[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
ClickFix Campaigns Abuse Legitimate Services for Persistent Access
Companies Have 6 Months to Prepare for Automated Attacks
AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?
Insurers Search for Answers to Rein in Rogue AI
Large Enterprises Targeted in Fake Merger & Acquisition Scams
What We Missed: Did ShinyHunters 'Breach' ReliaQuest?
What the AI Warning Letter Completely Missed
AI 'Machine Speed' Cuts 2-Week Attack Down to 10 Hours
Ars Technica
OpenAI agents discussed ways to escape their sandbox on public wiki
“Trust, not features, is the real deficit”: VMware tries to appease SMBs
Once popular for attacking AI, ASCII smuggling is embraced by spammers
Confused about which VPN is right, US senator asks the NSA for guidance
VMware migration reduces Tottenham Hotspur's licensing fees by 85 percent
I rented a car, and within hours, my driver's license was for sale
BGP hijack infecting networks caused by a comedy of errors that’s not funny at all
Think twice before installing this device promising free movies
Inside Meta’s push to put robots to work in data centers
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
CyberScoop
In most cities, nobody owns the whole network
European parliament members call for slowdown of Serbia’s EU entry over spyware use
Why judgment is emerging as cybersecurity’s defining skill
Attackers exploit zero-days in consistently besieged SonicWall product
The G7 tells industry to hurry up and prep for post-quantum encryption
Jail time for Maine child in 764 marks turning point in federal law enforcement
FCC proposes public scorecard to rate telecoms on anti-robocall efforts
Dogged Russia-based botnet dismantled after 23-year run
Pegasus, NoviSpy variant spyware found on devices of Serbian activists
Wyden seeks upgraded NSA security guidance on commercial VPN use
InfoSecurity Magazine
France Establishes New Government-Focused Cyber Incident Response Unit
Grindr Settles UK Data Privacy Claims for £26m
AI Coding Tools Now a Prime Target for Threat Actors, Google Warns
THost9 Android RAT Pairs Packed Loader With ADB Worm
BigBear 2 PhaaS Campaign Steals 5000+ Microsoft Credentials
Trezor Supply Chain Breach Now Impacts 81,000 Customers
NCSC Warns Shadow AI Creates New Security Risks
N-able Releases Hotfix for Critical Remote Code Execution Vulnerability
Rhysida Publishes Berlin Government Data After €2m Extortion Demand Refused
North Korea’s Lazarus Operates Through Six Distinct Cyber Clusters
SecurityWeek
Adobe Patches Over 170 Vulnerabilities, Including Commerce Zero-Day
The Hidden Instructions That Can Hijack AI Agents
Hackers Return $263 Million Stolen From Liquid Network
Cylake Raises $245 Million Ahead of Cybersecurity Platform Beta
SAP Patches Critical Extended Passport Processing Vulnerability
Party’s Over for Crypto Scammers Who Went on a Spending Spree After a $240 Million Bitcoin Theft
MikroTik Patches Critical Flaws Chained to Hack Routers
Mathspace Data Breach Exposes Over 1 Million People
N-able Patches Critical Zero-Day in N-central
Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits
ZDNet
The Hacker News
Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution
Liquid Hackers Return 3,400 Bitcoin Taken via Elements Bug, Still Holding $47M in BTC
ChatGPT Flaw Let a Planted Prompt Send a Victim's Gmail Data to Another Account
Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours
WeChat Zero-Click Worm Took Over Accounts on iPhone and Android via Incoming Calls
What It Took to Reach 1 Billion Build Manifests
FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials
Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell
BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support Scams
Grindr to Pay £26 Million to Settle U.K. Claims Over HIV Status Data Sharing
BleepingComputer
Microsoft releases Windows 10 KB5122878 extended security update
Microsoft September 2026 Patch Tuesday fixes 966 flaws, 2 zero-days
Windows 11 cumulative updates KB5124008 & KB5122880 released
ShinyHunters hackers claim breach of Florida "DAVID" DMV database
OpenAI says ChatGPT outage causes image generation errors
August updates trigger 0xc0000409 errors on Windows Server 2016
SAP warns of maximum severity 'OVERPASS' kernel vulnerability
OpenAI says GPT-6 Astra can find zero-days, but is also harder to monitor
Adobe fixes critical Magento zero-day exploited to backdoor servers
Webinar: The forgotten Google Workspace access that can lead to a breach
gbhackers
Reflectiz Launches Agentic Pentesting for Websites: Up to 10x Coverage vs Conventional Pentests
Hackers Impersonate IT Support on Microsoft Teams to Take Control of Employee PCs
Jellyfin 12.0 Released With Security Fixes for Unauthorized File Access and XSS Flaws
Dell Secure Connect Gateway Critical Flaws Allow Unauthenticated Remote Code Execution and Admin Access
Claude Mythos Executes End-to-End Intrusion From Initial Access to Full Domain Compromise
WhatsApp Testing Guest Calls for People Without a WhatsApp Account
ASUS Control Center Critical Flaw Allows Unauthenticated Attackers to Gain Root Access
The 12 Best Antivirus (Endpoint Protection) Software for Business, Compared and Priced
