[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Attackers Hit Cisco SD-WAN Flaw 2 Months Before Disclosure
2026 FIFA World Cup Faces Surge in Cyber Threats
Do CISOs Need a Code of Ethics?
More Malicious OpenClaw Skills Threaten AI Supply Chain
Apple's MacOS Gap Lets Users Disable Security Tools
Scope of Salesforce Attacks Expands as Icarus Leaks Data
'Cordyceps': Mushrooming Malicious Pull Requests Threaten Developer Workflows
SocGholish Takedown Highlights Malicious TDS Threats
FortiBleed Attackers Turn Firewalls Into Credential Stealers as Heists Persist
DifyTap Bugs Let Attackers 'Wiretap' AI Chat Histories
Ars Technica
One-two punch delivered in global operation disrupts cybercrime "assembly line"
White House drastically shortens deadline for dropping quantum-vulnerable crypto
Oracle’s 21,000 layoffs help drive its debt-fueled AI investments
Following user outcry, AMD reinstates memory encryption in consumer CPUs
Microsoft discovers new lightweight backdoor that steals cryptocurrency
Apple patches high-severity eavesdropping vulnerability in Beats Studio Buds
Before SpaceX IPO, investors in China secretly acquired stakes
Massive breach spills credentials for thousands of sensitive networks
Tesco moving 40,000 server workloads off VMware amid Broadcom's “abusive conduct”
"Dangerous" AI models are coming no matter what
CyberScoop
Malicious hackers exploit Cisco zero-day for highest access level at communications service provider
In a first, a court takedown goes after two cybercrime tools at once
Open-source security is posing challenges governments can’t easily solve
Justice Department seizes infrastructure used by cyber scam and criminal marketplace
Algerian man charged with running two cybercrime marketplaces
Court rules SAVE database illegal, orders it dismantled
Trump executive orders speed up post-quantum migration, boost industry
Intel agencies: Frontier AI models will reshape cybersecurity faster than expected
Authorities disrupt Evil Corp’s SocGholish botnet
Congress tees up No FAKES Act, aiming at AI-generated deepfakes
InfoSecurity Magazine
Researchers Trick AI Browsers Into Leaking Credentials
Europol-Led Operation Endgame Takes Down StealC and Amadey Infostealers
macOS Backdoor Uses Prompt Injection to Evade AI Triage
KDDI Breach Affects Six Japanese ISPs, Exposes 14.2 Email Credentials
Iran-Linked MuddyWater Poses as Ransomware Gang to Mask Cyber Espionage
AI Is Making Attacks Cheaper, Faster and More Covert, Says ReliaQuest
UK Museums Face Cybersecurity Risks, MPs Warn
Lookalike npm Package Hides a Multi-Stage Windows RAT
OpenAI Expands Daybreak to Help Defenders Patch Flaws
Trump Issues Executive Order to Fast-Track Post-Quantum Migration
SecurityWeek
NIST Opens Updated IoT Security Guidance to Public Review
Chrome 149 Update Resolves 18 Severe Vulnerabilities
Cisco SD-WAN Zero-Day Exploited Months Before Patching
When Information Becomes the Attack Surface – Understanding AI Agent Traps
Microsoft and Allies Smash Shared Infrastructure of Amadey and StealC Malware
Exclusive: Meet AIVEX, a New Triage Model Built to Reduce Supply Chain Threat and Risk
macOS Weaknesses Chained to Silently Disable Endpoint Security Agents
Third DraftKings Hacker Sentenced to 18 Months in Prison
Critical Ubiquiti Vulnerabilities in Attackers’ Crosshairs
Agentic AI Security: Wrong Context, Wrong Decisions at Machine Speed
ZDNet
Three tech visionaries on how to build trust and accountability with AI
48 hours later with the Google Home Speaker, I can't stop talking to Gemini (even if it's imperfect)
As an avid reader, these are the Kindle Prime Day deals worth buying (accessories, too)
It's Prime Day 2: Our editors hand-picked the 95+ best deals and are tracking them live
MSI's Katana 15 is a solid midrange gaming laptop and it's 15% off during Prime Day
12 rules of agentic AI for successful enterprise transformation
This durable Lexar SSD is perfect for content creators and it's 26% off during Prime Day
These Best Buy gaming deals might be better than Amazon's Prime Day sale
Ditch the cables: here are the best wireless chargers on sale during Amazon Prime Day
The wireless Android Auto adapter that I rely on for long commutes is 15% off right now
The Hacker News
Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Exploited to Gain Root Access
CISA Warns Critical Lantronix EDS5000 Flaw Is Being Actively Exploited
Amadey and StealC Malware Network Disrupted, 27M Stolen Credentials Recovered
Cordyceps CI/CD Flaws Expose 300+ GitHub Repositories to Supply-Chain Attacks
Dawn of the Apex Agentic Adversary
DoJ Seizes Huione Cloud Account Tied to Cyber Scam Money Laundering
Cisco Unified CM Flaw Exploited After PoC Reveals File-Write Path to Root
FortiBleed Targeted FortiGate Firewalls in 110 Million-Credential Harvesting Operation
Fake AI Agent Skill Passed Security Scans and Reportedly Reached 26,000 Agents
Trump Order Sets 2030 Deadline for Federal Post-Quantum Crypto Migration
BleepingComputer
Google releases new privacy controls for activity history, personalization
DraftKings hacker 'Snoopy' sentenced to 18 months in prison
Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access
Malicious Edge extension abuses Native Messaging as bridge to malware
CISA warns of max severity Ubiquiti flaws exploited in attacks
Amadey, StealC malware operations disrupted in Operation Endgame action
Securing the service desk: Why social engineering attacks keep succeeding
Stealthy Mistic backdoor linked to ransomware access broker KongTuke
Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks
Tata Electronics confirms cyberattack as hackers leak data
gbhackers
Google Chrome Update Patches 18 Security Flaws, Including Critical WebGL and Autofill Vulnerabilities
DPRK-Linked macOS Implant Uses LaunchAgent Persistence and Python Stealer Module
