[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets
Agentic AI Challenges Progress in Confidential Computing
Brazilian Banking Trojan Actively Spreading in Portugal
Ransomware Attack Puts a Chill on Japanese Frozen-Food Chain
Flaws in Passkey Implementation Show Old Attacks Still Work
Attackers Are Learning to Live Off the AI Toolchain
Fake Bahrain Alert App Deploys Android Surveillance Malware
When AI Attacks: OpenAI Models Autonomously Hack Hugging Face
EU Financial Institutions Leak Data Through Cookie Trackers
Ransomware Is Accelerating, but It's Not Because of AI
Ars Technica
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
Windows 0-day drops the same day Microsoft releases record number of patches
Microsoft’s Secure Boot has been broken for a decade and no one noticed until now
The US government warns that Russia state hackers are coming after your router
Now, defenders are embracing the prompt injection, too
Patch for Windows Defender 0-day could allow attackers to fill hard disk
CyberScoop
Rubio restricts visas for sextortionists, cyber scammers
Russian espionage group using novel Zimbra exploit to steal sensitive data from Western countries
ANCHOR-CI could fix 20 years of broken government-industry collaboration
Most federal cybersecurity reporting rules are duplicative, study finds
Malware is targeting AI tools in software development environments
White House accuses Chinese company of distilling Anthropic’s Fable
OpenAI says model test was behind Hugging Face hack
AI models keep getting caught cheating
Where’s the Trump administration line on AI regulation?
House intel bill includes provisions on state and local threat intelligence, election security, AI
InfoSecurity Magazine
Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations
Microsoft Copilot Deployments Delayed Over Security Concerns
Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns
AI Agents Now the Enterprises Fastest Growing Exposed Attack Surface
New Dolphin X Stealer Employs AI Profiling to Prioritize Targets
Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
TrickBot Ditches HTTP for DNS Tunneling in Latest Variant
Open AI Claims Its AI Models Went Rogue and Hacked Another Company
Ubuntu snap-confine Vulnerability Enables Local Root Access
Google Makes CodeMender Available as Managed AI Security Agent
SecurityWeek
Data Breach Confirmed After Australian Energy Giant Origin Is Hacked
OpenAI Fixes ChatGPT Agent Flaw That Could Let Attackers Forge an AI Insider
Is Patching Dead? Vulnerability Management in the Post-Mythos Era
Chick-fil-A Accounts Get Fried in Credential Stuffing Attack
Abstract Raises $25 Million to Expand Composable Security Operations Platform
Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models
Upbound Group Says Data Breach Led to $13 Million in Fraudulent Contract Losses
Assaf Keren Appointed New CISO of Meta
New Check Point Zero-Day Vulnerability Exploited in the Wild
US Warns of Iranian Hackers Targeting Siemens, Schneider, and Rockwell ICS Devices
ZDNet
These 3 Fire TV Sticks are on sale at Best Buy - here's the one I recommend (and why)
Dell just dropped the price of this award-winning laptop to 50% off - and I highly recommend it
Best Buy is selling the LG C5 OLED for nearly 50% off - and I recommend it
I've used Linux for 30 years, and this free security suite does it all - almost perfectly
Samsung Galaxy Z Flip 8 vs. Z Flip 7: Is the new flip phone worth the upgrade?
AI image fraud will cost $40 billion next year - can these international standards help?
OpenAI's agent breached Hugging Face before an AI defender caught it: What users should do next
How to use themes in Google Messages so you never text the wrong person again
OpenAI's attack agent did exactly what it was told - just more relentlessly than expected
I use Anthropic's Claude AI tools for very different jobs: How to pick between models, Code, and Cowork
The Hacker News
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories
Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files
Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
How Synthetic Identity Fraud is Coming for Machine Identities
Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts
Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs
Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access
BleepingComputer
New Dolphin X malware uses AI to rank high-value targets
Australian energy provider Origin says data breach exposes client data
Fake Claude app promoted by Bing ads pushes SectopRAT malware
Russian hackers exploit Zimbra zero-click flaw for email theft
Hackers abuse Notepad++ plugins to stealthily install malware
Microsoft 365 outage affects Teams, SharePoint and other services
FedRAMP Rev5 Is Ending: What the 20x Transition Really Requires
EU fines Google $1 billion for search, app store antitrust violations
New RefluXFS Linux flaw lets attackers gain root privileges
New msaRAT malware uses Chrome, Edge browsers to route C2 traffic
gbhackers
Claude Cowork Sandbox Escape Flaw Lets Attackers Access SSH Keys and Cloud Credentials
Top 10 Best 24/7 Security Monitoring Companies in 2026
Attackers Abuse Microsoft Teams to Impersonate IT Support and Steal Corporate Access
Russian LAUNDRY BEAR Hackers Exploit Zimbra Zero-Day to Steal 90 Days of Emails
Hackers Weaponize Notepad++ Plugins to Silently Infect Windows Systems
136 Malicious RubyGems Packages Deploy XMRig Miner and Spread via SSH
