[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Walmart's "Trusted Agent" Approach to Purple Teaming
Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition
Walmart Leaders Transform Security Operations Without Going Bananas
Microsoft's Patch Tuesday Deluge Continues With August Updates
Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA
'GhostJacking' Exposes Identity Governance Gaps in AI Agents
Multistate Water System Attacks Widen, Iran Suspected
Metabase SQL Zero-Day Attacks Could Have Wide Blast Radius
The Patch Gap: Why Defenders Need to Think in Chains, Not Checklists
Coruna, DarkSword iOS Exploits Proliferate Globally
Ars Technica
DEF CON crowd suspected in fake-hotspot attack on Delta flight
Chrome adopts what may be the best protection yet against account takeovers
New Pass-ta-key attack reveals all the things we didn't know about passkeys
Thousands of servers can be backdoored by exploiting buggy motherboard controllers
Claude published malicious code to the Internet and attacked 3 real companies
Max-severity Exchange server flaw under active exploitation by Kremlin hackers
Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission
We now have a better understanding how OpenAI hacked into Hugging Face
Microsoft unveils AI security tools it says outperform competing platforms
TreeSize won't renew perpetual-license support unless users subscribe
CyberScoop
Researchers observe first ‘near-autonomous’ AI attack on government target in Taiwan
Kimwolf botnet rebuilt to survive takedowns, researchers say
Federal judge issues second order blocking Trump mail-in voting directive
Delta investigates in-flight Wi-Fi spoofing on post-DEF CON flight from Las Vegas
NIST wants to overhaul its vulnerability database for the AI age
The FTC wants to regulate AI for ideological bias
OpenAI says Daybreak will expand to offer specialized cyber services
NATO and an AI startup can now name and track software vulnerabilities
U.S., South Korean government agencies caution to be on lookout for Gunra ransomware gang
UK man tied to The Com sentenced for abusing 117 victims
InfoSecurity Magazine
WindRelay Malware Pairs With SpyNote RAT in Live-Call Scam
Lazarus Used Post-Quantum Key Exchange to Deliver Zero-Day
Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastructure
NIST Seeks Public Input on AI-Ready NVD Modernization
Russian-Linked Hackers Accessed Polish Power Plant OT Network Through Private APN, Says CERT.PL
Microsoft Fixes 400 Flaws on August Patch Tuesday
Six npm Packages Read C2 Addresses From Ethereum Wallet
Cursor Security Bug Allowed Repositories to Execute Commands Before Trust Verification
Suisan City, California, Responds to Cyber Incident Amid Wave of US Local Government Attacks
OpenAI Launches Two-Tier Security Access Program Alongside GPT 5.6 Cyber
SecurityWeek
SharePoint Vulnerability Exploited Shortly After PoC Release
Mindgard Raises $30 Million to Protect AI Systems
Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNow With Custom Toolset
WhatsApp Unveils New Scam Alert Feature
Ceva Logistics Operations Disrupted by Cyberattack
Chipmaker Patch Tuesday: Intel, AMD Fix Over 80 Vulnerabilities Combined
Over 2,500 Organizations Impacted by LiteLLM Supply Chain Attack
Fresh Windows Zero-Day Exploited in North Korean Cyberattacks
Ivanti EPM Update Patches Remotely Exploitable Flaws
ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact
ZDNet
Every Amazon Google Pixel 11 preorder deal - get up to $350 on an Amazon gift card, free
Sparky Linux just restored 32-bit support - why that still matters
Hackers are hunting for your private photos, FBI warns: 6 ways to avoid a sextortion nightmare
Every Pixel 11 deal at T-Mobile right now: Trade-in offers, free phones with new line, and more
How to preorder every new Google Pixel device - and the best deals I found
The Pixel Tag is Google's $29 AirTag alternative - with one big advantage
The best Pixel 11 and Pixel 11 Pro cases of 2026: Expert recommended
Microsoft fixes 421 bugs and a Windows zero-day in August Patch Tuesday - update ASAP
Pixel Watch 4 vs. Pixel Watch 5: Buy the old Android smartwatch or opt for the newest?
