins to a new password manager. And you can too by following these steps.
March 12, 2026Source

How to Govern AI Agents Before They Go Rogue
Okta's Arkadiusz Krowczynski on Why Governing AI Agents Starts With Identity
March 12, 2026Source or Source or Source or Source

How to simplify your digital life with 1Password
Just one password to remember for the rest of your life. Here's how 1Password can make the internet easy again.
March 12, 2026Source

Iran hacking group claims attack on med-tech company Stryker — says over 200,000 devices have been wiped clean and over 50TB of data extracted
The Iranian-linked hacking group Handala claims that it's behind the attack.
March 12, 2026Source

Iran-Linked Hacktivists Hit Stryker, Knocking Employees Offline Across Multiple Countries
A cyberattack disrupted global operations at medical device maker Stryker, knocking employees offline and raising concerns about destructive wiper attacks.
March 12, 2026Source

Law enforcement shuts down botnet made of tens of thousands of hacked routers
A global coalition of law enforcement agencies shut down a botnet made of tens of thousands of hacked home and small business routers on Wednesday.
March 12, 2026Source

Meta Launches New Protection Tools as It Helps Disrupt Scam Centers
The social media giant has disabled more than 150,000 accounts powering scam centers in Asia.
March 12, 2026Source

Meta Rolls Out New Scam Alerts Across Facebook, WhatsApp, and Messenger
Meta is rolling out new scam alerts across Facebook, WhatsApp, and Messenger as it ramps up AI-driven fraud detection and advertiser verification.
March 12, 2026Source

Mid-size organizations under growing pressure to secure systems
Mid-size organizations are large enough to be attractive targets -- with complex digital estates, significant revenue, and valuable data -- but not large enough to have the headcount, budget maturity, or tooling sophistication of enterprise security teams.
March 12, 2026Source or Source

Mimecast adds AI investigation and adaptive controls to manage human risk
Mimecast has announced major platform capabilities designed for a new enterprise reality as AI agents and automated workflows scale across the business and establish the human layer as the new security control plane.
March 12, 2026Source or Source

Operation Lightning takes down SocksEscort proxy network blamed for tens of millions in fraud
International cops stuck down 23 servers in 7 countries
March 12, 2026Source

Payment Giant Verifone Disputes Iranian Hacking Group Hit
Tehran-Linked Handala Hackers Disrupt Medtech Giant Stryker, Claim Verifone Breach
March 12, 2026Source or Source or Source or Source or Source

Polyfill Supply Chain Attack Impacting 100k Sites Linked to North Korea
The 2024 incident was initially linked to China, but an infostealer infection has now revealed North Korean involvement.
March 12, 2026Source

SOC Prime's DetectFlow Enterprise moves threat detection to the data ingestion layer
SOC Prime has announced the release of DetectFlow Enterprise, a solution that brings real-time threat detection to the ingestion layer, turning data pipelines into detection pipelines.
March 12, 2026Source

Socure Launch enables startups to deploy identity verification and fraud controls
Socure has announced Socure Launch, providing every organization with immediate access to industry tested, pre-built identity and fraud solutions. This marks a new era for Socure, providing startups an enterprise level of identity verification, fraud detection, and compliance decisioning.
March 12, 2026Source

Splunk, Zoom Patch Severe Vulnerabilities
Critical- and high-severity flaws could be exploited to execute arbitrary shell commands or elevate privileges.
March 12, 2026Source

Telus Digital confirms breach after hacker claims 1 petabyte data theft
Canadian business process outsourcing giant Telus Digital has confirmed it suffered a security incident after threat actors claimed to have stolen nearly 1 petabyte of data from the company in a multi-month breach.
March 12, 2026Source

The 10 best free dating apps to find your spring fling
Thaw out your love life and get straight to matching without spending a dime.
March 12, 2026Source

The Human IOC: Why Security Professionals Struggle with Social Vetting
Applying SOC-level rigor to the rumors, politics, and 'human intel' can make or break a security team.
March 12, 2026Source

US charges another ransomware negotiator linked to BlackCat attacks
The U.S. Department of Justice charged another former DigitalMint employee for his involvement in an insider scheme in which ransomware negotiators secretly partnered with the BlackCat (ALPHV) ransomware operation.
March 12, 2026Source

US disrupts SocksEscort proxy network powered by Linux malware
Law enforcement agencies in the U.S. and Europe, along with private partners, have disrupted the SocksEscort cybercrime proxy network that relied solely on edge devices compromised via the AVRecon malware for Linux.
March 12, 2026Source

War spreads into cyberspace after Iran-linked hackers hit medtech giant Stryker
An Iran-linked hacking group has claimed responsibility for a cyberattack on U.S. medical device giant Stryker, marking a potential escalation of cyber activity tied to the ongoing conflict in the Middle East.
March 12, 2026Source

WhatsApp is giving parents peace of mind over their kids' privacy
WhatsApp has introduced parent-managed accounts designed for pre-teens, giving parents and guardians new controls over contacts, group participation, and how the app is used.
March 12, 2026Source

Why Cybersecurity Can No Longer Be Treated as an IT Problem
Secure Horizons' Sarah Armstrong-Smith on Building Collective Resilience
March 12, 2026Source or Source

Your forgotten email accounts are more dangerous than you think
Forgotten email accounts are like open back doors for hackers.
March 12, 2026Source

Zscaler enhances data sovereignty controls with regional processing and logging
Zscaler has expanded its data sovereignty capabilities globally, powered by the Zscaler Zero Trust Exchange cloud security platform.
March 12, 2026Source

Internet — Security Issues — March 11th, 2026

5 security tactics your business can't get wrong in the age of AI - and why they're critical
Experts share how their organizations use policies and processes to protect data and adopt AI safely.
March 11, 2026Source

238,000 Impacted by Bell Ambulance Data Breach
Hackers stole personal information such as names, Social Security numbers, and driver's license numbers.
March 11, 2026Source

A Meta-powered investment scam is spreading across 25 countries - how to spot (and avoid) it
This sophisticated online scam is spread via paid ads and fake news stories across popular sites like Facebook. Here's how to spot it before it's too late.
March 11, 2026Source

Anthropic forms institute to study long-term AI risks facing society
Anthropic has established the Anthropic Institute, a research unit focused on studying the societal effects of AI and informing policy responses to risks from more advanced systems.
March 11, 2026Source

Armis improves vulnerability accuracy and speed with unified real-time visibility
Armis has announced Armis Centrix for Vulnerability Management Detection and Response. The solution enables security teams to identify and validate vulnerabilities across all organizational assets in real time. Armis' unified approach to vulnerability assessment delivers greater accuracy, faster detection times, and reduced operational costs.
March 11, 2026Source

Best VPN for Travel: Stay Private on Public Wi-Fi and Unblock Regional Streaming Content on Spring Break
A VPN is great for fundamental privacy or streaming, and it won't take up any room in your checked bag or carry-on. So a VPN is a great companion, whether you're traveling for spring break, studying abroad or on a cross-country road trip.
March 11, 2026Source

'BlackSanta' Malware Activates EDR and AV Killer Before Detonating Payload
The malware disables antivirus and EDR protections at the kernel level, clearing the path for credential harvesting, system reconnaissance, and eventual data exfiltration.
March 11, 2026Source

CISO Conversations: Aimee Cardwell
Cardwell started her career at Netscape, become a VP of engineering at American Express, CISO at UnitedHealth Group, and now CISO in Residence at Transcend.
March 11, 2026Source

Cloud attacks are getting faster and deadlier - here's your best defense plan
Google's latest threat report warns that third-party tools are now prime targets for attackers - and businesses have only days to prepare defenses.
March 11, 2026Source

Dutch cops bust teen suspected of posing as bank staff to steal cards
17-year-old allegedly withdrew large sums of cash from ATMs
March 11, 2026Source

EU legal eagle says banks should refund cybercrime victims first, argue later
Advocate General urges rethink of PSD2 to speed compensation after scams
March 11, 2026Source

Fighting Scammers and Protecting People with New Technology and Partnerships
Today, Meta signed the Industry Accord Against Online Scams and Fraud at the United Nations Office on Drugs and Crime Global Fraud Summit in Vienna, Austria. Meta is a proud sponsor of this year's Summit. The Industry Accord is a landmark voluntary agreement with 11 industry partners — including Adobe, Amazon, Google, Levi's, LinkedIn, Match Group, Meta, Microsoft, OpenAI, Pinterest, and Target — to combat the escalating global threat of online scams. Meta is also endorsing the UN Global Public-Private Partnership Agreement against Fraud, which sets out a framework to implement best practices for multi-sector and stakeholder collaboration on the transnational threat of scams.
March 11, 2026Source

Forescout replaces manual audits with automated, always-on compliance validation
Forescout Technologies has announced Automated Security Controls Assessment, a new Forescout 4D Platform capability that continuously evaluates trust, control effectiveness and compliance posture across an organization's attack surface.
March 11, 2026Source

Fortanix helps enterprises build resilience with multi-sourced quantum entropy
Fortanix announced a new multi-sourced quantum entropy capability within Fortanix Data Security Manager (DSM), enabling enterprises to diversify encryption key generation at the origin of trust.
March 11, 2026Source

Fortinet, Ivanti, Intel Patch High-Severity Vulnerabilities
The bugs could lead to arbitrary code execution, privilege escalation, or authentication rate-limit bypass.
March 11, 2026Source

Global Law Enforcement Agencies, With Support From Meta, Disrupt Major Criminal Scam Networks Based in Southeast Asia
Online scams have become significantly more sophisticated and industrialized in recent years, with criminal networks often based in Southeast Asia in countries like Cambodia, Myanmar, and Laos running what amount to full-scale business operations. These operations cause real harm — they upend lives, destroy trust, and are deliberately designed to avoid detection and disruption. The work to protect people against scammers is never done, and requires ongoing collaboration with partners across the tech industry and law enforcement to ensure a safer experience for everyone online.
March 11, 2026Source

Government Spying Targeted Advertising | EFFector 38.5
Have you ever seen a really creepy targeted ad online? One that revealed just how much these companies know about your life? It's unsettling enough to see how much companies know about you—but now we have confirmation that the government is also tapping the advertising surveillance machine to get your data. We're explaining the dangers of targeted advertising and location tracking, and the latest in the fight for privacy and free speech online, with our EFFector newsletter.
March 11, 2026Source

How I switched password managers without losing a single login - quickly and for free
I safely moved all my saved logins to a new password manager. And you can too by following these steps.
March 11, 2026Source

How to 10x Your Vulnerability Management Program in the Agentic Era
The evolution of vulnerability management in the agentic era is characterized by continuous telemetry, contextual prioritization and the ultimate goal of agentic remediation.
March 11, 2026Source

How US Ransomware Policy Aims to Break Global Crime Networks
Ex-FBI Leader Cynthia Kaiser on Sanctions, Ecosystem Disruption, Stronger Policies
March 11, 2026Source or Source or Source or Source or Source

ICO fines Police Scotland over data-sharing debacle in gross misconduct case
Blue-on-blue internal investigation lands force £66k fine
March 11, 2026Source

Inspector general investigates claim DOGE engineer copied Social Security databases to thumb drive
Complaint centers on two tightly restricted SSA databases covering more than 500 million records
March 11, 2026Source

Intel's Heracles chip computes fully-encrypted data without decrypting it — chip is 1,074 to 5,547 times faster than a 24-core Intel Xeon in FHE math operations
No decryption occurs inside the processor, eliminating entire classes of attacks.
March 11, 2026Source

Medical Device Concerns for a Post-Quantum World
Joern Lubadel, Head of Product Security at B. Braun, on Evolving Risk Considerations
March 11, 2026Source or Source or Source or Source or Source

Medtech Firm Stryker Disrupted by Pro-Iran Hackers
Iran Expands Targeting, Including AWS, Google and Microsoft Infrastructure
March 11, 2026Source or Source

Meta adds new WhatsApp, Facebook, and Messenger anti-scam tools
Meta is introducing new anti-scam protections across its platforms, deploying systems and user-facing warnings to protect users against scammers.
March 11, 2026Source

Meta is rolling out stronger anti-scam tools - here's how they protect you
Expect to see more alerts about suspicious activities across Facebook, WhatsApp, and Messenger.
March 11, 2026Source

Meta turns to AI to sniff out scams on Facebook, Messenger and WhatsApp
Meta's new tools on Facebook, Messenger, and WhatsApp protect users from scams. They use advanced AI systems to analyze text, images, and surrounding context and identify sophisticated scam patterns.
March 11, 2026Source

Meta will let kids under 13 use WhatsApp with parent-managed accounts
The new privacy features will roll out gradually.
March 11, 2026Source

Michelin Confirms Data Breach Linked to Oracle EBS Attack
The cybercriminals have leaked more than 300GB of files allegedly stolen from the tire giant.
March 11, 2026Source

Microsoft patches 80+ vulnerabilities, six flagged as "more likely" to be exploited
On March 2026 Patch Tuesday, Microsoft addressed 80+ vulnerabilities affecting its software and cloud services. Of these, two were publicly disclosed, but not actively exploited.
March 11, 2026Source

Network Map 2.0 provides live network mapping and faster risk containment
Zero Networks has announced Network Map 2.0, an advancement in real-time network mapping designed to help large enterprises eliminate decision paralysis, reduce blast radius and turn visibility into immediate, enforceable action.
March 11, 2026Source

'Plug-and-Play' AI Is a Myth for Enterprises
CIOs Face Integration, Talent and ROI Hurdles Despite Rising AI Budgets
March 11, 2026Source or Source or Source or Source

Print security is a low priority for smaller businesses
While the focus of protection efforts tends to be on desktop and mobile endpoints the risks from other devices can often be overlooked. While print security is a growing concern among enterprises it remains one of the most overlooked weaknesses in SMB cyber defenses.
March 11, 2026Source

Quantro Security Emerges From Stealth With $2.5 Million in Funding
The startup integrates with existing cybersecurity stacks, ingests and normalizes data, and delivers intelligence to reduce risks.
March 11, 2026Source

Scanner Raises $22 Million for AI-Powered Threat Hunting
The company connects AI agents to security data lakes for interactive investigations, detection engineering, and autonomous response.
March 11, 2026Source

Stretching Cyber Resources in Rural Healthcare
Jim Roeder, VP of IT at Lakewood Health System, on Finding Help
March 11, 2026Source or Source or Source or Source or Source

The best free VPNs of 2026: Expert tested and reviewed
You don't have to compromise your privacy, security, or data when you use a free VPN -- as long as you pick the right one. Our guide lists the only trustworthy, free VPNs around today.
March 11, 2026Source

Vicarius vIntelligence brings continuous risk validation and AI-driven security automation
Vicarius has announced the launch of vIntelligence, a new product that introduces agentic intelligence and continuous validation to the company's security portfolio.
March 11, 2026Source

Virtana enables full-stack root cause analysis beyond legacy APM
Virtana has launched an Application Observability offering that traces performance issues from application code through infrastructure, networks, storage, and AI workloads to deliver evidence-based root cause analysis without manual correlation.
March 11, 2026Source

Wiz Joins Google Cloud as Landmark Acquisition Closes
Google has completed its $32 billion acquisition of the cloud security giant, which will maintain its brand.
March 11, 2026Source

VPN Prices Can Be Confusing. Here's How to Cut Through the Fog and Find the True Cost of Your VPN
Knowing the pricing tricks VPNs often use can help you avoid an unpleasant surprise at checkout or renewal.
March 11, 2026Source

YouTube draws a line on deepfakes involving politicians and journalists
With deepfakes becoming more common, YouTube has expanded access to its AI-driven likeness detection system to a pilot group of government officials, journalists and political candidates. The step follows an earlier rollout of the tool to creators in the company's Partner Program.
March 11, 2026Source

Zombie ZIP flaw exposes antivirus blind spot in malformed archives
A newly disclosed archive-scanning weakness is drawing attention across the security industry after CERT/CC published Vulnerability Note VU#976247 for CVE-2026-0866. The issue, informally called Zombie ZIP, affects how some antivirus and EDR products process malformed ZIP archives. Rather than being a conventional bug in one decompression utility, the problem sits in the way security engines interpret ZIP metadata when deciding how to inspect archive contents. CERT/CC says malformed ZIP headers can produce false negatives, allowing malicious payloads to avoid full analysis even though the archive structure is inconsistent.
March 11, 2026Source

Internet — Security Issues — March 5th, 2026

2026 Browser Data Reveals Major Enterprise Security Blind Spots
The 2026 State of Browser Security Report is now available, revealing how the browser has rapidly become the most critical and least protected control point in the enterprise. It also highlights 2025 as the tipping point when AI-native browsers shifted from experimental tools to mainstream business platforms.
March 5, 2026Source

ARC Raiders Latest Update Fixes a Massive Security Flaw Which had Embark Studios Collecting Players' Private Discord DMs
Embark Studios' latest update for ARC Raiders isn't your bog-standard fixes or new content release. Instead, it's an update that the team rushed out the door this morning after a report from tech blogger and systems engineer Timothy Meadows pointed to an incident where two ARC Raiders players' private Discord DMs (direct messages) appeared in a game log file.
March 5, 2026Source

Arc Raiders was recording private Discord DMs in plain text, engineer claims in report on "serious privacy and security violations," which prompted a hasty hotfix from Embark
"Rest assured that your private and/or personal data was not sent outside your machine"
March 5, 2026Source

Beazley Exposure Management platform identifies external exposures and prioritizes cyber risk
Beazley Security has announced its Exposure Management product, which delivers continuous, automated discovery and intelligence-driven exposure notifications to help security teams accelerate risk mitigation in an era where AI-assisted attackers have compressed the time between vulnerability disclosure, weaponization, and exploitation.
March 5, 2026Source

Best password managers: 6 trustworthy options
If you're still using your dog's name to log in to your bank, you're courting disaster.
March 5, 2026Source

Best VPN for School Wi-Fi in 2026: Unblock Streaming Services and Bypass Censorship Restrictions
A VPN can help you bypass your school's firewall if it's limiting the educational resources available to you online.
March 5, 2026Source

Cisco flags more SD-WAN flaws as actively exploited in attacks
​Cisco has flagged two Catalyst SD-WAN Manager security flaws as actively exploited in the wild, urging administrators to upgrade vulnerable devices.
March 5, 2026Source

Cisco Patches Critical Vulnerabilities in Enterprise Networking Products
Cisco has rolled out patches for 48 vulnerabilities in Firewall ASA, Secure FMC, and Secure FTD products.
March 5, 2026Source

Cisco Warns of More Catalyst SD-WAN Flaws Exploited in the Wild
The networking giant has added the recently patched CVE-2026-20128 and CVE-2026-20122 to the list of exploited vulnerabilities.
March 5, 2026Source

Cisco warns of SD-WAN Manager exploitation, fixes 48 firewall vulnerabilities
Cisco has confirmed that two Catalyst SD-WAN Manager vulnerabilities (CVE-2026-20128 and CVE-2026-20122) patched in late February 2025 are being exploited by attackers.
March 5, 2026Source

Codenotary Trust delivers autonomous AI security for Linux and Kubernetes
Codenotary has announced Codenotary Trust, a unified SaaS platform that uses AI to instantly detect, prioritize, and autonomously fix security, configuration, and performance issues, while also providing rollback capabilities.
March 5, 2026Source

Cryptohack Roundup: Ariomex Leak Flags Iran Sanction Risks
Every week, Information Security Media Group rounds up cybersecurity incidents in digital assets. This week, Iran exchange leak, $580 million frozen in scam crackdown, $61 million scam funds seized, feds filed to seize $327,000 in a dating scam case, Russian exploit broker sanctioned, South Korean police exposed recovery phrase, South Korea bitcoin theft arrests, Axiom data misuse and a Uniswap lawsuit ended.
March 5, 2026Source or Source or Source or Source or Source or Source

DOJ seizes LeakBase, one of the world's biggest hacker forums
Investigators claim they preserved private messages and IP logs
March 5, 2026Source

Google says half of all zero-days it tracked in 2025 targeted buggy enterprise tech
A new report by Google found that about half of the zero-day bugs it tracked last year exploited enterprise devices, marking a new high for hackers who are increasingly finding new ways to target large companies and steal their data.
March 5, 2026Source

FBI arrests suspect linked to $46M crypto theft from US Marshals
​A U.S. government contractor's son, accused of stealing more than $46 million in cryptocurrency from the U.S. Marshals Service, was arrested Wednesday on the island of Saint Martin.
March 5, 2026Source or Source

Fideo Intelligence enhances dark web monitoring capabilities to reduce payment fraud
Fideo Intelligence announced an expansion of its dark web monitoring and threat intelligence capabilities to help financial institutions, fintech companies, payment service providers (PSPs), and merchants detect fraud earlier and reduce payment risk.
March 5, 2026Source

FreeScout vulnerability enables unauthenticated, zero-click RCE via email (CVE-2026-28289)
A newly discovered vulnerability (CVE-2026-28289) in the open-source help desk platform FreeScout could allow attackers to take over vulnerable servers by sending a specially crafted email to a FreeScout mailbox.
March 5, 2026Source

FYI: Impersonators are (still) targeting companies with fake TechCrunch outreach
A growing number of scammers are impersonating TechCrunch reporters, editors, and event leads and reaching out to companies, pretending to be our staff when they absolutely are not. (Here is a list of all of our actual staff.) These bad actors are using our name and reputation to try to dupe unsuspecting businesses. It drives us crazy and infuriates us on your behalf. Judging by the increased number of emails we're receiving, asking, "Does this person really work for you?" it appears to be happening more actively at the moment.
March 5, 2026Source

Google changes Play Store policies after settling Epic Games dispute
Google is making changes to the Play Store after settling its legal fight with Epic Games, focusing on three areas: more billing options, lower fees with new programs for developers, and a program for registered app stores.
March 5, 2026Source

Google is still fixing the Pixel 10's graphics issues in its March security update
It's an ongoing process, but it looks like there's progress.
March 5, 2026Source

Google says 90 zero-days were exploited in attacks last year
Google Threat Intelligence Group (GTIG) tracked 90 zero-day vulnerabilities actively exploited throughout 2025, almost half of them in enterprise software and appliances.
March 5, 2026Source

Google: Half of 2025's 90 Exploited Zero-Days Aimed at Enterprises
Less than half of the total zero-days have been attributed to a threat actor, but spyware vendors and China are in the lead.
March 5, 2026Source

Joint guidance on supply chain risks and mitigations for artificial intelligence and machine learning
The Canadian Centre for Cyber Security (Cyber Centre) has joined the Australian Signals Directorate's Australian Cyber Security Centre (ASD's ACSC) and the following international partners in releasing cyber security guidance on supply chain risks and mitigations for artificial intelligence (AI) and machine learning (ML):
March 5, 2026Source

I Tried a Scan-to-Cook Meal Delivery Service. I'm Completely Obsessed
This unique meal delivery service takes the guesswork out of preparing your supply of premade meals. Here's what I thought of it after weeks of testing.
March 5, 2026Source

Iran intelligence backdoored US bank, airport, software outfit networks
An Iranian cyber crew believed to be part of the Iranian Ministry of Intelligence and Security (MOIS) has been embedded in multiple US companies' networks - including a bank, software firm, and airport, among others - since the beginning of February, with more activity in the days following the US and Israeli military strikes, according to security researchers.
March 5, 2026Source

Lawmakers launch probe into hidden "eavesdropping" risks in modern computers
A decades-old form of surveillance exploiting physical emissions from electronics is once again under scrutiny
March 5, 2026Source

LastPass Issue Urgent Warning Over New Security Scam To Steal Passwords
LastPass is informing users of an active phishing campaign that started at the beginning of this month, which spoofs official LastPass emails and directs users to a false login page. While directing to a false login page is a common phishing tactic, this new LastPass scam adds an additional layer of deception by creating entire fake email chains to convince users a breach has already happened and that they have to take action quickly.
March 5, 2026Source

LastPass Review: Features, Pricing, Security, and Who It's Best For
Read our LastPass review covering pricing, security, features, pros and cons, and whether LastPass is safe or free.
March 5, 2026Source

LeakBase cybercrime forum with 142,000 users taken down in global operation
LeakBase, an open-web cybercrime forum facilitating the trade of leaked databases and "stealer logs" containing stolen credentials, has been taken down in an international law enforcement operation coordinated by Europol and involving authorities from 14 countries.
March 5, 2026Source

LeakBase Cybercrime Forum Shut Down, Suspects Arrested
The stolen credential marketplace had been active since 2021 and in late 2025 it counted 142,000 users.
March 5, 2026Source

Meta sued over AI smart glasses' privacy concerns, after workers reviewed nudity, sex, and other footage
Meta is facing a new class action lawsuit over its AI smart glasses and their lack of privacy, after an investigation by Swedish newspapers found that workers at a Kenya-based subcontractor are reviewing footage from customers' glasses, which included sensitive content, like nudity, people having sex, and using the toilet.
March 5, 2026Source

My Pro Tips on How to Install Your DIY Home Security System
I've reviewed security systems from all major brands. Here are my most important recommendations when you're ready to set up your own.
March 5, 2026Source

Nation-State Hackers Play the Vibes
Who Knew APT Hackers Liked Emojis So Much?
March 5, 2026Source or Source or Source or Source or Source

Phobos ransomware admin pleads guilty to wire fraud conspiracy
A Russian national pleaded guilty to a wire fraud conspiracy charge related to his role in administering the Phobos ransomware operation, which breached hundreds of victims worldwide.
March 5, 2026Source

Police dismantles online gambling ring exploiting Ukrainian women
Spanish and Ukrainian law enforcement authorities dismantled a criminal ring that exploited war-displaced Ukrainian women to run an online gambling scheme that laundered nearly €4.75 million in illicit proceeds.
March 5, 2026Source

Push Security adds malicious browser extension detection to block threats in employee browsers
Push Security has announced new malicious browser extension detection and blocking capabilities within its browser-based security platform. The feature enables organizations to automatically block known-bad extensions from running in employee browsers.
March 5, 2026Source

Reclaim Security Raises $20 Million to Accelerate Remediation
The company will expand its engineering team, deepen integrations, and accelerate go-to-market initiatives.
March 5, 2026Source

Reclaim Security secures $26 million to automate cybersecurity remediation
Reclaim Security has raised $26 million in total funding, including a recent $20 million Series A round led by Acrew Capital, with participation from QP Ventures and Ibex Investors. The funding will accelerate the company's mission to eliminate what many security leaders consider cybersecurity's most persistent gap: remediation.
March 5, 2026Source

Russian Ransomware Operator Pleads Guilty in US
Evgenii Ptitsyn was extradited to the United States from South Korea in November 2024.
March 5, 2026Source

Signed Malware Impersonating Workplace Apps Used To Deploy RMM Backdoors
Microsoft's Defender Security Research Team has identified a series of phishing campaigns in which an unknown attacker used digitally signed malware masked as common workplace applications to deploy remote monitoring and management tools as persistent backdoors on targeted systems.
March 5, 2026Source

That attractive online ad might be a malware trap
Malware increasingly travels through the infrastructure that delivers online advertising. The Media Trust's Global Report on Digital Trust, Ad Integrity, and the Protection of People describes a digital ad ecosystem where scam campaigns, malicious redirects, and malware delivery appear alongside marketing traffic.
March 5, 2026Source

The biggest AI threats come from within - 12 ways to defend your organization
The gravest AI-powered threat to your cybersecurity isn't coming from external hackers. Review these strategic recommendations for handling the risks from within.
March 5, 2026Source

The average tax scam victim loses $1,020 - here are 5 ways to protect yourself now
Even savvy people can fall victim to tax scams. Here are five ways to protect yourself before it's too late.
March 5, 2026Source

The Government Uses Targeted Advertising to Track Your Location. Here's What We Need to Do.
We've all had the unsettling experience of seeing an ad online that reveals just how much advertisers know about our lives. You're right to be disturbed. Those very same online ad systems have been used by the government to warrantlessly track peoples' locations, new reporting has confirmed.
March 5, 2026Source

Top 10 artificial intelligence security actions: A primer - ITSAP.10.049
In an era of rapid advancements in artificial intelligence (AI), organizations face heightened security risks. Such risks include data theft, reputational harm, and operational and financial loss stemming from adversarial abuse of AI, attacks on AI systems or misuse of AI by business users.
March 5, 2026Source

UK watchdog eyes Meta's smart glasses after workers say they 'see everything'
Contractors tasked with improving AI reportedly had access to intimate footage captured through wearables
March 5, 2026Source

Internet — Security Issues — March 4th, 2026

42 percent of organizations see an increase in malicious insider incidents
The latest State of Human Risk report from Mimecast shows that 42 percent of organizations have reported an increase in malicious insider incidents over the past year, matching the 42 percent reporting a rise in negligent incidents for the first time.
March 4, 2026Source

ACI Connetic for Cards unifies card, A2A payments and fraud management on one platform
ACI Worldwide has launched ACI Connetic for Cards, an integrated card payments suite within ACI Connetic, its cloud-native payments hub. The platform brings together account-to-account payments, card payments, and fraud prevention in one system.
March 4, 2026Source

AI Security Firm JetStream Launches With $34 Million in Seed Funding
The startup aims to provide organizations with visibility into how AI operates across their environment.
March 4, 2026Source

AI Should Be the First Defense for Stablecoin Payment Fraud
Millisecond Detection and Layered Controls Will Shape Future Payment Security
March 4, 2026Source or Source or Source or Source or Source

ArmorCode AI Exposure Management identifies, governs, and reduces shadow AI risk
ArmorCode has announced AI Exposure Management (AIEM), delivered on the ArmorCode Agentic AI Platform, as the newest solution in its unified exposure management suite. ArmorCode AIEM is a system of action that provides enterprises with comprehensive visibility and control over AI usage across heterogeneous environments while establishing ownership and enforceable governance. ArmorCode AIEM helps organizations accelerate AI adoption with auditable controls and eliminate shadow AI risk.
March 4, 2026Source

An OT Incident Scoring System Inspired by Natural Disasters
System Meant to Dispel FUD Faces Uphill Climb to Widespread Adoption
March 4, 2026Source or Source or Source or Source or Source or Source

Arkose Device ID uses AI to recognize devices across changing fingerprints
Arkose Labs has announced the latest release of Arkose Device ID, a solution within the new Arkose Titan platform. It layers AI-driven similarity analysis on top of exact-match identification, enabling recognition of the same device across evolving fingerprints while maintaining the accuracy enterprises require.
March 4, 2026Source

Critical FreeScout Vulnerability Leads to Full Server Compromise
A patch bypass for an authenticated code execution bug, the flaw leads to zero-click remote code execution attacks.
March 4, 2026Source

Canadian Manufacturers Confront Rising OT Cyber Risk
Canadian manufacturers are expanding connectivity across production environments, integrating industrial IoT, cloud analytics and converged IT-OT operations. That transformation drives efficiency and innovation but increases exposure to ransomware, intellectual property theft and supply chain compromise. Legacy operational technology systems - once air-gapped - now connect across distributed networks and cloud platforms.
March 4, 2026Source or Source or Source or Source or Source

Cancer Center Research Study Hack Affects 1.2M
A ransomware attack on the University of Hawaii Cancer Center's epidemiology division last August affected 1.2 million individuals, including personal information of certain research study participants dating back more than 30 years.
March 4, 2026Source or Source or Source

Digital.ai expands post-build protection for Android and iOS applications
Software security has reached an inflection point as AI development tools increase the volume and velocity of software releases, while AI is also powering the next generation of threat actors driving attack volume and sophistication to new heights.
March 4, 2026Source

DDoS-for-hire empowers more threat actors
The latest DDoS Threat Intelligence report from NETSCOUT shows sophisticated attacker collaboration, resilient botnets, and compromised IoT infrastructure that drove more than eight million DDoS attacks worldwide.
March 4, 2026Source

Employees install pirate software despite malware risks
Employees are attempting to download and activate pirate or cracked versions of software and unauthorized installers onto corporate endpoints, according to data from Barracuda's Security Operations Center (SOC) tools.
March 4, 2026Source

Europol-coordinated action disrupts Tycoon2FA phishing platform
An international law enforcement operation coordinated by Europol has disrupted Tycoon2FA, a major phishing-as-a-service (PhaaS) platform linked to tens of millions of phishing messages each month.
March 4, 2026Source

Edge users are being targeted by a fake Google security prompt that steals data — No bug or exploit required makes this hack particularly nasty
Beyond data harvesting, the malware can use your browser and IP as a proxy for a bad actor's web traffic. Yikes.
March 4, 2026Source

Fake LastPass support email threads try to steal vault passwords
Password management software provider LastPass is warning users of a phishing campaign targeting its users with fake unauthorized account access alerts.
March 4, 2026Source

FBI seizes LeakBase cybercrime forum, data of 142,000 members
The FBI has seized the LeakBase cybercrime forum, a major online forum used by cybercriminals buy and sell hacking tools and stolen data.
March 4, 2026Source

Fig Security Raises $30M to Modernize SOC Infrastructure
Series A Funding Aims to Give Security Teams Visibility Into Complex SecOps Stacks
March 4, 2026Source or Source

Global Coalition Publishes 6G Security and Resilience Principles
The principles cover security, resilience against attacks and disasters, AI, and openness and interoperability.
March 4, 2026Source

Google speeds up Chrome updates with new security-focused release cycle
The Chrome browser is moving to a two-week release cycle, a change intended to give developers and users faster access to new features, performance improvements and bug fixes.
March 4, 2026Source

Hacker Conversations: Inti De Ceukelaire, Raging Against the Machine Creatively
A Belgian national, De Ceukelaire' did not set out to be a hacker. Like many hackers he was born with the potential to become one and only gradually realized he is one.
March 4, 2026Source

Hacker mass-mails HungerRush extortion emails to restaurant patrons
Customers of restaurants using the HungerRush point-of-sale (POS) platform say they received emails from a threat actor attempting to extort the company, warning that restaurant and customer data could be exposed if HungerRush fails to respond.
March 4, 2026Source

How a Brute Force Attack Unmasked a Ransomware Infrastructure Network
To most defenders, another brute-force alert on exposed RDP is background noise — bread-and-butter activity you triage and move past. For the Huntress Tactical Response Team, one of those "routine" alerts turned into something very different.
March 4, 2026Source

How Pirated Software Turns Helpful Employees Into Malware Delivery Agents
Employees seeking free versions of paid software may unknowingly install malware-laced "cracked" apps that can steal credentials, deploy cryptominers, or open the door to ransomware.
March 4, 2026Source

Kaspersky dismisses claims Coruna iPhone exploit kit is connected to NSA-linked operation
Follows suggestions iPhone-pwning toolset bears hallmarks of zero-days that targeted Russian diplomats
March 4, 2026Source

LastPass Warns of New Phishing Campaign
The attackers are sending out fake alerts claiming unauthorized access or master password changes.
March 4, 2026Source

LexisNexis confirms data breach at Legal & Professional arm, some customer records affected
Crooks claim 2 GB haul from AWS instance via React2Shell exploit
March 4, 2026Source

Mail2Shell zero-click attack lets hackers hijack FreeScout mail servers
A maximum severity vulnerability in the FreeScout helpdesk platform allows hackers to achieve remote code execution without any user interaction or authentication.
March 4, 2026Source

Malware-laced OpenClaw installers get Bing AI search boost
OpenClaw, the AI agent that can manage just about anything, is risky all by itself, but now fake installers for it are wreaking havoc. Users who searched Bing's AI results for "OpenClaw Windows" were directed to a malicious GitHub repository that delivered information stealers and GhostSocks onto their machines.
March 4, 2026Source

Mississippi medical center reopens clinics hit by ransomware attack
The University of Mississippi Medical Center (UMMC) says it has resumed normal operations, nine days after a ransomware attack blocked access to electronic medical records and took down many of its IT systems.
March 4, 2026Source

New LexisNexis Data Breach Confirmed After Hackers Leak Files
The hackers claim to have stolen 2GB of files, including 400,000 personal information records.
March 4, 2026Source

Njordium Vendor Management System eliminates duplicate third-party assessments
Njordium Cyber Group has launched its Vendor Management System (VMS), a platform that eliminates the costly duplication of third-party assessments under Europe's overlapping regulations.
March 4, 2026Source

Over 1,200 IceWarp servers still vulnerable to unauthenticated RCE flaw (CVE-2025-14500)
A critical RCE vulnerability (CVE-2025-14500) in IceWarp, an EU-made business communication and collaboration platform, may be exploited by attackers to gain unauthorized access to exposed unpatched servers.
March 4, 2026Source

ProtonVPN 6.4.0
Free VPN to protect your privacy. We believe online privacy is a fundamental human right. Providing free access is part of our mission. The Proton VPN free plan is unlimited and designed for security. No catches, no gimmicks. Just online privacy and freedom for those who need it.
March 4, 2026Source

Reddit users hate NordVPN. Are their criticisms legit?
NordVPN is one of the most popular VPNs, which makes the critiques over its privacy practices extra concerning.
March 4, 2026Source

Spyware-grade Coruna iOS exploit kit now used in crypto theft attacks
A previously undocumented set of 23 iOS exploits named "Coruna" has been deployed by multiple threat actors in targeted espionage campaigns and financially motivated attacks.
March 4, 2026Source

The vulnerability that turns your AI agent against you
Zenity Labs disclosed PleaseFix, a family of critical vulnerabilities affecting agentic browsers, including Perplexity Comet, that allow attackers to hijack AI agents, access local files, and steal credentials within authenticated user sessions. The vulnerabilities can be triggered through malicious content embedded in routine workflows, enabling unauthorized actions without user awareness.
March 4, 2026Source

TikTok Refuses to Add End-to-End Encryption to DMs
TikTok says it will not add end-to-end encryption to DMs, arguing the technology would limit safety investigations. The platform says its current encryption protects messages while allowing moderation teams and authorities to address harmful activity.
March 4, 2026Source

TikTok says it won't introduce end-to-end encryption for DMs
TikTok is setting itself apart from most other online platforms that offer messaging by stating that it won't be introducing end-to-end encryption to ensure the privacy of direct messages.
March 4, 2026Source

Tufin's AI-powered tools simplify network security operations
Tufin announced its latest AI-powered innovations, enabling customers to utilize its Unified Control Plane to accelerate issue resolution, reduce operational friction, and limit risk -- even as network complexity continues to grow.
March 4, 2026Source

Tycoon 2FA Phishing Platform Dismantled in Global Takedown
The phishing-as-a-service platform was used to send fraudulent emails to over 500,000 organizations every month.
March 4, 2026Source

US and EU police shut down LeakBase, a site accused of sharing stolen passwords and hacking tools
U.S. and European law enforcement have seized the database from LeakBase, which prosecutors have touted as "one of the world's largest online forums for cybercriminals" for sharing stolen passwords and hacking tools.
March 4, 2026Source

US Says Cyber Operations Underpinned Assault on Iran
Separately, Iran Tied to IP Camera Hacks for Targeting and Battle Damage Assessment
March 4, 2026Source or Source or Source or Source or Source

Zurich Acquires Beazley in $11 Billion Deal to Lead Cyberinsurance
The deal awaits final shareholder and regulatory approvals and is expected to be completed in the second half of 2026.
March 4, 2026Source

Internet — Security Issues — March 3rd, 2026

1.2 Million Affected by University of Hawaii Cancer Center Data Breach
Hackers stole names, Social Security numbers, driver's license information, voter registration records, and health-related information.
March 3, 2026Source or Source

