[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Tricky 'SynkLoader' Multitool May Herald Ransomware
ToxicPanda Banking Trojan Matures Into Enterprise Threat
The Vulnerability Gap: Why Discovery Is Outrunning Repair
How an Emerging Industrial Protocol Family Could Put OT at Risk
OWASP Flags Top AI Skill Risks in New Security Blueprint
Calling on Cyber Pros to Help Defend City Hall
OpenAI Adds Controls That Should've Been There Already
Hardware Makers Implement Post-Quantum Cryptography as Security Threats Near
New CUSTODY Framework Constrains AI Agents Inside the Network
What We Missed: Delta Flight Disrupted With Wi-Fi Hack
Ars Technica
Waymo doubles spending on lobbying in robotaxi battle with Uber
Grok exfiltrates user data when malicious instructions are encrypted
Microsoft Copilot reveals secret input that allowed it to be hacked
Nvidia discloses $21B stake in SpaceX
Vulnerability giving attackers full control of Macs is under active exploitation
PBS station fears losing 50TB of data after being ghosted by cloud storage provider
OpenAI and Anthropic in price war as Chinese AI rivals gain ground
Private security firms will soon be allowed to hack overseas cybercriminals
Terabytes of credentials leaked in massive supply-chain attack
DEF CON crowd suspected in fake-hotspot attack on Delta flight
CyberScoop
Treasury sanctions alleged Iranian hackers as part of ‘economic D-Day’
Bipartisan Senate bill aims to prepare energy sector for Q-Day
Postal Service moves to finalize mail ballot regs before SCOTUS ruling
Apollo discloses data breach from ongoing wave of attacks hitting financial sector
Lawmakers seek watchdog review of federal hacking of Americans
Early 764 member sentenced to 77 years, longest prison term to date for a nihilistic violent extremist
Retail theft bill spurs ‘very large and very dangerous’ surveillance fears
The push to designate AI as the next critical infrastructure sector
AI-fueled attacks pose ‘active threat’ to water, other sectors, U.S. agencies warn
A California county wants to hire Tina Peters to help run its elections
InfoSecurity Magazine
New Guidance Helps Businesses Verify Quantum-Safe Hardware Claims
NIST Warns of Unique Security Risks in Multi-Cloud Environments
Fake Codex Download Uses Google Sites to Deliver macOS Malware
Doubloon Dredger Abuses Notion to Harvest Authentication Tokens
Wake-Up Call for CNI After Iranian Attack Shuts Down UK Power Plant
Researchers Uncover Thousands of Leaked AWS Keys
North Korean Hackers Tied to Rust Supply Chain Attack
New Agent Tesla Malware Variant Boosts Evasion Capabilities
Cybersecurity Job Ads Requiring AI Skills Double
NCSC Urges Stronger Controls for Agentic AI Systems
SecurityWeek
ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited
Hired for One Job, Judged on Another: The CISO’s Real Problem
Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts
91 Vulnerabilities Patched in Spring Application Framework
Venezuelan Gets Record Federal Prison Term for ATM Jackpotting
Personal Information Exposed in Apollo Global Data Breach
Rethinking Application Security for the AI Era
Iran-Linked Hackers Shut Down UK Power Plant for Four Days
TikTok Reaches $400 Million Settlement With US Justice Department Over Children’s Privacy
Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund
ZDNet
Businesses must reinvent their processes and workforce to scale agentic AI adoption
The best early Labor Day deals to shop now: Save on TVs, Apple devices, and more
This Blink security camera can last up to 2 years on one charge - and it's on sale
The $649 Fairphone 6+ is the Goldilocks of Android phones - and it's available in the US now
I tried Meta's new free vibe coding app to make my own games, and it was surprisingly fun
The best early Labor Day Garmin watch deals: Gear up for marathon training for less
I found the best early Labor Day Walmart deals: Save on Apple, Samsung, and more
I dumped Firefox, but these 5 features finally won me back - here's why
After years with an Apple Watch, a Pebble Time 2 'downgrade' was exactly what I needed
Amazon hikes prices on Echos, Kindles, Fire TVs as much as 60% - here's what you'll pay now
The Hacker News
⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More
WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords
Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt
Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account
Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor
The Outsized Shadow: Why 5% of AI Users Are Your Biggest Security Risk
UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
BleepingComputer
Hackers target WordPress sites in miniOrange auth bypass attacks
TikTok reaches $400M settlement with US over COPPA violations
ReliaQuest confirms failed data-theft attack after ShinyHunters breach
Microsoft Teams now lets admins block external bots from meetings
South Korean startup platform breach exposes key management failures
Microsoft: August updates break printing, PDF export in WPF apps
CISA orders urgent patching of actively exploited Zimbra flaw
Microsoft shares temporary fix for Windows 11 gaming issues
ToxicPanda Android malware uses VPN permissions to block Google Play
Hackers infect Android car head units with proxy botnet malware
gbhackers
Google and Bing Search Results Used to Deliver Hidden Banking Phishing Pages
North Korean Hackers Hide AnyDesk on Victim PCs to Maintain Secret Remote Access
Hackers Impersonate Security Staff to Steal Credentials in ReliaQuest Social Engineering Attack
Mysterious Ox Alpha Stealth AI Model Emerges for Coding and Agentic Work
Zimbra Collaboration Suite Flaw Actively Exploited to Execute Arbitrary Commands
Open VSX Unblocks 3 IDs Used in 77-Extension Evil-Twin Malware Campaign
New SynkLoader Malware Uses Fake Windows Lock Screen to Steal Passwords and Pivot Networks
New macOS Malware Clones Your Logged-In Browser and Gives Hackers Remote Control.
