[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] Cybersecurity Outlook 2027
Apple Zero-Day Vulnerability Weaponized in Targeted Attacks
Unsloth Studio Flaw Turns Routine Model Inspection Into Code Execution
Cloudflare Announces Public Certificate Authority for the Post-Quantum Web
'NeedyMantis' Provides Long-Term Access to Compromised Networks
Dual NetScaler Zero-Days Trigger Chaos for Citrix Customers
Nvidia Launches AI Agent Safety Platform to Prevent Rogue Activities
One Packet Can Crash OT Servers in Industrial Sectors
Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts
AI Agents Are Privileged Users; Who Is Auditing Their Access?
Ars Technica
Your uncle’s frozen Mac says it’s infected after viewing a Google ad. Now what?
There's a new way to break RSA that's faster than anything we've seen before
Microsoft disrupts AI-assisted platform that compromised 12,000 accounts
IT mistake erases 11 years of viewing history for hospitals’ maternity records
Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day
An undercover Google analyst infiltrated a notorious supply-chain hacking gang
LLMs respond differently to harmful prompts when AI watermarking is used
Nonprofit that tracks meteors taken down by "critical blow" from a cyberattack
AI bots "Timmy," "Ren," and "Jackie" are flooding social media with slop
ClickFix attacks infecting PCs and Macs are going viral
CyberScoop
Attackers exploited Citrix NetScaler zero-day for at least three weeks undetected
Russian hackers Star Blizzard expand targeting, change up tactics to reach Ukraine and beyond
US is looking to weave AI into critical infrastructure for cybersecurity, national cyber director says
Alleged ShinyHunters leader arrested in the Netherlands
Kiteworks lifts shutdown advisory after ‘credible threat intelligence’ from federal authorities
Citrix patches actively exploited NetScaler zero-days after a weekend of unofficial warnings
As AI world debates security, NVIDIA releases open source tools for agents
ShinyHunters trades financial extortion for a reckless war of ego with the FBI
Army soldier sentenced for spree of attacks on AT&T, Snowflake and other major companies
Supreme Court permits states to use SAVE database for citizenship checks
InfoSecurity Magazine
RatHat's Evolving C2 Panel Points to Malware-as-a-Service Model
Amazon Bedrock AgentCore Flaws Could Expose AWS Credentials
Microsoft Warns NeedyMantis Malware Enables Persistent Network Access
Japanese Railway Operators Hit with Weekend Cyber Attacks
Kiteworks Urges Customers to Restart Systems After Shutdown Notice
Bitget Restarts Bitcoin Withdrawals Following $387.5m Wallet Breach
NVIDIA Launches Open Platform to Secure Autonomous AI Agents
Deepfakes Are Becoming a Costly Reality for Businesses, Report Warns
MCP Is Creating Major Governance Gaps, Researchers Warn
Citrix Patches Critical Zero Days Under Active Exploitation
SecurityWeek
OpenAI CEO Announces New AI Agent and Avoids Mention of Security Concerns at Developer Conference
DARPA Selects Xint to Use AI in Securing Military Messaging Apps
New Spectre v2 Variant Exposes Intel, AMD, Arm CPUs to Data Leaks
RemoteThreat Launches With $7 Million for Offensive Operations Platform
Reco Raises $55 Million for Agentic Security
Hackers Use ChatGPT Custom GPTs in ClickFix Attacks
Pentagon Personnel Agency Data Breach Impacts 3 Million People
Rig Security Emerges From Stealth With $12M to Tackle Agentic AI Identity Risks
Four Cyber Threats Harboring Big Plans for the Future
OpenAI Calls Off GPT-6.1 Astra Launch, Details Safety Cases for Frontier Training
ZDNet
LLMjacking can run up your business’ AI bill fast – how to stop it
Is ChatGPT your new Google Workspace alternative? Meet Space, Pages, and slides
Get Kindle Unlimited free for 3 months with this early Prime Day deal
iOS 27.0.1 released: Apple fixes annoying iPhone 18 Pro restart and freezing issues
Bose’s new wired earbuds aim for the same great sound and ANC – no charging needed
Your Bose headphones are getting a major Bluetooth upgrade – what to expect
This one WatchOS 27 feature just solved my biggest issue with Apple Watch
Your LG TV is constantly collecting your data – here’s how to stop it
Microsoft’s new Copilot app puts everything in one place – but the price is ‘evolving’
Google Wallet got a lot of new tricks in 2026 – these 5 are my favorites
The Hacker News
French Tax Data Theft Using Stolen Staff Passwords Went Undetected for Seven Weeks
New Spectre-v2 BTR Attack Leaks Linux Memory Despite Existing Defenses
Russia's Star Blizzard Targets 100+ Organizations With Fake Event Invites to Deliver Backdoor
Kiteworks Fixes Critical Flaw Found During Nine-Hour Precautionary Shutdown
101 Malicious npm Packages Add Developers' WhatsApp Accounts to Groups Without Consent
Dutch Police Arrest 24-Year-Old Amsterdam Man in ShinyHunters Investigation
Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials
OpenAI Shelves GPT-6.1 Astra After Tests Find Deception and Unauthorized Actions
OpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External Chatbot
Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks
BleepingComputer
Signal adds encypted local backup support to iOS, desktop apps
Custom ChatGPTs push ClickFix attacks to deploy RAT malware
FBI tells ShinyHunters members to turn themselves in after recent arrest
Hackers exploit Citrix NetScaler zero-day to deploy web shells
Former US Air Force members sent to prison over BEC attacks
Windows 11 2026 Update released, here's everything you need to know
New Spectre v2 attack variant leaks Linux root password hash in minutes
Automated AI agent used to breach cybersecurity nonprofit DIVD
Catch threats before they escalate with real-time Identity Telemetry
Vietnamese man charged in $16 million 'pig butchering' crypto scam
gbhackers
OpenAI Cancels GPT-6.1 Astra Release Over Internal Safety Concerns
