[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
'WP2Shell' Opens Millions of WordPress Sites to Remote Takeover
Remediating Vulnerabilities With LLMs: Inside Ivanti's Automation Push
CISOs Feel the Heat Over AI Risk
Attackers Combo Up Evasion Tactics for BEC Phishing
Cybersecurity Keeps Events 'Uneventful'
Inc Ransomware Exploits SonicWall SMA Zero-Days
The Real AI Threat Is Blind Trust
Gold Eagle Clearinghouse Targets Security Gap, But How Is Unclear
Google Bets 'Agentic Defense' Strategy Can Outpace Attackers
Agentic AI: Taming the Unpredictable
Ars Technica
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
The US government warns that Russia state hackers are coming after your router
Now, defenders are embracing the prompt injection, too
Patch for Windows Defender 0-day could allow attackers to fill hard disk
Allstate accuses Broadcom of auditing it because it quit VMware, CA
CyberScoop
Director of Commerce AI standards office out after three months
Why blocking AI models won’t stop the cyber threats they create
State officials, election experts pan Trump speech: ‘This is what desperation looks like’
Leading members of Scattered Spider sentenced in UK to 66 months in jail
Program to rotate cyber personnel through federal agencies saw little use
Russian trio indicted for allegedly running bulletproof hosting providers that spurred cybercrime
Security researchers find stalkers abusing Chrome’s sync feature
SonicWall customers under threat as attackers exploit 2 zero-days
Dems press DNI nominee Jay Clayton on election security questions, but leave dismayed
Forget the model. When it comes to cybersecurity, it’s all about the harness
InfoSecurity Magazine
Cruciferra Crypter Uses Process Ghosting to Evade Detection
JadePuffer Returns With Ransomware Designed to Wipe AI Models
Researchers Build WordPress Exploit Using OpenAI's GPT
New HollowGraph Malware Hijacks Microsoft 365 Calendars for Covert C2 Communications
Police Chiefs Cite TfL Hack in Push for Cybercrime Risk Orders
Government Agencies Falling Victim to Ransomware Daily, Warns Study
23andMe Faces New Security Mandates in $18m Data Breach Settlement
CISA Mandates Urgent Patch for Actively Exploited Critical Fortinet Vulnerabilities
The Gentlemen Overtakes Qilin as Most Prolific Ransomware Threat
Phishing Campaign Hides Lua Loader as TrueType Font File
SecurityWeek
Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software
SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch
OpenSSL Silently Fixes ‘HollowByte’ DoS Vulnerability
New Index Tracks Material Breaches — And Refuses to Add Up the Losses
Ernst & Young Data Breach Affects Personal, Financial Information
Watch on Demand: Cloud & Data Security Summit
Capital One Open Sources AI-Powered ‘VulnHunter’ Security Tool
Hugging Face Hacked in Autonomous AI Attack
Chrome 150 Update Patches Severe Memory Safety Bugs
WP2Shell WordPress Vulnerabilities Exploited in the Wild
ZDNet
Want to add Android Auto to your old car? Here are two ways - including one that's under $20
I tested a 4TB quantum-resistant USB drive - but you don't have to spend $3000 for this much security
The best rugged phones in 2026: Expert tested
An AI agent breached Hugging Face before an AI defender caught it: What users should do next
Why I still recommend Synology's DS225+ NAS - even if it can't replace your cloud storage
How I configure DNS on Ubuntu Linux distros via the command line - it's easier than you think
How to check if ChatGPT and other AI tools cite your website - and improve your chances in 2026
I tested 3 blood pressure trackers for a month - only one rivaled my Garmin Index BP Monitor
The top AI fear for 6,000 tech pros isn't losing their jobs - it's more work for the same pay
I recreated OpenAI's Codex Micro for a lot less - and mine is more customizable
The Hacker News
FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware
Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign
HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More
Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine
Mythos Didn't Break Your Security Program. Your Exposure Window Could.
