[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
Patch Tuesday Sets Another Record With 974 CVEs
Attackers Use Multi-Hop Google Redirects for Phishing Campaign
OpenAI Agents Took Over Wiki Site Before Hugging Face Attack
ClickFix Campaigns Abuse Legitimate Services for Persistent Access
Companies Have 6 Months to Prepare for Automated Attacks
AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?
Insurers Search for Answers to Rein in Rogue AI
Large Enterprises Targeted in Fake Merger & Acquisition Scams
Ars Technica
Why this month's Microsoft patch release is a doozy
OpenAI agents discussed ways to escape their sandbox on public wiki
“Trust, not features, is the real deficit”: VMware tries to appease SMBs
Once popular for attacking AI, ASCII smuggling is embraced by spammers
Confused about which VPN is right, US senator asks the NSA for guidance
VMware migration reduces Tottenham Hotspur's licensing fees by 85 percent
I rented a car, and within hours, my driver's license was for sale
BGP hijack infecting networks caused by a comedy of errors that’s not funny at all
Think twice before installing this device promising free movies
Inside Meta’s push to put robots to work in data centers
CyberScoop
Microsoft discloses two actively exploited zero-days among 974 vulnerabilities
Feds accuse China of ‘systematic’ distillation of U.S. AI models
Russian national extradited to US for alleged involvement in bank-account takeover scheme
CIA’s Michael Ellis says cyber intelligence is changing how the agency operates
Why federal cyber defense demands an offense-driven mindset
In most cities, nobody owns the whole network
European parliament members call for slowdown of Serbia’s EU entry over spyware use
Why judgment is emerging as cybersecurity’s defining skill
Attackers exploit zero-days in consistently besieged SonicWall product
The G7 tells industry to hurry up and prep for post-quantum encryption
InfoSecurity Magazine
SAP Patches Maximum Severity “Overpass” Flaw
France Establishes New Government-Focused Cyber Incident Response Unit
Grindr Settles UK Data Privacy Claims for £26m
AI Coding Tools Now a Prime Target for Threat Actors, Google Warns
THost9 Android RAT Pairs Packed Loader With ADB Worm
BigBear 2 PhaaS Campaign Steals 5000+ Microsoft Credentials
Trezor Supply Chain Breach Now Impacts 81,000 Customers
NCSC Warns Shadow AI Creates New Security Risks
N-able Releases Hotfix for Critical Remote Code Execution Vulnerability
Rhysida Publishes Berlin Government Data After €2m Extortion Demand Refused
SecurityWeek
Microsoft Patches Record 974 Vulnerabilities, Including Two Exploited Zero-Days
Adobe Patches Over 170 Vulnerabilities, Including Commerce Zero-Day
The Hidden Instructions That Can Hijack AI Agents
Hackers Return $263 Million Stolen From Liquid Network
Cylake Raises $245 Million Ahead of Cybersecurity Platform Beta
SAP Patches Critical Extended Passport Processing Vulnerability
Party’s Over for Crypto Scammers Who Went on a Spending Spree After a $240 Million Bitcoin Theft
MikroTik Patches Critical Flaws Chained to Hack Routers
Mathspace Data Breach Exposes Over 1 Million People
N-able Patches Critical Zero-Day in N-central
ZDNet
The Hacker News
Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root
F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans
Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed
SAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code Execution
Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days
N-able N-central Pre-Auth RCE Flaw Exploited in the Wild
Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution
Liquid Hackers Return 3,400 Bitcoin Taken via Elements Bug, Still Holding $47M in BTC
ChatGPT Flaw Let a Planted Prompt Send a Victim's Gmail Data to Another Account
BleepingComputer
Man gets 15 years for extorting women with AI-generated porn videos
New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access
Google warns of new Chrome zero-day bug exploited in attacks
Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults
DoppelCart fraud network uses 119,000 fake shops to steal credit cards
The EU CRA's Real Question: What Shipped, and When Did You Know?