'AI' could dox your anonymous posts
Researchers were able to accurately nail down identities for "anonymous" posts from Reddit, Hacker News, and more.
March 3, 2026Source

Amazon Says Drone Strikes Disrupted Middle East Data Centers
Iranian Cyberespionage Group MuddyWater Goes Dark
March 3, 2026Source or Source or Source or Source or Source or Source

Android gets patches for Qualcomm zero-day exploited in attacks
Google has released security updates to patch 129 Android security vulnerabilities, including an actively exploited zero-day flaw in a Qualcomm display component.
March 3, 2026Source or Source

Android's March 2026 security patch fixes over 100 flaws, one under targeted exploitation
The Android March 2026 security patch addresses vulnerabilities across dozens of components and includes one CVE confirmed under active exploitation. Devices running a patch level of 2026-03-05 or later receive fixes for all disclosed issues.
March 3, 2026Source

Anthropic Fight Lays Bare How Fundamental AI Is to the DOD
OpenAI Agrees to 'All Lawful Purposes' for Military AI Use Under Pentagon Deal
March 3, 2026Source

Anthropic poaches users from rival chatbots with easier migration
The controversy over Anthropic's negotiations with the Pentagon has driven increased interest in Claude.
March 3, 2026Source

Attackers swap brute force for trusted tools
The era of attacks seeking brute force entry into systems is fading according to a new report. In its place is a model of high-trust exploitation that prioritizes results at all costs.
March 3, 2026Source

Best antivirus software 2026: These 8 apps keep your PC safe
You need more than just prayer and luck—choose from our top antivirus software picks to stay safe.
March 3, 2026Source

Best free password managers 2026: Online security doesn't have to cost a thing
Shore up your defenses, stat.
March 3, 2026Source

Best VPN for Amazon Prime Video in 2026: Watch Prime Video From Everywhere
Stay connected to your full Amazon Prime Video lineup while traveling, thanks to these powerful VPNs with worldwide server networks.
March 3, 2026Source

Boards spend less than 30 minutes on cybersecurity
While cybersecurity reporting to boards of directors is now commonplace new data from IANS, Artico Search, and The CAP Group finds that just 25 percent of CISOs say board discussions on cyber risk extend beyond 30 minutes.
March 3, 2026Source

Cato integrates native, behavior-based auto-adaptive threat prevention into its SASE platform
Cato Networks has announced an auto-adaptive threat prevention engine within its SASE platform, enabling enterprises to proactively block advanced threats that use legitimate tools and targets. Cato Dynamic Prevention continuously evaluates activity in full context, correlating signals from across Cato's sensors over months of activity.
March 3, 2026Source

Cloudflare tracked 230 billion daily threats and here is what it found
Cloudflare's network blocks over 230 billion threats per day. The volume indicates how routine and automated the attack cycle has become, and the patterns behind that volume point to a shift in how breaches begin and progress.
March 3, 2026Source

Compromised Site Management Panels are a Hot Item in Cybercrime Markets
Threat actors are openly advertising access to hacked websites as part of the underground economy. One of the most promising products is a compromised cPanel credential. They are sold in the thousands across at commodity-level pricing and marketed as plug-and-play infrastructure for and scam campaigns.
March 3, 2026Source

Coruna: Spy-grade iOS exploit kit powering financial crime
A powerful iOS exploit kit has circulated among multiple threat actors over the past year, moving from a commercial surveillance operation to state-linked espionage campaigns and, ultimately, ended into the hands of financially motivated hackers, according to new research from Google's Threat Intelligence Group (GTIG).
March 3, 2026Source

Cybersecurity Leadership: Identity, Access, Complexity
CEOs and CISOs on Dealing With the 'Work From Anywhere' Challenge
March 3, 2026Source or Source or Source or Source or Source

Cyberwarriors elevated to big leagues in US war with Iran
No more hiding in the server closet: Cyber ops mentioned alongside kinetic warfare as critical to conflict
March 3, 2026Source

Enigma AI enables internal trust governance to asset-to-asset communications
Enigma Networks has announced the general availability of its Internal Trust Governance platform, Enigma AI, which continuously determines and validates which communications are necessary and safe across enterprise networks. Just as identity and access management (IAM) governs trust for users, Enigma AI governs trust between internal systems and assets, introducing a new control plane for zero trust that determines not only what is happening inside the network, but what should be happening.
March 3, 2026Source

Fig Security emerges from stealth with $38 million to resilience-proof enterprise security
Fig Security, a new platform that finds and fixes broken security flows across your entire SecOps infrastructure, has launched from stealth with $38 million across Seed and Series A rounds. It addresses one of the least visible challenges yet most consequential in enterprise security: the quiet breakdown of security operations as environments grow more complex. The round is backed by Team8 and Ten Eleven Ventures, alongside a group of prominent security leaders.
March 3, 2026Source or Source or Source

Groups Push Back on HHS' Proposed Health IT Rollbacks
CHIME, AHA, Others Contend Privacy, Security Burden Would Shift to Providers
March 3, 2026Source or Source

Hacked traffic cams and hijacked TVs: How cyber operations supported the war against Iran
On Saturday, U.S. and Israeli jets began a bombing campaign against Iran, killing its supreme leader Ali Khamenei and several senior government officials. The attacks also hit military and civilian targets all across the country, including a girls' school, where at least 168 children and adults were killed.
March 3, 2026Source

Hacktivists Claim DHS Breach, Leak 6,600+ ICE Contractor Records
Hacktivists claim they breached DHS systems, leaking records tied to 6,681 ICE contractor applicants, including major tech and defense firms.
March 3, 2026Source

Honeywell, Researcher Clash Over Impact of Building Controller Vulnerability
The researcher says he has identified thousands of internet-exposed IQ4 building management controllers.
March 3, 2026Source

I've been studying Windows telemetry for a decade - here's the only setting I turn off
Is Microsoft really spying on you with Windows telemetry? I've spent years investigating this topic. Here's what I learned.
March 3, 2026Source

Iran Cyber Front: Hacktivist Activity Rises, but State-Sponsored Attacks Stay Low
Iran Cyber Front: Hacktivist Activity Rises, but State-Sponsored Attacks Stay Low
March 3, 2026Source

Josys centralizes identity data to replace manual IT oversight with automated governance
Josys has transitioned into an autonomous identity governance platform, expanding beyond traditional SaaS management. The enhanced platform empowers IT leaders and managed service providers (MSPs) to scale governance and compliance efforts by centralizing identity data within a single, AI-driven system.
March 3, 2026Source

Juniper PTX Routers at Risk, Critical Takeover Flaw Disclosed
Juniper Tells Customers to Tune Their Firewall
March 3, 2026Source or Source

LexisNexis confirms data breach as hackers leak stolen files
American data analytics company LexisNexis Legal & Professional has confirmed to BleepingComputer that hackers breached its servers and accessed some customer and business information.
March 3, 2026Source

Microsoft: Hackers abuse OAuth error flows to spread malware
Hackers are abusing the legitimate OAuth redirection mechanism to bypass phishing protections in email and browsers to take users to malicious pages.
March 3, 2026Source

New 'AirSnitch' Attack Shows Wi-Fi Client Isolation Could Be a False Sense of Security
Researchers have uncovered a Wi-Fi vulnerability that allows nearby attackers to intercept sensitive data and execute machine-in-the-middle attacks against connected devices.
March 3, 2026Source

New Defender deployment tool streamlines Windows device onboarding with single executable
Microsoft's Defender deployment tool for Windows helps administrators manage device onboarding at scale with updated progress visibility and additional controls.
March 3, 2026Source

Paint maker giant AkzoNobel confirms cyberattack on U.S. site
The multinational Dutch paint company AkzoNobel has confirmed to BleepingComputer that hackers breached the network of one of its U.S. sites.
March 3, 2026Source

Probabilistic Data Structures for Software Security
Learn how bloom filters and count-min sketch make security systems fast and scalable by trading perfect accuracy for speed and memory efficiency.
March 3, 2026Source

ProcessUnity Risk Index delivers controls-driven vendor risk scoring for TPRM
ProcessUnity has introduced ProcessUnity Risk Index, a risk rating built specifically for third-party risk management programs, combining proprietary control intelligence with external threat and vulnerability data. ProcessUnity Risk Index rates vendors on a 100-point scale to drive faster, more confident risk prioritization.
March 3, 2026Source

Quantum Decryption of RSA Is Much Closer Than Expected
For decades, the quantum threat to RSA and ECC encryption has been tied to Shor's algorithm and the assumption that we would need million-qubit quantum computers to make it practical. A newly announced algorithm challenges that assumption and suggests the breaking point could arrive far sooner than expected.
March 3, 2026Source

RecordPoint MCP Server standardizes and secures AI access to compliant data
RecordPoint has unveiled its model context protocol (MCP) server, giving enterprises a secure, standardized way to expose governed data to external AI agents and platforms.
March 3, 2026Source

Researchers Uncover Method to Track Cars via Tire Sensors
Using low-cost receivers deployed along roads, academic researchers tracked drivers and their movement patterns.
March 3, 2026Source

Secure by Design
The proactive approach to cybersecurity that builds security in at the beginning to ensure technology is resilient.
March 3, 2026Source

Star Citizen game dev discloses breach affecting user data
Cloud Imperium Games (CIG), the game company behind Star Citizen and Squadron 42, says attackers breached systems containing some users' personal information in January.
March 3, 2026Source

Star Citizen game dev discloses breach affecting user data
Cloud Imperium Games (CIG), the game company behind Star Citizen and Squadron 42, says attackers breached systems containing some users' personal information in January.
March 3, 2026Source

Startup JetStream Secures $34M Seed Round for AI Governance
Blueprint Model From Ex-CrowdStrike Product Leader Targets MCP Servers, Cost Sprawl
March 3, 2026Source or Source

Study Finds AI Is Fueling An Alarming Surge In Sophisticated Phishing Scams
The National Consumers League has released its annual fraud report detailing the many scams that most consumers have fallen for. As you'd expect, AI is playing a large role in how the threat landscape has evolved this past year. While the kinds of scams fraudsters are using haven't changed much, the effectiveness of certain types of scams and the people who fall victim to them have notably shifted.
March 3, 2026Source

Third-party breach disclosures don't reflect the true scale of the problem
A new report from cyber risk management company Black Kite finds 136 unique major incidents, affecting 719 companies, however, an estimated 26,000 additional impacted companies were not officially named in breach reports.
March 3, 2026Source

Threat actors weaponize OAuth redirection logic to deliver malware
An ongoing phishing campaign is abusing the OAuth authentication redirection mechanism to avoid triggering conventional email and browser defenses, Microsoft researchers have revealed.
March 3, 2026Source

UH Cancer Center data breach affects nearly 1.2 million people
The University of Hawaii has confirmed that a ransomware gang stole the data of nearly 1.2 million individuals after breaching its Cancer Center's Epidemiology Division in August 2025.
March 3, 2026Source

Until last month, attackers could've stolen info from Perplexity Comet users just by sending a calendar invite
AI browsing agent left local files open for the taking
March 3, 2026Source or Watch Video

Vibe hacking and flat-pack malware -- the low-effort attacks being used to beat defenses
The latest Threat Insights Report from HP Wolf Security shows that attackers are using AI to scale and accelerate campaigns -- with many prioritizing cost, effort and efficiency over quality
March 3, 2026Source

Vulnerability in MS-Agent AI Framework Can Allow Full System Compromise
Improper input sanitization in the framework can be exploited through the Shell tool, allowing attackers to modify system files and steal data.
March 3, 2026Source

Internet — Security Issues — March 2nd, 2026

5 Tech Tips To Keep Your Work Private And Personal Data Safe
It's often said that those with nothing to hide have nothing to fear, but we now live in a world where that attitude has a chance of upending your life. With hackers, identity thieves, rogue nation-states, data-hungry tech companies, and AI agents on the loose, information that would normally be innocuous can become a devastating weapon against you or your loved ones. Moreover, if an attacker steals company data you were responsible for, it could result in massive losses for your employer and the termination of your employment.
March 2, 2026Source

AI has made us all surveillance targets. This tool helps you fight back.
Gen Z For Change launches its "Eyes on AI" campaign against surveillance capitalism.
March 2, 2026Source

Alabama man pleads guilty to hacking, extorting hundreds of women
A 22-year-old Alabama man pleaded guilty to extortion, cyberstalking, and computer fraud charges after hijacking the social media accounts of hundreds of young women (including minors).
March 2, 2026Source

AWS Expands Security Hub Into a Cross-Domain Security Platform
The AWS Security Hub Extended plan aims to reduce security tool sprawl by correlating findings across multiple security domains.
March 2, 2026Source

Best Multi Device VPN: Boost Your Privacy on All Your Gadgets
These VPNs will help you keep your online activity hidden, regardless of whether you're on a PC, iPhone, streaming stick or other device.
March 2, 2026Source

Biometric IDs are being rolled out in Africa. Study reveals the risks and pitfalls
Across Africa, governments are introducing digital systems that use individuals' unique physical measurements to identify them. These systems collect citizens' biometric and personal data and use it to give people access to essential public services like voting, health care, education and social protection. Biometric digital identification systems are often promoted as tools to improve efficiency, inclusion and service delivery.
March 2, 2026Source

California's New Law Will Make Operating Systems Ask for Your Age at Account Setup
Lawmakers argue the rule could make the web safer for children, while privacy advocates warn that OS-level age flags normalize user-level tracking.
March 2, 2026Source

Data Breach Exposes 25 Million Americans in What Texas Calls the Largest US Hack in History
Investigators say attackers were present in parts of Conduent's network from late October 2024 until mid‑January 2025.
March 2, 2026Source

Ex-Nuance IT Worker Pleads Guilty in Geisinger Health Case
Fired Employee Illegally Downloaded 1M Patient Records
March 2, 2026Source or Source or Source or Source or Source

Fake Google Security site uses PWA app to steal credentials, MFA codes
A phishing campaign is using a fake Google Account security page to deliver a web-based app capable of stealing one-time passcodes, harvesting cryptocurrency wallet addresses, and proxying attacker traffic through victims' browsers.
March 2, 2026Source

Florida woman imprisoned for massive Microsoft license fraud scheme
A Florida woman was sentenced to 22 months in prison for running a massive years-long scheme to traffic thousands of stolen Microsoft Certificate of Authenticity (COA) labels.
March 2, 2026Source

Google Working Towards Quantum-Safe Chrome HTTPS Certificates
The internet giant is developing an evolution of the certificates based on Merkle Tree Certificates (MTCs).
March 2, 2026Source

Hacktivists claim to have hacked Homeland Security to release ICE contract data
A group of hacktivists calling themselves "Department of Peace" claimed to have hacked the Department of Homeland Security (DHS), leaking allegedly stolen documents online.
March 2, 2026Source

How Deepfakes and Injection Attacks Are Breaking Identity Verification
Deepfakes are evolving and are no longer confined to misinformation campaigns or viral media manipulation. Most security teams already understand the deepfake problem; however, the more urgent shift is how synthetic media is being operationalized.
March 2, 2026Source

How to delete your AdultFriendFinder account
Merely deleting your AFF app is not enough to delete your account.
March 2, 2026Source

Instagram tracked growing usage while targeting teens, lawyers argue
Instagram tracked the time users spent on its app, with company executives flagging "milestones" that its app reached year after year. The app's daily usage grew from 40 minutes per day in 2023 to 46 minutes per day in 2026, according to documentation revealed during CEO Mark Zuckerberg's testimony in a state court case proceeding that took place in Los Angeles County Superior Court in February.
March 2, 2026Source

IPFire ships its 200th core update with a new domain blocklist and kernel upgrade
Network firewall distribution IPFire released Core Update 200, marking the 200th incremental update to the 2.29 branch. The release bundles a kernel upgrade, a beta domain blocklist service, security patches for OpenSSL and glibc, and a range of component updates.
March 2, 2026Source

Iran Conflict Elevates Cyber Risk for Healthcare
Experts Warn of DDoS, Ransomware, Proxy And Other Attacks on Health Sector
March 2, 2026Source or Source or Source or Source

Iranian Cyber Proxies Active But Not Nation-State Hackers
Nation-State Hackers Sheltering From Bombs or Cut Off From Internet
March 2, 2026Source or Source or Source

Iran's cyberwar has begun
'Expect elevated activity for the foreseeable future'
March 2, 2026Source

Madison Square Garden Data Breach Confirmed Months After Hacker Attack
The company is one of the many victims of the 2025 Oracle E-Business Suite (EBS) hacking campaign.
March 2, 2026Source

Meta AI in WhatsApp organizes chats and reopens privacy issues
The trend of integrating AI into digital platforms continues. In the latest Android beta release (2.26.9.4), the company has introduced a feature that allows users to organize their chat history with the help of Meta AI.
March 2, 2026Source

Motorola turns to GrapheneOS for smartphone security upgrade
Motorola is strengthening smartphone security through a long-term partnership with the GrapheneOS Foundation, a mobile security nonprofit that develops a hardened operating system based on the Android Open Source Project.
March 2, 2026Source

NetQuest launches NetworkLens for hyperscale AI threat detection
NetQuest has announced NetQuest NetworkLens, a new portfolio of hyperscale real-time network intelligence datasets engineered to power AI-driven cyber threat detection and advanced security analytics.
March 2, 2026Source

New 'Oblivion' RAT Malware Can Silently Hijack Your Android Phone
Oblivion is a new Android malware-as-a-service that targets devices running versions 8 to 16. Certo Software reports that this trojan uses a fake Google Play app update interface to trick users into granting Accessibility Service permissions. Once it's running, it can read 2FA codes, record keystrokes, and use a hidden remote control to control the device behind a fake "system update" screen.
March 2, 2026Source

Nick Andersen Appointed Acting Director of CISA
Madhu Gottumukkala has been assigned to a new role within the Department of Homeland Security.
March 2, 2026Source

No age verification! Security experts sign open letter, warning of risks
While age verification pursuits may have noble intentions, security experts warn that the consequences could be dangerous and far-reaching.
March 2, 2026Source

North Korean APT Targets Air-Gapped Systems in Recent Campaign
Using Windows shortcut files, the APT deployed a new implant, a loader, a propagation tool, and two backdoors.
March 2, 2026Source

OpenClaw Vulnerability Allowed Websites to Hijack AI Agents
Malicious websites could open a WebSocket connection to localhost on the OpenClaw gateway port, brute force passwords, and take control of the agent.
March 2, 2026Source

Popular prayer program becomes propaganda pusher after reported Israeli hack
Iranian worshippers got notifications saying 'help has arrived'
March 2, 2026Source

PSA: Most Wi-Fi routers vulnerable to AirSnitch attack -- here's what to do
You may recall that way back in 2017, the WPA2 encryption standard used by most Wi-Fi routers at the time was cracked and had to be replaced with a new version, WPA3. Now a new attack method dubbed AirSnitch means that Wi-Fi encryption on most networks can be bypassed in order to access all of the traffic passing through the router.
March 2, 2026Source

Quantum's Uncertain Arrival Leaves CIOs With a Strategic Choice
The Quantum Clock Is Ticking, But Is the C-Suite Ready?
March 2, 2026Source or Source or Source or Source or Source

Why encrypted backups may fail in an AI-driven ransomware era
Think your encrypted backups are safe? AI-driven ransomware now infiltrates networks, corrupts recovery points, and silently targets backup systems before you ever realize your data protection strategy has failed.
March 2, 2026Source

Young adults often see online hate speech as 'normal,' study finds
Social media users consider it "normal" to encounter online hate speech on social media and see it as part of the online environment. In certain contexts, they find it more normal than in others; for example, when it concerns prominent figures such as policymakers and content creators. However, they do not respond.
March 2, 2026Source

Zurich to Acquire Beazley in $11B European Insurance Deal
Cyber Insurance Expansion Drives Insurance Industry Consolidation
March 2, 2026Source or Source or Source or Source or Source

Internet — Security Issues — February 24th, 2026

Aikido Infinite introduces continuous, self-remediating AI penetration testing
Aikido Security has unveiled Aikido Infinite, a continuous AI penetration testing solution that autonomously validates and remediates vulnerabilities. Infinite reduces risk with every release by testing software changes as they move through deployment, confirming exploitability, and fixing vulnerabilities within the same workflow.
February 24, 2026Source

Anonymous Fenix Members Arrested in Spain
The group's administrator and moderator were arrested last year, and two other members were arrested this month.
February 24, 2026Source

'Arkanix Stealer' Malware Disappears Shortly After Debut
Written in C++ and Python, the malware exfiltrates system information, browser data, and steals files.
February 24, 2026Source

CISO Conversations: Timothy Youngblood; 4x Fortune 500 CISO/CSO
Timothy Youngblood was CISO at Dell, CISO at Kimberley-Clark, VP & CISO at McDonald's, and SVP, CSO & Product Security Officer at T-Mobile.
February 24, 2026Source

Druva expands DruAI with autonomous agents for forensics and compliance
Druva announced a major expansion of DruAI, adding Deep Analysis Agents that automate complex multi-day forensic and compliance investigations.
February 24, 2026Source

Ensuring smartphones have not been tampered with
With increasing cyberattacks and government data breaches, one of the most important devices to keep secure is the one in everyone's pocket: smartphones. The problem is that it is difficult to check that a smartphone has not been tampered with without the risk of unintentionally damaging the device itself.
February 24, 2026Source

Forescout VistaroAI replaces prompt engineering with role-based AI automation
Forescout introduced Forescout VistaroAI, which thinks like a security expert instead of a chatbot. It eliminates the need for prompt engineering by delivering role-based automation with human-in-the-loop control, resulting in faster, more accurate risk decisions and an improved user experience compared to prompt-driven AI assistants.
February 24, 2026Source

GitHub Issues Abused in Copilot Attack Leading to Repository Takeover
Attackers can inject malicious instructions in a GitHub Issue that are automatically processed by Copilot when launching a Codespace from that issue.
February 24, 2026Source

How Generative AI and OpenTelemetry Transform Observability
Gen AI Nears 98% Adoption as OTel Gains Ground in Production
February 24, 2026Source or Source

I'm a tech pro and an AI job scam almost fooled me - here's what gave it away
With a bit of vigilance, I avoided disaster. Here's how you can too.
February 24, 2026Source

International operation dismantles fraud network, €400,000 seized
A coordinated international operation supported by Eurojust dismantled a fraudulent call centre operating from three offices and targeting citizens throughout Europe. Authorities arrested 11 suspects and seized more than €400,000 in cash.
February 24, 2026Source

Marquis sues firewall provider SonicWall, alleges security failings with its firewall backup led to ransomware attack
Fintech giant Marquis is suing its firewall provider SonicWall, claiming that an earlier breach allowed hackers to steal sensitive information about customer firewalls that led to a ransomware attack on Marquis' network.
February 24, 2026Source

Microsoft expands Sovereign Cloud security with governance, local productivity and AI
Microsoft expands Microsoft Sovereign Cloud with new disconnected and AI capabilities that help organizations run critical infrastructure, productivity services and large AI models inside sovereign boundaries while keeping governance and operational continuity across connected and disconnected environments.
February 24, 2026Source

New phishing hacks aren't sloppy—they're personalized
The more targeted the scam, the harder it is to spot.
February 24, 2026Source

New Relic Agentic Platform brings governance and scale to AI agents
New Relic announced enterprise-grade Agentic Platform capabilities that enable organizations to build, deploy, and manage a full spectrum of AI agents and agentic workflows, from simple single-task automations to complex, multi-agent orchestrations. With an intuitive no-code builder for domain experts, New Relic's Agentic Platform empowers enterprises to intelligently automate a wide range of processes, leading to a significant reduction in manual toil, faster incident resolution, and improved operational resilience.
February 24, 2026Source

New 'Sandworm_Mode' Supply Chain Attack Hits NPM
New 'Sandworm_Mode' Supply Chain Attack Hits NPM
February 24, 2026Source

North Korean Hackers Continue to Target US Healthcare
Report: Lazarus Group Pivoting to Medusa Ransomware for Extortion Attacks
February 24, 2026Source or Source or Source or Source or Source or Source

Taiwan Security Firm Confirms Flaw Flagged by CISA Likely Exploited by Chinese APTs
The vulnerability in TeamT5 ThreatSonar Anti-Ransomware was recently added to CISA's KEV catalog.
February 24, 2026Source

UK data watchdog fines Reddit £14.47M for letting kids slip past the gate
Social media giant retorts it doesn't want to collect 'private' data, and plans to appeal
February 24, 2026Source

VMware Aria Operations Vulnerability Could Allow Remote Code Execution
Broadcom has patched several vulnerabilities in VMware Aria Operations, including high-severity flaws.
February 24, 2026Source

Internet — Security Issues — February 17th, 2026

3 Threat Groups Started Targeting ICS/OT in 2025: Dragos
Industrial cybersecurity firm Dragos has published its 9th Year in Review OT/ICS Cybersecurity Report.
February 17, 2026Source

Advanced security technology is rarely used—research offers a solution
Modern and powerful security technology that protects against hacking attempts is used to a very limited extent—despite having been available to developers for more than a decade. Researchers at Umeå University can now reveal why the technology fails to take hold. "At the same time, we present an automated solution that makes it easy to adopt the technology," says Sabine Houy, doctoral student at the Department of Computing Science, who is now defending her thesis.
February 17, 2026Source

API Threats Grow in Scale as AI Expands the Blast Radius
New research shows attackers increasingly abusing APIs at machine speed as AI-driven systems widen exposure and amplify impact.
February 17, 2026Source

Booz Allen to acquire Defy Security, expanding global cyber reach
Booz Allen Hamilton has entered into a definitive agreement to acquire Defy Security as a wholly owned subsidiary. The acquisition will expand delivery of end-to-end, tech-enabled cybersecurity solutions for U.S. and international enterprises across financial services, healthcare and life sciences, manufacturing, technology, energy, retail, and other sectors.
February 17, 2026Source

Chatbots, IT Outages, Devices Top 2026 Health Tech Hazards
ECRI Institute Researchers Rob Schluth, Scott Luney Discuss Top Health Tech Hazards
February 17, 2026Source or Source or Source or Source or Source

Chinese hackers exploiting Dell zero-day flaw since mid-2024
A suspected Chinese state-backed hacking group has been quietly exploiting a critical Dell security flaw in zero-day attacks that started in mid-2024.
February 17, 2026Source

Cyber Startups to Take Innovation Spotlight at RSAC 2026
As Innovation Sandbox Turns 21, AI-Based Solutions Dominate Annual Contest
February 17, 2026Source or Source or Source

Data Minimization Is Still an Underrated Security Control
Why Reducing Data Volume Matters More Than Ever for SOCs and CISOs
February 17, 2026Source or Source or Source or Source

Design weaknesses in major password managers enable vault attacks, researchers say
Can cloud-based password managers that claim "zero-knowledge encryption" keep users' passwords safe even if their encrypted-vault servers are compromised?
February 17, 2026Source

Dutch police arrest man on hacking charges after sending him confidential files by mistake
He allegedly tried to blackmail the cops, too
February 17, 2026Source

Elon Musk's AI Bot Snared in New Irish, European Probes
GrokAI Non-Consensual Sexual Imagery Raises Official Hackles
February 17, 2026Source or Source or Source or Source or Source

European Parliament blocks AI on lawmakers' devices, citing security risks
The European Parliament has reportedly blocked lawmakers from using the baked-in AI tools on their work devices, citing cybersecurity and privacy risks with uploading confidential correspondence to the cloud.
February 17, 2026Source

Fresh Cyberespionage Operation Tied to Iranian Surveillance
Malware Campaign Uses Lures With Positive Portrayal of Anti-Tehran Protests
February 17, 2026Source or Source or Source or Source or Source

Hackers Offer to Sell Millions of Eurail User Records
Eurail has confirmed that the stolen data is up for sale, but it's still trying to determine how many individuals are impacted.
February 17, 2026Source

HaystackID delivers audit-ready AI governance for high-risk, regulated environments
HaystackID has released HaystackID AI Governance Services, a new portfolio designed to help organizations move from AI principles and policies to an execution-ready governance operating model.
February 17, 2026Source

ICS/OTCyber Insights 2026: The Ongoing Fight to Secure Industrial Control Systems
As nation-state actors, ransomware groups, and aging infrastructure collide, organizations must rethink how they defend critical operations through resilience, visibility, and modern security strategies.
February 17, 2026Source

Impart enables safe, in-app enforcement against AI-powered bots
Impart Security has launched Programmable Bot Protection, a runtime approach to bot defense that brings detection and enforcement together within the application. Impart makes enforcement operational by enabling teams to see what would be blocked before turning it on.
February 17, 2026Source

Is Your GRC Program Really Reducing Risk?
CISO Sean Atkinson on Moving From 'GRC Theater' to Continuous GRC Engineering
February 17, 2026Source or Source or Source or Source or Source

Kettering Health Notifying Patients of Interlock Breach
Cybercrime Group First Listed Ohio Health System as a Data Theft Victim Last June
February 17, 2026Source or Source or Source or Source or Source

Malwarebytes brings Scam Guard to desktop with real-time scam protection
Malwarebytes has expanded the availability of its scam detection tool Scam Guard to desktop for both Windows and Mac. The free scam protection tool provides real-time feedback on scams, threats and malware alongside digital safety recommendations.
February 17, 2026Source

ManageEngine adds causal and autonomous AI to Site24x7 to cut MTTR
ManageEngine has added new causal intelligence and autonomous AI capabilities in Site24x7, its full-stack observability platform. These enhancements transform how enterprises handle outages, shifting from firefighting to autonomous resilience. By reducing mean time to recovery (MTTR) and ensuring service-level agreement (SLA) compliance, Site24x7 helps IT teams safeguard the customer experience and retain trust.
February 17, 2026Source

New Keenadu backdoor found in Android firmware, Google Play apps
A newly discovered and sophisticated Android malware called Keenadu has been found embedded in firmware from multiple device brands, enabling it to compromise all installed applications and gain unrestricted control over infected devices.
February 17, 2026Source

Number of ransomware victims hits record high
Ransomware groups listed a record 7,458 victims on dark web leak sites in 2025, representing a significant 30 percent increase compared to 2024.
February 17, 2026Source

Not Just The Gas Pump: Card Skimmers Could Even Be In Your Grocery Store
If you have money, it's a safe bet there's a bad actor out there who would love to take it from you. One way to do it is through a card skimmer placed on an actual reader. The skimmer steals user data via the PIN pad and the card's magnetic strip. This was evidently the plan when two men were seen on camera installing a skimmer in BB's Grocery Outlet located in Providence Township, Pennsylvania, in December of 2025.
February 17, 2026Not Just The Gas Pump: Card Skimmers Could Even Be In Your Grocery Store
If you have money, it's a safe bet there's a bad actor out there who would love to take it from you. One way to do it is through a card skimmer placed on an actual reader. The skimmer steals user data via the PIN pad and the card's magnetic strip. This was evidently the plan when two men were seen on camera installing a skimmer in BB's Grocery Outlet located in Providence Township, Pennsylvania, in December of 2025.
February 17, 2026
Source

" target="new" class="RM1">Source

OT teams are losing the time advantage against industrial threat actors
In many industrial environments, internet-facing gateways, remote access appliances, and boundary systems sit close enough to production networks that attackers can move from IT intrusion to operational disruption with limited resistance. Dragos' 2026 OT/ICS Year in Review describes a threat landscape where adversaries are spending more time learning how physical processes work and less time treating OT access as a passive foothold.
February 17, 2026Source

Palo Alto Networks intends to acquire Koi, advancing agentic endpoint security
Palo Alto Networks has entered into a definitive agreement to acquire Koi, giving enterprises the power to finally see and protect the AI-native ecosystem that defines modern work.
February 17, 2026Source

Password Managers Vulnerable to Vault Compromise Under Malicious Server
Researchers at ETH Zurich have tested the security of Bitwarden, LastPass, Dashlane, and 1Password password managers.
February 17, 2026Source

Poland arrests suspect linked to Phobos ransomware operation
Polish police have detained a 47-year-old man suspected of ties to the Phobos ransomware group and seized computers and mobile phones containing stolen credentials, credit card numbers, and server access data.
February 17, 2026Source

Polish cops nab 47-year-old man in Phobos ransomware raid
Police say seized kit contained logins, passwords, and server IP addresses
February 17, 2026Source

Pressure builds on Grok AI, Ireland launches investigation
The Irish Data Protection Commission (DPC) opened an investigation into X over concerns that its Grok AI chatbot was used to generate sexualized deepfakes.
February 17, 2026Source

UK.gov launches cyber 'lockdown' campaign as 80% of orgs still leave door open
Digital burglaries remain routine, and data shows most corps still don't stick to basic infosec standards
February 17, 2026Source

Update Chrome ASAP! The first zero-day flaw of 2026 is patched
An update for Chrome was sent out late last week with a single, solitary fix: the first zero-day exploit discovered so far this year.
February 17, 2026Source

US lawyers fire up privacy class action accusing Lenovo of bulk data transfers to China
Keep behavioral tracking American? PC giant says the claim is 'false'
February 17, 2026Source

VulnCheck Raises $25 Million in Series B Funding to Scale Vulnerability Intelligence
The latest funding round was led by Sorenson Capital and brings the total investment to $45 million.
February 17, 2026Source

Why I Don't Blindly Trust Google's 'Verified' Badge When Shopping for VPNs
A badge means reviewed for foundational app security, not necessarily trusted with your online privacy.
February 17, 2026Source

Windows PCs targeted by hackers in a fake CAPTCHA scam to spread malware — Outlook account credentials are at risk
Hackers found a way to turn "I'm not a robot" into a malicious attack that targets confidential data.
February 17, 2026Source

Internet — Security Issues — February 15th, 2026

Best VPN for Windows PCs 2026: Browse the Web, Torrent, Stream and Game Privately
The best VPNs for Windows PCs let you browse the web, stream videos from services like Netflix, game and download torrents in private.
February 15, 2026Source

CTM360: Lumma Stealer and Ninja Browser malware campaign abusing Google Groups
CTM360 reports that more than 4,000 malicious Google Groups and 3,500 Google-hosted URLs are being used in an active malware campaign targeting global organizations.
February 15, 2026Source

Interpol backroom warriors fight cyber criminals 'weaponising' AI
From perfectly spelled phishing emails to fake videos of government officials, artificial intelligence is changing the game for Interpol's cat-and-mouse fight against cybercrime at its high-tech war rooms in Singapore.
February 15, 2026Source

Pastebin comments push ClickFix JavaScript attack to hijack crypto swaps
Threat actors are abusing Pastebin comments to distribute a new ClickFix-style attack that tricks cryptocurrency users into executing malicious JavaScript in their browser, allowing attackers to hijack Bitcoin swap transactions and redirect funds to attacker-controlled wallets.
February 15, 2026Source

Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilience
In this Help Net Security interview, Deneen DeFiore, VP and CISO at United Airlines, explains how the company approaches modernization without compromising safety-critical environments, why resilience and continuity matter as much as prevention, and how the airline manages risk across an interconnected ecosystem of vendors, partners, and infrastructure providers.
February 15, 2026Source

Worried about your digital privacy? I tested the top 3 VPNs to find the best of the best.
Here's who to trust with your privacy (and money).
February 15, 2026Source

Internet — Security Issues — February 14th, 2026

Cybersecurity spending may pay off: Study links readiness to stronger returns
The infamous Target data breach during the 2013 holiday shopping season, which cost the company more than $200 million in damages, has since been hailed as a landmark case in cybersecurity. Exposure to these threats has only increased as businesses continue to expand their digital footprints. That's why, as a new study involving Binghamton University's School of Management found, businesses that sufficiently prepare to defend against cyberattacks are also more likely to perform better financially.
February 14, 2026Source

Fastest VPN of 2026: Improve Your Privacy Without Sacrificing Speed
Fastest VPN of 2026: Improve Your Privacy Without Sacrificing Speed
February 14, 2026Source

One threat actor responsible for 83% of recent Ivanti RCE attacks
Threat intelligence observations show that a single threat actor is responsible for most of the active exploitation of two critical vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM), tracked as CVE-2026-1281 and CVE-2026-1340.
February 14, 2026Source

Over 300 Malicious Chrome Extensions Caught Leaking or Stealing User Data
With more than 37 million combined downloads, the extensions expose users to tracking and personal information theft.
February 14, 2026Source

Snail mail letters target Trezor and Ledger users in crypto-theft attacks
Threat actors are sending physical letters pretending to be from Trezor and Ledger, makers of cryptocurrency hardware wallets, to trick users into submitting recovery phrases in crypto theft attacks.
February 14, 2026Source

Windows Secure Boot Certificates From 2011 Will Be Expiring Soon. What You Need to Know
You're probably all set, but you should still probably check and update if necessary.
February 14, 2026Source

Internet — Security Issues — February 13th, 2026

2026 Predictions: AI Is Breaking Identity, Data Security
Agentic AI Is Reshaping Security Faster Than Traditional Defenses Can Keep Up
February 13, 2026Source or Source or Source or Source or Source

Alert: 'Severe Cyberthreat' to Critical Infrastructure
Develop 'Strong Resilience and Recovery Plans,' Urges UK Cybersecurity Agency
February 13, 2026Source or Source or Source or Source or Source

Best VPN for Chromebooks for 2026: Keep your Browsing Habits and Streaming Activity Private
The best Chromebook VPNs add an extra layer of privacy while browsing the web or unblocking streaming content.
February 13, 2026Source

BeyondTrust Vulnerability Targeted by Hackers Within 24 Hours of PoC Release
Exploitation attempts target CVE-2026-1731, a critical unauthenticated remote code execution flaw in BeyondTrust Remote Support.
February 13, 2026Source

Bitcoin trading firm CEO gets 20 years for operating $200 million Ponzi scheme
The U.S. Department of Justice sentenced the CEO of a multi-level marketing and bitcoin trading firm to 20 years in prison after a conviction for wire fraud and money laundering tied to a large scale Ponzi scheme.
February 13, 2026Source

Bretton AI Gets $75M to Use AI for Financial Crime Compliance
AI Agents Target Anti-Money Laundering at Major Global Banks, Cut Manual Probes
February 13, 2026Source or Source or Source or Source or Source

Brutus: Open-source credential testing tool for offensive security
Brutus is an open-source, multi-protocol credential testing tool written in pure Go. Designed to replace legacy tools that have long frustrated penetration testers with dependency headaches and integration gaps, Brutus ships as a single binary with zero external dependencies and native support for the JSON-based reconnaissance pipelines that define offensive security.
February 13, 2026Source

Can AI Ads Pay the Bills?
OpenAI Tests Promos, Anthropic Rejects Them Amid Rising Compute Costs
February 13, 2026Source or Source or Source or Source or Source

Check Point Announces Trio of Acquisitions Amid Solid 2025 Earnings Beat
Check Point has acquired Israeli cybersecurity companies Cyata, Cyclops, and Rotate.
February 13, 2026Source or Source or Source or Source or Source or Source

Chrome 145 Patches 11 Vulnerabilities
Three of the security defects are high-severity flaws, two of which were found and reported by Google.
February 13, 2026Source

CISA Announces New Town Halls to Engage with Stakeholders on Cyber Incident Reporting for Critical Infrastructure
Advancing National Cybersecurity Posture While Reducing Compliance Burden in the CIRCIA Rulemaking Process
February 13, 2026Source

