[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
Hundreds of OpenAI Agents Invaded Hugging Face Servers
Offensive Security Investments Surge as AI Threats Increase
You Need Cyber Deception for OT
Defining an AI Kill Switch Is Hard, but Necessary
The Vulnpocalypse Is Repricing the Bug Bounty Economy
Chinese Routers Sold Worldwide Contain Backdoors
Agentic AI Risks, CVE Program Concerns Permeate Black Hat USA 2026
Russian Hackers Phish EU Officials Over Messaging Apps
Ars Technica
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
Claude, Codex, and Hermes installed unowned code inside corporate networks
How OpenAI let a mob of LLM agents game a test and ransack Hugging Face
AI agents meant to replace Meta workers made “large-scale, disruptive actions”
Inaudible sounds used to fingerprint browsers catch AliExpress red-handed
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
CyberScoop
ATF confirms cyberattack hit system containing info on its investigation targets
Unit 42 warns AI has shifted balance of power from defenders to attackers
100-plus companies call for ‘global surge’ in AI-powered cyber defense
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Two alleged TeamPCP members arrested and charged after months of software supply-chain chaos
Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure
Officials disrupt Chinese espionage operation that hit multiple federal agencies
OpenAI: Agent behavior that led to Hugging Face intrusion formed in May
Three 10.0 security flaws fixed across Ubiquiti’s UniFi line
Election official says Tina Peters would be consultant, won’t have access to election systems
InfoSecurity Magazine
Fake Voicemail SVG Attachments Fuel Large-Scale Phishing Campaign
Window to Tackle Surge in AI-Enabled Cyber Attacks Narrowing, Tech Giants Warn
Threat Actors Abuse Cursor Agent AI to Assist Ransomware Operations
Manchester Airports Group Hit by Cyber Incident
Chinese Hacker Group QTFY Uses Custom-Built Platforms to Target US Infrastructure, FBI Warns
CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix Products
Boston Scientific Reveals Global Disruption After Cyber Incident
OpenAI: Hugging Face Incident a “Warning Shot” to the World
Tortoiseshell Expands Malware Toolset With New Backdoor, SSH Tunnel
Interpol Operation Jackal IV Identifies 263 Cybercrime Suspects
SecurityWeek
In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions
ATF Confirms Cyber Incident After Ransomware Group Claims Attack
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge
Think You’ve Eliminated Chinese AI? Check the Model’s Lineage, Cisco Says
PaperCut Releases Emergency Patch for Exploited Zero-Day
Trump Order Aims to Block Foreign Backdoors in US Power Grid Gear
Australia Arrests 2 Alleged TeamPCP Hackers
OpenAI Agents Coordinated via Makeshift Message Board Ahead of Hugging Face Hack
Okta Shares Surge on Strong Earnings, Growing Demand for AI Identity Security
ZDNet
This $14 retractable USB-C cable is my secret to surviving long car rides with my kids
stillOS offers one of the best Linux onboarding experiences I've ever seen
How I sorted 22,000 digital photos without getting overwhelmed: 4 easy tricks
3 surveys deliver the same uncomfortable truth about adopting agentic AI
The best early Labor Day Costco deals 2026: TVs, smartwatches, Apple devices, and more
This Linux and Windows app makes managing all your documents easier
91% of professionals say their firm still falls short on AI - how to fix that
I've tested dozens of robot vacuums - this new $599 Roborock has all the features I need
Want a free Apple Watch? Play ZDNET's 'Guessing Game' to win one - only 4 days left
Even an AI cost-management vendor can lose control of its agent spending
The Hacker News
Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network
Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable
Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication
Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers
ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body
19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth
Key Reasons Why Identity Fabric Matters in 2026
Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL
China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access
BleepingComputer
McKesson discloses breach after ShinyHunters claims patient data theft
PaperCut releases second emergency patch for exploited flaws
GiveWP WordPress donation plugin flaw lets hackers execute server commands
68-year-old imprisoned after making $1.3 million by pirating IPTV services
AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?
