[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Researcher Claims Control of ChatGPT Secure Sandbox
From Bobmojis to Bobbleheads: How the Democratic Party Built a Security-First Culture
AI Sends Global Crime Syndicates Into Fraud Nirvana
AI Browsers Vulnerable to 'PleaseFix' Zero-Click Agent Hijacking
No Perfect Fix for AI Browser Prompt Injection Flaws
CSS: The Hidden Threat Lurking in Your Inbox
15 TP-Link Bugs Expose Risks in Zero-Trust Provisioning
Flaws in Google APK for Python Unlock Agent-to-Agent Attack
Angola's Largest Telco Breached Hours Before IPO
Smoke#Screen RMM Takeover Gambit Exposes Threat Actor Playbook
Ars Technica
Thousands of servers can be backdoored by exploiting buggy motherboard controllers
Claude published malicious code to the Internet and attacked 3 real companies
Max-severity Exchange server flaw under active exploitation by Kremlin hackers
Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission
We now have a better understanding how OpenAI hacked into Hugging Face
Microsoft unveils AI security tools it says outperform competing platforms
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
CyberScoop
Capitol Hill wants to know if executive branch, foreign allies coordinated enough to combat scams
Despite federal warnings, thousands of U.S. industrial controllers used in water systems remain exposed online
Ransom Cartel creator sentenced to 16 years in prison
The water sector just got it’s wake-up call. Again.
Snowflake hacker pleads guilty, faces up to 32 years in prison
Tom Cotton prods Treasury for tax code tweaks to modernize OT
Open-source software’s archenemy TeamPCP goes back further than anyone thought
AI is getting better at election facts, but voters shouldn’t rely on it
National cyber director lays out White House plans to secure AI without writing new rules
AISI, OpenAI report more ‘unsanctioned’ model hacks
InfoSecurity Magazine
Toolkit Hidden Inside Oracle Database Evades Endpoint Tools
TeamPCP Traced Back to 2020 Cryptojacking Operation
Meta Joins OpenAI and Anthropic in Reporting AI Exploit Incident
Violent Physical Crypto Thefts Surge to $30m in Losses
Canadian Hacker Pleads Guilty Over Snowflake Extortion Campaign
NVIDIA Group Proposes SAFE Initiative for Agentic Threat Intel Sharing
Fake Open VSX Extensions Harvest Private Repo and CI Data
Paperclip AI Flaws Let Unauthenticated Attackers Run Commands
Prompt Injection Remains Biggest LLM Risk, Despite Limited Incidents
ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs
SecurityWeek
Snowflake Hacker Pleads Guilty in US Court
Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts
Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway
Critical Paperclip Flaw Allowed Admin Access, Code Execution
Meta AI Hacked External Systems During Cybersecurity Testing
Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison
Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilities
Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability
How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones
Black Hat USA 2026 – Summary of Vendor Announcements (Part 3)
ZDNet
Made by Google 2026: How to watch and what to expect from the big Pixel 11 event
Google's new Pixel 11 series comes next week - here's what we know from leaks
Is the new (pricier) Pixel 11 series still a good value compared to Samsung's Galaxy phones?
6 must-have travel gadgets, according to industry experts
The M5 MacBook Air is down to the lowest price we've seen since Apple's price hike
This LG OLED TV is one of the most impressive I've tested - and it's $700 off
I've been using the Galaxy Z Fold 8 for two weeks - these two accessories perfect the experience
The new Pixel 11 isn't enough to make me give up my Pixel 9 Pro - here's why
Bose's new QuietComfort headphones get premium upgrades for a midrange price
You can use 70+ Adobe tools without leaving ChatGPT now - here's how
The Hacker News
New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts
Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs
New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs
ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories
Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities
CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps
Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses
AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory
Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access
AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model
BleepingComputer
Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group
Swiss government SharePoint breach compromised 200 accounts
New TONTOU CPU attack bypasses Spectre v2 fixes, leaks Linux password hashes
Meta AI model hacked a company during misconfigured cyber test
How AI Exposed a Browser Security Gap that Enterprises Cannot Ignore
Ransom Cartel ransomware creator sentenced to 16 years in prison
Canadian pleads guilty to Snowflake cloud data-theft attacks
Hackers run khunt post-exploitation toolkit from Oracle database
COLDCARD security audit phishing attack installs remote access tool
CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws
gbhackers
The Best Firewall Management Tools, Compared and Priced (2026)
The 12 Best Protective DNS (PDNS) Services, Compared and Priced (2026)
Critical Paperclip AI Agent Flaws Allow Unauthenticated Remote Code Execution
Fake Xeno Roblox Executor Delivers Powercat Java Stealer Through Discord
Cloudflare Launches Open-Source OS to Secure AI Agents’ Access to Internal Data
Vanta Stealer Uses PyArmor to Steal Browser Passwords, Crypto Wallets and Discord Tokens