CISA flags critical Microsoft SCCM flaw as exploited in attacks
CISA ordered U.S. government agencies on Thursday to secure their systems against a critical Microsoft Configuration Manager vulnerability patched in October 2024 and now exploited in attacks.
February 13, 2026Source

CISA Warns of Exploited SolarWinds, Notepad++, Microsoft Vulnerabilities
Disclosed at the end of January, the SolarWinds vulnerability was likely exploited as a zero-day since December 2025.
February 13, 2026Source

Dutch Carrier Odido Discloses Data Breach Impacting 6 Million
Hackers stole personal information such as names, addresses, and phone numbers from a customer contact system.
February 13, 2026Source or Source or Source

Fake job recruiters hide malware in developer coding challenges
A new variation of the fake recruiter campaign from North Korean threat actors is targeting JavaScript and Python developers with cryptocurrency-related tasks.
February 13, 2026Source

Google reports that state hackers from China, Russia and Iran are using Gemini in 'all stages' of attacks — phishing lures, coding and vulnerability testing get AI underpinnings from hostile actors
Hackers from Iran, China, India, and Russia all found using the AI.
February 13, 2026Source

Hackers probe, exploit newly patched BeyondTrust RCE flaw (CVE-2026-1731)
Attackers are exploiting a recently patched critical vulnerability (CVE-2026-1731) in internet-facing BeyondTrust Remote Support and Privileged Remote Access instances.
February 13, 2026Source

How crypto and blockchain are changing the cybersecurity landscape [Q&A]
In 2016, the DAO hack shook the crypto world with a $60 million loss. Today, a single DeFi exploit can drain $600 million in minutes. Blockchain protocols have gone from securing thousands or millions of dollars to billions in just a few years.
February 13, 2026Source

In Other News: Google Looks at AI Abuse, Trump Pauses China Bans, Disney's $2.7M Fine
Other noteworthy stories that might have slipped under the radar: vulnerabilities at 277 water systems, DoD employee acting as money mule, 200 airports exposed by flaw.
February 13, 2026Source

India's E-Rupee Leads the Secure Adoption of CBDCs
Futurex's Ruchin Kumar on CBDC Adoption and HSM Security for Transactions
February 13, 2026Source or Source or Source or Source or Source

Malicious 7-Zip Site (7zip.com) Installs Real App, Then Proxy Malware
Malwarebytes has published a warning about a 7-Zip impersonation campaign that blends a convincing fake download site with a trojanized installer designed for long-term monetization. The counterfeit domain, 7zip.com, is engineered to look like the legitimate 7-zip.org page, duplicating layout and wording closely enough that a quick glance can fool even experienced users. The social engineering angle is reinforced by search placement: the fake page is reportedly promoted through search ads, letting it appear above the legitimate result for common queries like "7-Zip download."
February 13, 2026Source

New NCSC-Led OT Security Guidance for Nuclear Reactors
Four Principles Positioning the Nuclear Ecosystem for Long-Term Cyber Resilience
February 13, 2026Source or Source or Source or Source or Source

Police arrests distributor of JokerOTP password-stealing bot
The Dutch National Police arrested a 21-year-old man from Dordrecht as part of a cybercrime investigation by Team Cybercrime Oost-Brabant. The suspect is believed to have distributed a tool known as JokerOTP, a bot used to intercept one-time passwords (OTPs) used to secure online accounts and financial transactions.
February 13, 2026Source

Proofpoint acquires Acuvity to secure AI and agent-driven workflows
As generative AI reshapes how work gets done, organisations are deploying AI copilots, autonomous agents, and model-connected applications across every function, from software development and customer support to finance and legal.
February 13, 2026Source or Source or Source or Source or Source

Ransomware attacks up almost 50 percent in 2025
Publicly disclosed ransomware attacks increased by 49 percent year on year in 2025. The total number reached a record high of 1,174 incidents, nearly four times higher than in 2020.
February 13, 2026Source

Ransomware Groups Claimed 2,000 Attacks in Just Three Months
Ransomware attacks surged 52% in 2025, with supply chain breaches nearly doubling as groups like Qilin drive record monthly incidents worldwide.
February 13, 2026Source

State Hackers Turn Google AI Into Attack Acceleration Tool
China, Iran, North Korea Hackers Exploit Gemini Across Attack Life Cycle
February 13, 2026Source or Source or Source or Source or Source or Source

Texas AG Investigating Conduent, BCBS Texas in Hack
Will the Back-Office Services' Firm Incident Shatter US Data Breach Records?
February 13, 2026Source or Source or Source or Source or Source

The ROI Reckoning Is Coming for AI
CIOs Say Stalled Pilots, Vendor Regret and Growing Fatigue Stifle AI Ambition
February 13, 2026Source or Source or Source or Source or Source

Trump team's planned ACA rule offers its answer to rising premium costs: Catastrophic coverage
The Trump administration has unveiled a sweeping set of regulatory proposals that would substantially change health plan offerings on the Affordable Care Act marketplace next year, aiming, it says, to provide more choice and lower premiums. But it also proposes sharply raising some annual out-of-pocket costs — to more than $27,600 for one type of coverage — and could cause up to 2 million people to drop insurance.
February 13, 2026Source or Source

Turning IBM QRadar Alerts into Action with Criminal IP
The integration brings external, IP-based threat intelligence directly into IBM QRadar's detection, investigation, and response workflows, enabling security teams to identify malicious activity faster and prioritize response actions more effectively across SOC operations.
February 13, 2026Source

Why secure OT protocols still struggle to catch on
Industrial control system networks continue to run on legacy communication protocols that were built for reliability and uptime, not authentication or data integrity. In many environments, malicious actors with access to the OT network can impersonate devices, issue unauthenticated commands, or modify messages in transit without detection.
February 13, 2026Source

Internet — Security Issues — February 12th, 2026

1Password open sources a benchmark to stop AI agents from leaking credentials
Research has shown that some AI models can identify phishing websites with near-perfect accuracy when asked. When those same models are used as autonomous agents with access to tools like email, web browsers, and password vaults, they can still carry out the scam.
February 12, 2026Source

4 quick security upgrades I always do on a new PC
I consider these non-negotiable before I start settling in.
February 12, 2026Source

AMOS infostealer targets macOS through a popular AI app
Infostealers like (AMOS) represent far more than a standalone malware. They are foundational components of a mature cybercrime economy built around harvesting, trading, and operationalizing stolen digital identities.
February 12, 2026Source

ApolloMD Data Breach Impacts 626,000 Individuals
The company says hackers stole the personal information of patients of affiliated physicians and practices.
February 12, 2026Source

Apple fixes zero-day flaw exploited in targeted attacks (CVE-2026-20700)
Apple has released fixes for a zero-day vulnerability (CVE-2026-20700) exploited in targeted attacks last year.
February 12, 2026Source

Apple patches decade-old iOS zero-day, possibly exploited by commercial spyware
Flaw abused 'in an extremely sophisticated attack against specific targeted individuals'
February 12, 2026Source

Black Duck expands Polaris platform with unified, automated security across all major SCMs
Black Duck has announced the availability of a set of enhanced Black Duck Polaris Platform integrations across all major source code management (SCM) platforms, including GitHub, GitLab, Azure DevOps, and Bitbucket. The Polaris Platform is an integrated, software-as-a-service application security platform powered by the static application security testing, software composition analysis, and dynamic application security testing engines.
February 12, 2026Source

BlueCat Horizon unifies DNS, DHCP, IPAM, and security into a cloud-first intelligent NetOps platform
BlueCat Networks has unveiled BlueCat Horizon, a SaaS-based platform designed to modernize how enterprises and mid-market organizations operate, secure, and evolve their networks through AI-assisted insights and coordinated action across the network. BlueCat Horizon introduces a common set of platform and infrastructure services that support multiple network applications and enable cross-domain use cases that were previously siloed.
February 12, 2026Source

Cryptohack Roundup: 20 Years for $73 Million Scam
Also: SafeMoon CEO Gets 8 Years for Fraud, SBF Seeks New Trial
February 12, 2026Source or Source or Source or Source or Source

Fake AI Chrome extensions with 300K users steal credentials, emails
A set of 30 malicious Chrome extensions that have been installed by more than 300,000 users are masquerading as AI assistants to steal credentials, email content, and browsing information.
February 12, 2026Source

Hacktivists, State Actors, Cybercriminals Target Global Defense Industry, Google Warns
Threat actors from Russia, China, North Korea and Iran have been observed launching attacks.
February 12, 2026Source

How to Eliminate the Technical Debt of Insecure AI-Assisted Software Development
Developers must view AI as a collaborator to be closely monitored, rather than an autonomous entity to be unleashed. Without such a mindset, crippling tech debt is inevitable.
February 12, 2026Source

Microsoft to Enable 'Windows Baseline Security' With New Runtime Integrity Safeguards
Windows will have runtime safeguards enabled by default, ensuring that only properly signed software runs.
February 12, 2026Source

NowSecure AI-Navigator cuts mobile app testing time by automating authentication
NowSecure announced the launch of AI-Navigator, new functionality that streamlines and improves mobile application security testing. By automating authentication workflows, NowSecure enables security teams to dynamically test mobile apps for vulnerabilities and privacy leaks up to 90% faster.
February 12, 2026Source

Nucleus Raises $20 Million for Exposure Management
The company will use the investment to scale operations and deepen intelligence and automation.
February 12, 2026Source

OpenVPN releases version 2.7.0 with expanded protocol and platform updates
OpenVPN version 2.7.0 is now available. The update advances support for multi-address server configurations and updates client functionality across operating systems. The release includes enhancements in data channel handling and support for evolving kernel and cryptographic components.
February 12, 2026Source

PostgreSQL 18.2 Security Patches & Critical Bug Fixes Explained
PostgreSQL 18.2 (and the matching updates for 17.8, 16.12, 15.16 and 14.21) patches five high‑severity security flaws—including remote code execution bugs in the intarray, pgcrypto, multibyte handling and pg_trgm extensions—so any server running those versions is exposed until upgraded. The release also fixes over 65 bugs, notably ltree case‑insensitive index errors, a broken NOT NULL constraint addition, and backup failures on tables larger than 1 GB. Upgrading is straightforward: stop the service, replace the binaries, start again, then reindex any ltree columns if you use non‑libc collations.
February 12, 2026Source

Privacy risk on your wrist: Smartwatch electromagnetic signals may expose users to cyber surveillance
Sometimes, cybersecurity isn't about passwords or computer chips or networks. Instead, it may be about what's on your wrist. New research led by WPI faculty members and students shows that electromagnetic signals from smartwatches that connect to cellular networks can be collected and used to make inferences about a wearer's behavior, activities, and even health.
February 12, 2026Source

These 4 critical AI vulnerabilities are being exploited faster than defenders can respond
From prompt injection to deepfake fraud, security researchers say several flaws have no known fix. Here's what to know about them.
February 12, 2026Source

Windows Notepad Markdown feature opens door to RCE (CVE-2026-20841)
Among the many security fixes released by Microsoft on February 2026 Patch Tuesday is one for CVE-2026-20841, a command injection vulnerability in Notepad that could be exploited by attackers to achieve remote code execution on targets' Windows system.
February 12, 2026Source

Internet — Security Issues — February 11th, 2026

A new wave of romance scams is washing across the internet—here's how to stay safe
Romance scams are among the most emotionally damaging forms of cyber crime because they combine carefully manufactured intimacy with financial theft—the scammers go after your heart, and then your wallet.
February 11, 2026Source

Best VPN services 2026: The best VPNs for speed, security, and online privacy
Here's how the best VPNs around compare in real-world tests of their speed, servers, and security features.
February 11, 2026Source

Chipmaker Patch Tuesday: Over 80 Vulnerabilities Addressed by Intel and AMD
More than two dozen advisories have been published by the chip giants for vulnerabilities found recently in their products.
February 11, 2026Source

CodeHunter expands behavioral intent analysis to secure the software supply chain
CodeHunter is expanding its behavioral intent technology beyond traditional malware analysis to address supply chain risk and security decision-making across the software development lifecycle (SDLC).
February 11, 2026Source

Conduent Breach Hits Volvo Group: Nearly 17,000 Employees' Data Exposed
The Conduent data breach affects at least 25 million individuals, up from 10 million estimated a few months ago.
February 11, 2026Source

CVEs set to hit record high levels in 2026
A new report predicts that this year will mark the first time the industry will cross 50,000 published CVEs in a single year. The findings, from global cybersecurity nonprofit The Forum of Incident Response and Security Teams (FIRST), suggest that between 70,000 to 100,000 vulnerabilities are entirely possible in 2026.
February 11, 2026Source

Fortnite expands PC anti-cheat requirements to all tournaments: Secure Boot, TPM and now also IOMMU
Fortnite adds IOMMU to PC tournament security requirements, builds on Secure Boot and TPM
February 11, 2026Source

GitGuardian Raises $50 Million for Secrets and Non-Human Identity Security
GitGuardian Raises $50 Million for Secrets and Non-Human Identity Security
February 11, 2026Source

Google Search introduces new ways to remove sensitive personal information and explicit images
Google expanded its "Results about you" tool to give users more control over sensitive personal information and added a way to request removal of non-consensual explicit images from Search.
February 11, 2026Source

Hacker Conversations: Professional Hacker Douglas Day
Day became a professional hacker by choice. But that doesn't mean he isn't a natural hacker.
February 11, 2026Source

Healthcare Cybersecurity Forum at HIMSS26: Adapting to meet the moment
The stakes are high and the challenges unrelenting. But just as threats are evolving, so are the skillsets and leadership strategies to mitigate risk, safeguard data and protect patients.
February 11, 2026Source

Is spyware hiding on your phone? How to find out and remove it - fast
Think your phone is acting strange? It may be infected with spyware. Here are the warning signs and and how you can stop it.
February 11, 2026Source

Ivanti EPMM exploitation: Researchers warn of "sleeper" webshells
A massive wave of exploitation attempts has followed the disclosure of CVE-2026-1281, a critical pre-authentication Ivanti EPMM vulnerability, the Shadowserver Foundation has warned.
February 11, 2026Source

Ivanti Patches Endpoint Manager Vulnerabilities Disclosed in October 2025
It also fixed a high-severity authentication bypass that could be exploited remotely without authentication to obtain credentials.
February 11, 2026Source

Kong launches Context Mesh to turn enterprise APIs into agent-ready tools
Kong has announced Kong Context Mesh, a product that automatically discovers enterprise APIs, transforms them into agent-consumable tools, and deploys them with runtime governance.
February 11, 2026Source

Legacy systems blamed as ministers promise no repeat of Afghan breach
UK government grilled over progress made to prevent a second life-threatening leak
February 11, 2026Source

Microsoft fixes dozens of security flaws in Windows, Office, and Azure
This month's big batch of security updates addresses nearly 60 vulnerabilities across Microsoft's various products and services.
February 11, 2026Source

Microsoft Patch Tuesday: 6 exploited zero-days fixed in February 2026
Microsoft has plugged 50+ security holes on February 2026 Patch Tuesday, including six zero-day vulnerabilities exploited by attackers in the wild.
February 11, 2026Source

Microsoft to Refresh Windows Secure Boot Certificates in June 2026
After a decade and a half of service, the current certificates will expire, and new ones will be rolled out.
February 11, 2026Source or Source

Moltbook's real risk isn't AI. It's your data.
It's time to move on from the phrase "the unintended consequences of AI."
February 11, 2026Source

Mullvad VPN review: Near-total privacy with a few sacrifices
There's no such thing as complete anonymity online, but Mullvad is the VPN that gets you closest.
February 11, 2026Source

Notepad's new Markdown powers served with a side of remote code execution
Smug faces across all those who opposed the WordPad-ification of Microsoft's humble text editor
February 11, 2026Source

Security in the Dark: Recognizing the Signs of Hidden Information
Security in the Dark: Recognizing the Signs of Hidden Information
February 11, 2026Source

That "summarize with AI" button might be manipulating you
Microsoft security researchers discovered a growing trend of AI memory poisoning attacks used for promotional purposes, referred to as AI Recommendation Poisoning.
February 11, 2026Source

The best VPN deals: Up to 87 percent off ProtonVPN, Surfshark, ExpressVPN, NordVPN and more
Top VPNs give out steep discounts on their long-term plans — see where you can save the most.
February 11, 2026Source

The best VPN service for 2026
After rigorous testing, seven virtual private networks hit the top of our list.
February 11, 2026Source

Top security issues for rural hospitals in 2026
Improving accountability and streamlining technical complexities are key to improving cybersecurity postures now at small- to medium-sized hospitals, says Jackie Mattingly of Clearwater.
February 11, 2026Source

Unwanted AI upgrade to Windows Notepad created a serious security flaw
Thanks, Microsoft
February 11, 2026Source or Source

The best VPN deals: Up to 87 percent off ProtonVPN, Surfshark, ExpressVPN, NordVPN and more
Top VPNs give out steep discounts on their long-term plans — see where you can save the most.
February 11, 2026Source

Waikiki Drone Plan Sparks Privacy Pushback
Hawaii plans to use "first responder" drones in Waikiki to reach crime scenes and emergencies faster, and privacy advocates are sounding the alarm.
February 11, 2026Source

Were telcos tipped off to *that* ancient Telnet bug? Cyber pros say the signs stack up
Curious port filtering and traffic patterns suggest advisories weren't the earliest warning signals sent
February 11, 2026Source

Why Every Small Business Needs a Password Manager
Small businesses are prime targets for credential attacks. Learn why a password manager is essential for reducing risk, improving security, and saving time.
February 11, 2026Source

Yubico previews passkey-enabled digital signatures in upcoming YubiKey 5.8 firmware
Yubico's upcoming YubiKey 5.8 firmware introduces standardized APIs that integrate hardware-backed signatures with passkey authentication. To enable privacy-capable digital signatures using passkeys, expanded enterprise IdP support, and next-generation digital wallet use cases, the firmware adds support for FIDO CTAP 2.3 and preview WebAuthn signing extensions.
February 11, 2026Source

Zast.AI Raises $6 Million for AI-Powered Code Security
The startup relies on AI agents to identify software vulnerabilities and validate them before reporting.
February 11, 2026Source

Internet — Security Issues — February 6th, 2026

5 Bills to Boost Energy Sector Cyber Defenses Clear House Panel
The news comes after the Department of Energy conducted its annual Liberty Eclipse cybersecurity exercise.
February 6, 2026Source

65 percent of businesses upgrade security to meet AI threats
A new survey of 300 senior security professionals highlights that businesses are struggling to adapt and scale their security operations in the face of talent shortages and new threats from AI, with 65 percent saying they need to rapidly upgrade security monitoring and threat detection due to AI concerns.
February 6, 2026Source

Airrived Emerges From Stealth With $6.1 Million in Funding
The startup aims to unify SOC, GRC, IAM, vulnerability management, IT, and business operations through its Agentic OS platform.
February 6, 2026Source

Another popular platform hit by data breach exposing emails, location data, and more
Another popular "social media" platform has suffered a data breach that exposed sensitive user records, including location data.
February 6, 2026Source

Asian Cyber Espionage Campaign Breached 37 Countries
Palo Alto Networks says an Asian cyber espionage campaign breached 70 organizations in 37 countries, targeting government agencies and critical infrastructure.
February 6, 2026Source

Best Free VPN for 2026: Privacy Without Paying
While free VPNs can pose risks, using one of the best options can protect your privacy without costing anything.
February 6, 2026Source

Best Mobile VPN of 2026: Enjoy Privacy Protection on the Go
Boost your privacy with the best mobile VPNs for Androids and iPhones so you can stream foreign Netflix libraries, bypass mobile traffic-shaping or stay private on public Wi-Fi.
February 6, 2026Source

Best VPN for Android for 2026: Protect Your Privacy on the Go
Using a VPN on your Android device can help you keep your online activity private, stream geo-restricted content and bypass throttling from anywhere.
February 6, 2026Source

Best VPN for Mac 2026: Trustworthy Mac VPNs tested by experts
We tested the best VPNs for Mac to find the fastest, safest, and easiest options -- including the best free VPNs and top picks for privacy.
February 6, 2026Source

Bug Hunting With LLMs: Expert Tool Seeks More 'True' Flaws
Open Source 'Vulnhalla' Promises 'Up to 96% Reduction in False Positives'
February 6, 2026Source or Source or Source or Source

Can a Cardiac Pacemaker Help Find a Missing Person?
It's been widely reported that the last time kidnap victim Nancy Guthrie's implanted cardiac pacemaker synched up with her smartphone was around 2 a.m. on Feb. 1, the morning she - the mother of NBC Today show co-host Savannah Guthrie - was abducted from her Tucson, Arizona, home.
February 6, 2026Source or Source or Source or Source or Source

China's Salt Typhoon hackers broke into Norwegian companies
The Norwegian government has accused the Chinese-backed hacking group known as Salt Typhoon of breaking into several organizations in the country.
February 6, 2026Source

CISA orders federal agencies to replace end-of-life edge devices
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a new binding operational directive requiring federal agencies to identify and remove network edge devices that no longer receive security updates from manufacturers.
February 6, 2026Source

CISA orders federal agencies to rip out EOL edge kit before cybercrooks move in
A year to replace end-of-support firewalls, routers, and VPN gateways
February 6, 2026Source

CISA orders US federal agencies to replace unsupported edge devices
The US Cybersecurity and Infrastructure Security Agency (CISA) issued a new binding operational directive aimed at reducing a long-standing cyber risk across federal networks: outdated "edge devices" that are not longer supported by vendors and aren't receiving timely security updates.
February 6, 2026Source

CISA warns of SmarterMail RCE flaw used in ransomware attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that ransomware actors are exploiting CVE-2026-24423, a critical vulnerability in SmarterMail that allows remote code execution without authentication.
February 6, 2026Source

Claude Opus 4.6 improves agentic performance and model safety
According to Anthropic, the model applies more deliberate planning during task execution, sustains agent-driven workflows over longer periods, and operates with greater consistency across large codebases. It improves code review and debugging by identifying errors in its own output and correcting them during execution.
February 6, 2026Source

'DKnife' Implant Used by Chinese Threat Actor for Adversary-in-the-Middle Attacks
'DKnife' Implant Used by Chinese Threat Actor for Adversary-in-the-Middle Attacks
February 6, 2026Source

DKnife Linux toolkit hijacks router traffic to spy, deliver malware
A newly discovered toolkit called DKnife has been used since 2019 to hijack traffic at the edge-device level and deliver malware in espionage campaigns.
February 6, 2026Source

Docker AI Bug Lets Image Metadata Trigger Attacks
A critical vulnerability in Docker's Ask Gordon artificial intelligence assistant allows attackers to execute malicious commands by hiding them in the container application development platform's image metadata, security researchers said.
February 6, 2026Source or Source or Source or Source

DDoS deluge: Brit biz battered as botnet blitzes break records
UK leaps to sixth in global flood charts as mega-swarm unleashes 31.4 Tbps Yuletide pummeling
February 6, 2026Source

EDR, Email, and SASE Miss This Entire Class of Browser Attacks
Most enterprise work now happens in the browser. SaaS applications, identity providers, admin consoles, and AI tools have made it the primary interface for accessing data and getting work done.
February 6, 2026Source

EU Envisions Military Data Sharing Sans US Tech
'Kill Switch' Fears Drive EU Tech Sovereignty Push
February 6, 2026Source or Source or Source or Source or Source

EU says TikTok faces large fine over "addictive design"
The European Commission said today that TikTok is facing a fine because its addictive features, including infinite scroll, autoplay, push notifications, and personalized recommendation systems, are breaching the EU's Digital Services Act (DSA).
February 6, 2026Source

Ex-Nuance IT Worker Faces More Charges in Geisinger Breach
Terminated Employee Accused of Stealing 1 Million Patient Records
February 6, 2026Source or Source or Source or Source or Source

Flickr emails users about data breach, pins it on third party
Flickr emails users about data breach, pins it on third party
February 6, 2026Source

Flickr Security Incident Tied to Third-Party Email System
Potential breach at Flickr exposes usernames, email addresses, IP addresses, and activity data.
February 6, 2026Source or Source

From Svedka to Anthropic, brands make bold plays with AI in Super Bowl ads
Following last year's trend of showcasing AI in multimillion-dollar ad spots, the 2026 Super Bowl advertisements took it a step further by leveraging AI both to create the commercials and to promote the latest AI products. Love it or hate it, the technology has become a star in its own right, alongside the latest movie trailers and snack brands.
February 6, 2026Source

Germany warns of Signal account hijacking targeting senior figures
Germany's domestic intelligence agency is warning of suspected state-sponsored threat actors targeting high-ranking individuals in phishing attacks via messaging apps like Signal.
February 6, 2026Source

If you're a Substack user, your data might've been leaked
Substack has confirmed that a data breach took place, but hasn't said how many users are affected.
February 6, 2026Source

In Other News: Record DDoS, Epstein's Hacker, ESET Product Vulnerabilities
Other noteworthy stories that might have slipped under the radar: AT&T and Verizon response to Salt Typhoon, AI agents solve security challenges, man arrested in Poland for DDos Attacks.
February 6, 2026Source

ISMG Editors: Notepad++ Supply Chain Attack Raises Alarm
Also: Healthcare Cyber Risks Collide, Varonis Deal Signals AI Security Shift
February 6, 2026Source or Source or Source or Source

Living off the AI: The Next Evolution of Attacker Tradecraft
Living off the AI isn't a hypothetical but a natural continuation of the tradecraft we've all been defending against, now mapped onto assistants, agents, and MCP.
February 6, 2026Source

Malicious packages for dYdX cryptocurrency exchange empties user wallets
Incident is at least the third time the exchange has been targeted by thieves.
February 6, 2026Source

Radicl Brings In $31M to Push AI-Driven SOC Toward Autonomy
Series A Funding Accelerates AI-Native Detection and Response Road Map
February 6, 2026Source or Source or Source or Source or Source

Russia Hacked the Polish Electricity Grid. Now What?
Stymied Attack Leaves Poland No Good Options in Responding to Provocation
February 6, 2026Source or Source or Source or Source or Source

The best free VPNs: 5 no-cost top picks
VPNs are best when they're paid for, but the top free VPNs can still keep you private without breaking the bank.
February 6, 2026Source

Top therapy apps are leaking data, and it may end up on the dark web
Results from a new security report reveal that top therapy apps designed to help people improve their mental health may have a data leak problem, with users' personal information being sold on the dark web.
February 6, 2026Source

Who's Liable When Embedded AI Goes Wrong?
Privacy Expert Chiara Rustici on Laws Governing Autonomous Robots, Embedded AI
February 6, 2026Source or Source or Source or Source

Zscaler Purchases SquareX to Secure Browsers Without Agents
CEO Jay Chaudhry: SquareX Deal Targets Unmanaged Devices and Third-Party Access
February 6, 2026Source or Source or Source or Source or Source

Internet — Security Issues — February 4th, 2026

7 apps I use to lock down, encrypt, and store my private files - and most are free
If you want to keep the documents and files on your PC extra secure, these apps will do the trick.
February 4, 2026Source

8 Essential Security Tips for Using AI Chatbots Safely
8 Essential Security Tips for Using AI Chatbots Safely
February 4, 2026Source

After social media ban for teens, France may move to regulate VPNs next
VPN regulation proposals spread as governments tighten online safety rules
February 4, 2026Source

AI-powered phishing attacks doubled in 2025
Last year saw a malicious email attack every 19 seconds a more than doubling of 2024's pace of one every 42 seconds according to the latest report from Cofense that reveals how AI technologies are now central to how threat actors operate, fundamentally transforming the speed, scale, and sophistication of modern phishing attacks.
February 4, 2026Source

Apple Xcode 26.3 adds coding agent support from OpenAI and Anthropic
Apple released Xcode 26.3 with new agentic coding capabilities designed to let AI systems carry out development tasks inside the IDE. The release supports agents such as Anthropic's Claude Agent and OpenAI's Codex.
February 4, 2026Source

Avast brings deepfake scam detection to Windows PCs and mobile devices
Avast announced the full international availability of Avast Scam Guardian and Scam Guardian Pro on mobile devices, alongside the launch of Avast Deepfake Guard on Windows PCs, a new AI-powered feature designed to proactively analyze and detect malicious audio in video content. Together, these launches expand the Avast scam protection ecosystem, extending coverage across mobile and PC to help protect people from scams across text messages, calls, and video platforms.
February 4, 2026Source

Blockchain Intelligence Firm TRM Labs Raises $70 Million at $1 Billion Valuation
Blockchain intelligence firm TRM Labs announced it has secured $70 million in a Series C funding round, bringing its valuation to $1 billion. The investment, led by Blockchain Capital and involving participation from several firms including Goldman Sachs and Thoma Bravo, will be used to expand the company's AI capabilities for disrupting criminal networks and addressing national security risks. This latest funding brings TRM Labs' total investment to approximately $200 million.
February 4, 2026Source

CISA warns of five-year-old GitLab flaw exploited in attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered government agencies to patch their systems against a five-year-old GitLab vulnerability that is actively being exploited in attacks.
February 4, 2026Source

ConnectSecure introduces Linux patching capability to simplify cross-distro updates
ConnectSecure announced the launch of a new cross-platform Linux operating system patching capability. The update eliminates the complexity of managing fragmented Linux environments by delivering a single, unified interface for deploying critical security updates across the four most widely used Linux distributions: Red Hat, Ubuntu, Debian, and CentOS.
February 4, 2026Source

Cryptominers, Reverse Shells Dropped in Recent React2Shell Attacks
Two IP addresses accounted for the majority of the 1.4 million exploitation attempts observed over the past week.
February 4, 2026Source

Cyber Insights 2026: Cyberwar and Rising Nation State Threats
While both cyberwar and cyberwarfare will increase through 2026, cyberwarfare is likely to increase more dramatically. We hope it will never boil over -- but we should be aware of the possibility and its consequences.
February 4, 2026Source

Detectify Internal Scanning finds and fixes vulnerabilities behind the firewall
Detectify has launched Internal Scanning, a new solution designed to address the growing vulnerability risks within internal networks, challenging the outdated notion of internal networks as inherently secure. This tool extends Detectify's existing capabilities, utilizing its proprietary crawling and fuzzing engine, powered by ethical hackers and AI, to discover and remediate vulnerabilities behind the firewall.
February 4, 2026Source

DockerDash Flaw in Docker AI Assistant Leads to RCE, Data Theft
The critical vulnerability exists in the contextual trust in MCP Gateway architecture, as instructions are passed without validation.
February 4, 2026Source

EDR killer tool uses signed kernel driver from forensic software
Hackers are abusing a legitimate but long-revoked EnCase kernel driver in an EDR killer that can detect 59 security tools in attempts to deactivate them.
February 4, 2026Source

Fingerprint enables enterprises to tell trusted AI agents apart from bots and scrapers
Fingerprint has released Authorized AI Agent Detection, its new ecosystem of AI agents, including OpenAI, AWS AgentCore, Browserbase, Manus and Anchor Browser. The ecosystem enables enterprises to detect authorized agentic AI traffic with 100% certainty, allowing organizations to distinguish trusted, permissioned automation from malicious bots and scrapers.
February 4, 2026Source

Fresh SolarWinds Vulnerability Exploited in Attacks
The critical-severity SolarWinds Web Help Desk flaw could lead to unauthenticated remote code execution.
February 4, 2026Source

Incognito dark web drug market operator gets 30 years in prison
Rui-Siang Lin, a Taiwanese national, was sentenced to 30 years in U.S. federal prison for operating Incognito Market, one of the world's largest illicit online narcotics marketplaces.
February 4, 2026Source

'Incognito' operator sentenced to 30 years for running a dark web drug market
The dark web drug 'kingpin' shut down operations in 2024, demanding payment to keep users' identities secret.
February 4, 2026Source

Major vulnerabilities found in Google Looker, putting self-hosted deployments at risk
Researchers at Tenable have disclosed two vulnerabilities, collectively referred to as "LookOut," affecting Google Looker. Because the business intelligence platform is deployed by more than 60,000 organizations in 195 countries, the flaws could give attackers a path to system takeover or access to sensitive corporate data.
February 4, 2026Source

Microsoft and ServiceNow's exploitable agents reveal a growing - and preventable - AI security crisis
Once deployed on corporate networks, AI agents can become every threat actor's fantasy. Lesson one for cybersecurity pros: limit privileges.
February 4, 2026Source

New Amaranth Dragon cyberespionage group exploits WinRAR flaw
A new threat actor called Amaranth Dragon, linked to APT41 state-sponsored Chinese operations, exploited the CVE-2025-8088 vulnerability in WinRAR in espionage attacks on government and law enforcement agencies.
February 4, 2026Source

OpenClaw's AI 'skill' extensions are a security nightmare
Security researchers found hundreds of malicious add-ons on ClawHub.
February 4, 2026Source

Orion Raises $32 Million for Data Security
The startup will use the funding to accelerate product development and go-to-market operations.
February 4, 2026Source

Owner of Incognito dark web drugs market gets 30 years in prison
A Taiwanese man was sentenced to 30 years in prison for operating Incognito Market, one of the world's largest online narcotics marketplaces that sold over $105 million worth of illegal drugs to customers worldwide.
February 4, 2026Source

SECNAP CloudJacket MXDR integrates SOC, SIEM, and NDR
SECNAP Network Security announced the launch of CloudJacket MXDR, a next-generation managed extended detection and response solution. Built on the company's patented CloudJacket platform, CloudJacket MXDR enhances SECNAP's security portfolio by extending its existing capabilities, including advanced network detection and response (NDR).
February 4, 2026Source

Security Analysis of Moltbook Agent Network: Bot-to-Bot Prompt Injection and Data Leaks
Wiz and Permiso have analyzed the AI agent social network and found serious security issues and threats.
February 4, 2026Source

Socure unifies identity, fraud, and program integrity for government at scale
Socure has released Socure for Government (SocureGov) RiskOS to help public sector organizations deliver simpler, faster, and more transparent digital identity verification and fraud prevention at scale.
February 4, 2026Source

The Double-Edged Sword of Non-Human Identities
In a sweeping analysis conducted in late 2025, Flare researchers uncovered more than (including production API keys, cloud tokens, CI/CD credentials, and even AI model access tokens) all pushed into public repositories, often unintentionally by developers.
February 4, 2026Source

Varonis Acquisition of AllTrue.ai Valued at $150 Million
The data security firm has acquired the AI trust, risk, and security management company to expand its capabilities.
February 4, 2026Source

Vulnerabilities Allowed Full Compromise of Google Looker Instances
The flaws dubbed LookOut can be exploited for remote code execution and data exfiltration.
February 4, 2026Source

Internet — Security Issues — February 2nd, 2026

3 security gadgets I never leave home without (and they're more affordable than you'd think)
These must-have tools help protect against hacking and data loss, without costing an arm and a leg.
February 2, 2026Source

Cost-effective rural cybersecurity strategies
Jim Roeder, CIO and VP of IT for Lakewood Health in Staples, Minn., says expert rural IT panelists at HIMSS26 will share cost effective approaches to handling limited resources, staffing and infrastructure needs and discuss regional collaboration.
February 2, 2026Source

CTM360 Report Warns of Global Surge in Fake High-Yield Investment Scams
Fraudulent High-Yield Investment Programs (HYIPs) are surging globally, pushing "guaranteed" profits that no legitimate investment can sustain. These scams lure victims with a simple pitch: deposit money, wait, and withdraw fast returns, often advertised with exaggerated figures such as "40% return in 72 hours."
February 2, 2026Source

Cyber Insights 2026: Malware and Cyberattacks in the Age of AI
Security leaders share how artificial intelligence is changing malware, ransomware, and identity-led intrusions, and how defenses must evolve.
February 2, 2026Source

Default ICS Credentials Exploited in Destructive Attack on Polish Energy Facilities
Poland's CERT has published a report on the recent attack, providing new details on targeted ICS and attribution.
February 2, 2026Source

Enterprise credentials exposed by infostealers
New analysis of 18.7 million infostealer logs carried out by Flare shows a significant rise in enterprise identity compromise. Researchers found that more than one in 10 infections already contained enterprise Single Sign-On (SSO) or Identity Provider (IdP) credentials, and that rate is quickly increasing.
February 2, 2026Source

Facial recognition technology used by police is now very accurate—but public understanding lags behind
The UK government's proposed reforms to policing in England and Wales signal an increase in the use of facial recognition technology. The number of live facial recognition vans is set to rise from ten to 50, making them available to every police force in both countries.
February 2, 2026Source

From Clawdbot to OpenClaw: This viral AI agent is evolving fast - and it's nightmare fuel for security pros
The breakneck speed of the personal AI assistant's evolution has prompted dire warnings from security researchers.
February 2, 2026Source

Hanging Up on ShinyHunters: Experts Detail Vishing Defenses
Sophisticated Voice Phishing Campaigns Don't Exploit Any Software Vulnerabilities
February 2, 2026Source or Source or Source or Source or Source

Hijacked Notepad++ updater quietly targeted users for months
Notepad++ is a favorite of programmers and other power users, but its auto-update function was compromised for months in 2025.
February 2, 2026Source

How state-sponsored attackers hijacked Notepad++ updates
Suspected Chinese state-sponsored attackers hijacked the Notepad++ update mechanism by compromising the software project's shared hosting server and intercepting and redirecting update traffic destined for notepad-plus-plus.org, the software's maintainer Don Ho confirmed on Monday.
February 2, 2026Source

Hugging Face Repositories Abused in New Android Malware Campaign
Attackers exploited Hugging Face's trusted infrastructure to spread an Android RAT, using fake security apps and thousands of malware variants.
February 2, 2026Source

Infrastructure cyberattacks are suddenly in fashion. We can buck the trend
Don't be scared of the digital dark -- learn how to keep the lights on
February 2, 2026Source

Japan, Britain to Boost Cybersecurity and Critical Minerals Cooperation as China's Influence Grows
Japan and Britain agree to accelerate cooperation on cybersecurity and the supply of critical minerals, as China's influence grows in the region.
February 2, 2026Source

Malwarebytes in ChatGPT delivers AI-powered protection against scams
Malwarebytes announced Malwarebytes in ChatGPT, a new way for individuals and small businesses to get fast, trusted security assistance directly within ChatGPT. Users can ask Malwarebytes to check whether something is a scam or spam, tapping into the company's deep cybersecurity expertise and decades of threat intelligence.
February 2, 2026Source

Massive 31.4 Tbps DDoS attack breaks records: How the 'apex' of botnets could be weaponizing your home devices
The botnet's ongoing activities highlight how consumer devices are being weaponized to launch cyberattacks on the world stage.
February 2, 2026Source

Microsoft Moves Closer to Disabling NTLM
The next major Windows Server and Windows releases will have the deprecated authentication protocol disabled by default.
February 2, 2026Source

Microsoft sets a path to switch off NTLM across Windows
Windows is shifting to a more secure authentication approach, moving away from New Technology LAN Manager (NTLM) and toward stronger, Kerberos-based options.
February 2, 2026Source

Modern Vulnerability Detection: Using GNNs to Find Subtle Bugs
Move beyond regex-based scanning; learn how graph neural networks and Code Property Graphs analyze true data flow to eliminate SAST false positives.
February 2, 2026Source