SAP September 2026 Security Update Fixes 4 Critical Vulnerabilities and 15 Other Flaws
The 12 Best Managed Firewall Services, Compared and Priced
Cybersecurity Dive
N-able issues patch for zero-day flaw
Don’t let AI distract from cybersecurity basics, officials and executives warn
Essential AI agent security questions
Nvidia’s $12.9B Hugging Face deal could benefit enterprises
OpenAI pledges $1B to provide resources, training for frontline cyber defenders
SonicWall urges immediate patching of chained vulnerabilities
Government, industry partner to shut down long-running Sality botnet
Government lacks ability to verify AI labs’ claims, experts say
CISA scraps 6 free cybersecurity assessments for critical infrastructure operators
Security policies fail to keep up with a hybrid cloud world
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Boston Scientific left nursing its bottom line after cyberattack
How to secure hybrid meeting rooms without sacrificing user experience
LG accused of 'egregious invasion of privacy' over TV data collection
BigBear phishing crew nets thousands of Microsoft 365 credentials
Extortion crews have their eyes on high-value AI data, Google warns
Britain reboots its space strategy with £7.8B already on the launchpad
Nightwing CEO has a Labor Day message for staff – and apparently The Register
Hackers drain $320M in Bitcoin from Liquid Network, claim they're the good guys
Welsh environment regulator's FoI blunder exposes diversity data of 2,000 staff
UK food supply chain at risk from hostile attacks
VentureBeat
Most security teams don't know how many AI agents they're running. Falcon Guardian found 18,000 at one company that had approved only 300.
MCP's new spec turns a planted prompt into a stolen credential
China-linked hackers backdoored executives' laptops via USB, exploiting a fix companies had but weren't using
Google’s Gemini 3.8 Flash is built for agents, while its Cyber twin hunts vulnerabilities
Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke
Closing an Azure OpenAI assistant's retrieval gap didn't take a new identity platform. It took one filter and a narrower assistant.
Identity and permissions aren’t enough to govern AI agent behavior
TechCrunch
Chrome is now shipping updates every 2 weeks as AI changes the security landscape
A hacker stole $340M in a crypto heist, then returned most of it
OpenAI confirms ‘wiki incident,’ says it’s ‘working on a framework’ for more disclosure
US military disabled ad tracking on troops’ devices following reports of targeted attacks
Abliteration.ai is making a business out of removing AI guardrails
It sure looks like hackers breached a major ID card verification service
HiddenLayer nabs $100M as enterprises rush to secure their AI deployments
Norway considers ban on camera-enabled wearable ‘pervert glasses’
X says attackers are targeting user accounts after the launch of X Money
AIR raises $50M to help companies vet the skills and add-ons AI agents use
Network World Security
2026 network outage report and internet health check
AI data boom fuels tape storage resurgence
Nvidia lets you build your own AI clusters locally with PAIR software
When analyst benchmarks miss the mark: Why Nvidia doesn’t fit Forrester’s data center matrix
HPE’s record Q3: AI infrastructure, networking demands drive growth, but supply constraints tap the brakes
VMware Cloud Foundation 9.1 adds transit gateway flexibility, segmentation, and native EVPN VXLAN support
Dell’s $95B AI backlog shows the infrastructure crunch is far from over
SonicWall reports two major security holes under active exploit
Arista warns customers ahead of next week’s security disclosures
VMware by Broadcom: Product, service and support news
Help Net Security
Threat actors are giving AI agents a bigger role in cyberattacks
Mars Security brings threat intelligence to detection in real time
“Zero-click” WeChat worm could hijack accounts and spread via a single call
Trezor customers hit with phishing calls and letters after shipping-partner breach
IT help-desk vishing tricks executives into handing over Microsoft 365 access
Mathspace breach exposes data on over a million students and parents
Jellyfin 12.0 security fixes arrive alongside the removal of legacy client logins
Ransomware negotiation tactics have turned into a business process
Product showcase: Doppler secures secrets for humans, pipelines, and AI agents
Microsoft’s Project Zenith puts large AI models directly on developer PCs
SC Magazine
What CISOs need to know about Confidential Computing in 2026
N-able patches critical N-central RCE flaw amid exploit concerns
What Authenticity Failure Costs the Business
6 ways teams can leverage zero-trust to manage AI agents
What AI Validation Actually Tests
Security Conversations on AI, Agents, and Emerging Threats from Black Hat 2026 - Michael Leland, Sean Murphy, Idan Plotnik, Ido Geffen - ASW #399
Shadow AI Epidemic: Uncovering Agents on the Endpoint, British Library Breach, & News - Amit Assaraf - ESW #475
Ping YOUniverse: The next stage of human authentication
Wireguard, Chrome, RMMS, Sonicwall, Microsoft, Sumerian VPNS, Harvard, Josh Marpet... - SWN #613
New Linux toolkit found in trojanized HAProxy targeting South Korean organizations
© 2026 RiskDiscovery | Sponsored by:
Deception Logic