[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Minnesota Water Utility Attacks Expose Sector's Cyber-Risks
AI Harnesses Burst With Potential Exploit Opps
Claude Mythos — Hype vs. Reality: What Security Teams Need to Know
SE Asian Cybercriminal Syndicates Become a Global Power
'Flying Eagle' Full-Service Mobile RAT Builder Wings Across China
OpenAI's Rogue Model Claims More Victims Beyond Hugging Face
Red Agents vs. Blue Agents: How to Make AI Better at Defense
Who's Liable When AI Agents Escape? Hugging Face Breach Raises Hard Questions
Hugging Face Hack: Lessons for Cyber Defenders
When AppSec Scanners Become a Supply Chain Attack Vector
Ars Technica
Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission
We now have a better understanding how OpenAI hacked into Hugging Face
Microsoft unveils AI security tools it says outperform competing platforms
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
CyberScoop
Okta’s deal for Permiso aims to close gaps in identity threat detection
CISA issues recommendations to federal agencies on open-source software security
We know how to protect our troops from telecom attacks. We’re just not doing it.
Ghanaian national sentenced to 7 years in prison for stealing $10M from romance scam victims
A little-known npm package was North Korea’s warm-up act for the axios hack
Supply chain challenges loom large in quantum race, White House official says
Huntress warns about attack spree that hit 30 SonicWall customers in 2 days
OpenAI’s rogue AI agent shows why we need federal rules for autonomous systems
Here’s what Anthropic found when it turned Mythos loose on encryption algorithms
Coordinated cyberattack disrupts water utilities in 30+ Minnesota communities
InfoSecurity Magazine
AI and Automation Fall Short of Sysadmin Expectations
Teams-Themed Phishing Campaign Abused Legitimate Microsoft Login Pages
Google Releases Patches for 370 Vulnerabilities in Chrome 151
NCSC Calls on Vendors to Embed ‘Forensic Observability’ in Network Devices
LogoKit Phishing Kit Screenshots Victim Sites in Real Time
Russian-Alligned TA488 Returns With Persistent Outlook Web Access Attack
The Average Cost of a Data Breach Rises to $5 Million
Just 1% of AI-Discovered Vulnerabilities Exploited in the Wild, Research Shows
Researchers Warn of AI-Enhanced Phone Fraud Ecosystem
NCSC Publishes Guidance to Aid Incident Response and Recovery
SecurityWeek
Bank of America to Acquire Cybersecurity Firm MDSec
Okta to Acquire Identity Threat Detection Firm Permiso
Timeless Compliance: Why Better Questions Beat Bigger Frameworks
DataBahn Raises $40 Million for Agentic Data Pipeline Management
Discern Security Raises $13 Million in Series A Funding
Cantina Emerges From Stealth With $8 Million in Funding
Onyx Security Raises $113 Million to Control AI Agents in the Enterprise
‘DangleGeddon’: AI Could Weaponize Forgotten DNS Records at Global Scale
Semiconductor Firm Analog Devices Discloses Data Breach
Critical Ruflo Flaw Lets Attackers Spawn Rogue AI Swarms
ZDNet
I tried Android Auto offline while on a road trip, and it beats mobile data in 2 ways
What the FCC ban on foreign-made robot vacuums means for your Roomba
I compared these popular sleep earbuds to my Oura Ring 5 - the results surprised me
Your Windows download keeps getting bigger, and AI is to blame - here's why it matters
OpenAI's rogue agent didn't stop at Hugging Face - here's what we know
Field service is 95% on board with AI but these legacy issues need attention
The Galaxy Z Fold 8 is so good, I don't see the point of flip phones any more
Google Earth added Nano Banana, and I immediately reimagined Philly with zombies and evil clowns
How I free up Windows disk space and shred sensitive data for free with open-source BleachBit
Amazon is selling this Samsung 2TB SATA SSD for over 60% off right now
The Hacker News
DPRK-Linked macOS Malvertising Uses Fake Updates to Deliver Crypto-Stealing Malware
ThreatsDay: AI-Powered Hacking, 370 Chrome Flaws, SonicWall Attacks, DNS Hijacking + 22 More Stories
Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database
Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents
The Network Has Become the Control Plane for AI Security
Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts
SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT
Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation
FCC Blocks New Foreign-Produced Robots and Power Inverters Over Cyber Risks
Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire Sleet
BleepingComputer
Amazon links Debug, Chalk NPM supply-chain attacks to North Korean hackers
VMware fixes three critical flaws allowing auth bypass, VM escapes
Google says AI helped Chrome fix 1,072 security bugs in two releases
ShinyHunters claims Brinks Home breach, threatens to leak stolen data
Microsoft Teams vishing attacks lead to Chaos ransomware attacks
Analog Devices discloses data breach, says operations unaffected
After the Break-In: What Attackers Do Once They're Already Inside
Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
Anthropic confirms Claude is down worldwide
Cisco warns of FMC static credential flaw exploited in zero-day attacks
gbhackers
OpenMatter Network Calls on Enterprise Leaders to Rethink AI Security Before the Next Rogue AI Crisis
AtlasRAT Uses Four-Stage In-Memory Loader to Keylog and Inject Malware Into WeChat
CISA Adds Cisco Secure Firewall Management Flaw to Exploited Vulnerabilities List
Linux XMRig Botnet Abuses PAM for Fileless Monero Mining and Persistent Access
