[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
OWASP Flags Top AI Skill Risks in New Security Blueprint
Calling on Cyber Pros to Help Defend City Hall
OpenAI Adds Controls That Should've Been There Already
New CUSTODY Framework Constrains AI Agents Inside the Network
What We Missed: Delta Flight Disrupted With Wi-Fi Hack
N-able Bug Exposes Password Vault Master Keys
Money and Mindset: The Two Biggest Roadblocks to Cyber Policing
Pakistan's Transparent Tribe Refreshes Toolset for Afghan Cyberattacks
'Grandoreiro' Malware Resurfaces With Mexico Campaign
No-Filter 'Kriminal' AI Platform Raises Cybercrime Concerns
Ars Technica
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
PBS station fears losing 50TB of data after being ghosted by cloud storage provider
OpenAI and Anthropic in price war as Chinese AI rivals gain ground
Private security firms will soon be allowed to hack overseas cybercriminals
Terabytes of credentials leaked in massive supply-chain attack
DEF CON crowd suspected in fake-hotspot attack on Delta flight
CyberScoop
Apollo discloses data breach from ongoing wave of attacks hitting financial sector
Lawmakers seek watchdog review of federal hacking of Americans
Early 764 member sentenced to 77 years, longest prison term to date for a nihilistic violent extremist
Retail theft bill spurs ‘very large and very dangerous’ surveillance fears
The push to designate AI as the next critical infrastructure sector
AI-fueled attacks pose ‘active threat’ to water, other sectors, U.S. agencies warn
A California county wants to hire Tina Peters to help run its elections
The long tail of Clop’s PTC hack is just beginning to emerge
Eight years later, federal authorities re-up charges against alleged Iranian hackers at Mabna Institute
Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics
InfoSecurity Magazine
North Korean Hackers Tied to Rust Supply Chain Attack
New Agent Tesla Malware Variant Boosts Evasion Capabilities
Cybersecurity Job Ads Requiring AI Skills Double
NCSC Urges Stronger Controls for Agentic AI Systems
US Defense Contractors Admit Their Rising CMMC Scores May Not Be Accurate
ICS Operators Warned of AI-Driven Attacks on Siemens PLCs
Updated ToxicPanda Variant Targets 140+ Banking and Crypto Apps
Def Con Attendees Targeted by Persistent Phishing Campaign
Exclusive: Linux Foundation's Akrites to Go Live in September
MaaS Campaign Combines ClickFix, ErrTraffic and Cruciferra
SecurityWeek
Former NSA Director Paul Nakasone Launches National Security Advisory Firm
In Other News: Zombie Card Attack, T-Mobile Cut Cable to Stop Hackers, GitHub Denies AI Caused Bug
Encrypted Prompts Bypass AI Safety Guardrails in Grok and Gemini
New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets
Critical Isolated-vm Vulnerability Leads to RCE on Host
Rust Supply Chain Attack Linked to North Korean Hackers
Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind
Microsoft Patches Exploited Entra ID Vulnerability
CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities
Hackers Target Zimbra Servers in Active Exploitation Campaign
ZDNet
80% of developers find AI coding more addictive than helpful
Sonos' improved Voice Control points to an intriguing smart home future
Walmart will finally accept Apple Pay and Google Pay. Here's what's changing
How AWS Marketplace is using AI agents to meet the rising demand for AI agents
ChatGPT's new Mac plugin analyzed my iMessages - and I found it surprisingly useful
There's one big reason I'll choose the Pixel 11 Pro Fold over the Galaxy Z Fold 8
I tried the free Wispr Flow voice dictation tool everyone's talking about - and I'm hooked
A low-tech solution from the past may be your best defense against AI deepfakes
The best large tablets of 2026: Expert tested and reviewed
China joins Europe in scrapping Windows for Linux
The Hacker News
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet
Wazuh and AI For Enhanced SOC Workflows
Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure
Microsoft Patches Severe Entra ID Flaw (CVSS 10.0) Allowing Remote Code Execution
Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads
Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts
ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit, and More
BleepingComputer
New SynkLoader malware pushed in Microsoft Teams phishing campaign
Hundreds of leaked AWS keys give full control over corporate accounts
Microsoft blames Windows gaming issues on RGB lighting devices
Is Online Privacy Possible? How Digital Identities Can Help
Microsoft rolls out Classic Outlook theme for New Outlook users
CISA orders feds to patch actively exploited TrueConf Server flaws
Microsoft warns of max severity Entra ID flaw exploited in attacks
Hackers abuse FTP server banners to deliver new Windows malware
SickKids data breach exposes employee and job applicant info
Hackers poison arrayref Rust crate to push infostealer malware
gbhackers
US Bank Investigates Alleged Data Breach After LockBit Ransomware Extortion Claim
Deepfake Ads Funnel Investors Into WhatsApp Groups Controlled by Fake Financial Analysts
