[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Adam Shostack Talks Hugging Face & PHANTOM-B
Linux Botnet Evooo1Bot Expands Mirai Capabilities Well Beyond DDoS
Mission-Driven Security: Inside a Global Bank's Defense
Amid AI-Driven Bug-Hunt Tsunami, NIST Looks to … AI
Scottish Govt Suffers Potentially Widening Data Breach at Prosecutor's Office
What Boards Need to Know About Tech Risk
Cyera's Oasis Security Buy Is All About AI Agent Control
Global Threat Campaign Hits Critical VMware vCenter Flaw
'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft
Belgium's eID Authentication Opens Citizen Accounts to RCE
Ars Technica
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
PBS station fears losing 50TB of data after being ghosted by cloud storage provider
OpenAI and Anthropic in price war as Chinese AI rivals gain ground
Private security firms will soon be allowed to hack overseas cybercriminals
Terabytes of credentials leaked in massive supply-chain attack
DEF CON crowd suspected in fake-hotspot attack on Delta flight
Chrome adopts what may be the best protection yet against account takeovers
New Pass-ta-key attack reveals all the things we didn't know about passkeys
Thousands of servers can be backdoored by exploiting buggy motherboard controllers
CyberScoop
Details emerge on BlackFile’s recent attacks on financial companies
Irregular says ‘human oversight’ responsible for AI sandbox escape incidents
A bold new strategy or a dangerous precedent? Experts are divided on Trump’s memo.
Tech contractor for Brightly Software sentenced to 2 years in prison for insider attack
AI’s ‘middle class’ has gotten dramatically better at hacking
Trump turns to private sector in offensive hacking operations memo
Researchers observe first ‘near-autonomous’ AI attack on government target in Taiwan
Kimwolf botnet rebuilt to survive takedowns, researchers say
Federal judge issues second order blocking Trump mail-in voting directive
Delta investigates in-flight Wi-Fi spoofing on post-DEF CON flight from Las Vegas
InfoSecurity Magazine
UNISOC Modem Flaw Enables Remote Code Execution via Video Calls
WordPress Plugin Flaw Exposes 40,000 Sites to Admin Takeover
ETSI Proposes 17 Cybersecurity Standards to Support Cyber Resilience Act
SafePal Data Breach Hits Tens of Thousands of Customers
Infostealers Harvest 1.7 Billion Credentials in Six Months
Researchers Confirm ExfilSquad’s Access to Sensitive Data Across 13 Organizations
New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies
Novel macOS Infostealer AmnesiaStealer Spread via ClickFix
Researchers Link 'Jewelbug' Chinese APT to Hack-for-Hire Operations
Exposed AWS Access Key Linked to Data Breach Affecting 1500+ UK Charities
SecurityWeek
680,000 Impacted by French Tax Authority Data Breach
Irregular Details How a Naming Error Let AI Models Attack a Real Company
Conflicting Test Goals Pushed Claude Agents to Deploy Self-Replicating Malware
40,000 Impacted by SafePal Data Breach
Recent macOS Screen Sharing Vulnerability Exploited in Attacks
Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure
Fortune 500 Companies Hit in Azure Data Theft Campaign
In Other News: Rapid7 Layoffs, Hacking a Boeing 737, Refrigeration System Vulnerabilities
Trivy, Not LiteLLM Behind the 2,500 Org Compromise
Google Cloud Sets Out Post-Quantum Roadmap With 2029 Readiness Goal
ZDNet
Business adoption of AI agents tripled this year - as measurable ROI emerges
AI-enriched Linux 7.2 delivers cache-aware scheduling - here's everything new
You can turn an old Android into a Raspberry Pi alternative - but know this first
Google wants you to use its phones less and its AI more - but who's buying it?
