[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
'Certighost' Flaw Haunts Microsoft Active Directory Certificates
Former Citigroup CISO Blauner on What Makes A Great Security Leader
AI Agent Drives Espionage Attack on Thai Ministry of Finance
Agentic Browsers Rewind Web Security by 20 years
'Confused Deputy' Flaws Persist in Google Cloud, Microsoft Azure
FBI: Breaking Affiliate Trust Sped Along LockBit's Takedown
Why Resetting Passwords No Longer Stops Attackers
Adversaries Don't Need a Zero-Day — They Read Your Rulebook
CISOs vs. Boards: Myth or Misunderstanding?
Escape Artists: 'Incorrigible' AI Models Resist Rehabilitation
Ars Technica
Microsoft unveils AI security tools it says outperform competing platforms
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
The US government warns that Russia state hackers are coming after your router
Now, defenders are embracing the prompt injection, too
CyberScoop
AI-assisted security tools are finding more bugs, but the threat level has not changed
Microsoft debuts AI cybersecurity offerings as competition heats up
Trump asks Supreme Court to let him curtail mail-in voting ahead of midterms
Google’s solution to hacker name confusion? Yet another naming system
Sen. Wyden urges feds to discard older, insecure, public-facing VPNs
Industry’s message on CIRCIA: Please ask us fewer questions about cyberattacks
Despite multiple takedowns, botnets continue to grow
Microsoft, tech companies throw weight behind spread of open-source AI
Rubio restricts visas for sextortionists, cyber scammers
Russian espionage group using novel Zimbra exploit to steal sensitive data from Western countries
InfoSecurity Magazine
Bugs in Hugging Face Diffusers Bypass Custom Code Safeguard
AI-Assisted Bug Hunt Uncovers Linux Kernel 0-Day in net/sched
Phishing Dominates as Initial Entry Method for Cyber-Attacks, as Hackers Hone Evasion Techniques
Microsoft Launches Flurry of AI Security Initiatives to Combat AI-Enabled Threats
Coca-Cola Reveals Subsidiary Fairlife Suffered Data Breach
NVIDIA’s Open Secure AI Alliance Is Missing Some Big Names
New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation
SourTrade Malvertising Campaign Secretly Builds Malware in the Browser
Ransomware Groups Increasingly Deploy EDR Kill Techniques
Hotel Wi-Fi Routers Compromised to Steal Corporate Login Credentials From Visitors
SecurityWeek
Cyera Acquiring Oasis Security in $1 Billion Deal
Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe
OT Security Startup Frenos Raises $1.52 Million
Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model
Act Security Emerges from Stealth to Fight the Patch Problem
Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker
Hush Security Raises $30 Million for AI Agent Governance
Google Adopts New Threat Actor Naming System
Unpatched Fastjson Vulnerability Exploited in Attacks
Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day
ZDNet
Microsoft's new AI model beats Mythos on security benchmark
How to remap the Copilot key on your keyboard to something more helpful
Is your smart TV a secret proxy? LG to suspend rogue apps, Samsung sets impacted too
Did ransomware attacks really decline? Here are your business' 4 best defenses
I tested Sonos' new beta features on iOS and Android - how to opt in and what to expect
Why Apple's iOS 26.6 is worth installing (it's not just for the 91 security fixes)
Token-maxing is an AI cost sink - how to use agents without busting your budget
You've been using your power bank wrong, and airline rules make that obvious
How much RAM does your phone really need in 2026?
AIO Launcher is one of the coolest minimal Android launchers I've used - and it's free
The Hacker News
Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login
JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach
Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In
Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit
Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the Cost
Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw
NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework
BleepingComputer
Is Your SSO Protected Against Modern Credential Attacks?