Anthropic MCP Python SDK Flaw Enables OAuth Credential Theft and Account Takeover
Octopus Server Flaw Lets Authenticated Attackers Execute Arbitrary Code
OpenSUpdater Malware Hides Inside 7-Zip Installers to Evade Detection
GPT-6 Astra Launches Unsanctioned Supply-Chain Attacks in Cyber Simulations
GitHub AI Agent Uncovers 24 Android App Vulnerabilities
New AI-Powered Botnet x47.c Steals Credentials and Drains AI Account Credits
OpenAI Model Gained Unauthorized Access to Australian Government Systems
wolfSSL 5.9.4 Patches 11 Security Flaws Affecting TLS and Certificate Validation
DPRK-Linked Hackers Add HashHiding to Blockchain C2 Network for Takedown-Resistant Malware
Cybersecurity Dive
Citrix NetScaler exploitation began days before public notification
Dotted Line: How construction is dealing with cybersecurity in the age of AI
GAO report spotlights industry’s concerns about overlapping cybersecurity regulations
Kiteworks lifts advisory after precautionary warning for customers to shut down systems
Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
Niche AI tools pose major cybersecurity risk to infrastructure operators
Your attack surface is bigger than you think… and hackers know that
Security testing has to keep pace with AI-driven attackers
Context matters when it comes to cybersecurity’s agentic operating model
Businesses expand AI’s cybersecurity uses as comfort with technology grows
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Add one more AI worry to the nightmare scenario: self-replicating prompt injections
FBI to ShinyHunters: 'We know how to find you'
Custom malware used in Citrix 0-day attacks targeting govt, banks, professional services
AI models keep posting screenshots showing sensitive data from inside tech companies
Apple patches CoreGraphics zero-day already exploited in targeted attacks
OpenAI benches GPT-6.1 Astra for overstepping the mark
Former X-Force hackers chase the offensive cyber gold rush
OpenAI’s dirty deeds Down Under included security bypass attempts, using exposed keys, source code siphon
JadePuffer crims hijacked Azure identities and used them to blow up cloud resources
Ex-soldier's telecom hacking spree earns him 70 months
VentureBeat
OpenAI’s new ‘Private Intelligence' targets a growing enterprise concern: who can see your AI data?
Anthropic documented a new problem for security teams: Attacks that can adapt while they're underway
The defender's head start is gone. Cisco's Liz Centoni on the fight to get it back
AI agents are exposing a security gap between the data they read and the systems they can change
AI agents have routed around access blocks. Only 9% of companies in VentureBeat's August survey isolate high-risk agents
Monorepos make coding agents more useful — but compromised accounts are harder to contain
AI coding tools are accelerating dependency sprawl and expanding malware risk with it
TechCrunch
Dutch police arrest ShinyHunters hacker accused of planning two murders
Still running iOS 26? Update your iPhones, iPads, and Macs for this urgent security fix
OpenAI apologizes to Australia after its AI agents breached government sites
Reco raises $55M as AI agent security startups crowd the market
Protego Ventures closes debut $125M fund for Israeli defense tech
FBI reportedly declares ‘cyber security incident’ after hackers steal agents’ personal data
Some Supabase customers are publicly exposing reams of people’s data to the web
Kiteworks urges customers to shut down their servers amid ‘imminent’ threat of cyberattack
North Korean hackers suspected in $351M crypto theft, the largest so far this year
Australia to investigate if OpenAI hack of government health website broke the law
Network World Security
AMD agrees to buy World Labs to fill out its AI stack
Why a network digital twin is the missing piece for AI-era operations
NetScaler admins told to patch critical zero-days in ADC and Gateway now
Tackling the three hidden mistakes when planning a GCC
Rewiring global capability centers for the AI era
Google’s first prototype satellite is going up, kicking off its space-based data center project
Can Nvidia’s GeForce gaming GPU really be repurposed for AI computing?
Meta floats project to lay first petabit submarine fiberoptic cable
IP Fabric 8.1 adds application-aware mapping and cloud-native data model
On-prem VeloCloud Orchestrator under attack, only some versions patched
Help Net Security
NetScaler zero-day exploitation escalates into mass attacks (CVE-2026-88771)
LastPass warns employees before they share sensitive data with AI tools
Postman adds security controls for AI agents, APIs, and MCP servers
Webinar: Closing the accountability gap in AI-assisted delivery
Meta gives small businesses an AI agent that knows their work
Vega II brings security-trained AI and lasting memory to the SOC
Deepfakes become a board priority once an executive falls for one
Malicious Custom GPT on chatgpt.com lures users into installing a RAT
OpenAI’s GPT-6 Astra ran supply chain attacks despite being told not to
Cybersecurity hiring practices leave little room for junior talent
SC Magazine
Venus in Furs, Money Laundering, AI Hijinx, MCP, Thunderbastard, and Aaran Leyland - SWN #620
SC Awards Celebrate 30 Years of Recognizing the People and Technology Advancing Cybersecurity
57% of security execs report challenges with onboarding entry-level staff
One gateway to govern them all: Bringing enterprise AI under control
Customer Identity and Access Management (CIAM): what it is and how it differs
Access control models: RBAC, ABAC, PBAC, DAC, and MAC compared
When identity governance fails, operations stop
Retired or just abandoned? Proving an API, version, or endpoint is actually gone
Architecture will decide who wins the agentic arms race
The hidden identity challenge of agentic AI
© 2026 RiskDiscovery | Sponsored by:
Deception Logic