[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Chinese Hackers Impersonate US Officials for AI Cyber Espionage
Need for Speed: AI-Driven Attacks Are Changing Security Strategies
RemoteThreat Bets Security Teams Need to Test What Happens After Defenses Fail
Kiteworks & Citrix Incidents Show Challenges of Zero-Day Response
SWIFT Banking & Government Middleware Enables RCE
Is Your Organization Ready for 2027's AI Accountability Era?
Is It Fair to Blame 'Rogue' AI for Security Failures?
Vulnerability Backlogs Are an Ownership Problem
Malicious Linux Implants Mimic Asian Mail Security Products
Alleged KillSec Ransomware Mastermind a 16-Year-Old
Ars Technica
Apple changes full-disk access permissions to curb abuse from AI agents
Hacks of 2 federal agencies in a month have spilled a bonanza of sensitive data
Memory executives expect RAM shortage to continue through 2028
Attackers have been exploiting critical Zimbra flaw to steal emails
Cloudflare plans to issue quantum-safe TLS certificates
Your uncle’s frozen Mac says it’s infected after viewing a Google ad. Now what?
There's a new way to break RSA that's faster than anything we've seen before
Microsoft disrupts AI-assisted platform that compromised 12,000 accounts
IT mistake erases 11 years of viewing history for hospitals’ maternity records
Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day
CyberScoop
The US needs a real plan to defend its water systems
The legal questions raised by agentic AI hacks
Authorities seize KillSec extortion group infrastructure, arrest 3 alleged members
National cyber director: Government-industry collaboration vital to managing AI risks, competition with nations
AI policy circles targeted in China-linked phishing operation
OpenAI reveals ‘novel’ encryption bypass used in distillation attack
WaterISAC reckons with range of threats after summer of cyberattacks
Attackers exploited Citrix NetScaler zero-day for at least three weeks undetected
Russian hackers Star Blizzard expand targeting, change up tactics to reach Ukraine and beyond
US is looking to weave AI into critical infrastructure for cybersecurity, national cyber director says
InfoSecurity Magazine
ClingSTUN Malware Turns Unpatched IoT Devices Into Proxy Nodes
New Stealthy Linux Backdoors Target Telecoms, Masquerade as Email Traffic
Citrix NetScaler Targeted Via New Zero Day
Google Suspends Open-Source Bug Bounty Due to AI Vulnerability Reports
More UK Schools Are Recovering Faster from Cyber Incidents
Frontline Education Breach Impacts K-12 School District Staff
Microsoft: AI Cuts Post-Compromise Attack Time to Minutes
Police Target KillSec Ransomware Group with Arrests and Seizures
Two Zero-Days Exploited in Attack on Dutch Institute for Vulnerability Disclosure
Critical Cisco Catalyst SD-WAN Zero-Day Under Active Exploitation
SecurityWeek
Google Narrows Open Source Bug Bounty Amid Wave of Invalid Automated Reports
Linux Backdoor Abuses STUN Protocol, Exploits Dozens of Flaws
250,000 Impacted by Data Breaches at New Jersey, Texas Healthcare Firms
Exploitation Hits Rejetto HFS Vulnerability Discovered by AI
Senate Passes Bipartisan Bill to Strengthen Healthcare Cybersecurity
Alleged ShinyHunters Leader Arrested in Jordan
Exploitation of Citrix NetScaler Zero-Day Hits Appliances Patched Days Earlier
Trump Names National Intelligence Director Jay Clayton to Lead a New Federal AI Task Force
doxx.net Raises $38 Million to Prevent AI Agent-on-the-Internet Misadventures
Fortra Patches Critical Vulnerabilities in BoKS
ZDNet
How I made a paid Mac app in 11 days with Claude – without writing a single line of code
iPhone 18 Pro Max can’t call or text on AT&T? Apple will replace it for free
This new ChatGPT scam tricks you into installing malware – how to spot the trap
Google Wallet not working on your Pixel? 4 ways to fix tap-to-pay
Who owns AI risk at work? Business and tech leaders can’t agree, PwC survey finds
openSUSE Leap adds a new security layer: Immutable mode
Your iPhone just got a hidden anti-scam upgrade in iOS 27: How to enable it
Pearson’s Workera deal targets a big workplace problem: No time to AI upskill
LLMjacking can run up your business’ AI bill fast – how to stop it
Is ChatGPT your new Google Workspace alternative? Meet Space, Pages, and slides
The Hacker News
Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes
⚡ Weekly Recap: NetScaler and FortiMail 0-Days, AI Coding Leaks, Spectre v2 and Ransomware Arrests
The Credential Layer Is Expanding Faster Than Security Teams Can See It
Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2
Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access
Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE
New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline
ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Members
China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing
MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics
BleepingComputer
Rejetto HFS servers now actively scanned for critical RCE flaw
IQVIA fined $7.8 million for failing to properly anonymize health data
Denmark population registry data breach affects 8.8 million people
New Dell System Update flaw lets hackers gain root privileges
South Korea probes bank breaches amid suspected AI-powered attacks
tenfold CE: Our free Identity Governance tool just got 2 new features
Alleged dev of Ploutus ATM malware appears in US court after arrest
OpenAI will show visual ads in ChatGPT while you generate images
Microsoft: Windows KB5124010 update crashes some games and apps
Google halts open-source bug bounty program amid AI spam surge
gbhackers
New RemoveMacAI Tool Removes Apple Intelligence Models and Reclaims Mac Storage
Apple Strengthens macOS Privacy Controls as AI Agents Become More Autonomous
Google Gemini to Gain Full Computer Access With New Permission
