[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft
Belgium's eID Authentication Opens Citizen Accounts to RCE
Long-running Data Theft Campaign Targeting Salesforce, ServiceNow
Walmart Takes a 'Trusted Agent' Approach to Purple Teaming
Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition
Walmart Leaders Transform Security Operations Without Going Bananas
Microsoft's Patch Tuesday Deluge Continues With August Updates
Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA
'GhostJacking' Exposes Identity Governance Gaps in AI Agents
Multistate Water System Attacks Widen, Iran Suspected
Ars Technica
Terabytes of credentials leaked in massive supply-chain attack
DEF CON crowd suspected in fake-hotspot attack on Delta flight
Chrome adopts what may be the best protection yet against account takeovers
New Pass-ta-key attack reveals all the things we didn't know about passkeys
Thousands of servers can be backdoored by exploiting buggy motherboard controllers
Claude published malicious code to the Internet and attacked 3 real companies
Max-severity Exchange server flaw under active exploitation by Kremlin hackers
Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission
We now have a better understanding how OpenAI hacked into Hugging Face
Microsoft unveils AI security tools it says outperform competing platforms
CyberScoop
Trump turns to private sector in offensive hacking operations memo
Researchers observe first ‘near-autonomous’ AI attack on government target in Taiwan
Kimwolf botnet rebuilt to survive takedowns, researchers say
Federal judge issues second order blocking Trump mail-in voting directive
Delta investigates in-flight Wi-Fi spoofing on post-DEF CON flight from Las Vegas
NIST wants to overhaul its vulnerability database for the AI age
The FTC wants to regulate AI for ideological bias
OpenAI says Daybreak will expand to offer specialized cyber services
NATO and an AI startup can now name and track software vulnerabilities
U.S., South Korean government agencies caution to be on lookout for Gunra ransomware gang
InfoSecurity Magazine
vCenter Flaw Exploited Just Five Days After Disclosure
Trump Authorizes Private Sector Participation in Offensive Cyber Operations
Akira Affiliate Crashes Ransomware After Attempting EDR Evasion
ICO Reprimands Criminal Records Office After 2023 Breach
WindRelay Malware Pairs With SpyNote RAT in Live-Call Scam
Lazarus Used Post-Quantum Key Exchange to Deliver Zero-Day
Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastructure
NIST Seeks Public Input on AI-Ready NVD Modernization
Russian-Linked Hackers Accessed Polish Power Plant OT Network Through Private APN, Says CERT.PL
Microsoft Fixes 400 Flaws on August Patch Tuesday
SecurityWeek
Adobe Commerce Bug Targeted Immediately After Disclosure
WordPress 7.0.4 Patches Remote Code Execution Vulnerability
Venture Firm Team8 Secures Additional $365 Million
Fortinet Patches Authentication Flaws in FortiWeb and FortiManager
White House Mobilizes Security Firms for Operations Against Foreign Cybercrime Gangs
Critical VMware vCenter Vulnerability in Attackers’ Crosshairs
Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’
SharePoint Vulnerability Exploited Shortly After PoC Release
Mindgard Raises $30 Million to Protect AI Systems
WhatsApp Unveils New Scam Alert Feature
ZDNet
Microsoft is merging Copilot and Copilot 365 into one unified app - and retiring 3 features
75% of developers I surveyed prefer Claude Code - here's why they choose it over Codex
Android can now tap to share for contact info, photos, and more - which phones get it first
The best antivirus software to protect your computer in 2026
The best password managers of 2026: Expert tested
'Specialists aren't required' anymore: How to stay valuable in an AI agent workplace today
Every Amazon Google Pixel 11 preorder deal - get up to $350 on an Amazon gift card, free
Sparky Linux just restored 32-bit support - why that still matters
Hackers are hunting for your private photos, FBI warns: 6 ways to avoid a sextortion nightmare
Every Pixel 11 deal at T-Mobile right now: Trade-in offers, free phones with new line, and more
The Hacker News
Attackers Exploit SharePoint Authentication Bypass After Public PoC Release
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One
OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning
Enterprise Defenses Recovered at the Edge and Collapsed Inside
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
BleepingComputer
Who Vets AI’s Code? The Scale Challenge Facing Open Source Ingestion
White House taps security firms for offensive hack-back operations
WhatsApp rolls out new feature that flags potential scam messages
"City-Forum" data-theft attacks target Salesforce, ServiceNow portals
Android malware combo takes out loans and relays victims' credit cards
Hackers exploit critical Adobe Commerce flaw to hijack customer accounts
Hundreds of fake Chrome VPN extensions route traffic through a proxy
Plug and Pwn attack uses fake USB devices for Windows SYSTEM access
Lazarus hackers exploited Windows zero-day to target defense firms
FBI: Hackers target online accounts to steal nude photos
gbhackers
Jewelbug Uses Public Google Docs as Malware Command-and-Control Delivery Channel
