[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
AI Sends Global Crime Syndicates Into Fraud Nirvana
AI Browsers Vulnerable to 'PleaseFix' Zero-Click Agent Hijacking
No Perfect Fix for AI Browser Prompt Injection Flaws
CSS: The Hidden Threat Lurking in Your Inbox
15 TP-Link Bugs Expose Risks in Zero-Trust Provisioning
Flaws in Google APK for Python Unlock Agent-to-Agent Attack
Angola's Largest Telco Breached Hours Before IPO
Smoke#Screen RMM Takeover Gambit Exposes Threat Actor Playbook
AI Notetaker Lets Hackers Spy on Government, Corporate Video Calls
Device Code Phishing Up 1,500% in 2026; Vishing Doubles
Ars Technica
Thousands of servers can be backdoored by exploiting buggy motherboard controllers
Claude published malicious code to the Internet and attacked 3 real companies
Max-severity Exchange server flaw under active exploitation by Kremlin hackers
Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission
We now have a better understanding how OpenAI hacked into Hugging Face
Microsoft unveils AI security tools it says outperform competing platforms
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
CyberScoop
The water sector just got it’s wake-up call. Again.
Snowflake hacker pleads guilty, faces up to 32 years in prison
Tom Cotton prods Treasury for tax code tweaks to modernize OT
Open-source software’s archenemy TeamPCP goes back further than anyone thought
AI is getting better at election facts, but voters shouldn’t rely on it
National cyber director lays out White House plans to secure AI without writing new rules
AISI, OpenAI report more ‘unsanctioned’ model hacks
Massive supply-chain attack compromises 440 packages under four hours
Dem senators criticize Trump administration decisionmaking on AI security risks
Prolific ransomware group behind SonicWall zero-day attacks
InfoSecurity Magazine
Toolkit Hidden Inside Oracle Database Evades Endpoint Tools
TeamPCP Traced Back to 2020 Cryptojacking Operation
Meta Joins OpenAI and Anthropic in Reporting AI Exploit Incident
Violent Physical Crypto Thefts Surge to $30m in Losses
Canadian Hacker Pleads Guilty Over Snowflake Extortion Campaign
NVIDIA Group Proposes SAFE Initiative for Agentic Threat Intel Sharing
Fake Open VSX Extensions Harvest Private Repo and CI Data
Paperclip AI Flaws Let Unauthenticated Attackers Run Commands
Prompt Injection Remains Biggest LLM Risk, Despite Limited Incidents
ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs
SecurityWeek
Snowflake Hacker Pleads Guilty in US Court
Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts
Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway
Critical Paperclip Flaw Allowed Admin Access, Code Execution
Meta AI Hacked External Systems During Cybersecurity Testing
Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison
Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilities
Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability
How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones
Black Hat USA 2026 – Summary of Vendor Announcements (Part 3)
ZDNet
This LG OLED TV is one of the most impressive I've tested - and it's $700 off
I've been using the Galaxy Z Fold 8 for two weeks - these two accessories perfect the experience
The new Pixel 11 isn't enough to make me give up my Pixel 9 Pro - here's why
You can use 70+ Adobe tools without leaving ChatGPT now - here's how
Bose's new QuietComfort headphones get premium upgrades for a midrange price
My 3 favorite AI tools for voice dictation while vibe coding - and one is free
AI failed to properly patch software flaws 74% of the time, 1Password's study warns
Taught by AI pioneers, Stanford's free online course takes you far beyond ChatGPT
Google's new Ask Maps features may be more exciting than the upcoming Pixel drop
75% of European businesses fear a US tech kill switch - American companies should, too
The Hacker News
Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities
CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps
Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses
AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory
Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access
AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model
Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells
Ransom Cartel Creator Gets 16 Years in Prison for Operating Ransomware-as-a-Service
CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild
Snowflake Hacker Pleads Guilty Over Breaches Affecting at Least 100 Million People
BleepingComputer
How AI Exposed a Browser Security Gap that Enterprises Cannot Ignore
Ransom Cartel ransomware creator sentenced to 16 years in prison
Canadian pleads guilty to Snowflake cloud data-theft attacks
Hackers run khunt post-exploitation toolkit from Oracle database
COLDCARD security audit phishing attack installs remote access tool
CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws
Google Blogger locks hundreds of blogs in malware false positive
How AI-powered phishing killed blocklists for good
OpenAI, Anthropic AI agents targeted real people and systems in cyber tests
TP-Link patches Omada ZTP flaws allowing hackers to breach networks
gbhackers
Critical Paperclip AI Agent Flaws Allow Unauthenticated Remote Code Execution
Fake Xeno Roblox Executor Delivers Powercat Java Stealer Through Discord
Cloudflare Launches Open-Source OS to Secure AI Agents’ Access to Internal Data
Vanta Stealer Uses PyArmor to Steal Browser Passwords, Crypto Wallets and Discord Tokens