Windows 11 Update Triggers Game Crashes on Systems With RGB Lighting Drivers
Critical WordPress Pods Flaw Lets Unauthenticated Attackers Gain Admin Access
Cybersecurity Dive
UK power facility disabled for days after suspected state-linked cyberattack
House Democrats ask GAO to study CISA workforce cuts
Salesforce gave every org the same free scanner. Attackers already know what it misses.
Microsoft discloses maximum severity flaw in Entra ID
Defense contractors still struggling with basic CMMC requirements
Fitch explains how water, healthcare organizations can keep strong credit ratings despite cyberattacks
What we know so far about the hacking campaign against US water systems
AI-backed campaign targeting vulnerable Siemens S7 devices, CISA and FBI warn
Ransomware disproportionately targets medium-sized firms, straining customer relationships
DOJ charges 17 people in Iran-backed hacking campaign against US
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Iran-linked cyberattack shut down a UK power plant
AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones
Security vets rally around $4 paper password books for sale in Australia
If you're not using AI to attack your own systems, your adversaries will
AWS Security makes an inscrutable choice
Homeland security cybercops say patch TrueConf (Russia's Zoom) if you're using it
Hackers poison popular Rust crates to steal developers' credentials
Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5.
Russian snoops add OAuth abuse to targeted phishing campaigns
US Bank investigates LockBit's claims as ransomware crims set pay-or-leak deadline
VentureBeat
Three Claude agents given conflicting orders sabotaged each other on a shared server — then didn't tell users what they'd done
Four of five enterprises that secured AI agent identities still can't contain one that goes rogue
OpenAI launches GPT-5.6-Cyber with reduced refusals, 95% completion on advanced cybersecurity tasks
AWS Continuum integrates with OpenAI Codex and Anthropic Claude Code in major AI security push
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
TechCrunch
Alabama launches investigation into OpenAI’s hack of Hugging Face
Frontier AI labs still won’t say how they’d contain a rogue model
Private equity firm Apollo confirms data breach amid hacking wave targeting financial giants
Senator asks US government watchdog to review how feds use hacking tools
Someone targeted security researchers using a fake crypto conference as a lure
AI data giant Alation confirms cyberattack
US says hackers are targeting vulnerable water systems with the help of AI
Researchers say OpenAI revoked their access to limited cyber program
T-Mobile ‘chopped a cable’ to expel Chinese hackers from its network
CareCloud confirms 3.7M patients had their medical records stolen in data breach
Network World Security
AI agents are reshaping the threat landscape, shifting IT skills requirements
Nvidia scales back financing guarantee for OpenAI data center
Palo Alto Networks and NTT Data target $1B in joint AI security sales with new managed offerings
Network architecture pay climbs amid AI shift
Cerebras reimagines AI cluster design with switchless CS-4 architecture
IBM moves closer to fault-tolerant quantum computing with modular cryogenic systems
Reports: Google partnering with AMD for next-gen hybrid TPU
Why 6 GHz Wi-Fi will make or break the modern enterprise
Is your networking built for AI’s traffic patterns and data volumes?
IBM partners with OpenAI to drive enterprise AI deployment
Help Net Security
Suspected Iran-linked attack knocked UK power plant offline for days
Cybersecurity job ads demanding AI skills double in a year
CISA’s logging guidance works beyond government
Android car head units infected with proxy botnet malware through built-in software updaters
Product showcase: AI Paper Trail shows the privacy cost of talking to AI
Fake bank websites play dead to evade security scanners
Ransomware attackers are zeroing in on mid-market companies
AWS makes it easier to spot firewall rules that have gone quiet
Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs
Microsoft patches critical Entra ID vulnerability (CVE-2026-69836)
SC Magazine
CMMC Phase 2 suspended: What defense contractors need to know
How to Build an Executive Attack Surface Risk Reporting Program
The OWASP LLM Top 10: What Application Security Teams Need to Know About LLM Vulnerabilities
AI Risk Classification: NIST AI RMF and EU AI Act
How to Build a Continuous Evidence Program
How to Build Architecture for Containment and Recovery
How to Build an AI Security and Governance Program
Why Short-Lived Workloads Create Long-Lived Identity Risk
How to Build a Data Access Governance Program
Can employees safely use AI agents? AI pentesting agent liabilities, and the news - Rob Allen - ESW #473
© 2026 RiskDiscovery | Sponsored by:
Deception Logic