Next.js Patches Nine Security Flaws Enabling SSRF, Middleware Bypass, DoS, and Internal Endpoint Disclosure
Top 10 Best Physical Security Penetration Testing Firms 2026
New Kimi K3 AI Agent Uncovers Redis Remote Code Execution Flaws in Just 27 Minutes
New TriBack Loader Evades EDR Using Signed Binaries and Win32 Callback APIs
Cybersecurity Dive
Russia-backed threat actor targets Western organizations in phishing campaign
CISA, FBI warn that Iran-linked hackers are expanding target set for water, energy
GAO report details scope of cybersecurity regulation overlap
Threat group claims credit for ransomware attack on Coca-Cola’s dairy unit
OpenAI models escaped containment, hacked major AI application library
4 ways to secure local developer IDEs and tools without sacrificing velocity
Ransomware victims fail to fix flaws that exposed them
Microsoft SharePoint under attack via new exploit
Researchers trace SonicWall SMA1000 exploitation to late June
Hackers steal customer data from major hospital software vendor
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
OpenAI-Hugging Face attack doesn't mean agents are evil – unless you tell them to be
Researchers replace downloaded macOS apps with evil twins, Apple shrugs
Year-long Russian attacks infect users as soon as they look at an email
Millions of California-bought cars can be hijacked via Bluetooth
Oracle drops 1,449 security patches like it's the new normal
Iran-linked crews are probing more flavors of US industrial kit
One ChatGPT link could smuggle a rogue AI agent into your company
Swiss train maker tells ransomware crooks to get off at the next stop
Talking smack about a doctor got him access to private medical files
OpenAI scored an own goal with Hugging Face attack, showing how open Chinese models are winning
VentureBeat
Multi-turn attacks broke AI models 88% of the time — single-turn testing missed it, Cisco AI security lead warns at VB Transform 2026
An AI now judges every move Rubrik's agents make, its AI chief said at VB Transform 2026 — but no one's measured if the judge is right
The credential that let OpenAI's agents into Hugging Face exists in most enterprises right now
OpenAI's models broke containment and cyberattacked Hugging Face — what enterprises need to know
Evals are the new PRD, Expedia’s AI chief tells VB Transform 2026
Safety guardrails blocked Hugging Face's defenders, not the attacker, when an AI agent breached its systems
AI confidence just dropped 17 points in six months. That’s actually great news.
TechCrunch
How AI guardrails are impeding the work of offensive cybersecurity researchers
AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing
US government says Iran-linked hackers are disrupting American water and energy providers
How OpenAI’s human mistake led to the AI-powered hack on Hugging Face
If you pay a hacker’s ransom, chances are that they’ll come back for more
Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era
AI music generator Suno breach affects 55M users, per Have I Been Pwned
Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk
Hackers stole ‘significant’ amount of data from tech firm relied on by thousands of US hospitals and pharmacies
Watch Flock Safety CEO Garrett Langley discuss the future of surveillance at TechCrunch Disrupt 2026
Network World Security
NetworkManager update advances IPv6-only support, Wi‑Fi management, and security for Linux-based operating systems
Google has started selling TPUs, but still keeps most for itself
Linux XFS has a decade-old race condition allowing full root access
Federal quantum bet grows with DARPA’s $125 million PsiQuantum award
IBM keen on mainframe even after 42% revenue drop in Q2
Q&A: Google’s AI and computing chief talks about its shapeshifting data centers
Google transforms its data center architecture for agent era
Oracle expands Cloud@Customer with new database service for mid-sized workloads
Nvidia unveils Spectrum-X networking platform designed to connect millions of GPUs
Arista debuts unified SD-WAN edge platform
Help Net Security
The automotive software vulnerabilities hiding in your dashboard
Governing Al agents at scale: Lessons from the leaders who’ve done it
Ransomware gangs go after EMEA healthcare’s supply chain
The best-funded companies open the most phishing attachments
Ransomware in 2026: More groups, more victims, no slowdown
New infosec products of the week: July 24, 2026
How attackers hosted a fake Claude download page on the claude.ai domain
Cobalt adds Autonomous Pentest to scale application security testing
Months-long breach exposes South Korean diplomats’ personal data
Attackers exploit critical Check Point flaw to take over firewall management (CVE-2026-16232)
SC Magazine
How to Evaluate Cloud Detection, Response, and Resilience Platforms
Notepad++ used in new stealthy attacks targeting Ukraine
Two-decade-old vulnerability found in Wansview security camera
How to Evaluate CNAPP and Cloud Security Control Planes
Lampion banking malware continues to target Portuguese organizations
FedRAMP director warns tech companies against selling to federal agencies if they can't fix vulnerabilities
Hospital security compromised by social engineering and poor network practices
Google rolls out selfie video sign-in for account recovery
Fabricated machine identities pose overlooked security risk
Millions of vehicles vulnerable to Bluetooth car theft attacks
© 2026 RiskDiscovery | Sponsored by:
Deception Logic