NationStates confirms data breach, shuts down game site
NationStates, a multiplayer browser-based game, has confirmed a data breach after taking its website offline earlier this week to investigate a security incident.
February 2, 2026Source

Notepad++ compromised by "state-sponsored hackers" — Here's what you need to do if you use the popular Notepad alternative
Users targeted by the vulnerability were fed a bogus update with malicious content included.
February 2, 2026Source or Source or Source

Open VSX Publisher Account Hijacked in Fresh GlassWorm Attack
A hacker published malicious versions of four established VS Code extensions to distribute a GlassWorm malware loader.
February 2, 2026Source

OpenClaw patches one-click RCE as security Whac-A-Mole continues
Researchers disclose rapid exploit chain that let attackers run code via a single malicious web page
February 2, 2026Source or Source

Over 1,400 MongoDB Databases Ransacked by Threat Actor
Of 3,100 unprotected MongoDB instances, half remain compromised, most of them by a single threat actor.
February 2, 2026Source

Panera Bread breach impacts 5.1 million accounts, not 14 million customers
The data breach notification service Have I Been Pwned says that a data breach at the U.S. food chain Panera Bread affected 5.1 million accounts, not 14 million customers as previously reported.
February 2, 2026Source

ShinyHunters-Branded Extortion Activity Expands, Escalates
Hackers rely on evolved vishing and login harvesting to compromise SSO credentials for unauthorized MFA enrollment.
February 2, 2026Source or Source

Span Cyber Security Arena 2026: Only 10 days left to secure early bird tickets
With preparations well underway, Span Cyber Security Arena 2026 is set to return for its third edition, bringing together domestic and international experts in cyber security. As in previous years, the conference is designed for everyone involved in that area -- from regulatory and legal professionals to technical practitioners and decision makers.
February 2, 2026Source

Yes, you should use an encrypted email service. Here's why
It's the smarter way to send emails!
February 2, 2026Source

Internet — Security Issues — February 1st, 2026

Malicious OpenClaw 'skill' targets crypto users on ClawHub — 14 malicious skills were uploaded to ClawHub last month
Security researchers are warning that the growing ecosystem around 'OpenClaw,' the self-hosted AI assistant formerly known as both Clawdbot and Moltbot, has already become a target for malware distribution. According to a report published by OpenSourceMalware, at least 14 malicious "skills" were uploaded to ClawHub between January 27 and 29. These masquerade as crypto trading or wallet automation tools while attempting to deliver malware to users' systems.
February 1, 2026Source

Week in review: Microsoft fixes exploited Office zero-day, Fortinet patches FortiCloud SSO flaw
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
February 1, 2026Source

Internet — Security Issues — January 31st, 2026

eScan Antivirus Delivers Malware in Supply Chain Attack
Hackers compromised a MicroWorld Technologies update server and fed a malicious file to eScan customers.
January 31, 2026Source

Internet — Security Issues — January 30th, 2026

82 percent of hackers now use AI
A future of cybersecurity, powered by AI, promises a world where it's not just about defending against threats, but preemptively shaping a resilient digital landscape. But of course the technology is equally attractive to attackers and that means ethical hackers need to adopt it to.
January 30, 2026Source

9 million Android devices were secretly hijacked by proxy network
Google claims to have shut down a huge criminal network that used users' phones and PCs to distribute illegal data undetected.
January 30, 2026Source

175,000 Exposed Ollama Hosts Could Enable LLM Abuse
Among them, 23,000 hosts were persistently responsible for the majority of activity observed over 293 days of scanning.
January 30, 2026Source

Aisy Launches Out of Stealth to Transform Vulnerability Management
Aisy has emerged from stealth mode with $2.3 million in seed funding for its AI-assisted platform.
January 30, 2026Source

Apple's new privacy feature limits how precisely carriers track your location
Apple users are already accustomed to managing app-level location permissions, and a new privacy feature in iOS 26.3 extends that control to cellular networks. Called Limit Precise Location, it reduces the amount of fine-grained location data that iPhones share with carriers.
January 30, 2026Source

Comcast to Pay $117M in Security Breach Settlement
The breach was linked to a vulnerability known as "CitrixBleed," a flaw affecting Citrix NetScaler Application Delivery Controller and Gateway appliances.
January 30, 2026Source

EFF calls out major tech c

Crypto wallets received a record $158 billion in illicit funds last year
Illegal cryptocurrency flows reached a record $158 billion in 2025, reversing a three-year trend of declining amounts from $86B in 2021 to $64B in 2024.
January 30, 2026Source

Ex-Google engineer found guilty of stealing AI secrets
A federal jury in California convicted former Google software engineer Linwei Ding, also known as Leon Ding, on seven counts of economic espionage and seven counts of theft of trade secrets tied to AI technology.
January 30, 2026Source

Holiday Hits: Hackers Love to Strike When Defenders Are Away
Attack intensity surged over the Western winter holiday period, a trend consistent with hackers' propensity for probing defenses and striking during off hours to maximize dwell time before being discovered.
January 30, 2026Source or Source or Source or Source or Source

Hugging Face Abused to Deploy Android RAT
Android users were lured to applications that served a malicious payload hosted in a Hugging Face repository.
January 30, 2026Source

ICS Devices Bricked Following Russia-Linked Intrusion Into Polish Power Grid
Sandworm/Electrum hackers targeted communication and control systems at 30 sites.
January 30, 2026Source

In Other News: Paid for Being Jailed, Google's $68M Settlement, CISA Chief's ChatGPT Leak
Other noteworthy stories that might have slipped under the radar: Apple updates platform security guide, LastPass detects new phishing wave, CISA withdraws from RSA Conference.
January 30, 2026Source

Is Google saving your voice recordings? How to check, delete, and opt out - fast
I was a little unsettled by what I found.
January 30, 2026Source

Ivanti Patches Exploited EPMM Zero-Days
The critical-severity vulnerabilities could allow unauthenticated attackers to execute arbitrary code remotely.
January 30, 2026Source

Microsoft sets new timeline for Sentinel transition to Defender portal
Microsoft has updated the timeline for transitioning the Microsoft Sentinel experience from the Azure portal to the Microsoft Defender portal from July 1, 2026 to March 31, 2027. The updated schedule extends access by nearly nine months.
January 30, 2026Source

Nvidia GeForce Security Update Driver 582.28 WHQL for Windows 10, 11
Software security update display driver for GeForce GPUs which are no longer supported by Game Ready Drivers or Nvidia Studio Drivers.
January 30, 2026Source

Russian hackers breached Polish power grid thanks to bad security, report says
The Polish government said Russian government hackers broke into parts of the country's energy grid infrastructure, taking advantage of its poor security.
January 30, 2026Source

Security teams hampered by lack of integrated tools
Security is complicated by a growing number of cloud tools that aren't integrated, sprawling tech stacks and a lack of communication, according to the 2026 Security Operations Insights report released this week by Sumo Logic.
January 30, 2026Source

SoundCloud Data Breach Exposes Nearly 30M User Accounts
A SoundCloud breach affecting 29.8 million accounts exposed email addresses and profile data, increasing phishing risks.
January 30, 2026Source

The best cheap VPN in 2026
You'll get the best VPN experience by paying, but prices don't have to be steep.
January 30, 2026Source

This NVIDIA GeForce GPU Update Is a "Must Have", As It Fixes Critical Security Flaws That Could Put Your PC at Risk
NVIDIA's newest update for its GeForce GPU drivers focuses on mitigating multiple security risks that are deemed "critical" ones, leading to issues like denial of service and many more.
January 30, 2026Source

Thousands more Oregon residents learn their health data was stolen in TriZetto breach
Thousands more Oregonians will soon receive data breach letters in the continued fallout from the TriZetto data breach, in which someone hacked the insurance verification provider and gained access to its healthcare provider customers across multiple US states.
January 30, 2026Source or Source

Tim Berners-Lee, inventor of the World Wide Web, thinks it can still be saved — despite some parts being 'optimized for nastiness'
Creator of the web believes the "battle for [its soul]" can be won.
January 30, 2026Source

White House Scraps 'Burdensome' Software Security Rules
Two Biden-era memorandums have been revoked, but some of the resources they provide can still be used by government organizations.
January 30, 2026Source

Internet — Security Issues — January 19th, 2026

4 in 5 small businesses had cyberscams in 2025 and almost half of attacks were AI powered
A survey by the Identity Theft Resource Center, a San Diego-based education and victim resource nonprofit, found that 38% of small businesses hit by a cyberscam or breach in the previous 12 months passed those losses to customers by raising prices.
January 19, 2026Source

42,000 Impacted by Ingram Micro Ransomware Attack
The compromised personal information includes names, dates of birth, Social Security numbers, and employment-related data.
January 19, 2026Source

Anthropic's Cowork Shipped With Known Vulnerability
AI Agent Can Access File Upload API to Exfiltrate Documents
January 19, 2026Source or Source or Source< or Source or Source

British Army to spend £279 million on permanent cyber regiment base
The British Army has announced a new permanent base for its cyber regiment, backed by £279 million in government spending. The plan centres on 13 Signal Regiment, the unit responsible for defending Army networks and supporting cyber operations.
January 19, 2026Source

Cyber Insights 2026: Information Sharing
Information sharing is necessary for efficient cybersecurity, and is widespread; but never quite perfect in practice.
January 19, 2026Source

Ingram Micro says ransomware attack affected 42,000 people
​Information technology giant Ingram Micro has revealed that a ransomware attack on its systems in July 2025 led to a data breach affecting over 42,000 individuals.
January 19, 2026Source

Fake browser crash alerts turn Chrome extension into enterprise backdoor
Browser extensions are a high-risk attack vector for enterprises, allowing threat actors to bypass traditional security controls and gain a foothold on corporate endpoints.
January 19, 2026Source

Jordanian pleads guilty to selling access to 50 corporate networks
A Jordanian man has pleaded guilty to operating as an "access broker" who sold access to the computer networks of at least 50 companies.
January 19, 2026Source or Source

Keepnet bets on Agentic AI behavioral training to curb security mistakes
Keepnet launched its Agentic AI for Behavioral Microlearning solution, which moves success metrics from "completion rates" to behavior change and verifiable incident reduction. Agentic AI autonomously plans, creates, delivers, and optimizes training based on real-time risk data, eliminating manual intervention.
January 19, 2026Source

Law enforcement tracks ransomware group blamed for massive financial losses
Law enforcement agencies in Ukraine and Germany have identified two members of a Russian-affiliated ransomware group and carried out searches in western Ukraine.
January 19, 2026Source

Malicious Chrome Extension Crashes Browser in ClickFix Variant 'CrashFix'
Posing as an ad blocker, the malicious extension crashes the browser to lure victims into installing malware.
January 19, 2026Source

Microsoft forced to issue emergency out of band updates for Windows 11 after latest security patches broke PC shutdowns and sign-ins
The latest OS updates for Windows 11 introduces two major bugs that caused issues with shutting down your PC or signing into your PC using Remote Desktop.
January 19, 2026Source

Microsoft issues security advisory for IT admins managing Windows Domain Controllers
Almost exactly a year ago, Microsoft shared details regarding the hardening process of Domain Controllers (DCs) to protect them against a couple of security flaws in Kerberos. Now, it is kicking off yet another hardening phase to patch DCs against security issues recently reported via CVE-2026-20833.
January 19, 2026Source

New Reports Reinforce Cyberattack's Role in Maduro Capture Blackout
US officials told The New York Times that cyberattacks were used to turn off the lights in Caracas and disrupt air defense radars.
January 19, 2026Source

Ransomware 'Most Wanted': Cops Seek Head of Black Basta
Crackdown Targets Multiple Members of Cybercrime Group, Including 'Hash Crackers'
January 19, 2026Source or Source or Source

'SolyxImmortal' Information Stealer Emerges
The information stealer abuses legitimate APIs and libraries to exfiltrate data to Discord webhooks.
January 19, 2026Source

TP-Link Patches Vulnerability Exposing VIGI Cameras to Remote Hacking
The researcher who discovered the vulnerability saw more than 2,500 internet-exposed devices.
January 19, 2026Source

UK govt. warns about ongoing Russian hacktivist group attacks
The U.K. government is warning of continued malicious activity from Russian-aligned hacktivist groups targeting critical infrastructure and local government organizations in the country in disruptive denial-of-service (DDoS) attacks.
January 19, 2026Source

Internet — Security Issues — January 15th, 2026

Asimily extends Cisco ISE integration to turn device risk into segmentation policy
Asimily announced enhanced microsegmentation capabilities, including new support for Security Group Access Control Lists (SGACL) within Cisco Identity Services Engine (ISE). The release builds on Asimily's longstanding ISE integration, enabling organizations to translate device intelligence and risk context into enforceable segmentation policies that move beyond visibility to actionable risk reduction.
January 15, 2026Source

AWS European Sovereign Cloud puts data, operations, and oversight inside the EU
Amazon has made the AWS European Sovereign Cloud generally available to customers across the European Union, backed by a €7.8 billion investment. According to AWS, the funding will support infrastructure buildout, staffing, and long-term operations, and is expected to drive regional economic activity and job creation over the coming years.
January 15, 2026Source

Bitwarden advances passkeys and credential risk controls
Bitwarden revealed continued product innovation and ecosystem maturity to advance identity security capabilities for users and enterprises. Bitwarden introduced enterprise credential risk insights and guided remediation through Bitwarden Access Intelligence, expanded passkey interoperability across browsers, devices, and operating systems, and deepened alignment with industry standards and major platform providers, including the FIDO Alliance and Microsoft.
January 15, 2026Source

Central Maine Healthcare Data Breach Impacts 145,000 Individuals
Hackers stole patients' personal, treatment, and health insurance information from the organization's IT systems.
January 15, 2026Source

Critical WhisperPair flaw lets hackers track, eavesdrop via Bluetooth audio devices
Security researchers have discovered a critical vulnerability in Google's Fast Pair protocol that can allow attackers to hijack Bluetooth audio accessories, track users, and eavesdrop on their conversations.
January 15, 2026Source

Cryptohack Roundup: UK Crypto Firms Tied to Iran Sanctions
Also: NodeCordRAT Malware, North Korean QR-Phishing Campaign
January 15, 2026Source or Source or Source

D7VK 1.2 Released For Improving Direct3D 6 Front-End
Started last year was D7VK as a project bringing Direct3D 7 implemented over the Vulkan API for enjoying better performance and support for legacy Windows games on Linux, akin to DXVK and VKD3D-Proton for newer versions of Direct3D over Vulkan that is used by Valve's Steam Play (Proton). Back in December D7VK added a Direct3D 6 front-end for allowing even older game titles to be accelerated using the modern Vulkan API. Today D7VK 1.2 is out for furthering the D3D6 support.
January 15, 2026Source

Delinea expands identity security platform through StrongDM acquisition
Delinea has signed a definitive agreement to acquire StrongDM. Delinea's leadership in enterprise privileged access management (PAM), combined with StrongDM's just-in-time (JIT) runtime authorization capabilities and developer-first access model, will form a new class of identity security platform designed for continuous, always-on environments.
January 15, 2026Source

Depthfirst Raises $40 Million for Vulnerability Management
The startup will use the investment to accelerate R&D, expand go-to-market efforts, and hire new talent.
January 15, 2026Source

Goverlay 1.7.1 released
Goverlay 1.7.1 has been released with several new features and improvements for its supported tools, including MangoHud and OptiScaler. The update brings changes to MangoHud's temperature display handling and the addition of a RAM temperature option specifically for DDR5 setups. Additionally, the update addressed GPU vendor spoofing issues in OptiScaler and enhanced edge detection for cutting-edge builds. The release also includes various bug fixes and improvements to the build process, including better automation and versioning controls.
January 15, 2026Source

F5 targets AI runtime risk with new guardrails and adversarial testing tools
F5 has unveiled general availability of F5 AI Guardrails and F5 AI Red Team, two solutions that secure mission-critical enterprise AI systems. With these releases, F5 is providing a comprehensive end-to-end lifecycle approach to AI runtime security, including enhanced ability to connect and protect AI agents with both out-of-the-box and custom guardrails.
January 15, 2026Source

Forget Predictions: True 2026 Cybersecurity Priorities From Leaders
Security leaders chart course beyond predictions with focus on supply chain, governance, and team efficiency.
January 15, 2026Source

FTC bans GM from selling drivers' location data for five years
The U.S. Federal Trade Commission has finalized an order with General Motors (GM) and its subsidiary, OnStar, settling charges that they collected and sold the location and driving data of millions of drivers without consent.
January 15, 2026Source

How a simple link allowed hackers to bypass Copilot's security guardrails - and what Microsoft did about it
Reprompt let attackers control Copilot and pull your data, even after you closed the chat.
January 15, 2026Source

ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Aveva, Phoenix Contact
Only a dozen new advisories have been published this Patch Tuesday by industrial giants.
January 15, 2026Source

I spent a year on Linux and forgot to miss Windows
One year on Linux, two distros, a few tears, four desktop environments, and zero regrets about leaving Windows.
January 15, 2026Source

Imagination Driver To Support The TI AM62P SoC In Linux 6.20~7.0
Sent out today was the latest DRM-Misc-Next pull request of new material ahead of the next kernel cycle either Linux 6.20 or 7.0 depending upon what Linus Torvalds decides to call it.
January 15, 2026Source

isVerified Emerges From Stealth With Voice Deepfake Detection Apps
isVerified provides Android and iOS mobile applications designed to protect enterprise communications.
January 15, 2026Source

libvirt 12.0 Released - Bhyve ARM64 Support & Other Improvements For The BSD Hypervisor
Libvirt 12.0 released today as this open-source virtualization API for management across different virtualization technologies/hypervisors. With libvirt 12.0, improving Bhyve as the FreeBSD hypervisor was a big focus.
January 15, 2026Source

Linux Patches Bring Mainline Kernel Support For The ASUS IPMI Expansion Card
DeviceTree patches worked on recently allow for the mainline Linux kernel to run on the ASUS "Kommando" IPMI Expansion Card. This is interesting for opening up new possibilities for this external IPMI/BMC expansion card but too bad that less than three years after launching it's difficult to find.
January 15, 2026Source

New 'Reprompt' Attack Silently Siphons Microsoft Copilot Data
The attack bypassed Copilot's data leak protections and allowed for session exfiltration even after the Copilot chat was closed.
January 15, 2026Source

New 'StackWarp' Attack Threatens Confidential VMs on AMD Processors
Researchers have disclosed technical details on a new AMD processor attack that allows remote code execution inside confidential VMs.
January 15, 2026Source

oVirt 4.5.7 Released After Two Years With New OS & CPU Support
The oVirt 4.5.7 open-source virtualization management platform released this week after not seeing any new releases in two years. While Red Hat had started the oVirt open-source project for which their Red Hat Virtualization platform is based, since they shifted that to maintenance mode to focus on the Red Hat OpenShift platform and stopped contributing to oVirt, it's been up to the open-source community to keep it going.
January 15, 2026Source

Palo Alto Networks warns of DoS bug letting hackers disable firewalls
Palo Alto Networks patched a high-severity vulnerability that could allow unauthenticated attackers to disable firewall protections in denial-of-service (DoS) attacks.
January 15, 2026Source

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155)
A critical vulnerability (CVE-2025-64155) in Fortinet's FortiSIEM security platform has now been accompanied by publicly released proof-of-concept (PoC) exploit code, raising the urgency for organizations to patch immediately.
January 15, 2026Source

Ransomware activity surges to record levels
Ransomware victim numbers hit a new all-time high last year with 2,287 ransomware victims posted in Q4 2025 alone. At the same time the number of threat groups has reached record levels. 124 distinct ransomware groups were active in 2025, the highest ever recorded and a 46 percent year-on-year increase.
January 15, 2026Source

Ransomware by the Numbers: Victim and Group Count Surges
Despite Some Well-Known Groups Disappearing, Ransomware Competition Remains Fierce
January 15, 2026Source or Source or Source or Source or Source

Sensitive data of Eurail, Interrail travelers compromised in data breach
A data breach at the Netherlands-based company that sells Eurail (Interrail) train passes resulted in the compromise of personal and sensitive information belonging to an as-yet unknown number of travelers.
January 15, 2026Source

Tines rolls out a governance layer for agents, copilots, and MCPs
Tines unveiled AI in Tines, a unified interaction layer for agents, copilots, and MCPs, enabling organizations to operationalize enterprise AI in a governed environment.
January 15, 2026Source

Traveler Information Stolen in Eurail Data Breach
Hackers stole the personal and reservation information of people with a Eurail pass and those who made a seat reservation with the company.
January 15, 2026Source

Trump Renominates Sean Plankey to Lead CISA
Former NSC Cyber Adviser Renominated to Lead CISA Amid Ongoing Senate Gridlock
January 15, 2026Source or Source or Source

Trump's National Fraud Enforcement Plan Falls Short
New Agency Focuses on Public Programs, Ignores Private Sector Fraud
January 15, 2026Source or Source

Vibe Coding Tested: AI Agents Nail SQLi but Fail Miserably on Security Controls
Vibe coding generates a curate's egg program: good in parts, but the bad parts affect the whole program.
January 15, 2026Source

VoidLink Linux Malware Framework Targets Cloud Environments
Designed for long-term access, the framework targets cloud and container environments with loaders, implants, and rootkits.
January 15, 2026Source

Internet — Security Issues — January 14th, 2026

Aikido Security Raises $60 Million at $1 Billion Valuation
The developer security company has raised a total of more than $84 million in funding.
January 14, 2026Source

Airia adds AI Governance for compliance, accountability, and control
Airia announced the launch of its AI Governance product, the third pillar of its comprehensive enterprise AI management ecosystem. The new offering joins Airia's established AI Security and Agent Orchestration capabilities to provide enterprises with end-to-end visibility, control, and compliance across their AI deployments.
January 14, 2026Source

Anthropic backs Python Software Foundation security work with $1.5 million
Anthropic has signed a two-year partnership with the Python Software Foundation (PSF), committing a total of $1.5 million to support the foundation's work, with a focus on Python ecosystem security.
January 14, 2026Source

Belgian cybersecurity startup becomes unicorn
Aikido Security secures $60 M Series B and joins the unicorn club
January 14, 2026Source

Chrome 144, Firefox 147 Patch High-Severity Vulnerabilities
The two browser updates resolve 26 security defects, including bugs that could be exploited for code execution.
January 14, 2026Source or Source

Cloud marketplace Pax8 accidentally exposes data on 1,800 MSP partners
Cloud marketplace and distributor Pax8 has confirmed that it mistakenly sent an email to fewer than 40 UK-based partners containing a spreadsheet with internal business information, including MSP customer and Microsoft licensing data.
January 14, 2026Source

ConsentFix debrief: Insights from the new OAuth phishing attack
In December, the Push Security research team discovered and blocked a brand new attack technique that we coined ConsentFix. This technique merged ClickFix-style social engineering with OAuth consent phishing to hijack Microsoft accounts.
January 14, 2026Source

Cybersecurity Trends 2026: From Unapproved AI to Passkeys, Clear Steps to Stay Safe
What if the very technologies designed to propel us into the future are also the ones that could unravel our digital security? IBM Technology explores how advancements like Shadow AI, quantum computing, and deepfakes are reshaping the cybersecurity landscape in 2026, presenting both unprecedented opportunities and alarming threats. Imagine a world where unauthorized AI systems quietly operate within your organization, bypassing safeguards and opening doors to costly breaches.
January 14, 2026Source

DeadLock Ransomware Group Utilizes Polygon Smart Contracts
Stealthy Group Taps Blockchain 'EtherHiding' to Facilitate Victim Communications
January 14, 2026Source or Source or Source

Exploit code public for critical FortiSIEM command injection flaw
Technical details and a public exploit have been published for a critical vulnerability affecting Fortinet's Security Information and Event Management (SIEM) solution that could be leveraged by a remote, unauthenticated attacker to execute commands or code.
January 14, 2026Source

Flaw in AI Libraries Exposes Models to Remote Code Execution
3 Major Tech Firms Shipped Vulnerable Open-Source Tools to Hugging Face
January 14, 2026Source or Source or Source or Source or Source

Fortinet Patches Critical Vulnerabilities in FortiFone, FortiSIEM
Exploitable without authentication, the two security defects could lead to configuration leak and code execution.
January 14, 2026Source

How to change your Windows PIN for better security
Straightforward Windows security.
January 14, 2026Source

How to Secure a Spring AI MCP Server with an API Key via Spring Security
Discover how to protect your Spring AI MCP server with an API key, including clear instructions, sample code, and recommended security practices.
January 14, 2026Source

Investor Lawsuit Over CrowdStrike Outage Dismissed
A judge has ruled that the plaintiffs failed to demonstrate intent to defraud investors.
January 14, 2026Source

Joint guidance on secure connectivity principles for operational technology
The Canadian Centre for Cyber Security (Cyber Centre) has joined the United Kingdom's National Cyber Security Centre (NCSC-UK) and the following international partners in releasing guidance on secure connectivity principles for operational technology (OT):
January 14, 2026Source

Microsoft January 2026 Security Updates
Microsoft January 2026 Security Updates
January 14, 2026Source

Microsoft updates Windows DLL that triggered security alerts
Microsoft has resolved a known issue that was causing security applications to flag a core Windows component, the company said in a service alert posted this week.
January 14, 2026Source

Monroe University says 2024 data breach affects 320,000 people
Monroe University revealed that threat actors stole the personal, financial, and health information of over 320,000 people after breaching its systems in a December 2024 cyberattack.
January 14, 2026Source

Novee Emerges From Stealth With $51.5 Million in Funding
Novee provides continuous AI-driven penetration testing to uncover and address novel vulnerabilities.
January 14, 2026Source

One Identity Manager 10.0 introduces risk-based governance and ITDR capabilities
One Identity has unveiled a major upgrade to One Identity Manager, strengthening identity governance as a critical security control for modern enterprise environments. One Identity Manager 10.0 introduces security-driven capabilities for risk-based governance, identity threat detection and response (ITDR), and AI-assisted insight, helping organizations better anticipate, contain, and manage identity-driven attacks across their complex IT ecosystems.
January 14, 2026Source

Predator Spyware Turns Failed Attacks Into Intelligence for Future Exploits
The Predator spyware is more sophisticated and dangerous than previously realized.
January 14, 2026Source or Source

RedVDS Cybercrime Service Disrupted by Microsoft and Law Enforcement
RedVDS enables threat actors to set up servers that can be used for phishing, BEC attacks, account takeover, and fraud.
January 14, 2026Source

Reprompt attack hijacked Microsoft Copilot sessions for data theft
Researchers identified an attack method dubbed "Reprompt" that could allow attackers to infiltrate a user's Microsoft Copilot session and issue commands to exfiltrate sensitive data.
January 14, 2026Source

Robo-Advisor Betterment Discloses Data Breach
A threat actor breached Betterment's systems, accessed customer information, and sent scam crypto-related messages.
January 14, 2026Source

SpyCloud launches Supply Chain Threat Protection to expose vendor identity risk
SpyCloud has released Supply Chain Threat Protection solution, an advanced layer of defense that expands identity threat protection across the extended workforce, including organizations' entire vendor ecosystems.
January 14, 2026Source

Victorian Department of Education says hackers stole students' data
The Department of Education in Victoria, Australia, notified parents that attackers accessed a database containing the personal information and email addresses of current and former students, prompting password resets.
January 14, 2026Source

UK scraps digital ID requirement for workers
The government still plans to fully transition to digital right-to-work checks by 2029.
January 14, 2026Source or Source

WitnessAI Raises $58 Million for AI Security Platform
The company will use the fresh investment to accelerate its global go-to-market and product expansion.
January 14, 2026Source

Internet — Security Issues — January 9th, 2026

377,000 Impacted by Data Breach at Texas Gas Station Firm
Gulshan Management Services has informed authorities about a recent data breach resulting from a ransomware attack.
January 9, 2026Source

Attackers target remote work and data storage
New research from internet service provider Beaming shows UK businesses were targeted more than 791,600 times last year and attackers are focused on systems that facilitate remote work and data storage, turning them into high-risk entry points.
January 9, 2026Source

Breach Roundup: Firewalls Headed for Obsolescence
Also, Sedgwick Confirms Breach, Romanian Power Firm Hit, D-Link Flaws Exploited
January 9, 2026Source or Source or Source or Source or Source

CISA Closes 10 Emergency Directives as Vulnerability Catalog Takes Over
The Emergency Directives were retired because they achieved objectives or targeted vulnerabilities included in the KEV catalog.
January 9, 2026Source or Source

CrowdStrike Adds Real-Time Identity Control With SGNL Deal
$740M SGNL Acquisition Boosts Dynamic Identity Enforcement for Humans and AI Agents
January 9, 2026Source or Source or Source or Source

European Commission opens consultation on EU digital ecosystems
The European Commission has opened a public call for evidence on European open digital ecosystems, a step toward a planned Communication that will examine the role of open source in EU's digital infrastructure.
January 9, 2026Source

Exploit for VMware Zero-Day Flaws Likely Built a Year Before Public Disclosure
Fresh attacks targeted three VMware ESXi vulnerabilities that were disclosed in March 2025 as zero-days.
January 9, 2026Source

FBI: North Korean Spear-Phishing Attacks Use Malicious QR Codes
The North Korean state-sponsored espionage group Kimsuky has targeted government organizations, think tanks, and academic institutions.
January 9, 2026Source

Hackers target misconfigured proxies to access paid LLM services
Threat actors are systematically hunting for misconfigured proxy servers that could provide access to commercial large language model (LLM) services.
January 9, 2026Source

How hackers are fighting back against ICE surveillance tech
Remember when government agents didn't wear masks?
January 9, 2026Source

Illinois Department of Human Services data breach affects 700K people
The Illinois Department of Human Services (IDHS), one of Illinois' largest state agencies, accidentally exposed the personal and health data of nearly 700,000 residents due to incorrect privacy settings.
January 9, 2026Source

Illinois man charged with hacking Snapchat accounts to steal nude photos
U.S. prosecutors have charged an Illinois man with orchestrating a phishing operation that allowed him to hack the Snapchat accounts of nearly 600 women to steal private photos and sell them online.
January 9, 2026Source or Source or Source

Illinois Notifies 700,000 of Misconfiguration Breach
Mapping Platform Exposed Addresses and Medical Assistance Plans
January 9, 2026Source or Source or Source or Source or Source

ISMG Editors: Lack of MFA Keeps Fueling Cloud Data Breaches
Also: Turning AI Data Into AI Defense, Autonomous Border Patrol Robots
January 9, 2026Source or Source or Source or Source or Source

January 2026 Patch Tuesday forecast: And so it continues
Welcome to a new year of my Patch Tuesday forecast blog where I provide a summary of Microsoft and other vendor's security patch activity (and reported issues) for the month, talk about some of the latest trends, processes, and evolution of patch management, and finally yes, provide a forecast of what security patches are expected to release next week on Patch Tuesday.
January 9, 2026Source

Key Areas of Convergence for IT-OT Security in Energy Sector
Hitachi Energy Security Head Joe Doetzl on Common Tools and Practices
January 9, 2026Source or Source or Source

No Rest in 2026 as Patch Alerts Amass for Cisco, HPE and n8n
Cisco Fixes ISE Bug; HPE OneView Under Fire; Exploit Code Drops for n8n Flaw
January 9, 2026Source or Source or Source or Source or Source

NordPass streamlines two-factor authentication with a built-in Authenticator across devices
NordPass simplifies secure logins by including Authenticator on multiple devices in the application for personal use. The time-based one-time password (TOTP) support enables users to add an extra layer of security to their accounts with two-factor authentication, without the need to download or install additional applications. Authentication codes are synchronized within the account, letting users access them on both the mobile app or browser extension.
January 9, 2026Source

Reports Of A Russian Weapon Aimed At Starlink Have Experts Shaking Their Heads
Even if you've never used the service you're likely familiar with Starlink, the global internet service provider that depends on an array of satellites in low-earth orbit (LEO). SpaceX launched the first Starlink satellites in 2019, and since them more than 9,000 more have joined those initial five dozen. Starlink plans an eventual fleet of over 40,000, but before that can happen Russia seems interested in knocking some of them out of commission.
January 9, 2026Source

The best free VPNs: 5 no-cost top picks
VPNs are best when they're paid for, but the top free VPNs can still keep you private without breaking the bank.
January 9, 2026Source

Tim Kosiba Named NSA Deputy Director
Kosiba, a veteran of the Intelligence Community with over 30 years of federal service, returns to the agency as its most senior civilian leader.
January 9, 2026Source

Why Encryption Alone Is Not Enough in Cloud Security
Practical Lessons from Real-World Scenarios That Clearly Demonstrate Why Relying on Encryption Alone Cannot Fully Protect Cloud Workloads
January 9, 2026Source

'ZombieAgent' Attack Let Researchers Take Over ChatGPT
Radware bypassed ChatGPT's protections to exfiltrate user data and implant a persistent logic into the agent's long-term memory.
January 9, 2026Source

Internet — Security Issues — January 8th, 2026

77 percent of successful email attacks impersonate trusted platforms
New research from StrongestLayer highlights a fundamental shift in attacker behavior, where adversaries increasingly hide behind business-critical platforms such as DocuSign, Microsoft, and Google Calendar -- services organizations can't block without disrupting operations.
January 8, 2026Source

2025 proved hackers aren't slowing down -- and neither should you
Europe's biggest cyber attacks show why smarter online habits are important.
January 8, 2026Source

As agents run amok, CrowdStrike's $740M SGNL deal aims to help get a grip on identity security
Authentication is basically solved. Authorization is another thing entirely...
January 8, 2026Source

Blackbird.AI Raises $28 Million for Narrative Intelligence Platform
The company will use the funds to enhance its AI-based narrative intelligence technology platform and accelerate go-to-market efforts.
January 8, 2026Source

Breach Roundup: Firewalls Headed for Obsolescence
Also, Sedgwick Confirms Breach, Romanian Power Firm Hit, D-Link Flaws Exploited
January 8, 2026Source or Source or Source or Source or Source

Britain Debuts Early Revamp of Government Cyber Action Plan
Experts Salute Urgency and Direction of Travel, Question Funding and Enforcement
January 8, 2026Source or Source or Source or Source or Source

ChatGPT Health: Top Privacy, Security, Governance Concerns
OpenAI: Tool Will 'Securely' Connect With Medical Records, But How Will That Work?
January 8, 2026Source or Source or Source or Source

CISA flags actively exploited Office relic alongside fresh HPE flaw
Max-severity OneView hole joins a PowerPoint bug that should've been retired years ago
January 8, 2026Source

Cisco warns of Identity Service Engine flaw with exploit code
Cisco warns of Identity Service Engine flaw with exploit code
January 8, 2026Source

Critical HPE OneView Vulnerability Exploited in Attacks
The maximum-severity code injection flaw can be exploited without authentication for remote code execution.
January 8, 2026Source

Critical Vulnerability Exposes n8n Instances to Takeover Attacks
Tracked as CVE-2026-21858 (CVSS score 10), the bug enables remote code execution without authentication.
January 8, 2026Source

Critical Vulnerability Patched in jsPDF
The bug can allow attackers to read arbitrary files from the system, potentially exposing configurations and credentials.
January 8, 2026Source

Critics pan spyware maker NSO's transparency claims amid its push to enter US market
NSO Group, one of the most well-known and controversial makers of government spyware, released a new transparency report on Wednesday, as the company enters what it described as "a new phase of accountability."
January 8, 2026Source

CrowdStrike to Buy Identity Security Firm SGNL for $740 Million in Cash
The deal aims to bolster CrowdStrike's Falcon platform with "continuous identity" protection to secure human and AI-driven access in real-time.
January 8, 2026Source

Cruz Accuses Ford's Farley Of Swindling Taxpayers, Calls Him Too Scared To Testify
Jim Farley bailed on planned senate grilling after learning Tesla's Elon Musk was given a pass
January 8, 2026Source

Cryptohack Roundup: Alleged Fraud Kingpin Deported to China
Also: Unleash Protocol Hack, LastPass Breach Linked to Crypto Thefts
January 8, 2026Source or Source or Source or Source or Source

Cyber Retaliation Risks Rise After US-Venezuela Operation
CISA Warns of Retaliatory Cyber Action From Hostile State Actors After Venezuela
January 8, 2026Source or Source or Source or Source or Source

Cyera Raises $400 Million at $9 Billion Valuation
The New York-based data security company has tripled its valuation in just one year.
January 8, 2026Source or Source or Source or Source or Source or Source

Detect and Respond Faster with Elastic & Tines
Security operations center (SOC) teams are under nonstop pressure. Threats are rising, attack techniques are evolving, and analysts are drowning in alerts. Meanwhile, SOC leaders are asked to do more with fewer resources and tighter budgets.
January 8, 2026Source

FBI warns about Kimsuky hackers using QR codes to phish U.S. orgs
The North Korean state-sponsored hacker group Kimsuki is using malicious QR codes in spearphishing campaigns that target U.S. organizations, the Federal Bureau of Investigation warns in a flash alert.
January 8, 2026Source

How Hackers Are Fighting Back Against ICE
Read more about how ICE has spent hundreds of millions of dollars on surveillance technology to spy on anyone—and potentially everyone—in the United States, and how to follow the Homeland Security Spending Trail..
January 8, 2026Source or Source

I Talked to Cybersecurity Experts After These LinkedIn Scams Almost Fooled Me
Experts say scammers often exploit the professional nature of LinkedIn with job offers that seem legitimate. Here's how to spot them.
January 8, 2026Source

IPFire update brings new network and security features to firewall deployments
Security and operations teams often work with firewall platforms that require frequent tuning or upgrades to meet evolving network demands. IPFire has released its 2.29 Core Update 199, aimed at network and protection teams that manage this open source firewall distribution.
January 8, 2026Source

Illinois health department exposed over 700,000 residents' personal data for years
The health department for the U.S. state of Illinois has confirmed that a years-long security lapse exposed the personal information of more than 700,000 state residents.
January 8, 2026Source

JumpCloud Grows Presence in Brazil With MSP MacSolution Buy
Acquisition of MSP MacSolution Boosts Global Services and Cloud Migration Expertise
January 8, 2026Source or Source or Source or Source

Michigan man learns the hard way that "catch a cheater" spyware apps aren't legal
Spying doesn't become legal just because "cheaters" are the targets.
January 8, 2026Source

Maximum-severity n8n flaw lets randos run your automation server
Unauthenticated RCE means anyone on the network can seize full control
January 8, 2026Source

NordPass launches Authenticator for personal accounts
NordPass Authenticator is a feature that generates one-time passwords directly in a NordPass vault. It gives all the security of two-factor authentication without an extra app. However, until now it's only been available to business users.
January 8, 2026Source

PoC released for unauthenticated RCE in Trend Micro Apex Central (CVE-2025-69258)
Trend Micro has released a critical patch fixing several remotely exploitable vulnerabilities in Apex Central (on-premise), including a flaw (CVE-2025-69258) that may allow unauthenticated attackers to achieve code execution on affected installations.
January 8, 2026Source

Ransomware attacks kept climbing in 2025 as gangs refused to stay dead
Cop wins hit crime infrastructure, not the people behind it
January 8, 2026Source

Recently fixed HPE OneView flaw is being exploited (CVE-2025-37164)
An unauthenticated remote code execution vulnerability (CVE-2025-37164) affecting certain versions of HPE OneView is being leveraged by attackers, CISA confirmed by adding the flaw to its Known Exploited Vulnerabilities catalog.
January 8, 2026Source

