[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
'NovaCookies' Kit Steals Microsoft 365 Sessions for $320 a Month
Interpol's Jackal IV Disrupts West African Crime Infrastructure
Nigeria Looks to Sovereign Cloud for Cyber, National Security
Hidden Prompts Trick AI Into False Email Summaries
Finding Nemo(Claw): Networking Issue Allows for LLM Poisoning in OpenClaw
Is Cyber Facing an Affordability Crisis?
Exploited Zimbra Flaw Highlights Shrinking Window to Patch
Foul Language: WordlistLoader Disguises Malware as Ordinary Text
Tricky 'SynkLoader' Multitool May Herald Ransomware
ToxicPanda Banking Trojan Matures Into Enterprise Threat
Ars Technica
Inaudible sounds used to fingerprint browsers catch AliExpress red-handed
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
PBS station fears losing 50TB of data after being ghosted by cloud storage provider
OpenAI and Anthropic in price war as Chinese AI rivals gain ground
Private security firms will soon be allowed to hack overseas cybercriminals
Terabytes of credentials leaked in massive supply-chain attack
CyberScoop
The GTA VI leaks are breaking the internet. Security researchers have seen this before.
Arrested man allegedly impersonated NSA elite hacking unit, Supreme Court chief justice
Water sector passes, government sector fails attempts to spot and halt simulated CISA attack
Interpol targets Black Axe’s illicit financial web in latest international sting
SCOTUS tosses one of two injunctions against Trump USPS mail-in ballot rules
Treasury sanctions alleged Iranian hackers as part of ‘economic D-Day’
Bipartisan Senate bill aims to prepare energy sector for Q-Day
Postal Service moves to finalize mail ballot regs before SCOTUS ruling
Apollo discloses data breach from ongoing wave of attacks hitting financial sector
Lawmakers seek watchdog review of federal hacking of Americans
InfoSecurity Magazine
Interpol Operation Jackal IV Identifies 263 Cybercrime Suspects
Four in Five AI Tools Run with No IT Oversight, New Research Finds
Average Cyber Insurance Losses Increase Despite Fewer Claims
Linux Foundation Introduces TRACE Standard for AI Runtime Evidence
DDoS Attack Hits Norwegian Government Services
ZeroTokens Phishing Platform Steers Attacks in Real Time
Fake Recruiter Scams Target Corporate Credentials on Mobile
Australia Warns of Active Exploitation of Critical TeamCity Server Flaw
Fake Minecraft Clients Deliver WeedHack Malware Despite Infrastructure Takedown
ReliaQuest Rejects Compromise Claims After ShinyHunters Incident
SecurityWeek
Adobe and Nvidia Patch Dozens of Vulnerabilities
CISA: Over 100 Internet-Exposed Water Systems Targeted in July Cyberattacks
The MFA Identity Trap: When Authentication Creates a False Sense of Security
Chrome 152 Patches Over 300 Vulnerabilities
Sensitive Information Exposed in Nutex Health Data Breach
CISA Warns of Exploited Gitea Vulnerability
Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation
Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails
WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities
WhatsApp Adds Multiple Passkeys and Stronger 2SV in Account Security Update
ZDNet
4 AI development skills you need, according to Andrew Ng - and what experts say he's missing
This simple antivirus tool is the easiest way to scan your Linux PC for threats - for free
I built my own secure network in the cloud to access my home PCs remotely - for free
The best reading tablets of 2026: Expert tested
Have an old PC monitor laying around? Turning it into a TV is easier than you think
Universal adapter vs. travel charger: Confused? Here's the device you need most
Garmin's new Fenix 9 Pro smartwatch is twice as bright as the previous gen - here's how they compare
Android's motion sickness feature is rolling out - how to see if you have it
Some Spectrum internet customers can get free Amazon Prime - see if you're eligible
Anthropic's Claude and Cowork will share memories about you now - unless you opt out
The Hacker News
Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code
Imagine the SOC Without a Queue: From Alert Backlog to AI Hypothesis Engine
Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users' Reservations in Tests
OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation
INTERPOL Operation Jackal IV Arrests 58, Identifies 263 in Global Cyber Fraud Crackdown
New SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode
Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload
Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes
U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches
A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw
BleepingComputer
Ubiquiti patches three max severity security vulnerabilities
Microsoft tests new privacy controls for Windows 11 desktop apps
Hackers now exploit critical Gitea flaw in code injection attacks
LACMA data breach last year exposed social security and medical data
Hackers abuse npm mirrors to host phishing redirect pages
AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes
Massive DDoS attack disrupts Norway’s government digital services
Hospital operator Nutex Health says data stolen in cyberattack
From Fake Workers to Account Recovery: The Growing Identity Verification Risk
Microsoft PowerToys adds Alt+Tab-style switching for an app's windows
gbhackers
Russia-Linked Operators Used ChatGPT to Run a Secretive Online Influence Campaign
Iran-Linked Hackers Use Reverse SSH Tunnels to Reach Deep Inside Compromised Networks
Critical WatchGuard Agent Flaws Let Unauthenticated Attackers Execute Remote Code
SonicWall NetExtender Flaw Lets Attackers Write Arbitrary Files as Root
Fake Claude Desktop Installer Deploys SectopRAT Using DLL Sideloading and Blockchain C2
Hackers Turn Trusted npm Mirrors Into Hosts for Fake Cloudflare ClickFix Pages.