New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction
Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs
World's Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines
BleepingComputer
Cursor, Codex, Gemini CLI, Antigravity hit by sandbox escapes
JadePuffer agentic attacks now target AI model data with ransomware
New HollowGraph malware uses Microsoft Graph for stealthy C2 comms
An AI SOC Evaluation Guide for Security Leaders
Hugging Face warns an autonomous AI agent hacked its network
Microsoft confirms Windows Server Update Services sync delays
Windows KB5121767 OOB update fixes shutdowns on some Dell PCs
Critical ServiceNow code execution flaw now exploited in attacks
Hackers abuse ViPNet software to target Russian govt agencies
Update now: 7-Zip fixes RCE flaw exploitable with malicious archives
gbhackers
The 12 Best Identity Threat Detection & Response (ITDR) Solutions, Compared and Priced (2026)
TELEPUZ Web Injector Can Steal Cookies, Execute JavaScript, and Replace IBAN Details
GPT-5.6 Sol Ultra Discovers WordPress Pre-Auth SQL Injection Leading to RCE
Microsoft Ends OneDrive Sync App Security Updates on Windows 10 21H2 and Earlier
One Malicious Web Request Can Turn an Exposed SharePoint Server Into a Persistent Backdoor
LG Monitors Silently Install McAfee Adware on Windows PCs With Full System Access
Microsoft Releases Emergency Windows 11 Update to Fix Intel IPF Driver Performance Issues
U.S. Charges Three Russian Nationals Over International Cyberattacks Costing Victims More Than $62 Million
PENTDEM AI Pentesting Daemon Uses 34 Security Tools to Automate WAF Bypass and Attack Chains
Weekly Cybersecurity Newsletter – The 50 Biggest Cybersecurity Stories – Microsoft Patch, AI Attack, Exploits Releases, Data Breaches & More
Cybersecurity Dive
Researchers trace SonicWall SMA1000 exploitation to late June
Hackers steal customer data from major hospital software vendor
The secret problem in AI infrastructure: Why MCP security starts with secrets
How agentic endpoint security shuts down IDE-based supply chain attacks
Your attack surface is bigger than you think
Abbott discloses cyberattack on cancer diagnostics business
Ransomware attack forces Coca-Cola to suspend US production at dairy unit
Gaps in network security, oversight strategy hamper US’s aviation cybersecurity regulators
Iran-nexus actors using AI to enhance cyber playbook
CISA warns that multiple vulnerabilities in SharePoint are under exploitation
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Attackers pummel critical WordPress vuln to create all sorts of mischief
Scammers impersonate FBI on social media, prey on crime victims
Malicious cloud customers can bring down the power grid
Frontier LLMs couldn't help Hugging Face fight off evil agents
Microsoft 365 calendars become spy drop boxes in HOLLOWGRAPH campaign
Connecting AI agents to outside services explodes the risk radius
AI spam filters are getting suckered by old-school text salting
Attackers target critical FortiSandbox flaws as CISA issues patch order
Google fixing Android lock screen bug that lets Gemini send SMS without a PIN
South Korea making its own security-centric AI model
VentureBeat
Safety guardrails blocked Hugging Face's defenders, not the attacker, when an AI agent breached its systems
AI confidence just dropped 17 points in six months. That’s actually great news.
Capital One releases VulnHunter, an open-source AI tool that finds software flaws before hackers do
Zero trust must now move at agent speed
1Password moves into AI cost management, betting that token spend is the next enterprise budget crisis
Forget typosquatting; slopsquatting is the software supply chain threat created by AI coding tools
Shared API keys expose AI agents at 69% of enterprises, new VentureBeat research finds
TechCrunch
Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk
Hackers stole ‘significant’ amount of data from tech firm relied on by thousands of US hospitals and pharmacies
Watch Flock Safety CEO Garrett Langley discuss the future of surveillance at TechCrunch Disrupt 2026
Hugging Face confirms breach affected internal datasets and credentials, urges users to take action
The Zoom hack that says, ‘Don’t record me’
FBI arrests man accused of using Steam games to drain victims’ crypto wallets
Amazon fixing bug that billed some AWS customers billions of dollars
Coca-Cola suspended production at its Fairlife dairy after a ransomware attack
UK cops say arrest of two young hackers disrupted the operations of an infamous hacking group
Period tracker Stardust shares users’ health data with analytics firm, says Mozilla research
Network World Security
Sheetz replaces VMware at more than 830 stores
AI workloads shake up observability market
New York State just hit pause on the AI data center boom
Huawei eying possible DRAM market entry
IBM targets AI edge with Power server, software upgrades
Network jobs watch: Hiring, skills and certification trends
Google Cloud configuration update disrupts VMware Engine stretched clusters
Fortinet adds AI protections to endpoint security platform
How data centers cope with heat waves
ISC2: AI raises accountability demands for cybersecurity teams
Help Net Security
The Odyssey piracy scams surface hours after its theatrical debut
HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel
Paidwork breach exposes sensitive data of 23 million user
ServiceNow pre-auth RCE exploited in the wild (CVE-2026-6875)
Italy fines WINDTRE €1.7 million over security flaws behind two data breaches
Hugging Face breached by autonomous AI agent
The Windows 10 hangover is becoming a security problem
Meet Dusseldorf, Microsoft’s open-source out-of-band security platform
More alerts are making your team slower, and an outcome-based SOC fixes that
A forensic tool for backdoored code completions in AI assistants
SC Magazine
Bridging the divide: The convergence of AI and infosec
Guide helps organizations evaluate AI in security operations centers
LG monitors criticized for silently installing McAfee ads via Windows Update
Hugging Face uses GLM 5.2 to investigate AI agent-driven cyberattack
South Korea proposes new rules for seizing self-custody crypto wallets
HollowGraph malware uses Microsoft 365 calendar for command and control
Ecopetrol confirms ransomware attempt, data stolen from 3,300 accounts
Craneware confirms customer and employee data exposed in security incident
F5 fixes critical nginx vulnerability CVE-2026-42533
Head of federal AI testing lab resigns after three months
© 2026 RiskDiscovery | Sponsored by:
Deception Logic