New GenieLocker Ransomware Encrypts Windows, Linux and VMware ESXi Systems
Top 10 Best Tools for Simulated DDoS Attacks in 2026
Hackers Exploit Nearly 1 in 4 Vulnerabilities Before or on Disclosure Day
Home Assistant FFmpeg Flaw Lets Attackers Steal Supervisor Tokens and Execute Code as Root
Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy Chaos Ransomware
Work Panel Vishing Platform Automates Enterprise Account Takeovers and MFA Theft
Cybersecurity Dive
Hackers abuse Microsoft Teams in ransomware campaign through fake IT support
Shadow AI, leadership resistance make AI governance tough for worried CISOs
As data breaches grow costlier, ungoverned AI creates new risks
Authorities investigating a coordinated cyberattack against Minnesota water systems
Microsoft launches agentic security platform designed to combat AI-based attacks
Companies fear AI risks more than common cybersecurity threats
Coca-Cola restores most production capacity at dairy unit after ransomware attack
Tech industry giants say US must embrace openness, transparency in AI
What the Trojan horse gets right (and wrong) about AI security
In the Mythos era, security belongs at runtime
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Jailed Flock vandal wipes out three cameras, racks up thousands in damages
Russian spies take their half-click email attack from Zimbra to Outlook
Headteacher had the most guessable username-password combo you could imagine
Excuses like 'AI did it' don't exist in the eyes of the law
Closed models refuse to help researcher swat Linux bug
Word worm crawls into Copilot, spreads chaos
Iran-linked CyberAv3ngers suspected in attacks on Minnesota water systems
America bans imported robots due to supply chain and security risks
MCP gets an enterprise makeover
JFrog's 0-days let OpenAI's models hack Hugging Face
VentureBeat
Mastercard spent decades training its fraud system to see bots as thieves. Now bots are the ones doing the buying.
Hush Security says the AI security problem has shifted from protecting models to governing identities as autonomous agents spread
The lineage behind 69% of open models was never verified. Cisco just fingerprinted almost 900 for free
NTT DATA AIVista and Snowflake: Identity alone won’t secure enterprise AI agents
Visa used Mythos to hunt for bugs in its own payment network, then open-sourced the harness that made it possible
Snowflake launches Cortex AI Gateway to control AI agents and prevent runaway enterprise costs
Fiduciary AI: Agents need to prove trustworthiness, not just ability
TechCrunch
CareCloud begins to notify hundreds of thousands after hackers stole medical records
Google says it fixed more Chrome bugs in June than over the past two years, thanks to AI
Okta buys AI security startup Permiso — source says for about $200M
In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable
FTC sues Hims & Hers for allegedly sharing patients’ medical data with advertisers Meta and Snap
US government bans new foreign-made humanoids, robot dogs, and solar inverters, citing risks to national security
Cyera agrees to acquire Oasis Security for $1B to safeguard proliferating AI agents
PSA: Your Claude shared chats and Artifacts may have ended up on Google
Microsoft launches its first cybersecurity model, plus a new agentic cybersecurity system
Hugging Face CEO calls for ‘radical transparency’ after ‘unprecedented’ OpenAI hack
Network World Security
How Port Nelson overhauled its operations with private 5G
Most corporate IT is off premises. Data center costs, staffing remain difficult, Uptime reports
CISA unveils a six-step blueprint for isolating critical infrastructure during cyberattacks
Dell, Nutanix combo expands virtualization, private cloud choices
IBM: AI-driven attacks increased 56% last year, and data breach costs are up 12%
Why the future of network security is the convergence of SASE and firewalls
Why KVM-over-IP is becoming the backbone of modern infrastructure management
AI data centers in the US may face power cuts under PJM reliability proposal
A 13-year-old flaw is exposing tens of thousands of data center management systems
Arista patches maximum severity vulnerability that is already being exploited
Help Net Security
Jscrambler launches Unified Client-Side Security Platform
AI takes on a bigger role in finding Chrome vulnerabilities
Novee brings continuous AI pentesting to mobile apps
Laundry Bear’s new Microsoft Exchange attack triggers on email open (CVE-2026-42897)
CISA sets a new SBOM baseline
Orca Security secures AI-built and developer-created applications
Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks
Cisco FMC static credentials exploited by attackers (CVE-2026-20316)
Dropzone AI turns threat hunting into a routine SOC operation
PortSwigger introduces Burp AT for agentic AI security testing
SC Magazine
Sandwich Hats - PSW #937
Critical Azure Cosmos DB flaw risked cross-tenant compromise
Identity Governance Framework Optimization: Diagnosing Decay and Rebuilding
How to Evaluate Third-Party Risk, Regulatory Response, and Evidence Platforms
Industry CISOs urge resilience, AI governance and regulatory reform
Why we need to build AI into our network appliances
The modern path to unified Linux identity security: Securing hybrid infrastructure in a cloud-first world
How to Evaluate AI Claims in Identity Platforms
The best defense against an AI attacker might be its own safety training
White House official highlights quantum supply chain challenges
© 2026 RiskDiscovery | Sponsored by:
Deception Logic