[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] Cybersecurity Outlook 2027
Russia's Star Blizzard Ditches ClickFix to Widen Phishing Net
South Africa Seeks Help After Cyberattack Targets Air Traffic Control
Apple Zero-Day Vulnerability Weaponized in Targeted Attacks
Unsloth Studio Flaw Turns Routine Model Inspection Into Code Execution
Cloudflare Announces Public Certificate Authority for the Post-Quantum Web
'NeedyMantis' Provides Long-Term Access to Compromised Networks
Dual NetScaler Zero-Days Trigger Chaos for Citrix Customers
Nvidia Launches AI Agent Safety Platform to Prevent Rogue Activities
One Packet Can Crash OT Servers in Industrial Sectors
Ars Technica
Cloudflare plans to issue quantum-safe TLS certificates
Your uncle’s frozen Mac says it’s infected after viewing a Google ad. Now what?
There's a new way to break RSA that's faster than anything we've seen before
Microsoft disrupts AI-assisted platform that compromised 12,000 accounts
IT mistake erases 11 years of viewing history for hospitals’ maternity records
Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day
An undercover Google analyst infiltrated a notorious supply-chain hacking gang
LLMs respond differently to harmful prompts when AI watermarking is used
Nonprofit that tracks meteors taken down by "critical blow" from a cyberattack
AI bots "Timmy," "Ren," and "Jackie" are flooding social media with slop
CyberScoop
WaterISAC reckons with range of threats after summer of cyberattacks
Attackers exploited Citrix NetScaler zero-day for at least three weeks undetected
Russian hackers Star Blizzard expand targeting, change up tactics to reach Ukraine and beyond
US is looking to weave AI into critical infrastructure for cybersecurity, national cyber director says
Alleged ShinyHunters leader arrested in the Netherlands
Kiteworks lifts shutdown advisory after ‘credible threat intelligence’ from federal authorities
Citrix patches actively exploited NetScaler zero-days after a weekend of unofficial warnings
As AI world debates security, NVIDIA releases open source tools for agents
ShinyHunters trades financial extortion for a reckless war of ego with the FBI
Army soldier sentenced for spree of attacks on AT&T, Snowflake and other major companies
InfoSecurity Magazine
AI-Found Vulnerabilities More Likely to Enable RCE, Google Says
Trump, Six AI Giants Sign 'Super Intelligence' Safety Accord
AI Boosts SOC Analyst Capacity but Limits Skill Development
Attackers Combine ChatGPT Feature Abuse With ClickFix to Deliver Trojan Malware
Apple Patches CoreGraphics Zero Day Exploited in Attacks
RatHat's Evolving C2 Panel Points to Malware-as-a-Service Model
Amazon Bedrock AgentCore Flaws Could Expose AWS Credentials
Microsoft Warns NeedyMantis Malware Enables Persistent Network Access
Japanese Railway Operators Hit with Weekend Cyber Attacks
Kiteworks Urges Customers to Restart Systems After Shutdown Notice
SecurityWeek
Google: AI Is Changing the Pace and Profile of Vulnerability Discovery
WatchGuard Patches Critical Fireware OS Code Injection Vulnerability
Government, Finance Orgs Targeted in Weeks-Long NetScaler Zero-Day Attacks
Chrome, Firefox Updates Patch Over 100 Vulnerabilities
Anthropic Flags AI Agent Liability Risks as OpenAI Faces Hacking Lawsuit
Russian APT Star Blizzard Uses ‘RedFlick’ Infection Chain in Recent Attacks
ShinyHunters Defiant After FBI Calls on Members to Come Forward
High-Severity Vulnerabilities Patched in OpenSSL, WolfSSL
Trump Says Top Tech Firms Have Signed Accord to ‘Self-Police’ AI Development
OpenAI CEO Announces New AI Agent and Avoids Mention of Security Concerns at Developer Conference
ZDNet
Your iPhone just got a hidden anti-scam upgrade in iOS 27: How to enable it
Pearson’s Workera deal targets a big workplace problem: No time to AI upskill
LLMjacking can run up your business’ AI bill fast – how to stop it
Is ChatGPT your new Google Workspace alternative? Meet Space, Pages, and slides
Get Kindle Unlimited free for 3 months with this early Prime Day deal
iOS 27.0.1 released: Apple fixes annoying iPhone 18 Pro restart and freezing issues
Bose’s new wired earbuds aim for the same great sound and ANC – no charging needed
Your Bose headphones are getting a major Bluetooth upgrade – what to expect
This one WatchOS 27 feature just solved my biggest issue with Apple Watch
Your LG TV is constantly collecting your data – here’s how to stop it
The Hacker News
Cisco Warns of Attackers Exploiting Critical Authentication Bypass in SD-WAN Manager
Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures
Know Your Enemy: Browser-Based Attack Techniques in 2026
AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub
US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access
Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT
OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted
Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution
French Tax Data Theft Using Stolen Staff Passwords Went Undetected for Seven Weeks
New Spectre-v2 BTR Attack Leaks Linux Memory Despite Existing Defenses
BleepingComputer
CISA warns of critical pre-auth RCE flaw in MikroTik RouterOS
Cisco warns of new SD-WAN zero-day exploited in attacks
AI's Third Wave: Coworkers Break the Security Model That Worked for Agents
Microsoft to block Entra ID script injection attacks starting October
TeamViewer urges users to patch severe flaws “as soon as possible”
Bitget hacked via zero-day in third-party security products
Microsoft is rolling out Linux container support to WSL
Signal adds encypted local backup support to iOS, desktop apps
Custom ChatGPTs push ClickFix attacks to deploy RAT malware
FBI tells ShinyHunters members to turn themselves in after recent arrest
gbhackers
RedFlick Uses Scheduled Tasks and Password-Protected Archives to Deploy CosmicPulse Backdoor
