[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Europe's Multilingual Reality Exposes AI Security Gaps
Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets
Agentic AI Challenges Progress in Confidential Computing
Brazilian Banking Trojan Actively Spreading in Portugal
Ransomware Attack Puts a Chill on Japanese Frozen-Food Chain
Flaws in Passkey Implementation Show Old Attacks Still Work
Attackers Are Learning to Live Off the AI Toolchain
Fake Bahrain Alert App Deploys Android Surveillance Malware
When AI Attacks: OpenAI Models Autonomously Hack Hugging Face
EU Financial Institutions Leak Data Through Cookie Trackers
Ars Technica
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
The US government warns that Russia state hackers are coming after your router
Now, defenders are embracing the prompt injection, too
Patch for Windows Defender 0-day could allow attackers to fill hard disk
CyberScoop
Rubio restricts visas for sextortionists, cyber scammers
Russian espionage group using novel Zimbra exploit to steal sensitive data from Western countries
ANCHOR-CI could fix 20 years of broken government-industry collaboration
Most federal cybersecurity reporting rules are duplicative, study finds
Malware is targeting AI tools in software development environments
White House accuses Chinese company of distilling Anthropic’s Fable
OpenAI says model test was behind Hugging Face hack
AI models keep getting caught cheating
Where’s the Trump administration line on AI regulation?
House intel bill includes provisions on state and local threat intelligence, election security, AI
InfoSecurity Magazine
ChatGPT Among Top 10 Most Impersonated Brands in Phishing Attacks, Says Check Point
Ransomware Attacks Targeting Universities on the Rise
Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations
Microsoft Copilot Deployments Delayed Over Security Concerns
Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns
AI Agents Now the Enterprises Fastest Growing Exposed Attack Surface
New Dolphin X Stealer Employs AI Profiling to Prioritize Targets
Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
TrickBot Ditches HTTP for DNS Tunneling in Latest Variant
Open AI Claims Its AI Models Went Rogue and Hacked Another Company
SecurityWeek
Industry Reactions to OpenAI Models Hacking Hugging Face: Feedback Friday
Data Breach Confirmed After Australian Energy Giant Origin Is Hacked
OpenAI Fixes ChatGPT Agent Flaw That Could Let Attackers Forge an AI Insider
Is Patching Dead? Vulnerability Management in the Post-Mythos Era
Chick-fil-A Accounts Get Fried in Credential Stuffing Attack
Abstract Raises $25 Million to Expand Composable Security Operations Platform
Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models
Upbound Group Says Data Breach Led to $13 Million in Fraudulent Contract Losses
Assaf Keren Appointed New CISO of Meta
New Check Point Zero-Day Vulnerability Exploited in the Wild
ZDNet
One of these 13 gadgets could be the hero your junk drawer needs (here's why)
First look with the Galaxy Watch 9: I took it on a run in London - here's what I learned
These 3 Fire TV Sticks are on sale at Best Buy - here's the one I recommend (and why)
Dell just dropped the price of this award-winning laptop to 50% off - and I highly recommend it
Best Buy is selling the LG C5 OLED for nearly 50% off - and I recommend it
I've used Linux for 30 years, and this free security suite does it all - almost perfectly
Samsung Galaxy Z Flip 8 vs. Z Flip 7: Is the new flip phone worth the upgrade?
AI image fraud will cost $40 billion next year - can these international standards help?
OpenAI's agent breached Hugging Face before an AI defender caught it: What users should do next
How to use themes in Google Messages so you never text the wrong person again
The Hacker News
Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry
Golden Chickens Resurfaces With Four New Malware Families and Modular Implants
NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats
Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say
Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories
Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files
Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
BleepingComputer
Man gets six years for hacking 750 women's Snapchat accounts
Clop ransomware targets Windchill, FlexPLM in data theft attacks
New Dolphin X malware uses AI to rank high-value targets
Australian energy provider Origin says data breach exposes client data
Fake Claude app promoted by Bing ads pushes SectopRAT malware
Russian hackers exploit Zimbra zero-click flaw for email theft
Hackers abuse Notepad++ plugins to stealthily install malware
Microsoft 365 outage affects Teams, SharePoint and other services
FedRAMP Rev5 Is Ending: What the 20x Transition Really Requires
EU fines Google $1 billion for search, app store antitrust violations
gbhackers
Golden Chickens Launches Four Modular Malware Families to Steal Chrome Credentials and Hijack Browser Sessions
SourTrade Browser-Assembled Malware Defeats Hash-Based Detection by Design
JetBrains Patches Multiple Vulnerabilities Affecting IntelliJ IDEA and TeamCity
Australian Energy Giant Origin Confirms Data Breach Exposes Customer Data
Apache Syncope Flaws Let Users Gain Admin Roles and Execute Remote Code
Hotel Wi-Fi DNS Poisoning Attacks Hijack Microsoft 365 Accounts Without Phishing
