[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
Anthropic Users Hit by Infostealer Attacks, Session Thefts
'TerminalFix' Campaign Weaponizes PowerShell for Enterprise Attacks
AI Model Rules Are Not Security Controls
Hundreds of OpenAI Agents Invaded Hugging Face Servers
Offensive Security Investments Surge as AI Threats Increase
You Need Cyber Deception for OT
Defining an AI Kill Switch Is Hard, but Necessary
The Vulnpocalypse Is Repricing the Bug Bounty Economy
Ars Technica
Think twice before installing this device promising free movies
Inside Meta’s push to put robots to work in data centers
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
Claude, Codex, and Hermes installed unowned code inside corporate networks
How OpenAI let a mob of LLM agents game a test and ransack Hugging Face
AI agents meant to replace Meta workers made “large-scale, disruptive actions”
Inaudible sounds used to fingerprint browsers catch AliExpress red-handed
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
CyberScoop
The Collective Cyber Defense letter wrote your next vendor questionnaire
McKesson copes with fallout from data theft extortion attack
‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
The AI Kill Switch Act is repeating the Clipper Chip’s mistakes
ATF confirms cyberattack hit system containing info on its investigation targets
Unit 42 warns AI has shifted balance of power from defenders to attackers
100-plus companies call for ‘global surge’ in AI-powered cyber defense
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Two alleged TeamPCP members arrested and charged after months of software supply-chain chaos
Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure
InfoSecurity Magazine
Financial Stability Board Sounds the Alarm Over Frontier AI Risks
Healthcare Giant McKesson Investigates Data Breach Incident
Fake Voicemail SVG Attachments Fuel Large-Scale Phishing Campaign
Window to Tackle Surge in AI-Enabled Cyber Attacks Narrowing, Tech Giants Warn
Threat Actors Abuse Cursor Agent AI to Assist Ransomware Operations
Manchester Airports Group Hit by Cyber Incident
Chinese Hacker Group QTFY Uses Custom-Built Platforms to Target US Infrastructure, FBI Warns
CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix Products
Boston Scientific Reveals Global Disruption After Cyber Incident
OpenAI: Hugging Face Incident a “Warning Shot” to the World
SecurityWeek
Hackers Start Exploiting Critical Langflow Vulnerability
Five Venezuelans Plead Guilty in US Court to ATM Jackpotting
Ransomware Gang Claims Nutex Health Data Breach
Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild
9.5 Million Impacted by Aesto Health Data Breach
WatchGuard Patches Critical Vulnerabilities
PaperCut Exploitation Escalates to Active Intrusions
Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit
ServiceNow Patches 3 Critical Code Injection Vulnerabilities
McKesson Confirms Data Breach as Attacker Deadline Looms
ZDNet
The Hacker News
Threat Actors Don’t Want Better Attacks. They Want Repeatable Ones
Attackers Steal METR API Key and Consume AI Credits Worth About $600,000
Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis
Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity
North Korean Job Fraud Expands Beyond IT Into Healthcare and Sales
⚡ Weekly Recap: Chinese Spy Proxy, AI Agents Go Off-Task, Router Backdoors and More
ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions
Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 Targets
Securing Claude Code: The New Compliance API, Local Visibility, and Identity Governance
China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs
BleepingComputer
Five Venezuelans plead guilty to ATM jackpotting attacks in US
Recently patched PaperCut zero-days used in data theft attacks
Cronos blockchain restarts after $74 million Tectonic exploit
Microsoft warns of TerminalFix attacks deploying reverse tunnels
Massive Microsoft 365 outage causes auth issues, service failures
OpenAI confirms ChatGPT outage as users report errors
Chinese Fire Ant hackers turn Cisco routers into spying platforms
File servers are here to stay. Here’s how to manage them securely
Berlin confirms data theft after Rhysida ransomware attack claims
Microsoft says Windows 11 KB5120998 update resets mouse settings
gbhackers
JSCeal Crypto Stealer Uses V8 Bytecode to Steal Browser Credentials and Intercept HTTPS
Critical JFrog Artifactory Authentication Bypass Exploited in the Wild
Boston Scientific Cyberattack Disrupts Manufacturing and Product Shipments
AI-Enhanced BraZetsu Malware Powers Underground Market Selling Access to Corporate Networks
Fake OpenAI, Anthropic and DeepSeek Crawlers Target .env Files and Cloud Credentials
SLEEPWALKER Malware Uses Raw Packets, DNS and VMware VMCI for Covert Communications
WordPress Uses Frontier AI Tools to Detect Vulnerabilities Before They Can Be Exploited
Fake Claude Opus 5 App Deploys RevStealer to Steal Passwords, Crypto Wallets and Sessions
Malicious npm Package Steals GitHub, Cloud, and CI/CD Secrets and Spreads to Other Packages
