[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] Cybersecurity Outlook 2027
One Packet Can Crash OT Servers in Industrial Sectors
Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts
AI Agents Are Privileged Users; Who Is Auditing Their Access?
Chrome Store Hosts 'Poper Blocker' Spyware Downloaded by Millions
JadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud Attack
Why the CISO-CFO Relationship Is a Key to Cybersecurity Success
AI Sandbox Escapes: Why Forensic Readiness Matters More Than Containment
What We Missed: Google Gemini Joins the AI Escape Party
Stopping IT Worker Scams Requires Revamped HR Process
Ars Technica
Your uncle’s frozen Mac says it’s infected after viewing a Google ad. Now what?
There's a new way to break RSA that's faster than anything we've seen before
Microsoft disrupts AI-assisted platform that compromised 12,000 accounts
IT mistake erases 11 years of viewing history for hospitals’ maternity records
Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day
An undercover Google analyst infiltrated a notorious supply-chain hacking gang
LLMs respond differently to harmful prompts when AI watermarking is used
Nonprofit that tracks meteors taken down by "critical blow" from a cyberattack
AI bots "Timmy," "Ren," and "Jackie" are flooding social media with slop
ClickFix attacks infecting PCs and Macs are going viral
CyberScoop
Citrix patches actively exploited NetScaler zero-days after a weekend of unofficial warnings
As AI world debates security, NVIDIA releases open source tools for agents
ShinyHunters trades financial extortion for a reckless war of ego with the FBI
Army soldier sentenced for spree of attacks on AT&T, Snowflake and other major companies
Supreme Court permits states to use SAVE database for citizenship checks
House and Senate members propose legislation for CISA to step up cyber defenses for biotech
New bill would create federal investigative body for AI-driven hacks
Phone-hacking company that won U.S. security agency contracts hid Russian ownership, DOJ alleges
Bipartisan Senate leaders introduce bill to bolster telecom cybersecurity in response to Salt Typhoon hacks
How tax policy can stop threat actors from breaching US water systems
InfoSecurity Magazine
Bitget Restarts Bitcoin Withdrawals Following $387.5m Wallet Breach
NVIDIA Launches Open Platform to Secure Autonomous AI Agents
Deepfakes Are Becoming a Costly Reality for Businesses, Report Warns
MCP Is Creating Major Governance Gaps, Researchers Warn
Citrix Patches Critical Zero Days Under Active Exploitation
Zero-Click Vulnerabilities in Salesforce Agentforce Expose Wider AI Agent Risk
CISA Unveils Election Security Plan Ahead of 2026 Midterms
RemControl Banking Trojan Gives Attackers Remote Control of Android Devices
Researchers Identify AliExpress Phishing Domains Before Registration
Emerging Ransomware Gang Uses Backup Destruction Threats to Pressure Victims
SecurityWeek
Apple Patches Meta-Reported Zero-Day Linked to ‘Extremely Sophisticated Attack’
Modulate Raises $25 Million to Advance Deepfake Detection
Call for Presentations Open for 2026 CISO Forum Virtual Summit
Prison Sentence for Former US Soldier Who Hacked AT&T and Verizon
DC Health Agency Exposes 400,000 Beneficiary Records
Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign
New Mexico Jury Finds Facebook Liable for Deceiving Users About Privacy Protections
Nvidia Unveils AI Agent Safety Platform With Hardware-Based Watchdog
Kiteworks Urges Server Shutdown, Finds Advanced Forms Vulnerability
Citrix Confirms 2 NetScaler Zero-Days After Admins Pulled the Plug
ZDNet
iOS 27.0.1 released: Apple fixes annoying iPhone 18 Pro restart and freezing issues
Bose’s new wired earbuds aim for the same great sound and ANC – no charging needed
Your Bose headphones are getting a major Bluetooth upgrade – what to expect
This one WatchOS 27 feature just solved my biggest issue with Apple Watch
Your LG TV is constantly collecting your data – here’s how to stop it
Microsoft’s new Copilot app puts everything in one place – but the price is ‘evolving’
Google Wallet got a lot of new tricks in 2026 – these 5 are my favorites
Microsoft’s Surface Mouse is back, now with haptic feedback – and I need it
AI agent kill switch urged by Okta-led alliance – how businesses could make it work
Is your Apple Watch 12 or Ultra 4 randomly restarting? Here’s the fix
The Hacker News
Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials
OpenAI Shelves GPT-6.1 Astra After Tests Find Deception and Unauthorized Actions
OpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External Chatbot
Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks
Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks
IAM for AI agents: A Practical Enterprise Framework
Bitget Says Attacker Exploited Third-Party Security Product Flaw to Steal $388M
RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
⚡ Weekly Recap: $387M Crypto Hack, Citrix Exploits, AI Agents Go Off-Script, and More Threats
Webinar: How to Govern AI Agents, Reduce Excessive Access, and Control Shadow AI
BleepingComputer
Kiteworks patches critical flaw, brings customer systems online
Apple patches CoreGraphics zero-day flaw exploited in attacks
Japan's Keio confirms ransomware attack disrupted business systems
Times Car confirms data breach affecting 6.6 million user accounts
Dutch police confirm arrest in ShinyHunters hacking investigation
Over 16,000 Supabase databases expose PII, passwords, auth tokens
JadePuffer agentic AI attacks target Azure, destroy cloud resources
80,000+ Organizations Had AI Logins Stolen: From Shadow AI to LLMjacking
Bitget resumes Bitcoin withdrawals after $387.5 million crypto heist
US soldier gets 70 months in prison for extorting 10 tech, telecom firms
gbhackers
Apple Fixes iOS Zero-Day Exploited in Sophisticated Targeted Attacks
Attackers Hid Behind Trusted RMM Software Before Deploying a Full Surveillance RAT