Over 8,300 Gitea servers vulnerable to code execution attacks
Toy-making giant Hasbro disclose data breach affecting employees
ServiceNow warns of three max severity security vulnerabilities
Windows 11 KB5120998 update released with 35 changes and fixes
Nearly 700 rogue AI agents coordinated in the Hugging Face attack
gbhackers
Attackers Exploit MCP RCE, Blind Prompt Injection and Memory Credential Theft Against AI Infrastructure
700 OpenAI Agents Coordinate Attack on Hugging Face and Gain Remote Code Execution
Polymorphic Phishing Attack Generates Unique Credential-Stealing Page on Every Visit
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
ServiceNow Patches Critical Flaws Enabling Unauthenticated RCE and SQL Injection
Suspected Iran-Linked Cyberattack Knocks UK Power Plant Offline for Four Days
Researchers Execute Code Inside Fortune 500 Companies via AI Agent llms.txt Files
BlueDelta Targets Defense and Diplomatic Organizations With HOOKEDGE Malware
Unitree G1 Humanoid Robot Flaws Allow Unauthenticated Root RCE Over Bluetooth
TITAN RaaS Uses AI for Data Classification, Regulatory Analysis and Automated Ransom Calculation
Cybersecurity Dive
Frontier AI tipping the scales toward cyber adversaries
CISA identifies security hurdles that led to very different results in two red-team engagements
Hundreds of agents went rogue in lead up to Hugging Face breach
Federal authorities disrupt China-backed hacking operation targeting US critical infrastructure
Boston Scientific says cyberattack disrupted order processing, shipping
Treasury to help financial firms transition to quantum-resistant encryption
Researchers warn about chained SharePoint sequence
CISA orders agencies to fix exploited Zimbra vulnerability
UK power facility disabled for days after suspected state-linked cyberattack
House Democrats ask GAO to study CISA workforce cuts
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Researcher shows how Claude Code can be tricked simply by asking it to summarize a website
US government snitch-finder pleads guilty to leaking state secrets to foreign spies
CISA: Most exploited vulnerabilities should have been eradicated decades ago
Industry that built the problem offers to sell you the solution
Print management outfit PaperCut is under 0-day attack, and it’s drawing customers’ blood
Australian cops cuff alleged TeamPCP masterminds
CRPx0 hacking service for dummies claims victim count more than quintupled
AI girlfriend review site's secrets were exposed to the world for three weeks
Omarchy distro gains serious backing
ATF responds to 'major' cybersecurity incident after ransomware gang's claims
VentureBeat
The three layers of agentic AI security: A defense-in-depth architecture for autonomous agents
Visa ships a security AI that patches production code before any human reviews it
When agents act on their own, governance has to live in the data layer
The fix for the AI agent that hijacked a company's DNS: it can propose the change, but it can't approve it
Prompt injection ranks No. 1 with OWASP and No. 12 in the incident record. The attack itself is invisible to a scan.
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
TechCrunch
More Americans oppose police license plate cameras than support them: survey
ATF declares ‘major incident’ as ransomware gang claims hack
Australian police arrest two over TeamPCP hacks targeting Mercor, OpenAI, and others
Here’s all the times AI has gone rogue and hacked other companies
Medical device maker Boston Scientific says a cyberattack is causing a ‘global disruption’ to its operations
US seizes domains of Chinese botnet used to target NASA, Justice Department, and the Senate
CISA confirms hackers targeted over 100 US water systems during July
That fake Grand Theft Auto VI demo is actually just malware
Apple rescues Hide My Email feature from the privacy scrap heap
WhatsApp tightens account security with stronger two-step verification and more
Network World Security
On-device translation: Why smaller, specialized AI models win
Kyndryl, Broadcom expand partnership to push private clouds for AI work
Kubernetes 1.37 advances workload-aware scheduling and cluster networking
Intel unwraps three-pronged architecture strategy to go after agentic AI
Cisco bulks up its AI infrastructure portfolio with Supermicro’s liquid-cooled servers
2026 network outage report and internet health check
Cisco taps Teleport for infrastructure identity management tech
Google adds AI-powered assessments to Migration Center to speed up cloud migration planning
AI is turning the semiconductor market into a $1.6 trillion industry
Nvidia to hike prices by 15%, on top of an even larger increase in July
Help Net Security
North Korean remote workers are broadening their job hunt beyond IT
Android 17 adds new protections against sneaky Wi-Fi tracking and web snooping
Manchester Airports Group breached, millions of customers’ data stolen
What 90 days and a small budget can buy in AI agent security
New infosec products of the month: August 2026
Two alleged TeamPCP hackers arrested over global supply chain attacks
Cyberattack causes network outage at Boston Scientific, disrupts global operations
PaperCut NG/MF vulnerabilities exploited in zero-day attacks
Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452)
FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate
SC Magazine
OCR Studio and Wemik partner to enhance data protection in GCC financial sector
AI kill switch legislation proposed amid concerns over rogue agents
Aurora ransomware actors leverage AI tool for exploitation campaigns
X uncovers 200,000 Chinese bot accounts
Former DIA IT specialist pleads guilty to attempting to leak classified information
Critical vulnerability in GiveWP plugin allows remote code execution
CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to exploited vulnerabilities list
Two root remote code execution flaws found in Unitree G1 EDU robot
CISA urges software vendors to adopt secure by design practices
SVG attachments used in widespread phishing campaign
© 2026 RiskDiscovery | Sponsored by:
Deception Logic