[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Attackers Hide Infostealer in Copyright Infringement Notices
AI Dominates RSAC Innovation Sandbox
Patch Now: Oracle's Fusion Middleware Has Critical RCE Flaw
Cyber OpSec Fail: Beast Gang Exposes Ransomware Server
Interlock Ransomware Targets Cisco Enterprise Firewalls
AI Conundrum: Why MCP Security Can't Be Patched Away
With Government's Role Uncertain, Businesses Unite to Combat Fraud
Native Launches With Security Control Plane for Multicloud
Post-Quantum Web Could be Safer, Faster
EU Sanctions Companies in China, Iran for Cyberattacks
Ars Technica
Widely used Trivy scanner compromised in ongoing supply-chain attack
Cloud service providers ask EU regulator to reinstate VMware partner program
Federal cyber experts called Microsoft's cloud a "pile of shit," approved it anyway
Researchers disclose vulnerabilities in IP KVMs from four manufacturers
Supply-chain attack using invisible code hits GitHub and other repositories
The who, what, and why of the attack that has shut down Stryker's Windows network
14,000 routers are infected by malware that's highly resistant to takedowns
Feds take notice of iOS vulnerabilities exploited under mysterious circumstances
Amazon appears to be down, with over 20,000 reported problems
Trump gets data center companies to pledge to pay for power generation
CyberScoop
State officials, election experts question California sheriff’s seizure of ballots
FBI: Iranian hackers targeting opponents with Telegram malware
An AI-powered phishing campaign has compromised hundreds of organizations
The phone call is the new phishing email
FBI, CISA issue PSA on Russian intelligence campaign to target messaging apps
Trio sentenced for facilitating North Korean IT worker scheme from their homes
Ubiquiti defect poses account takeover risk for UniFi Networking Application users
Justice Department disrupts botnet networks that hijacked 3 million devices
North Carolina tech worker found guilty of insider attack netting $2.5M ransom
Can Zero Trust survive the AI era?
InfoSecurity Magazine
Most Cybersecurity Staff Don’t Know How Fast They Could Stop a Cyber-Attack on AI Systems
Tycoon2FA Phishing Service Resumes Activity Post-Takedown
High-Tech Sector Overtakes Finance as Top Target for Cyber-Attacks, Mandiant Reports
Trivy Supply Chain Attack Expands With New Compromised Docker Images
CISA Orders US Government to Patch Maximum Severity Cisco Flaw
Operation Alice Takes Down 370,000+ Dark Web Sites
Hackers Exploit Critical Langflow Bug in Just 20 Hours
NCA Boss Warns That Teens Are Being “Radicalized” Into Cybercrime Online
Ransomware Affiliate Exposes Details of 'The Gentlemen' Operation
Financial Brands Targeted in Global Mobile Banking Malware Surge
SecurityWeek
RSAC 2026 Conference Announcements Summary (Pre-Event)
M-Trends 2026: Initial Access Handoff Shrinks From Hours to 22 Seconds
Chip Services Firm Trio-Tech Says Subsidiary Hit by Ransomware
Aqua’s Trivy Vulnerability Scanner Hit by Supply Chain Attack
QNAP Patches Four Vulnerabilities Exploited at Pwn2Own
Tycoon 2FA Fully Operational Despite Law Enforcement Takedown
Oracle Releases Emergency Patch for Critical Identity Manager Vulnerability
Critical Quest KACE Vulnerability Potentially Exploited in Attacks
In Other News: New Android Safeguards, Operation Alice, UK Toughens Cyber Reporting
3 Men Charged With Conspiring to Smuggle US Artificial Intelligence to China
ZDNet
How high of a refresh rate does your TV really need? An expert's buying advice
3 ways Cisco's DefenseClaw aims to make agentic AI safer
I gave DeleteMe a try after falling victim to multiple data breaches - here's how it's paid off
The best early Amazon Spring Sale deals: Save on streaming, Apple, Samsung, and more
Amazon is clearing out these popular DeWalt power tools by up to $190 off
Best early Amazon Spring Sale TV deals 2026: Save big on Samsung, TCL, and more
The best phone deals from T-Mobile, Verizon, AT&T and other carriers right now
It's your last chance to get Disney+ and Hulu at the lowest price of the year so far
Your iPhone has a secret button on the back - here's how to unlock it
Best early Amazon Spring Sale phone deals 2026: 20 sales out now
The Hacker News
North Korean Hackers Abuse VS Code Auto-Run Tasks to Deploy StoatWaffle Malware
⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & More
We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with Them
Microsoft Warns IRS Phishing Hits 29,000 Users, Deploys RMM Malware
Trivy Hack Spreads Infostealer via Docker, Triggers Worm and Kubernetes Wiper
Hackers Exploit CVE-2025-32975 (CVSS 10.0) to Hijack Unpatched Quest KACE SMA Systems
FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing Attacks
Oracle Patches Critical CVE-2026-21992 Enabling Unauthenticated RCE in Identity Manager
CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026
Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm Packages
BleepingComputer
TeamPCP deploys Iran-targeted wiper in Kubernetes attacks
Crunchyroll probes breach after hacker claims to steal 6.8M users' data
Trivy supply-chain attack spreads to Docker, GitHub repos
Varonis Atlas: Securing AI and the Data That Powers It
Microsoft Exchange Online service change causes email access issues
FBI warns of Handala hackers using Telegram in malware attacks
CISA orders feds to patch DarkSword iOS flaws exploited attacks
New KB5085516 emergency update fixes Microsoft account sign-in
VoidStealer malware steals Chrome master key via debugger trick
Trivy vulnerability scanner breach pushed infostealer via GitHub Actions
gbhackers
Tax Scam Google Ads Push BYOVD EDR Killer, Huntress Finds
