[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Inc Ransomware Exploits SonicWall SMA Zero-Days
The Real AI Threat Is Blind Trust
Gold Eagle Clearinghouse Targets Security Gap, but How Is Unclear
Google Bets 'Agentic Defense' Strategy Can Outpace Attackers
Agentic AI: Taming the Unpredictable
1M+ Emails Use Hidden Text to Dupe AI Security Filters
Police Disrupt a €140M Cyber Fraud Ring in Spain
Forgotten Bootloaders Expose Secure Boot Blind Spot
Identity Attacks Overtake Exploits as Top Ransomware Cause
Guten Tag, Bonjour, Hola to Our European Cyber Defenders!
Ars Technica
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
The US government warns that Russia state hackers are coming after your router
Now, defenders are embracing the prompt injection, too
Patch for Windows Defender 0-day could allow attackers to fill hard disk
Allstate accuses Broadcom of auditing it because it quit VMware, CA
CyberScoop
State officials, election experts pan Trump speech: ‘This is what desperation looks like’
Leading members of Scattered Spider sentenced in UK to 66 months in jail
Program to rotate cyber personnel through federal agencies saw little use
Russian trio indicted for allegedly running bulletproof hosting providers that spurred cybercrime
Security researchers find stalkers abusing Chrome’s sync feature
SonicWall customers under threat as attackers exploit 2 zero-days
Dems press DNI nominee Jay Clayton on election security questions, but leave dismayed
Forget the model. When it comes to cybersecurity, it’s all about the harness
White House details ‘Gold Eagle’ clearinghouse for AI cyber threats
Microsoft discloses ‘the mother of all’ vulnerability loads, tripling June’s previous record
InfoSecurity Magazine
Police Chiefs Cite TfL Hack in Push for Cybercrime Risk Orders
Government Agencies Falling Victim to Ransomware Daily, Warns Study
23andMe Faces New Security Mandates in $18m Data Breach Settlement
CISA Mandates Urgent Patch for Actively Exploited Critical Fortinet Vulnerabilities
The Gentlemen Overtakes Qilin as Most Prolific Ransomware Threat
Phishing Campaign Hides Lua Loader as TrueType Font File
Single Prompt Enables ChatGPT to Execute Full Cyber-Attack Chain, Researchers Claim
Modular macOS Stealer Uses Kill Loops to Force Password Entry
"Selfish Bravado" Behind TfL Cyber-Attack, Judge Says as Pair Jailed
SANS Warns of AI Governance Gap as Use by Security Teams Surges
SecurityWeek
Ernst & Young Data Breach Affects Personal, Financial Information
Watch on Demand: Cloud & Data Security Summit
Capital One Open Sources AI-Powered ‘VulnHunter’ Security Tool
Hugging Face Hacked in Autonomous AI Attack
Chrome 150 Update Patches Severe Memory Safety Bugs
WP2Shell WordPress Vulnerabilities Exploited in the Wild
In Other News: Iran Tracks US Military Phones, CrashStealer macOS Malware, CVD Blueprint
Podcast: Broken Governance, Agentic AI, and the MindStone Agent Exclusive
Beacon Security Raises $13 Million for Security Data Platform
Industry Reactions to Pentagon Suspending CMMC Phase 2: Feedback Friday
ZDNet
Sign up for T-Mobile Fiber 2 Gig and get $100 back, plus a month included
How a virtual LAN can better protect your home network - and the best way to get started
The 5 laptop features worth paying extra for, plus 3 you can ignore
I've been a Google phone diehard for 10 years - here's my 5-part wishlist for Pixel 11
The iPad mini's biggest update in 5 years is expected this fall - here's what we know
I tested Nothing's new pink earbuds, and they look as good as they sound
Moonshot's open-source Kimi K3 model beats Anthropic's Fable 5 on this benchmark
This Levoit is the best smart air purifier I've tested (and it's on sale)
This air purifier is helping keep my home's air free of wildfire smoke - and it's on sale
Dell XPS 16 review: A sleek, high-end laptop perfect for creatives and professionals
The Hacker News
New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction
Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs
World's Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines
Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution
UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware
SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code
OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests
Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT
BleepingComputer
Microsoft confirms Windows Server Update Services sync delays
Windows KB5121767 OOB update fixes shutdowns on some Dell PCs
Critical ServiceNow code execution flaw now exploited in attacks
Hackers abuse ViPNet software to target Russian govt agencies
Update now: 7-Zip fixes RCE flaw exploitable with malicious archives
WordPress Core "wp2shell" RCE flaws get public exploits, patch now
Microsoft warns of surge in ACR Stealer attacks on customers
The Future of Age Verification: Your Face Never Leaves Your Device
Abbott probes two cyber incidents amid extortion claims
HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payload
gbhackers
Microsoft Ends OneDrive Sync App Security Updates on Windows 10 21H2 and Earlier
One Malicious Web Request Can Turn an Exposed SharePoint Server Into a Persistent Backdoor
LG Monitors Silently Install McAfee Adware on Windows PCs With Full System Access
Microsoft Releases Emergency Windows 11 Update to Fix Intel IPF Driver Performance Issues
