[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Calling on Cyber Pros to Help Defend City Hall
OpenAI Adds Controls That Should've Been There Already
New CUSTODY Framework Constrains AI Agents Inside the Network
What We Missed: Delta Flight Disrupted With Wi-Fi Hack
N-able Bug Exposes Password Vault Master Keys
Money and Mindset: The Two Biggest Roadblocks to Cyber Policing
Pakistan's Transparent Tribe Refreshes Toolset for Afghan Cyberattacks
'Grandoreiro' Malware Resurfaces With Mexico Campaign
No-Filter 'Kriminal' AI Platform Raises Cybercrime Concerns
Agentic AI Presents New Insider Threat Model for Orgs
Ars Technica
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
PBS station fears losing 50TB of data after being ghosted by cloud storage provider
OpenAI and Anthropic in price war as Chinese AI rivals gain ground
Private security firms will soon be allowed to hack overseas cybercriminals
Terabytes of credentials leaked in massive supply-chain attack
DEF CON crowd suspected in fake-hotspot attack on Delta flight
Chrome adopts what may be the best protection yet against account takeovers
CyberScoop
Lawmakers seek watchdog review of federal hacking of Americans
Early 764 member sentenced to 77 years, longest prison term to date for a nihilistic violent extremist
Retail theft bill spurs ‘very large and very dangerous’ surveillance fears
The push to designate AI as the next critical infrastructure sector
AI-fueled attacks pose ‘active threat’ to water, other sectors, U.S. agencies warn
A California county wants to hire Tina Peters to help run its elections
The long tail of Clop’s PTC hack is just beginning to emerge
Eight years later, federal authorities re-up charges against alleged Iranian hackers at Mabna Institute
Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics
Details emerge on BlackFile’s recent attacks on financial companies
InfoSecurity Magazine
North Korean Hackers Tied to Rust Supply Chain Attack
New Agent Tesla Malware Variant Boosts Evasion Capabilities
Cybersecurity Job Ads Requiring AI Skills Double
NCSC Urges Stronger Controls for Agentic AI Systems
US Defense Contractors Admit Their Rising CMMC Scores May Not Be Accurate
ICS Operators Warned of AI-Driven Attacks on Siemens PLCs
Updated ToxicPanda Variant Targets 140+ Banking and Crypto Apps
Def Con Attendees Targeted by Persistent Phishing Campaign
Exclusive: Linux Foundation's Akrites to Go Live in September
MaaS Campaign Combines ClickFix, ErrTraffic and Cruciferra
SecurityWeek
In Other News: Zombie Card Attack, T-Mobile Cut Cable to Stop Hackers, GitHub Denies AI Caused Bug
Encrypted Prompts Bypass AI Safety Guardrails in Grok and Gemini
New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets
Critical Isolated-vm Vulnerability Leads to RCE on Host
Rust Supply Chain Attack Linked to North Korean Hackers
Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind
Microsoft Patches Exploited Entra ID Vulnerability
CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities
Hackers Target Zimbra Servers in Active Exploitation Campaign
Surveillance – Everything You Wanted to Know, But Were Afraid to Ask
ZDNet
I tried the free Wispr Flow voice dictation tool everyone's talking about - and I'm hooked
A low-tech solution from the past may be your best defense against AI deepfakes
The best large tablets of 2026: Expert tested and reviewed
China joins Europe in scrapping Windows for Linux
The best small tablets of 2026: Expert tested and reviewed
Google Pixel Watch 5 vs. Garmin Fenix 8 Pro: Which has more accurate GPS?
