[
News
|
Newsletters
|
Blogs
|
Reddits
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
North Korea Attacks South Koreans With Ransomware
Fortinet Products Are in the Crosshairs Again
Whispers of XZ Utils Backdoor Live on in Old Docker Images
Popular AI Systems Still a Work-in-Progress for Security
Patch Now: Attackers Target OT Networks via Critical RCE Flaw
What the LockBit 4.0 Leak Reveals About RaaS Groups
How an AI-Based 'Pen Tester' Became a Top Bug Hunter on HackerOne
China Questions Security of AI Chips From NVIDIA, AMD
Elevation-of-Privilege Vulns Dominate Microsoft's Patch Tuesday
Charon Ransomware Emerges With APT-Style Tactics
Ars Technica
Is AI really trying to escape human control and blackmail people?
OpenAI brings back GPT-4o after user revolt
Why it’s a mistake to ask chatbots about their mistakes
High-severity WinRAR 0-day exploited for weeks by 2 groups
The GPT-5 rollout has been a big mess
Encryption made for police and military radios may be easily cracked
It’s getting harder to skirt RTO policies without employers noticing
Adult sites are stashing exploit code inside racy .svg files
Google discovered a new scam—and also fell victim to it
OpenAI launches GPT-5 free to all ChatGPT users
CyberScoop
Russia restricts WhatsApp, Telegram calls, alleging criminal, terrorist activity
Fortinet SIEM issue coincides with spike in brute-force traffic against company’s SSL VPNs
The overlooked changes that two Trump executive orders could bring to cybersecurity
Patch the vulnerability: Confirm Sean Plankey as CISA director
Microsoft Patch Tuesday follows SharePoint attacks, Exchange server warnings
Guess what else GPT-5 is bad at? Security
SonicWall pins firewall attack spree on year-old vulnerability
Why cyber modernization requires partners with technical plus acquisition expertise
Researchers determine old vulnerabilities pose real-world threat to sensitive data in public clouds
FCC tightens rules on foreign firms building undersea cables, citing security
HITBSecNews
Found on VirusTotal: The world’s first UEFI bootkit for Linux
OpenAI is at war with its own Sora video testers following brief public leak
North Korean hackers posing as IT workers steal over $1B in cyberattack
WhatsApp: NSO Group Operates Pegasus Spyware for Customers
Korea extradites Russian, Vietnamese suspects linked to $16M ransomware scheme
CISA Director Jen Easterly, in Place Since 2021, to Step Down
Man sick of crashes sues Intel for allegedly hiding CPU defects
North Korean hackers target cryptocurrency with malware
Law enforcement operation takes down 22,000 malicious IP addresses worldwide
Youth of today say passwords are old news, passkeys are the future
ZDNet
How AI startups are scaling revenue 'faster than any other companies in cloud history' - and what's next
I tried this tiny 360° camera drone, and it could be a game-changer for creators
This people search site is back after a massive breach - how to remove your data from it ASAP
I converted this Windows 11 mini PC into a Linux work station - and didn't regret it
The best streaming lights of 2025: Expert tested for Twitch, TikTok, and YouTube
Changing these 6 settings on my iPad improved the battery life by hours
The best TV screen cleaners of 2025: Expert recommended
I did not expect these $100 headphones to outperform my Marshall and JBL like this
My favorite lens and screen-cleaning kit keeps my tech smudge-free, and it costs $8
Samsung Galaxy S25 Ultra vs. iPhone 16 Pro Max: We tested both, and here's the winner
The Hacker News
Have You Turned Off Your Virtual Oven?
New Android Malware Wave Hits Banking via NFC Relay Fraud, Call Hijacking, and Root Exploits
Simple Steps for Attack Surface Reduction
Google Requires Crypto App Licenses in 15 Regions as FBI Warns of $9.9M Scam Losses
CISA Adds Two N-able N-central Flaws to Known Exploited Vulnerabilities Catalog
New PS1Bot Malware Campaign Uses Malvertising to Deploy Multi-Stage In-Memory Attacks
Zoom and Xerox Release Critical Security Updates Fixing Privilege Escalation and RCE Flaws
Fortinet Warns About FortiSIEM Vulnerability (CVE-2025-25256) With In-the-Wild Exploit Code
AI SOC 101: Key Capabilities Security Leaders Need to Know
Webinar: What the Next Wave of AI Cyberattacks Will Look Like — And How to Survive
BleepingComputer
Leak: OpenAI's browser will use ChatGPT Agent to control the browser
CISA warns of N-able N-central flaws exploited in zero-day attacks
Microsoft fixes Windows 11 24H2 updates failing with 0x80240069 error
Google Gemini's Deep Research is finally coming to API
OpenAI relaxes GPT-5 rate limit, promises to improve the personality
Fortinet warns of FortiSIEM pre-auth RCE flaw with exploit in the wild
Windows 11 24H2 updates failing again with 0x80240069 errors
New downgrade attack can bypass FIDO auth in Microsoft Entra ID
Spike in Fortinet VPN brute-force attacks raises zero-day concerns
Pennsylvania attorney general's email, site down after cyberattack
Cybersecurity Dive
CISA, Microsoft update guidance on Exchange Server vulnerability
US agencies, international allies issue guidance on OT asset inventorying
Xerox patches critical vulnerability in FreeFlow Core application
Financial impact from severe OT events could top $300B
Citrix NetScaler flaws lead to critical infrastructure breaches
DOJ, international partners take down BlackSuit group’s infrastructure
Research shows AI agents are highly vulnerable to hijacking attacks
Cyber experts ponder a non-government future for the CVE program
DARPA touts value of AI-powered vulnerability detection as it announces competition winners
Financially motivated cluster a key player in ToolShell exploitation
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Law and water: Russia blamed for US court system break-in and Norwegian dam drama
Italian hotels breached en masse since June, government confirms
Stock in the Channel pulls website amid cyberattack
The £9 billion question: To Microsoft or not to Microsoft?