KHunt Toolkit Turns Oracle SQL Injection Into SYSTEM-Level RCE and Credential Theft
Meta Confirms AI Model Launched Autonomous Attack on Another Organization
Critical Jenkins Deserialization Flaw Allows Attackers to Execute Code on Controllers
PoC Released for Linux Kernel STP Use-After-Free Vulnerability
Cybersecurity Dive
Hackers grow more willing to destroy, not just disrupt OT systems
OpenAI warns autonomous hacks are ‘watershed moment for computer security’
Western government leaders call for a focus on infrastructure resilience, not AI hype
CISA is prioritizing work with critical infrastructure as it begins to recover from cuts
White House walks tightrope on securing AI without stifling tech innovation
Tech industry alliance proposes AI agent safety reporting program
AI widely used to exploit critical flaws, disrupt supply chains
AI makes costly spearphishing attacks easier, cyber insurer says
OT security coalition urges Congress, CISA to enact reforms amid water sector hacks
China-based hacker employs DeepSeek in autonomous threat campaign
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
AI struggles to patch vulns without adult supervision
Humans in the loop miss a third of dangerous AI coding agent requests
IT department put sticky notes on the laptops to help employees log in
Chinese router vendor denies its firmware contains backdoors – but pauses downloads to fix security issues anyway
OpenAI reveals its rogue agent swarm went a little bit Borg ahead of Hugging Face hack
Prompt injection isn't the bug, AI agent frameworks are
IBM's agentic AI platform is under active attack - patch now
London cops handed victim's new address and number to her stalker, watchdog says
UK charities count the cost of Beacon CRM cyberattack
AI researchers let models off the leash – then watched as they tried to add malware to a FOSS project
VentureBeat
AI agents are part of your team now. Here’s how to secure all of them.
The browser is where attacks land. Why is security still focused on the endpoint?
Claude Mythos 5 made sock puppet accounts to socially engineer developers: here's what enterprises should know
The Shai-Hulud npm worm didn't fake its security check — it earned a legitimate one
Not just OpenAI: Now Anthropic says its internal models got online and cyberattacked 3 other organizations
Mastercard spent decades training its fraud system to see bots as thieves. Now bots are the ones doing the buying.
Hush Security says the AI security problem has shifted from protecting models to governing identities as autonomous agents spread
TechCrunch
Google says hackers are calling financial firm employees to hack and extort victims
China-linked LightSpy spyware caught targeting victims in 13 countries, including the US
Hacker pleads guilty to stealing data from more than 165 Snowflake customers
PSA: Apple’s Private Relay can leak your real IP address
Android app developers may be unwittingly sharing their users’ location data with advertisers
Nvidia doesn’t mess around: A week after open AI industry group formed, it’s already showing progress
Hackers steal over $130M by exploiting bug in offline hardware wallets
Who’s legally to blame for Anthropic and OpenAI’s autonomous AI hacks? It’s complicated
Apple challenges UK government’s latest demand for iCloud backdoor: report
Horizon3 hits $2 billion valuation with $250M Series E as AI threats escalate
Network World Security
NatJack exploits put NAT security assumptions to the test at Black Hat
Top network and data center events of 2026
AWS targets AI cost concerns with new Marketplace Insights tool
Arista hits first $3B quarter as AI networking demand continues and supply pressures show signs of improvement
Palo Alto Networks at Black Hat: How AI erased the 50-day patch window
2026 network outage report and internet health check
With FCC ban on new Chinese-made optical transceivers for DCs likely, it may be time to stock up
Nvidia moves to accelerate storage access, boost industry cooperation
Moo! LoRaWAN makes it easier to connect more things to the low power networking protocol—even cattle
Data center energy constraints and moratoriums are mounting. Expect to see stalled AI projects
Help Net Security
Photos: Black Hat USA 2026, part two
Novel-reading apps used users’ phones to generate fake ad traffic
Photos: Black Hat USA 2026
Three in four AI-generated vulnerability patches leave something broken
Snowflake hacker pleads guilty, faces up to 32 years in prison
Discounted Claude access bought on the gray market may expose every prompt you send
Critical Cisco IMC bug gives attackers root, PoC is out (CVE-2026-20200)
Microsoft extends zero trust deeper into enterprise AI
Photos: Black Hat USA 2026 Arsenal
OWASP 2026 LLM Top 10: “The model will be fooled”
SC Magazine
Mimecast's Leslie Nielsen on why human risk doesn't stop at people
Optiv's John Hurley on simplifying cybersecurity
Paperclip authorization bug exploited, leads to control plane takeover
Google's John Hultquist on outpacing the adversary with AI threat defense
Apiiro's Idan Plotnik on AI writing code that sharpens attacks
Ransomware Moves up the Org Chart: Managers Are Prime Targets - Brett Stone-Gross - BH26 #2
Above Security on Why Legacy Tools Don’t Cut It for Modern Insider Risk - Tricia Howard - BH26 #2
The Identity Crisis Your Security Team Didn't See Coming: Governing AI Agents - Darren Guccione - BH26 #2
After Mythos: Securing Frontier AI as Attack and Defense Accelerate - Sean Murphy - BH26 #2
Everyone's a Builder Now: Securing the AI-Powered Enterprise - Gil Geron - BH26 #2
© 2026 RiskDiscovery | Sponsored by:
Deception Logic