Google Chrome 150 Update Fixes Four High-Severity Security Vulnerabilities
Lampion Malware Targets Portuguese Users With Multistage Phishing and 750MB RAT Payload
Claude Cowork Sandbox Escape Flaw Lets Attackers Access SSH Keys and Cloud Credentials
Top 10 Best 24/7 Security Monitoring Companies in 2026
Cybersecurity Dive
Russia-backed threat actor targets Western organizations in phishing campaign
CISA, FBI warn that Iran-linked hackers are expanding target set for water, energy
GAO report details scope of cybersecurity regulation overlap
Threat group claims credit for ransomware attack on Coca-Cola’s dairy unit
OpenAI models escaped containment, hacked major AI application library
4 ways to secure local developer IDEs and tools without sacrificing velocity
Ransomware victims fail to fix flaws that exposed them
Microsoft SharePoint under attack via new exploit
Researchers trace SonicWall SMA1000 exploitation to late June
Hackers steal customer data from major hospital software vendor
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
OpenAI-Hugging Face attack doesn't mean agents are evil – unless you tell them to be
Researchers replace downloaded macOS apps with evil twins, Apple shrugs
Year-long Russian attacks infect users as soon as they look at an email
Millions of California-bought cars can be hijacked via Bluetooth
Oracle drops 1,449 security patches like it's the new normal
Iran-linked crews are probing more flavors of US industrial kit
One ChatGPT link could smuggle a rogue AI agent into your company
Swiss train maker tells ransomware crooks to get off at the next stop
Talking smack about a doctor got him access to private medical files
OpenAI scored an own goal with Hugging Face attack, showing how open Chinese models are winning
VentureBeat
Multi-turn attacks broke AI models 88% of the time — single-turn testing missed it, Cisco AI security lead warns at VB Transform 2026
An AI now judges every move Rubrik's agents make, its AI chief said at VB Transform 2026 — but no one's measured if the judge is right
The credential that let OpenAI's agents into Hugging Face exists in most enterprises right now
OpenAI's models broke containment and cyberattacked Hugging Face — what enterprises need to know
Evals are the new PRD, Expedia’s AI chief tells VB Transform 2026
Safety guardrails blocked Hugging Face's defenders, not the attacker, when an AI agent breached its systems
AI confidence just dropped 17 points in six months. That’s actually great news.
TechCrunch
How AI guardrails are impeding the work of offensive cybersecurity researchers
AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing
US government says Iran-linked hackers are disrupting American water and energy providers
How OpenAI’s human mistake led to the AI-powered hack on Hugging Face
If you pay a hacker’s ransom, chances are that they’ll come back for more
Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era
AI music generator Suno breach affects 55M users, per Have I Been Pwned
Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk
Hackers stole ‘significant’ amount of data from tech firm relied on by thousands of US hospitals and pharmacies
Watch Flock Safety CEO Garrett Langley discuss the future of surveillance at TechCrunch Disrupt 2026
Network World Security
Atos launches sovereign cloud service to power comeback
Microsoft explains why its West US Azure and cloud services failed
ISC2 seeks input from IT pros for AI security certification
Why enterprises should care about Nokia’s AI-RAN platform
NetworkManager update advances IPv6-only support, Wi‑Fi management, and security for Linux-based operating systems
Google has started selling TPUs, but still keeps most for itself
Linux XFS has a decade-old race condition allowing full root access
Federal quantum bet grows with DARPA’s $125 million PsiQuantum award
IBM keen on mainframe even after 42% revenue drop in Q2
Q&A: Google’s AI and computing chief talks about its shapeshifting data centers
Help Net Security
Microsoft tightens Windows enterprise activation security
Google gives developers an AI bug hunter that also writes patches
Google’s newest sign-in method asks you to look at the camera
The automotive software vulnerabilities hiding in your dashboard
Governing Al agents at scale: Lessons from the leaders who’ve done it
Ransomware gangs go after EMEA healthcare’s supply chain
The best-funded companies open the most phishing attachments
Ransomware in 2026: More groups, more victims, no slowdown
New infosec products of the week: July 24, 2026
How attackers hosted a fake Claude download page on the claude.ai domain
SC Magazine
Is cybersecurity already full of AI slop?
The real lesson from Claude Mythos isn't about AI, it’s about governance
How to Evaluate Cloud Detection, Response, and Resilience Platforms
Notepad++ used in new stealthy attacks targeting Ukraine
Two-decade-old vulnerability found in Wansview security camera
How to Evaluate CNAPP and Cloud Security Control Planes
Lampion banking malware continues to target Portuguese organizations
FedRAMP director warns tech companies against selling to federal agencies if they can't fix vulnerabilities
Hospital security compromised by social engineering and poor network practices
Google rolls out selfie video sign-in for account recovery
© 2026 RiskDiscovery | Sponsored by:
Deception Logic