KHunt Toolkit Turns Oracle SQL Injection Into SYSTEM-Level RCE and Credential Theft
Meta Confirms AI Model Launched Autonomous Attack on Another Organization
Critical Jenkins Deserialization Flaw Allows Attackers to Execute Code on Controllers
PoC Released for Linux Kernel STP Use-After-Free Vulnerability
OpenAI Agents Worked Together to Find Exploits and Hack External Systems
Hackers Turn Ethereum Smart Contract Into Dead-Drop Resolver for Remus Malware
Cybersecurity Dive
OpenAI warns autonomous hacks are ‘watershed moment for computer security’
Western government leaders call for a focus on infrastructure resilience, not AI hype
CISA is prioritizing work with critical infrastructure as it begins to recover from cuts
White House walks tightrope on securing AI without stifling tech innovation
Tech industry alliance proposes AI agent safety reporting program
AI widely used to exploit critical flaws, disrupt supply chains
AI makes costly spearphishing attacks easier, cyber insurer says
OT security coalition urges Congress, CISA to enact reforms amid water sector hacks
China-based hacker employs DeepSeek in autonomous threat campaign
How volunteer cyber experts are helping protect rural water systems
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
IT department put sticky notes on the laptops to help employees log in
Chinese router vendor denies its firmware contains backdoors – but pauses downloads to fix security issues anyway
OpenAI reveals its rogue agent swarm went a little bit Borg ahead of Hugging Face hack
Prompt injection isn't the bug, AI agent frameworks are
IBM's agentic AI platform is under active attack - patch now
London cops handed victim's new address and number to her stalker, watchdog says
UK charities count the cost of Beacon CRM cyberattack
AI researchers let models off the leash – then watched as they tried to add malware to a FOSS project
Bypassing AI guardrails is so easy a script kiddie can do it
This one time, at Hacker Summer Camp …
VentureBeat
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
The Shai-Hulud npm worm didn't fake its security check — it earned a legitimate one
Not just OpenAI: Now Anthropic says its internal models got online and cyberattacked 3 other organizations
Mastercard spent decades training its fraud system to see bots as thieves. Now bots are the ones doing the buying.
Hush Security says the AI security problem has shifted from protecting models to governing identities as autonomous agents spread
The lineage behind 69% of open models was never verified. Cisco just fingerprinted almost 900 for free
TechCrunch
PSA: Apple’s Private Relay can leak your real IP address
Android app developers may be unwittingly sharing their users’ location data with advertisers
Nvidia doesn’t mess around: A week after open AI industry group formed, it’s already showing progress
Hackers steal over $130M by exploiting bug in offline hardware wallets
Who’s legally to blame for Anthropic and OpenAI’s autonomous AI hacks? It’s complicated
Apple challenges UK government’s latest demand for iCloud backdoor: report
Horizon3 hits $2 billion valuation with $250M Series E as AI threats escalate
Samsung bans smart TV apps that share users’ internet connections with strangers
CareCloud begins to notify hundreds of thousands after hackers stole medical records
Google says it fixed more Chrome bugs in June than over the past two years, thanks to AI
Network World Security
Top network and data center events of 2026
AWS targets AI cost concerns with new Marketplace Insights tool
Arista hits first $3B quarter as AI networking demand continues and supply pressures show signs of improvement
Palo Alto Networks at Black Hat: How AI erased the 50-day patch window
2026 network outage report and internet health check
With FCC ban on new Chinese-made optical transceivers for DCs likely, it may be time to stock up
Nvidia moves to accelerate storage access, boost industry cooperation
Moo! LoRaWAN makes it easier to connect more things to the low power networking protocol—even cattle
Data center energy constraints and moratoriums are mounting. Expect to see stalled AI projects
Cisco exec testifies at US Senate panel on AI’s network impact
Help Net Security
Novel-reading apps used users’ phones to generate fake ad traffic
Photos: Black Hat USA 2026
Three in four AI-generated vulnerability patches leave something broken
Snowflake hacker pleads guilty, faces up to 32 years in prison
Discounted Claude access bought on the gray market may expose every prompt you send
Critical Cisco IMC bug gives attackers root, PoC is out (CVE-2026-20200)
Microsoft extends zero trust deeper into enterprise AI
Photos: Black Hat USA 2026 Arsenal
OWASP 2026 LLM Top 10: “The model will be fooled”
Browser security is where software, data, and AI meet
SC Magazine
UK data watchdog criticizes Metropolitan Police for data handling failures
Salesforce's Agentforce 360 platform approved for sensitive Defense Department data
NVM Express updates specifications with post-quantum cryptography and SSD virtualization support
Prompt injection remains top LLM threat, OWASP report finds
Beacon CRM confirms cyberattack exposed UK charity data
US reportedly drafting ban on Chinese optical transceivers
Brazil's health system data exposed online
Google mistakenly locks hundreds of Blogger websites
Apple's Private Relay feature has flaws that can expose user IP addresses
Agentic anarchy: Why using AI browsers just isn't worth the risk
© 2026 RiskDiscovery | Sponsored by:
Deception Logic