Fortinet discloses critical bug with working exploit code amid surge in brute-force attempts
Crooks can't let go: Active attacks target Office vuln patched 8 years ago
UK expands police facial recognition rollout with 10 new vans heading to a town near you
Marc Andreessen wades into the UK's Online Safety Act furor
Microsoft wares may be UK public sector's only viable option
Secure chat darling Matrix admits pair of 'high severity' protocol flaws need painful fixes
VentureBeat
The end of perimeter defense: When your own AI tools become the threat actor
Claude can now process entire software projects in single request, Anthropic says
Study warns of security risks as ‘OS agents’ gain control of computers and phones
Black Hat 2025: Why your AI tools are becoming the next insider threat
Anthropic ships automated security reviews for Claude Code as AI-generated vulnerabilities surge
Anthropic’s new Claude 4.1 dominates coding tests days before GPT-5 arrives
ChatGPT rockets to 700M weekly users ahead of GPT-5 launch with reasoning superpowers
Shadow AI adds $670K to breach costs while 97% of enterprises skip basic access controls, IBM reports
Nightfall launches ‘Nyx,’ an AI that automates data loss prevention at enterprise scale
How can enterprises keep systems safe as AI agents join human employees? Cyata launches with a new, dedicated solution
TechCrunch
How we found TeaOnHer spilling users’ driver’s licenses in less than 10 minutes
Russian government hackers said to be behind US federal court filing system hack: Report
Hackers breach and expose a major North Korean spying operation
US government seized $1M from Russian ransomware gang
Electronic Arts blocks more than 300,000 attempts to cheat after launching Battlefield 6 beta
Security flaws in a carmaker’s web portal let one hacker remotely unlock cars from anywhere
After researchers unmasked a prolific SMS scammer, a new operation has emerged in its wake
Data breach at French telecom giant Bouygues affects millions of customers
TeaOnHer, a rival Tea app for men, is leaking users’ personal data and driver’s licenses
Citizen Lab director warns cyber industry about US authoritarian descent
Network World Security
Cisco Q4 results: AI infrastructure orders surpass goal
SonicWall rolls out eight new firewalls, expands cyber warranty
Cisco strengthens AI networking story
DEF CON research takes aim at ZTNA, calls it a bust
New Compute Exchange service answers GPU pricing queries
Trump meets with Intel CEO after calling for his resignation
Data center sustainability efforts stall slightly in 2025
2025 global network outage report and internet health check
Arista’s latest networking results: 4 critical takeaways
Critical SSH vulnerabilities expose enterprise network infrastructure as patching lags
Help Net Security
For $40, you can buy stolen police and government email accounts
Vulnerabilities in MSP-friendly RMM solution exploited in the wild (CVE-2025-8875, CVE-2025-8876)
Brivo Visitor Management, powered by Envoy, boosts front-desk security
AI security governance converts disorder into deliberate innovation
Open-source flow monitoring with SENSOR: Benefits and trade-offs
The top CTEM platforms you should know in 2025
Free courses: Master AI tools from Microsoft, AWS, and Google
AI is changing Kubernetes faster than most teams can keep up
Croatian research institute confirms ransomware attack via ToolShell vulnerabilities
NIST finalizes lightweight cryptography standard for small devices
InfoSecurity Magazine
FBI Shares Tips to Spot Fake Lawyer Schemes Targeting Crypto Scam Victims
Hacked Law Enforcement and Government Email Accounts Sold on Dark Web for $40
Fortinet Warns Exploit Code Available for Critical Vulnerability
Campaigners Slam Expansion of Police Facial Recognition Schemes in UK
Erlang/OTP SSH Vulnerability Sees Spike in Exploitation Attempts
Deepfake AI Trading Scams Target Global Investors
Staffing Company Manpower Discloses Data Breach
St. Paul’s Mayor Confirms Interlock Data Leak
US Authorities Seize $1m from BlackSuit Ransomware Group
Microsoft Fixes Over 100 CVEs on August Patch Tuesday
© 2025 RiskDiscovery | Sponsored by:
Deception Logic