Iran-Linked Hackers Abuse Legitimate Deno Runtime to Hide Dindoor Backdoor on Windows Systems
Critical WordPress TranslatePress Flaw Lets Attackers Take Over Admin Accounts
Google Chrome 152 Patches 327 Security Flaws, Including 10 Critical Vulnerabilities
NVIDIA NemoClaw Vulnerability Lets Attackers Hijack AI Agents via DNS Rebinding
Cybersecurity Dive
Treasury to help financial firms transition to quantum-resistant encryption
Researchers warn about chained SharePoint sequence
CISA orders agencies to fix exploited Zimbra vulnerability
UK power facility disabled for days after suspected state-linked cyberattack
House Democrats ask GAO to study CISA workforce cuts
Salesforce gave every org the same free scanner. Attackers already know what it misses.
Microsoft discloses maximum severity flaw in Entra ID
Defense contractors still struggling with basic CMMC requirements
Fitch explains how water, healthcare organizations can keep strong credit ratings despite cyberattacks
What we know so far about the hacking campaign against US water systems
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
You could've applied all 1,449 Oracle patches and still been hit by this attack
CISA slaps its tightest three-day patching deadline on perfect-10 Oracle flaw
Crooks push Mac malware through fake OpenAI Codex ads
You don't want this Sleepwalker backdoor on your Windows machine
Browser fingerprint tool shows how easy you are to track using the latest sneaky tricks
Iran-linked cyberattack shut down a UK power plant
AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones
Security vets rally around $4 paper password books for sale in Australia
If you're not using AI to attack your own systems, your adversaries will
AWS Security makes an inscrutable choice
VentureBeat
Prompt injection ranks No. 1 with OWASP and No. 12 in the incident record. The attack itself is invisible to a scan.
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
TechCrunch
That fake Grand Theft Auto VI demo is actually just malware
Apple rescues Hide My Email feature from the privacy scrap heap
WhatsApp tightens account security with stronger two-step verification and more
Alabama launches investigation into OpenAI’s hack of Hugging Face
Instinct’s powerful AI assistant is raising privacy and security concerns
Frontier AI labs still won’t say how they’d contain a rogue model
Private equity firm Apollo confirms data breach amid hacking wave targeting financial giants
Senator asks US government watchdog to review how feds use hacking tools
Someone targeted security researchers using a fake crypto conference as a lure
AI data giant Alation confirms cyberattack
Network World Security
Cisco bulks up its AI infrastructure portfolio with Supermicro’s liquid-cooled servers
2026 network outage report and internet health check
Cisco taps Teleport for infrastructure identity management tech
Google adds AI-powered assessments to Migration Center to speed up cloud migration planning
AI is turning the semiconductor market into a $1.6 trillion industry
Nvidia to hike prices by 15%, on top of an even larger increase in July
IBM unveils dual-architecture processor to run Arm-native apps on Z mainframes
AI agents are reshaping the threat landscape, shifting IT skills requirements
Nvidia scales back financing guarantee for OpenAI data center
Palo Alto Networks and NTT Data target $1B in joint AI security sales with new managed offerings
Help Net Security
AnonyMousKIT phishing-as-a-service uses AI voice calls to steal iPhone passcodes
Critical Gitea vulnerability now exploited in the wild (CVE-2026-60004)
RightCrowd Pass unifies mobile, physical, and biometric credentials
Bogus recruiters go after high-value corporate credentials on mobile
Meta adds three new features to keep WhatsApp accounts secure
Linux Foundation takes on TRACE, a hardware-backed runtime evidence specification for AI agents
Production data in testing is still common, and Tricentis’ CISO wants it gone
AI vulnerability discovery scores the highest impact of 20 emerging risks
Hottest cybersecurity open-source tools of the month: August 2026
INTERPOL crackdown on West African crime rings uncovers troubling new trend
SC Magazine
Mobile banking trojans expand capabilites; 66% now allow full device takeover
Connecting Cyber Risks to Board Outcomes & BHUSA interviews from Mimecast & Zscaler - Dan Bowden, Leslie Nielsen, Brett Stone-Gross - BSW #462
Fibonacci, Hidden Sounds, Teams, Zimbra, Entra-ID, z.ai, Schrödinger's, Aaran Leyland - SWN #610
From tool stack to defense system: Connecting the security dots
CISA adds Oracle WebLogic bug to its list of exploited vulnerabilities
Why mission risk should drive cyber operations strategies
Instinct AI assistant faces privacy concerns
Unpatched Calix router vulnerability allows remote attackers to expose home networks
New 'Sleepwalker' backdoor uses custom command language
Alabama attorney general subpoenas OpenAI over AI breach
© 2026 RiskDiscovery | Sponsored by:
Deception Logic