Researchers Expose WHILL Wheelchair Safety Risks via Remote Hacking
CISA advisory warns that unauthenticated Bluetooth access in WHILL devices allows for unauthorized movement.
January 8, 2026Source

Secure Log Tokenization Using Aho--Corasick and Spring
This article shows how to use the Aho--Corasick algorithm and deterministic tokenization in Spring Boot to intercept logs in real time, remove sensitive values.
January 8, 2026Source

UK Government Unveils New Cyber Action Plan
The UK government's cyber action plan is by the government for the government, and has no advice for the private sector nor CNI.
January 8, 2026Source

Upwind Choppy AI simplifies cloud security exploration and investigation
Upwind announced Choppy AI, embedding new AI-powered capabilities across the company's CNAPP platform. Choppy AI introduces natural-language--driven experiences that make cloud security exploration, investigation, and analysis more intuitive, while providing transparency, control, and trust for security teams.
January 8, 2026Source

Vannadium's Leap combines on-chain performance and data integrity for explainable AI
Vannadium has launched Leap, a platform that combines blockchain-level data integrity with real-time, on-chain performance.
January 8, 2026Source

VMware ESXi zero-days likely exploited a year before disclosure
Chinese-speaking threat actors used a compromised SonicWall VPN appliance to deliver a VMware ESXi exploit toolkit that seems to have been developed more than a year before the targeted vulnerabilities became publicly known.
January 8, 2026Source

Watch out! This fake Windows BSOD is a trap
Attackers are using ClickFix social engineering, fake CAPTCHAs, and phony BSODs to convince victims into copying and pasting malicious code. Here's how the attack works.
January 8, 2026Source

What Testers Can Do to Ensure Software Security
A secure software development life cycle means baking security into plan, design, build, test, and maintenance, rather than sprinkling it on at the end, Sara Martinez said in her talk Ensuring Software Security at Online TestConf. Testers aren't bug finders but early defenders, building security and quality in from the first sprint. Culture first, automation second, continuous testing and monitoring all the way; that's how you make security a habit instead of a fire drill, she argued.
January 8, 2026Source

Yes, criminals are using AI to vibe-code malware
They also hallucinate when writing ransomware code
January 8, 2026Source

Internet — Security Issues — January 7th, 2026

900,000 Users Hit as Malicious Chrome Extensions Steal ChatGPT, DeepSeek Chats
OX Security reveals how malicious Chrome extensions exposed AI chats from ChatGPT and DeepSeek, silently siphoning sensitive data from 900,000 users.
January 7, 2026Source

7 essential tips to maximize AI security
AI can be a bit scary, but if you pay attention to privacy, double-check your facts, and take control of your data, you can use it safely and smartly.
January 7, 2026Source

Australia's Scams Framework Criticized Over Major Exclusions
Treasury Submissions Want Broader Coverage; Gaps Could Weaken Protections
January 7, 2026Source or Source or Source or Source or Source

Best travel VPNs of 2026: The top VPNs for security and speed worldwide
VPNs shield you from spying and can resolve online blocks you may find in other countries including the UK's new checks. My favorite travel VPNs offer fast speeds, massive server networks, and solid encryption.
January 7, 2026Source

Best VPN services: 8 top picks for every VPN need
There are a lot of VPN options out there; we'll help you cut through the clutter.
January 7, 2026Source

Best VPNs for streaming 2026: Watch your favorite shows worldwide with my favorite VPNs
Check out our favorite VPNs for rapid speeds, high server counts, and access to streaming libraries when you leave home.
January 7, 2026Source

Chrome fixes a problematic security flaw in first update of 2026
Google has released the first security update of the new year for Chrome.
January 7, 2026Source

Chrome Extensions With 900,000 Downloads Caught Stealing AI Chats
Impersonating a legitimate extension from AITOPIA, the two malicious extensions were also exfiltrating users' browser activity.
January 7, 2026Source

Complex Routing, Misconfigurations Exploited for Domain Spoofing in Phishing Attacks
Threat actors spoof legitimate domains to make their phishing emails appear to have been sent internally.
January 7, 2026Source

Critical jsPDF flaw lets hackers steal secrets via generated PDFs
The jsPDF library for generating PDF documents in JavaScript applications is vulnerable to a critical vulnerability that allows an attacker to steal sensitive data from the local filesystem by including it in generated files.
January 7, 2026Source

Cyber Flatlines in FY 2026 Justice, Commerce Spending Bill
Congress Holds Cyber Funding at 2024 Levels Across Key Civilian Agencies
January 7, 2026Source or Source or Source or Source or Source

Cybersecurity Firms Secured $14 Billion in Funding in 2025: Analysis
2025 was the strongest year for cybersecurity funding since the 2021 peak, according to Pinpoint Search Group.
January 7, 2026Source

Debian seeks volunteers to rebuild its data protection team
The Debian Project is asking for volunteers to step in after its Data Protection Team became inactive. All three members of the team stepped down at the same time, leaving no dedicated group to handle privacy and data protection work.
January 7, 2026Source or Source or Source or Source or Source or Source

ESA calls cops as crims lift off 500 GB of files, say security black hole still open
Two weeks, two major data leaks ... not a good look for the European Space Agency
January 7, 2026Source

Fake Booking.com emails and BSODs used to infect hospitality staff
Suspected Russian attackers are targeting the hospitality sector with fake Booking.com emails and a fake "Blue Screen of Death" to deliver the DCRat malware.
January 7, 2026Source

FDA Takes Hands-Off Approach to AI Devices and Software
Agency: Guidance Favors Market Innovation Over Federal Scrutiny
January 7, 2026Source or Source or Source or Source or Source

Financial services overtakes healthcare as most at risk from cyberattacks
The financial services sector has now overtaken healthcare as the industry with the highest number of data compromises.
January 7, 2026Source

Google Tops List of the Most Exploited Accounts in the US, Report Finds
A new report reveals that Google accounts are the most exploited in the US, largely due to how many services are tied to a single login. The article also explains how users can better protect themselves using stronger passwords, 2FA, and passkeys.
January 7, 2026Source

Hackers Exploit Zero-Day in Discontinued D-Link Devices
The critical-severity vulnerability allows unauthenticated, remote attackers to execute arbitrary shell commands.
January 7, 2026Source

How attackers are weaponizing open-source package managers [Q&A]
A new wave of attacks is hitting the JavaScript package ecosystem, specifically through open-source managers like NPM. Instead of malicious code hiding in the package itself, attackers now weaponize the install process. So, the code looks clean at build-time but later executes in end-user browsers, where it quietly steals data.
January 7, 2026Source

HSBC app takes a dim view of sideloaded Bitwarden installations
Customers report being locked out after grabbing the password manager via F-Droid
January 7, 2026Source

IBM's AI agent Bob easily duped to run malware, researchers show
Prompt injection lets risky commands slip past guardrails
January 7, 2026Source

In 2026, Hackers Want AI: Threat Intel on Vibe Hacking & HackGPT
Right now, across , channels, and underground , hackers are talking about artificial intelligence - but not in the way most people expect.
January 7, 2026Source

Jaguar Land Rover wholesale volumes plummet 43% in cyberattack aftermath
Production halts and supply-chain disruption left luxury automaker reeling in fiscal Q3
January 7, 2026Source

Max severity Ni8mare flaw lets hackers hijack n8n servers
A maximum severity vulnerability dubbed "Ni8mare" allows remote, unauthenticated attackers to take control over locally deployed instances of the N8N workflow automation platform.
January 7, 2026Source

Microsoft scraps Exchange Online spam clamp after customers cry foul
Negative feedback sinks Redmond's plan to cap outbound email recipients
January 7, 2026Source

Ministry of Justice splurged £50M on security -- still missed Legal Aid Agency cyberattack
High-risk system compromised long before intrusion was finally spotted
January 7, 2026Source

New Veeam vulnerabilities expose backup servers to RCE attacks
Veeam released security updates to patch multiple security flaws in its Backup & Replication software, including a critical remote code execution (RCE) vulnerability.
January 7, 2026Source

Orca, Wiz End Dueling Lawsuits Over Cloud Security Patents
Patent Board Decision Invalidating 3 Orca Patents Weakens Case, Leads to Dismissal
January 7, 2026Source or Source or Source or Source or Source

Orthopedic Practice Pays $500K Settlement to NYS in Hack
2023 Incident Affected More Than 650,000 Patients, Employees
January 7, 2026Source or Source or Source or Source or Source

ownCloud urges users to enable MFA after credential theft reports
File-sharing platform ownCloud warned users today to enable multi-factor authentication (MFA) to block attackers using compromised credentials from stealing their data.
January 7, 2026Source

Phishing-as-a-service kits doubled in 2025 as tactics evolve
In 2025, the number of known phishing-as-a-service (PhaaS) kits doubled in number, increasing the pressure on security teams trying to defend against this ever-evolving threat.
January 7, 2026Source

Poison Pill Defense Protects Proprietary AI Data From Theft
Researchers Weaponize False Data to Wreck Stolen AI Systems
January 7, 2026Source or Source or Source or Source or Source

Samsung patches high-risk security vulnerability in its SSD software, update yours now
If you have a Samsung SSD in your computer and you use the Samsung Magician app, it is time to update to the latest version, as Samsung reported a high-severity vulnerability in some of the older versions of the program.
January 7, 2026Source

Several Code Execution Flaws Patched in Veeam Backup & Replication
Four vulnerabilities have been fixed in the latest release of Veeam Backup & Replication.
January 7, 2026Source

Stalkerware slinger pleads guilty for selling snooper software to suspicious spouses
pcTattletale boss Bryan Fleming faces up to 15 years in prison when sentenced later this year
January 7, 2026Source

The Hidden Security Risks in ETL/ELT Pipelines for LLM-Enabled Organizations
As LLMs enter data pipelines, ETL/ELT becomes part of the AI security boundary, where untrusted inputs can introduce upstream risks.
January 7, 2026Source

The Loudest Voices in Security Often Have the Least to Lose
Security advice fails when it comes from those who don't bear the consequences and won't be responsible for making it work.
January 7, 2026Source

UK announces plan to strengthen public sector cyber defenses
The United Kingdom has announced a new cybersecurity strategy, backed by more than £210 million ($283 million), to boost cyber defenses across government departments and the wider public sector.
January 7, 2026Source or Source or Source or Source

Vulnerability in Totolink Range Extender Allows Device Takeover
An error in the firmware-upload handler leads to devices starting an unauthenticated root-level Telnet service.
January 7, 2026Source

What does cybersecurity look like in the quantum age?
Quantum computers promise unprecedented computing speed and power that will advance both business and science. These same qualities also make them a prime target for malicious hackers, according to Swaroop Ghosh, professor of computer science and of electrical engineering at the Penn State School of Electrical Engineering and Computer Science.
January 7, 2026Source

WWT introduces ARMOR, a vendor-agnostic framework for secure AI readiness
World Wide Technology (WWT) announced its AI Readiness Model for Operational Resilience (ARMOR), a vendor-agnostic solution, delivered by WWT, leveraging a jointly developed framework with NVIDIA. Refined with real-world feedback from The Texas A&M University System, ARMOR is among the first vendor-agnostic, end-to-end AI security frameworks designed to empower organizations to accelerate AI adoption confidently while ensuring robust security, compliance, and operational resilience.
January 7, 2026Source

Zero Trust for the Age of Autonomous AI Agents - Part 1
Why Human-Centric Zero Trust Models Fail in a World of Autonomous AI Agents
January 7, 2026Source or Source or Source or Source or Source

Internet — Security Issues — January 6th, 2026

Are Copilot prompt injection flaws vulnerabilities or AI limits?
Microsoft has pushed back against claims that multiple prompt injection and sandbox-related issues raised by a security engineer in its Copilot AI assistant constitute security vulnerabilities.
January 6, 2026Source

Conduent Hack Victim Count Soars by at Least 50%
Why Are Third-Party Vendor Breaches So Hard to Figure Out?
January 6, 2026Source or Source or Source or Source or Source

Critical Dolby Vulnerability Patched in Android
The flaw is tracked as CVE-2025-54957 and its existence came to light in October 2025 after it was discovered by Google researchers.
January 6, 2026Source

Cyber Risk Trends for 2026: Building Resilience, Not Just Defenses
We can't outpace the adversary by trying to stop every attack, but we can outlast them by engineering systems and culture to take a punch and try to quickly rebound.
January 6, 2026Source

Cybersecurity M&A Roundup: 30 Deals Announced in December 2025
Significant cybersecurity M&A deals announced by Akamai, Red Hat, Checkmarx, Silent Push, and ServiceNow.
January 6, 2026Source

Direct 3D printing of nanolasers can boost optical computing and quantum security
In future high-tech industries, such as high-speed optical computing for massive AI, quantum cryptographic communication, and ultra-high-resolution augmented reality (AR) displays, nanolasers—which process information using light—are gaining significant attention as core components for next-generation semiconductors.
January 6, 2026Source or Source

FCC Loses Lead Support for Biden-Era IoT Security Labeling
FCC Lacks Lead for Cyber Trust Mark Program After UL Solutions Steps Down From Post
January 6, 2026Source or Source or Source or Source

Hacker Conversations: Katie Paxton-Fear Talks Autism, Morality and Hacking
From dismantling online games as a child to uncovering real-world vulnerabilities, Katie Paxton-Fear explains how autism, curiosity, and a rejection of ambiguity shaped her path into ethical hacking.
January 6, 2026Source

How generative AI accelerates identity attacks against Active Directory
Active Directory is still how most organizations manage user identities, making it a frequent focus during attacks. What's changed isn't the target, but how much faster and more effective these attacks have become.
January 6, 2026Source

If Your Security Camera Is in One of These 7 Spots, You're Basically Doing the Intruder's Job for Them
If Your Security Camera Is in One of These 7 Spots, You're Basically Doing the Intruder's Job for Them
January 6, 2026Source

Kimwolf Android botnet abuses residential proxies to infect internal devices
The Kimwolf botnet, an Android variant of the Aisuru malware, has grown to more than two million hosts, most of them infected by exploiting vulnerabilities in residential proxy networks to target devices on internal networks.
January 6, 2026Source

Missing MFA Strikes Again: Hacker Hits Collaboration Tools
Terabytes of Data Stolen From Cloud-Based Collaboration Tools, Researchers Warn
January 6, 2026Source or Source or Source or Source or Source

New D-Link flaw in legacy DSL routers actively exploited in attacks
Threat actors are exploiting a recently discovered command injection vulnerability that affects multiple D-Link DSL gateway routers that went out of support years ago.
January 6, 2026New D-Link flaw in legacy DSL routers actively exploited in attacks
Threat actors are exploiting a recently discovered command injection vulnerability that affects multiple D-Link DSL gateway routers that went out of support years ago.
January 6, 2026
Source

" target="new" class="RM1">Source

NordVPN Denies Breach After Hacker Leaks Data
The VPN company has conducted an investigation after a threat actor claimed to have hacked its systems.
January 6, 2026Source

Nvidia Bets on Reasoning AI for Self-Driving Cars
Chipmaker CEO Huang Launches Alpamayo Models, Rubin Platform
January 6, 2026Source or Source or Source or Source

Researchers Trap Scattered Lapsus$ Hunters in Honeypot
Using fake accounts and synthetic data to lure the hackers, the researchers gathered information on their servers.
January 6, 2026Source

Samsung Explores How Trust, Security and Privacy Shape the Future of AI at CES 2026
Samsung Tech Forum series continues at CES 2026 with AI Platform Center discussion on the future of trust and AI
January 6, 2026Source

Sedgwick confirms breach at government contractor subsidiary
Claims administration and risk management company Sedgwick has confirmed that its federal contractor subsidiary, Sedgwick Government Solutions, was the victim of a security breach.
January 6, 2026Source

Sophisticated ClickFix Campaign Targeting Hospitality Sector
Fake Booking reservation cancellations and fake BSODs trick victims into executing malicious code leading to RAT infections.
January 6, 2026Source

Threats to Critical Infrastructure Expected to Intensify
Geopolitics Puts OT at Greater Risk From Nation States, Criminals and Hacktivists
January 6, 2026Source or Source or Source or Source

UK injects just £210M into cyber plan to stop Whitehall getting pwnd
Central government will supposedly be as secure as energy facilities and datacenters under new proposals
January 6, 2026Source

Why Palo Alto Is Eyeing a $400M Buy of Endpoint Vendor Koi
Deal Represents Return to Tuck-In M&A for Palo After 3 Multi-Billion Dollar Deals
January 6, 2026Source or Source or Source or Source or Source

Internet — Security Issues — January 5th, 2026

Aflac Notifies 22.7 Million People of June Data Theft Attack
Insurer's Hack Could Rank as Largest US Health Data Breach Reported in 2025
January 5, 2026Source or Source or Source or Source or Source

Agentic AI Is an Identity Problem and CISOs Will Be Accountable for the Outcome
If you are a CISO today, agentic AI probably feels familiar in an uncomfortable way. The technology is new, but the pattern is not. Business leaders are pushing hard to deploy AI agents across the organization, while security teams are expected to make it safe without slowing anything down.
January 5, 2026Source

Breached E-Commerce Giant Details $1B 'Customer Trust' Plan
Critics of South Korea's Coupang Dismiss Offer as Marketing More Than Compensation
January 5, 2026Source or Source or Source or Source or Source

Brightspeed Investigating Cyberattack
The hacking group Crimson Collective has claimed the theft of personal information pertaining to over 1 million Brightspeed customers.
January 5, 2026Source

California just made it much easier to delete your data across 500 brokers
California is taking on the data broker industry with automation
January 5, 2026Source or Source

China Launched 2.6M Daily Cyberattacks on Taiwan in 2025
Cyberspace has become a central arena in cross-strait tensions, complementing military maneuvers, diplomatic isolation, and economic pressure.
January 5, 2026Source

CISA KEV Catalog Expanded 20% in 2025, Topping 1,480 Entries
With 24 new vulnerabilities known to be exploited by ransomware groups, the list now includes 1,484 software and hardware flaws.
January 5, 2026Source

ClickFix attack uses fake Windows BSOD screens to push malware
A new ClickFix social engineering campaign is targeting the hospitality sector in Europe, using fake Windows Blue Screen of Death (BSOD) screens to trick users into manually compiling and executing malware on their systems.
January 5, 2026Source

Cloud file-sharing sites targeted for corporate data theft attacks
A threat actor known as Zestix has been offering to sell corporate data stolen from dozens of companies likely after breaching their ShareFile, Nextcloud, and OwnCloud instances.
January 5, 2026Source

Congrats, cybercrims: You just fell into a honeypot
Resecurity offered its "congratulations" to the Scattered Lapsus$ Hunters cybercrime crew for falling into its threat intel team's honeypot -- resulting in a subpoena being issued for one of the data thieves. Meanwhile, the notorious extortionists have since removed their claims of gaining "full access" to the security shop's systems.
January 5, 2026Source

Covenant Health Notifying 480K Patients of 2025 Data Theft
Ransomware Gang Qilin Had Claimed It Stole 852 GB of Health System's Data
January 5, 2026Source or Source or Source or Source or Source

Covenant Health patient data breach numbers skyrocket
According to a revised breach notification, the provider sent out an additional 470,000 letters for a ransomware attack initially reported last year as affecting upwards of 8,000 individuals.
January 5, 2026Source

Cyberattack Unlikely in Communications Failure That Grounded Flights in Greece
Flights across Greece were impacted for several hours after noise was reported on multiple air traffic communication channels.
January 5, 2026Source

Food insecurity tied to increased long COVID risk in kids
New research led by Mass General Brigham investigators suggests that long COVID is more prevalent in school-aged children and adolescents who experience economic instability and adverse social conditions. The multi-center, observational study found that the risk of long COVID was significantly higher in households that faced food insecurity and challenges such as low social support and high levels of discrimination.
January 5, 2026Source

Hacker Dressed as the Pink Ranger Takes Down White Supremacist Websites Live Onstage
Now that's a performance that needs an encore.
January 5, 2026Source

Kimwolf Android Botnet Grows Through Residential Proxy Networks
The 2-million-device-strong botnet allows monetization through DDoS attacks, app installs, and the selling of proxy bandwidth.
January 5, 2026Source

Ledger customers impacted by third-party Global-e data breach
Ledger is informing some customers that their personal data has been exposed after hackers breached the systems of third-party payment processor Global-e.
January 5, 2026Source

Managing the Explosion of Machine Identities in Financial Services
CyberArk and Accenture Experts Discuss Modernization, Identity Sprawl, Securing AI
January 5, 2026Source or Source or Source or Source or Source

New Zealand orders review into Manage
Government 'incredibly' concerned about breach potentially affecting more than 100,000 patients
January 5, 2026Source

New Zealand Probes Ransomware Hack of Health Portal
More Than 100,000 Affected by Hack Detected on Dec. 30
January 5, 2026Source or Source or Source or Source or Source

NordVPN denies breach claims, says attackers have "dummy data"
NordVPN denied allegations that its internal Salesforce development servers were breached, saying that cybercriminals obtained "dummy data" from a trial account on a third-party automated testing platform.
January 5, 2026Source

Palo Alto Networks Eyes $400M Acquisition of Koi Security
A high-profile acquisition by a global cybersecurity leader could help signal renewed confidence in Israeli cyber startups.
January 5, 2026Source

Playing Koi: Palo Alto isn't saying if it will buy security start-up
CEO Nikesh Arora's trip to Tel Aviv last month sparked rumors.
January 5, 2026Source

Popular VPN maker NordVPN shares details on yesterday's alleged Salesforce user data breach
Yesterday on January 4, a breach forum post alleged that a threat actor had accessed a "NordVPN Salesforce development server" which meant user data was allegedly hacked into. NordVPN has now issued a statement clarifying the situation as the firm has said that it concluded an "immediate forensic review" of such claims.
January 5, 2026Source

Proton Authenticator instead of Microsoft or Google solutions?
I'd like to address a topic that might be of interest to some of you. I've been using the Proton Authenticator for two-factor authentication for a while now. Here's some information on the subject.
January 5, 2026Source

Researcher Spotlights WhatsApp Metadata Leak as Meta Begins Rolling Out Fixes
WhatsApp device fingerprinting can be useful in the delivery of sophisticated spyware, but impact is very limited without a zero-day.
January 5, 2026Source

Sedgwick Confirms Cyberattack on Government Subsidiary
Hackers have compromised a file transfer system at Sedgwick's subsidiary that serves government agencies.
January 5, 2026Source

The Enduring Attack Surface of VPNs
Paper Traces Pandemic-Era Spike in Attacks
January 5, 2026Source or Source or Source or Source or Source

The nation's strictest privacy law just took effect, to data brokers' chagrin
Californians can now submit demands requiring 500 brokers to delete their data.
January 5, 2026Source

Trump, the US and a Blackout: What Cut Off Venezuela's Grid?
Experts Say Grid Disruption Amid Venezuela Operation Signals Cyber's Expanding Role
January 5, 2026Source or Source or Source

Trusted Google Notifications Used in Phishing Campaign Targeting 3,000+ Orgs
Researchers warn that attackers are abusing Google notifications and cloud services to deliver phishing emails that bypass traditional email security controls.
January 5, 2026Source

US broadband provider Brightspeed investigates breach claims
Brightspeed, one of the largest fiber broadband companies in the United States, is investigating security breach and data theft claims made by the Crimson Collective extortion gang.
January 5, 2026Source

VSCode IDE forks expose users to "recommended extension" attacks
Popular AI-powered integrated development environment solutions, such as Cursor, Windsurf, Google Antigravity, and Trae, recommend extensions that are non-existent in the OpenVSX registry, allowing threat actors to claim the namespace and upload malicious extensions.
January 5, 2026Source

Why a Cisco-Axonius Deal Makes Sense, and Why It Might Not
Despite Cisco's Cyber Struggles, the Perks of Offering Asset Management Are Clear
January 5, 2026Source or Source or Source

Windows Users at Risk as Critical Zoom Vulnerability Exploited
A critical Zoom vulnerability put Windows users at risk of data theft and system compromise. Zoom has patched the flaw. Users should update immediately.
January 5, 2026Source

Your Home Address Might Be Exposed. Here's How to Scrub It From the Internet.
Protect your privacy and keep your home address off the internet with these tips.
January 5, 2026Source

Zoom users, beware: These browser extensions are spying on you
A new malware campaign called Zoom Stealer is spying on Zoom users and stealing their sensitive data.
January 5, 2026Source

Internet — Security Issues — January 2nd, 2026

5 Challenges and Solutions in Mobile App Testing
Common challenges you must overcome during testing include device fragmentation, app security, connectivity issues, and more.
January 2, 2026Source

Adobe ColdFusion Servers Targeted in Coordinated Campaign
GreyNoise has observed thousands of requests targeting a dozen vulnerabilities in Adobe ColdFusion during the Christmas 2025 holiday.
January 2, 2026Source

Covenant Health Data Breach Impacts 478,000 Individuals
The Qilin ransomware group hacked the healthcare organization and stole data from its systems in May 2025.
January 2, 2026Source

Cybercrook claims to be selling infrastructure info about three major US utilities
A cybercrook claims to have breached Pickett and Associates, a Florida-based engineering firm whose clients include major US utilities, and is selling what they claim to be about 139 GB of engineering data about Tampa Electric Company, Duke Energy Florida, and American Electric Power. The price is 6.5 bitcoin, which amounts to about $585,000.
January 2, 2026Source

ISMG Editors: How AI Is Reshaping Cybersecurity Strategy
Also: Leadership Decisions Shaping Cybersecurity in 2026
January 2, 2026Source or Source or Source or Source

Nasty GlassWorm Malware Pivots From Windows To Target Mac Users
Security firm Koi has been busy lately. Its researchers have not only uncovered a sprawling spyware campaign, but they're also keeping tabs on the ever-evolving malware dubbed GlassWorm. In its latest form, GlassWorm has shifted from exclusively targeting Windows users to targeting macOS users as well, and it has a dangerous new trick up its sleeve to boot.
January 2, 2026Source

Over 10K Fortinet firewalls exposed to actively exploited 2FA bypass
Over 10,000 Fortinet firewalls are still exposed online and vulnerable to ongoing attacks exploiting a five-year-old critical two-factor authentication (2FA) bypass vulnerability.
January 2, 2026Source

RondoDox Botnet Exploiting React2Shell Vulnerability
In December, the botnet's operators focused on weaponizing the flaw to compromise vulnerable Next.js servers.
January 2, 2026Source

Trust Wallet links $8.5 million crypto theft to Shai-Hulud NPM attack
Trust Wallet believes the compromise of its web browser to steal roughly $8.5 million from over 2,500 crypto wallets is likely related to an "industry-wide" Sha1-Hulud attack in November.
January 2, 2026Source

Upgrade your online security in 2026 with this portable VPN router
This pocket-sized VPN travel router protects your data anywhere.
January 2, 2026Source

RansomwareTwo US Cybersecurity Pros Plead Guilty Over Ransomware Attacks
Ryan Goldberg and Kevin Martin have admitted being affiliates of the BlackCat/Alphv ransomware group.
January 2, 2026Source

Why 47-Day TLS and SSL Certificate Renewal Cycles Alarm CIOs
Visibility Gaps Increase the Risk of Certificate-Driven Outages
January 2, 2026Source or Source or Source or Source or Source

Internet — Security Issues — January 1st, 2026

Best VPN Service for 2026: Our Top Picks in a Tight Race
Streaming, gaming or traveling? You might want a virtual private network. Our expert testing team rigorously evaluated these top VPNs for privacy, speed and more.
January 1, 2026Source

Breach Roundup: Clop Tied to Korean Air Vendor Breach
Also: China-Linked APT Hijack Updates, Conde Nast Data Leaked, La Poste Hit
January 1, 2026Source or Source or Source or Source or Source

Cryptohack Roundup: $7M Trust Wallet Hack
Indian Police Arrests Ex-Coinbase Staffer Over Data Breach Charges
January 1, 2026Source or Source or Source or Source or Source

Internet — Security Issues — December 26th, 2025

Data sovereignty, cloud and security [Q&A]
As more and more information is stored in the cloud, often with hyperscale providers, the issue of data sovereignty -- where the information resides and who can access it -- becomes increasingly crucial.
December 26, 2025Source

From video games to cyber defense: If you don't think like a hacker, you won't win
In supercharged AI race, defenders need to keep up
December 26, 2025Source

The 9 top cybersecurity startups from Disrupt Startup Battlefield
Every year, TechCrunch's Startup Battlefield pitch contest draws thousands of applicants. We whittle those applications down to the top 200 contenders, and of them, the top 20 compete on the big stage to become the winner, taking home the Startup Battlefield Cup and a cash prize of $100,000. But the remaining 180 startups all blew us away as well in their respective categories and compete in their own pitch competition.
December 26, 2025Source

These are the cybersecurity stories we were jealous of in 2025
It's the end of the year. That means it's time for us to celebrate the best cybersecurity stories we didn't publish. Since 2023, TechCrunch has looked back at the best stories across the board from the year in cybersecurity.
December 26, 2025Source

Internet — Security Issues — December 25th, 2025

AI-Driven Attacks and the Future of Security
Trend Micro's David Sancho on How AI Is Shaping Cyberthreats
December 25, 2025Source or Source or Source or Source

Breach Roundup: Spotify Metadata Dumped Online
Also: SudamericaData Leak, RaccoonO365 Arrest and Nefilim Conspirator Pleads Guilty
December 25, 2025Source or Source or Source or Source or Source

Cryptohack Roundup: FCA Outlines UK Crypto Rules
Also: Trader Loses $50M in USDT in Address Poisoning Scam
December 25, 2025Source or Source or Source or Source or Source

Reducing Cyber, Privacy Risks in Healthcare Sector M&As
Attorney Jonian Rafti of Proskauer on Top Considerations
December 25, 2025Source or Source or Source or Source or Source

US Energy Dept Flags AI, Cyber Gaps as Top Risks for 2026
New Report Says DOE Cyber and AI Governance Is Lagging Behind Rapid Deployment
December 25, 2025Source or Source

Internet — Security Issues — December 21st, 2025

How to Completely Uninstall McAfee Antivirus Easily
McAfee loves to hang around longer than invited. Here's how to remove it for good on Windows and Mac.
December 21, 2025Source

Internet — Security Issues — December 20th, 2025

Identity Theft Protection versus Antivirus: Where to Spend First
Malware wants your files. Scammers want your identity. Choose your fighter.
December 20, 2025Source

Russian hackers exploited misconfigured customer devices hosted on AWS for years, Amazon says
Amazon links sustained cyber campaign to Russia's GRU
December 20, 2025Source

Internet — Security Issues — December 19th, 2025

AI Security Firm Ciphero Emerges From Stealth With $2.5 Million in Funding
The startup's solution captures, verifies, and governs all AI interactions within an enterprise's environment.
December 19, 2025Source

AI-Generated Code Ships Faster, but Crashes Harder
Machine-Written Pull Requests Contain 70% More Bugs
December 19, 2025Source or Source or Source or Source or Source

Amazon confirms years-long Russian cyberattack against AWS customers' devices
The attack has been ongoing for half a decade.
December 19, 2025Source

ATM jackpotting gang accused of unleashing Ploutus malware across US
Latest charges join the mountain of indictments facing alleged Tren de Aragua members
December 19, 2025Source

Chinese APT 'LongNosedGoblin' Targeting Asian Governments
The hacking group has been using Group Policy to deploy cyberespionage tools on governmental networks.
December 19, 2025Source

Criminal IP and Palo Alto Networks Cortex XSOAR integrate to bring AI-driven exposure intelligence to automated incident response
Criminal IP, the AI-powered threat intelligence and attack surface monitoring platform developed by AI SPERA, is now officially integrated into Palo Alto Networks' Cortex XSOAR.
December 19, 2025Source

Denmark blames Russia for destructive cyberattack on water utility
Danish intelligence officials blamed Russia for orchestrating cyberattacks against Denmark's critical infrastructure, as part of Moscow's hybrid attacks against Western nations.
December 19, 2025Source or Source

Europe's AI Challenge Runs Deeper Than Regulation
Europe Faces Barriers No Legal Rewrite Can Fix
December 19, 2025Source or Source or Source or Source or Source

Fortifying Cloud Security Operations with AI-Driven Threat Detection
Transforming cloud security operations by leveraging predictive and intelligent automation for faster, smarter threat detection and response.
December 19, 2025Source

Hackers can take over your WhatsApp account with this sneaky trick
Other accounts that use this login method could be targeted this way, too.
December 19, 2025Source

Hacks, thefts, and disruption: The worst data breaches of 2025
Every year, TechCrunch looks back at the cybersecurity horror shows of the past 12 months — from the biggest data breaches to hacks resulting in weeks of disruption — to see what we can learn. This year, the data breaches were like nothing we've seen before.
December 19, 2025Source

HPE tells customers to patch fast as OneView RCE bug scores a perfect 10
Maximum-severity vuln lets unauthenticated attackers execute code on trusted infra management platform
December 19, 2025Source

Hundreds of Cisco customers are vulnerable to new Chinese hacking campaign, researchers say
On Wednesday, Cisco revealed that a group of Chinese government-backed hackers is exploiting a vulnerability to target its enterprise customers who use some of the company's most popular products.
December 19, 2025Source

In Other News: Docker AI Attack, Google Sues Chinese Cybercriminals, Coupang Hacked by Employee
Other noteworthy stories that might have slipped under the radar: Trump could use private firms for cyber offensive, China threat to US power grid, RaccoonO365 suspect arrested in Nigeria.
December 19, 2025Source

ISMG Editors: When KYC No Longer Signals Trust
Also: Cyber Insurers Brace for AI Risk, Shopping Agents Rewrite E-commerce
December 19, 2025Source or Source or Source or Source or Source

Italian Ferry Malware Attack Sparks International Probe
French intelligence agencies uncovered what appears to be a coordinated foreign interference operation targeting the GNV Fantastic.
December 19, 2025Source

Kirsten Davies Confirmed as Pentagon CIO
Former Unilever CISO to Lead Department of Defense IT
December 19, 2025Source or Source or Source or Source

Microsoft 365 accounts targeted in wave of OAuth phishing attacks
Multiple threat actors are compromising Microsoft 365 accounts in phishing attacks that leverage the OAuth device code authorization mechanism.
December 19, 2025Source

Microsoft's The Top Brand Scammers Use When Phishing For Clicks, Study Shows
Nearly as soon as the web was born, scammers were using it to con people out of their money. From foreign princes who need your help to reclaim their family fortunes to chain emails with embedded ransomware, there's no shortage of schemes deployed by those unscrupulous fraudsters. But one of the most tried and true is the Microsoft support scam, and new research conducted by a cybersecurity firm attests to its popularity.
December 19, 2025Source

New critical WatchGuard Firebox firewall flaw exploited in attacks
WatchGuard has warned customers to patch a critical, actively exploited remote code execution (RCE) vulnerability in its Firebox firewalls.
December 19, 2025Source

New UEFI flaw enables pre-boot attacks on motherboards from Gigabyte, MSI, ASUS, ASRock
The UEFI firmware implementation in some motherboards from ASUS, Gigabyte, MSI, and ASRock is vulnerable to direct memory access (DMA) attacks that can bypass early-boot memory protections.
December 19, 2025Source

Nigeria arrests dev of Microsoft 365 'Raccoon0365' phishing platform
The Nigerian police arrested three individuals linked to targeted Microsoft 365 cyberattacks via Raccoon0365 phishing platform
December 19, 2025Source

North Korea's Digital Surge: $2B Stolen in Crypto as Amazon Blocks 1,800 Fake IT Workers
Data from Chainalysis and Amazon offers a glimpse into North Korea's cyber activities surrounding cryptocurrency theft and fake IT workers.
December 19, 2025Source

North Korean infiltrator caught working in Amazon IT department thanks to lag — 110ms keystroke input raises red flags over true location
A barely perceptible keystroke delay was the smoking gun that led to the uncovering of a malign imposter.
December 19, 2025Source

Over 25,000 FortiCloud SSO devices exposed to remote attacks
Internet security watchdog Shadowserver has found over 25,000 Fortinet devices exposed online with FortiCloud SSO enabled, amid ongoing attacks targeting a critical authentication bypass vulnerability.
December 19, 2025Source

Palo Alto Networks Fuels Google Cloud Pact to Guard AI Stack
Landmark Cybersecurity Deal Embeds Prisma AIRS in Google Cloud for AI Protection
December 19, 2025Source

Senate Intel Chair Warns of Open-Source Security Risks
Top Lawmaker Urges White House to Review Foreign Influence in Open-Source Code
December 19, 2025Source or Source or Source or Source or Source

Thailand Conference Launches International Initiative to Fight Online Scams
Similar pledges to fight scam networks were made by members of the Association of Southeast Asian Nations in the months leading up to the Bangkok conference.
December 19, 2025Source

UK Foreign Office Targeted by Hackers
Chinese Hacking Group Reportedly Behind the Hack
December 19, 2025Source or Source or Source or Source or Source

University of Sydney Data Breach Affects 27,000 Individuals
Downloaded from a code library, the information pertains to current and former staff and affiliates, and to alumni and students.
December 19, 2025Source

US Shuts Down Crypto Exchange E-Note, Charges Russian Administrator
The exchange has been allegedly involved in laundering money for ransomware groups and other transnational cybercriminal organizations.
December 19, 2025Source

VPN systems targeted in mass attacks using a simple method that can lead to devastating results
A massive targeted campaign is taking place against sensitive VPN infrastructure.
December 19, 2025Source

Why a product-first approach can put security and reliability at risk
During my time in consulting and working across various companies, I've often noticed a disproportionate focus on product features. These are usually framed as the most important and urgent tasks, while other business priorities — such as technical maintenance, security, updating libraries and frameworks, or even internal tools that save employees time — are repeatedly postponed or marked as "for later."
December 19, 2025Source

Why Smart Glasses in Hospitals Are Not a Bright Idea
Garrett Zickgraf of LBMC on Privacy Risks of Meta Ray Ban Glasses and Similar Gear
December 19, 2025Source or Source or Source or Source or Source

Why You Should Switch These Accounts to Passkeys Before the New Year
Before you promise to jog more or drink less, fix the passwords that could ruin your year.
December 19, 2025Source

Zero Trust Model for Nonprofits: Protecting Mission in the Digital Age
Implement identity-first security to protect donor data, enable volunteers to work safely, and prevent costly cyber incidents.
December 19, 2025Source

Internet — Security Issues — December 15th, 2025

700Credit data breach impacts 5.8 million vehicle dealership customers
700Credit, a U.S.-based financial services and fintech company, will start notifying more than 5.8 million people that their personal information has been exposed in a data breach incident.
December 15, 2025Source or Source

2025's Top Phishing Trends and What They Mean for Your Security Strategy
2025 saw a huge amount of attacker innovation when it comes to phishing attacks, as attackers continue to double down on identity-based techniques. The continual evolution of phishing means it remains one of the most effective methods available to attackers today — in fact, it's arguably more effective than ever.
December 15, 2025Source

AI chatbot to help cybersecurity teams protect infrastructure
Experts led by Professor Carsten Maple at the University of Warwick's Cyber Security Center, have developed a new tool, called ICSThreatQA, to tackle the problem of cybersecurity breaches.
December 15, 2025Source

