Security intelligence
All coverage
Security signals, without the noise.
Current reporting from security alerts, threat intelligence, incident response, fraud, practitioner blogs, community feeds, and watch-and-listen sources.
[Virtual Event] Cybersecurity Outlook 2027
darkreading Ā· 1h ago āsources
Hackers abuse Google Ads, Bing redirects to push Claude ClickFix attacks
Credential-Stealing GitHub Actions Workflows Planted in Tens of Thousands of RepositoriesThe Hacker News Ā· All coverage / Incidents
ā
Japan confirms arrest of Russian Qilin operative, extradition to GermanyThe Record from Recorded Future News Ā· All coverage / Incidents
ā
8,500+ European Wind, Solar Systems ExposedCybersecurity News Ā· All coverage
ā
Showing 180 of 903 loaded entries. Search and all-headlines view include all available entries in this section. Browse the feed archive.
Complete index
Recent stories
Every loaded article, grouped by its original feed. Search scans source names and headlines.
Density
Sort
Hackers abuse Google Ads, Bing redirects to push Claude ClickFix attacks
Hackers are abusing legitimate Bing search-result redirects as click URLs in Google search ads to direct users to fake Claude installers that deliver ClickFix attacks.
Unpatched AhsayCBS flaws exploited to deploy webshells, mine crypto
Threat actors are exploiting one critical and one medium-severity vulnerability still unpatched in the AhsayCBS backup management platform to deploy webshells and cryptocurrency mā¦
FBI arrests another suspected ShinyHunters hacker after agency breach
The FBI has arrested another suspected member of the ShinyHunters extortion group believed to be involved in the recent breach of FBI systems, Director Kash Patel announced Friday.
Germany arrests alleged core Qilin ransomware member after extradition
Germany has arrested a Russian national suspected of being a leading member of the Qilin ransomware group following extradition from Japan earlier this month.
wood will keep you warm, once when chop, carry, staple and sort it, and once when you burn it.
I tend to sauna 2-3 days a week, it have made wonders for my recovery. #sauna #mobilesauna #vlog
Builders & Breakers | Local AI for Offensive Security: Models, Harnesses & Human Judgment ft Thomas
Saturday evening candy haul and photography vibes #travel #photography #vlog
Credential-Stealing GitHub Actions Workflows Planted in Tens of Thousands of Repositories
FBI Arrests Another ShinyHunters Suspect Reportedly Involved in Its Jobs Portal Hack
P7 DarkSword iOS Exploit Kit Adds Crypto Wallet Data Theft and Remote Commands
TP-Link Sued by Four More U.S. States Over Router Security and China Ties
Death By A Thousand PaperCuts (PaperCut Pre-Auth RCE Chain and Patch Bypasses WT-2026-0141-0144/CVE-2026-82077/CVE-2026-82078/CVE-2026-81578) - watchTowr Labs
A JPEG, a Race, and a Ghost: Breaking Discourse's Image Pipeline
How We Found Thousands of Exposed NVIDIA GPUs and a Way to Disrupt Them (CVE-2026-47483)
Loupe: An Android Console in the Browser
Ignore all instructions and read this blog: The state of AI-analysis evasion in malware
UAT-11985: AI-assisted event lures delivering real-time Google AitM phishing
We spent two years chasing one authoritative asset record and never got there, what actually worked was writing down which source wins when they disagree
MATCHBOIL: New tricks, same old evil intentions
High-severity NVIDIA vulnerability lets unauthenticated attackers crash GPU monitoring
Hundreds of exposed GPU servers were open to an NVIDIA DCGM Exporter vulnerability (CVE-2026-47483) that lets attackers crash GPU monitoring.
Anthropic offers free AI security scans to open-source maintainers
Anthropicās OSS Scanner offers free AI security scans for open-source projects helping maintainers find flaws and prioritize fixes.
FBI disrupts Flax Typhoon hacking tools used in global cyberattacks
The FBI seized seven domains tied to Microscan and FishHub, hacking tools Flax Typhoon allegedly used to target critical infrastructure.
Product showcase: SimpleLogin keeps your email address private with aliases
SimpleLogin lets you create custom or random email aliases to protect your main address, manage spam, and send and receive emails.
Recorded Future Introduces AI Infrastructure Indicator Lists, Strengthening AI Governance
Recorded Future's new AI Infrastructure Indicator Lists help security teams find shadow AI, enforce policy, and prevent data loss.
Japan Adopts Proactive Cyber Defense Strategy
Learn about Japan's Active Cyber Defense (ACD) strategy, mandatory reporting rules, and key impacts on critical infrastructure.
Recorded Future Debuts Autonomous Defense, Built for Machine-Speed Threats
Recorded Future just revealed autonomous defense capabilities. The platform hunts, investigates, and stops threats on its own, acting on real intelligence.