UAT-10147 Compromises Web Servers to Deploy BadIIS for SEO Fraud and Data Theft
Critical N-Able PassPortal Extension Flaw Gives Attackers Full Password Vault Access
OpenAI Frontier Models Get Zero Data Retention With Private Safety Processing
Hackers Hide Agent Tesla Malware Behind Emojis to Steal Browser and Email Passwords
Quarkslab Says Anti-Reversing Software Should Return Plausible Wrong Answers Instead of Crashing
Critical Spring Security LDAP Flaw Lets Remote Attackers Read and Modify Directory Data
Head Mare APT Exploits TrueConf Server RCE Flaws to Deliver PhantomCore Malware
Google Chrome 151 Update Fixes 7 Security Flaws Enabling Remote Code Execution and Sandbox Escape
Cybersecurity Dive
Microsoft confirms maximum severity flaw in Entra ID targeted for exploitation
Defense contractors’ CMMC confidence lags, even as self-assessments improve
Fitch explains how water, healthcare organizations can keep strong credit ratings despite cyberattacks
What we know so far about the hacking campaign against US water systems
AI-backed campaign targeting vulnerable Siemens S7 devices, CISA and FBI warn
Ransomware disproportionately targets medium-sized firms, straining customer relationships
DOJ charges 17 people in Iran-backed hacking campaign against US
GitLab issues emergency patch for critical code-injection flaw
AI-powered vulnerability clearinghouse faces deep skepticism, major challenges
Critical flaw in SAP Commerce Cloud faces initial exploitation attempts
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Homeland security cybercops say patch TrueConf (Russia's Zoom) if you're using it
Hackers poison popular Rust crates to steal developers' credentials
Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5.
Russian snoops add OAuth abuse to targeted phishing campaigns
US Bank investigates LockBit's claims as ransomware crims set pay-or-leak deadline
Researcher tricks Apple’s Find My into sharing location data with Linux
Ransomware crook poses as recovery firm to steal payments from fellow extortionists
Grok chat duped into swallowing injected instructions
French tax authority says break-in exposed data of 600K, including some private messages
AI agent suggested installing a malware package. Engineer almost took its advice
VentureBeat
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
TechCrunch
Private equity firm Apollo confirms data breach amid hacking wave targeting financial giants
Senator asks US government watchdog to review how feds use hacking tools
Someone targeted security researchers using a fake crypto conference as a lure
AI data giant Alation confirms cyberattack
US says hackers are targeting vulnerable water systems with the help of AI
Researchers say OpenAI revoked their access to limited cyber program
T-Mobile ‘chopped a cable’ to expel Chinese hackers from its network
CareCloud confirms 3.7M patients had their medical records stolen in data breach
OpenAI institutes new safeguards after Hugging Face breach
Comcast adds motion sensing to millions of its newer routers, with a privacy catch
Network World Security
Nvidia scales back financing guarantee for OpenAI data center
Palo Alto Networks and NTT Data target $1B in joint AI security sales with new managed offerings
Network architecture pay climbs amid AI shift
Cerebras reimagines AI cluster design with switchless CS-4 architecture
IBM moves closer to fault-tolerant quantum computing with modular cryogenic systems
Reports: Google partnering with AMD for next-gen hybrid TPU
Why 6 GHz Wi-Fi will make or break the modern enterprise
Is your networking built for AI’s traffic patterns and data volumes?
IBM partners with OpenAI to drive enterprise AI deployment
It’s final! Judge says HPE’s Juniper acquisition is complete
Help Net Security
Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836)
Attackers impersonate popular AI brands to spread malware
Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490)
GitLab 19.3 helps enterprises scale agentic development securely
A $25 template helped scammers build hundreds of phantom bank domains
Nearly half of enterprises have no one leading PQC migration
New infosec products of the week: August 21, 2026
Corero brings cloud-based AI threat analysis to SmartWall ONE
AWS limits AI agents’ data access, even when manipulated
Fake Gemini installer delivers Vidar infostealer via Google Colab lure
SC Magazine
Thousands of active AWS access keys remain publicly exposed
Microsoft patches flaw in Entra ID identity software
The agentic SOC: How to build machine-speed defense for the AI era
The Taiwan attack was built with two free downloads from vendors nobody rates
US autonomous systems policy struggles to keep pace with drones
Student thwarted real-world supply chain attack by rogue Mythos 5 agent
US Bank investigates LockBit ransomware claims of data breach
NASA ground control software vulnerability could allow spacecraft access
Over 50,000 Stripe API keys exposed, highlighting fraud risks
AI skills in cybersecurity jobs double, but junior hiring lags
© 2026 RiskDiscovery | Sponsored by:
Deception Logic