[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Escape Artists: 'Incorrigible' AI Models Resist Rehabilitation
Vatican's Official Prayer App Leaks 700K+ Global Users' PII
Default Azure Automation Setting Enables Cross-Tenant Identity Takeover
Europe's Multilingual Reality Exposes AI Security Gaps
Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets
Agentic AI Challenges Progress in Confidential Computing
Brazilian Banking Trojan Actively Spreading in Portugal
Ransomware Attack Puts a Chill on Japanese Frozen-Food Chain
Flaws in Passkey Implementation Show Old Attacks Still Work
Attackers Are Learning to Live Off the AI Toolchain
Ars Technica
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
The US government warns that Russia state hackers are coming after your router
Now, defenders are embracing the prompt injection, too
Patch for Windows Defender 0-day could allow attackers to fill hard disk
CyberScoop
Despite multiple takedowns, botnets continue to grow
Microsoft, tech companies throw weight behind spread of open-source AI
Rubio restricts visas for sextortionists, cyber scammers
Russian espionage group using novel Zimbra exploit to steal sensitive data from Western countries
ANCHOR-CI could fix 20 years of broken government-industry collaboration
Most federal cybersecurity reporting rules are duplicative, study finds
Malware is targeting AI tools in software development environments
White House accuses Chinese company of distilling Anthropic’s Fable
OpenAI says model test was behind Hugging Face hack
AI models keep getting caught cheating
InfoSecurity Magazine
Hotel Wi-Fi Routers Compromised to Steal Corporate Login Credentials From Visitors
ChatGPT Among Top 10 Most Impersonated Brands in Phishing Attacks, Says Check Point
Ransomware Attacks Targeting Universities on the Rise
Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations
Microsoft Copilot Deployments Delayed Over Security Concerns
Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns
AI Agents Now the Enterprises Fastest Growing Exposed Attack Surface
New Dolphin X Stealer Employs AI Profiling to Prioritize Targets
Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
TrickBot Ditches HTTP for DNS Tunneling in Latest Variant
SecurityWeek
In Other News: Dolphin X AI-Powered Malware, Car Anti-Theft Device Hack, 400 Linux Kernel Flaws
AegisAI Raises $36 Million for AI-Powered Email Security
Industry Reactions to OpenAI Models Hacking Hugging Face: Feedback Friday
Data Breach Confirmed After Australian Energy Giant Origin Is Hacked
OpenAI Fixes ChatGPT Agent Flaw That Could Let Attackers Forge an AI Insider
Is Patching Dead? Vulnerability Management in the Post-Mythos Era
Chick-fil-A Accounts Get Fried in Credential Stuffing Attack
Abstract Raises $25 Million to Expand Composable Security Operations Platform
Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models
Upbound Group Says Data Breach Led to $13 Million in Fraudulent Contract Losses
ZDNet
Amazon will give you a $350 gift card when you buy a new Samsung phone - here's what to know
Claude Opus 5 arrives with near Fable performance at half the price
I fixed my home office's spotty Wi-Fi with Samsung's free diagnostic tool - and it took just minutes
The 3 types of people who will excel in the AI agent era, according to tech leaders
Samsung Galaxy Watch 9 vs. Google Pixel Watch 4: I compared both Android flagships, here's what I prefer
I tested Dell's new midrange work PC - It nails the sweet spot of price and performance
I tested a $14 emergency radio with solar and hand-crank power - it's in my survival kit now
4 little-known Google Calendar tricks I use to plan my workweek - and save time
250 Eiffel Towers' worth of waste: The AI boom's toxic hardware problem
One of these 13 gadgets could be the hero your junk drawer needs (here's why)
The Hacker News
BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery
Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link
Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do
Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry
Golden Chickens Resurfaces With Four New Malware Families and Modular Implants
NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats
Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say
Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks
BleepingComputer
OnTrac notifies customers of data breach after network hack
Hermes AI agent used to automate attack on Thai Finance Ministry
Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts
Microsoft blames massive Microsoft 365 outage on maintenance bug
Chick-fil-A data breach affects more than 13,000 customers
Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI Attack
Europol flags 4,340 URLs for removal in 'The Com' crackdown
Man gets six years for hacking 750 women's Snapchat accounts
Clop ransomware targets Windchill, FlexPLM in data theft attacks
New Dolphin X malware uses AI to rank high-value targets
gbhackers
Tego AI Discloses Second Claude Flaw in a Week: Hidden Link Silently Sends Files to Attackers
Foxit PDF Reader Flaw Lets Local Attackers Gain SYSTEM Privileges via DLL Sideloading
Cl0p Targets Internet-Exposed Windchill Servers in Global Engineering Data-Theft Campaign
Illinois Man Pleads Guilty to Phishing 4,500 Snapchat Users to Steal Private Photos
SectopRAT Gives Attackers Remote Access to Passwords, Credit Cards, Cookies and Corporate Files
