[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
DarkReading
Social Engineering AI Agents: The New BEC for 2026
'AgentCorruption' Puts AWS Environments At Risk With Single Prompt
Venezuelan Cartel's Malware Honcho Nabbed for ATM Jackpotting
Russian Spies Give 'MatchBoil' Malware a Stealthy Facelift
Writing the Next Chapter
Australian Gov't Weighs Mandatory AI Incident Reporting
Citizen Lab Slams Trump Administration, 'Techno-Fascist' Executives
Anthropic Gives Vetted Defenders Fewer Claude Guardrails
OpenAI Agent Escape Causes Wikimedia Service Outage
ClickFix Attacks Evolve to Better Hide Malicious Payloads
Ars Technica
Hackers obtain counterfeit TLS certificates for Google and other large services
OpenAI agents tried to hack Wikipedia tools and flooded it with traffic
Licensing costs driving 90 percent of VMware users to explore options: Survey
MCP for agent-to-agent comms may be the riskiest protocol you've never heard of
Apple changes full-disk access permissions to curb abuse from AI agents
Hacks of 2 federal agencies in a month have spilled a bonanza of sensitive data
Memory executives expect RAM shortage to continue through 2028
Attackers have been exploiting critical Zimbra flaw to steal emails
Cloudflare plans to issue quantum-safe TLS certificates
Your uncle’s frozen Mac says it’s infected after viewing a Google ad. Now what?
CyberScoop
Leader of 764 pleads guilty, faces up to 30 years in prison
Anthropic rolls out program for ‘long-term commitment’ to secure critical infrastructure, open source software
DOJ, FBI seize Flax Typhoon-linked hacking tools Microscan, FishHub
Ransomware recovery CEO indicted after allegedly paying hackers and pocketing millions
OpenAI says Iran, Russia used AI journalists, think tanks to influence Western media
Quantum computers could break today’s encryption. Washington needs to prepare now.
Major rules for federal contractors handling sensitive data are nearing the finish line
FBI, French authorities seize deepfake CSAM-for-sale websites
PoeLLM malware has assembled a sweeping botnet, taking technical cues from a poem
Alert: FortiBleed remains active campaign, can lock out users or lead to ransomware attacks
InfoSecurity Magazine
Wikimedia Says Rogue AI Agents Abused its Platforms
Q3 2026 Sets New Record for Ransomware Attacks
UK and Allies Warn of Cyber Threat from China’s Integrity Technology Group
AI Training Critical as Governance Challenges Grow
Major AI Firms Pledge Data Protection Changes Following UK Privacy Watchdog Push
Attackers Hijack Three ccTLDs to Obtain Google Certificates
ASOS Confirms Data Breach Linked to Stolen Employee Credentials
Russia-Aligned UAC-0099 Evolves MATCHBOIL Malware
Chinese Hacker Deployed AI in Campaign Against South Korean Banks
Critical Flaw in Multiple Atlassian Products Exploited in the Wild
SecurityWeek
In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years
Google Domains Impacted by Recent ccTLD Hijacks
Unpatched AhsayCBS Vulnerabilities Exploited in the Wild
Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries
US Disrupts Chinese State-Sponsored Hacking Tools
Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security
Citrix Urges Immediate Patching of Critical NetScaler Vulnerability
Google Pixel 10 Exploits Earned Hackers $560,000 at Pwn2Own
Formula Predicts When AI Chatbots Are at Risk of Turning Bad
Cisco Patches a Dozen Critical Vulnerabilities
ZDNet
Got a Microsoft 365 subscription? Your storage is about to shrink
Regulators are trying to protect you from being fired by AI – here’s how
Can AI fix legacy IT? The ‘economics don’t hold up,’ says former IBM strategist
Yelp, who? 4 ways Google Maps can help you find your next meal – and order it
Microsoft’s new Surface Laptop Ultra finally has a starting price (you should sit down)
Managers are using AI to write performance reviews – and it shows
Use Gemini for free? You’ll soon be limited to its weakest AI model
Office 2021 support ends this month – you have 5 options
Mistral’s new Le Chonk model brings AI cybersecurity to your business – and you control it
How I made a paid Mac app in 11 days with Claude – without writing a single line of code
The Hacker News
TP-Link Sued by Four More U.S. States Over Router Security and China Ties
Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access
Anthropic Launches Free AI Vulnerability Scanner for Open-Source Projects
Attackers Exploit AhsayCBS Flaws to Deploy XMRig Miners Disguised as Microsoft Edge
Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies
The AI Velocity Paradox: Why Security Is Decades Behind AI Ambition
GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys
Three Teams Demonstrate Remote Hacks of Fully Patched Google Pixel 10 at Pwn2Own
Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments
FBI Seizes 7 Domains, Disrupts Flax Typhoon Tools Used in Critical Infrastructure Intrusions
BleepingComputer
How to keep AI agents within their permissions
Max severity SonicWall SMA1000 flaw now exploited in attacks
Man admits to running network of 15,000 money mules for cybercriminals
Microsoft: Outdated Windows devices will stop receiving security updates
Citrix warns admins to patch new NetScaler RCE flaw immediately
Hackers get $1,262,000 for 98 zero-days at Pwn2Own Ireland
FBI disrupts Chinese hacking tools used to breach critical infrastructure
Ransomware attack disrupts Japan's IDCF Cloud used by govt clients
Low-cost Android phones ship with residential proxy malware
FakeGit malware campaign returns with 17,610 malicious GitHub repos
gbhackers
React Server Components Vulnerability Lets Attackers Freeze Next.js Servers With a Single Request
CastleStealer Malware Bypasses Chromium ABE and Adds Remote Command Execution Capabilities
Cisco Talos Warns AI Agent Swarms Can Compress Cyberattacks From Months to Hours
Suspected TraderTraitor Hackers Trojanize Terraform Provider to Deploy Cross-Platform Malware
12 Best Software Supply Chain Security Tools Compared (2026): Features & Pricing
11 Best API Security Tools Compared (2026): Features & Pricing
FBI Disrupts Major Scam Centers in Ghana, 130+ Detained and 300+ Devices Seized
Warden Stealer Malware Targets Claude, Codex, Grok and Cursor to Steal AI Agent Data
Hackers Target Hikvision Cameras in Ukraine With RCE Exploits Amid Russian Airstrikes
MATCHBOIL Malware Adds Sandbox Checks, .NET Reactor Obfuscation and Persistent C2
Cybersecurity Dive
FBI seizes domains linked to China-nexus botnet
As frontier models go rogue, colleges beef up AI cybersecurity education
What the C-suite needs to know about AI governance
US government lagging in transition to post-quantum encryption, GAO finds
AI underscores singular importance of phishing-resistant authentication, Okta says
FBI warns that FortiBleed credential-harvesting attacks are locking out firewall users
IBM’s AI-powered vulnerability clearinghouse finds hundreds of Java flaws
US cyber resilience, oversight tested in series of attacks
Citrix issues patch for third exploited flaw in NetScaler
White House AI task force faces expertise, partnership challenges
Threatpost
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Ransomware Attacks are on the Rise
Cybercriminals Are Selling Access to Chinese Surveillance Cameras
Twitter Whistleblower Complaint: The TL;DR Version
Firewall Bug Under Active Attack Triggers CISA Warning
Fake Reservation Links Prey on Weary Travelers
iPhone Users Urged to Update to Patch 2 Zero-Days
Google Patches Chrome’s Fifth Zero-Day of the Year
The Register
Citrix gives NetScaler admins another critical reason to patch
US disrupts Chinese hacking tools as 7 govts warn of PRC spies stealing sensitive data worldwide
High-severity Nvidia bug could crash GPU monitoring on exposed servers
Shai-Hulud worm makes jump to AI infrastructure with Tensorlake compromise
Fighting GenAI with GenAI: The New Email Security Landscape
UK and Germany team up against Russian cyberattacks as Brexit rethink looms
Cheapskates wouldn't pay for security help, got hit by ransomware, and went bust months later
Ransomware fixer claimed he could decrypt files, allegedly defrauded clients instead
Attackers hijacked top-level domains, minted fake security certs for Google and other orgs
AWS launches open-source AI agent sandbox to prevent YOLO mode disasters
VentureBeat
Microsoft's record Patch Tuesday shows why severity can't decide what gets patched first
Your vibe-coded apps are a ticking time bomb for your business. Here’s how to secure them.
