[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
SE Asian Cybercriminal Syndicates Become a Global Power
'Flying Eagle' Full-Service Mobile RAT Builder Wings Across China
OpenAI's Rogue Model Claims More Victims Beyond Hugging Face
Red Agents vs. Blue Agents: How to Make AI Better at Defense
Who's Liable When AI Agents Escape? Hugging Face Breach Raises Hard Questions
Hugging Face Hack: Lessons for Cyber Defenders
When AppSec Scanners Become a Supply Chain Attack Vector
Patch-Resistant 'RufRoot' Flaw Can Unleash Malicious AI Agent Swarms
Ghost Credentials Expose Cloud Systems to Hidden Identity Risks
Thousands of Data Center Controllers Open to Takeover
Ars Technica
Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission
We now have a better understanding how OpenAI hacked into Hugging Face
Microsoft unveils AI security tools it says outperform competing platforms
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
CyberScoop
Ghanaian national sentenced to 7 years in prison for stealing $10M from romance scam victims
A little-known npm package was North Korea’s warm-up act for the axios hack
Supply chain challenges loom large in quantum race, White House official says
Huntress warns about attack spree that hit 30 SonicWall customers in 2 days
OpenAI’s rogue AI agent shows why we need federal rules for autonomous systems
Here’s what Anthropic found when it turned Mythos loose on encryption algorithms
Coordinated cyberattack disrupts water utilities in 30+ Minnesota communities
FBI sees Anthropic’s Mythos as a law enforcement challenge
AI-assisted security tools are finding more bugs, but the threat level has not changed
Microsoft debuts AI cybersecurity offerings as competition heats up
InfoSecurity Magazine
AI and Automation Fall Short of Sysadmin Expectations
Teams-Themed Phishing Campaign Abused Legitimate Microsoft Login Pages
Google Releases Patches for 370 Vulnerabilities in Chrome 151
NCSC Calls on Vendors to Embed ‘Forensic Observability’ in Network Devices
LogoKit Phishing Kit Screenshots Victim Sites in Real Time
Russian-Alligned TA488 Returns With Persistent Outlook Web Access Attack
The Average Cost of a Data Breach Rises to $5 Million
Just 1% of AI-Discovered Vulnerabilities Exploited in the Wild, Research Shows
Researchers Warn of AI-Enhanced Phone Fraud Ecosystem
NCSC Publishes Guidance to Aid Incident Response and Recovery
SecurityWeek
DataBahn Raises $40 Million for Agentic Data Pipeline Management
Discern Security Raises $13 Million in Series A Funding
Cantina Emerges From Stealth With $8 Million in Funding
Onyx Security Raises $113 Million to Control AI Agents in the Enterprise
‘DangleGeddon’: AI Could Weaponize Forgotten DNS Records at Global Scale
Semiconductor Firm Analog Devices Discloses Data Breach
Critical Ruflo Flaw Lets Attackers Spawn Rogue AI Swarms
1 in 5 Data Center Assets Are Within Easy Reach of Attackers
US and Allies Update SBOM Guidance
Chrome 151 Patches 370 Vulnerabilities
ZDNet
The Galaxy Z Fold 8 is so good, I don't see the point of flip phones any more
Google Earth added Nano Banana, and I immediately reimagined Philly with zombies and evil clowns
How I free up Windows disk space and shred sensitive data for free with open-source BleachBit
Amazon is selling this Samsung 2TB SATA SSD for over 60% off right now
How to qualify for Apple's education discount - and get a $499 MacBook Neo for school
This docking station's 'hidden compartment' disrupted my desktop - for the better
What 'mAh' means for your phone's battery, and why I focus on another metric instead
I replaced my paid streaming apps with free ones - here's what surprised me
ZDNET readers are skeptical of a foldable iPhone in 2026. Here's what they think instead
Google Home vs. Sonos Era 100: I used both smart speakers, here's what I recommend
The Hacker News
Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database
Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents
The Network Has Become the Control Plane for AI Security
Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts
SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT
Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation
FCC Blocks New Foreign-Produced Robots and Power Inverters Over Cyber Risks
Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire Sleet
Cisco FMC Zero-Day Actively Exploited, Static Credentials Could Expose Sensitive Data
Critical Rails Flaw Could Let Unauthenticated Attackers Read Server Files via Image Uploads
BleepingComputer
After the Break-In: What Attackers Do Once They're Already Inside
Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
Anthropic confirms Claude is down worldwide
Cisco warns of FMC static credential flaw exploited in zero-day attacks
Health-ISAC warns of rising ShinyHunters data theft attacks on healthcare
OpenAI agent used exposed credentials at 4 services in Hugging Face breach
Hackers disrupt over 30 Minnesota water utilities in coordinated OT attack
Your AI Agents Are Guessing at Scale: Permissions Decide the Damage
Windows 11 KB5101684 update released with 42 changes and fixes
These near-mint ASUS Chromebook refurbs are only $145
gbhackers
AtlasRAT Uses Four-Stage In-Memory Loader to Keylog and Inject Malware Into WeChat
CISA Adds Cisco Secure Firewall Management Flaw to Exploited Vulnerabilities List
Linux XMRig Botnet Abuses PAM for Fileless Monero Mining and Persistent Access
New GenieLocker Ransomware Encrypts Windows, Linux and VMware ESXi Systems
