[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Mission-Driven Security: Inside a Global Bank's Defense
Amid AI-Driven Bug-Hunt Tsunami, NIST Looks to … AI
Scottish Govt Suffers Potentially Widening Data Breach at Prosecutor's Office
What Boards Need to Know About Tech Risk
Cyera's Oasis Security Buy Is All About AI Agent Control
Global Threat Campaign Hits Critical VMware vCenter Flaw
'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft
Belgium's eID Authentication Opens Citizen Accounts to RCE
Long-running Data Theft Campaign Targeting Salesforce, ServiceNow
Walmart Takes a 'Trusted Agent' Approach to Purple Teaming
Ars Technica
Vulnerability giving attackers full control of Macs is under active exploitation
PBS station fears losing 50TB of data after being ghosted by cloud storage provider
OpenAI and Anthropic in price war as Chinese AI rivals gain ground
Private security firms will soon be allowed to hack overseas cybercriminals
Terabytes of credentials leaked in massive supply-chain attack
DEF CON crowd suspected in fake-hotspot attack on Delta flight
Chrome adopts what may be the best protection yet against account takeovers
New Pass-ta-key attack reveals all the things we didn't know about passkeys
Thousands of servers can be backdoored by exploiting buggy motherboard controllers
Claude published malicious code to the Internet and attacked 3 real companies
CyberScoop
A bold new strategy or a dangerous precedent? Experts are divided on Trump’s memo.
Tech contractor for Brightly Software sentenced to 2 years in prison for insider attack
AI’s ‘middle class’ has gotten dramatically better at hacking
Trump turns to private sector in offensive hacking operations memo
Researchers observe first ‘near-autonomous’ AI attack on government target in Taiwan
Kimwolf botnet rebuilt to survive takedowns, researchers say
Federal judge issues second order blocking Trump mail-in voting directive
Delta investigates in-flight Wi-Fi spoofing on post-DEF CON flight from Las Vegas
NIST wants to overhaul its vulnerability database for the AI age
The FTC wants to regulate AI for ideological bias
InfoSecurity Magazine
SafePal Data Breach Hits Tens of Thousands of Customers
Infostealers Harvest 1.7 Billion Credentials in Six Months
Researchers Confirm ExfilSquad’s Access to Sensitive Data Across 13 Organizations
New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies
Novel macOS Infostealer AmnesiaStealer Spread via ClickFix
Researchers Link 'Jewelbug' Chinese APT to Hack-for-Hire Operations
Exposed AWS Access Key Linked to Data Breach Affecting 1500+ UK Charities
Google Cloud Targets 2027 for First Major Post-Quantum Security Milestone
vCenter Flaw Exploited Just Five Days After Disclosure
Trump Authorizes Private Sector Participation in Offensive Cyber Operations
SecurityWeek
40,000 Impacted by SafePal Data Breach
Recent macOS Screen Sharing Vulnerability Exploited in Attacks
Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure
Fortune 500 Companies Hit in Azure Data Theft Campaign
In Other News: Rapid7 Layoffs, Hacking a Boeing 737, Refrigeration System Vulnerabilities
Trivy, Not LiteLLM Behind the 2,500 Org Compromise
Google Cloud Sets Out Post-Quantum Roadmap With 2029 Readiness Goal
1.6 Million Likely Impacted by RingCentral Data Breach
Over 1,000 Charities Hit by Beacon CRM Data Breach
14,000 Trezor Customers Impacted by Data Breach at ShipMonk
ZDNet
I've tested dozens of tablets - this $300 TCL is a back-to-school powerhouse
The Pixel's new 'HiLight' reminds me of the golden days of Android phones
Google Pixel 11 Pro vs. Apple iPhone 17 Pro: How the new Pixel competes with its biggest rival
Google Pixel 11 vs. Pixel 9: Why I'm considering the upgrade this year
No space for bookshelf speakers? The Victrola Soundstage sits neatly under my turntable
Google Meet can take notes for your in-person meetings now - here's how it works
I tested an Android app that lets anyone fight censorship - and shows your impact in real time
Apple is warning users of new spyware attacks - what to do if you're a target
ChatGPT's new Computer History tracks your Mac activity to create a timeline - but should you let it?
