[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
How an Emerging Industrial Protocol Family Could Put OT at Risk
OWASP Flags Top AI Skill Risks in New Security Blueprint
Calling on Cyber Pros to Help Defend City Hall
OpenAI Adds Controls That Should've Been There Already
Hardware Makers Implement Post-Quantum Cryptography as Security Threats Near
New CUSTODY Framework Constrains AI Agents Inside the Network
What We Missed: Delta Flight Disrupted With Wi-Fi Hack
N-able Bug Exposes Password Vault Master Keys
Money and Mindset: The Two Biggest Roadblocks to Cyber Policing
Pakistan's Transparent Tribe Refreshes Toolset for Afghan Cyberattacks
Ars Technica
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
PBS station fears losing 50TB of data after being ghosted by cloud storage provider
OpenAI and Anthropic in price war as Chinese AI rivals gain ground
Private security firms will soon be allowed to hack overseas cybercriminals
Terabytes of credentials leaked in massive supply-chain attack
DEF CON crowd suspected in fake-hotspot attack on Delta flight
CyberScoop
Postal Service moves to finalize mail ballot regs before SCOTUS ruling
Apollo discloses data breach from ongoing wave of attacks hitting financial sector
Lawmakers seek watchdog review of federal hacking of Americans
Early 764 member sentenced to 77 years, longest prison term to date for a nihilistic violent extremist
Retail theft bill spurs ‘very large and very dangerous’ surveillance fears
The push to designate AI as the next critical infrastructure sector
AI-fueled attacks pose ‘active threat’ to water, other sectors, U.S. agencies warn
A California county wants to hire Tina Peters to help run its elections
The long tail of Clop’s PTC hack is just beginning to emerge
Eight years later, federal authorities re-up charges against alleged Iranian hackers at Mabna Institute
InfoSecurity Magazine
Doubloon Dredger Abuses Notion to Harvest Authentication Tokens
Wake-Up Call for CNI After Iranian Attack Shuts Down UK Power Plant
Researchers Uncover Thousands of Leaked AWS Keys
North Korean Hackers Tied to Rust Supply Chain Attack
New Agent Tesla Malware Variant Boosts Evasion Capabilities
Cybersecurity Job Ads Requiring AI Skills Double
NCSC Urges Stronger Controls for Agentic AI Systems
US Defense Contractors Admit Their Rising CMMC Scores May Not Be Accurate
ICS Operators Warned of AI-Driven Attacks on Siemens PLCs
Updated ToxicPanda Variant Targets 140+ Banking and Crypto Apps
SecurityWeek
Hired for One Job, Judged on Another: The CISO’s Real Problem
Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts
91 Vulnerabilities Patched in Spring Application Framework
Venezuelan Gets Record Federal Prison Term for ATM Jackpotting
Personal Information Exposed in Apollo Global Data Breach
Rethinking Application Security for the AI Era
Iran-Linked Hackers Shut Down UK Power Plant for Four Days
TikTok Reaches $400 Million Settlement With US Justice Department Over Children’s Privacy
Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund
Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight
ZDNet
Google's AI-first Googlebook laptop is almost here - can it avoid the Copilot+ PC problem?
How to use ChatGPT Work - and my top 10 tips for getting started with agentic AI
These 10+ car gadgets upgrade your daily commute for cheap
How to turn your TV in a computer monitor in 3 easy steps - and for free
You can change your Messages backgrounds on iPhone - so you never text the wrong person again
You can instantly curate your Discover feed now by telling Google exactly what you want
'I can't stop': 80% of developers find AI coding more addictive than helpful
Pixel Watch 4 vs. Pixel Watch 5: Is Google's new model worth it? It comes down to this
I ditched T-Mobile for Mint after 10 years of service - now I'm saving $120/month
Google's new Pixel Tag tracker has a big advantage over AirTags (and they cost the same)
The Hacker News
WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords
Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt
Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account
Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor
The Outsized Shadow: Why 5% of AI Users Are Your Biggest Security Risk
UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet
BleepingComputer
Microsoft Teams now lets admins block external bots from meetings
South Korean startup platform breach exposes key management failures
Microsoft: August updates break printing, PDF export in WPF apps
CISA orders urgent patching of actively exploited Zimbra flaw
Microsoft shares temporary fix for Windows 11 gaming issues
ToxicPanda Android malware uses VPN permissions to block Google Play
Hackers infect Android car head units with proxy botnet malware
Named Pipes Under Attack: Securing Windows Interprocess Communication
New SynkLoader malware pushed in Microsoft Teams phishing campaign
Hundreds of leaked AWS keys give full control over corporate accounts
gbhackers
Google and Bing Search Results Used to Deliver Hidden Banking Phishing Pages
North Korean Hackers Hide AnyDesk on Victim PCs to Maintain Secret Remote Access
Hackers Impersonate Security Staff to Steal Credentials in ReliaQuest Social Engineering Attack
Mysterious Ox Alpha Stealth AI Model Emerges for Coding and Agentic Work
Zimbra Collaboration Suite Flaw Actively Exploited to Execute Arbitrary Commands
Open VSX Unblocks 3 IDs Used in 77-Extension Evil-Twin Malware Campaign
New SynkLoader Malware Uses Fake Windows Lock Screen to Steal Passwords and Pivot Networks
New macOS Malware Clones Your Logged-In Browser and Gives Hackers Remote Control.