Microsoft Exchange Server Vulnerabilities Allow DoS, Privilege Escalation, and RCE
Critical Dell VMware vSphere Client Flaw Lets Remote Attackers Execute Commands as Root
Trump Administration Authorizes Cyber Operations Against Foreign Criminal Networks
LiteLLM Hack Exposes Secrets From 2,488 Companies Across 118,829 CI Runner Dumps
CISA Adds Actively Exploited Windows WinSock Vulnerability to KEV Catalog
Wireshark 4.6.8 Released to Patch 28 Security Vulnerabilities
Armored Likho Turns Windows Microphones Into Automated Eavesdropping Devices
Cloudflare Mitigates 23.2 Million DDoS Attacks as 1 Tbps Attacks Surge 519%
6,330 Internet-Exposed ICS Devices Near U.S. Data Centers Put Cooling and Power Systems at Risk
Cybersecurity Dive
Hackers abuse AI models to find new entry paths
Cisco says software vulnerability could let hackers crash firewalls
Former BlackFile affiliates linked to extortion campaign targeting private equity
CVE Program eyes automation and globalization to weather AI ‘vulnpocalypse’
Civil-society initiative will pay cybersecurity vendors to protect rural water systems
Secure development can help turn the tables as AI alters cyber landscape
Experts say healthcare faces cybersecurity crisis: ‘These are patient safety issues’
Critical flaws allow hackers to exploit zero-touch provisioning process in TP-Link Omada
AI firms know policymakers won’t ‘let you make a Terminator factory,’ DHS official says
Hackers grow more willing to destroy, not just disrupt, OT systems
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
AWS key exposed in JavaScript may have lit way to Beacon's charity data
Passwords stored in public Google Doc then showed up in search results
Chinese Loongson processors have leaky caches, researchers find
'Near-autonomous' AI agents attack Taiwan's nuclear safety agency
Spectre rears its ugly head again as researchers show some RISC-V chips are susceptible
Uber Freight keeps on trucking after extortion crew breaks in
Exposed: Woeful security at UK criminal records office that led to sensitive data leak
Akira ransomware scum blocked victim's security tools – and broke their own encryptor
Brit rail cops bring live facial recognition to the London Underground
Signal adds an extra layer of security to make sure you're actually chatting with the right person
VentureBeat
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
The Shai-Hulud npm worm didn't fake its security check — it earned a legitimate one
TechCrunch
Uber Freight reportedly investigating after hacking group claims data breach
After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug
FBI says cybercriminals are hacking into victims’ online accounts to steal their intimate pictures
Delta investigating after someone set up fake Wi-Fi network mid-flight
North Korean remote IT staffer worked for US government agency, says FBI
A data breach at shipping giant Ceva Logistics is rippling across banks, retailers, Steam gamers, and beyond
Signed up for Klaviyo? Dozens of advertisers may have seen your password
The AI safety test is becoming a safety risk
This ‘adversarial’ pattern can prevent surveillance cameras from detecting you
Google’s top hacker hunter explains why hacking groups get code names
Network World Security
Five takeaways from Cisco’s Q4 and what they mean for IT pros
Cisco rides ‘networking supercycle’ for strong Q4
North American data center vacancy holds at just 1%
2026 network outage report and internet health check
Nvidia: Latest news and insights
Oracle set to bring quantum computing to OCI for hybrid AI workloads
Nvidia’s $500B AI investment pool could impact enterprise chip pricing, availability
IBM, Together AI team to offer open-source AI inference in the cloud
Server prices to rise by up to 87% at OVHcloud
IT infrastructure shortages are real and lasting. Here’s how to cope
Help Net Security
DataGrout helps enterprises control AI usage, governance and LLM costs
A10 Networks introduces AI Gateway to secure and manage enterprise AI
Attackers exploit critical SharePoint flaw after PoC goes public (CVE-2026-55040)
Searchlight Cyber combines exposure and threat intelligence in new PTEM platform
153GB of stolen credentials surface after LiteLLM supply chain attack
Cisco fixes vulnerability exploited to DoS its firewalls (CVE-2026-20349)
Four corporate investigation mistakes organizations make under pressure
DDoS attacks hit record scale as 1 Tbps+ campaigns become more common
Product showcase: Is this image real? Slop or Not investigates
Wireshark 4.6.8 patches 28 security bugs, nine in file parsers
SC Magazine
Akira ransomware attacker uses Safe Mode reboot to evade EDR
Thailand plans mandatory multi-factor authentication after massive data leak
Uber Freight investigating data security incident after Helix claims breach
Colombia's Ministry of Justice hit by ransomware attack
Who owns the agent? Identity governance for autonomous AI
LiteLLM supply chain attack impacted over 2,500 organizations
New 'Plug and Pwn' attacks exploit Windows Plug and Play for SYSTEM privileges
Trump administration lifts ban on TikTok for federal devices
Critical VMware vCenter flaw actively exploited in 47 countries
The vulnerability flood is here. Here’s what it means – and how to prepare
© 2026 RiskDiscovery | Sponsored by:
Deception Logic