[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
Companies Have 6 Months to Prepare for Automated Attacks
AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?
Insurers Search for Answers to Rein in Rogue AI
Large Enterprises Targeted in Fake Merger & Acquisition Scams
What We Missed: Did ShinyHunters 'Breach' ReliaQuest?
What the AI Warning Letter Completely Missed
AI 'Machine Speed' Cuts 2-Week Attack Down to 10 Hours
'Breeze Comet' Tears Into Brazilian & Global Financial Systems
Ars Technica
OpenAI agents discussed ways to escape their sandbox on public wiki
“Trust, not features, is the real deficit”: VMware tries to appease SMBs
Once popular for attacking AI, ASCII smuggling is embraced by spammers
Confused about which VPN is right, US senator asks the NSA for guidance
VMware migration reduces Tottenham Hotspur's licensing fees by 85 percent
I rented a car, and within hours, my driver's license was for sale
BGP hijack infecting networks caused by a comedy of errors that’s not funny at all
Think twice before installing this device promising free movies
Inside Meta’s push to put robots to work in data centers
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
CyberScoop
European parliament members call for slowdown of Serbia’s EU entry over spyware use
Why judgment is emerging as cybersecurity’s defining skill
Attackers exploit zero-days in consistently besieged SonicWall product
The G7 tells industry to hurry up and prep for post-quantum encryption
Jail time for Maine child in 764 marks turning point in federal law enforcement
FCC proposes public scorecard to rate telecoms on anti-robocall efforts
Dogged Russia-based botnet dismantled after 23-year run
Pegasus, NoviSpy variant spyware found on devices of Serbian activists
Wyden seeks upgraded NSA security guidance on commercial VPN use
FBI raises alarm over deceptive phishing campaign targeting prominent people
InfoSecurity Magazine
NCSC Warns Shadow AI Creates New Security Risks
N-able Releases Hotfix for Critical Remote Code Execution Vulnerability
Rhysida Publishes Berlin Government Data After €2m Extortion Demand Refused
North Korea’s Lazarus Operates Through Six Distinct Cyber Clusters
Multiple Class Action Lawsuits Filed Against IDScan
Researcher Publishes CrowdStrike Privilege Escalation Zero Day
OpenAI Pledges $1bn to Bring its AI Cybersecurity Tools to Essential Services
G7 Urges Fast-Track on Quantum-Safe Cybersecurity Rules
Pegasus Zero-Click Exploit Infects Serbian Student Activist's iPhone
Outsider Phishing Kit Survives Takedown With 700 New Pages
SecurityWeek
Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits
North Korean Hackers Deploy New Linux Espionage Toolkit
OpenAI Agents Hijack Another Victim Website
Adobe Commerce Zero-Day Exploited to Backdoor Online Stores
Modified ScreenConnect Clients Used in Worm-Like Campaign
Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
In Other News: Microsoft’s Cloud Patches, Hacked Dropbox Accounts, Guardio’s $1.1B Valuation
HPE Patches Critical RCE Vulnerabilities in AOS-CX
OpenAI Pledges $1 Billion to Bring Frontier AI to Critical Infrastructure Defenders
Sangoma Switchvox Vulnerabilities Exploited in the Wild
ZDNet
The Hacker News
PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution
Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More
Your Cloud Security Checklist Doesn't Work the Way You Think It Does
Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts
Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released
N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw
JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies
Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication
Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner
BleepingComputer
Magento StyleSmuggler zero-day exploited to deploy Linux backdoor
BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations
Mathspace discloses data breach affecting over 1 million people
Trezor data breach impact now reaches 81,000 customers
ChatGPT can now connect to your personal apps to mimic writing style
Hackers exploit new MikroTik RouterOS flaws to hijack routers
ConnectWise warns of new ScreenConnect flaw without patch
N-able patches max severity N-central flaw amid ongoing attacks
ChatGPT Astra is now rolling out to $20 Plus subscription
Attackers conceal phishing lures using invisible Unicode characters
gbhackers
PoisonedRefresh Malware Backdoors F5 BIG-IP Servers With Memory-Only PHP Web Shells
Natural Resources Wales Data Breach Exposes Sensitive Employee Diversity Data
ConnectWise ScreenConnect Remote Access Flaw Impacts Guest File Transfer Sessions
Global Phishing Campaign Abuses Google Infrastructure to Evade Security and Steal Credentials
OpenAI Commits $1 Billion in Daybreak AI Cyber Tools to Protect Critical Infrastructure
Tengu Mirai-Style Linux Bot Hides as Kernel Worker to Launch DDoS and Proxy Attacks
The 12 Best Wireless / Wi-Fi Security Solutions, Compared and Priced
The 12 Best Network Sandboxing Solutions, Compared and Priced
The 12 Best Software-Defined Perimeter (SDP) Solutions, Compared and Priced