Hackers breach F5 BIG-IP APM devices to deploy Linux rootkit
Microsoft releases Windows 10 KB5122878 extended security update
Microsoft September 2026 Patch Tuesday fixes 966 flaws, 2 zero-days
Windows 11 cumulative updates KB5124008 & KB5122880 released
gbhackers
Hackers Weaponize Agentic AI to Automate Reconnaissance, Exploitation and Post-Exploitation
Hackers Exploit Critical FortiGate Flaw to Deploy AI-Assisted PivotC2 RAT
Windows Defender ShieldCrash 0-Day Lets Attackers Read Arbitrary Files as SYSTEM
DeepSeek, Alibaba and Chinese AI Firms Extract Billions of Tokens From U.S. AI Models
The 12 Best Managed XDR Services, Compared and Priced
The 12 Best Managed Detection & Response (MDR) Services, Compared and Priced
The 12 Best Extended Detection & Response (XDR) Platforms, Compared and Priced
The 12 Best Endpoint Detection & Response (EDR) Solutions, Compared and Priced
The 12 Best Antivirus Software for Mac, Compared and Priced
cPanel EmailTrack SQL Injection Flaw Lets Attackers Execute Code as Root
Cybersecurity Dive
N-able issues patch for zero-day flaw
Don’t let AI distract from cybersecurity basics, officials and executives warn
Essential AI agent security questions
Nvidia’s $12.9B Hugging Face deal could benefit enterprises
OpenAI pledges $1B to provide resources, training for frontline cyber defenders
SonicWall urges immediate patching of chained vulnerabilities
Government, industry partner to shut down long-running Sality botnet
Government lacks ability to verify AI labs’ claims, experts say
CISA scraps 6 free cybersecurity assessments for critical infrastructure operators
Security policies fail to keep up with a hybrid cloud world
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Microsoft breaks Patch Tuesday record with 974-CVE deluge
OpenAI's Artifactory opened covert data-stealing channel alongside Hugging Face attack
Boston Scientific left nursing its bottom line after cyberattack
How to secure hybrid meeting rooms without sacrificing user experience
LG accused of 'egregious invasion of privacy' over TV data collection
BigBear phishing crew nets thousands of Microsoft 365 credentials
Extortion crews have their eyes on high-value AI data, Google warns
Britain reboots its space strategy with £7.8B already on the launchpad
Nightwing CEO has a Labor Day message for staff – and apparently The Register
Hackers drain $320M in Bitcoin from Liquid Network, claim they're the good guys
VentureBeat
Agents identifying as OpenAI systems wrote 17,000 posts to a wiki no one was supposed to write to
Most security teams don't know how many AI agents they're running. Falcon Guardian found 18,000 at one company that had approved only 300.
MCP's new spec turns a planted prompt into a stolen credential
China-linked hackers backdoored executives' laptops via USB, exploiting a fix companies had but weren't using
Google’s Gemini 3.8 Flash is built for agents, while its Cyber twin hunts vulnerabilities
Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke
Closing an Azure OpenAI assistant's retrieval gap didn't take a new identity platform. It took one filter and a narrower assistant.
TechCrunch
Chrome is now shipping updates every 2 weeks as AI changes the security landscape
A hacker stole $340M in a crypto heist, then returned most of it
OpenAI confirms ‘wiki incident,’ says it’s ‘working on a framework’ for more disclosure
US military disabled ad tracking on troops’ devices following reports of targeted attacks
Abliteration.ai is making a business out of removing AI guardrails
It sure looks like hackers breached a major ID card verification service
HiddenLayer nabs $100M as enterprises rush to secure their AI deployments
Norway considers ban on camera-enabled wearable ‘pervert glasses’
X says attackers are targeting user accounts after the launch of X Money
AIR raises $50M to help companies vet the skills and add-ons AI agents use
Network World Security
Leap second proposal will keep software stacks in sync
Cisco bundles fixes for multiple vulnerabilities, some critical, into one patch
BackBox brings AI to network automation but keeps humans in control
2026 network outage report and internet health check
AI data boom fuels tape storage resurgence
Nvidia lets you build your own AI clusters locally with PAIR software
When analyst benchmarks miss the mark: Why Nvidia doesn’t fit Forrester’s data center matrix
HPE’s record Q3: AI infrastructure, networking demands drive growth, but supply constraints tap the brakes
VMware Cloud Foundation 9.1 adds transit gateway flexibility, segmentation, and native EVPN VXLAN support
Dell’s $95B AI backlog shows the infrastructure crunch is far from over
Help Net Security
September 2026 Patch Tuesday: Record patch count, 2 zero-days, and a SigRed successor
Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491)
AI-Infra-Guard: Open-source security scanner for AI systems
Gartner: 70% of SOCs will pilot AI agents. Only 15% will see results
AWS spent years rebuilding its routing control plane without taking the network down
What breach and attack simulation needs to become in the AI era
BleachBit 6.0.4 fixes secure wiping that skipped clusters on Windows
Threat actors are giving AI agents a bigger role in cyberattacks
Mars Security brings threat intelligence to detection in real time
“Zero-click” WeChat worm could hijack accounts and spread via a single call
SC Magazine
Security Money: The Index Explodes, as the History of AI Teaches Us About Investments - John Willis - BSW #464
New Android RAT uses worm to target exposed ADB services
Center for Internet Security partners with OpenAI for AI cybersecurity pilot
Mars Security launches real-time threat intelligence to detection platform
MikroTik routers targeted by active SSH zero-day exploitation
Broadcom patches critical VMware Workstation and Fusion VM escape vulnerabilities
Madagascar strengthens digital identity program with new cybercrime laws
Cybercabs, Robohobos, BigBear, Nightmare Eclipse, weChat, Flock, ASCII, Aaran Leyland - SWN #614
Identity Security Posture Management (ISPM): Visibility, Risk, and Remediation
Closing the accountability divide: How to prove what happened in a breach
© 2026 RiskDiscovery | Sponsored by:
Deception Logic