[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
AI Notetaker Lets Hackers Spy on Government, Corporate Video Calls
Device Code Phishing Up 1,500% in 2026; Vishing Doubles
Attackers Exploit N-able Patch Bypass Flaw on RMM Servers
New Tool Traces AI Videos Back to Their Source
Anthropic: Claude Attacks Result of Security Gaps, Not Model Issues
Chinese Actor Weaponizes Deepseek AI Agent to Attack Security Firm
Is There Really a Fix for CISO Fatigue?
CISA Issues Fresh SBOM Guidance. Did They Get It Right?
The Morning After We Pull a Root of Trust, Nobody Owns It
Interpol Leverages Global System to Curtail Fraud Payments
Ars Technica
Claude published malicious code to the Internet and attacked 3 real companies
Max-severity Exchange server flaw under active exploitation by Kremlin hackers
Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission
We now have a better understanding how OpenAI hacked into Hugging Face
Microsoft unveils AI security tools it says outperform competing platforms
TreeSize won't renew perpetual-license support unless users subscribe
HP fined 1.4 billion rupees for “cartelization” of ink cartridges, toner, PCs
Now, even Russia's most elite hackers are using Clickfix to infect devices
Energy IPOs surge as investors hunt for ways to play AI boom
Sheetz is quitting VMware, migrating 11,000 virtual machines
CyberScoop
How companies could share cyber risks without exposing their secrets
Public interest coalition urges Congress to investigate OpenAI, Hugging Face hack
CrowdStrike: AI is now both the weapon and the target in cyberattacks
Trump blames Minnesota for cyberattacks on water sector, drawing pushback from cyber world
What the Hugging Face breach reveals about defense in the age of agentic AI
Anthropic says its AI accidentally hacked three companies during safety tests
Okta’s deal for Permiso aims to close gaps in identity threat detection
CISA issues recommendations to federal agencies on open-source software security
We know how to protect our troops from telecom attacks. We’re just not doing it.
Ghanaian national sentenced to 7 years in prison for stealing $10M from romance scam victims
InfoSecurity Magazine
Cybercriminals Bypass AI Safety Controls by Splitting Malicious Tasks Across Multiple Sessions
Cloud and SaaS Environments Now Top Targets for Attackers
AI Accounts for Over Half of Cybercrime in Africa, Says Interpol
UK’s Police National Legal Database Reveals Data Breach
China-Linked Threat Actors Weaponize New Vulnerabilities in Under a Day
Midnight Blizzard Targets Travelers via Captive Portals
HollowFrame Loader Uses Fake Python DLL to Evade Defender
Korea’s Largest Telco KT Fined $38m After Femtocell Campaign
Coldcard Users Lose $89m After Bitcoin Wallet Is Hacked
Chinese Hacker Uses DeepSeek AI to Orchestrate Vulnerability Exploits
SecurityWeek
Obsidian Security Raises $85 Million at $1.1 Billion Valuation
TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover
Gemini Agent-to-Agent Attack Method Exposed Secrets, Enabled Pull Request Tampering
Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks
150,000 Impacted by Madera Community Hospital Data Breach
Microsoft Bug Bounty Program: $20 Million Paid to 500 Researchers
New York Awards $9 Million to Strengthen Cybersecurity at 153 Water Systems
Black Hat USA 2026 – Summary of Vendor Announcements (Part 1)
Visa to Acquire Fraud Intelligence Firm BioCatch for $2.4 Billion
Cyberattack Hits Liechtenstein’s Register of People Behind Companies and Foundations
ZDNet
The best anti-AI smartphones in 2026: Expert tested and recommended
The best Garmin watches of 2026: Expert tested and reviewed
The best Hisense TVs of 2026: Expert tested for streaming, gaming, and more
AI is finding bugs faster than humans can fix them: How enterprise security teams must adapt
The Ember Smart Mug 2 will keep your coffee warm for hours - and it's on sale
T-Mobile will give you the new Samsung Galaxy Z Flip for practically nothing if you preorder now
I tried buying a MacBook Air from Apple today - shipping was delayed by over a month
AI is both a cyber weapon and a massive target, CrowdStrike warns
AI shopping searches surged 200% in one year - and it's a top priority for commerce leaders now
This free Linux tool makes it easy to check your PC battery and disk usage - here's how
The Hacker News
When Vibe Hacking Turns AI into the Junior Hacker Every Adversary Always Wanted
Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent
New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root
DOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT
CISA Adds Exploited N-able N-central Flaw to KEV After Customer Compromises
18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users
Google Password Manager Attacks Could Let Malware Hijack Passkey-Protected Accounts
INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws
⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks
FOMO in the SOC: Where AI Platforms like Claude Actually Fit
BleepingComputer
Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts
New Pass-ta-key attacks let malware hijack Google-synced passkeys
New DOUBLECUP ClickFix service hides malware in browser cache images
Fake Roblox Xeno script launcher pushes infostealer, RAT malware
N-able warns of N-central auth bypass flaw exploited in attacks
ExfilSquad hackers leak info of over 100,000 UK police officers, staff
Inside the Underground Business of the Android BTMOB RAT malware
OpenAI teases Astra, its next major AI model, after it solves 10 long-standing math problems
COLDCARD wallet RNG flaw likely linked to $88 million Bitcoin theft
Google Chrome may soon block New Tab hijacker extensions by default
gbhackers
Fake Xeno Roblox Cheats Deliver Java RAT That Steals Discord and Gaming Accounts
OpenAI Shuts Down ChatGPT Accounts Powering a Cambodia-Based Scam Factory
Shai-Hulud Supply Chain Attack Compromises Keyv and Hundreds of npm Packages