U.S. Charges Three Russian Nationals Over International Cyberattacks Costing Victims More Than $62 Million
PENTDEM AI Pentesting Daemon Uses 34 Security Tools to Automate WAF Bypass and Attack Chains
Weekly Cybersecurity Newsletter – The 50 Biggest Cybersecurity Stories – Microsoft Patch, AI Attack, Exploits Releases, Data Breaches & More
GoldenEyeDog Threat Group Behind DigiCert Code-Signing Certificate Attack
Kimai Docker Vulnerability Exposes Default APP_SECRET, Enabling Account Takeover
North Korean Contagious Interview Campaign Hides OTTERCOOKIE Malware in SVG Images
Cybersecurity Dive
The secret problem in AI infrastructure: Why MCP security starts with secrets
How agentic endpoint security shuts down IDE-based supply chain attacks
Your attack surface is bigger than you think
Abbott discloses cyberattack on cancer diagnostics business
Ransomware attack forces Coca-Cola to suspend US production at dairy unit
Gaps in network security, oversight strategy hamper US’s aviation cybersecurity regulators
Iran-nexus actors using AI to enhance cyber playbook
CISA warns that multiple vulnerabilities in SharePoint are under exploitation
US launches vulnerability clearinghouse amid AI-fueled surge in flaws
Sharp rise in AI adoption for cyber defense exposes major governance gap
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Connecting AI agents to outside services explodes the risk radius
AI spam filters are getting suckered by old-school text salting
Attackers target critical FortiSandbox flaws as CISA issues patch order
Google fixing Android lock screen bug that lets Gemini send SMS without a PIN
South Korea making its own security-centric AI model
OpenAI admits GPT-5.6 occasionally deletes files – but it's an 'honest mistake'
Researcher poisons open-weight AI model for under $100
C'mon, just copy this text string and paste it into your macOS Terminal – it'll fix your computer, honest
Brit Scattered Spider duo handed tickets to prison over Transport for London attack
Windows 10 refuses to die, and the security bill is coming due
VentureBeat
Capital One releases VulnHunter, an open-source AI tool that finds software flaws before hackers do
Zero trust must now move at agent speed
1Password moves into AI cost management, betting that token spend is the next enterprise budget crisis
Forget typosquatting; slopsquatting is the software supply chain threat created by AI coding tools
Shared API keys expose AI agents at 69% of enterprises, new VentureBeat research finds
AI has collapsed the cyber response window — resilience now starts before the attack
The real cost, security, and culture problems behind enterprise AI agents
TechCrunch
The Zoom hack that says, ‘Don’t record me’
FBI arrests man accused of using Steam games to drain victims’ crypto wallets
Amazon fixing bug that billed some AWS customers billions of dollars
Coca-Cola suspended production at its Fairlife dairy after a ransomware attack
UK cops say arrest of two young hackers disrupted the operations of an infamous hacking group
Period tracker Stardust shares users’ health data with analytics firm, says Mozilla research
How a former DeepMind researcher raised at a $300M pre-seed valuation before launching a product
Microsoft patches bug in video game Age of Empires II
Hack suggests AI music generator Suno scraped YouTube for training data
Microsoft patches record number of security vulnerabilities, citing its use of AI
Network World Security
AI workloads shake up observability market
New York State just hit pause on the AI data center boom
Huawei eying possible DRAM market entry
IBM targets AI edge with Power server, software upgrades
Network jobs watch: Hiring, skills and certification trends
Google Cloud configuration update disrupts VMware Engine stretched clusters
Fortinet adds AI protections to endpoint security platform
How data centers cope with heat waves
ISC2: AI raises accountability demands for cybersecurity teams
2026 network outage report and internet health check
Help Net Security
Hugging Face breached by autonomous AI agent
The Windows 10 hangover is becoming a security problem
Meet Dusseldorf, Microsoft’s open-source out-of-band security platform
More alerts are making your team slower, and an outcome-based SOC fixes that
A forensic tool for backdoored code completions in AI assistants
Product showcase: ZoneAlarm Mobile Security adds customizable content filtering to mobile security
Nearly half of open-source AI projects never reach production
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logs
Two new high severity WordPress vulnerabilities, patch immediately!
Spirals ransomware locks down victim systems in under 24 hours
SC Magazine
More Mythos-like models are coming — what organizations can do now
Why context rules in the AI era
AI Security at Scale, CMMC phase II paused, and the Weekly Enterprise News - Keith Hollender - ESW #468
ACR Stealer exploits user interaction to steal sensitive data
2 charged in New York for laundering $43 million from investment scams
New Russian-speaking threat actor UAT-11795 targets US and Europe with novel malware
Lawyers say Russian tourist detained in Armenia over mistaken identity in ransomware case
WatchGuard report highlights employee behavior risks for SMBs
SoftBank leverages OpenAI for AI-driven cybersecurity patching service
Windows 10 devices carry 3 times the risk of Windows 11, data shows
© 2026 RiskDiscovery | Sponsored by:
Deception Logic