[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Is Cyber Facing an Affordability Crisis?
Exploited Zimbra Flaw Highlights Shrinking Window to Patch
Foul Language: WordlistLoader Disguises Malware as Ordinary Text
Tricky 'SynkLoader' Multitool May Herald Ransomware
ToxicPanda Banking Trojan Matures Into Enterprise Threat
The Vulnerability Gap: Why Discovery Is Outrunning Repair
How an Emerging Industrial Protocol Family Could Put OT at Risk
OWASP Flags Top AI Skill Risks in New Security Blueprint
Calling on Cyber Pros to Help Defend City Hall
OpenAI Adds Controls That Should've Been There Already
Ars Technica
Inaudible sounds used to fingerprint browsers catch AliExpress red-handed
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
PBS station fears losing 50TB of data after being ghosted by cloud storage provider
OpenAI and Anthropic in price war as Chinese AI rivals gain ground
Private security firms will soon be allowed to hack overseas cybercriminals
Terabytes of credentials leaked in massive supply-chain attack
CyberScoop
Interpol targets Black Axe’s illicit financial web in latest international sting
SCOTUS tosses one of two injunctions against Trump USPS mail-in ballot rules
Treasury sanctions alleged Iranian hackers as part of ‘economic D-Day’
Bipartisan Senate bill aims to prepare energy sector for Q-Day
Postal Service moves to finalize mail ballot regs before SCOTUS ruling
Apollo discloses data breach from ongoing wave of attacks hitting financial sector
Lawmakers seek watchdog review of federal hacking of Americans
Early 764 member sentenced to 77 years, longest prison term to date for a nihilistic violent extremist
Retail theft bill spurs ‘very large and very dangerous’ surveillance fears
The push to designate AI as the next critical infrastructure sector
InfoSecurity Magazine
ZeroTokens Phishing Platform Steers Attacks in Real Time
Fake Recruiter Scams Target Corporate Credentials on Mobile
Australia Warns of Active Exploitation of Critical TeamCity Server Flaw
Fake Minecraft Clients Deliver WeedHack Malware Despite Infrastructure Takedown
ReliaQuest Rejects Compromise Claims After ShinyHunters Incident
US Sanctions Mabna Institute Hackers for Iranian Cyber-Attacks
New Guidance Helps Businesses Verify Quantum-Safe Hardware Claims
NIST Warns of Unique Security Risks in Multi-Cloud Environments
Fake Codex Download Uses Google Sites to Deliver macOS Malware
Doubloon Dredger Abuses Notion to Harvest Authentication Tokens
SecurityWeek
Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails
WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities
WhatsApp Adds Multiple Passkeys and Stronger 2SV in Account Security Update
Hands-On Cyber-Physical Systems Training Returns to ICS Cybersecurity Conference
First Malware Built Specifically for Car Head Units Fuels Botnet
Silent Patches Don’t Stop Attackers – They Blind Defenders
Taiwan Charges 9 Over Illegal AI Server Exports to China, Including Nvidia and Super Micro Staff
CISA Warns of Exploited Oracle WebLogic Vulnerability
ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited
Hired for One Job, Judged on Another: The CISO’s Real Problem
ZDNet
Portable Computer is Perplexity's new local AI agent - why it's a game changer
'Just a hobby, won't be big': Linus Torvalds introduced Linux 35 years ago - and almost called it Freax
This free tool keeps my bookmarks synced across Chrome, Firefox, and Edge - here's how
Businesses must reinvent their processes and workforce to scale agentic AI adoption
The best early Labor Day deals to shop now: Save on TVs, Apple devices, and more
This Blink security camera can last up to 2 years on one charge - and it's on sale
The $649 Fairphone 6+ is the Goldilocks of Android phones - and it's available in the US now
I tried Meta's new free vibe coding app to make my own games, and it was surprisingly fun
The best early Labor Day Garmin watch deals: Gear up for marathon training for less
I found the best early Labor Day Walmart deals: Save on Apple, Samsung, and more
The Hacker News
A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw
WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android
Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode
Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows
24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages
E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands
Frontier AI: Vulnerability Management's Systemic Revolution
Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access
Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data
Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt
BleepingComputer
Hospital operator Nutex Health says data stolen in cyberattack
From Fake Workers to Account Recovery: The Growing Identity Verification Risk
Microsoft PowerToys adds Alt+Tab-style switching for an app's windows
WhatsApp adds stronger two-step verification, multiple passkeys
Hackers breached over 270 Zimbra servers in ongoing attacks
Police arrests dozens of suspects in global cybercrime crackdown
Unpatched Calix flaw lets hackers bypass NAT to expose internal devices
Hackers target WordPress sites in miniOrange auth bypass attacks
TikTok reaches $400M settlement with US over COPPA violations
ReliaQuest confirms failed data-theft attack after ShinyHunters breach
gbhackers
AI-Assisted ToxNetV2 Linux Botnet Uses LLM to Generate Shell and SSH Commands
Multi-Agent AI Framework Compromises Government Systems and Steals Thousands of Records
Scammers Impersonate Microsoft to Push Fake Security Scans and Refund Fraud
ASOS Warns Customers of Data Breach Following Credential-Based Account Takeovers
Multiple Zscaler Client Connector Flaws Enable Remote Code Execution
91 Spring CVEs Impact Over 209,000 Software Components Across the Supply Chain
PavinLoader Uses ClickFix and Fake Downloads to Deploy Amatera Stealer via Blockchain C2
Anthropic Expands Claude MCP Security With Enterprise-Managed Identity Controls
Critical miniOrange SAML SSO Flaws Let Attackers Take Over WordPress Admin Accounts
Critical Red Hat Keycloak Password Reset Flaw Enables Unauthenticated Account Takeover
Cybersecurity Dive
UK power facility disabled for days after suspected state-linked cyberattack
House Democrats ask GAO to study CISA workforce cuts
Salesforce gave every org the same free scanner. Attackers already know what it misses.