OWASP Introduces Subtractive Security Top 10 to Eliminate Attack Paths and Reduce Cyber Risk
CISA Adds Exploited N-able N-central Flaw Enabling Remote Admin Takeover to KEV
Russian Access Broker Sells Network Access to Ransomware Gangs While Spying on Ukraine
China Is Training Military AI With Knowledge Extracted From American Models
18 Malicious npm Packages Deploy Cross-Platform RAT Against Alibaba Developers
Critical Gitea Flaw Lets Unauthenticated Attackers Read Server Files and Execute Code
macOS CUPS Flaw Lets Local Attackers Write Arbitrary Files as Root
Cybersecurity Dive
AI makes costly spearphishing attacks easier, cyber insurer says
OT security coalition urges Congress, CISA to enact reforms amid water sector hacks
China-based hacker employs DeepSeek in autonomous threat campaign
How volunteer cyber experts are helping protect rural water systems
Anthropic says human error let Claude AI models escape test environment and hack third parties
US authorities see ‘significant escalation’ in attacks on water system devices
Hackers abuse Microsoft Teams in ransomware campaign through fake IT support
Shadow AI, leadership resistance make AI governance tough for worried CISOs
As data breaches grow costlier, ungoverned AI creates new risks
Authorities investigating a coordinated cyberattack against Minnesota water systems
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Tennessee congressional hopeful accused of shooting license plate cameras
CAF Bank reopens online service but warns of further outages
Cloudflare has mostly ditched third party security tools, suggests not trying that at home
Google dev kit spurs first-ever agent-on-agent violence
AI slop pollutes the CVE pipeline with fake vulns
Russian spies turn public Wi-Fi into malware delivery systems
Water system cyberattacks spread to Georgia, Michigan amid US-Iran conflict
UK government investment arm cops to 40-hour leak of officials' contact details
AI is 'both the weapon and the target' in latest wave of cyberattacks
The most famous brand in physical security got pwned by ShinyHunters
VentureBeat
Not just OpenAI: Now Anthropic says its internal models got online and cyberattacked 3 other organizations
Mastercard spent decades training its fraud system to see bots as thieves. Now bots are the ones doing the buying.
Hush Security says the AI security problem has shifted from protecting models to governing identities as autonomous agents spread
The lineage behind 69% of open models was never verified. Cisco just fingerprinted almost 900 for free
NTT DATA AIVista and Snowflake: Identity alone won’t secure enterprise AI agents
Visa used Mythos to hunt for bugs in its own payment network, then open-sourced the harness that made it possible
Snowflake launches Cortex AI Gateway to control AI agents and prevent runaway enterprise costs
TechCrunch
Who’s legally to blame for Anthropic and OpenAI’s autonomous AI hacks? It’s complicated
Apple challenges UK government’s latest demand for iCloud backdoor: report
Horizon3 hits $2 billion valuation with $250M Series E as AI threats escalate
Samsung bans smart TV apps that share users’ internet connections with strangers
CareCloud begins to notify hundreds of thousands after hackers stole medical records
Google says it fixed more Chrome bugs in June than over the past two years, thanks to AI
Okta buys AI security startup Permiso — source says for about $200M
In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable
FTC sues Hims & Hers for allegedly sharing patients’ medical data with advertisers Meta and Snap
US government bans new foreign-made humanoids, robot dogs, and solar inverters, citing risks to national security
Network World Security
Cisco exec testifies at US Senate panel on AI’s network impact
Nvidia’s next move? Financing AI
AMD unveils AI GPU to challenge Nvidia’s Rubin
Cato Networks launches agentic threat prevention
Groundcover raises $100M as observability pivots from monitoring to AI infrastructure
From dangling DNS records to reverse DNS gaps, attackers find new blind spots
Data center developer eyes disused newpaper printing plant
Broadcom patches vulnerabilities all over VMware
Microsoft doubles down on multi-model AI as it builds a Copilot super app
How Port Nelson overhauled its operations with private 5G
Help Net Security
Snyk unveils continuous AI pentesting and agent red teaming
RapidFort Runtime brings continuous CVE monitoring and tamper detection
Russian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malware
Indusface SwyftComply AI enables autonomous virtual patching for AI-discovered flaws
ESET introduces new AI capabilities for autonomous agent security
Joinable Labs unveils Joinable Security for threat intelligence and AI-driven response
Securonix enhances Unified Defense SIEM with AI agent detection and lower data costs
Uptime Kuma 2.5.0 waits two weeks before trusting a new npm package
Legit Security VibeGuard 2.0 brings endpoint security and real-time guardrails to AI coding agents
Tanium expands autonomous security across AI, exposure management and SecOps
SC Magazine
Researchers find ‘agent-to-agent’ privilege escalation in Google’s ADK for Python repo
Prompting for Patches That Fix Vulns Without Adding New Ones - Keith Hoodlet - ASW #394
UK government adviser admits data exposure of 51 officials
River Bank reports hackers deleted data stolen in June ransomware attack
New bill proposes lifetime identity protection for OPM data breach victims
Terra Security launches feature to automatically block attacks
BTMOB Android malware service fragments into a complex ecosystem
Cato Networks introduces agentic threat prevention to counter AI-driven attacks
UK police legal database breach exposes officer details, increasing phishing risks
AI-related security breaches surge in UK firms, IBM report reveals
© 2026 RiskDiscovery | Sponsored by:
Deception Logic