[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] Anatomy of a Data Breach: What to Do if it Happens to You
Infosecurity Europe
Feeding Frenzy: 'Megalodon' Malware Infects Thousands of GitHub Repos
The Hackers Behind Shai-Hulud: Lucky or Skilled?
Microsoft Issues Out-of-Band SharePoint Patch
Remembering Tim Wilson, Whose Legacy Lives on at Dark Reading
Akamai Joins Growing Chorus of Vendors Betting Big on Secure Enterprise Browsers
Verizon DBIR: Healthcare Fends Off Increased Social Engineering Attacks
China's Webworm Uses Discord, Microsoft Graphs to Hack EU Governments
Google API Keys Remain Active After Deletion
Ars Technica
Millions of AI agents imperiled by critical vulnerability in open source package
US's big bet on quantum computing may not be entirely legal
Texas AG sues Meta over claims that WhatsApp doesn't provide end-to-end encryption
A hacker group is poisoning open source code at an unprecedented scale
US government takes $2 billion equity stake in nine quantum computing firms
Google publishes exploit code threatening millions of Chromium users
In stunning display of stupid, secret CISA credentials found in public GitHub repo
Zero-day exploit completely defeats default Windows 11 BitLocker protections
Cisco announces record revenue and 4,000 layoffs in the same day
Linux bitten by second severe vulnerability in as many weeks
CyberScoop
Apple open-sources quantum-resistant encryption code
White House charts new course for federal agencies and cybersecurity logging
Anthropic: Mythos finds more than 10,000 software flaws in first month
FBI warns about fast-growing phishing kit targeting Microsoft 365 users
Alleged leader of Kimwolf, a sweeping botnet for cybercriminals, arrested in Canada
Lawmakers from both parties say CISA cuts have gone too far
Trump postpones executive order focused on AI security
CISA chief frets about open-source vulnerabilities, delayed security improvements
European authorities take down prolific cybercrime VPN service
The readiness paradox: Why a false sense of cyber confidence is becoming a liability
InfoSecurity Magazine
Chinese Threat Actors Ditch Static Phishing Pages for Live Credential Interception
BTMOB Android RAT Spreads Through No-Code Builder Tooling
India's CERT-In Sets 12-Hour Patch Deadline for Exposed Flaws
Iran-Linked Hackers Target US Aviation with Phishing and SEO Poisoning Campaign
FBI Warns 'Kali365' Phishing Kit Hijacks Microsoft 365 OAuth Tokens
Fake Streams, Counterfeit Merch and Other Scams: How Fraudsters Target F1 Fans
Fake Gemini and Claude Code Sites Spread Infostealers Through SEO Poisoning
Apple Blocked $2.2bn in App Store Fraud in the Last Year
Cybercriminal VPN Dismantled in Europol Crackdown
GitHub Breach Traced to Malicious 'Nx Console' VS Code Extension
SecurityWeek
AppOmni’s Marlin AI Brings Autonomous Investigation to SaaS Security
Iranian APT Targets Aviation, Software Companies With Updated Tools
185,000 Likely Impacted by 7-Eleven Data Breach
Anthropic Expands Claude’s Enterprise Security Governance With 28 New Integrations
Hackers Exploited KnowledgeDeliver Zero-Day for Web Shell Deployment
Watch on Demand: Threat Detection & Incident Response Summit – All Sessions Available
Open Source DockSec Uses AI to Cut Through Vulnerability Noise in Docker Images
Lithuania Suspects Foreign Involvement in Data Leak of Over 600,000 National Register Entries
Admins of Bulletproof Hosting Service Used by Russian Hackers Arrested in Netherlands
Ghost CMS Vulnerability Exploited to Hack Over 700 Websites
ZDNet
I've tried so many Linux email clients - why Aerion just replaced Geary as my top pick
I was intrigued by Google's new video-cloning Omni AI - then I considered the implications
Bash vs. Fish? I've tried both Linux shells, and one makes using the command line much easier
I wore Google's Fitbit Air to track my health for a week, and it's a serious Whoop rival for less money
This 4TB WD Black SSD is nearly $1,200 off at Best Buy - and I'm vouching for it
I found the best Memorial Day phone deals, and it's your last chance to save big on a new device
I found 7 low-cost ways to make my TV sound a lot better (even without a soundbar)
Last chance for these Memorial Day TV deals at Amazon and Best Buy
One of the most user-friendly Linux distros I've ever used is also one of the most secure
I built my own Wi-Fi router with a Raspberry Pi for Starlink and solar control - here's how
The Hacker News
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries
[THN Webinar] New AI DDoS Attacks Are Smarter. Learn How to Fight Back
Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions
MFA Prompt Bombing: Why Your Second Factor Isn't Saving You
CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos
Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks
The Alert Firehose Finally Meets Its Match
BleepingComputer
KnowledgeDeliver flaw exploited as a zero-day to install web shells
Charter confirms data breach after ShinyHunters extortion threat
How Varonis Atlas integrates Claude Compliance API for AI governance
Microsoft Defender can now automatically isolate hacked endpoints
Webinar: Too many tools are slowing network incident response
CISA orders feds to patch actively exploited Drupal vulnerability
Microsoft: Domain Controller lookup may fail on Windows Server 2016
7-Eleven data breach exposes personal information of 185,000 people
Anthropic’s restricted Claude Mythos model may be coming to Claude Code
FBI warns of Kali365 phishing service targeting Microsoft 365 accounts
gbhackers
Anthropic Launches Free Claude Code Terminal Plugin to Detect Security Vulnerabilities
Microsoft SharePoint Server Flaw Enables Remote Code Execution Attacks