AI agents need more than access control — they need identity at runtime
22 of 37 surveyed companies that enforce AI agent permissions still have agents sharing credentials
OpenAI’s new ‘Private Intelligence' targets a growing enterprise concern: who can see your AI data?
Anthropic documented a new problem for security teams: Attacks that can adapt while they're underway
The defender's head start is gone. Cisco's Liz Centoni on the fight to get it back
TechCrunch
Surveillance company Flock cuts staff as privacy backlash grows
Asos confirms breach of customer data after hackers send rogue app notification
CIA officer admits to creating fake top secret government program to steal over $190M, including gold bars
LibreOffice says ‘no AI’ is now a software feature
Hackers steal 8 million citizens’ records from Danish government database
Google froze its open source bug bounty program due to a ‘significant rise’ in AI submissions
Federal judge calls Flock ‘indiscriminate mass surveillance’
OpenAI safety employee resigns, claiming the company’s ‘culture is broken’
Apple says it’s tightening macOS ‘Full Disk Access’ controls due to new risks from AI agents
Medical records giant Epic pauses product development to fix security bugs that risk patients’ data
Network World Security
Citrix issues its weekly critical security patch for NetScaler ADC and NetScaler Gateway
Tool sprawl, AI complicate enterprise network operations
Nvidia-backed Upscale takes on AI networking silos with Token Fabric
2026 network outage report and internet health check
SonicWall’s latest critical flaw indicates a security pattern, not another one-off bug
Arista steps up its Ethernet challenge to Nvidia’s AI scale-up networking fabric
Dell gives AI agents a broader view of enterprise data
HPE supercharges ProLiant servers with AMD’s EPYC 9006 processors
AMD to ramp up CPU, GPU supply in 2027 as AI demand surges
Cisco readies new control plane for quantum networks
Help Net Security
High-severity NVIDIA vulnerability lets unauthenticated attackers crash GPU monitoring
Anthropic offers free AI security scans to open-source maintainers
FBI disrupts Flax Typhoon hacking tools used in global cyberattacks
Product showcase: SimpleLogin keeps your email address private with aliases
October 2026 Patch Tuesday forecast: Time for an Office cleanup
What the BPFDoor backdoor tells us about attacks on the network edge
Thousands of wind and solar park systems sit exposed on the internet across Europe
PCI SSC calls for human approval of AI agent actions involving cardholder data
Companies want autonomous IT operations but hesitate to let AI act alone
Authorities seize sites selling hacked, stolen intimate images of 17,000 women and girls
SC Magazine
Cybersecurity predictions that came true in the first half of 2026
The five legitimate 'no change' decisions: no-action, monitor, defer, transfer, and risk acceptance
Management of change for OT security: running visibility and remediation through MoC
Routers on Trial, AI Found More Bugs - PSW #947
Four US states allege TP-Link defrauded customers, seek damages
Transforming MDR: How AI challenges and strengthens protection services
As AI gains autonomy, who remains accountable?
Tensorlake npm package compromised in supply chain attack
Australia's AI ambition faces talent shortage and cybersecurity gaps
Why we need continuous cyber training as AI gathers strength
© 2026 RiskDiscovery | Sponsored by:
Deception Logic