Microsoft discloses maximum severity flaw in Entra ID
Defense contractors still struggling with basic CMMC requirements
Fitch explains how water, healthcare organizations can keep strong credit ratings despite cyberattacks
What we know so far about the hacking campaign against US water systems
AI-backed campaign targeting vulnerable Siemens S7 devices, CISA and FBI warn
Ransomware disproportionately targets medium-sized firms, straining customer relationships
DOJ charges 17 people in Iran-backed hacking campaign against US
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
CISA slaps its tightest three-day patching deadline on perfect-10 Oracle flaw
Crooks push Mac malware through fake OpenAI Codex ads
You don't want this Sleepwalker backdoor on your Windows machine
Browser fingerprint tool shows how easy you are to track using the latest sneaky tricks
Iran-linked cyberattack shut down a UK power plant
AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones
Security vets rally around $4 paper password books for sale in Australia
If you're not using AI to attack your own systems, your adversaries will
AWS Security makes an inscrutable choice
Homeland security cybercops say patch TrueConf (Russia's Zoom) if you're using it
VentureBeat
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
TechCrunch
Apple rescues Hide My Email feature from the privacy scrap heap
WhatsApp tightens account security with stronger two-step verification and more
Alabama launches investigation into OpenAI’s hack of Hugging Face
Instinct’s powerful AI assistant is raising privacy and security concerns
Frontier AI labs still won’t say how they’d contain a rogue model
Private equity firm Apollo confirms data breach amid hacking wave targeting financial giants
Senator asks US government watchdog to review how feds use hacking tools
Someone targeted security researchers using a fake crypto conference as a lure
AI data giant Alation confirms cyberattack
US says hackers are targeting vulnerable water systems with the help of AI
Network World Security
2026 network outage report and internet health check
Cisco taps Teleport for infrastructure identity management tech
Google adds AI-powered assessments to Migration Center to speed up cloud migration planning
AI is turning the semiconductor market into a $1.6 trillion industry
Nvidia to hike prices by 15%, on top of an even larger increase in July
IBM unveils dual-architecture processor to run Arm-native apps on Z mainframes
AI agents are reshaping the threat landscape, shifting IT skills requirements
Nvidia scales back financing guarantee for OpenAI data center
Palo Alto Networks and NTT Data target $1B in joint AI security sales with new managed offerings
Network architecture pay climbs amid AI shift
Help Net Security
INTERPOL crackdown on West African crime rings uncovers troubling new trend
Citrix UniconOS dual boot turns Windows endpoints into their own recovery device
Fideo Lens reveals connections across identities, accounts and devices
Fake OpenAI Codex download tricks macOS users into installing malware
Unpatched Zimbra servers are falling to CVE-2026-73570 attacks
ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack
AI supply chain risk is showing up in developer workflows first
TruffleHog AWS Analyze reduces remediation time on leaked AWS credentials
HOL Guard: Open-source antivirus for AI agents
The cybercrime supply chain has five stages, each with a price
SC Magazine
Why mission risk should drive cyber operations strategies
Instinct AI assistant faces privacy concerns
Unpatched Calix router vulnerability allows remote attackers to expose home networks
New 'Sleepwalker' backdoor uses custom command language
Alabama attorney general subpoenas OpenAI over AI breach
Codex ClickFix installation lure spreads suspected AMOS infostealer
Applying Zero Trust Principles to Agents - Kieran Human - ASW #397
AWS patches flaw in 7 SDKs
ShinyHunters claims social engineering attack against ReliaQuest
Senate bill aims to prepare U.S. electric grid for quantum computing threats
© 2026 RiskDiscovery | Sponsored by:
Deception Logic