Fire Ant Hackers Compromise Cisco Routers and TACACS Servers to Target Critical Infrastructure
Cybersecurity Dive
PaperCut issues emergency patches as threat actors target chained vulnerabilities
State-linked actor targets Cisco routers for espionage
Frontier AI tipping the scales toward cyber adversaries
CISA identifies security hurdles that led to very different results in two red-team engagements
Hundreds of agents went rogue in lead up to Hugging Face breach
Federal authorities disrupt China-backed hacking operation targeting US critical infrastructure
Boston Scientific says cyberattack disrupted order processing, shipping
Treasury to help financial firms transition to quantum-resistant encryption
Researchers warn about chained SharePoint sequence
CISA orders agencies to fix exploited Zimbra vulnerability
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
33-hour BGP hijack of Softaculous traffic prompts security scramble
Healthcare cyberattacks hit pacemakers and millions of patient records
OpenClaw 2.0 pours glitter on slow-burning security dumpster fire
Attack hides malware in PNGs and drops custom reverse tunnel on victims' machines
Anthropic cracks down on hijacked user accounts mining AI tokens
Turns out Brits would quite like their private messages to stay private
Researcher shows how Claude Code can be tricked simply by asking it to summarize a website
US government snitch-finder pleads guilty to leaking state secrets to foreign spies
CISA: Most exploited vulnerabilities should have been eradicated decades ago
Industry that built the problem offers to sell you the solution
VentureBeat
Identity and permissions aren’t enough to govern AI agent behavior
AI agents need their own identity before they need a gateway
AI agents that pass authentication can still drift, expose data, or get memory-poisoned
The three layers of agentic AI security: A defense-in-depth architecture for autonomous agents
Visa ships a security AI that patches production code before any human reviews it
When agents act on their own, governance has to live in the data layer
The fix for the AI agent that hijacked a company's DNS: it can propose the change, but it can't approve it
TechCrunch
Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson
How AI could make it harder for governments to use hacking tools
More Americans oppose police license plate cameras than support them: survey
ATF declares ‘major incident’ as ransomware gang claims hack
Australian police arrest two over TeamPCP hacks targeting Mercor, OpenAI, and others
Here’s all the times AI has gone rogue and hacked other companies
Medical device maker Boston Scientific says a cyberattack is causing a ‘global disruption’ to its operations
US seizes domains of Chinese botnet used to target NASA, Justice Department, and the Senate
CISA confirms hackers targeted over 100 US water systems during July
That fake Grand Theft Auto VI demo is actually just malware
Network World Security
China-linked hackers turn Cisco IOS XR routers into covert attack infrastructure
Nvidia unveils alternative high-bandwidth technology to bolster AI cards
Private AI cloud, agentic infrastructure dominate VMware Explore
Tailscale expands from VPN into a full connectivity platform
On-device translation: Why smaller, specialized AI models win
Kyndryl, Broadcom expand partnership to push private clouds for AI work
Kubernetes 1.37 advances workload-aware scheduling and cluster networking
Intel unwraps three-pronged architecture strategy to go after agentic AI
Cisco bulks up its AI infrastructure portfolio with Supermicro’s liquid-cooled servers
2026 network outage report and internet health check
Help Net Security
Fake Claude Opus 5 app delivers malware and wipes its own tracks
Berlin refuses to be blackmailed after network breach
LastPass enhancements improve visibility, governance, and control
Askeal, the AI cybersecurity assistant that gives verifiable, expert-backed answers
Bot detection arrives in CrowdSec 1.8.0, along with two DoS fixes
NIS2 compliance: Fixing IAM and access control before the 2026 audit
What your vendor says about PQC tells you if they are ready
Cybersecurity jobs available right now: September 1, 2026
Threat actors are posing as AI crawlers to hunt for exposed credentials
Attackers plant remote access tools on compromised PaperCut servers
SC Magazine
RevStealer malware spread through fake Claude Opus 5 download
Fixing Software Weaknesses Rather Than Just Finding More Flaws - Nidhi Aggarwal, Gil Geron, Braden Russell - ASW #398
China-linked campaign targets high-value networks, critical infrastructure
AI killed the typo. Now it's time to rewrite phishing training.
Why yesterday’s identity security standards no longer work for banks
How to Evaluate API Security and Abuse Detection Platforms
What AI Security Failures Mean for Enterprise Risk
Suspected Chinese actor targets Philippine nuclear and naval entities using known vulnerabilities
Brave browser introduces email aliases to enhance user privacy
How to Build a Hypothesis-Driven Threat Hunting Program
© 2026 RiskDiscovery | Sponsored by:
Deception Logic