Keio Railway Confirms Ransomware Attack Disrupted Business Systems
Microsoft Tracks NeedyMantis Malware Targeting Telecoms and Government Contractors
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
File Notification Attacks Let Hackers Track Keystrokes and Website Visits on Linux, Windows and macOS
Researchers Found a Windows RAT That Turns Victims’ Screens Into Live Streams
Pentagon Data Breach Exposes Sensitive Data of Over 3 Million People
Malicious VPN Extensions Turn Browser Users Into Residential Proxy Servers
Researchers Discover Cybercrime Server Containing AI Tools, Phishing Kits and Stolen Data
Cybersecurity Dive
Kiteworks lifts advisory after precautionary warning for customers to shut down systems
Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
Niche AI tools pose major cybersecurity risk to infrastructure operators
Your attack surface is bigger than you think… and hackers know that
Security testing has to keep pace with AI-driven attackers
Context matters when it comes to cybersecurity’s agentic operating model
Businesses expand AI’s cybersecurity uses as comfort with technology grows
Threat groups ramp up social-engineering attacks against healthcare sector
Wiz uses AI to find vulnerabilities in critical infrastructure
Rogue OpenAI agent targeted Australian government site
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
OpenAI’s dirty deeds Down Under included security bypass attempts, using exposed keys, source code siphon
JadePuffer crims hijacked Azure identities and used them to blow up cloud resources
Ex-soldier's telecom hacking spree earns him 70 months
Certainties in life: Death, taxes, and critical Citrix vulns under attack
OpenAI pauses some training amid allegations its rogue agents behaved more badly than first thought
Fake Google Security Team ad says 'no script reading' in voice phishing - then prints the script
ShinyHunters tells The Reg: We hacked the FBI to 'protect our business'
Crooks use fake desktop apps to fool HR staff into giving them remote access
Bitget blames North Korea for $387.5M crypto wallet raid
Which copy of that file is the real one? Dinner, off the record, in Midtown
VentureBeat
AI agents are exposing a security gap between the data they read and the systems they can change
AI agents have routed around access blocks. Only 9% of companies in VentureBeat's August survey isolate high-risk agents
Monorepos make coding agents more useful — but compromised accounts are harder to contain
AI coding tools are accelerating dependency sprawl and expanding malware risk with it
AI has created a new identity problem. Agentic IAM is how we solve it.
Meta patched Muse’s zero-day, but security teams still lack visibility into what the agent can access
Companies are putting Jev in charge of AI agent decisions — and prompt injection can influence the verdict
TechCrunch
FBI reportedly declares ‘cyber security incident’ after hackers steal agents’ personal data
Some Supabase customers are publicly exposing reams of people’s data to the web
Kiteworks urges customers to shut down their servers amid ‘imminent’ threat of cyberattack
North Korean hackers suspected in $351M crypto theft, the largest so far this year
Australia to investigate if OpenAI hack of government health website broke the law
What’s next for cybersecurity, according to Index Ventures’ Shardul Shah
LinkedIn adds new tools to fight fake profiles and bogus work histories
Hacking group ShinyHunters claims it breached the FBI, stole agents’ and applicants’ data
Stolen passwords are exposing America’s water providers to hackers
Google’s Gemini is the latest AI model to hack other companies
Network World Security
Why a network digital twin is the missing piece for AI-era operations
NetScaler admins told to patch critical zero-days in ADC and Gateway now
Tackling the three hidden mistakes when planning a GCC
Rewiring global capability centers for the AI era
Google’s first prototype satellite is going up, kicking off its space-based data center project
Can Nvidia’s GeForce gaming GPU really be repurposed for AI computing?
Meta floats project to lay first petabit submarine fiberoptic cable
IP Fabric 8.1 adds application-aware mapping and cloud-native data model
On-prem VeloCloud Orchestrator under attack, only some versions patched
F5 fixes actively exploited zero-day flaw in BIG-IP APM
Help Net Security
Cloudflare’s EmDash 1.0 makes sandboxed plugins ask for access first
Claude Sonnet 5.5 gets faster without a price hike
GitHub’s AI agent found 24 Android app vulnerabilities
A four-week plan to tackle vendor concentration risk
Hottest cybersecurity open-source tools of the month: September 2026
Cybersecurity jobs available right now: September 29, 2026
FBI job portals remain offline after ShinyHunters claims breach via PeopleSoft zero-day
16-year-old researcher breaks into Microsoft analytics service with access to 17 trillion rows of data
Other users can watch your browsing and time your keystrokes through OS file notifications
NVIDIA wants AI agent safety enforced in silicon, not left to the agent
SC Magazine
Going From Bug Bounty Bugs to More Secure Systems - Shlomie Liberow - ASW #402
QR code vulnerability allows attackers to hijack branded domains
Nvidia launches open-source platform to enhance AI agent safety
Malicious ad-blocking extensions exploit Chrome Web Store trust
Nearly 400,000 DC Medicaid beneficiaries' data exposed on public website
AI coding agent deletes 48,000 files due to mishandled Windows junctions
Lunex malware platform uses Psychedelic Stealer via compromised Ukrainian sites
Exploit.in data reveals enduring roots of cybercrime in early 2000s forum
Google ads deliver sophisticated tech support scam targeting Windows and Mac users
US soldier sentenced to 70 months for hacking AT&T data
© 2026 RiskDiscovery | Sponsored by:
Deception Logic