Microsoft WinRE Vulnerability Allows Hackers to Bypass UEFI/BIOS Password Enforcement
Hackers Use Malicious Chrome Extension to Break Out of Browser Sandbox
Alibaba Accused of Illicitly Accessing Claude AI Models Using 25,000 Fraudulent Accounts
Cisco Catalyst SD-WAN Manager Zero-Day Exploited to Gain Root Access via Malicious CSV Upload
OpenClaw Supply Chain Risk Lets Attackers Abuse AI Agent Authority for Unauthorized Actions
StrikeShark Campaign Uses New SharkLoader Malware to Deploy Cobalt Strike Beacon
Europol Disrupts Cybercrime-as-a-Service Networks Used for Ransomware and Financial Fraud
Agentic Red-Team Tools Flaws Let Hackers Steal API Keys, Escape Sandboxes, and Compromise Hosts
Cybersecurity Dive
Microsoft, Europol lead international takedown against infostealer malware
Ransomware attacks grew in 2025 as traditional data breaches fell
White House’s state infrastructure cybersecurity initiative stalled
Trump sets new deadlines for agencies and contractors to adopt post-quantum cryptography
Klue investigating supply chain attack that targeted Salesforce integrations
Looming AI-fueled threats require urgent cybersecurity improvements, Five Eyes members say
Interpol, Europol renew agreement to combat hackers and other criminals
CISA urges device hardening after thousands of Fortinet credentials compromised
3 ways AI is transforming security operations - and where it delivers real impact
AI is transforming enterprise data risk. Here’s how security leaders are responding.
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
UK school’s network left wide open for invasion, student found
Nation-state actors cracked critical Australian infrastructure to ‘cripple it at a time of their choosing’
The hits keep on coming for Cisco vulnerabilities
Microsoft uses AI to link two malware operations in racketeering suit
London cops bring live facial recognition to West End
You have got to be KDDI-ng – Japanese telco exposes 14.2 million managed email credentials
Mythos discovers 'Squidbleed,' a memory leak that's gone undetected since Clinton era
Five Eyes spooks warn AI means infosec incidents can become ‘major operational and financial crises’
Sniff out stale AI override advice with this open source CLI
OpenAI: Yoo-hoo, look over here, we do that security stuff too!
VentureBeat
Visa will offer an inside look at Project Glasswing and how the most powerful agentic models are changing enterprise security at VB Transform 2026
7,000 Langflow servers are under attack. LangGraph and LangChain have the same holes
Copilot searched your mailbox. LiteLLM handed out admin keys. Run this 5-check audit before your stack is next
85% of IT teams claim every AI agent is under control. Only 42% actually know who owns them.
Attackers scale deception with AI. Defenders need truth at machine speed.
NanoClaw and JFrog launch 'immune system' to block AI agents from downloading malicious code
Meta's AI support agent bound recovery emails for anyone who asked. Your SOC never saw an alert.
TechCrunch
New website names and shames companies that still don’t offer passkeys to users
Klue says hackers stole credential from 2022 that led to customer data breaches
Password manager maker LastPass says hackers stole customer support case data during Klue breach
Tata Electronics, a major tech supplier to Apple and Tesla, confirms data breach
A new unpatchable flaw in Apple chips opens the door to an iPhone jailbreak
Anthropic says Claude may want to see your ID
Klue hack results in data breach at several cybersecurity firms
Signal’s Meredith Whittaker wants you to remember that AI chatbots ‘are not your friends’
From PGP to Mythos: a brief history of export controls that didn’t stop anyone
Texas government data breach allowed hackers to steal 3 million driver’s licenses and passports
Network World Security
Qualcomm’s $3.9 billion purchase of Modular aims to change the data center dynamic
IBM, Red Hat, Palo Alto team to secure open-source software
Attackers exploit Cisco Unified CM flaw weeks after patch release
Upscale AI readies Skyhammer scale-up networking tech, raises new funding
Rami Rahim’s message for network pros: Legacy networks can’t withstand rigors of AI
2026 network outage report and internet health check
China’s LineShine dethrones El Capitan as the world’s fastest supercomputer
Nvidia: Latest news and insights
Dell launches AI server based on Nvidia Vera Rubin GPUs
Nvidia unveils Vera Rubin platform targeting AI, HPC infrastructure
Help Net Security
Bitdefender RealCheck analyzes videos for deepfakes and fraud
Google Wallet adds TSA Touchless ID for faster airport screening
The uptime questions every engineering leader should ask this week
LLM security advice looks solid until you check the hard cases
Scoring AI hackers when there is no answer key
Best practices for AI in open-source work
What your next cyber insurance renewal will demand
Most teams will ship AI-written infrastructure code with little review
Law enforcement hits StealC and Amadey malware networks
Algerian national accused of running cybercrime marketplaces extradited to US
SC Magazine
Nationwide GSM-R outage halts German trains
EvilTokens phishing service scales attacks 1,380% with AI integration
London police to expand live facial recognition use
UK cybersecurity managers question speed-focused certification programs
macOS attack technique bypasses endpoint security tools
Closing the 'risk window': Why real-time remediation is the new security standard
Stay ahead in the SOC: Contain threats with confidence and control
Patched Samsung KNOX kernel flaw (CVE-2026-20971) detailed
Airbnb scams surge 30x as criminals hijack legitimate host accounts
FortiBleed campaign steals 110M credentials from FortiGate targets
© 2026 RiskDiscovery | Sponsored by:
Deception Logic