[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Agentic AI Challenges Progress in Confidential Computing
Brazilian Banking Trojan Actively Spreading in Portugal
Ransomware Attack Puts a Chill On Japanese Frozen-Food Chain
Flaws in Passkey Implementation Show Old Attacks Still Work
Attackers Are Learning to Live Off the AI Toolchain
Fake Bahrain Alert App Deploys Android Surveillance Malware
When AI Attacks: OpenAI Models Autonomously Hack Hugging Face
EU Financial Institutions Leak Data Through Cookie Trackers
Ransomware Is Accelerating, but It's Not Because of AI
Using LLMs to Find and Prioritize Vulnerabilities Is No Easy Task
Ars Technica
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
The US government warns that Russia state hackers are coming after your router
Now, defenders are embracing the prompt injection, too
Patch for Windows Defender 0-day could allow attackers to fill hard disk
CyberScoop
ANCHOR-CI could fix 20 years of broken government-industry collaboration
Most federal cybersecurity reporting rules are duplicative, study finds
Malware is targeting AI tools in software development environments
White House accuses Chinese company of distilling Anthropic’s Fable
OpenAI says model test was behind Hugging Face hack
AI models keep getting caught cheating
Where’s the Trump administration line on AI regulation?
House intel bill includes provisions on state and local threat intelligence, election security, AI
North Korea’s IT worker scheme funds Russia’s war effort
What the World Cup can teach us about cybersecurity resilience
InfoSecurity Magazine
Microsoft Copilot Deployments Delayed Over Security Concerns
Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns
AI Agents Now the Enterprises Fastest Growing Exposed Attack Surface
New Dolphin X Stealer Employs AI Profiling to Prioritize Targets
Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
TrickBot Ditches HTTP for DNS Tunneling in Latest Variant
Open AI Claims Its AI Models Went Rogue and Hacked Another Company
Ubuntu snap-confine Vulnerability Enables Local Root Access
Google Makes CodeMender Available as Managed AI Security Agent
Russian Hacker Turns Jailbroken Claude Into Pentest Platform
SecurityWeek
OpenAI Fixes ChatGPT Agent Flaw That Could Let Attackers Forge an AI Insider
Is Patching Dead? Vulnerability Management in the Post-Mythos Era
Chick-fil-A Accounts Get Fried in Credential Stuffing Attack
Abstract Raises $25 Million to Expand Composable Security Operations Platform
Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models
Upbound Group Says Data Breach Led to $13 Million in Fraudulent Contract Losses
Assaf Keren Appointed New CISO of Meta
New Check Point Zero-Day Vulnerability Exploited in the Wild
US Warns of Iranian Hackers Targeting Siemens, Schneider, and Rockwell ICS Devices
Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts
ZDNet
AI image fraud will cost $40 billion next year - can these international standards help?
OpenAI's agent breached Hugging Face before an AI defender caught it: What users should do next
How to use themes in Google Messages so you never text the wrong person again
OpenAI's attack agent did exactly what it was told - just more relentlessly than expected
I use Anthropic's Claude AI tools for very different jobs: How to pick between models, Code, and Cowork
The best Wi-Fi routers of 2026: Expert tested and reviewed
Should you replace a traditional Wi-Fi router with mesh? I compared the two, and here's my verdict
We tested 15 Wi-Fi 7 routers in our lab - this one had the best coverage
Google will let you upload a video selfie to recover your account - but should you?
New to Linux? This 10-day checklist will help you settle in nice and easy
The Hacker News
Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files
Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
How Synthetic Identity Fraud is Coming for Machine Identities
Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts
Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs
Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access
GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier
Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs
BleepingComputer
Microsoft 365 outage affects Teams, SharePoint and other services
FedRAMP Rev5 Is Ending: What the 20x Transition Really Requires
EU fines Google $1 billion for search, app store antitrust violations
New RefluXFS Linux flaw lets attackers gain root privileges
New msaRAT malware uses Chrome, Edge browsers to route C2 traffic
Microsoft working to fix Exchange Online mailbox quarantine issue
Check Point warns of SmartConsole zero-day exploited in attacks
Upbound says hack caused $13 million in fraudulent Acima leases
South Korea discloses data breach impacting diplomats worldwide
Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattack
gbhackers
New Kimi K3 AI Agent Uncovers Redis Remote Code Execution Flaws in Just 27 Minutes
New TriBack Loader Evades EDR Using Signed Binaries and Win32 Callback APIs
Critical FreePBX Flaws Let Unauthenticated Attackers Execute Code and Take Over Administrator Accounts
Critical FreeRDP Clipboard Flaw Could Let Malicious RDP Servers Execute Code
Hackers Turn GitHub Actions Into a Global Botnet for Attacking Web Hosting Servers
Exim Vulnerability Lets Attackers Access Files Outside the Mail Spool
