[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
'Sandworm' Chains Cisco Vulnerabilities to Deploy Cyclops Blink
Maximum Severity GitLab Flaw Puts Supply Chains at Risk
Anthropic CEO: Time to Shift From Improving to Controlling AI
Threat Actor Generates 1M Personalized Fraud Emails in 3 Days
CISA Calls for More Guidance, Less Spin, as Cyber Outages Escalate
SpiderSilk Hunts External Threats With AI-Based Scanner
Why AI Is So Good at Scamming Humans
AI Governance Can't Wait
Ars Technica
AI bots "Timmy," "Ren," and "Jackie" are flooding social media with slop
ClickFix attacks infecting PCs and Macs are going viral
Four groups caught using the same Chrome and Windows exploit kit
Why this month's Microsoft patch release is a doozy
OpenAI agents discussed ways to escape their sandbox on public wiki
“Trust, not features, is the real deficit”: VMware tries to appease SMBs
Once popular for attacking AI, ASCII smuggling is embraced by spammers
Confused about which VPN is right, US senator asks the NSA for guidance
VMware migration reduces Tottenham Hotspur's licensing fees by 85 percent
I rented a car, and within hours, my driver's license was for sale
CyberScoop
Supreme Court denies Trump request to allow USPS mail ballot changes
Five alleged leaders of Black Axe’s operations in South Africa extradited to US
Researchers say OpenAI agents were behind May hacking campaign targeting RubyGems
Cyberattack causes a flight delay? Airlines won’t owe you a hotel or meal
GitLab’s critical flaw is already drawing internet-wide probes
Conti ransomware crew member sentenced to four years in prison
Hawley probes OpenAI over Hugging Face breach
AI lets small actors run state-level hacking campaigns, Anthropic report finds
Governments ‘buying time’ in race between innovation, security, national cyber director says
Chinese espionage groups swarm to exploit triple-link chain of zero-days
InfoSecurity Magazine
Black Axe Members Extradited to US Over Internet Fraud Claims
AI the Top Priority for New Spend as Cyber Budgets Flatline
Microsoft Releases Emergency Patch to Fix RDS Vulnerability
Malicious Twitch Extension Exposes 31,000 Users' OAuth Tokens
Human Attacker Hits Machine-Speed Exploitation of Marimo RCE
Defense Cyber Spending Set to Surge Amid Rising Attacks on Military Systems
Revolut Confirms Data Breach Through Fake Government Requests
Hackers Exploit Maximum Severity Flaw in GitLab
OpenAI Agent Swarm Hacks RubyGems Package Manager
Hackers Favor US Eastern Business Hours in M365 Phishing Campaign
SecurityWeek
Thai Broadband Provider Hacked via Fortinet Vulnerability
OpenAI Investigates Report Linking AI Agents to RubyGems Attack
240,000 Hit by Data Breach at Japan’s Digital Agency
Apple Patches 200 Vulnerabilities With New iOS 27, macOS Golden Gate 27 Releases
Microsoft AI Code of Conduct Sets Cyberattack Boundaries, Chain of Command, Safety Constraints
Hacked HBO Max Reddit Account Used for Malware Delivery via ClickFix Attack
Root RCE Zero-Day in Cisco Secure Email Gateway Under Active Exploitation
Beijing Hits Back at Anthropic CEO’s Call to Curb China’s AI Development
New Warnings About the Risks of AI to Humanity Revive a Long-Running Debate
Personal, Financial Info Exposed in Revolut Data Breach
ZDNet
iOS 27 is finally here, with the new Siri AI beta – and 120 security patches
The latest Windows 11 update may mess with your device’s audio – here’s the workaround
Switzerland takes a Swiss Army knife to Microsoft 365
Your older iPhone just got free satellite service for another year – here’s why
This CIO doesn’t ‘hire engineers to write code’: 3 AI fundamentals he prioritizes instead
I’ve been an Android user all my life, but I’m jealous of 3 things Apple just announced
Eager to try iOS 27’s cool AI features and upgraded Siri? Get ready for usage limits
Your friend with ‘nothing to hide’ is more likely to spy on you, study shows
The iPhone 17 and other older models just got a surprise $100 price hike
5 biggest Apple announcements from the iPhone Duo event
The Hacker News
Human Attacker Exploits Marimo RCE, Reaches SSH Bastion in Eight Seconds
Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point
Mass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev Servers
LiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared Server
Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE
New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing
3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials
Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports
Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries
BleepingComputer
What Zero-Day Response Should Be in the Post-Mythos Era
CISA: Critical VMware RCE flaw now exploited by ransomware gangs
Suspected Black Axe gang leaders face cybercrime charges in the US
Microsoft confirms KB5002914 Excel update breaks copy and paste
Cisco patches Secure Email Gateway zero-day exploited in attacks
Microsoft releases emergency Windows updates to fix RDS failures
Japan's Digital Agency says VPN flaw exposed 246,000 personnel records
Homebrew 7.0.0 gets built-in GUI, better security controls
Twitch extension with 30K installs exposes users’ OAuth tokens
Hackers hijack HBO Max Reddit account to push malware in ClickFix ads
gbhackers
Google Search Makes It Harder to See Where a Link Really Goes Before You Click
Phishing Attacks Abuse Trusted Email Infrastructure and URL Cloaking to Evade Security Filters
Hackers Actively Exploit Critical WooCommerce Plugin Vulnerability to Upload PHP Backdoors
Weekly Cybersecurity Newsletter – Top 50 Biggest Cybersecurity Stories of the Week
WordPress Events Calendar Vulnerabilities Let Hackers Take Over 600,000 Websites
Red Heron Hackers Exploit Critical Gitea RCE to Steal Source Code and Deploy Linux Rootkit
Telegram Desktop XSS Vulnerability Lets Attackers Steal Entire Chat Histories
Marimo RCE Flaw Lets Hackers Steal AWS Credentials and Pivot to Bastion Host in 8 Seconds
DDRop Attack Forces Intel TDX Confidential VMs Into Debug Mode and Exposes Memory
Linux Kernel ZcopyReaper Vulnerability Lets Local Attackers Gain Root Privileges
Cybersecurity Dive
Security teams increasingly outflanked by AI agents
Malicious actors already using critical GitLab flaw, CISA and others warn
Security teams are adopting AI faster than they trust it
Zero trust is the future. But enterprises still need their VPNs.