The 12 Best Secure Web Gateway (SWG) Solutions, Compared and Priced
Cybersecurity Dive
Nvidia’s $12.9B Hugging Face deal could benefit enterprises
OpenAI pledges $1 billion to provide resources, training for frontline cyber defenders
SonicWall urges immediate patching of chained vulnerabilities
Government, industry partner to shut down long-running Sality botnet
Government lacks ability to verify AI labs’ claims, experts say
CISA scraps 6 free cybersecurity assessments for critical infrastructure operators
Security policies fail to keep up with a hybrid cloud world
Frontier AI helps exploit flaws in tests using key industrial devices
PaperCut issues emergency patches as threat actors target chained vulnerabilities
State-linked actor targets Cisco routers for espionage
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Nightwing CEO has a Labor Day message for staff – and apparently The Register
Hackers drain $320M in Bitcoin from Liquid Network, claim they're the good guys
Welsh environment regulator's FoI blunder exposes diversity data of 2,000 staff
UK food supply chain at risk from hostile attacks
Peers ask why UK cyber bill leaves execs off the personal liability hook
OpenAI's rebel agent swarm died young, but its chilling logs live on
ASCII smuggling isn't just an AI security risk
Rogue OpenAI agents used dead German web site to communicate in May, months before Hugging Face incident
Cisco searched for IOS XR bugs and found so many it rolled them into an update release
OpenAI commits $1B in AI credits to frontline cyber defenders
VentureBeat
MCP's new spec turns a planted prompt into a stolen credential
China-linked hackers backdoored executives' laptops via USB, exploiting a fix companies had but weren't using
Google’s Gemini 3.8 Flash is built for agents, while its Cyber twin hunts vulnerabilities
Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke
Closing an Azure OpenAI assistant's retrieval gap didn't take a new identity platform. It took one filter and a narrower assistant.
Identity and permissions aren’t enough to govern AI agent behavior
AI agents need their own identity before they need a gateway
TechCrunch
OpenAI confirms ‘wiki incident,’ says it’s ‘working on a framework’ for more disclosure
US military disabled ad tracking on troops’ devices following reports of targeted attacks
Abliteration.ai is making a business out of removing AI guardrails
It sure looks like hackers breached a major ID card verification service
HiddenLayer nabs $100M as enterprises rush to secure their AI deployments
Norway considers ban on camera-enabled wearable ‘pervert glasses’
X says attackers are targeting user accounts after the launch of X Money
AIR raises $50M to help companies vet the skills and add-ons AI agents use
Florida and Texas move to block Flock cameras over privacy concerns
Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson
Network World Security
AI data boom gives tape storage a new lease on life
Nvidia lets you build your own AI clusters locally with PAIR software
When analyst benchmarks miss the mark: Why Nvidia doesn’t fit Forrester’s data center matrix
HPE’s record Q3: AI infrastructure, networking demands drive growth, but supply constraints tap the brakes
VMware Cloud Foundation 9.1 adds transit gateway flexibility, segmentation, and native EVPN VXLAN support
Dell’s $95B AI backlog shows the infrastructure crunch is far from over
SonicWall reports two major security holes under active exploit
Arista warns customers ahead of next week’s security disclosures
VMware by Broadcom: Product, service and support news
Palo Alto Networks buys Console to boost agentic security
Help Net Security
Hackers exploit RouterOS flaws to hijack MikroTik devices without authentication
N-able patches critical N-central zero-day exploited in the wild (CVE-2026-86218)
Attackers use rogue ScreenConnect clients to spread malware
OpenAI just hit a milestone on the road to self-improving AI
ToolHive: The open-source way to run any MCP server securely
Zero trust AI agents demand a different kind of security
18 ways to check whether data can be trusted for AI
Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast
Synology ActiveProtect Manager 2.0 improves AI-driven security
Google patches actively exploited Chrome zero-day (CVE-2026-85046)
SC Magazine
Shadow AI Epidemic: Uncovering Agents on the Endpoint, British Library Breach, & News - Amit Assaraf - ESW #475
Ping YOUniverse: The next stage of human authentication
Wireguard, Chrome, RMMS, Sonicwall, Microsoft, Sumerian VPNS, Harvard, Josh Marpet... - SWN #613
New Linux toolkit found in trojanized HAProxy targeting South Korean organizations
PostGREShell vulnerability allows server takeover
Upwind Security raises $300 million in Series C funding
Coder platform targeted by attackers delivering malicious Terraform modules
Cisco addresses critical vulnerabilities in Nexus 9000 switches and IOS XR
Thomson Reuters court software breach exposes sensitive data in Canada and US
Abliteration.ai launches service for uncensored AI models
© 2026 RiskDiscovery | Sponsored by:
Deception Logic