SEO Poisoning Campaign Uses Fake Popular Apps to Deliver AsyncRAT
Libyan Refinery Targeted in Prolonged Spy Campaign With AsyncRAT
511,000+ End-of-Life IIS Instances Found Online, Raising Security Risks
MioLab MacOS Stealer Expands With ClickFix, Wallet Theft, Team APIs
Hackers Exploit Quest KACE SMA Flaw to Harvest Credentials
CISA Warns of Craft CMS Code Injection Flaw Exploited in Active Attacks
Oblivion RAT Masquerades as Play Store Update to Spy on Android Users
Critical QNAP QVR Pro Flaw Could Let Remote Attackers Access Systems
$30 IP-KVM Flaws Could Enable BIOS-Level Enterprise Network Attacks
Cybersecurity Dive
Lockheed Martin targeted in alleged breach by pro-Iran hacktivist
Stryker confirms cyberattack is contained and restoration underway
Network edge devices still widely used after reaching end-of-life status
Companies know AI is essential for cyber defense but aren’t yet seeing returns
US, allies move to dismantle four high-volume IoT botnets
DOJ confirms seizure of domains linked to Iran-backed threat actor
Water utilities need hands-on cybersecurity help, not just free guidance, pilot program finds
CISA urges organizations to harden endpoint security following Stryker attack
Threat groups target cyber-physical systems to disrupt critical infrastructure providers
Stryker begins restoring ordering, shipping systems after cyberattack
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Lightning-fast exploits make it essential to patch fast, ask questions later
Google unleashes Gemini AI agents on the dark web
Smooth criminals talking their way into cloud environments, Google says
US chip testing firm shrugged off ransomware hit as minor – then came the data leak
RSAC 2026: Uncle Sam backs out, and AI agents are everywhere
Microsoft fixes broken Windows update days after vowing fewer broken updates
The drone swarm is coming, and NATO air defenses are too expensive to cope
Russians are posing as Signal support to launch phishing attacks
Cryptographers engage in war of words over RustSec bug reports and subsequent ban
UK police force presses pause on live facial recognition after study finds racial bias
VentureBeat
Meta's rogue AI agent passed every identity check — four gaps in enterprise IAM explain why
The authorization problem that could break enterprise AI
Nvidia's agentic AI stack is the first major platform to ship with security at launch, but governance gaps remain
OpenClaw can bypass your EDR, DLP and IAM without triggering a single alert
Anthropic and OpenAI just exposed SAST's structural blind spot with free tools
Enterprise identity was built for humans — not AI agents
Microsoft says ungoverned AI agents could become corporate 'double agents.' Its fix costs $99 a month.
TechCrunch
Someone has publicly leaked an exploit kit that can hack millions of iPhones
Russian authorities block paywall removal site Archive.today
FBI says Iranian hackers are using Telegram to steal data in malware attacks
Federal immigration agents filmed making airport arrests as Trump calls in ICE to ease security line delays
Delve accused of misleading customers with ‘fake compliance’
A French Navy officer accidentally leaked the location of an aircraft carrier by logging his run on Strava
US accuses Iran’s government of operating hacktivist group that hacked Stryker
Cyberattack on vehicle breathalyzer company leaves drivers stranded across the US
FBI seizes pro-Iranian hacking group’s websites after destructive Stryker hack
CISA urges companies to secure Microsoft Intune systems after hackers mass-wipe Stryker devices
Network World Security
Cisco goes all in on agentic AI security
Cisco: Latest news and insights
Cisco Talos 2025 year in review and lessons learned
Nvidia: Latest news and insights
Nvidia overhauls the data center for OpenClaw era
Nile adds microsegmentation and native NAC to its secure NaaS platform
IDC: Dell leads server market driven by AI infrastructure needs
Cloud providers seek to shape European sovereignty legislation
Telnet vulnerability opens door to remote code execution as root
Nvidia joins push for data centers in space
Help Net Security
Quantum threats are already active and the defense response remains fragmented
Broadcom delivers XDR solution to under-resourced SOC teams
The devices winning the race to get hacked in 2026
Top must-visit companies at RSAC 2026
Apiiro introduces AI Threat Modeling to identify risks before code exists
Anvilogic’s Blueprints replaces SOAR complexity with natural language security automation
Astrix advances AI agent security platform to govern shadow and enterprise agents
Straiker enables visibility and runtime protection for enterprise AI agents
Black Duck Signal secures AI-generated code with agentic application security
Rubrik SAGE enables semantic governance for enterprise AI agents at scale
SC Magazine
Tanium's Tim Morrison on real-time endpoint intelligence in the age of AI
KnowBe4's Erich Kron on modern phishing attacks
Iran-backed Handala uses Telegram for C2 to push malware, FBI says
From Reactive to Autonomous: Real-Time Endpoint Intelligence in the Age of AI - Tim Morris - RSAC26 #1
Modern Phishing Attacks Are Under Multi-Channel Siege - Erich Kron - RSAC26 #1
Live from RSAC 2026: AI, Zero Trust & Cybersecurity Trends You Need to Know - RSAC26 #1
Why traditional VAPT is falling behind in the age of AI-built software
Building institutional capacity: Why AI-augmented security is the new standard
Your DLP can't stop a smartphone: The data-leak crisis no one talks about
Why piling on faster AI tech alone won't fix the SOC
© 2026 RiskDiscovery | Sponsored by:
Deception Logic