AI Governance Unlocks Speed, Not Bureaucracy
ServiceNow's Neeraj Jain on Risk Mitigation and Real-Time Data Access for AI Agents
December 15, 2025Source or Source or Source or Source or Source

Apple Patches Two Zero-Days Tied to Mysterious Exploited Chrome Flaw
Apple has released macOS and iOS updates to patch two WebKit zero-days exploited in an "extremely sophisticated" attack.
December 15, 2025Source

Apple, Google forced to issue emergency 0-day patches
Both admit attackers were already exploiting the bugs, with scant detail and hints of spyware-grade abuse
December 15, 2025Source

Astra introduces offensive-grade cloud vulnerability scanner to cut noise and prove risk
Astra Security announced the launch of its Cloud Vulnerability Scanner, a new solution designed to help organizations continuously maintain validated cloud security.
December 15, 2025Source

Atlassian Patches Critical Apache Tika Flaw
Atlassian has released software updates for Bamboo, Bitbucket, Confluence, Crowd, Fisheye/Crucible, and Jira.
December 15, 2025Source

China, Iran are having a field day with React2Shell, Google warns
Who hasn't exploited this max-severity flaw?
December 15, 2025Source

Conduent data breach exposed data of 10.5 million people, including Social Security numbers
The business services company has begun sending notices to impacted individuals.
December 15, 2025Source

Denmark takes a Viking swing at VPN-enabled piracy
Minister insists 'modest' bill is not an assault on privacy-preserving tech
December 15, 2025Source

Fastest VPN 2026: Expert picks of the top 5 VPN speed demons
If you have the need, the need for VPN speed, we've got recommendations about the best choices for you.
December 15, 2025Source

French Interior Ministry confirms cyberattack on email servers
The French Interior Minister confirmed on Friday that the country's Ministry of the Interior was breached in a cyberattack that compromised e-mail servers.
December 15, 2025Source

Google links more Chinese hacking groups to React2Shell attacks
​Over the weekend, ​Google's threat intelligence team linked five more Chinese hacking groups to attacks exploiting the maximum-severity "React2Shell" remote code execution vulnerability.
December 15, 2025Source or Source

Google's 'dark web report' feature will no longer be available starting in February
Google has revealed that its "dark web report" feature will be discontinued starting February 16, 2026. Launched initially about a year and a half ago, this tool aimed to help users monitor their personal information on the dark web.
December 15, 2025Source or Source

Illegal Downloads of 'One Battle After Another' Contain Dangerous Malware
The movie starts streaming at HBO Max on Dec. 19.
December 15, 2025Source

JLR: Payroll data stolen in cybercrime that shook UK economy
Automaker admits raid that crippled its factories in August led to the theft of sensitive info
December 15, 2025Source

Legal protection for ethical hacking under Computer Misuse Act is only the first step
I'm dreaming of a white hat mass
December 15, 2025Source

Microsoft will finally kill obsolete cipher that has wreaked decades of havoc
The weak RC4 for administrative authentication has been a hacker holy grail for decades.
December 15, 2025Source

Nation-State and Cybercrime Exploits Tied to React2Shell
2 More Vulnerabilities Need Patching in React Server Components, Warns Vercel
December 15, 2025Source or Source or Source or Source or Source

New SantaStealer malware steals data from browsers, crypto wallets
A new malware-as-a-service (MaaS) information stealer named SantaStealer is being advertised on Telegram and hacker forums as operating in memory to avoid file-based detection.
December 15, 2025Source

'One Battle After Another' torrents hide ultra-sophisticated malware
Anyone currently trying to download Leonardo DiCaprio 'One Battle After Another" runs the risk of infecting their PC with malware. Security researchers explain what you need to watch out for.
December 15, 2025Source

Ongoing SoundCloud issue blocks VPN users with 403 server error
Users accessing the SoundCloud audio streaming platform through a virtual private network (VPN) connection are denied access to the service and see a 403 'forbidden' error.
December 15, 2025Source

PornHub extorted after hackers steal Premium member activity data
Adult video platform PornHub is being extorted by the ShinyHunters extortion gang after the search and watch history of its Premium members was reportedly stolen in a recent Mixpanel data breach.
December 15, 2025Source

ServiceNow mulls buying Armis to gain full visibility into the IT stack
If the buy happens, the big question is will they integrate the codebase or keep it separate?
December 15, 2025Source or Source

Soverli Raises $2.6 Million for Secure Smartphone OS
The sovereign smartphone OS runs along Android or iOS, allowing users to switch between secure, isolated environments.
December 15, 2025Source

Third DraftKings Hacker Pleads Guilty
Nathan Austad admitted in court to launching a credential stuffing attack against a fantasy sports and betting website.
December 15, 2025Source

Update your Apple devices to fix actively exploited vulnerabilities! (CVE-2025-14174, CVE-2025-43529)
Apple has issued security updates with fixes for two WebKit vulnerabilities (CVE-2025-14174, CVE-2025-43529) that have been exploited as zero-days.
December 15, 2025Source

What Cloudflare's 2025 internet review says about attacks, outages, and traffic shifts
The internet stayed busy, brittle, and under constant pressure in 2025. Cloudflare's annual Radar Year in Review offers a wide view of how traffic moved, where attacks clustered, and what failed when systems were stressed.
December 15, 2025Source

Why ServiceNow Is Eyeing a $7B Buy of Venture-Backed Armis
Deal Would Move ServiceNow's Cybersecurity Ambitions From the Shadow to Spotlight
December 15, 2025Source or Source or Source or Source

Youth Sports, NCAA Insurance Claims Potentially Hacked
National Accident Health Says Breach Exposed Medical Info of 181,000 People
December 15, 2025Source or Source or Source or Source

Internet — Security Issues — December 12th, 2025

Best VPNs for streaming 2025: Open up film and TV libraries worldwide with my favorite VPNs
If you want to access your favorite streaming services from different locations, a VPN might help. Check out my favorites for the fastest speeds and most servers.
December 12, 2025Source

Coupang data breach traced to ex-employee who retained system access
A data breach at Coupang that exposed the information of 33.7 million customers has been tied to a former employee who retained access to internal systems after leaving the company.
December 12, 2025Source

Data breach at credit check giant 700Credit affects at least 5.6 million
At least 5.6 million people had their names, addresses, dates of birth, and Social Security numbers stolen in a data breach at 700Credit, a company that runs credit checks and identity verification services for auto dealerships across the United States.
December 12, 2025Source

EFF and 12 Organizations Urge UK Politicians to Drop Digital ID Scheme Ahead of Parliamentary Petition Debate
The UK Parliament convened earlier this week to debate a petition signed by 2.9 million people calling for an end to the government's plans to roll out a national digital ID. Ahead of that debate, EFF and 12 other civil society organizations wrote to politicians in the country urging MPs to reject the Labour government's newly announced digital ID proposal.
December 12, 2025Source

Elastic Makes On-Demand Training Free to Everyone
Elastic Is Scaling Security Training With Modular Learning, Hands-On Skills-Building
December 12, 2025Source or Source or Source or Source

Europe's Quest for a Domestic Alternative to US Hyperscalers
Europe Tries, Tries Again Amid Transatlantic Uncertainty
December 12, 2025Source or Source or Source or Source

Fieldtex, TriZetto Reveal New Healthcare Breaches
Companies Are Among the Latest HIPAA Business Associates Revealing Recent Hacks
December 12, 2025Source or Source

Financial sector hit hard by breaches but ransomware seeks targets elsewhere
The banking, financial services and insurance (BFSI) sector has been the most targeted in 2025 accounting for 17.8 percent of all incidents (172 incidents out of 966) tracked in Cyble's latest North American Threat Landscape Report.
December 12, 2025Source

Firewalla Orange brings zero trust anywhere
Firewalla announced Firewalla Orange, a portable multi-gigabit cybersecurity firewall and Wi-Fi 7 router designed to reset expectations for how networks should be protected. Firewalla Orange delivers more than 2 gigabits of packet processing performance and brings enterprise grade zero trust security to both stationary and mobile environments in a form factor small enough to fit in a jacket pocket.
December 12, 2025Source

Flaw in photo booth maker's website exposes customers' pictures
A company that makes photo booths is exposing pictures and videos of its customers online thanks to a simple flaw in its website where the files are stored, according to a security researcher.
December 12, 2025Source

Gladinet CentreStack Flaw Exploited to Hack Organizations
Threat actors have hacked at least nine organizations by exploiting the recently patched Gladinet CentreStack flaw.
December 12, 2025Source

Google and Apple roll out emergency security updates after zero-day attacks
Apple and Google have released several software updates to protect against a hacking campaign targeting an unknown number of their users.
December 12, 2025Source

Hackers are pretending to be cops — and tech companies keep falling for it
A coordinated doxing group has repeatedly impersonated police officers to retrieve user data from tech firms
December 12, 2025Source

Half of exposed React servers remain unpatched amid active exploitation
Wiz says React2Shell attacks accelerating, ranging from cryptominers to state-linked crews
December 12, 2025Source

Home Depot exposed access to internal systems for a year, says researcher
A security researcher said Home Depot exposed access to its internal systems for a year after one of its employees published a private access token online, likely by mistake. The researcher found the exposed token and tried to privately alert Home Depot to its security lapse but was ignored for several weeks.
December 12, 2025Source

How self-governing identity infrastructure can streamline policy enforcement [Q&A]
Managing identity is one of the more challenging cybersecurity tasks and can soak up a good deal of time and resources.
December 12, 2025Source

How the Hacking World Has Changed: 'All Tech is Political'
Black Hat's Jeff Moss: 'We're in a Political Situation, Whether You Like It or Not'
December 12, 2025Source or Source or Source or Source or Source

ImmuniWeb enhances AI vulnerability testing and compliance reporting
ImmuniWeb has unveiled a major update to its ImmuniWeb AI Platform, based on ongoing research as well as valuable feedback from customers and partners in over 50 countries.
December 12, 2025Source

ISMG Editors: Abandoned Identities Fuel Shadow Market
Also: Australia's AI Policy Backtrack, Legal Protections for White Hat Hackers
December 12, 2025Source or Source

Microsoft promises more bug payouts, with or without a bounty program
Critical vulnerabilities found in third-party applications eligible for award under 'in scope by default' move
December 12, 2025Source or Source or Source

Microsoft RasMan DoS 0-day gets unofficial patch - and a working exploit
Exploit hasn't been picked up by any malware detection engines, CEO tells The Reg
December 12, 2025Source

MITRE shares 2025's top 25 most dangerous software weaknesses
MITRE has shared this year's top 25 list of the most dangerous software weaknesses behind over 39,000 security vulnerabilities disclosed between June 2024 and June 2025.
December 12, 2025Source or Source

Monitoring the Electric Grid Is Easier Said Than Done
New Rules Tell Power Grid Operators to Log All OT Network Traffic
December 12, 2025Source or Source or Source

New React vulns leak secrets, invite DoS attacks
And the earlier React2Shell patch is vulnerable
December 12, 2025Source

New Windows RasMan zero-day flaw gets free, unofficial patches
Free unofficial patches are available for a new Windows zero-day vulnerability that allows attackers to crash the Remote Access Connection Manager (RasMan) service.
December 12, 2025Source

Notepad++ Patches Updater Flaw After Reports of Traffic Hijacking
Notepad++ found a vulnerability in the way the software updater authenticates update files.
December 12, 2025Source

One in 25 digital identity checks flagged as fraudulent
Regulatory tightening across the EU and UK, including the EU's new anti-money laundering package and platform-economy rules, as well as emerging age-assurance requirements around online safety, have pushed organizations to formalize identity checks at scale.
December 12, 2025Source

Processing 630 Million More Pwned Passwords, Courtesy of the FBI
The sheer scope of cybercrime can be hard to fathom, even when you live and breathe it every day. It's not just the volume of data, but also the extent to which it replicates across criminal actors seeking to abuse it for their own gain, and to our detriment.
December 12, 2025Source

Recent GeoServer Vulnerability Exploited in Attacks
Because user input is not sufficiently sanitized, attackers could exploit the flaw to define external entities within an XML request.
December 12, 2025Source

Saviynt Gets $700M at $3B Valuation to Fuel Identity Defense
KKR-Led Series B Investment Propels AI Agent, Nonhuman Identity Management Push
December 12, 2025Source or Source

Shadow spreadsheets: The security gap your tools can't see
Your IT team just wrapped an exhaustive security test. The network is locked down. Your organization's tech stack has MFA enforced across the board. Employees just finished anti-phishing training.
December 12, 2025Source

Swissbit adds HID Seos to iShield Key 2
Swissbit is expanding its portfolio of multi-application security keys with the launch of the iShield Key 2, introducing a new variant featuring HID Seos, one of the most widely used credential technologies for physical access control. Following the addition of MIFARE DESFire EV3, Swissbit now supports another major global standard, offering customers a single token that unifies phishing-resistant digital authentication and secure physical access.
December 12, 2025Source

The best security keys you can buy: These physical devices secure the keys to your online kingdom
Security keys are the ultimate physical security measure for protecting your online accounts. We tested and ranked the best security keys on the market today.
December 12, 2025Source

Trump Targets State AI Regulations in Federal Override Push
Trump Tees Up Federal Lawsuits Against State Rules in Executive Order
December 12, 2025Source or Source or Source

U.S. Government Websites Are Hosting PDFs Promoting Porn and Scams
Not exactly a public service.
December 12, 2025Source

Uncle Sam sues ex-Accenture manager over Army cloud security claims
Justice Department alleges federal auditors were misled over compliance with FedRAMP and DoD requirements
December 12, 2025Source

UK ICO Fines LastPass Over 2022 Data Breach
Password Manager Must Pay 1.2M Pounds
December 12, 2025Source or Source

US Military Cyber Budget Jumps to $15B in 2026 NDAA
Defense Bill Expands Cyber Authorities, Tech Adoption and Talent Pipeline
December 12, 2025Source or Source or Source

US Warns of Ongoing Pro-Russia Critical Infrastructure Hacks
Ukrainian National Twice Indicted in Los Angeles for Pro-Russian Hacking
December 12, 2025Source or Source or Source or Source or Source

User privacy in digital databases: New metric allows for more accurate assessment
Universidad Carlos III de Madrid (UC3M), in collaboration with the National Cybersecurity Institute (INCIBE), an entity under the Ministry for Digital Transformation and Public Administration through the Secretariat of State for Telecommunications and Digital Infrastructure, have promoted the development of a new probabilistic metric designed to more accurately measure the level of privacy and protection that users have in different databases.
December 12, 2025Source

Internet — Security Issues — December 11th, 2025

Beware Of DroidLock Malware That Hijacks Android Devices To Extort Ransom Money
The holidays may be upon us, but that isn't slowing down threat actors. Zimperium's zlabs research team has discovered a new piece of malware targeting Android users, dubbed DroidLock, that aims to completely hijack a device and enable the theft of login credentials or destruction of a victim's data.
December 11, 2025Source

Breach Roundup: DPRK-Linked EtherRAT Targets React2Shell
Also, Dutch Defend the Nexperia Takeover, Hikvision Challenges FCC, Qilin Strikes
December 11, 2025Source or Source or Source or Source or Source

Cryptohack Roundup: Android Chips Hot Wallet Attack
Also: 700M Euro Fraud Busted, 2 Arrested in Crypto-Linked Killing Case
December 11, 2025Source or Source or Source or Source

Georgia Hospital Settles Lawsuit in Alleged Embargo Hack
Class Members Can Claim Up to $5K Each for Documented Losses Tied to Breach
December 11, 2025Source or Source

Hackers exploit Gladinet CentreStack cryptographic flaw in RCE attacks
Hackers are exploiting a new, undocumented vulnerability in the implementation of the cryptographic algorithm present in Gladinet's CentreStack and Triofox products for secure remote file access and sharing.
December 11, 2025Source

How much for a bot army? Index tracks prices across hundreds of online platforms, from TikTok to Amazon
A new site that tracks the daily fluctuating costs behind building a bot army on over 500 social media and commercial platforms—from TikTok to Amazon and Spotify—in every nation on the planet is launched today by the University of Cambridge.
December 11, 2025Source

How to Talk to the Board About Agentic AI
Ex-Mastercard Exec JoAnn Stonier on Redefining Governance, ROI and Decision-Making
December 11, 2025Source or Source or Source

Best malware removal software 2025: Wipe malware from your PC and smartphone with our top picks
If you need to eradicate malware from your device, check out our favorite, tried-and-tested solutions that can easily deal with spyware, Trojans, and more.
December 11, 2025Source

New gamified tool helps defend satellite supply chains from cyber threats
As the world's reliance on satellites intensifies, so too does the risk of sophisticated cyberattacks targeting space-based systems and critical infrastructure, with almost 240 cyber hacks targeting the space sector in the past two years.
December 11, 2025Source

Notepad++ fixes flaw that let attackers push malicious update files
Notepad++ version 8.8.9 was released to fix a security weakness in its WinGUp update tool after researchers and users reported incidents in which the updater retrieved malicious executables instead of legitimate update packages.
December 11, 2025Source

UK ICO Fines LastPass Over 2022 Data Breach
Password Manager Must Pay 1.2M Pounds
December 11, 2025Source or Source or Source

Malicious VSCode Marketplace extensions hid trojan in fake PNG file
A stealthy campaign with 19 extensions on the VSCode Marketplace has been active since February, targeting developers with malware hidden inside dependency folders.
December 11, 2025Source

OpenAI Braces for AI Models That Could Breach Defenses
AI Firm Says New Models May Be 'High Risk' as Dual-Use Capabilities Grow
December 11, 2025Source or Source or Source or Source or Source

Russian hackers debut simple ransomware service, but store keys in plain text
Operators accidentally left a way for you to get your data back
December 11, 2025Source

Russian Ring Using Ex-Immigrant Data to Fuel Fake ID Sales
Telegram-Based Market Is Exploiting Gaps in US Tracking of Departed Visa Holders
December 11, 2025Source or Source or Source or Source or Source

Saviynt Gets $700M at $3B Valuation to Fuel Identity Defense
KKR-Led Series B Investment Propels AI Agent, Nonhuman Identity Management Push
December 11, 2025Source or Source or Source

Should you stop logging in through Google and Facebook? Consider these SSO risks versus benefits
Relying on consumer SSO creates significant challenges, and passkeys may offer a solution.
December 11, 2025Source

The 12 most common internet scams to be aware of in 2025
Be careful out there, folks.
December 11, 2025Source

Unpatched Gogs Zero-Day Exploited for Months
The exploited flaw allows attackers to overwrite files outside the repository, leading to remote code execution.
December 11, 2025Source

Why Isn't Online Age Verification Just Like Showing Your ID In Person?
This blog also appears in our Age Verification Resource Hub: our one-stop shop for users seeking to understand what age-gating laws actually do, what's at stake, how to protect yourself, and why EFF opposes all forms of age verification mandates. Head to EFF.org/Age to explore our resources and join us in the fight for a free, open, private, and yes—safe—internet.
December 11, 2025Source

Wide Range of Malware Delivered in React2Shell Attacks
Security firms have seen cryptocurrency miners, Linux backdoors, botnet malware, and various post-exploitation implants in React2Shell attacks.
December 11, 2025Source

Your Stolen WinRAR Copy Is Being Actively Exploited In The Wild, Patch ASAP
Those of you using WinRAR, Windows 10, or both should be on high alert. Two new vulnerabilities have been documented in the wild and are being actively exploited. As of this week, The National Coordinator for Critical Infrastructure Security and Resilience (CISA) has documented CVE-2025-6218 and CVE-2025-6222, two currently-active attack vectors. Alongside its public disclosure of the issues, CISA has also ordered all United States federal agencies to address these vulnerabilities by December 30th.
December 11, 2025Source

Zero Day: 700 Instances of Self-Hosted Git Service Exploited
Unpatched Flaw in Open-Source Gogs Service Facilitates Remote Code Execution
December 11, 2025Source or Source or Source or Source or Source

Internet — Security Issues — December 5th, 2025

23andMe to Get $16.5M in Unused Cyber Insurance
Bankrupt Firm Plans to Use the Settlement Money to Pay Off Cyber Claims
December 5, 2025Source or Source or Source or Source or Source

A Practical Guide to Continuous Attack Surface Visibility
Most organizations are familiar with the traditional approach to external visibility: rely on passive internet-scan data, subscription-based datasets, or occasional point-in-time reconnaissance to understand what they have facing the public internet. These sources are typically delivered as static snapshots of lists of assets, open ports, or exposures observed during a periodic scan cycle.
December 5, 2025Source

AI Is Getting Better at Hacking Crypto's Smart Contracts
And the arguments have already started.
December 5, 2025Source

Aisuru Botnet Powers Record DDoS Attack Peaking at 29 Tbps
Cloudflare recently mitigated a new record-breaking Aisuru attack that peaked at 14.1 Bpps.
December 5, 2025Source

Android Malware Albiriox: Dangerous New Threat That Can Empty Your Bank Account
Researchers have uncovered a new Android RAT malware called Albiriox that can hijack banking and crypto apps to steal money directly from users. It spreads through malicious APKs shared via messaging apps, but avoiding sideloaded apps and sticking to trusted sources can keep users protected.
December 5, 2025Source or Source

Apple issues huge state-backed hacking warning to users worldwide
Apple, which pioneered cyber threat notifications in 2021 to alert users of potential state-sponsored spyware attacks, and follower Google, which eventually followed suit with its own similar program in 2023, have sent a new round of such warnings to users around the world this week. The companies announced their latest effort to insulate customers against surveillance threats.
December 5, 2025Source

Asus supplier hit by ransomware attack as gang flaunts alleged 1 TB haul
Laptop maker says a vendor breach exposed some phone camera code, but not its own systems
December 5, 2025Source

Beijing-linked hackers are hammering max-severity React bug, AWS warns
State-backed attackers started poking flaw as soon as it dropped -- anyone still unpatched is on borrowed time
December 5, 2025Source

Bots, bias, and bunk: How can you tell what's real on the net?
You can improve the odds by combining skepticism, verification habits, and a few technical checks
December 5, 2025Source

Check Point introduces Quantum Firewall R82.10 with new AI and zero trust security capabilities
Check Point announced its new Check Point Quantum Firewall Software, R82.10, introducing 20 new capabilities designed to help enterprises safely adopt AI, protect distributed environments, and simplify zero trust across hybrid networks.
December 5, 2025Source

Chinese Nation-State Groups Tied to 'React2Shell' Targeting
Validated, Weaponized Exploit Code for Widely Used Web Framework Bug Now Public
December 5, 2025Source or Source or Source or Source

Critical React2Shell flaw actively exploited in China-linked attacks
Multiple China-linked threat actors began exploiting the React2Shell vulnerability (CVE-2025-55182) affecting React and Next.js just hours after the max-severity issue was disclosed.
December 5, 2025Source

CrowdStrike Identifies New China-Nexus Espionage Actor
CrowdStrike's investigation shows that WARP PANDA initially infiltrated some victim networks as early as late 2023, later expanding operations.
December 5, 2025Source

ExpressVPN versus NordVPN: Clash of the heavyweight titans
In the red corner we have ExpressVPN and in the blue corner we have NordVPN.
December 5, 2025Source

FBI warns of virtual kidnapping scams using altered social media photos
The FBI warns of criminals altering images shared on social media and using them as fake proof of life photos in virtual kidnapping ransom scams.
December 5, 2025Source

Don't Be Overwhelmed. Changing Your IP Address Is Easy With These Methods, Like Using a VPN
You can use various techniques, such as a VPN or proxy server, to quickly and easily change your IP address.
December 5, 2025Source

Helmet Security Emerges From Stealth Mode With $9 Million in Funding
Helmet Security has built an end-to-end platform that secures the infrastructure for agentic AI communication.
December 5, 2025Source

Imper.ai Emerges From Stealth Mode With $28 Million in Funding
The cybersecurity startup detects impersonation risk in real-time, across video, phone, and chat communication.
December 5, 2025Source

In Other News: X Fined €120 Million, Array Flaw Exploited, New Iranian Backdoor
Other noteworthy stories that might have slipped under the radar: Akamai patches HTTP smuggling vulnerability, Claude Skills used to execute ransomware, PickleScan flaws.
December 5, 2025Source

ISMG Editors: Inside the Rapid Evolution of Ransomware
Also: More HIPAA Challenges, the Growing AI Gap for Small- to Medium-Sized Firms
December 5, 2025Source or Source

Lumia Security Raises $18 Million for AI Security and Governance
The startup will invest in expanding its engineering and research teams, deepening product integrations, and scaling go-to-market efforts.
December 5, 2025Source

No Vote, No Leader: CISA Faces 2026 Without a Director
US Cyber Defense Agency Faces Procedural Delays Blocking Director Confirmation
December 5, 2025Source or Source or Source or Source or Source

Paranoia rules -- how automation can enable better detection and response [Q&A]
Security analysts want to capture more events in order to spot threats earlier which requires more detection rules. But doing so risks driving up alert volumes leading to issues with alert fatigue.
December 5, 2025Source

Pharma firm Inotiv discloses data breach after ransomware attack
American pharmaceutical firm Inotiv is notifying thousands of people that their personal information was stolen in an August 2025 ransomware attack.
December 5, 2025Source

React Flaw Mitigation Leads to Cloudflare Outage
Outage Briefly Took Down Zoom, LinkedIn and Other Websites
December 5, 2025Source or Source or Source or Source

Rethinking the CIO-CISO Dynamic in the Age of AI
Enterprises Are Reimagining Org Roles, Risk Management and Skillsets in the AI Race
December 5, 2025Source or Source or Source or Source or Source

Threats improve to slip past firewalls and filters
The latest Cyber Threat Intelligence Report from Hoxhunt looks at the quantity and quality of threats that bypass firewalls and email filters.
December 5, 2025Source or Source

UK pushes ahead with facial recognition expansion despite civil liberties backlash
Plan would create statutory powers for police use of biometrics, prompting warnings of mass surveillance
December 5, 2025Source

US Organizations Warned of Chinese Malware Used for Long-Term Persistence
Warp Panda has been using the BrickStorm, Junction, and GuestConduit malware in attacks against US organizations.
December 5, 2025Source

Internet — Security Issues — December 3rd, 2025

A leading kids safety bill has been poison pilled, supporters say
Advocates warn that overriding state laws is worse than doing nothing at all.
December 3, 2025Source

Aisuru botnet behind new record-breaking 29.7 Tbps DDoS attack
In just three months, the massive Aisuru botnet launched more than 1,300 distributed denial-of-service attacks, one of them setting a new record with a peak at 29.7 terabits per second.
December 3, 2025Source

Arizona Attorney General Sues Chinese Online Retailer Temu Over Data Theft Claims
Arizona is the latest state to sue Temu and its parent company PDD Holdings over allegations that the Chinese online retailer is stealing customers' data.
December 3, 2025Source

ASUS Listed by Everest Ransomware Group, 1 TB Data Stolen
The Everest ransomware group claims it has breached ASUS and stolen more than 1 TB of internal data, including what it describes as "camera source code." The allegation was posted on the group's dark-web leak site on December 2. Everest says the data includes internal documents, engineering material, and other confidential files, and is demanding that ASUS contact them via the encrypted platform Qtox. No ransom amount has been disclosed. In this context, "camera source code" likely refers to firmware or low-level software used in ASUS devices with integrated cameras (smartphones, laptops) such as drivers, applications related to image processing, or internal developer tools.
December 3, 2025Source

Australia Abandons Proposed Mandatory AI Rules in New Plan
Government Opts for Voluntary Frameworks Over Enforceable Safeguards
December 3, 2025Source or Source or Source or Source or Source

AVG Internet Security for Mac review: Solid protection, but the free version could be enough
We test AVG Internet Security for Mac and find it easy to use and effective at catching viral, phishing, and malware activity on a Mac.
December 3, 2025Source

AWS: Shifting From Cloud-Based Apps to an Agentic AI Cloud
CEO Matt Garman Shares Plans for Developing Billions of Autonomous Agents
December 3, 2025Source or Source or Source or Source or Source

Bitwarden Access Intelligence helps enterprises take action on risky credentials
Bitwarden announced Bitwarden Access Intelligence for Enterprise plans. Access Intelligence provides visibility into weak, reused, or exposed credentials across critical applications, with guided remediation workflows for consistent credential updates at scale.
December 3, 2025Source

BlackFog releases ADX Vision to block data loss from unapproved AI use
BlackFog announced the availability of its newest solution, ADX Vision. Designed to secure every endpoint and every LLM interaction, ADX Vision gives organizations the visibility and control needed to manage AI securely. Operating directly on the device, it detects shadow AI activity, prevents unauthorized data movement in real time, and enforces governance policies automatically without disrupting productivity.
December 3, 2025Source

China Skirts US Attempts to Restrict AI Exports
China Still Relies on US Technology, Experts tell Senate
December 3, 2025Source or Source or Source or Source or Source

CISA Warns of Severe Flaws in Nuclear Med Tracking Software
Mirion Medical Says Bugs Are Fixed in New Release of BioDose/NMIS Software
December 3, 2025Source or Source or Source or Source or Source

Codex Bug Let Repo Files Execute Hidden Commands
Attackers Could Hijack Developer Machines via Tampered Config Files
December 3, 2025Source or Source or Source or Source

Critical King Addons Vulnerability Exploited to Hack WordPress Sites
A critical-severity vulnerability in the King Addons for Elementor plugin for WordPress has been exploited to take over websites.
December 3, 2025Source

Deep dive into DragonForce ransomware and its Scattered Spider connection
Security researchers have conducted an in-depth analysis of DragonForce ransomware that initially emerged in 2023 and has since evolved into what it calls a "ransomware cartel."
December 3, 2025Source

FBI Flags Rising Holiday Scams Spreading Across Email, Social, and Web
The FBI warns holiday scammers are hitting email, social media, fake sites, delivery alerts, and calls, with new data showing losses and complaints rising.
December 3, 2025Source

Fintech firm Marquis alerts dozens of US banks and credit unions of a data breach after ransomware attack
Fintech company Marquis is notifying dozens of U.S. banks and credit unions that they had customer data stolen in a cyberattack earlier this year.
December 3, 2025Source

How to use your security camera's 2-way audio (without being weird about it)
Two-way audio is more useful than most people realize. Here's how to use it without creating awkward moments or safety risks.
December 3, 2025Source

HTB AI Range benchmarks the safety and limits of autonomous security agents
Hack The Box (HTB) unveiled HTB AI Range, a controlled AI cyber range built to test and benchmark the safety, limits, and capabilities of autonomous AI security agents. HTB AI Range replicates live, high stakes cyber battlegrounds tailored for enterprise readiness, where AI agents and human operators are evaluated side by side. Every model and every human is tested, refined, and retested until mastery is measurable.
December 3, 2025Source

Implementing Zero Trust on Google Cloud
This is a guide to implementing Zero Trust on Google Cloud using IAM, access controls, Deny Policies, Principal Access Boundaries, and policy monitoring.
December 3, 2025Source

Is your PC secretly trapped in a botnet? This free tool checks instantly
Have hackers secretly taken over your computer, router, or another device for a botnet? This free online scanner can tell you right away.
December 3, 2025Source

Kaiser Permanente to Pay Up to $47.5M in Web Tracker Lawsuit
Class Action Litigation Alleges Web Trackers Shared Patient Data With Tech Firms
December 3, 2025Source or Source or Source or Source or Source

Massive gambling network doubles as hidden C2 and anonymity infrastructure, researchers say
A sprawling network that's seemingly maintained to serve (illegal) online gambling opportunities and deliver malware to Indonesian citizens is likely also being used to provide threat actors command and control (C2) and anonymity services.
December 3, 2025Source

Microsoft Silently Mitigated Exploited LNK Vulnerability
Windows now displays in the properties tab of LNK files critical information that could reveal malicious code.
December 3, 2025Source

Mobile security gaps revealed by BYOD and hybrid work
Organizations face massive mobile security vulnerabilities as they increasingly embrace BYOD and hybrid strategies. At the same time traditional mobile security tools are failing to mitigate these risks while also compromising employee privacy.
December 3, 2025Source

New Joint Guide Advances Secure Integration of Artificial Intelligence in Operational Technology
Guidance empowers organizations to mitigate risks and achieve a balanced integration of AI in OT systems for OT environments that control vital public services
December 3, 2025Source

Niobium Raises $23 Million for FHE Hardware Acceleration
The startup will invest the funds in accelerating development of its second-generation fully homomorphic encryption (FHE) platforms.
December 3, 2025Source

Penn and Phoenix Universities Disclose Data Breach After Oracle Hack
The University of Pennsylvania and the University of Phoenix confirm that they are victims of the recent Oracle EBS hacking campaign.
December 3, 2025Source

re:Invent 2025: AWS and Security Vendors Unveil New Products and Capabilities
AWS and cybersecurity vendors have made several announcements at the cloud giant's re:Invent 2025 event.
December 3, 2025Source

Salt Security identifies external misuse and abuse of MCP servers by AI agents
Salt Security announced it is extending its API behavioral threat protection to detect and block malicious intent targeting Model Context Protocol (MCP) servers deployed within the AWS ecosystem.
December 3, 2025Source

Scaling AI From Copilots to Agentic Workflows
Kyndryl CIO Kim Basile on Human-Centered Adoption, Role-Based Training, Governance
December 3, 2025Source or Source or Source or Source or Source

ServiceNow to Acquire Identity Security Firm Veza in Reported $1 Billion Deal
Veza Security was recently valued at more than $800 million after raising $108 million in Series D funding.
December 3, 2025Source

ShadyPanda Malware Patiently Spread Across Edge And Chrome Web Store For Years Before Activating
ShadyPanda is a nasty project that has been running invisibly for years only to attempt to unleash devastation this year. The group behind it has been publishing useful apps to both the Chrome Web Store and the Edge marketplace, some apps gaining Featured and Verified status on those platforms. The apps were handy tools which were downloaded millions of times and got many great reviews on both stores. The group behind ShadyPanda was even nice enough to keep those apps updated as new versions of the browsers came out and bugs were discovered.
December 3, 2025Source

Thousands of Computer Viruses Are Created Every Day. Here's How to Protect Your Computer From Cyberattacks
Use these strategies to keep your computer safe from viruses and other threats.
December 3, 2025Source

US Telecoms Reject Regulation as Answer to Chinese Hacking
Industry Wants to Stick to Voluntary Measures
December 3, 2025Source or Source or Source

University of Phoenix discloses data breach after Oracle hack
The University of Phoenix (UoPX) has joined a growing list of U.S. universities breached in a Clop data theft campaign targeting vulnerable Oracle E-Business Suite instances in August 2025.
December 3, 2025Source

Utilities Warn US Grid at Risk as Federal Cyber Funds Dry Up
Federal Cuts Threaten Grid Security as Nation-State Hackings Escalate, Analysts Say
December 3, 2025Source or Source or Source or Source or Source

Wasabi Covert Copy strengthens cloud storage security
Wasabi has expanded its cyber resilient cloud storage capabilities with Covert Copy, a patent pending, ransomware-resistant storage solution that allows users to create a locked, hidden copy of storage buckets to ensure critical data remains untouchable, even in the event of a cyberattack.
December 3, 2025Source

WASM in the Enterprise: Secure, Portable, and Ready for Business
Andrea Peruffo explains the power of server-side WebAssembly, especially on the JVM. Using Red Hat's Chicory runtime, he details how to achieve secure sandboxing, fault isolation, and cross-architecture portability without foreign function interfaces. Learn through case studies how WebAssembly solves real-world enterprise problems, including achieving 10x - 40x speedups with AOT compilation.
December 3, 2025Source

Watch your favorite shows from home with Norton VPN
Watch what you want, when you want, where you want, with Norton VPN.
December 3, 2025Source

When ERP Systems Become the Attack Surface
Skills Needed: Enterprise Architecture, Configuration and Vulnerability Management
December 3, 2025Source

Yes, the government can track your location, but usually not by spying on you directly
If you use a mobile phone with location services turned on, it is likely that data about where you live and work, where you shop for groceries, where you go to church and see your doctor, and where you traveled to over the holidays is up for sale. And U.S. Immigration and Customs Enforcement is one of the customers.
December 3, 2025Source

Internet — Security Issues — November 30th, 2025

5 Simple Habits That Instantly Make You Safer Online
The digital ecosystem is a place filled to the brim with opportunities and entertainment. Learning, gaming, and even entire jobs live online today. Modern internet users can work, study, and interact with friends in absentia with the help of a basic internet connection and a device they trust. That trust part is where the modern internet gets a little murky, though. For one thing, cookies and other seemingly harmless little bits of digital interaction come together to create a surprisingly comprehensive digital profile of every user. Bring in data brokers, and it's actually quite easy to find that your personal data has been spread out across the internet. Removing it isn't all that difficult, but it does take vigilance, and often the help of a scrubbing service.
November 30, 2025Source

2025's Most Common Passwords Are Hilariously Easy To Guess
It would appear that Gen Z is no more tech-savvy than Baby Boomers when it comes to cybersecurity, according to new research released by the password management program Nordpass. Working with a related cybersecurity site Nordstellar, NordPass pulled data from public breaches and dark web repositories between September 2024 and September 2025. The methodology isn't entirely clear (NordPass doesn't specify if this is just their user base or a broader sample.), but the findings paint an interesting picture: When it came to setting passwords, 18-year-olds and 80-year-olds weren't so different.
November 30, 2025Source

Best VPN for Chromebooks for 2025: Keep your Browsing Habits and Streaming Activity Private
The best Chromebook VPNs add an extra layer of privacy while browsing the web or unblocking streaming content.
November 30, 2025Source

Best VPN for iPhone 2025: Boost Your Privacy on the Go
Enhance your privacy while surfing the web, stream foreign Netflix libraries, unblock regional sports and avoid mobile traffic shaping with the best iPhone VPNs.
November 30, 2025Source

Best VPN for Mac for 2025: Improve Your Privacy for Web Browsing, Streaming and Gaming
Keep your web browsing activity hidden, mask your torrenting activity and unblock geo-protected streaming content with the best VPNs for Mac.
November 30, 2025Source

Swiss government says give M365, and all SaaS, a miss as it lacks end-to-end encryption
PLUS: Exercise app tells spies to stop mapping; GitLab scan reveals 17,000 secrets; Leak exposes Iran's Charming Kitten; And more!
November 30, 2025Source

Week in review: Fake "Windows Update" fuels malware, Salesforce details Gainsight breach
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
November 30, 2025Source

Internet — Security Issues — November 29th, 2025

Best VPN for Chrome 2025: Keep Your Browsing Traffic Private
The best VPNs for Google Chrome protect your privacy while browsing the web and allow you to bypass geographical restrictions with ease.
November 29, 2025Source

Definitely Use a Password Manager, but Know It Can't Protect You From These 5 Things
A password manager is an essential tool for your online security, but it shouldn't be where your cybersecurity awareness ends.
November 29, 2025Source

I'm a Digital Nomad and These Are the 6 VPN Rules I Swear By
Two cybersecurity professionals shared their top six tips for frequent travelers or digital nomads, like me, to safely protect client data and personal privacy while working as a digital nomad.
November 29, 2025Source

Japanese beer giant Asahi says data breach hit 1.5 million people
Asahi Group Holdings, Japan's largest beer producer, has finished the investigation into the September cyberattack and found that the incident has impacted up to 1.9 million individuals.
November 29, 2025Source

