[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
ClickFix Campaign Compromises 31 Orgs, Abuses Polygon Blockchain
Anthropic Users Hit by Infostealer Attacks, Session Thefts
'TerminalFix' Campaign Weaponizes PowerShell for Enterprise Attacks
The Guardrails Debate: Security Researcher Changes His Mind
AI Model Rules Are Not Security Controls
Hundreds of OpenAI Agents Invaded Hugging Face Servers
Offensive Security Investments Surge as AI Threats Increase
You Need Cyber Deception for OT
Ars Technica
Think twice before installing this device promising free movies
Inside Meta’s push to put robots to work in data centers
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
Claude, Codex, and Hermes installed unowned code inside corporate networks
How OpenAI let a mob of LLM agents game a test and ransack Hugging Face
AI agents meant to replace Meta workers made “large-scale, disruptive actions”
Inaudible sounds used to fingerprint browsers catch AliExpress red-handed
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
CyberScoop
Whistleblower says USPS deploying new, ‘untested’ IT systems governing mail-in ballots
The Collective Cyber Defense letter wrote your next vendor questionnaire
McKesson copes with fallout from data theft extortion attack
‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
The AI Kill Switch Act is repeating the Clipper Chip’s mistakes
ATF confirms cyberattack hit system containing info on its investigation targets
Unit 42 warns AI has shifted balance of power from defenders to attackers
100-plus companies call for ‘global surge’ in AI-powered cyber defense
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Two alleged TeamPCP members arrested and charged after months of software supply-chain chaos
InfoSecurity Magazine
Attackers Steal METR API Key and Burn $600,000 in AI Credits
65% of Enterprises Have Seen AI Agents Act Out of Scope
White House Launches Pilot Program in Texas to Protect Water Infrastructure
Financial Stability Board Sounds the Alarm Over Frontier AI Risks
Healthcare Giant McKesson Investigates Data Breach Incident
Fake Voicemail SVG Attachments Fuel Large-Scale Phishing Campaign
Window to Tackle Surge in AI-Enabled Cyber Attacks Narrowing, Tech Giants Warn
Threat Actors Abuse Cursor Agent AI to Assist Ransomware Operations
Manchester Airports Group Hit by Cyber Incident
Chinese Hacker Group QTFY Uses Custom-Built Platforms to Target US Infrastructure, FBI Warns
SecurityWeek
Sevii Targets AI-Speed Attacks With Preemptive Autonomous Defense
Coast Guard Establishes Office of Maritime Cybersecurity Policy
Experiment: Porting a PLC Exploit With AI Takes Hours and Hundreds of Dollars
Hackers Start Exploiting Critical Langflow Vulnerability
Five Venezuelans Plead Guilty in US Court to ATM Jackpotting
Ransomware Gang Claims Nutex Health Data Breach
Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild
9.5 Million Impacted by Aesto Health Data Breach
WatchGuard Patches Critical Vulnerabilities
PaperCut Exploitation Escalates to Active Intrusions
ZDNet
The Hacker News
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems
13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds
Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests
Threat Actors Don’t Want Better Attacks. They Want Repeatable Ones
Attackers Steal METR API Key and Consume AI Credits Worth About $600,000
Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis
Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity
North Korean Job Fraud Expands Beyond IT Into Healthcare and Sales
⚡ Weekly Recap: Chinese Spy Proxy, AI Agents Go Off-Task, Router Backdoors and More
BleepingComputer
Critical Langflow flaw exploited to steal OpenAI and AWS keys
Hackers push malicious Virtualizor update in BGP hijacking attack
Novocure data breach affects more than 1,400 cancer patients
Why Even the Best Edge Security Still Misses High-Risk Sessions
Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks
Five Venezuelans plead guilty to ATM jackpotting attacks in US
Recently patched PaperCut zero-days used in data theft attacks
Cronos blockchain restarts after $74 million Tectonic exploit
Microsoft warns of TerminalFix attacks deploying reverse tunnels
Massive Microsoft 365 outage causes auth issues, service failures
gbhackers
Mirage Kitten Hackers Use Fake Coding Challenges to Deploy NodeRabbit and PollCat RATs
Hackers Exploit Critical Langflow and Ruby on Rails Flaws in Active RCE Attacks
Hackers Pose as IT Support on Microsoft Teams to Target More Than 150 Employees
Five Plead Guilty to Using ATM Jackpotting Malware in Cash Theft Scheme
Hackers Abuse Legitimate ChatGPT Shared Links to Deploy NetSupport RAT
JSCeal Crypto Stealer Uses V8 Bytecode to Steal Browser Credentials and Intercept HTTPS
Critical JFrog Artifactory Authentication Bypass Exploited in the Wild
Boston Scientific Cyberattack Disrupts Manufacturing and Product Shipments
AI-Enhanced BraZetsu Malware Powers Underground Market Selling Access to Corporate Networks
Fake OpenAI, Anthropic and DeepSeek Crawlers Target .env Files and Cloud Credentials