Top 10 Best Tools for Simulated DDoS Attacks in 2026
Hackers Exploit Nearly 1 in 4 Vulnerabilities Before or on Disclosure Day
Home Assistant FFmpeg Flaw Lets Attackers Steal Supervisor Tokens and Execute Code as Root
Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy Chaos Ransomware
Work Panel Vishing Platform Automates Enterprise Account Takeovers and MFA Theft
Copybara Abuses Android Accessibility for Keylogging, Screen Streaming and Remote Control
Cybersecurity Dive
As data breaches grow costlier, ungoverned AI creates new risks
Authorities investigating a coordinated cyberattack against Minnesota water systems
Microsoft launches agentic security platform designed to combat AI-based attacks
Companies fear AI risks more than common cybersecurity threats
Coca-Cola restores most production capacity at dairy unit after ransomware attack
Tech industry giants say US must embrace openness, transparency in AI
What the Trojan horse gets right (and wrong) about AI security
In the Mythos era, security belongs at runtime
Zero-day flaw in Check Point SmartConsole is under exploitation
The most vulnerable AI products are also some of the most commonly exposed online
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Russian spies take their half-click email attack from Zimbra to Outlook
Headteacher had the most guessable username-password combo you could imagine
Excuses like 'AI did it' don't exist in the eyes of the law
Closed models refuse to help researcher swat Linux bug
Word worm crawls into Copilot, spreads chaos
Iran-linked CyberAv3ngers suspected in attacks on Minnesota water systems
America bans imported robots due to supply chain and security risks
MCP gets an enterprise makeover
JFrog's 0-days let OpenAI's models hack Hugging Face
Microsoft and Wiz mind-meld agents catch more than 90% of bugs
VentureBeat
The lineage behind 69% of open models was never verified. Cisco just fingerprinted almost 900 for free
Visa used Mythos to hunt for bugs in its own payment network, then open-sourced the harness that made it possible
Snowflake launches Cortex AI Gateway to control AI agents and prevent runaway enterprise costs
Fiduciary AI: Agents need to prove trustworthiness, not just ability
Microsoft launches AI cybersecurity model, agentic defense platform to cut enterprise security costs
New ransomware targets AI model weights and can't even collect the ransom
Multi-turn attacks broke AI models 88% of the time — single-turn testing missed it, Cisco AI security lead warns at VB Transform 2026
TechCrunch
In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable
FTC sues Hims & Hers for allegedly sharing patients’ medical data with advertisers Meta and Snap
US government bans new foreign-made humanoids, robot dogs, and solar inverters, citing risks to national security
Cyera agrees to acquire Oasis Security for $1B to safeguard proliferating AI agents
PSA: Your Claude shared chats and Artifacts may have ended up on Google
Microsoft launches its first cybersecurity model, plus a new agentic cybersecurity system
Hugging Face CEO calls for ‘radical transparency’ after ‘unprecedented’ OpenAI hack
The hacker who humiliated spyware makers and was never caught
US accuses American of allegedly wiping his phone using a ‘duress’ password during border search
How AI guardrails are impeding the work of offensive cybersecurity researchers
Network World Security
Most corporate IT is off premises. Data center costs, staffing remain difficult, Uptime reports
CISA unveils a six-step blueprint for isolating critical infrastructure during cyberattacks
Dell, Nutanix combo expands virtualization, private cloud choices
IBM: AI-driven attacks increased 56% last year, and data breach costs are up 12%
Why the future of network security is the convergence of SASE and firewalls
Why KVM-over-IP is becoming the backbone of modern infrastructure management
AI data centers in the US may face power cuts under PJM reliability proposal
A 13-year-old flaw is exposing tens of thousands of data center management systems
Arista patches maximum severity vulnerability that is already being exploited
Fortinet’s new FortiGate platform converges firewall, SASE technologies
Help Net Security
CISA sets a new SBOM baseline
Orca Security secures AI-built and developer-created applications
Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks
Cisco FMC static credentials exploited by attackers (CVE-2026-20316)
Dropzone AI turns threat hunting into a routine SOC operation
PortSwigger introduces Burp AT for agentic AI security testing
Coordinated cyberattack hits more than 30 Minnesota water utilities
Data breach cost 2026 averaged $4.99 million, AI attacks ran higher
200 new CVEs a day and no realistic way to patch them all
Top companies to visit at Black Hat USA 2026
SC Magazine
OpenAI agent exploited JFrog Artifactory flaw, abused Modal customer sandbox
Sweet Security introduces AI agent blocking to stop unauthorized actions in real-time
Fraud campaign impersonates Russian companies to steal funds
Maximum severity vulnerability in Ruflo AI platform allows memory tampering
Flying Eagle Android RAT source code circulates on Telegram
Health-ISAC warns of ShinyHunters' increasing attacks on healthcare SSO accounts
SplitVPN 'no logs' claim contradicted by massive data leak
Navy advances network consolidation with new prototype project request
Andrea Carcano returns as Nozomi Networks CEO
Spur Intelligence secures $200 million investment
© 2026 RiskDiscovery | Sponsored by:
Deception Logic