Internet — Security Issues — November 26th, 2025

A CISO's Perspective on Scaling GenAI Securely
Going Beyond the Copilot Pilot - A CISO's Perspective
November 23, 2025Source or Source or Source or Source or Source

Account Takeover Fraud Caused $262 Million in Losses in 2025: FBI
Cybercriminals impersonating financial institutions have targeted individuals, businesses, and organizations of different sizes.
November 23, 2025Source

Akira's SonicWall Hacks Are Taking Down Large Enterprises
Businesses That Inherit SSL VPNs Through M&A Activity Falling Victim, Warn Experts
November 23, 2025Source or Source or Source or Source

ASUS warns of new critical auth bypass flaw in AiCloud routers
ASUS has released new firmware to patch nine security vulnerabilities, including a critical authentication bypass flaw in routers with AiCloud enabled.
November 23, 2025Source

Backgrounder: Malicious cyber activity targeting Canadian critical infrastructure
Canada's critical infrastructure (CI) -- including energy, water, food, transportation, and health systems -- underpins the safety and well-being of Canadians. Disruptions caused by malicious cyber activity can lead to service outages, economic losses, and risks to public health and safety.
November 23, 2025Source

Bug in jury systems used by several US states exposed sensitive personal data
Several public websites designed to allow courts across the United States and Canada to manage the personal information of potential jurors had a simple security flaw that easily exposed their sensitive data, including names and home addresses, TechCrunch has exclusively learned.
November 23, 2025Source

Clover Security Raises $36 Million to Secure Software by Design
The cybersecurity startup embeds AI agents into widely used tools to identify design flaws and eliminate them early.
November 23, 2025Source

CodeRED emergency alert system CodeDEAD after INC ransomware attack
Regions across US affected, and one tore up its contract for the product
November 23, 2025Source

Coding assistance websites exposed credentials for banks, government, and more
Two websites intended to help software developers format and structure their code have exposed thousands of login credentials, authentication keys, and other highly sensitive information.
November 23, 2025Source

Comcast to pay $1.5M fine for vendor breach affecting 270K customers
Comcast will pay a $1.5 million fine to settle a Federal Communications Commission investigation into a February 2024 vendor data breach that exposed the personal information of nearly 275,000 customers.
November 23, 2025Source

Congress Moves to Defend Undersea Cables From China, Russia
Bipartisan Bill Seeks Sanctions and Industry Coordination to Defend Undersea Cables
November 23, 2025Source or Source or Source or Source or Source

Cybersecurity Is Now a Core Business Discipline
Boardroom conversations about cyber can no longer be siloed apart from strategy, operations, or geopolitics.
November 23, 2025Source

Dartmouth College Confirms Data Theft in Oracle Hack
Dartmouth College has disclosed a data breach after cybercriminals leaked over 226 Gb of files stolen from the university.
November 23, 2025Source

Data Leaks: Why Are We So Stupid About Free Online Services?
JSON Code 'Beautifiers' Expose Sensitive Data From Banks, Government Agencies
November 23, 2025Source or Source or Source or Source

Do You Know the Risks of Letting Your Browser Remember Your Credit Card?
Your browser wants to help you shop, and cybercriminals hope you let it.
November 23, 2025Source

Even 'outdated' cybersecurity methods can be useful
Barrett Loveless, infrastructure director of PET Imaging Institute, says it processes 4,200 pages of protected documents daily and has had zero breaches in a decade.
November 23, 2025Source

Even 'Prove You're Not a Robot' Checks Aren't Safe From Scammers
Is this security check actually verifying that you're a human, or is it installing malware?
November 23, 2025Source

Gainsight breach: Salesforce details attack window, issues investigation guidance
The number of Salesforce customers affected by the recent compromise of Gainsight-published applications is yet to be publicly confirmed, but Salesforce released indicators of compromise (IoCs) and simultaneously shed some light on when the attack likely started.
November 23, 2025Source or Source

Google Warns Users: Don't Fall For This Dangerous VPN Scam
The use of Virtual Private Networks (VPNs) has been increasing, with a recent CNET survey finding that 43% of American adults are now using them. There are several reasons why so many people are now installing these apps. Accessing content banned in certain countries and saving money on streaming service costs are two commonly cited reasons for their popularity. However, the primary reason for using one is privacy and security, with 52% of Americans saying that protecting their IP address was the main factor.
November 23, 2025Source

How Uber is reducing manual logins by 4 million per year with the Restore Credentials API
Uber is the world's largest ridesharing company, getting millions of people from here to there while also supporting food delivery, healthcare transportation, and freight logistics. Simplicity of access is crucial to its success; when users switch to a new device, they expect a seamless transition without needing to log back into the Uber app or go through SMS-based one-time password authentication. This frequent device turnover presents a challenge, as well as an opportunity for strong user retention.
November 23, 2025Source

Info Blocking Enforcement: What HHS Will Likely Focus On
Attorney Nan Halstead on Critical Compliance Considerations
November 23, 2025Source or Source or Source or Source or Source

KEV catalog missing 88 percent of exploits
New research from Miggo Security suggests that CISA's Known Exploited Vulnerabilities (KEV) catalog now reflects only a small slice of real-world exploit risk in open source, and it raises questions about how the industry should be using KEV going forward.
November 23, 2025Source

Microsoft to secure Entra ID sign-ins from script injection attacks
Microsoft plans to enhance the security of the Entra ID authentication system against external script injection attacks starting in mid-to-late October 2026.
November 23, 2025Source

Mobile industry warns patchwork cyber regs are driving up costs
GSMA says fragmented, poorly designed laws add burdens without making networks any safer
November 23, 2025Source

Multiple London Councils Responding to Cyberattack
Whether Hackers Stole Data Not Yet Known
November 23, 2025Source or Source or Source or Source

My Mathy Friends, Cybersecurity Needs You
Securing the World for the Age of Quantum-Resistant Cryptography
November 23, 2025Source or Source or Source or Source

This new Android malware is scary -- it steals banking info and records your screen in secret
A newly discovered Trojan called Sturnus can capture your decrypted messages, fake your banking login screens, and more.
November 23, 2025Source or Source

New CISA alert: encryption isn't what's failing on Signal and WhatsApp
State-backed hackers aren't cracking Signal. They're cracking your phone.
November 23, 2025Source

New "HashJack" attack can hijack AI browsers and assistants
Security researchers at Cato Networks have uncovered a new indirect prompt injection technique that can force popular AI browsers and assistants to deliver phishing links or disinformation (e.g., incorrect medicine dosage guidance or investment advice), send sensitive data to the attacker, or push users to perform risky actions.
November 23, 2025Source

New ShadowV2 botnet malware used AWS outage as a test opportunity
A new Mirai-based botnet malware named 'ShadowV2' has been observed targeting IoT devices from D-Link, TP-Link, and other vendors with exploits for known vulnerabilities.
November 23, 2025Source

Popular Forge library gets fix for signature verification bypass flaw
A vulnerability in the 'node-forge' package, a popular JavaScript cryptography library, could be exploited to bypass signature verifications by crafting data that appears valid.
November 23, 2025Source

Ransomware Attack Disrupts Local Emergency Alert System Across US
The OnSolve CodeRED platform has been targeted by the Inc Ransom ransomware group, resulting in disruptions and a data breach.
November 23, 2025Source

Rare APT Collaboration Emerges Between Russia and North Korea
Researchers say Russia's Gamaredon and North Korea's Lazarus may be sharing infrastructure — a rare APT collaboration.
November 23, 2025Source

Spyware Abuse of Signal and WhatsApp Targeting US Officials
Cyber Advisory Cites Abuse of Linked Devices to Monitor Sensitive Communications
November 23, 2025Source or Source or Source or Source or Source

The invisible attack that could be stealing your payment details while you shop
Experts from NordVPN are warning about a rise in 'invisible' attacks that can steal payment details on legitimate eCommerce sites.
November 23, 2025Source

These routers are vulnerable to hackers: Update urgently now!
A security vulnerability in Asus router models can be exploited for targeted attacks. A firmware update provides a remedy, so users should install it urgently.
November 23, 2025Source

Thousands of Secrets Leaked on Code Formatting Platforms
JSONFormatter and CodeBeautify users exposed credentials, authentication keys, configuration information, private keys, and other secrets.
November 23, 2025Source

UK Parliamentary Committee Recommends Software Liability
Security by Design or Be Fined, Committee Suggests
November 23, 2025Source or Source or Source or Source or Source

Unifying Cloud Strategy to Unlock AI Potential
Talcott Financial Group's Dalavi on Oracle to Azure Migration and AI Innovation
November 23, 2025Source or Source or Source or Source

Why Cyber Defenses Continue to Lag at Rural Hospitals
Jackie Mattingly of Clearwater on Making Cybersecurity a Higher Priority
November 23, 2025Source or Source or Source or Source

Internet — Security Issues — November 23rd, 2025

Best Free VPN for 2025: Privacy Without Paying
While free VPNs can pose risks, using one of the best options can protect your privacy without costing anything.
November 23, 2025Source

Best password managers: 6 trustworthy options
If you're still using your dog's name to log in to your bank, you're courting disaster.
November 23, 2025Source

Homeland Security Is Reportedly Probing Bitcoin Mining Giant Bitmain for National Security Reasons
And there's an additional Trump family connection.
November 23, 2025Source

Iberia discloses customer data leak after vendor security breach
Spanish flag carrier Iberia has begun notifying customers of a data security incident stemming from a compromise at one of its suppliers.
November 23, 2025Source

Week in review: Stealth-patched FortiWeb vulnerability under active exploitation, Logitech data breach
Here's an overview of some of last week's most interesting news, articles, interviews and videos:
November 23, 2025Source

Internet — Security Issues — November 22nd, 2025

Best antivirus software 2025: These 8 apps keep your PC safe
You need more than just prayer and luck—choose from our top antivirus software picks to stay safe.
November 22, 2025Source

Best VPN for Travel: Stay Private on Public Wi-Fi and Unblock Regional Streaming Content on the Go
A VPN makes a great travel companion for fundamental privacy or streaming, and best of all, it won't take up any room in your checked bag or carry-on.
November 22, 2025Source

Chinese APT24 Deploys Custom Malware, New Stealthy Tactics
3-Year Espionage Campaign Targeted Taiwanese Firms
November 21, 2025Source or Source or Source

Cox Enterprises discloses Oracle E-Business Suite data breach
Cox Enterprises is notifying impacted individuals of a data breach that exposed their personal data to hackers who breached the company network after exploiting a zero-day flaw in Oracle E-Business Suite.
November 22, 2025Source

Piecing Together the Puzzle: A Qilin Ransomware Investigation
A big part of a security analyst's everyday role is figuring out what actually happened during an incident. We can do that by piecing together breadcrumbs--whether that's through logs, antivirus detections, and other clues--that help us understand how the attacker achieved initial access and what they did after.
November 22, 2025Source

Security Bite: Why I stopped using camera covers and you should too
Plastic webcam covers—especially of the sliding kind—boomed in popularity sometime in the 2010s as a low-tech way to keep hackers from eavesdropping on compromised machines. The concern felt justified at the time. But by 2020, Apple was beginning to issue warnings that those covers aren't actually needed and can even damage a MacBook's display.
November 21, 2025Source

This hacker conference installed a literal antivirus monitoring system
Organizers had a way for attendees to track CO2 levels throughout the venue—even before they arrived.
November 22, 2025Source

Internet — Security Issues — November 21st, 2025

AI Governance Risks Rise as Enterprises Scale Agents
Rubrik's Dev Rishi on Mounting Pressure to Adopt AI Amid Operational Risks
November 21, 2025Source or Source or Source or Source

Avast Makes AI-Driven Scam Defense Available for Free Worldwide
Driven by a commitment to make cutting-edge scam protection available to everyone, Avast, a leader in digital security and privacy and part of Gen, has unveiled Scam Guardian, a new AI-powered offering integrated into its award-winning Avast Free Antivirus.
November 21, 2025Source

Best Free Antivirus Software for Device Protection in 2025
Want to keep your devices safe? These tried-and-true free antivirus tools can protect your computer, phone and other devices -- without breaking the bank.
November 21, 2025Source

Chinese Cyberspies Deploy 'BadAudio' Malware via Supply Chain Attacks
APT24 has been relying on various techniques to drop the BadAudio downloader and then deploy additional payloads.
November 21, 2025Source

Critical Oracle Identity Manager Flaw Possibly Exploited as Zero-Day
CVE-2025-61757 is an unauthenticated remote code execution vulnerability affecting Oracle Identity Manager.
November 21, 2025Source

CrowdStrike catches insider feeding information to hackers
American cybersecurity firm CrowdStrike has confirmed that an insider shared screenshots taken on internal systems with hackers after they were leaked on Telegram by the Scattered Lapsus$ Hunters threat actors.
November 21, 2025Source

CrowdStrike fires 'suspicious insider' who passed information to hackers
Cybersecurity giant CrowdStrike has confirmed firing a "suspicious insider" last month who allegedly fed information about the company to a notorious hacking group.
November 21, 2025Source

Cutting Through the Hype: A Guide to Decoding Exaggerated VPN Marketing Lingo
VPN ads often promise security and freedom from Big Brother, but marketing can be misleading.
November 21, 2025Source

Despite Chinese hacks, Trump's FCC votes to scrap cybersecurity rules for phone and internet companies
The Federal Communications Commission voted 2-1 along party lines on Thursday to scrap rules that required U.S. phone and internet giants to meet certain minimum cybersecurity requirements.
November 21, 2025Source

FCC rolls back cybersecurity rules for telcos, despite state-hacking risks
The Federal Communications Commission (FCC) has rolled back a previous ruling that required U.S. telecom carriers to implement stricter cybersecurity measures following the massive hack from the Chinese threat group known as Salt Typhoon.
November 21, 2025Source

Google says hackers stole data from 200 companies following Gainsight breach
Google has confirmed that hackers have stolen the Salesforce-stored data of more than 200 companies in a large-scale supply chain hack.
November 21, 2025Source

Grafana warns of max severity admin spoofing vulnerability
Grafana Labs is warning of a maximum severity vulnerability (CVE-2025-41115) in its Enterprise product that can be exploited to treat new users as administrators or for privilege escalation.
November 21, 2025Source

Hacker Is Selling Samsung Info — But It Isn't What You Think
A hacker is reportedly selling internal data from Samsung Medison, a medical equipment subsidiary, on a cybercrime forum. This breach does not affect Samsung Electronics or consumer products, so user data for phones and other devices remains safe.
November 21, 2025Source

Hardware Hackers Urge Vendor Engagement for Security Success
Experts Detail Upsides of Bug Bounties and Getting Devices Into Researchers' Hands
November 21, 2025Source or Source or Source or Source or Source

How Microsoft's new security agents help businesses stay a step ahead of AI-enabled hackersx
Copilot customers will find the agents embedded in their relevant security and management dashboards.
November 21, 2025Source

Impersonators are (still) targeting companies with fake TechCrunch outreach
A growing number of scammers are impersonating TechCrunch reporters and event leads and reaching out to companies, pretending to be our staff when they absolutely are not. These bad actors are using our name and reputation to try to dupe unsuspecting businesses. It drives us crazy and infuriates us on your behalf. It ebbs and flows. Judging by the increased number of emails we're receiving, asking, "Does this person really work for you?" it appears to be happening more actively at the moment.
November 21, 2025Source

In Other News: ATM Jackpotting, WhatsApp-NSO Lawsuit Continues, CISA Hiring
Other noteworthy stories that might have slipped under the radar: surge in Palo Alto Networks scanning, WEL Companies data breach impacts 120,000 people, AI second-order prompt injection attack.
November 21, 2025Source

Is That Medical Device Secure? Get It Right in the Contract
HSCC 'Model Contract' Calls for Shared Cyber Risks for Providers and Device Makers
November 21, 2025Source or Source or Source or Source

ISMG Editors: Inside the Staffing Crisis Crippling CISA
Also: Akira Ransomware Targets Healthcare, AI's Sycophancy Becomes a Security Risk
November 21, 2025Source or Source or Source or Source or Source

New Onapsis platform updates enhance visibility and protection across SAP landscapes
Onapsis introduced a series of new updates to its Onapsis Control product line, advancing security capabilities across SAP and cloud ERP application development environments. These enhancements include integration with SAP Continuous Integration and Delivery (CI/CD), expanded Git repository support to secure more code at rest, and strengthened workflow integration with SAP Transport Management System (TMS).
November 21, 2025Source

Salesforce Confirms New Breach Linked to Gainsight Apps
Salesforce is probing unusual activity in Gainsight apps that may have exposed customer data, while ShinyHunters claims a new OAuth-based attack.
November 21, 2025Source

'Scattered Spider' teens plead not guilty to UK transport hack
Two British teenagers have denied charges related to an investigation into the breach of Transport for London (TfL) in August 2024, which caused millions of pounds in damage and exposed customer data.
November 21, 2025Source

SEC Ends SolarWinds Suit After Major Legal Setbacks
Federal securities regulators abandoned their remaining charges against SolarWinds and its chief information security officer, ending a high-profile lawsuit that accused the company of masking cybersecurity weaknesses ahead of a far-reaching Russian cyberattack.
November 21, 2025Source or Source or Source or Source

WhatsApp API Could Bulk Leak User Telephone Numbers
Researchers Were Able to Query 3.5 Billion Accounts
November 21, 2025Source or Source or Source or Source or Source

Internet — Security Issues — November 20th, 2025

$5M Settlement in Geisinger Health, Nuance Insider Breach
Class Action Litigation and Criminal Case Focus on Actions of an Ex-Tech Worker
November 20, 2025Source or Source or Source or Source or Source

AI is providing emotional support for employees, but is it a valuable tool or privacy threat?
As artificial intelligence tools like ChatGPT become an increasingly popular avenue for people seeking personal therapy and emotional support, the dangers that this can present—especially for young people—have made plenty of headlines. What hasn't received as much attention is employers using generative AI to assess workers' psychological well-being and provide emotional support in the workplace.
November 20, 2025Source

Critics Say White House's Draft AI Order Is a Power Grab
Leaked Executive Order Would Strip States of Power to Regulate AI Tech Firms
November 20, 2025Source or Source or Source or Source or Source

Crypto mixer founders sent to prison for laundering over $237 million
The founders of the Samourai Wallet (Samourai) cryptocurrency mixing service have been sent to prison for helping criminals launder over $237 million.
November 20, 2025Source

D-Link warns of new RCE flaws in end-of-life DIR-878 routers
D-Link is warning of three remotely exploitable command execution vulnerabilities that affect all models and hardware revisions of its DIR-878 router, which has reached end-of-service but is still available in several markets.
November 20, 2025Source

Defending AI, Securing OT: Fortinet's Strategy for Modern Cyber Risk
Fortinet's Rashish Pandey on Security Leadership, Regulation and IT-OT Convergence
November 20, 2025Source or Source

Do You Really Need a VPN for Public Wi-Fi? Does It Make Me Truly Anonymous?
A virtual private network hides your internet traffic, but not your tracks entirely.
November 20, 2025Doppel Raises $70 Million at $600 Million Valuation
The AI-native social engineering defense (SED) platform will accelerate product innovation and expand its offerings.
November 20, 2025
Source

" target="new" class="RM1">Source

Doordash data breach exposes names, addresses, phone numbers, and more
A Doordash data breach has exposed the personal data of an unspecified number of customers, including name, phone number, email address, and physical address.
November 20, 2025Source

Doppel Raises $70 Million at $600 Million Valuation
The AI-native social engineering defense (SED) platform will accelerate product innovation and expand its offerings.
November 20, 2025Source

Education boards left gates wide open for PowerSchool mega-breach, say watchdogs
Privacy cops say attack wasn't just bad luck but a result of sloppy homework
November 20, 2025Source

ENISA Is Now a CVE Program Root
European Cybersecurity Agency Can Assign CVE IDs and Publish CVE Records
November 20, 2025Source or Source or Source or Source or Source

Evasive Sturnus Malware Can Take Full Control Of Infected Android Devices
Security researchers at Threat Fabric have discovered new malware targeting Android devices, which is still "in a development or limited testing phase." However, even in its current form it's still incredibly potent, enabling attackers to take complete control of a victim's device including obtaining access to encrypted messages.
November 20, 2025Source

Fired techie admits sabotaging ex-employer, causing $862K in damage
PowerShell script locked thousands of workers out of their accounts
November 20, 2025Source

Free VoIP Speed Testing: How to Evaluate Call Quality on Your Network
Learn different ways to conduct a VoIP speed test at no cost, plus our best tips for making the most of your results.
November 20, 2025Source

Google exposes BadAudio malware used in APT24 espionage campaigns
China-linked APT24 hackers have been using a previously undocumented malware called BadAudio in a three-year espionage campaign that recently switched to more sophisticated attack methods.
November 20, 2025Source

Half of security teams struggling to cope with volume of vulnerabilities
As the number of CVEs continues to rise, a new study finds 46 percent of respondents say that the volume of vulnerabilities has placed additional strain on their security teams' resources impacting not only organizational security but also staff well being.
November 20, 2025Source

ID-Pal upgrades ID-Detect, delivering protection against deepfakes and synthetic IDs
ID-Pal has announced a major enhancement to its document-fraud detection feature, ID-Detect, delivering even more powerful defences against AI-generated digital manipulation—one of the fastest-growing threats facing financially regulated enterprises and payments providers.
November 20, 2025Source

Internet Providers Can Monitor Their Own Cybersecurity Standards, Says Trump's FCC
In what the Electronic Frontier Foundation calls a "terrible idea," the Federal Communications Commission has rescinded the requirement for telecom companies to issue yearly cybersecurity reports.
November 20, 2025Source

MacOS DigitStealer malware poses as DynamicLake, targets Apple Silicon M2/M3 devices
A new infostealer is targeting macOS users by masquerading as the legitimate DynamicLake UI enhancement and productivity utility and possibly Google's Drive for desktop app.
November 20, 2025Source

Minimus debuts Image Creator for building secure, hardened container images
Minimus announced the general availability of Image Creator, a new feature that empowers customers to build their own hardened container images, fully powered and secured by Minimus' container security software and software supply chain security technology.
November 20, 2025Source

Multi-threat Android malware Sturnus steals Signal, WhatsApp messages
A new Android banking trojan named Sturnus can capture communication from end-to-end encrypted messaging platforms like Signal, WhatsApp, and Telegram, as well as take complete control of the device.
November 20, 2025Source

New SonicWall SonicOS flaw allows hackers to crash firewalls
American cybersecurity company SonicWall urged customers today to patch a high-severity SonicOS SSLVPN security flaw that can allow attackers to crash vulnerable firewalls.
November 20, 2025Source

Oligo delivers runtime-native security for models and agents
Oligo Security announced new capabilities to protect the broadest spectrum of AI deployments, including AI applications, LLMs, and agentic AI. The new platform modules address the largest blind spot in AI security by securing production AI technologies that remain largely ungoverned, unmonitored, and operating in real time.
November 20, 2025Source

Over 50,000 Asus Routers Hacked in 'Operation WrtHug'
A Chinese threat actor is exploiting known vulnerabilities in discontinued Asus devices in an Operational Relay Box (ORB) facilitation campaign.
November 20, 2025Source

Palo Alto kit sees massive surge in malicious activity amid mystery traffic flood
GlobalProtect login endpoints targeted, sparking concern that something bigger may be brewing
November 20, 2025Source

Recent 7-Zip Vulnerability Exploited in Attacks
A proof-of-concept (PoC) exploit targeting the high-severity remote code execution (RCE) bug exists.
November 20, 2025Source

Russian Hacking Suspect Wanted by the FBI Arrested on Thai Resort Island
Thailand's Cyber Crime Investigation Bureau said an FBI tip that the "world-class hacker" was traveling to Thailand led to his arrest in Phuket.
November 20, 2025Source

Salesforce investigates customer data theft via Gainsight breach
Salesforce says it revoked refresh tokens linked to Gainsight-published applications while investigating a new wave of data theft attacks targeting customers.
November 20, 2025Source or Source

Security gap in Perplexity's Comet browser exposed users to system-level attacks
There is a serious security problem inside Comet, the AI-powered agentic browser made by Perplexity, SquareX researchers say: Comet's MCP API allows the browser's built-in (but hidden from the user) extensions to issue commands directly to a user's device, and the capability can be leveraged by attackers.
November 20, 2025Source

ShinyHunters Hack Salesforce Instances Via Gainsight Apps
Salesforce Revoked Gainsight Authentication Tokens
November 20, 2025Source or Source or Source or Source or Source

Turn your Windows 11 migration into a security opportunity
Not all versions of Windows were created equal, at least not according to Windows users. Windows XP was a legendary operating system that Microsoft found hard to replace. It didn't help that XP's successor, Windows Vista, was basically an Edsel-level bust.
November 20, 2025Source

Two-factor security? Nah, let's do 30-factor instead
Now wink a lot.
November 20, 2025Source

US and Allies Sanction Russian Bulletproof Hosting Service Providers
Media Land, Hypercore, and their leadership and employees are allegedly connected to various cybercriminal activities.
November 20, 2025Source

Vulnerability Allowed Scraping of 3.5 Billion WhatsApp Accounts
Researchers demonstrated a now-patched vulnerability that could have been used to enumerate all WhatsApp accounts.
November 20, 2025Source

Watch out for this clever and dangerous new 'Apple Support' hoax
Phishing attack uses authentic Apple alerts and messages in order to seem legitimate.
November 20, 2025Source

WhatsApp flaw let researchers scrape 3.5 billion phone numbers, photos, and statuses
Researchers called out inadequate protections; Meta insists no messages were compromised
November 20, 2025Source

Why a 'health-based approach' to cybersecurity makes sense
With a holistic and adaptive cyber resilience plan, Renown Health aligns information security and technology innovations to the organization's strategic pillars, its CISO says.
November 20, 2025Source

X wants to call you out for using a VPN (and maybe catch a few trolls, too)
A weapon against trolls, or a privacy disaster?
November 20, 2025Source

Internet — Security Issues — November 14th, 2025

A suspected Fortinet FortiWeb zero-day is actively exploited, researchers warn
A suspected (but currently unidentified) zero-day vulnerability in Fortinet FortiWeb is being exploited by unauthenticated attackers to create new admin accounts on vulnerable, internet-facing devices.
November 14, 2025Source

Akira Ransomware Group Made $244 Million in Ransom Proceeds
Akira was seen exploiting SonicWall vulnerabilities and encrypting Nutanix Acropolis Hypervisor (AHV) VM disk files this year.
November 14, 2025Source

Checkout.com snubs hackers after data breach, to donate ransom instead
UK financial technology company Checkout announced that the ShinyHunters threat group has breached one of its legacy cloud storage systems and is now extorting the company for a ransom.
November 14, 2025Source

CISA flags imminent threat as Akira ransomware starts hitting Nutanix AHV
Advisory updated as leading cybercrime crew opens up its target pool
November 14, 2025Source

Don't commit to a VPN that lacks these 6 important features
Unpacking what makes a good VPN!
November 14, 2025Source

DoorDash Says Relax, Data Breach Only Exposed Names, Phones, Emails & Addresses
Food delivery giant DoorDash has once again come under negative limelight, this time with a massive data breach stemming from a sophisticated social engineering attack that targeted one of its employees in October. The incident allowed an unauthorized third party to gain access to and exfiltrate key contact information belonging to a mix of consumers, delivery drivers ("Dashers"), and merchants across its operating regions, including the U.S., Canada, Australia, and New Zealand.
November 14, 2025Source

FBI flags scam targeting Chinese speakers with bogus surgery bills
Crooks spoof US insurers, threaten bogus extradition to pry loose personal data and cash
November 14, 2025Source

Fortinet confirms silent patch for FortiWeb zero-day exploited in attacks
Fortinet has confirmed that it has silently patched a critical zero-day vulnerability in its FortiWeb web application firewall, which is now "massively exploited in the wild."
November 14, 2025Source

German court rules Google must pay €572M for violating antitrust rules in price comparison sector
A German court has found that Google has abused its dominant market position in the price comparison sector and ruled that the company must pay a total of €572 million ($665.6 million) in damages to two German price comparison companies, according to a report by Reuters.
November 14, 2025Source

Meta must rein in scammers — or face consequences
If the company won't remove obvious scam ads, regulators need to step in.
November 14, 2025Source

Report blasts UK Ministry of Defence over Afghan data-handling failures
Public Accounts Committee tears into department responsible for the most dangerous breach in British history
November 14, 2025Source

The best password managers: Make remembering your password a breeze with vaults that do it for you
Are you tired of remembering all of your online credentials? The right password manager takes on this task for you. We've tested and ranked the best password manager apps of 2025.
November 14, 2025Source

The best VPN for Windows: Tighten up your online security without sacrificing speed
These Windows VPNs will help mask your online activities and enhance your personal security. These are my favorite VPN picks for the Windows operating system this year.
November 14, 2025Source

The Scariest Online Threats in 2025, and How to Protect Your Privacy
Internet crooks have smarter tools now, but common sense still beats artificial intelligence.
November 14, 2025Source

US announces new strike force targeting Chinese crypto scammers
U.S. federal authorities have established a new task force to disrupt Chinese cryptocurrency scam networks that defraud Americans of nearly $10 billion annually.
November 14, 2025Source

You may be owed up to $7,500 from the AT&T data breach settlement
Submit a claim before December 18
November 14, 2025Source

Internet — Security Issues — November 13th, 2025

1Password Simplifies Access With New Unlock Setting
1Password today announced a redesigned unlock system for Mac and Windows that allows the app to open automatically when a user unlocks their devic
November 13, 2025Source

1,000+ Servers Hit in Law Enforcement Takedown of Rhadamanthys, VenomRAT, Elysium
An individual believed to have been involved in the operation of VenomRAT was arrested recently in Greece.
November 13, 2025Source

2B email addresses and 1.3B passwords compromised in multiple data breaches
Some 2 billion email addresses and 1.3 billion passwords have been compromised in a series of data breaches highlighted by a cybersecurity company.
November 13, 2025Source

ChatGPT Vulnerability Exposed Underlying Cloud Infrastructure
A researcher found a way to exploit an SSRF vulnerability related to custom GPTs to obtain an Azure access token.
November 13, 2025Source

CISA Updates Guidance on Patching Cisco Devices Targeted in China-Linked Attacks
Federal agencies have reported as 'patched' ASA or FTD devices running software versions vulnerable to attacks.
November 13, 2025Source

CISA warns feds to fully patch actively exploited Cisco flaws
CISA warned U.S. federal agencies to fully patch two actively exploited vulnerabilities in Cisco Adaptive Security Appliances (ASA) and Firepower devices.
November 13, 2025Source

CISA warns of WatchGuard firewall flaw exploited in attacks
The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has warned government agencies to patch an actively exploited vulnerability impacting WatchGuard Firebox firewalls.
November 13, 2025Source

CISA, FBI and Partners Unveil Critical Guidance to Protect Against Akira Ransomware Threat
Provides: New Insights to Combat Ransomware Threats across Multiple Business Sectors and Critical Infrastructure
November 13, 2025Source

Critical WatchGuard Firebox Vulnerability Exploited in Attacks
Tracked as CVE-2025-9242 (CVSS score of 9.3), the flaw leads to unauthenticated, remote code execution on vulnerable firewalls.
November 13, 2025Source

Extra, extra, read all about it: Washington Post clobbered in Clop caper
Nearly 10,000 staff and contractors warned after attackers raided newspaper's Oracle EBS setup
November 13, 2025Source

Google Sues China-Based 'Lighthouse' Phishing Service After $1B+ Scams Target Millions
Google Sues China-Based 'Lighthouse' Phishing Service After $1B+ Scams Target Millions
November 13, 2025Source

Google to pay millions to South African news outlets: Watchdog
Google will pay more than $40 million to support South African news media, many of them floundering in a digital age, the country's competition authority said Thursday.
November 13, 2025Source

Kerberoasting in 2025: How to protect your service accounts
Kerberoasting attacks remain an enduring headache for IT professionals, allowing hackers to escalate privileges and reach the highest levels of your Active Directory (AD) environment. But by enforcing robust passwords, encryption, and cybersecurity policies, you can disrupt the criminals before they even begin.
November 13, 2025Source

NHS supplier ends probe into ransomware attack that contributed to patient death
Synnovis's 18-month forensic review of Qilin intrusion completed, now affected patients to be notified
November 13, 2025Source

Nokod Security launches Adaptive Agent Security to protect AI agents across the entire ADLC
Nokod Security announced the launch of Adaptive Agent Security, a solution that delivers real-time visibility, governance, and protection from threats across the Agent Development Lifecycle (ADLC).
November 13, 2025Source

"Patched" but still exposed: US federal agencies must remediate Cisco flaws (again)
CISA has ordered US federal agencies to fully address two actively exploited vulnerabilities (CVE-2025-20333, CVE-2025-20362) in Cisco Adaptive Security Appliances (ASA) and Firepower firewalls.
November 13, 2025Source

Popular Android-based photo frames download malware on boot
Uhale Android-based digital picture frames come with multiple critical security vulnerabilities and some of them download and execute malware at boot time.
November 13, 2025Source

Rhadamanthys infostealer operation disrupted by law enforcement
The rumors were true: Operation Endgame, a joint effort between law enforcement and judicial authorities of several European countries, Australia, Canada, the UK and the US, has disrupted the infrastructure supporting the operation of the Rhadamanthys infostealer.
November 13, 2025Source

Rhadamanthys malware admin rattled as cops seize a thousand-plus servers
International cops have pulled apart the Rhadamanthys infostealer operation, seizing 1,025 servers tied to the malware in coordinated raids between November 10-13.
November 13, 2025Source

Synnovis Confirms Patient Information Stolen in Disruptive Ransomware Attack
The ransomware attack on the pathology services provider disrupted operations at several London hospitals.
November 13, 2025Source

Tens of Thousands of Malicious NPM Packages Distribute Self-Replicating Worm
The spam campaign is likely orchestrated by an Indonesian threat actor, based on code comments and the packages' random names.
November 13, 2025Source

TrojAI Defend for MCP brings real-time security, visibility, and policy enforcement to agentic AI
TrojAI has launched its new AI runtime defense solution for agentic AI workflows, TrojAI Defend for MCP. Model Context Protocol (MCP) is an open protocol that allows AI agents to connect with external data, tools, and services in a standardized way enabling AI innovation at a rapid pace. TrojAI Defend for MCP was built to monitor traffic to and from MCP servers, providing unified visibility, policy analysis, and runtime enforcement across agents and MCP gateways.
November 13, 2025Source

UK Cyber Defense Laws Aim to Bolster NHS and Energy Infrastructure
Cyber Security and Resilience Bill represents a fundamental shift in how it defends its digital backbone against attacks now costing the nation nearly £15 billion annually.
November 13, 2025Source

Washington Post data breach impacts nearly 10K employees, contractors
The Washington Post is notifying nearly 10,000 employees and contractors that some of their personal and financial data has been exposed in the Oracle data theft attack.
November 13, 2025Source

Internet — Security Issues — November 9th, 2025

Best VPN for Windows PCs 2025: Browse the Web, Torrent, Stream and Game Privately
The best VPNs for Windows PCs let you browse the web, stream videos from services like Netflix, game and download torrents in private.
November 9, 2025Source

Dangerous runC flaws could allow hackers to escape Docker containers
Three newly disclosed vulnerabilities in the runC container runtime used in Docker and Kubernetes could be exploited to bypass isolation restrictions and get access to the host system.
November 9, 2025Source

Laid-off Intel employee allegedly steals 'Top Secret' files, then disappears — ex-engineer downloaded 18,000 files before vanishing
The ex-employee took a treasure trove of data with him after Intel let him go.
November 9, 2025Source

NAKIVO Introduces v11.1 with Upgraded Disaster Recovery and MSP Features
NAKIVO, a global leader in backup, ransomware protection and disaster recovery across virtual, physical, cloud, NAS and SaaS environments, has officially introduced NAKIVO Backup & Replication v11.1.
November 9, 2025Source

Internet — Security Issues — November 8th, 2025

Redis Critical Remote Code Execution Vulnerability Discovered after 13 Years
Redis recently released a security advisory regarding CVE-2025-49844. This critical (CVSS 10.0) use-after-free (UAF) vulnerability in Lua scripting could allow authenticated attackers to execute remote code on older versions of Redis and Valkey with Lua scripting enabled. Developers are urged to upgrade to patched releases as soon as possible.
November 8, 2025Source

Who's watching the watchers? This Mozilla fellow, and her Surveillance Watch map
Esra'a Al Shafei spoke with The Reg about the spy tech 'global trade'
November 8, 2025Source

Internet — Security Issues — November 7th, 2025

5 reasons why your internet is running slow
How to diagnose a slow connection!
November 7, 2025Source

7 CIS Experts' 2026 Cybersecurity Predictions
Elimination of federal funding for the Multi-State Information Sharing and Analysis Center® (MS-ISAC®) ... cyber threat actors (CTAs') ongoing use of artificial intelligence (AI) ... the AWS outage in October
November 7, 2025Source

18 Arrested in Crackdown on Credit Card Fraud Rings
Between 2016 and 2021, the suspects defrauded 4.3 million cardholders in 193 countries of €300 million (~$346 million).
November 7, 2025Source

A New Type of AI Malware Threatens Smart Homes, But These Security Habits Can Help
The rise of promptware means cybercriminals have new ways to hack smart homes. New security methods are required to fight back.
November 7, 2025Source

Attackers upgrade ClickFix with tricks used by online stores
Attackers have taken the ClickFix technique further, with pages borrowing tricks from online sellers to pressure victims into performing the steps that will lead to a malware infection.
November 7, 2025Source

Bank of England says JLR's cyberattack contributed to UK's unexpectedly slower GDP growth
This kind of material economic impact from online crooks thought to be a UK-first
November 7, 2025Source

Beware the 'Hi, how are you?' text. It's a scam - here's how it works
Americans lost $3.5 billion to investment scams in early 2025. Here's how to avoid becoming the next victim.
November 7, 2025Source

Bill Seeks HIPAA-Like Protections for Consumer Health Data
Proposed legislation by U.S. Sen. Bill Cassidy, R-La., a physician and chair of the high-profile Senate health committee, aims to create parallel HIPAA-like privacy protections to many more types of health information - such as data collected by consumer wearable devices and health apps - that are not currently covered under HIPAA and the HITECH Act.
November 7, 2025Source or Source or Source or Source

CBO Hit by Suspected Nation-State Cyberattack
Nation-State Actor Suspected in Breach of Congressional Budget Office
November 7, 2025Source

Chrome 142 Update Patches High-Severity Flaws
An out-of-bounds write flaw in WebGPU tracked as CVE-2025-12725 could be exploited for remote code execution.
November 7, 2025Source

Cisco: Actively exploited firewall flaws now abused for DoS attacks
Cisco warned this week that two vulnerabilities, which have been used in zero-day attacks, are now being exploited to force ASA and FTD firewalls into reboot loops.
November 7, 2025Source

ClickFix Attacks Against macOS Users Evolving
ClickFix prompts typically contain instructions for Windows users, but now they are tailored for macOS and they are getting increasingly convincing.
November 7, 2025Source

Commercial spyware "Landfall" ran rampant on Samsung phones for almost a year
Targeted attack could steal all of a phone's data and activate camera or mic.
November 7, 2025Source

