[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Chinese Routers Sold Worldwide Contain Backdoors
Agentic AI Risks, CVE Program Concerns Permeate Black Hat USA 2026
Russian Hackers Phish EU Officials Over Messaging Apps
Dark Caracal Adds New Malware to Cyber Espionage Arsenal
'HTTP Terminator' Hunts for Novel Desync Attacks
Red Flags That Expose Fake North Korean IT Workers
Android Malware Hijacks Update System for Car Head Units
'NovaCookies' Kit Steals Microsoft 365 Sessions for $320 a Month
Interpol's Jackal IV Disrupts West African Crime Infrastructure
Nigeria Looks to Sovereign Cloud for Cyber, National Security
Ars Technica
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
Claude, Codex, and Hermes installed unowned code inside corporate networks
How OpenAI let a mob of LLM agents game a test and ransack Hugging Face
AI agents meant to replace Meta workers made “large-scale, disruptive actions”
Inaudible sounds used to fingerprint browsers catch AliExpress red-handed
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
CyberScoop
Unit 42 warns AI has shifted balance of power from defenders to attackers
100-plus companies call for ‘global surge’ in AI-powered cyber defense
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Two alleged TeamPCP members arrested and charged after months of software supply-chain chaos
Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure
Officials disrupt Chinese espionage operation that hit multiple federal agencies
OpenAI: Agent behavior that led to Hugging Face intrusion formed in May
Three 10.0 security flaws fixed across Ubiquiti’s UniFi line
Election official says Tina Peters would be consultant, won’t have access to election systems
The GTA VI leaks are breaking the internet. Security researchers have seen this before.
InfoSecurity Magazine
Fake Voicemail SVG Attachments Fuel Large-Scale Phishing Campaign
Window to Tackle Surge in AI-Enabled Cyber Attacks Narrowing, Tech Giants Warn
Threat Actors Abuse Cursor Agent AI to Assist Ransomware Operations
Manchester Airports Group Hit by Cyber Incident
Chinese Hacker Group QTFY Uses Custom-Built Platforms to Target US Infrastructure, FBI Warns
CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix Products
Boston Scientific Reveals Global Disruption After Cyber Incident
OpenAI: Hugging Face Incident a “Warning Shot” to the World
Tortoiseshell Expands Malware Toolset With New Backdoor, SSH Tunnel
Interpol Operation Jackal IV Identifies 263 Cybercrime Suspects
SecurityWeek
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge
Think You’ve Eliminated Chinese AI? Check the Model’s Lineage, Cisco Says
PaperCut Releases Emergency Patch for Exploited Zero-Day
Trump Order Aims to Block Foreign Backdoors in US Power Grid Gear
Australia Arrests 2 Alleged TeamPCP Hackers
OpenAI Agents Coordinated via Makeshift Message Board Ahead of Hugging Face Hack
Okta Shares Surge on Strong Earnings, Growing Demand for AI Identity Security
CISO Conversations: Chris Wheeler – Trust Is the Job, From the Navy to the C-Suite
Cyberattack Causes Global Disruption at Boston Scientific
ZDNet
I've tested dozens of robot vacuums - this new $599 Roborock has all the features I need
Want a free Apple Watch? Play ZDNET's 'Guessing Game' to win one - only 4 days left
Even an AI cost-management vendor can lose control of its agent spending
How to get free Google AI Pro for an entire year - and save $240: 3 ways
These Mammotion robot lawn mowers can climb hills - and they're up to $560 off right now
Lawsuit says Oura sleep tracking has 'a coin flip's chance of being correct'
Galaxy Z Fold 8 camera trouble? 4 settings I recommend changing now
This excellent HP laptop is nearly 50% off at Best Buy - and comes with a cheap TV
Apple escaped Android's 'toxic hellstew' - now Siri AI is creating a new one
AI a 'force multiplier' for low-skilled threat actors: 4 ways organizations should respond
The Hacker News
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth
Key Reasons Why Identity Fabric Matters in 2026
Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL
China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access
Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server
PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions
APT28-Linked HOOKEDGE Backdoor Targets European Government and Diplomatic Organizations
OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face
Next.js Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCE
ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Stories
BleepingComputer
Over 8,300 Gitea servers vulnerable to code execution attacks
Toy-making giant Hasbro disclose data breach affecting employees
ServiceNow warns of three max severity security vulnerabilities
Windows 11 KB5120998 update released with 35 changes and fixes
Nearly 700 rogue AI agents coordinated in the Hugging Face attack
PaperCut warns of NG, MF flaw exploited in zero-day attacks
Manchester Airports Group says hackers stole travelers' data
How Threat Research and MDR Help SMBs Build a Defensive Edge
Android 17 adds ECH support to make web browsing harder to track
Australia arrests alleged TeamPCP hackers behind supply-chain attacks
gbhackers
700 OpenAI Agents Coordinate Attack on Hugging Face and Gain Remote Code Execution
Polymorphic Phishing Attack Generates Unique Credential-Stealing Page on Every Visit
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
ServiceNow Patches Critical Flaws Enabling Unauthenticated RCE and SQL Injection
Suspected Iran-Linked Cyberattack Knocks UK Power Plant Offline for Four Days
Researchers Execute Code Inside Fortune 500 Companies via AI Agent llms.txt Files
BlueDelta Targets Defense and Diplomatic Organizations With HOOKEDGE Malware
Unitree G1 Humanoid Robot Flaws Allow Unauthenticated Root RCE Over Bluetooth
TITAN RaaS Uses AI for Data Classification, Regulatory Analysis and Automated Ransom Calculation
Prompt Injection Attack Hijacks Claude Code Opus 5 Auto Mode to Execute Malicious Code
Cybersecurity Dive
CISA identifies security hurdles that led to very different results in two red-team engagements
Hundreds of agents went rogue in lead up to Hugging Face breach
Federal authorities disrupt China-backed hacking operation targeting US critical infrastructure
Boston Scientific says cyberattack disrupted order processing, shipping
Treasury to help financial firms transition to quantum-resistant encryption
Researchers warn about chained SharePoint sequence
CISA orders agencies to fix exploited Zimbra vulnerability
UK power facility disabled for days after suspected state-linked cyberattack
House Democrats ask GAO to study CISA workforce cuts
Salesforce gave every org the same free scanner. Attackers already know what it misses.