Microsoft Defender Gains Auto-Isolation Feature to Block Ransomware Spread
CERT-In Mandates 12-Hour Patch Deadline for Internet-Facing Vulnerabilities
Quasar RAT Hits Developers With Fileless Linux Attacks
EU Regulators Prepare Landmark Fine Against Google Under Digital Markets Act
Angular Language Service Extension Flaws Allow Remote Code Execution
China-Linked Hackers Hit SEA Edge Routers With Custom Linux Implant
Memcached SASL Flaw Exposes Usernames to Enumeration Attacks
NightSpire Ransomware Abuses RDP for Stealthy Persistence
Cybersecurity Dive
Iranian government, not hacktivist group, breached LA Metro system, security firm says
FBI warns about PhaaS platform used to access Microsoft 365 environments
Iran-linked hackers target key US, allied sectors with sophisticated spear-phishing messages
New York regulator calls for additional cyber mitigation amid heightened threat environment
CISA asks cybersecurity community to alert it to vulnerability exploitation
Grafana Labs links GitHub environment breach to TanStack npm supply chain attack
7-Eleven hit by data breach
Microsoft disrupts cybercrime operation that hid behind legitimate software
Compromised coding tool helped hackers breach thousands of GitHub repositories
Telecom sector launches its own private ISAC
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
MyPillow must decide whether to be firm or soft as ransomware crims demand pay
Experts pour cold borscht on Farage's Russian hack claim
Anthropic to release Mythos-class models to the public
AI eyes scanning for bugs create a worrisome Linux security trend
A Russian speaker and jailbroken Gemini went on a hacking spree and emptied at least one MAGA victim's crypto wallets
Megalodon chums the waters in 5.5K+ GitHub repo poisonings
Techie claims Trump Mobile website was leaking thousands of people's data
Cisco used AI to write security incident reports, with mixed results
Dems slam Trump for making cybersecurity hold out the tin cup while splurging on ballroom and Jan. 6 'slush fund'
Threat hunters find Google API keys still usable 23 minutes after deletion
VentureBeat
The attack dominating financial services doesn't steal passwords. It resets MFA and steals the token.
Valid certificates, stolen accounts: how attackers broke npm's last trust signal
Americans can’t spot a deepfake, and that’s a business crisis, not just a consumer problem
MFA verifies who logged in. It has no idea what they do next.
GitHub confirms 3,800 internal repos stolen through poisoned VS Code extension as supply chain worm hits Microsoft’s Python SDK
Four AI supply-chain attacks in 50 days exposed the release pipeline red teams aren't covering
Agent authorization is broken — and authentication passing makes it worse
TechCrunch
UK Visa Portal spilled thousands of applicants’ passports and selfies online — and hasn’t fixed the leak
Dutch government blocks US company from acquisition, citing ‘risk to public interest’
Ghost hackers: the cybersecurity mystery that nobody has solved
Iranian hackers blamed for breach of Los Angeles transit system that took weeks to recover
7-Eleven data breach affects over 185,000 people’s personal data
These special phone and app features can help protect you from spyware
Kash Patel’s clothing brand website shut down after reports it was hacked
Trump Mobile confirms it exposed customers’ personal data, including phone numbers and home addresses
Law enforcement shuts down VPN service used by two dozen ransomware gangs
Scammers are abusing an internal Microsoft account to send spam links
Network World Security
Cisco redefines ‘job-ready’ for network engineers with its certification overhaul
2026 network outage report and internet health check
IBM plans $2B quantum chip foundry; government will pay half
Cisco: AI traffic is radically reshaping WANs
xAI-Anthropic deal signals the rise of AI compute as a standalone business
Critical vulnerability in Cisco Secure Workload rated at maximum severity
Cisco’s new certs are a wake-up call for AI-era network engineers
Microsoft plans significant update to Windows Secure Boot
Forward launches Predict to take the guesswork out of network changes
Network jobs watch: Hiring, skills and certification trends
Help Net Security
Novee’s Agentic Fix turns validated exploits into fixes through AI coding agents
Coinflow CISO on crypto payments security under AI pressure
Vigolium: Open-source vulnerability scanner
The alert economy is driving security analyst burnout
European AI adoption hits 99% with regulated data driving most policy violations
Anthropic: Claude Mythos identified 10,000+ software flaws
Chinese phishing gangs grow into a force to be reckoned with
Detectify brings AppSec automation to AI agents with MCP Server and continuous testing
Actively exploited Trend Micro Apex One flaw gets CISA warning (CVE-2026-34926)
Conifers rolls out AI-powered SOC for unified security operations and automated response
SC Magazine
Novee launches Agentic Fix to automate vulnerability remediation
Formula 1 fans targeted by evolving scams, Bitdefender warns
AppOmni launches Marlin AI for autonomous SaaS security alert investigation
7AI Inc. launches PLAID ELITE, an AI-native security operations service
Fake AI tool websites used to steal developer data
Varonis integrates Claude AI compliance API into Atlas platform
ShinyHunters extorts Charter Communications after data breach
Iranian-backed hackers linked to Los Angeles transit system breach
Microsoft Defender for Endpoint to automatically isolate compromised devices
Cybercriminals increasingly use AI for deepfake-based KYC bypass, report finds
© 2026 RiskDiscovery | Sponsored by:
Deception Logic