I turned an old Android phone into a server for my LAN - here's how and why
This Google Play Store trick saved me over $100 on the Pixel 11 Pro XL - here's how
Google Workspace lets Gemini access your company data by default - how to shut it down
I've tested dozens of tablets - this $300 TCL is a back-to-school powerhouse
The Pixel's new 'HiLight' reminds me of the golden days of Android phones
Google Pixel 11 Pro vs. Apple iPhone 17 Pro: How the new Pixel competes with its biggest rival
The Hacker News
Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects
Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection
Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads
Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic
⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More
How MCP Servers Can Expose Enterprise Secrets
Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access
Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies
Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware
SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch
BleepingComputer
Hacker claims 3.6 million Azure account records stolen from major companies
Pokémon Center data breach exposes customer info, cancels some orders
Microsoft confirms GitHub is down worldwide
Certighost and the Privilege Hiding in Your Certificate Authority
Windows Server 2022 reaches end of mainstream support in 60 days
Philips and GE investigating Clop ransomware data theft claims
French tax authority data breach affects 678,000 individuals
Microsoft working on Defender patch for ShieldBreak zero-day
SafePal data breach impacts 39,798 customers, stolen info for sale
Anthropic confirms Claude is down in major outage affecting multiple services
gbhackers
OpenMatter Network to Take Verification Message to Belgrade Blockchain Week 2026
Misconfigured Microsoft Power Pages Likely Exposed 27 Million Records to ExfilSquad
HoneyMyte Upgrades CoolClient With Windows Kernel Rootkit to Hide Malware and C2 Connections
Malicious Google Apps Script Profiles Crypto Victims Before Delivering Signed Windows Malware
GeoServer Pre-Auth SQL Injection Flaw Lets Attackers Gain Remote Code Execution
ChainDrop Publishes Initial Malware Without Stealing a Long-Lived npm Token
Weekly Recap! – Top 50 Biggest Cybersecurity Stories of the Week: Apple Spyware, Zoom Zero-Click RCE, VMware vCenter Exploits, Microsoft Patch Day & More
Evooo1Bot Turns Compromised Routers Into DDoS Bots and Anonymous Proxy Nodes
MessiahGPT Unrestricted AI Model Lets Hackers Generate Ransomware and Phishing Kits
12 KB Backdoor Masquerades as Realtek Software and Hides C2 in Windows Whitespace
Cybersecurity Dive
Critical flaw in SAP Commerce Cloud faces initial exploitation attempts
Major genetic-testing firm says hack compromised sensitive patient data
Why more security data has blurred companies’ view of risk
Researchers confirm breach claims by data-extortion group
Cisco security revenue jumps 14% as agentic AI sharpens cyberattacks
Researchers find AI-powered hacking tools for sale in underground forums
US government will let private companies hack criminal gangs
Hackers abuse AI models to find new entry paths
Cisco says software vulnerability could let hackers crash firewalls
Former BlackFile affiliates linked to extortion campaign targeting private equity
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
An AI broke Snowflake's code. Then another AI agent exploited it
Crook hawks millions of records allegedly plundered from corporate Azure tenants
Code fixers have fired up the AI warp drive. Strange new worlds await
Black Hat and DEF CON are AI conferences now, too
Microsoft blames AI for delayed Exchange update, can’t say when it will arrive
Chinese AI company Zhipu claims its new model is a better bug-finder than Anthropic, OpenAI
Stopping a cyberattack while walking your dog - defensive AI security CEO says it's not ruff to do
ChainDrop worm crawls into npm supply chain, evades standard defenses
1.6M RingCentral accounts' data dumped after ShinyHunters extortion attack
French tax authority admits data heist after crook touts 2M records
VentureBeat
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
TechCrunch
‘Unprecedented’ number of Apple users received recent spyware alert, say investigators
Crypto hardware wallet owners face fresh security risks after recent spate of personal data thefts
How to tell if your AI platforms’ accounts have been hacked
What we know about the alleged Iranian hacks on US water utilities
US courts will start publishing how often the government uses spyware
Flock says its new tool will help identify police abuse, but hasn’t explained how it works
If Apple sends you a push notification alerting you to a spyware attack, take it seriously
Anthropic set AI agents loose on the same task. They started a turf war.
In a first, US will allow some private firms to carry out cyberattacks
Uber Freight reportedly investigating after hacking group claims data breach
Network World Security
Why 6 GHz Wi-Fi will make or break the modern enterprise
Is your networking built for AI’s traffic patterns and data volumes?
IBM partners with OpenAI to drive enterprise AI deployment
It’s final! Judge says HPE’s Juniper acquisition is complete
Google, Microsoft and Nvidia back 800V DC standard for AI data centers
Five takeaways from Cisco’s Q4 and what they mean for IT pros
Cisco rides ‘networking supercycle’ for strong Q4
North American data center vacancy holds at just 1%
2026 network outage report and internet health check
Nvidia: Latest news and insights
Help Net Security
France’s tax authority admits hackers made off with data on 678,000 individuals
Fortinet expands AI security portfolio with Virtue AI acquisition
Attackers exploit patched macOS Screen Sharing flaw to deploy cryptominer
SafePal breach affects 39,798 customers, data allegedly for sale
Police bust cybercrime ring accused of stealing €30 million in four-day spree
Windows 11’s strongest security defenses can be bypassed without a screwdriver
Hazmat: Open-source containment for AI agents
Product showcase: ScamNet looks for warning signs in suspicious calls and shady links
When companies get specific about AI, revenue growth looks different
Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day
SC Magazine
Ping YOUniverse 2026: Four livestreams to watch
Identity at AI speed: What to look forward to at Ping YOUniverse 2026
Critical SAP Commerce Cloud flaw exploited days after patch
Why regulated industries can't afford to skip data privacy for their AI projects
Inside Mythos: A CSO's technical decoder for Anthropic's autonomous offensive AI
Sandbox Escapes with Rubrik's Zero Labs, AI recorders eroding privacy, and the news - Joe Hladik - ESW #472
MacOS AmnesiaStealer malware spread through ClickFix, grants live browser control
Ready for the flood: How exposure management prepares you for the Mythos vulnerability onslaught
Trezor confirms shipping partner data breach affecting over 13,000 customers
U.S. judiciary to publicly disclose use of hacking tools in wiretaps starting 2029
© 2026 RiskDiscovery | Sponsored by:
Deception Logic