Golden Chickens Launches Four Modular Malware Families to Steal Chrome Credentials and Hijack Browser Sessions
SourTrade Browser-Assembled Malware Defeats Hash-Based Detection by Design
JetBrains Patches Multiple Vulnerabilities Affecting IntelliJ IDEA and TeamCity
Australian Energy Giant Origin Confirms Data Breach Exposes Customer Data
Apache Syncope Flaws Let Users Gain Admin Roles and Execute Remote Code
Cybersecurity Dive
Zero-day flaw in Check Point SmartConsole is under exploitation
The most vulnerable AI products are also some of the most commonly exposed online
Russia-backed threat actor targets Western organizations in phishing campaign
CISA, FBI warn that Iran-linked hackers are expanding target set for water, energy
GAO report details scope of cybersecurity regulation overlap
Threat group claims credit for ransomware attack on Coca-Cola’s dairy unit
OpenAI models escaped containment, hacked major AI application library
4 ways to secure local developer IDEs and tools without sacrificing velocity
Ransomware victims fail to fix flaws that exposed them
Microsoft SharePoint under attack via new exploit
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Europol flags 4,340 'horrific' URLs linked to The Com
Uncle Sam tells overseas cybercrooks their visas are canceled
OpenAI-Hugging Face attack doesn't mean agents are evil – unless you tell them to be
Researchers replace downloaded macOS apps with evil twins, Apple shrugs
Year-long Russian attacks infect users as soon as they look at an email
Millions of California-bought cars can be hijacked via Bluetooth
Oracle drops 1,449 security patches like it's the new normal
Iran-linked crews are probing more flavors of US industrial kit
One ChatGPT link could smuggle a rogue AI agent into your company
Swiss train maker tells ransomware crooks to get off at the next stop
VentureBeat
Multi-turn attacks broke AI models 88% of the time — single-turn testing missed it, Cisco AI security lead warns at VB Transform 2026
An AI now judges every move Rubrik's agents make, its AI chief said at VB Transform 2026 — but no one's measured if the judge is right
The credential that let OpenAI's agents into Hugging Face exists in most enterprises right now
OpenAI's models broke containment and cyberattacked Hugging Face — what enterprises need to know
Evals are the new PRD, Expedia’s AI chief tells VB Transform 2026
Safety guardrails blocked Hugging Face's defenders, not the attacker, when an AI agent breached its systems
AI confidence just dropped 17 points in six months. That’s actually great news.
TechCrunch
US accuses American of allegedly wiping his phone using a ‘duress’ password during border search
How AI guardrails are impeding the work of offensive cybersecurity researchers
AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing
US government says Iran-linked hackers are disrupting American water and energy providers
How OpenAI’s human mistake led to the AI-powered hack on Hugging Face
If you pay a hacker’s ransom, chances are that they’ll come back for more
Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era
AI music generator Suno breach affects 55M users, per Have I Been Pwned
Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk
Hackers stole ‘significant’ amount of data from tech firm relied on by thousands of US hospitals and pharmacies
Network World Security
Cisco, AMD bring enterprise-level security, visibility to Ryzen AI Halo systems
Cloudflare Internal DNS puts public and private DNS on one policy engine
Atos launches sovereign cloud service to power comeback
Microsoft explains why its West US Azure and cloud services failed
ISC2 seeks input from IT pros for AI security certification
Why enterprises should care about Nokia’s AI-RAN platform
IPv4 address exhaustion drives NetworkManager 1.58 release
Google has started selling TPUs, but still keeps most for itself
Linux XFS has a decade-old race condition allowing full root access
Federal quantum bet grows with DARPA’s $125 million PsiQuantum award
Help Net Security
Meta tackles AI-generated accounts with a free Facebook verification badge
Russian hackers exploit unpatched Zimbra servers to steal emails
Microsoft tightens Windows enterprise activation security
Google gives developers an AI bug hunter that also writes patches
Google’s newest sign-in method asks you to look at the camera
The automotive software vulnerabilities hiding in your dashboard
Governing Al agents at scale: Lessons from the leaders who’ve done it
Ransomware gangs go after EMEA healthcare’s supply chain
The best-funded companies open the most phishing attachments
Ransomware in 2026: More groups, more victims, no slowdown
SC Magazine
New AI, who this? 4 areas to consider when adopting agentic endpoint security
IdP Dependency Mapping: How to Find Your Identity Single Points of Failure
Federation and Single Sign-On: How SSO Works and When It Breaks
What GRC Actually Controls
Rep. Bacon warns CISA cuts weaken U.S. cyber defenses
Service-to-Service Authentication: Patterns for Securing API and Microservices
Federation Outage Prevention: What breaks, how to test it and how to recover
US warns of Iran-linked attacks on critical infrastructure
Why Role-Based Access Breaks at Hospital Scale — and What Replaces It
Origin Energy confirms data breach impacting millions of customers
© 2026 RiskDiscovery | Sponsored by:
Deception Logic