Windows 11 Update Triggers Game Crashes on Systems With RGB Lighting Drivers
Critical WordPress Pods Flaw Lets Unauthenticated Attackers Gain Admin Access
Cybersecurity Dive
Salesforce gave every org the same free scanner. Attackers already know what it misses.
Microsoft discloses maximum severity flaw in Entra ID
Defense contractors still struggling with basic CMMC requirements
Fitch explains how water, healthcare organizations can keep strong credit ratings despite cyberattacks
What we know so far about the hacking campaign against US water systems
AI-backed campaign targeting vulnerable Siemens S7 devices, CISA and FBI warn
Ransomware disproportionately targets medium-sized firms, straining customer relationships
DOJ charges 17 people in Iran-backed hacking campaign against US
GitLab issues emergency patch for critical code-injection flaw
AI-powered vulnerability clearinghouse faces deep skepticism, major challenges
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones
Security vets rally around $4 paper password books for sale in Australia
If you're not using AI to attack your own systems, your adversaries will
AWS Security makes an inscrutable choice
Homeland security cybercops say patch TrueConf (Russia's Zoom) if you're using it
Hackers poison popular Rust crates to steal developers' credentials
Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5.
Russian snoops add OAuth abuse to targeted phishing campaigns
US Bank investigates LockBit's claims as ransomware crims set pay-or-leak deadline
Researcher tricks Apple’s Find My into sharing location data with Linux
VentureBeat
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
TechCrunch
Frontier AI labs still won’t say how they’d contain a rogue model
Private equity firm Apollo confirms data breach amid hacking wave targeting financial giants
Senator asks US government watchdog to review how feds use hacking tools
Someone targeted security researchers using a fake crypto conference as a lure
AI data giant Alation confirms cyberattack
US says hackers are targeting vulnerable water systems with the help of AI
Researchers say OpenAI revoked their access to limited cyber program
T-Mobile ‘chopped a cable’ to expel Chinese hackers from its network
CareCloud confirms 3.7M patients had their medical records stolen in data breach
OpenAI institutes new safeguards after Hugging Face breach
Network World Security
Nvidia scales back financing guarantee for OpenAI data center
Palo Alto Networks and NTT Data target $1B in joint AI security sales with new managed offerings
Network architecture pay climbs amid AI shift
Cerebras reimagines AI cluster design with switchless CS-4 architecture
IBM moves closer to fault-tolerant quantum computing with modular cryogenic systems
Reports: Google partnering with AMD for next-gen hybrid TPU
Why 6 GHz Wi-Fi will make or break the modern enterprise
Is your networking built for AI’s traffic patterns and data volumes?
IBM partners with OpenAI to drive enterprise AI deployment
It’s final! Judge says HPE’s Juniper acquisition is complete
Help Net Security
Suspected Iran-linked attack knocked UK power plant offline for days
Cybersecurity job ads demanding AI skills double in a year
CISA’s logging guidance works beyond government
Android car head units infected with proxy botnet malware through built-in software updaters
Product showcase: AI Paper Trail shows the privacy cost of talking to AI
Fake bank websites play dead to evade security scanners
Ransomware attackers are zeroing in on mid-market companies
AWS makes it easier to spot firewall rules that have gone quiet
Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs
Microsoft patches critical Entra ID vulnerability (CVE-2026-69836)
SC Magazine
AI Risk Classification: NIST AI RMF and EU AI Act
How to Build a Continuous Evidence Program
How to Build Architecture for Containment and Recovery
How to Build an AI Security and Governance Program
Why Short-Lived Workloads Create Long-Lived Identity Risk
How to Build a Data Access Governance Program
Can employees safely use AI agents? AI pentesting agent liabilities, and the news - Rob Allen - ESW #473
When an Agent Fails: Incident Response for AI-Initiated Access Events
How to Build a Data Discovery and Classification Program
How to Map Controls Across Frameworks Without Losing Meaning
© 2026 RiskDiscovery | Sponsored by:
Deception Logic