Security intelligence
All coverage
Security signals, without the noise.
Current reporting from security alerts, threat intelligence, incident response, fraud, practitioner blogs, community feeds, and watch-and-listen sources.
[Virtual Event] Cybersecurity Outlook 2027
darkreading Ā· 1h ago āsources
Hackers hijack Google domains after breaching ccTLD registries
US posts $10 million reward for accused Chinese āHafniumā hackerThe Record from Recorded Future News Ā· All coverage / Incidents
ā
Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google DomainsThe Hacker News Ā· All coverage / Incidents
ā
Can You Tell the Difference Between an AI Agent and a Bad Bot?Blog ā Forter Ā· All coverage / Fraud
ā
Showing 180 of 904 loaded entries. Search and all-headlines view include all available entries in this section. Browse the feed archive.
Complete index
Recent stories
Every loaded article, grouped by its original feed. Search scans source names and headlines.
Density
Sort
Hackers hijack Google domains after breaching ccTLD registries
Hackers obtained unauthorized HTTPS certificates for several Google domains and hijacked domains in the country-code top-level domains (ccTLDs) for Ghana, American Samoa, and Sierā¦
Microsoft Outlook to block MSIX attachments starting November
Microsoft announced that it will add .msix and .msixbundle attachments to the list of blocked attachments in Outlook Web and the new Outlook Windows client starting next month.
PoeLLM malware infects exposed AI servers in cryptomining attacks
A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads.
Ransomware has a new target. Is your backup ready?
Ransomware groups are increasingly targeting backup infrastructure to eliminate recovery options and increase pressure on victims to pay. Kaseya explains why organizations need isā¦
US posts $10 million reward for accused Chinese āHafniumā hacker
$11 million plan for psychological support at Cyber Command gets fresh boost from lawmakers
Arizona courts say hackers stole info on more than 1.3 million people
Oklahoma judgeās Flock ruling shows the power of Supreme Courtās digital evidence decision
Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains
Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer
SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances
Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely
Cisco Advance Notification for Publication of October 7, 2026, Security Advisories
On October 7, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releā¦
Cisco Nexus 9000 Series Fabric Switches in ACI Mode Endpoint Group Contract Bypass Vulnerability
A vulnerability in the endpoint group (EPG) contract functionality of Cisco Nexus 9000 Series Fabric Switches in ACI Mode could allow an unauthenticated, remote attacker to bypassā¦
Cisco Application Policy Infrastructure Controller API Command Injection Vulnerability
A vulnerability in the web-based management API for Cisco Application Policy Infrastructure Controller (APIC) could allow an authenticated, remote attacker to execute arbitrary coā¦
Cisco Application Policy Infrastructure Controller Unauthorized File Access Vulnerability
A vulnerability in the export policies functionality of Cisco Application Policy Infrastructure Controller (APIC) could allow an authenticated, remote attacker to access sensitiveā¦
3 lessons from frontier AI vulnerability research
Read how How Microsoft Security's FORGE Lab is scaling vulnerability research from Windows to the Linux kernel.
CISO perspectives on managing vulnerability risks in the age of AI
Learn how CISOs can mitigate cybersecurity risks and increase resilience in the age of AI-powered vulnerability management.
Preparing governments for an era of interconnected cyber risk
Insights from the 2026 Microsoft Digital Defense Report
Read highlights from the 2026 Microsoft Digital Defense Report, which reflects a security environment that continues to grow more interconnected.
Exploitation attempts against critical Atlassian flaw have begun (CVE-2026-21589)
A few hours after researchers published a technical rundown of CVE-2026-21589, exploitation attempts were registered by honeypots.
Gremlin Foresight AI finds system weaknesses and verifies the fixes
Gremlin launches Foresight AI to detect reliability risks, recommend fixes and validate them before systems suffer costly outages.
Imply Lumi connects SIEM tools and AI agents to more security data
Imply Lumi helps security teams search more logs in existing SIEM tools and AI agents while expanding retention and cutting costs.
FortiBleed is still active, with attackers locking admins out of Fortinet firewalls
Some organizations hit by the FortiBleed campaign have been locked out of their own Fortinet firewalls, U.S. agencies warn.
CVE-2026-102489 Deep-Dive: Zammad Session Leak to RCE
Presenting DiagNG: After QCSuper, a new open-source initiative for freeing up mobile baseband Diag protocols
You Wonāt Hear About These, Even In Myths (Atlassian Jira, Confluence (and more) Pre-Auth Arbitrary File Read CVE-2026-21589) - watchTowr Labs
Teaching network intrusion in the funnest way possible
Cybercrime Detective Explains Cybersecurity Jargon in 60-Second Videos for Cybersecurity Awareness Month
Heimdal's new weekly "Cyber in 60" series has ex-detective Adam Pilton decode one term in under a minute.
Innovation wins. Why smaller beats bigger
Benedict Jones spent years working for McAfee and Sophos. While doing threat research at Sophos, he spotted a problem in mobile threat defence that nobody had actually fixed. Heāsā¦
Heimdal partners with Elovade to bring unified cybersecurity platform to the DACH region
Heimdal and Elovade partner to bring a unified cybersecurity platform to MSPs across Germany, Austria, and Switzerland, simplifying prevention, detection, and response.
Slow is a design principle, not a delay
AI labs are pacing their capability growth. Attackers won't. Here's what that asymmetry means for cybersecurity teams and AI-enabled defense.