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
CISA: Most exploited vulnerabilities should have been eradicated decades ago
Industry that built the problem offers to sell you the solution
Print management outfit PaperCut is under 0-day attack, and it’s drawing customers’ blood
Australian cops cuff alleged TeamPCP masterminds
CRPx0 hacking service for dummies claims victim count more than quintupled
AI girlfriend review site's secrets were exposed to the world for three weeks
Omarchy distro gains serious backing
ATF responds to 'major' cybersecurity incident after ransomware gang's claims
Schrödinger's backup: not actually recovered until you try to restore IT
Cybercrooks jet off with Manchester Airports Group customer data
VentureBeat
Visa ships a security AI that patches production code before any human reviews it
When agents act on their own, governance has to live in the data layer
The fix for the AI agent that hijacked a company's DNS: it can propose the change, but it can't approve it
Prompt injection ranks No. 1 with OWASP and No. 12 in the incident record. The attack itself is invisible to a scan.
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
TechCrunch
ATF declares ‘major incident’ as ransomware gang claims hack
Australian police arrest two over TeamPCP hacks targeting Mercor, OpenAI, and others
Here’s all the times AI has gone rogue and hacked other companies
Medical device maker Boston Scientific says a cyberattack is causing a ‘global disruption’ to its operations
US seizes domains of Chinese botnet used to target NASA, Justice Department, and the Senate
CISA confirms hackers targeted over 100 US water systems during July
That fake Grand Theft Auto VI demo is actually just malware
Apple rescues Hide My Email feature from the privacy scrap heap
WhatsApp tightens account security with stronger two-step verification and more
Alabama launches investigation into OpenAI’s hack of Hugging Face
Network World Security
On-device translation: Why smaller, specialized AI models win
Kyndryl, Broadcom expand partnership to push private clouds for AI work
Kubernetes 1.37 advances workload-aware scheduling and cluster networking
Intel unwraps three-pronged architecture strategy to go after agentic AI
Cisco bulks up its AI infrastructure portfolio with Supermicro’s liquid-cooled servers
2026 network outage report and internet health check
Cisco taps Teleport for infrastructure identity management tech
Google adds AI-powered assessments to Migration Center to speed up cloud migration planning
AI is turning the semiconductor market into a $1.6 trillion industry
Nvidia to hike prices by 15%, on top of an even larger increase in July
Help Net Security
North Korean remote workers are broadening their job hunt beyond IT
Android 17 adds new protections against sneaky Wi-Fi tracking and web snooping
Manchester Airports Group breached, millions of customers’ data stolen
What 90 days and a small budget can buy in AI agent security
New infosec products of the month: August 2026
Two alleged TeamPCP hackers arrested over global supply chain attacks
Cyberattack causes network outage at Boston Scientific, disrupts global operations
Unknown PaperCut NG/MF vulnerability is under active attack
Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452)
FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate
SC Magazine
How Clop accessed the enterprise blueprint with no credentials
Five Washington developments every CISO should be watching
From browser control to agent control: Governing the new AI workforce
Hacking All The Devices, with AI? - Rob Allen - PSW #941
US denies access to China-linked group behind hacking federal agencies
Why we must stop slapping the AI label on every area of security
How to Build an Injection and Data Handling Security Program
How to Evaluate Endpoint Exposure, Hardening, and Patch Management Platforms
How to Evaluate NDR Platforms for Incident Response Effectiveness
How to Evaluate Network Policy Management and Governance Platforms
© 2026 RiskDiscovery | Sponsored by:
Deception Logic