Docker CopyEscape CVE-2026-17106 Lets Malicious Containers Overwrite Host Files
PaperPhone Cluster Shows How One Bot Operator Can Look Like Thousands of Mobile Users
Claude Compliance API Lets Security Teams Monitor Chats, Files and Agent Activity
Critical MikroTik RouterOS Vulnerability Exposes Devices to Remote Code Execution
Attackers Target Developer Credentials to Expand Supply Chain Intrusions Beyond Source Code
12 Best IGA Tools in 2026: The Ranked Buyer’s Guide
Google Chrome 154 Update Fixes 32 Security Flaws Including Critical ANGLE Bug
Hackers Abuse MSP360 and ScreenConnect RMM Tools for Persistent Access and Credential Theft
Hackers Exploit Citrix NetScaler Zero-Day to Gain Root Access and Deploy Web Shells
Cybersecurity Dive
Mass exploitation of Citrix NetScaler: What we currently know
National cyber director defends private-sector hacking program, urges focus on security basics
Citrix NetScaler exploitation began days before public notification
Dotted Line: How construction is dealing with cybersecurity in the age of AI
GAO report spotlights industry’s concerns about overlapping cybersecurity regulations
Kiteworks lifts advisory after precautionary warning for customers to shut down systems
Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
Niche AI tools pose major cybersecurity risk to infrastructure operators
Security testing has to keep pace with AI-driven attackers
Context matters when it comes to cybersecurity’s agentic operating model
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
More than half of UK businesses lack confidence in basic cyber skills
UK rail cops' £320K face-scanning spree nets zero matches
Spectre bug is back, this time to haunt JIT engines
Add one more AI worry to the nightmare scenario: self-replicating prompt injections
FBI to ShinyHunters: 'We know how to find you'
Custom malware used in Citrix 0-day attacks targeting govt, banks, professional services
AI models keep posting screenshots showing sensitive data from inside tech companies
Apple patches CoreGraphics zero-day already exploited in targeted attacks
OpenAI benches GPT-6.1 Astra for overstepping the mark
Former X-Force hackers chase the offensive cyber gold rush
VentureBeat
OpenAI’s new ‘Private Intelligence' targets a growing enterprise concern: who can see your AI data?
Anthropic documented a new problem for security teams: Attacks that can adapt while they're underway
The defender's head start is gone. Cisco's Liz Centoni on the fight to get it back
AI agents are exposing a security gap between the data they read and the systems they can change
AI agents have routed around access blocks. Only 9% of companies in VentureBeat's August survey isolate high-risk agents
Monorepos make coding agents more useful — but compromised accounts are harder to contain
AI coding tools are accelerating dependency sprawl and expanding malware risk with it
TechCrunch
Meta disputes claim that Muse read a user’s private messages without permission
Dutch police arrest ShinyHunters hacker accused of planning two murders
Still running iOS 26? Update your iPhones, iPads, and Macs for this urgent security fix
OpenAI apologizes to Australia after its AI agents breached government sites
Reco raises $55M as AI agent security startups crowd the market
Protego Ventures closes debut $125M fund for Israeli defense tech
FBI reportedly declares ‘cyber security incident’ after hackers steal agents’ personal data
Some Supabase customers are publicly exposing reams of people’s data to the web
Kiteworks urges customers to shut down their servers amid ‘imminent’ threat of cyberattack
North Korean hackers suspected in $351M crypto theft, the largest so far this year
Network World Security
LiquidStack unveils liquid-cooling platform targeting AI data centers
If Apple returns to enterprise server game (with help from Nvidia), what market could it target?
OpenStack Hibiscus adds DNS security features and confidential computing to the open-source cloud platform
2026 network outage report and internet health check
AMD agrees to buy World Labs to fill out its AI stack
Why a network digital twin is the missing piece for AI-era operations
NetScaler admins told to patch critical zero-days in ADC and Gateway now
Tackling the three hidden mistakes when planning a GCC
Rewiring global capability centers for the AI era
Google’s first prototype satellite is going up, kicking off its space-based data center project
Help Net Security
Suspected state-sponsored hackers exploited NetScaler zero-day since early September (CVE-2026-88772)
AI coding agents leaked 13,000 internal company screenshots to public GitHub repos
OpenInfra Europe’s JFrog Artifactory instance breached, packages potentially compromised
Signal brings encrypted local backups to iOS and desktop, adds cross-platform restore
Former US Air Force members behind million-dollar BEC scheme head to prison
Genea brings AI agents to access control with role-based permissions
Security tools can now scan Claude Enterprise chats and uploads for sensitive data
OWASP Noir: Open-source static analysis tool
EU Cyber Resilience Act requirements for containers and Kubernetes
In this new SME cybersecurity service, the AI assists and the consultants decide
SC Magazine
How to build an AI fraud detection and trust verification program
What threat hunting actually controls
Understanding the role of a SOC Analyst
What identity governance actually controls
Risk advisory: identity governance exists but does not control authority
What identity governance failure costs the business
Stop patching by score – and start patching by authority
What non-human identity sprawl costs the business
How to evaluate non-human identity and secrets governance platforms
SAP RISE security: Where SAP's responsibility ends and yours begins
© 2026 RiskDiscovery | Sponsored by:
Deception Logic