Over 24,000 exposed server BMCs leak password hash via decades-old flaw
Data breach at medical billing firm MCBS affects 1.26 million people
Hackers target US firms in FastJson RCE zero-day attacks
Arista patches VeloCloud Orchestrator zero-day exploited in attacks
New Dysphoria DDoS botnet spreads to 200k devices worldwide
New Certighost PoC exploit lets attackers hijack Windows domains
Apple sued over fake App Store crypto wallet app stealing $1.8M in Bitcoin
Coca-Cola confirms data theft in Fairlife ransomware attack
Ernst & Young data breach claimed by ShinyHunters extortion gang
gbhackers
Aembit Joins Snowflake to Tackle AI’s Next Security Frontier: Trusted Agent Interoperability
Fake Claude Code Installer Delivers MacSync macOS Infostealer Through Google Ads
Dismantled Kratos Phishing Kit Becomes Blueprint for Attacks on Microsoft 365 Users
CastleLoader Campaign Deploys NeedleStealer to Steal Crypto Wallet Seeds and Browser Sessions
Critical TeamCity Flaw Lets Unauthenticated Attackers Execute System Commands
Chinese Hackers Use RedRelay Multi-Hop Network to Conceal Global Cyber Operations
AI-Discovered Linux Kernel Zero-Day Enables Root Privilege Escalation
Tengu Mirai Botnet Uses Watchdog Reboots and Binary Bricking to Resist Removal
Fake ShinyHunters Emails Give Victims 48 Hours to Pay $2,000 Bitcoin Ransom
LegacyHive Exploit Abuses Windows Profile Loading to Hijack User Registry Hives
Cybersecurity Dive
Microsoft launches agentic security platform designed to combat AI-based attacks
Companies fear AI risks more than common cybersecurity threats
Coca-Cola restores most production capacity at dairy unit after ransomware attack
Tech industry giants say US must embrace openness, transparency in AI
What the Trojan horse gets right (and wrong) about AI security
In the Mythos era, security belongs at runtime
Zero-day flaw in Check Point SmartConsole is under exploitation
The most vulnerable AI products are also some of the most commonly exposed online
Russia-backed threat actor targets Western organizations in phishing campaign
CISA, FBI warn that Iran-linked hackers are expanding target set for water, energy
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
DEF CON bans Meta-style 'pervert glasses'
AI-found bugs aren't proving any easier to exploit despite the hype
Bank for charities pulls online services over security fears
Uncle Sam needs you to fight for 6G leadership and security, lest Beijing get there first
Arista patches actively exploited VeloCloud bug as CISA puts admins on the clock
Microsoft's solution to AI security: more AI and more acronyms
Tech giants link hands to praise open AI models after OpenAI - Hugging Face attack
Microsoft Defender for Endpoint leaves some Linux boxes defenseless after update
Google goes it alone with a new cybercrime crew taxonomy
Pope's official prayer app commits cardinal sin, leaks 700K+ users' info
VentureBeat
Snowflake launches Cortex AI Gateway to control AI agents and prevent runaway enterprise costs
Fiduciary AI: Agents need to prove trustworthiness, not just ability
Microsoft launches AI cybersecurity model, agentic defense platform to cut enterprise security costs
New ransomware targets AI model weights and can't even collect the ransom
Multi-turn attacks broke AI models 88% of the time — single-turn testing missed it, Cisco AI security lead warns at VB Transform 2026
An AI now judges every move Rubrik's agents make, its AI chief said at VB Transform 2026 — but no one's measured if the judge is right
The credential that let OpenAI's agents into Hugging Face exists in most enterprises right now
TechCrunch
PSA: Your Claude shared chats and Artifacts may have ended up on Google
Microsoft launches its first cybersecurity model, plus a new agentic cybersecurity system
Hugging Face CEO calls for ‘radical transparency’ after ‘unprecedented’ OpenAI hack
The hacker who humiliated spyware makers and was never caught
US accuses American of allegedly wiping his phone using a ‘duress’ password during border search
How AI guardrails are impeding the work of offensive cybersecurity researchers
AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing
US government says Iran-linked hackers are disrupting American water and energy providers
How OpenAI’s human mistake led to the AI-powered hack on Hugging Face
If you pay a hacker’s ransom, chances are that they’ll come back for more
Network World Security
2026 network outage report and internet health check
Netscout doubles DDoS defense capacity to counter AI-driven botnets
Up to 50% of data center capacity slated for 2026 could be delayed
Network jobs watch: Hiring, skills and certification trends
Cisco, AMD bring enterprise-level security, visibility to Ryzen AI Halo systems
Cloudflare Internal DNS puts public and private DNS on one policy engine
Atos launches sovereign cloud service to power comeback
Microsoft explains why its West US Azure and cloud services failed
ISC2 seeks input from IT pros for AI security certification
Why enterprises should care about Nokia’s AI-RAN platform
Help Net Security
Hugging Face breach reignites open-weights debate, raises liability questions
BlackCloak extends deepfake protection to the executive’s trusted circle
Bugcrowd introduces Savant Pathseeker for agentic penetration testing with exploit validation
Prescient Security adds attack surface management to Cait, broadens AI-assisted pentesting
Cyberhaven launches Flow to secure data across human and AI workflows
Intel 471 expands Verity471 with AI agent and MCP support for threat intelligence
SpecterOps brings AWS attack path management and AI to hybrid identity security
Team Cymru unveils Pure Signal Command for AI-powered threat intelligence and incident response
Exposed BMCs hand out password hashes before login
JetBrains fixes critical unauthenticated RCE in TeamCity On-Premises (CVE-2026-63077)
SC Magazine
How AI is turning old data sprawl into a new security risk
Define a Minimum Viable Business for disaster recovery -- before the next incident
Inside the OWASP Agent Security Regression Harness Project - Mert Satilmaz - ASW #393
How to Design Segmentation That Actually Reduces Blast Radius
GitHub and PyPI implement new security measures against supply-chain attacks
Russian hackers exploited Zimbra zero-day in espionage campaigns
Steam forums used for ClickFix cryptominer attacks
The enduring mystery of hacker Phineas Fisher
Malvertising campaign assembles malware in browser
Phishing attacks on insurance companies evolve to real-time account hijacking
© 2026 RiskDiscovery | Sponsored by:
Deception Logic