Cybersecurity Dive
Security policies fail to keep up with a hybrid cloud world
Frontier AI used to help exploit flaws in key industrial devices
PaperCut issues emergency patches as threat actors target chained vulnerabilities
State-linked actor targets Cisco routers for espionage
Frontier AI tipping the scales toward cyber adversaries
CISA identifies security hurdles that led to very different results in two red-team engagements
Hundreds of agents went rogue in lead up to Hugging Face breach
Federal authorities disrupt China-backed hacking operation targeting US critical infrastructure
Boston Scientific says cyberattack disrupted order processing, shipping
Treasury to help financial firms transition to quantum-resistant encryption
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
33-hour BGP hijack of Softaculous traffic prompts security scramble
Healthcare cyberattacks hit pacemakers and millions of patient records
OpenClaw 2.0 pours glitter on slow-burning security dumpster fire
Attack hides malware in PNGs and drops custom reverse tunnel on victims' machines
Anthropic cracks down on hijacked user accounts mining AI tokens
Turns out Brits would quite like their private messages to stay private
Researcher shows how Claude Code can be tricked simply by asking it to summarize a website
US government snitch-finder pleads guilty to leaking state secrets to foreign spies
CISA: Most exploited vulnerabilities should have been eradicated decades ago
Industry that built the problem offers to sell you the solution
VentureBeat
Identity and permissions aren’t enough to govern AI agent behavior
AI agents need their own identity before they need a gateway
AI agents that pass authentication can still drift, expose data, or get memory-poisoned
The three layers of agentic AI security: A defense-in-depth architecture for autonomous agents
Visa ships a security AI that patches production code before any human reviews it
When agents act on their own, governance has to live in the data layer
The fix for the AI agent that hijacked a company's DNS: it can propose the change, but it can't approve it
TechCrunch
AIR raises $50M to help companies vet the skills and add-ons AI agents use
Florida and Texas move to block Flock cameras over privacy concerns
Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson
How AI could make it harder for governments to use hacking tools
More Americans oppose police license plate cameras than support them: survey
ATF declares ‘major incident’ as ransomware gang claims hack
Australian police arrest two over TeamPCP hacks targeting Mercor, OpenAI, and others
Here’s all the times AI has gone rogue and hacked other companies
Medical device maker Boston Scientific says a cyberattack is causing a ‘global disruption’ to its operations
US seizes domains of Chinese botnet used to target NASA, Justice Department, and the Senate
Network World Security
2026 network outage report and internet health check
China-linked hackers turn Cisco IOS XR routers into covert attack infrastructure
Nvidia unveils alternative high-bandwidth technology to bolster AI cards
Private AI cloud, agentic infrastructure dominate VMware Explore
Tailscale expands from VPN into a full connectivity platform
On-device translation: Why smaller, specialized AI models win
Kyndryl, Broadcom expand partnership to push private clouds for AI work
Kubernetes 1.37 advances workload-aware scheduling and cluster networking
Intel unwraps three-pronged architecture strategy to go after agentic AI
Cisco bulks up its AI infrastructure portfolio with Supermicro’s liquid-cooled servers
Help Net Security
CISA review makes the case for eliminating vulnerability classes
Vishing campaign abuses Microsoft Teams to give attackers a foothold in company networks
Fake Claude Opus 5 app delivers malware and wipes its own tracks
Berlin refuses to be blackmailed after network breach
LastPass enhancements improve visibility, governance, and control
Askeal, the AI cybersecurity assistant that gives verifiable, expert-backed answers
Bot detection arrives in CrowdSec 1.8.0, along with two DoS fixes
NIS2 compliance: Fixing IAM and access control before the 2026 audit
What your vendor says about PQC tells you if they are ready
Cybersecurity jobs available right now: September 1, 2026
SC Magazine
Ping YOUniverse: Why the identity paradigm needs to change
Defend AI together, or fail alone
GrapheneOS may drop Pixel 11 support over missing MTE security feature
Australia introduces new digital identity strategy amid rising data breach and surveillance risks
New water sector cybersecurity program launches in Texas
Infostealer malware compromises Claude accounts, bypassing 2FA
RevStealer malware spread through fake Claude Opus 5 download
Fixing Software Weaknesses Rather Than Just Finding More Flaws - Nidhi Aggarwal, Gil Geron, Braden Russell - ASW #398
China-linked campaign targets high-value networks, critical infrastructure
AI killed the typo. Now it's time to rewrite phishing training.
© 2026 RiskDiscovery | Sponsored by:
Deception Logic