State authorities warn they lack resources to address cyber threat to critical sectors
Accountability, oversight and AI: Inside Microsoft’s security transformation
Threat groups enhance cyberattack capabilities with AI
White House sees water cybersecurity partnership in Texas as national blueprint
CISA is on the verge of filling hundreds of critical vacancies
How AI anxieties dominated the summer’s big cybersecurity conference
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Swiss court sentences 52-year-old Ukrainian ransomware dev to nearly 13 years in the cooler
The latest AI doomsayer is China’s intelligence boss
HBO Max Reddit account compromised to serve ClickFix attacks
New hardware device can RAM into encrypted memory, expose your data
OpenAI's malicious bot swarm attacked RubyGems
Perfect-10 GitLab bug under attack days after patch lands
UK.gov begins killing off passwords for 23 million users
Security through obscurity is dead, and AI delivered the fatal blow
More JFrog Artifactory bugs under attack, and all 3 have patches
Ukrainian lawyer's second career as a Conti coder earns him 4 years behind bars
VentureBeat
AI governance is moving to runtime — and regulated industries are getting there first
Why AI shouldn't be the one repairing your data pipelines
Anthropic CEO says AI swarm could ‘take over the entire internet’ in 6-12 months, commits to AI slowdown plan
Security vendors use AI to rank Patch Tuesday CVEs — and rarely tell customers
Anthropic's safety monitor missed a live cyberattack because Mythos 5's reasoning said everything was fine
Agents identifying as OpenAI systems wrote 17,000 posts to a wiki no one was supposed to write to
Most security teams don't know how many AI agents they're running. Falcon Guardian found 18,000 at one company that had approved only 300.
TechCrunch
New Italian unicorn Exein rides the physical AI wave
ClickFix attacks are tricking Mac and Windows users into hacking themselves
Revolut confirms customer data breach through fake government requests
Scammers target hundreds of thousands of crypto owners after Trezor confirms data breach of email provider
ID verification giant IDScan confirms data breach with more than 150 million driver’s licenses stolen
‘Gambling with our lives’: Anthropic researcher quits, warns against self-improving AI
Group of bipartisan lawmakers ask US government to ban several hack-for-hire firms
Sequoia doubles down on Cymphony as AI agents create new enterprise security risks
Chrome is now shipping updates every 2 weeks as AI changes the security landscape
A hacker stole $340M in a crypto heist, then returned most of it
Network World Security
Cornelis lands $205M to make AI networks compute, not just connect
VMware by Broadcom: Product, service and support news
Arm expands AI chip push with Neoverse CSS N4 and AGI CPU
AI inferencing is headed for the network edge
The waste heat paradox: How data centers can cool AI with the heat AI creates
Broadcom hampers VMware migration by blocking downloads of key SDK
Nvidia will use Palantir to gain insight its supply chain
The race to 1.6T: Ethernet and coherent optics tackle AI’s bandwidth crunch
Network complexity is outpacing NetOps teams: How AI can help
Nvidia invests $3.5B in MediaTek to extend its grip on AI
Help Net Security
F5 Bot Defense uses real-time risk scoring to detect fraud and abuse
Postman Passport controls API access without exposing credentials
UltraViolet Cyber Equinox measures detection coverage against MITRE frameworks
Globalgig expands managed security portfolio to protect enterprise AI
eBook: Identity-First Threat Intelligence
Uncensored AI sold on hacking forum as alternative to ChatGPT and Claude jailbreaks
Cisco patches actively exploited email gateway zero-day (CVE-2026-76461)
Microsoft sets security and safety rules for its AI models
Attackers hijack HBO Max’s Reddit account for 48-hour malvertising blitz
Akuity gives AI agents operational context to safely ship software
SC Magazine
Microsoft warns of cloud storage attacks, financial fraud scams targeting customers
The AI Threat Multiplier: Securing Mobile Apps in the Automated Era - Ryan Lloyd, Jason Cortlund - ASW #400
Trump pushes back on Anthropic CEO's call for an AI slowdown
Total AI awareness: Gaining full visibility of the AI attack surface
AI has outpaced the patching clock – here’s what the industry needs to do
Beyond the CVE Count: The Real State of Vulnerability Management - Charles Loring - CSP #228
Safely exploiting vulnerabilities at scale, TVs attack privacy, and the news. - Snehal Antani - ESW #476
Max severity GitLab path traversal flaw under active reconnaissance
9/11 at 25, OfferLoader, Gemini CLI, Liquid, 10% Doom, Josh Marpet, and More - SWN #615
Check Point patches two critical VPN gateway bugs
© 2026 RiskDiscovery | Sponsored by:
Deception Logic