Google Pixel 11 vs. Pixel 9: Why the Pixel 11 is actually worth upgrading
The Hacker News
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One
OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning
Enterprise Defenses Recovered at the Edge and Collapsed Inside
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS
BleepingComputer
Hundreds of fake Chrome VPN extensions route traffic through a proxy
Plug and Pwn attack uses fake USB devices for Windows SYSTEM access
Lazarus hackers exploited Windows zero-day to target defense firms
FBI: Hackers target online accounts to steal nude photos
The Threat Hiding in Your Hiring Process: How Fake Remote Workers Get In
Hackers leverage new Microsoft SharePoint exploit in attacks
Signal adds new security feature to thwart man-in-the-middle attacks
New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges
Google says Chrome cuts 7 billion unwanted Android notifications a day to fight abuse
DeadLock ransomware uses blockchain to resist infrastructure takedown
gbhackers
ShieldBreak Windows Defender 0-Day Lets Attackers Bypass Microsoft Patch and Gain SYSTEM Privileges
Hackers Exploit Critical VMware vCenter Flaw to Deploy Reverse SSH Across 47 Countries
CISA Warns Critical Metabase SQL Injection Flaw Lets Unauthenticated Attackers Gain Admin Access
Fake VPN Extensions Put Operators in Adversary-in-the-Middle Position Over Chrome Traffic
Google Chrome Blocks Abusive Notifications Used to Deliver Malware and Scams
Dark Web Corporate Access Prices Surge 4,055% as Stolen Credentials Flood Cybercrime Markets
Google Chrome 151 Update Fixes 5 High-Severity Use-After-Free Vulnerabilities
Microsoft SharePoint RCE Vulnerability Lets Remote Attackers Execute Code
Malicious CCleaner Installer Patches Chrome Security Extension to Deploy Browser Spyware
WindRelay Turns Android Phones Into Fake Payment Terminals for Remote Card Fraud
Cybersecurity Dive
Hackers abuse AI models to find new entry paths
Cisco says software vulnerability could let hackers crash firewalls
Former BlackFile affiliates linked to extortion campaign targeting private equity
CVE Program eyes automation and globalization to weather AI ‘vulnpocalypse’
Civil-society initiative will pay cybersecurity vendors to protect rural water systems
Secure development can help turn the tables as AI alters cyber landscape
Experts say healthcare faces cybersecurity crisis: ‘These are patient safety issues’
Critical flaws allow hackers to exploit zero-touch provisioning process in TP-Link Omada
AI firms know policymakers won’t ‘let you make a Terminator factory,’ DHS official says
Hackers grow more willing to destroy, not just disrupt, OT systems
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Spectre rears its ugly head again as researchers show some RISC-V chips are susceptible
Uber Freight keeps on trucking after extortion crew breaks in
Exposed: Woeful security at UK criminal records office that led to sensitive data leak
Akira ransomware scum blocked victim's security tools – and broke their own encryptor
Brit rail cops bring live facial recognition to the London Underground
Signal adds an extra layer of security to make sure you're actually chatting with the right person
421 bugs in Microsoft's Patch Tuesday release, and the Norks have already attacked one
DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi
Two wars and a World Cup lead to epic DDoS attacks on publishers
Deepfake hiccup unmasks suspected digital certificate fraudster
VentureBeat
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
The Shai-Hulud npm worm didn't fake its security check — it earned a legitimate one
TechCrunch
Uber Freight reportedly investigating after hacking group claims data breach
After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug
FBI says cybercriminals are hacking into victims’ online accounts to steal their intimate pictures
Delta investigating after someone set up fake Wi-Fi network mid-flight
North Korean remote IT staffer worked for US government agency, says FBI
A data breach at shipping giant Ceva Logistics is rippling across banks, retailers, Steam gamers, and beyond
Signed up for Klaviyo? Dozens of advertisers may have seen your password
The AI safety test is becoming a safety risk
This ‘adversarial’ pattern can prevent surveillance cameras from detecting you
Google’s top hacker hunter explains why hacking groups get code names
Network World Security
North American data center vacancy holds at just 1%
2026 network outage report and internet health check
Nvidia: Latest news and insights
Oracle set to bring quantum computing to OCI for hybrid AI workloads
Nvidia’s $500B AI investment pool could impact enterprise chip pricing, availability
IBM, Together AI team to offer open-source AI inference in the cloud
Server prices to rise by up to 87% at OVHcloud
IT infrastructure shortages are real and lasting. Here’s how to cope
Tor still runs on altruism, but cheap hosting is pulling it off course
Out of band, out of mind: DEF CON research calls IPMI a ‘sanctioned backdoor’ into enterprise networks
Help Net Security
A stranger has been reading Salesforce and ServiceNow portals worldwide for 17 months
Signal’s new security feature checks if your encrypted chats were tampered with
ScienceLogic delivers secure AI deployment and smarter IT operations with Skylar AI 2.5
Deloitte strengthens AI governance to support trusted enterprise adoption
Lazarus hackers pair fake job offers with Windows zero-day exploit
Microsoft patches 400+ vulnerabilities, one zero-day under attack (CVE-2026-68820)
ConnectSecure helps MSPs automate Microsoft 365 security remediation
CBTS brings continuous penetration testing to enterprise security
Crytica’s RDAi detects OT device tampering from within
Chrome’s anti-abuse protections block 7 billion unwanted Android notifications daily
SC Magazine
Critical VMware vCenter flaw actively exploited in 47 countries
The vulnerability flood is here. Here’s what it means – and how to prepare
The cybersecurity talent shortage was never real
How to Evaluate Cyber Risk Quantification and GRC Reporting Platforms
Signal introduces automatic key verification to combat man-in-the-middle attacks
FBI warns of rising sextortion attacks targeting social media users
Suisun City, Calif. grapples with cyber incident amid rise in attacks on local governments
Papua New Guinea seeks feedback on digital ID overhaul and new laws
Zoom vulnerabilities could enable RCE against meeting participants
Malicious SIM cards can take over cellular-connected devices
© 2026 RiskDiscovery | Sponsored by:
Deception Logic