Critical libheif Vulnerability Could Enable Remote Code Execution Through WordPress Image Uploads
Japanese Police Impersonation Scam Operation Dismantled as 16 Suspects Detained in Timor-Leste
Denmark Confirms Major Security Incident Exposing 8.8 Million Citizen Records
CISA Flags Citrix NetScaler Flaw Exploited in Ongoing Attacks
MediaTek Fixes 31 Security Flaws Affecting Modem, Video and AI Components
Google Tightens Open-Source Bug Bounty Rules After Surge in AI-Generated Vulnerability Reports
AWS Fixes AI Agent Flaws Enabling Authentication Bypass and Credential Theft
Cybersecurity Dive
Citrix issues patch for third exploited flaw in NetScaler
Modernizing data security with DSPM, AI and fewer tools
Why permissions must be the foundation for next-gen identity security
Defending against AI-fueled cyberattacks requires focus on identity, data governance, Microsoft says
Fortinet warns that critical flaw in FortiMail is facing exploitation
SOC staffers generally pleased with AI’s impact, but worries remain
State-linked actor targets US AI policy experts in credential phishing campaigns
Mass exploitation of Citrix NetScaler: What we currently know
National cyber director defends private-sector hacking program, urges focus on security basics
Citrix NetScaler exploitation began days before public notification
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Citrix NetScaler security snafus get even worse amid more 0-day reports
FBI confirms 'multiple' arrests related to ShinyHunters hack
Debian's latest kernel security update has 1,313 reasons to patch
Legacy sign-on service comes back to bite school software provider Bromcom
Anthropic's super bug-hunting model Mythos is hardcore good at math, as latest vuln under attack shows
OpenAI alerts 100+ orgs that its 'misaligned models' attempted to break in - or worse
Californian accused of shipping $300M worth of Nvidia chips to China without Uncle Sam’s approval
OpenAI's wandering AI agents earn it a California subpoena
Fortinet sounds the alarm over actively exploited FortiMail zero-day
AI agents hacked the hackers, stealing email addresses from security research org
VentureBeat
Microsoft's record Patch Tuesday shows why severity can't decide what gets patched first
Your vibe-coded apps are a ticking time bomb for your business. Here’s how to secure them.
AI agents need more than access control — they need identity at runtime
22 of 37 surveyed companies that enforce AI agent permissions still have agents sharing credentials
OpenAI’s new ‘Private Intelligence' targets a growing enterprise concern: who can see your AI data?
Anthropic documented a new problem for security teams: Attacks that can adapt while they're underway
The defender's head start is gone. Cisco's Liz Centoni on the fight to get it back
TechCrunch
Hackers steal 8 million citizens’ records from Danish government database
Google froze its open source bug bounty program due to a ‘significant rise’ in AI submissions
Federal judge calls Flock ‘indiscriminate mass surveillance’
OpenAI safety employee resigns, claiming the company’s ‘culture is broken’
Apple says it’s tightening macOS ‘Full Disk Access’ controls due to new risks from AI agents
Medical records giant Epic pauses product development to fix security bugs that risk patients’ data
Kevin Mandia’s new ‘agent swarm’ security startup Armadin raises $255.5M at $2.5B valuation
OpenAI cuts ties with 3 safety researchers, WSJ reports
California governor vetoes bill banning use of ‘pervert glasses’ to secretly record people
Hackers stole millions of US military personnel records during months-long data breach
Network World Security
Micro data center company rolls out stackable data center for edge and AI
AWS seeks to automate cloud optimization with new AI agent
IBM expands mainframe networking options as AI reshapes enterprise infrastructure
New memory player CXMT begins mass production of DRAM platform
From automated response to reasoning: Building confidence in AI-driven NetOps
Startup doxx.net hands the network controls to AI
IBM’s Bob wants to move in: Agent available for on-prem deployment
$6T in annual AI revenue needed to pay off data center investments
HPE’s Rahim: Pace of change in the data center is ‘extraordinary’
CoreWeave brings Nvidia Vera Rubin, AI tools to its cloud services
Help Net Security
CISA flags new exploited NetScaler flaw as attackers crash appliances (CVE-2026-88779)
Fake brand discounts on social media prey on shoppers’ fear of missing out
LTM launches BlueVerse AgenTraceIQ to monitor AI agents and reverse unintended actions
Stellar Cyber 7.0 adds measurable workflows for AI-powered SOCs
Malwarebytes Scam Link Check analyzes URLs and explains potential risks
RemoveMacAI turns off Apple Intelligence on macOS 27 and deletes its models
Out-of-band Exchange Server update fixes high-severity mailbox access bug (CVE-2026-96940)
Detained ShinyHunters hacker reportedly helping FBI track down fellow members
MAKERphone 2: A DIY 4G phone with plug-in camera, speaker and prototyping board
Apple tightens macOS disk access as AI agents become more powerful
SC Magazine
Google pauses open source bug bounty program amid AI submission surge
New Citrix Netscaler zero-day exploited just days after recent attacks
NVIDIA can stop a rogue agent. Can it revoke its access?
Federal judge rules Flock license plate searches unconstitutional
OpenAI employee resigns, citing broken company culture and AI safety concerns
Bitdefender releases AI Guardian to secure autonomous software agents
How identity and permissions become the blast-radius boundary for LLMs
How to build a threat-informed exposure prioritization program
Proving your MDR works: testing detection coverage and response effectiveness
When identity becomes the outage
© 2026 RiskDiscovery | Sponsored by:
Deception Logic