You Wonāt Hear About These, Even In Myths (Atlassian Jira, Confluence (and more) Pre-Auth Arbitrary File Read CVE-2026-21589)
FortiBleed Operations Continue Targeting Exposed Systems Leading to Reports of Lockouts
Japan collars fugitive suspect of ransomware syndicate Qilin | The Asahi Shimbun: Breaking News, Japan News and Analysis
CyberXero: An AI-Augmented Initial Access Broker Targeting Ukrainian Critical Infrastructure
News alert: Aembit gives enterprises new controls over personal AI agents accessing sensitive systems
SILVER SPRING, Md., Oct. 6, 2026, CyberNewswire Ć¢ā¬ā Aembit, the identity control plane for AI agents, today announced support for securing personal agentsĆ¢ā¬ā¢ access to enterpriseā¦
SHARED INTEL Q&A: AI finds flaws faster ā defenders still need to fix what attackers exploit
Security teams are being told they have hours to patch. Related: AI agents have a Lord of the Flies problem The warning has a real basis. In June, AnthropicĆ¢ā¬ā¢s frontier red teamā¦
News alert: Archipelo launches Salmon to create verifiable audit trails for AI agent activity
SAN FRANSICO, Sept. 25, 2026, CyberNewswire ŃŠŠ¤ Archipelo today announced Salmon, Execution Verification Infrastructure (EVI) for AI agents and autonomous systems, powered by a crā¦
Guest Essay: Before AI agents takes hold, define who can challenge them and who owns the outcome
Early in my military career, I learned a simple lesson: when you give people a task, you also have to give them room to think. Related: AI agents take initiative, unchecked As a yā¦
Recorded Future Debuts Autonomous Defense, Built for Machine-Speed Threats
Recorded Future just revealed autonomous defense capabilities. The platform hunts, investigates, and stops threats on its own, acting on real intelligence.
Social Engineering in the Age of Synthetic Media
How AI Changes Phishing, Impersonation, and Identity Verification
Recorded Future Launches MCP, the Intelligence Layer for Agentic Security Operations
Recorded Future launches Model Context Protocol (MCP), providing AI agents and LLM workflows direct access to the Intelligence GraphĀ® for accurate, automated decision-making.
Introducing the new Copilot with Home, Code and Autopilot
Building the system for AI at work
There's no shortage of sound and fury in AI right now.
Introducing Microsoft 365 G7: Intelligence + Trust for the mission ahead
Microsoft 365 G7 brings AI, Copilot, agent governance, security, and compliance together to help government agencies modernize securely.
MacSync under the microscope: new delivery methods and a new payload
We look at a new version of the MacSync macOS stealer with a backdoor module that targets crypto enthusiasts and developers.
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
Kaspersky GERT experts dive into the technical incident analysis of PAYLOAD ransomware: an encryptionless, binary-less operation that abused Active Directory mechanisms for managiā¦
The Odyssey and Trojans again: MovieReaper attacks users in multiple countries through compromised torrents
Kaspersky experts have discovered a new MovieReaper campaign. The multi-stage Trojan spreads through movie torrents, such as āThe Odyssey,ā and uses the Solana blockchain to hideā¦
Proofpoint Breaks Down the Divide Between Data Security and AI Security with the Industryās First Unified Agentic System
A single system for intent and access to empower organizations to adopt AI without losing data control or missing emerging risks across employees and AI agents Point security tools
Proofpoint Stops the Attacks Traditional Defenses Miss in the AI Era
Intent-based detection and multi-stage AI reasoning identify and stop sophisticated attacks before, during and after they reach people. Stops sophisticated attacks in one connected
Proofpoint Recognizes 2026 Global Partner Award Winners at Flagship Event
The awards presented at Proofpoint Protect 2026 celebrate partners driving customer impact, growth and secure AI adoption worldwide.
Ransomware: A Continuing Threat for Small Businesses
Ransomware remains one of the most damaging cybersecurity threats facing small businesses. Here are some ways to prevent risk.
AI in Tax Season: Risks, Scams, and How to Protect Your Data
Protect yourself this tax season while using AI. Learn how to safely leverage AI tools, avoid tax scams, and ensure your filings are accurate with guidance from Alloy Silversteinā¦
Tax Season Scams to Watch For This Year
Tax season is a busy time for taxpayers and, unfortunately, a busy time for scammers as well. Each year, the Internal Revenue Service continues to warn individuals and businessesā¦
China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies
A Tale of Two SOCs: Insights From Two Red Team Assessments
Same tactics, very different results. This advisory compares defensive outcomes from two red team assessments. Learn what drove detection and implement key
Defending Against an Active Threat to Siemens S7 Series PLCs
This advisory warns of threat actors targeting Siemens S7 Series programmable logic controllers (PLCs) and includes mitigations to be understood and applied
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, (Wed, Aug 26th)
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, Author: Johannes Ullrich
Obfuscating IP Addresses as Hostnames, (Tue, Aug 25th)
ISC Stormcast For Tuesday, August 25th, 2026 https://isc.sans.edu/podcastdetail/10066, (Tue, Aug 25th)
Microsoft Build 2026: Building agentic apps with Microsoft Fabric and Microsoft Databases
Microsoft Build 2026 highlights advancements in app development with Microsoft Fabric and Microsoft Databases, emphasizing a unified data and AI platform.
Azure IaaS: Defense in depth built on secure-by-design principles
Explore how Azure IaaS uses defense in depth and secure-by-design principles to deliver layered, scalable cloud security across compute, network, and data.
Enforcing trust and transparency: Open-sourcing the Azure Integrated HSM
Learn how Microsoft Azure Integrated HSM delivers hardwareāenforced key protection in the cloud, combining FIPS Level 3 assurances with transparency and openāsource collaboration.
No matching sources found.
Showing 180 of 904 loaded entries. Search and all-headlines view include all available entries in this section. Browse the feed archive.