New Windows Stealer Uses AI Profiling to Identify High-Value Corporate Victims
Critical Check Point SmartConsole Flaw Exploited in the Wild to Bypass Authentication
Ubuntu Snap-Confine Vulnerability Allows Unprivileged Users to Execute Code as Root
Microsoft Adds Prompt Injection Protection to Defender for Office 365
Cybersecurity Dive
Threat group claims credit for ransomware attack on Coca-Cola’s dairy unit
OpenAI models escaped containment and hacked a major AI application library
4 ways to secure local developer IDEs and tools without sacrificing velocity
Ransomware victims fail to fix flaws that exposed them
Microsoft SharePoint under attack via new exploit
Researchers trace SonicWall SMA1000 exploitation to late June
Hackers steal customer data from major hospital software vendor
Your attack surface is bigger than you think
The secret problem in AI infrastructure: Why MCP security starts with secrets
Abbott discloses cyberattack on cancer diagnostics business
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Oracle drops 1,449 security patches like it's the new normal
Iran-linked crews are probing more flavors of US industrial kit
One ChatGPT link could smuggle a rogue AI agent into your company
If you get knocked on the head and get all your devices stolen and have amnesia, Google will let you back in with a selfie
Swiss train maker tells ransomware crooks to get off at the next stop
Talking smack about a doctor got him access to private medical files
OpenAI scored an own goal with HuggingFace attack, showing how open Chinese models are winning
Linux kernel team publishes 432 CVEs in two days
Sneaky Windows stealer targets 300+ apps, gives crims an AI profiler to maximize profits
Greedy ransomware crews return for seconds after victims cough up first extortion payments
VentureBeat
An AI now judges every move Rubrik's agents make, its AI chief said at VB Transform 2026 — but no one's measured if the judge is right
The credential that let OpenAI's agents into Hugging Face exists in most enterprises right now
OpenAI's models broke containment and cyberattacked Hugging Face — what enterprises need to know
Evals are the new PRD, Expedia’s AI chief tells VB Transform 2026
Safety guardrails blocked Hugging Face's defenders, not the attacker, when an AI agent breached its systems
AI confidence just dropped 17 points in six months. That’s actually great news.
Capital One releases VulnHunter, an open-source AI tool that finds software flaws before hackers do
TechCrunch
How OpenAI’s human mistake led to the AI-powered hack on Hugging Face
If you pay a hacker’s ransom, chances are that they’ll come back for more
Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era
AI music generator Suno breach affects 55M users, per Have I Been Pwned
Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk
Hackers stole ‘significant’ amount of data from tech firm relied on by thousands of US hospitals and pharmacies
Watch Flock Safety CEO Garrett Langley discuss the future of surveillance at TechCrunch Disrupt 2026
Hugging Face confirms breach affected internal datasets and credentials, urges users to take action
The Zoom hack that says, ‘Don’t record me’
FBI arrests man accused of using Steam games to drain victims’ crypto wallets
Network World Security
Linux XFS has a decade-old race condition allowing full root access
Federal quantum bet grows with DARPA’s $125 million PsiQuantum award
IBM keen on mainframe even after 42% revenue drop in Q2
Q&A: Google’s AI and computing chief talks about its shapeshifting data centers
Google transforms its data center architecture for agent era
Oracle expands Cloud@Customer with new database service for mid-sized workloads
Nvidia unveils Spectrum-X networking platform designed to connect millions of GPUs
Arista debuts unified SD-WAN edge platform
2026 network outage report and internet health check
Helios marks AMD’s biggest AI infrastructure push yet
Help Net Security
How attackers hosted a fake Claude download page on the claude.ai domain
Cobalt adds Autonomous Pentest to scale application security testing
Months-long breach exposes South Korean diplomats’ personal data
Attackers exploit critical Check Point flaw to take over firewall management (CVE-2026-16232)
Chaos ransomware msaRAT hides its C2 channel inside a legitimate browser process
PyPI hardens package security with new upload restrictions
Swiss rail manufacturer Stadler refuses to pay $12.3 million ransom after cyberattack
GitHub revamps bug bounty program with new VIP tier, payout changes
Axonius expands Asset Cloud with Cyber Assets and Exposures enhancements
Shadow AI is becoming enterprise security’s biggest blind spot
SC Magazine
Upbound Group reports $13 million in losses due to data breach and fraud
South Korean Ministry of Foreign Affairs data breach impacts thousands
Council worker sentenced for accessing sensitive family records
Ransomware payments fail to prevent repeat attacks, new data shows
CIOs brace for AI threats while investing in AI defense
The organizations that got breached had strong identity programs
What the recent SharePoint bugs told us about the patch race
Linux kernel security faces challenge with surge in CVEs
Lookout launches tool to identify software exposure risk in mobile apps
Microsoft ends extended security updates for Exchange 2016 and 2019 in October 2026
© 2026 RiskDiscovery | Sponsored by:
Deception Logic