Congressional Budget Office confirms it was hacked
Caitlin Emma, a spokesperson for CBO, told TechCrunch on Friday that the agency is investigating the breach and "has identified the security incident, has taken immediate action to contain it, and has implemented additional monitoring and new security controls to further protect the agency's systems going forward."
November 7, 2025Source

Crowdstrike: AI Accelerating Ransomware Attacks Across Europe
CrowdStrike's 2025 report reveals how AI is accelerating ransomware attacks and reshaping Europe's cyber threat landscape.
November 7, 2025Source

Data Exposure Vulnerability Found in Deep Learning Tool Keras
The vulnerability is tracked as CVE-2025-12058 and it can be exploited for arbitrary file loading and conducting SSRF attacks.
November 7, 2025Source

Destructive Russian Cyberattacks on Ukraine Expand to Grain Sector
Multiple state-sponsored Russian groups are targeting Ukrainian entities and European countries linked to Ukraine.
November 7, 2025Source

For OT Cyber Defenders, Lack of Data Is the Biggest Threat
OT Security 'a Generation Behind Traditional IT'
November 7, 2025Source or Source or Source or Source

Former OnlyFans CEO's next app is coming — and it allows topless pics
The future of social media is 18+, Ami Gan said.
November 7, 2025Source

Free tool fixes Windows 10 ESU registration issues and restores Microsoft security updates
Microsoft officially ended support for Windows 10 last month, leaving most systems without regular updates. For users in the European Union, the European Economic Area, and Switzerland, the software giant offers free Windows 10 ESU (Extended Security Updates) patches to keep PCs protected. Unfortunately, for many who qualify, the ESU registration option doesn't appear in Windows Update.
November 7, 2025Source

How to trade your $214,000 cybersecurity job for a jail cell
Ransomware doesn't pay what it used to.
November 7, 2025Source

ID verification laws are fueling the next wave of breaches
The cybersecurity community has long lived by a simple principle: Don't collect more data than you can protect. But ID laws and other legal mandates now force many organizations to store massive amounts of sensitive data, putting them in the precarious situation of dealing with information they don't necessarily want but have to safeguard.
November 7, 2025Source

In Other News: Controversial Ransomware Report, Gootloader Returns, More AN0M Arrests
Other noteworthy stories that might have slipped under the radar: rogue ransomware negotiators charged, F5 hack prompts OT security guidance, Germany targets Huawei tech.
November 7, 2025Source

Incogni review: The set-it-and-forget-it online privacy solution
Your secret weapon in the fight against data brokers.
November 7, 2025Source

Infostealers are making this old security practice new again
Like with carpenter jeans, I'm surprised this practice is relevant again.
November 7, 2025Source

ISMG Editors: Lawsuits Follow Year's Top Health Data Breach
Conduent Gets Sued; US Government's Cyber Shutdown Woes; Hacktivist Hits Rise
November 7, 2025Source

It's nearly 2026 and most people still use '123456' as a password
Check out the top 100 horrors
November 7, 2025Source

Landfall Android Spyware Targeted Samsung Phones via Zero-Day
Threat actors exploited CVE-2025-21042 to deliver malware via specially crafted images to users in the Middle East.
November 7, 2025Source or Source

Microsoft shares Windows 10 extended security updates requirements and activation IDs
Last month Windows 10 support ended as Microsoft released the final Patch Tuesday update under KB5066791. Alongside that, the company also published information on how users can proceed if they want to keep using their system in a supported state, ie, continue receiving regular OS security updates outside of the Defender updates.
November 7, 2025Source

Millions Of Online Accounts Are At Risk: This Study Names The Worst Passwords Of 2025
There's still about seven and a half weeks remaining in 2025, but a new study already has a beat on the worst passwords of the year, with the most awful of the bunch appearing more than 7.6 million times in various data breaches. Suffice to say, if you're using any of the passwords on the extensive list, you should change it immediately.
November 7, 2025Source

Moonlock review: We put MacPaw's new antivirus suite to work
MacPaw brings an antiviral/anti-malware utility into its own, even if the UI could use a bit of polish.
November 7, 2025Source

New LandFall spyware exploited Samsung zero-day via WhatsApp messages
A threat actor exploited a zero-day vulnerability in Samsung's Android image processing library to deploy a previously unknown spyware called 'LandFall' using malicious images sent over WhatsApp.
November 7, 2025Source

Online Job Scams Creating News Risks for Corporate Networks
It's Time for Enterprises to Manage Risks Posed by Compromised Personal Devices
November 7, 2025Source or Source or Source or Source

Ping Identity Boosts Frontline Staff Access With Keyless Buy
Keyless's Biometric Tech to Improve Privacy, Account Recovery and User Experience
November 7, 2025Source or Source or Source or Source

Radical Empowerment From Your Leadership: Understood by Few, Essential for All
When leaders redefine power as trust instead of control, teams unlock their potential — and organizations find their edge.
November 7, 2025Source

Samsung Zero-Day Flaw Exploited by 'Landfall' Spyware
Spyware Targets Samsung Galaxy Devices, Says Unit 42
November 7, 2025Source or Source or Source or Source

Scam centers in southeast Asia are on the rise despite crackdowns to root out the illegal industry
It often starts with a text message asking if you are available on weekends, looking for a part-time job or you get a simple "hello" from an unknown number. Halfway across the world, a laborer is usually pulling in 12-16 hour days, sending non-stop messages, hoping someone will take the bait.
November 7, 2025Source

Seattle security startup Oleria lands $19M in latest funding round
Oleria, a Seattle-based cybersecurity startup that manages employee access to applications and data, raised $19 million in a new round of funding.
November 7, 2025Source

The Congressional Budget Office Was Hacked. It Says It Has Implemented New Security Measures
The Congressional Budget Office confirmed it had been hacked, potentially disclosing important government data to malicious actors.
November 7, 2025Source

The FBI Is Trying to Unmask the Registrar Behind Archive.Today
The popular archiving website is being targeted for investigation.
November 7, 2025Source

US Authorities Consider Ban on DJI Drones Over Security Risks
The US FCC has gained the power to ban the sale and import of goods previously allowed in the region. The ban can only be carried out if the brand or manufacturer is designated as a national security risk. Thankfully, the existing owners of the products are not at risk of having their devices confiscated.
November 7, 2025Source

Warning! Don't open these WhatsApp images, else you'll get hacked
WhatsApp scammers are using malicious images to trick users. Don't fall for it and don't open any messages that fit this scam!
November 7, 2025Source

Washington Post confirms data breach linked to Oracle hacks
The Washington Post has said that it was one of the victims of a hacking campaign tied to Oracle's suite of corporate software apps.
November 7, 2025Source

Workload Identities: Bridging Infrastructure and Application Security
Replace static secrets with verifiable workload identities to close security gaps and build a stronger zero-trust foundation.
November 7, 2025Source

Internet — Security Issues — November 6th, 2025

AI-Slop ransomware test sneaks on to VS Code marketplace
A malicious extension with basic ransomware capabilities seemingly created with the help of AI, has been published on Microsoft's official VS Code marketplace.
November 6, 2025Source

Aptori Code-Q delivers verified, explainable fixes that integrate into development workflows
Aptori announced Code-Q (Code Quick Fix), a new agent in its AI-powered security platform that automatically generates, validates and applies code-level remediations for confirmed vulnerabilities.
November 6, 2025Source

Automotive IT Firm Hyundai AutoEver Discloses Data Breach
Hyundai AutoEver America was hacked in February and the attackers managed to steal SSNs and other personal data.
November 6, 2025Source

Best free password managers 2025: Online security doesn't have to cost a thing
Shore up your defenses, stat.
November 6, 2025Source

Breach Roundup: UPenn Hit by Email Breach
Also, Australian Police Arrest 55 in New Round of Anom App Sting
November 6, 2025Source or Source or Source or Source

Cisco Patches Critical Vulnerabilities in Contact Center Appliance
The flaws allow attackers to execute arbitrary code remotely and elevate their privileges to root on an affected system.
November 6, 2025Source

CISO budgets increase with identity and data protection top priorities
A new study from RSAC finds most CISOs' budgets increased between 2024 and 2025 and their top areas of investment for 2025-2026 are identity and data protection.
November 6, 2025Source

ClickFix malware attacks evolve with multi-OS support, video tutorials
ClickFix attacks have evolved to feature videos that guide victims through the self-infection process, a timer to pressure targets into taking risky actions, and automatic detection of the operating system to provide the correct commands.
November 6, 2025Source

Continuous Purple Teaming: Turning Red-Blue Rivalry into Real Defense
In many organizations, red and blue teams still work in silos, usually pitted against each other, with the offense priding itself on breaking in and the defense doing what they can to hold the line.
November 6, 2025Source

Cryptohack Roundup: Europol Busts 600M Euro Fraud Network
Also: SBF Appeals Conviction, PHP Exploits Fuel Cryptomining
November 6, 2025Source or Source or Source or Source

CybercrimeDeFi Protocol Balancer Starts Recovering Funds Stolen in $128 Million Heist
Hackers drained more cryptocurrency from Balancer by exploiting a rounding function and performing batch swaps.
November 6, 2025Source

EFF Teams Up With AV Comparatives to Test Android Stalkerware Detection by Major Antivirus Apps
EFF partnered with AV Comparatives to test Android antivirus apps' detection of stalkerware in 2025, finding mixed results with Malwarebytes showing 100% detection.
November 6, 2025Source

FBI Accuses Fired White Hat Hacking Pros Of Carrying Out Illegal Cyberattacks On US Companies
It's like something out of a contemporary spy novel: Two cybersecurity professionals that worked to help businesses fend off hackers have now been accused of being cybercriminals themselves. The FBI and federal prosecutors allege that two cybersecurity firms' former employees took part in a yearlong conspiracy to hack and extort multiple U.S. companies for millions of dollars in total.
November 6, 2025Source

European Police Dismantle €600M Crypto Fraud Network
European authorities have arrested nine suspects accused of laundering through fake crypto investment platforms.
November 6, 2025Source

Federally Qualified Health Center Reports Ransomware Breach
Central Jersey Medical Center Runs Health Centers for Schools in Newark
November 6, 2025Source or Source or Source or Source

Follow Pragmatic Interventions to Keep Agentic AI in Check
Agentic AI speeds operations, but requires clear goals, least privilege, auditability, red‑teaming, and human oversight to manage opacity, misalignment, and misuse.
November 6, 2025Source

Google Flags AI Malware Surge As Hackers Use LLMs To Mutate Code On-The-Fly
The industry-wide effort to AI all the things isn't without its seedy side. Namely, we're quickly entering an era of more sophisticated malware strains evading common antivirus protections, with threat actors taking advantage of powerful large language models (LLMs) that pose evolving threats, Google Threat Intelligence Group (GTIG) warns in a new security report.
November 6, 2025Source or Source

Google flags new wave of online scams fueled by AI fakes and holiday hustles
Scammers are getting smarter, and Google's new report shows how they're doing it.
November 6, 2025Source

Gootloader malware back for the attack, serves up ransomware
Move fast - miscreants compromised a domain controller in 17 hours
November 6, 2025Source

How a ransomware gang encrypted Nevada government's systems
The State of Nevada has published an after-action report detailing how hackers breached its systems to deploy ransomware in August, and the actions taken to recover from the attack.
November 6, 2025Source

Hypori Secure Workspace Ecosystem helps IT teams protect enterprise data
Hypori announced the expansion of its platform with the launch of the Hypori Secure Workspace Ecosystem, a suite of next-generation products designed to give organizations flexibility, scalability, and control over secure mobile access.
November 6, 2025Source

Italian political consultant says he was targeted with Paragon spyware
Francesco Nicodemo, a consultant who works with left-wing politicians in Italy, has gone public as the latest person targeted with Paragon spyware in the country.
November 6, 2025Source

Longer Conversations Can Break AI Safety Filters
Adversarial Success Rates Jump Tenfold in Longer AI Chats, Finds Cisco
November 6, 2025Source or Source or Source or Source or Source

Louvre heist reveals museum used 'LOUVRE' as password for its video surveillance, still has workstations with Windows 2000 - glaring security weaknesses revealed in previous report
It's like using your name as your password.
November 6, 2025Source

MajorKey IDProof+ combats AI-driven fraud
MajorKey Technologies announced IDProof+, a high-assurance identity verification solution leveraging biometric technology. Developed in collaboration with identity verification innovator authID, IDProof+ is designed to help enterprises combat AI-driven fraud and streamline remote workforce onboarding.
November 6, 2025Source

Malware-pwned laptop gifts cybercriminals Nikkei's Slack
Stolen creds let miscreants waltz into 17K employees' chats, spilling info on staff and partners
November 6, 2025Source

Meta earns about $7 billion a year on scam ads, report says
Yikes. That's a lot of ads for counterfeit Sildenafil and online casinos.
November 6, 2025Source

Nevada Ransomware Attack Started Months Before It Was Discovered, Per Report
The ransomware attack discovered in August occurred as early as May when a state employee mistakenly downloaded malicious software.
November 6, 2025Source

Over 1 billion passwords and emails leaked: How to see if you're affected
Have I Been Pwned just acquired a huge collection of unique email addresses and passwords that have been leaked and/or stolen.
November 6, 2025Source

Ping Identity offers protection against adversarial AI threats
As organizations embrace agentic AI to boost productivity and commerce, Ping Identity is redefining how enterprises enable this new class of autonomous digital identities, delivering visibility, access control, governance, and privilege oversight to build trust into every interaction. Identity for AI will help enterprises engage the agentic commerce channel, secure the autonomous workforce, and protect against adversarial AI threats.
November 6, 2025Source

Prowler embeds AI directly into security workflows
Prowler launched Prowler Lighthouse AI, an intelligent security assistant and MCP Server, that brings autonomous AI directly into DevSecOps workflows.
November 6, 2025Source

Report: Nevada State Hackers Evaded Detection for Months
Statewide Breach Hit 60 Agencies Before Ransomware Was Deployed
November 6, 2025Source or Source or Source or Source or Source or Source or Source

Russia-linked hackers intensify attacks as global APT activity shifts
State-aligned hacking groups have spent the past six months ramping up espionage, sabotage, and cybercrime campaigns across multiple regions, according to ESET's APT Activity Report covering April 27through September 2025. The research highlights how operations linked to Russia, China, Iran, and North Korea have evolved in scope and technique, showing that nation-state activity remains a constant source of disruption.
November 6, 2025Source

Russia's Destructive Wiper Attacks on Ukraine Rise Again
Nation-State Teams Tied to Grain Sector Targeting, Plus More Joined-Up Operations
November 6, 2025Source

Sandworm hackers use data wipers to disrupt Ukraine's grain sector
Russian state-backed hacker group Sandworm has deployed multiple data-wiping malware families in attacks targeting Ukraine's education, government, and the grain sector, the country's main revenue source.
November 6, 2025Source

SonicWall fingers state-backed cyber crew for September firewall breach
Spies, not crooks, were behind digital heist -- damage stopped at the backups, says US cybersec biz
November 6, 2025Source or Source

State-Sponsored Hackers Stole SonicWall Cloud Backups in Recent Attack
The threat actor stole the firewall configuration files of all SonicWall customers who used the cloud backup service.
November 6, 2025Source

Team Cymru RADAR investigates external infrastructure in real time
Team Cymru announced RADAR, a new real-time discovery module designed to give threat analysts visibility into all internet-facing infrastructure, whether known or unknown, without waiting on asset inventories, third-party scans, or compliance-oriented tools.
November 6, 2025Source

Truffle Security Raises $25 Million for Secret Scanning Engine
The investment will fuel the development of Truffle's enterprise-grade secrets detection, verification, and remediation platform.
November 6, 2025Source

Why Microsegmentation Is Just a Dream for Many IT Teams
Audit Issues, Policy Debt and Limited Project Scope Are Hampering Adoption
November 6, 2025Source

Wipers from Russia's most cut-throat hackers rain destruction on Ukraine
Sandworm and other Russian-state hackers unleash data-destroying payloads on their neighbors.
November 6, 2025Source

You'll never guess what the most common passwords are. Oh, wait, yes you will
Most of you still can't do better than 123456?
November 6, 2025Source

Internet — Security Issues — November 5th, 2025

2 Ex-Cyber Specialists Indicted for Alleged BlackCat Attacks
DOJ: Suspects Hit 5 Firms, Including 3 in Healthcare, Netted $1.3M in Ransom Money
November 5, 2025Source or Source or Source or Source or Source

18 arrested in €300 million global credit card fraud scheme
A coordinated international operation has led to 18 arrests in a massive credit card fraud case worth at least €300 million. The effort, led by Eurojust, targeted a network of suspects accused of running fake online subscription services for dating, pornography, and streaming sites. Among those detained were five executives from four German payment service providers.
November 5, 2025Source

81 percent of security teams lack visibility into AI coding
While AI adoption is now nearly universal, governance and visibility have failed to keep pace, according to a new report from Cycode.
November 5, 2025Source

82 percent of finserv organizations suffered a data breach in the last year
A new report, based on a global survey of 250 decision makers at large financial services organizations of over 5,000 employees, shows that 82 percent have suffered a data breach via cyberattack, or a data leak, an unintentional exposure of sensitive data, in the past year.
November 5, 2025Source

AI makes holiday shopping scams harder to spot
As we approach the busiest time of the year for online shopping, scammers and phisherfolk are also preparing for a seasonal bonanza. 1Password has surveyed 2,000 American adults to learn how people are protecting themselves -- or not -- from phishing scams.
November 5, 2025Source

AI SOC Agents Slash Alert Response Time, Study Shows
Cloud Security Alliance's Troy Leach on How AI Helps SOC Analysts Move 61% Faster
November 5, 2025Source or Source or Source or Source or Source

AMD red-faced over random-number bug that kills cryptographic security
Local privileges required to exploit flaw in Ryzen and Epyc CPUs. Some patches available, more on the way
November 5, 2025Source

Anna's Archive now accounts for 5% of all URLs reported to Google for takedown
The piracy website, Anna's Archive, has achieved a pretty interesting goal. It only came onto the scene three years ago, but because of its success in the book piracy scene, publishers have been sending an enormous amount of takedown requests to Google to make it harder to find books on the website.
November 5, 2025Source

Armis Raises $435 Million in Pre-IPO Funding Round at $6.1 Billion Valuation
Armis recently surpassed $300 million in annual recurring revenue as it prepares for an IPO.
November 5, 2025Source

Australia adds Reddit and Kick to social media platforms banning children under 16
Australia has added message board Reddit and livestreaming service Kick to its list of social media platforms that must ban children younger than 16 from holding accounts.
November 5, 2025Source

Barracuda Assistant accelerates security operations
Barracuda Networks launched Barracuda Assistant, powered by Barracuda AI. Integrated into the BarracudaONE cybersecurity platform, Barracuda Assistant accelerates security operations to help organizations strengthen cyber resilience and drive productivity and ROI.
November 5, 2025Source

CISA warns of critical CentOS Web Panel bug exploited in attacks
The U.S. Cybersecurity & Infrastructure Security Agency (CISA) is warning that threat actors are exploiting a critical remote command execution flaw in CentOS Web Panel (CWP).
November 5, 2025Source

CleanStart SBOM Analyzer strengthens software supply chain security
CleanStart has released its SBOM Analyzer, an add-on tool that generates complete, CISA-compliant Software Bills of Materials (SBOMs) for container images. The tool deepens visibility into software components and dependencies, helping organizations secure their supply chains before deployment.
November 5, 2025Source

ConductorOne Raises $79 Million in Series B Funding
Leveraging AI, ConductorOne's platform secures and manages millions of human, non-human, and AI identities.
November 5, 2025Source

Cops Cuff 18 Suspects Over $345M Credit Card Fraud Scheme
German Payment Processor Insiders Accused of Laundering Fake Subscription Proceeds
November 5, 2025Source or Source or Source

Critical Control Web Panel vulnerability is actively exploited (CVE-2025-48703)
On Tuesday, CISA added two vulnerabilities to its Known Exploited Vulnerabilities catalog: CVE-2025-11371, which affects Gladinet's CentreStack and Triofox file-sharing and remote access platforms, and CVE-2025-48703, a vulnerability in Control Web Panel (CWP), a web hosting control panel designed for managing servers running CentOS or CentOS-based distributions.
November 5, 2025Source

Cyber theory versus practice: Are you navigating with faulty instruments?
Picture this: you're at the helm of a sophisticated avionics suite, trusting every gauge and blinking light. Your flight plan is impeccable, air traffic control is on call, and your co‑pilot follows every procedure.
November 5, 2025Source

Daylight Raises $33 Million for AI-Powered MDR Platform
The funding will fuel the development of Daylight's security operations platform and the launch of new protection modules.
November 5, 2025Source

Deepwatch NEXA platform transforms MDR collaboration with agentic AI
Deepwatch has released Deepwatch NEXA, a collaborative agentic AI ecosystem that delivers outcome-focused agents to transform how MDR providers and customers work together. NEXA combines natural language interaction with agentic AI to provide real-time visibility, context, and actionable insights across the entire security lifecycle. This enables MDR providers and customers to detect, investigate, and respond to threats faster while shifting from reactive defense to proactive, business-aligned protection.
November 5, 2025Source

Did your logins just get leaked? How to check online for free (and what to do next)
Have I Been Pwned adds biggest trove of breaches, and no, Gmail wasn't hacked
November 5, 2025Source

Experts warn AI tools are fueling a rise in scams targeting older adults
Experts are warning that the rapid development and growing availability of artificial intelligence tools is leading to an alarming rise in cybercrimes targeting older adults. Since technology alone cannot stop social engineering, specialists suggest that seniors learn to recognize the recurring scam patterns that criminals have used for decades to steal money and personal data.
November 5, 2025Source

Exploited 'Post SMTP' Plugin Flaw Exposes WordPress Sites to Takeover
The critical vulnerability allows attackers to read arbitrary emails, including password reset messages.
November 5, 2025Source

Flare Raises $30 Million for Threat Exposure Management Platform
The company plans to advance its identity exposure management capabilities and pursue M&A opportunities.
November 5, 2025Source

Fortinet launches Secure AI Data Center to protect AI infrastructures end-to-end
Fortinet announced the Secure AI Data Center solution, an end-to-end framework purpose-built to protect AI infrastructures. Designed to secure the entire AI stack, from data center infrastructure to applications and LLMs, the solution delivers advanced AI threat defense with ultra-low latency and reduces power consumption on average by 69% compared to traditional approaches.
November 5, 2025Source

Google uncovers malware using LLMs to operate and evade detection
PromptLock, the AI-powered proof-of-concept ransomware developed by researchers at NYU Tandon and initially mistaken for an active threat by ESET, is no longer an isolated example: Google's latest report shows attackers are now creating and deploying other malware that leverages LLMs to operate and evade security systems.
November 5, 2025Source

Google warns of new AI-powered malware families deployed in the wild
Google's Threat Intelligence Group (GTIG) has identified a major shift this year, with adversaries leveraging artificial intelligence to deploy new malware families that integrate large language models (LLMs) during execution.
November 5, 2025Source

Have I Been Pwned adds biggest trove of breaches, and no, Gmail wasn't hacked
Have I Been Pwned, the website that lets you know if your data was involved in any breaches, has processed and indexed the largest corpus of breached data in its history. The batch is known as the Synthient Credential Stuffing Threat Data. It features almost two billion email addresses and 1.3 billion passwords, 625 million of which have never been seen by HIBP before.
November 5, 2025Source

Here's what the redesigned Google Photos and Maps icons look like
The company's bringing similar changes made to its AI and the "G" logo to more apps.
November 5, 2025Source

Hyundai AutoEver America data breach exposes SSNs, drivers licenses
Hyundai AutoEver America is notifying individuals that hackers breached the company's IT environment and gained access to personal information.
November 5, 2025Source

Immigration Database Pressed by DHS Into Voter Verification
DHS Plans to Expand SAVE Database Use to Raise Privacy, Accuracy, Security Concerns
November 5, 2025Source or Source or Source or Source

Implementing runtime security for the cloud [Q&A]
Cloud-native platforms are built for speed with ephemeral workloads, rapid deployments, and plenty of third-party app dependencies.
October 31, 2025Source

In Other News: WhatsApp Passkey-Encrypted Backups, Russia Targets Meduza Malware, New Mastercard Solution
Other noteworthy stories that might have slipped under the radar: several interesting Android malware families, UN cybercrime treaty, criminal complaint against Clearview AI in Europe.
October 31, 2025Source

Jamf to Go Private Following $2.2 Billion Acquisition by Francisco Partners
The private equity firm will purchase the outstanding shares of Jamf common stock for $13 per share in an all-cash transaction.
October 31, 2025Source

Japan Issues OT Security Guidance for Semiconductor Factories
The 130-page document covers several important aspects and it's available in both Japanese and English.
October 31, 2025Source

Keeping Revenue Forecasts From Becoming Legal Liabilities
Why the Fortinet Earnings Case Is a Cautionary Tale for the Cybersecurity Sector
October 31, 2025Source or Source or Source or Source or Source

Layered Defences are Key to Combating AI-Driven Cyber Threats, CNCF Report Finds
The Cloud Native Computing Foundation has published an analysis of modern cybersecurity practices, finding that attacks using Artificial Intelligence are now a significant threat. The report highlights the criticality for organisations to adopt multi-layered defence strategies as artificial intelligence transforms both the threat landscape and the protective measures available to businesses.
October 31, 2025Source

New Threads Tools Let You Approve and Filter Replies
Threads gets a new Reply Approval tool, which allows you to choose which replies appear publicly on your posts before anyone else can see them. This will allow you to keep the discussion on topic. Then there's also an option to filter replies from people you follow, or those that include mentions.
October 31, 2025Source

Open VSX Downplays Impact From GlassWorm Campaign
Open VSX fully contained the GlassWorm attacks and says it was not a self-replicating worm in the traditional sense.
October 31, 2025Source

Pornhub records big drop in UK traffic thanks to Online Safety Act
Earlier this year, the UK put into effect the Online Safety Act to protect children from online harms, including pornographic content. Now, Pornhub claims that its site's traffic is down 77% compared to July when the OSA was brought in. According to data from Ofcom, visits to porn sites in general in the UK have fallen by almost a third in the three months since the law came into effect.
October 31, 2025Source

Proton VPN Promises Major Improvements in Its Fall and Winter Updates
The popular VPN service says it's adding new free server locations and a fresh VPN architecture.
October 31, 2025Source

Ransomware gang runs ads for Microsoft Teams to pwn victims
You click and think you're getting a download page, but get malware instead
October 31, 2025Source

Searchlight Cyber Buys Intangic to Help Quantify Cyber Risk
European Startup Acquisition Aims to Unify Technical and Financial Cyber Insights
October 31, 2025Source or Source or Source or Source or Source

Surfshark versus Proton VPN: Two of the Best VPNs Compared
Both VPNs are well-rounded, but offer different privacy selling points. Your choice will depend on whether you want critical privacy protections or innovative features.
October 31, 2025Source

Ukrainian extradited from Ireland on Conti ransomware charges
A Ukrainian national believed to be a member of the Conti ransomware operation has been extradited to the United States and faces charges that could get him 25 years in prison.
October 31, 2025Source

Ukrainian Man Extradited From Ireland to US Over Conti Ransomware Charges
Oleksii Oleksiyovych Lytvynenko is now in the US after being held in custody in Ireland since 2023.
October 31, 2025Source

Unpatched Windows vulnerability continues to be exploited by APTs (CVE-2025-9491)
A Windows vulnerability (CVE-2025-9491, aka ZDI-CAN-25373) that state-sponsored threat actors and cybercrime groups have been quietly leveraging since at least 2017 continues to be exploited for attacks.
October 31, 2025Source

'We got hacked' emails threaten to leak University of Pennsylvania data
The University of Pennsylvania suffered a cybersecurity incident on Friday, where students and alumni received a series of offensive emails from various University email addresses, claiming that data was stolen in a breach.
October 31, 2025Source

Windows zero-day actively exploited to spy on European diplomats
A China-linked hacking group is exploiting a Windows zero-day in attacks targeting European diplomats in Hungary, Belgium, and other European nations.
October 31, 2025Source

Why password controls still matter in cybersecurity
In January 2024, Russian hackers broke into Microsoft's systems by slipping past what many believed was an ironclad security setup. The attack proved that even with multiple layers of protection, passwords often remain the weakest link in network security.
October 31, 2025Source

WordPress Anti-Malware Plugin Flaw Exposes 100K Sites To An Alarming Security Threat
A new threat in is the wild affecting sites that run WordPress, a popular content management system. Wordfence, a company that focuses on security research in the WordPress ecosystem, is reporting that a vulnerability is affecting the Anti-Malware Security and Brute-Force Firewall plugin that's currently deployed on over 100,000 websites.
October 31, 2025Source

IT Failure Starts With Silence, Not Systems
Former DoE CIO Ann Dunkin on the Lack of Communication, Engagement in IT Projects
November 5, 2025Source

Komodor's self-healing capabilities remediate issues with or without a human in the loop
Komodor released autonomous self-healing and cost optimization capabilities that simplify operations for SRE, DevOps, and Platform teams managing large-scale Kubernetes environments.
November 5, 2025Source

M&S pegs cyberattack cleanup costs at £136M as profits slump
Retailer's tech systems aren't down anymore, but the same can't be said for its rocky financials
November 5, 2025Source

Malanta Emerges From Stealth With $10 Million Seed Funding
Why people don't demand data privacy, even as governments and corporations collect more personal information
November 5, 2025Source

Malware Developers Test AI for Adaptive Code Generation
Google Details How Attackers Could Use LLMs to Mutate Scripts
November 5, 2025Source or Source or Source or Source or Source

Malware Now Uses AI During Execution to Mutate and Collect Data, Google Warns
Google has released a report describing the novel ways in which malware has been using AI to adapt and evade detection.
November 5, 2025Source

New ExtraHop capabilities target malicious PowerShell use across enterprise environments
ExtraHop has announced new capabilities to detect the malicious use of PowerShell. These enhancements provide the visibility needed to disrupt the attack kill chain and deliver insight to stop lateral movement in its tracks.
November 5, 2025Source

Nikkei Says 17,000 Impacted by Data Breach Stemming From Slack Account Hack
The Japanese media giant says compromised Slack credentials were used to steal employee and business partner information.
November 5, 2025Source

Over 42 Million Malicious Android Apps Downloaded from Google Play — Here's What You Need to Know
Google spokesperson reached out with a statement regarding this report. Here's what the company has to say: "User protection against these identified malware versions was already in place through Google Play Protect prior to this report. Based on our current detection, no apps containing these versions of this malware are found on Google Play. We're constantly enhancing our protections to help keep users safe from bad actors."
November 5, 2025Source

Police busts credit card fraud rings with 4.3 million victims
International authorities have dismantled three massive credit card fraud and money laundering networks, linked to losses exceeding €300 million ($344 million) and affecting over 4.3 million cardholders across 193 countries.
November 5, 2025Source

Portal26 Raises $9 Million for Gen-AI Adoption Platform
The gen-AI adoption management platform will invest the funds in accelerating growth and product innovations.
November 5, 2025Source

r/Im14andthisisbanned: Australia Adds Reddit to No-Go List for Kids
The country will also prevent under-16s from using Kick.
November 5, 2025Source

SonicWall says state-sponsored hackers behind September security breach
SonicWall's investigation into the September security breach that exposed customers' firewall configuration backup files concludes that state-sponsored hackers were behind the attack.
November 5, 2025Source

Starting Over in Cybersecurity: Advice I Wish I'd Had
Learn the Business, Be Intentional, Find a Mentor and Build Non-Technical Skills
November 5, 2025Source or Source or Source or Source

University of Pennsylvania confirms data stolen in cyberattack
The University of Pennsylvania has confirmed that a hacker breached numerous internal systems related to the university's development and alumni activities and stole data in a cyberattack.
November 5, 2025Source

University of Pennsylvania confirms hacker stole data during cyberattack
The University of Pennsylvania confirmed on Tuesday that a hacker stole university data as part of last week's data breach, during which alumni and other affiliates received suspicious emails from official university email addresses.
November 5, 2025Source

Unpatched Windows Flaw a Boon for Nation-State Hackers
Chinese Hackers Target European Diplomats With LNK File Flaw
November 5, 2025Source or Source

US sanctions North Korean bankers linked to cybercrime, IT worker fraud
The U.S. Treasury Department imposed sanctions on two North Korean financial institutions and eight individuals involved in laundering cryptocurrency stolen in cybercrime and fraudulent IT worker schemes.
November 5, 2025Source

What factors determine the severity and outcomes of cyberwarfare between countries?
Cyberwarfare between nation states has become increasingly common in recent years. To address several important questions that this phenomenon raises, scientists developed a game theoretical model of cyberwarfare between nations.
November 5, 2025Source

Why people don't demand data privacy, even as governments and corporations collect more personal information
Despite widespread concern about data privacy, most individuals feel powerless to influence how their information is used, leading to passive acceptance of data collection by governments and corporations. This sense of helplessness, termed data disaffection, is reinforced by inadequate regulations, convoluted consent processes, and cultural narratives that portray data misuse as inevitable.
November 5, 2025Source

Internet — Security Issues — October 31st, 2025

AI blew open software security, now OpenAI wants to fix it with an agent called Aardvark
AI promises to find bugs and gaps in your apps
October 31, 2025Source

Alleged Meduza Stealer malware admins arrested after hacking Russian org
The Russian authorities have arrested three individuals in Moscow who are believed to be the creators and operators of the Meduza Stealer information-stealing malware.
October 31, 2025Source

Attackers dig up $11M in Garden Finance crypto exploit
Bitcoin bridge biz offers 10 percent reward to attackers if they play nice
October 31, 2025Source

Australia warns of BadCandy infections on unpatched Cisco devices
The Australian government is warning about ongoing cyberattacks against unpatched Cisco IOS XE devices in the country to infect routers with the BadCandy webshell.
October 31, 2025Source

Building Cyber Resilience Across Canada's Skies
NAV Canada CISO Tom Bornais on Keeping IT and OT Systems Running
October 31, 2025Source or Source or Source or Source or Source

Canada Warns of Cyberattacks Targeting Industrial Control Systems
Hackers breached Canadian water, energy, and farm systems, prompting national warnings to secure industrial control networks.
October 31, 2025Source

Chainguard Banks $280M for Global Open-Source Security Play
Non-Dilutive Funding From General Catalyst Supports Global Go-to-Market Push
October 31, 2025Source or Source or Source or Source or Source

Chinese APT Exploits Unpatched Windows Flaw in Recent Attacks
The Windows shortcut vulnerability has been seen in attacks conducted by Mustang Panda to drop the PlugX malware.
October 31, 2025Source

CISA Adds Exploited XWiki, VMware Flaws to KEV Catalog
Broadcom has updated its advisory on CVE-2025-41244 to mention the vulnerability's in-the-wild exploitation.
October 31, 2025Source

CISA and partners take action as Microsoft Exchange security risks mount
In partnership with international cybersecurity agencies, the US Cybersecurity and Infrastructure Security Agency (CISA) and the National Security Agency (NSA) outlined security best practices for organizations that use on-premises versions of Microsoft Exchange Server.
October 31, 2025Source

CISA: High-severity Linux flaw now exploited by ransomware gangs
CISA confirmed on Thursday that a high-severity privilege escalation flaw in the Linux kernel is now being exploited in ransomware attacks.
October 31, 2025Source

CISA: High-severity Linux flaw now exploited by ransomware gangs
CISA confirmed on Thursday that a high-severity privilege escalation flaw in the Linux kernel is now being exploited in ransomware attacks.
October 31, 2025Source

Court Finalizes HCA Data Breach Class Action Settlement
Multimillion Dollar Deal Resolves 27 Lawsuits After 2023 Email Storage Hack
October 31, 2025Source or Source or Source or Source or Source

Denmark Withdraws Chat Control Proposal Amid Controversy
Denmark Concedes Domestic and International Opposition Against Client Scanning
October 31, 2025Source or Source or Source or Source

ExpressVPN review: A premium service worth every penny
Top-of-the-line features and renowned privacy makes it one of the best.
October 31, 2025Source

FCC to rescind ruling that said ISPs are required to secure their networks
FCC chair to rely on ISPs' voluntary commitments instead of Biden-era ruling.
October 31, 2025Source

Government hackers breached telecom giant Ribbon for months before getting caught
U.S. telecommunications giant Ribbon has confirmed that government-backed hackers had access to its network for almost a year before getting caught, according to a public filing.
October 31, 2025Source

Hackers threaten to leak data after breaching University of Pennsylvania to send mass emails
On Friday morning, University of Pennsylvania alumni, students, staff, and community affiliates received several emails from hackers purporting to represent the university's Graduate School of Education (GSE).
October 31, 2025Source or Source

How to Fix Decades of Technical Debt
Global Tech Debt Impedes Growth as AI, Cloud and Legacy Systems Collide
October 31, 2025Source or Source or Source or Source or Source

ImmuniWeb Continuous now enables always-on, AI-powered security testing
ImmuniWeb has unveiled an upgraded version of ImmuniWeb Continuous, designed for continuous penetration testing and 24/7 automated vulnerability scanning of web applications, APIs, and microservices.
October 31, 2025Source

Internet — Secuirty Issues — Miscellaneous

Adaptive Research & Design Co.
data recovery from crashes, viruses, electrical surges, and sabotage, on hard and floppy drives under any operating system.
Provides a ServiceSource

Anti-Phishing Working Group
Committed to wiping out Internet scams and fruad.
An ArticleSource

Catapult Integrated Systems
is a premier systems integrator and commercial managed Internet services provider serving northern California since 1992.
Provides a ServiceSource

Data Security
Seclore is an information rights management company which helps to protect documents and information by preserving enterprise rights management.
Provides a ServiceSource

European Institute for Computer Anti-Virus Research (EICAR)
leads task forces, organizes conferences, and publishes documents.
Provides InformationSource

Leprechaun Software
develops VirusBUSTER, an anti-virus software that protects PCs from boot, program, macro, and email based viruses.
Provides InformationSource

Packet Analytics
Net/FSE, Packet Analytics' network data search engine, puts the power of real time searches over terabytes of NetFlow data in the hands of security analysts. Employing sophisticated algorithms, Net/FSE reduces exposure to significant business risk by enabling security specialists to quickly and determine the extent of a network alert.
Provides a ServiceSource

PhishTank
Out of the Net, into the Tank.
Provides a ServiceSource

Remove Windows Script Hosting
completely from your system.
Provides InformationSource

SecureList
Kaspersky Lab presents Lab Matters, a series of webcasts that get right to the heart of some of the IT security industry's hottest topics. in the first program, two of the company's leading antimalware experts, Costin Raiu and Magnus Kalkuhl, will be giving viewers the complete lowdown on targeted attacks and discussing a host of other fascinating topics.
Provides InformationSource

Stiller Research
We provide current anti-virus news, a list of myths regarding viruses, a virus information list and a list of in-the-wild viruses.
Provides InformationSource

Symantec Security Updates
library of documents on computer viruses including the top ten list of most common viruses and new viruses to be on the alert for, as well as general virus Q&Amp;A.
Provides InformationSource

Virus Alert
for GOOD TIMES, read about these fake viruses.
Provides InformationSource

VirusTotal
VirusTotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines.
Provides a ServiceSource

The MerchantStore © 1997 — 2026