After one week wearing the Pixel Watch 5, here's what I want most
Apple's smart home springs a leak - here's everything we expect to see in September
Why replacing staff with AI backfires - and 5 ways smart leaders generate real value instead
The LG C6 OLED TV is one of the most impressive TVs I've tested year - and it's on sale
The Hacker News
Wazuh and AI For Enhanced SOC Workflows
Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure
Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution
Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads
Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts
ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit, and More
AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure
New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data
Isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for Potential RCE
BleepingComputer
Microsoft blames Windows gaming issues on RGB lighting devices
Is Online Privacy Possible? How Digital Identities Can Help
Microsoft rolls out Classic Outlook theme for New Outlook users
CISA orders feds to patch actively exploited TrueConf Server flaws
Microsoft warns of max severity Entra ID flaw exploited in attacks
Hackers abuse FTP server banners to deliver new Windows malware
SickKids data breach exposes employee and job applicant info
Hackers poison arrayref Rust crate to push infostealer malware
Critical Elementor Pro bug exposes WordPress sites to RCE attacks
How MSPs can catch phishing attacks email filters miss
gbhackers
US Bank Investigates Alleged Data Breach After LockBit Ransomware Extortion Claim
Deepfake Ads Funnel Investors Into WhatsApp Groups Controlled by Fake Financial Analysts
UAT-10147 Compromises Web Servers to Deploy BadIIS for SEO Fraud and Data Theft
Critical N-Able PassPortal Extension Flaw Gives Attackers Full Password Vault Access
OpenAI Frontier Models Get Zero Data Retention With Private Safety Processing
Hackers Hide Agent Tesla Malware Behind Emojis to Steal Browser and Email Passwords
Quarkslab Says Anti-Reversing Software Should Return Plausible Wrong Answers Instead of Crashing
Critical Spring Security LDAP Flaw Lets Remote Attackers Read and Modify Directory Data
Head Mare APT Exploits TrueConf Server RCE Flaws to Deliver PhantomCore Malware
Google Chrome 151 Update Fixes 7 Security Flaws Enabling Remote Code Execution and Sandbox Escape
Cybersecurity Dive
Fitch explains how water, healthcare organizations can keep strong credit ratings, despite cyberattacks
AI-backed campaign targeting vulnerable Siemens S7 devices, CISA and FBI warn
Ransomware disproportionately targets medium-sized firms, straining customer relationships
DOJ charges 17 people in Iran-backed hacking campaign against US
GitLab issues emergency patch for critical code-injection flaw
AI-powered vulnerability clearinghouse faces deep skepticism, major challenges
Critical flaw in SAP Commerce Cloud faces initial exploitation attempts
Major genetic-testing firm says hack compromised sensitive patient data
Why more security data has blurred companies’ view of risk
Researchers confirm breach claims by data-extortion group
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Hackers poison popular Rust crates to steal developers' credentials
Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5.
Russian snoops add OAuth abuse to targeted phishing campaigns
US Bank investigates LockBit's claims as ransomware crims set pay-or-leak deadline
Researcher tricks Apple’s Find My into sharing location data with Linux
Ransomware crook poses as recovery firm to steal payments from fellow extortionists
Grok chat duped into swallowing injected instructions
French tax authority says break-in exposed data of 600K, including some private messages
AI agent suggested installing a malware package. Engineer almost took its advice
'Not a theoretical risk,' feds warn as attackers use AI-made code to hack critical infrastructure controllers
VentureBeat
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
TechCrunch
Private equity firm Apollo confirms data breach amid hacking wave targeting financial giants
Senator asks US government watchdog to review how feds use hacking tools
Someone targeted security researchers using a fake crypto conference as a lure
AI data giant Alation confirms cyberattack
US says hackers are targeting vulnerable water systems with the help of AI
Researchers say OpenAI revoked their access to limited cyber program
T-Mobile ‘chopped a cable’ to expel Chinese hackers from its network
CareCloud confirms 3.7M patients had their medical records stolen in data breach
OpenAI institutes new safeguards after Hugging Face breach
Comcast adds motion sensing to millions of its newer routers, with a privacy catch
Network World Security
Palo Alto Networks and NTT Data target $1B in joint AI security sales with new managed offerings
Network architecture pay climbs amid AI shift
Cerebras reimagines AI cluster design with switchless CS-4 architecture
IBM moves closer to fault-tolerant quantum computing with modular cryogenic systems
Reports: Google partnering with AMD for next-gen hybrid TPU
Why 6 GHz Wi-Fi will make or break the modern enterprise
Is your networking built for AI’s traffic patterns and data volumes?
IBM partners with OpenAI to drive enterprise AI deployment
It’s final! Judge says HPE’s Juniper acquisition is complete
Google, Microsoft and Nvidia back 800V DC standard for AI data centers
Help Net Security
Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836)
Attackers impersonate popular AI brands to spread malware
Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490)
GitLab 19.3 helps enterprises scale agentic development securely
A $25 template helped scammers build hundreds of phantom bank domains
Nearly half of enterprises have no one leading PQC migration
New infosec products of the week: August 21, 2026
Corero brings cloud-based AI threat analysis to SmartWall ONE
AWS limits AI agents’ data access, even when manipulated
Fake Gemini installer delivers Vidar infostealer via Google Colab lure
SC Magazine
Student thwarted real-world supply chain attack by rogue Mythos 5 agent
Over 50,000 Stripe API keys exposed, highlighting fraud risks
AI skills in cybersecurity jobs double, but junior hiring lags
Critical vulnerability in Elementor Pro allows unauthenticated file upload and RCE
Report calls for AI sector to be designated critical infrastructure
New attack bypasses AI guardrails by encrypting malicious prompts
Network of 77 Firefox extensions linked to crypto theft uncovered
New Android banking Trojan ToxicPanda 2.0 expands victim targeting
IT leaders increasingly value gaming skills in hiring and decision-making
Vercel offers $1 million in bounties for sandbox hacks
© 2026 RiskDiscovery | Sponsored by:
Deception Logic