Dell XPS 13 review: The first budget laptop to rival Neo raises the bar for all PCs
The Hacker News
Attackers Exploit SharePoint Authentication Bypass After Public PoC Release
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One
OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning
Enterprise Defenses Recovered at the Edge and Collapsed Inside
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
BleepingComputer
Microsoft working on Defender patch for ShieldBreak zero-day
SafePal data breach impacts 39,798 customers, stolen info for sale
Anthropic confirms Claude is down in major outage affecting multiple services
Large-scale DDoS attacks disrupted Threema secure messaging service
New AmnesiaStealer macOS malware hijacks browser sessions via remote control
New Evooo1Bot Linux botnet turns routers into traffic relay nodes
How Anthropic plans to watermark Claude's AI-generated text
Hackers arrested over €30M bank fraud exploiting service provider flaw
Hackers exploit macOS Screen Sharing flaw to deploy Monero miner
The Modern Attack Chain: Rethinking Google Workspace Security in the Age of AI
gbhackers
Misconfigured Microsoft Power Pages Likely Exposed 27 Million Records to ExfilSquad
HoneyMyte Upgrades CoolClient With Windows Kernel Rootkit to Hide Malware and C2 Connections
Malicious Google Apps Script Profiles Crypto Victims Before Delivering Signed Windows Malware
GeoServer Pre-Auth SQL Injection Flaw Lets Attackers Gain Remote Code Execution
ChainDrop Publishes Initial Malware Without Stealing a Long-Lived npm Token
Weekly Recap! – Top 50 Biggest Cybersecurity Stories of the Week: Apple Spyware, Zoom Zero-Click RCE, VMware vCenter Exploits, Microsoft Patch Day & More
Evooo1Bot Turns Compromised Routers Into DDoS Bots and Anonymous Proxy Nodes
MessiahGPT Unrestricted AI Model Lets Hackers Generate Ransomware and Phishing Kits
12 KB Backdoor Masquerades as Realtek Software and Hides C2 in Windows Whitespace
Shell Investigates Data Breach After Cl0p Ransomware Claims Theft of 89GB Corporate Data
Cybersecurity Dive
Why more security data has blurred companies’ view of risk
Researchers confirm breach claims by data-extortion group
Cisco security revenue jumps 14% as agentic AI sharpens cyberattacks
Researchers find AI-powered hacking tools for sale in underground forums
US government will let private companies hack criminal gangs
Hackers abuse AI models to find new entry paths
Cisco says software vulnerability could let hackers crash firewalls
Former BlackFile affiliates linked to extortion campaign targeting private equity
CVE Program eyes automation and globalization to weather AI ‘vulnpocalypse’
Civil-society initiative will pay cybersecurity vendors to protect rural water systems
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Code fixers have fired up the AI warp drive. Strange new worlds await
Black Hat and DEF CON are AI conferences now, too
Microsoft blames AI for delayed Exchange update, can’t say when it will arrive
Chinese AI company Zhipu claims its new model is a better bug-finder than Anthropic, OpenAI
Stopping a cyberattack while walking your dog - defensive AI security CEO says it's not ruff to do
ChainDrop worm crawls into npm supply chain, evades standard defenses
1.6M RingCentral accounts' data dumped after ShinyHunters extortion attack
French tax authority admits data heist after crook touts 2M records
Autonomous AI attacks pose 'clear and present danger' to critical infrastructure
Crypto wallet maker Trezor confirms 13,000 customers' details exposed in logistics breach
VentureBeat
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
TechCrunch
How to tell if your AI platforms’ accounts have been hacked
What we know about the alleged Iranian hacks on US water utilities
US courts will start publishing how often the government uses spyware
Flock says its new tool will help identify police abuse, but hasn’t explained how it works
If Apple sends you a push notification alerting you to a spyware attack, take it seriously
Anthropic set AI agents loose on the same task. They started a turf war.
In a first, US will allow some private firms to carry out cyberattacks
Uber Freight reportedly investigating after hacking group claims data breach
After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug
FBI says cybercriminals are hacking into victims’ online accounts to steal their intimate pictures
Network World Security
Why 6 GHz Wi-Fi will make or break the modern enterprise
IBM partners with OpenAI to drive enterprise AI deployment
It’s final! Judge says HPE’s Juniper acquisition is complete
Google, Microsoft and Nvidia back 800V DC standard for AI data centers
Five takeaways from Cisco’s Q4 and what they mean for IT pros
Cisco rides ‘networking supercycle’ for strong Q4
North American data center vacancy holds at just 1%
2026 network outage report and internet health check
Nvidia: Latest news and insights
Oracle set to bring quantum computing to OCI for hybrid AI workloads
Help Net Security
Police bust cybercrime ring accused of stealing €30 million in four-day spree
Windows 11’s strongest security defenses can be bypassed without a screwdriver
Hazmat: Open-source containment for AI agents
Product showcase: ScamNet looks for warning signs in suspicious calls and shady links
When companies get specific about AI, revenue growth looks different
Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day
New Android malware relays bank cards to fraudsters while victims still hold them
OpenAI’s GPT-5.6 Sol runs up to 14× faster with Ultrafast mode
AWS Certificate Manager sets 2027 end date for email-validated certificate renewals
Ukrainian police raid 94 fraudulent call centers, seize $2 million
SC Magazine
Sandbox Escapes with Rubrik's Zero Labs, AI recorders eroding privacy, and the news - Joe Hladik - ESW #472
MacOS AmnesiaStealer malware spread through ClickFix, grants live browser control
Ready for the flood: How exposure management prepares you for the Mythos vulnerability onslaught
Trezor confirms shipping partner data breach affecting over 13,000 customers
U.S. judiciary to publicly disclose use of hacking tools in wiretaps starting 2029
California launches AI cybersecurity initiative amid growing threats
Cybercriminals invest millions in expired domains for illicit activities
MacOS screen sharing vulnerability actively exploited for crypto mining
ExfilSquad data extortion group linked to 13 victim data leaks
ShinyHunters group claims responsibility for RingCentral data breach
© 2026 RiskDiscovery | Sponsored by:
Deception Logic