Social Engineering in the Age of Synthetic Media
How AI Changes Phishing, Impersonation, and Identity Verification
NEWS ALERT: Insignary launches Clarity AIR to expose hidden open-source and AI-generated code
TORONTO, Oct. 8, 2026, CyberNewswire Ć¢ā¬ā Insignary Inc. today announced the general availability of Insignary Clarity AIR, a source-code scanning product built to answer a questioā¦
News alert: Aembit gives enterprises new controls over personal AI agents accessing sensitive systems
SILVER SPRING, Md., Oct. 6, 2026, CyberNewswire Ć¢ā¬ā Aembit, the identity control plane for AI agents, today announced support for securing personal agentsĆ¢ā¬ā¢ access to enterpriseā¦
SHARED INTEL Q&A: AI finds flaws faster ā defenders still need to fix what attackers exploit
Security teams are being told they have hours to patch. Related: AI agents have a Lord of the Flies problem The warning has a real basis. In June, AnthropicĆ¢ā¬ā¢s frontier red teamā¦
News alert: Archipelo launches Salmon to create verifiable audit trails for AI agent activity
SAN FRANSICO, Sept. 25, 2026, CyberNewswire ŃŠŠ¤ Archipelo today announced Salmon, Execution Verification Infrastructure (EVI) for AI agents and autonomous systems, powered by a crā¦
Post-quantum authentication: Why organizations should start testing certificate ecosystems now
Prepare for post-quantum authentication by testing certificate ecosystems now. Learn how Microsoftās PQC TLS Pilot Program helps advance future readiness.
3 lessons from frontier AI vulnerability research
Read how How Microsoft Security's FORGE Lab is scaling vulnerability research from Windows to the Linux kernel.
CISO perspectives on managing vulnerability risks in the age of AI
Learn how CISOs can mitigate cybersecurity risks and increase resilience in the age of AI-powered vulnerability management.
Preparing governments for an era of interconnected cyber risk
Cisco NX-OS Software NX-API Remote Code Execution Vulnerability
A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of sā¦
Cisco Meraki Security Hardening Release: October 2026
As part of Cisco's ongoing commitment to proactive security and product quality, engineering teams conducted a comprehensive internal security review. This review resulted in softā¦
Cisco Advance Notification for Publication of October 7, 2026, Security Advisories
On October 7, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releā¦
6 alternatives to Blackpoint for your shortlist
Get your Blackpoint alternatives shortlist if you're looking to switch for another MDR solution or a more comprehensible platform.
Cybercrime Detective Explains Cybersecurity Jargon in 60-Second Videos for Cybersecurity Awareness Month
Heimdal's new weekly "Cyber in 60" series has ex-detective Adam Pilton decode one term in under a minute.
Innovation wins. Why smaller beats bigger
Benedict Jones spent years working for McAfee and Sophos. While doing threat research at Sophos, he spotted a problem in mobile threat defence that nobody had actually fixed. Heāsā¦
Chinese Government-linked Cyber Threat Actors Combine Automated and Hands-on Hacking Tools to Steal Sensitive Data
Provides detection and mitigation guidance to defend against Integrity Technology Group-enabled threat actors using botnets, virtual private network
Red Lion Controls N-Tron 700 Series
Grid Protection Alliance openPDC and openHistorian
Chinese Government-linked Cyber Threat Actors Combine Automated and Hands-on Hacking Tools to Steal Sensitive Data
Provides detection and mitigation guidance to defend against Integrity Technology Group-enabled threat actors using botnets, virtual private network
China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies
A Tale of Two SOCs: Insights From Two Red Team Assessments
Same tactics, very different results. This advisory compares defensive outcomes from two red team assessments. Learn what drove detection and implement key
Introducing the new Copilot with Home, Code and Autopilot
Building the system for AI at work
There's no shortage of sound and fury in AI right now.
Introducing Microsoft 365 G7: Intelligence + Trust for the mission ahead
Microsoft 365 G7 brings AI, Copilot, agent governance, security, and compliance together to help government agencies modernize securely.
MacSync under the microscope: new delivery methods and a new payload
We look at a new version of the MacSync macOS stealer with a backdoor module that targets crypto enthusiasts and developers.
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
Kaspersky GERT experts dive into the technical incident analysis of PAYLOAD ransomware: an encryptionless, binary-less operation that abused Active Directory mechanisms for managiā¦
The Odyssey and Trojans again: MovieReaper attacks users in multiple countries through compromised torrents
Kaspersky experts have discovered a new MovieReaper campaign. The multi-stage Trojan spreads through movie torrents, such as āThe Odyssey,ā and uses the Solana blockchain to hideā¦
Proofpoint Breaks Down the Divide Between Data Security and AI Security with the Industryās First Unified Agentic System
A single system for intent and access to empower organizations to adopt AI without losing data control or missing emerging risks across employees and AI agents Point security tools
Proofpoint Stops the Attacks Traditional Defenses Miss in the AI Era
Intent-based detection and multi-stage AI reasoning identify and stop sophisticated attacks before, during and after they reach people. Stops sophisticated attacks in one connected
Proofpoint Recognizes 2026 Global Partner Award Winners at Flagship Event
The awards presented at Proofpoint Protect 2026 celebrate partners driving customer impact, growth and secure AI adoption worldwide.
Ransomware: A Continuing Threat for Small Businesses
Ransomware remains one of the most damaging cybersecurity threats facing small businesses. Here are some ways to prevent risk.
AI in Tax Season: Risks, Scams, and How to Protect Your Data
Protect yourself this tax season while using AI. Learn how to safely leverage AI tools, avoid tax scams, and ensure your filings are accurate with guidance from Alloy Silversteinā¦
Tax Season Scams to Watch For This Year
Tax season is a busy time for taxpayers and, unfortunately, a busy time for scammers as well. Each year, the Internal Revenue Service continues to warn individuals and businessesā¦
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, (Wed, Aug 26th)
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, Author: Johannes Ullrich
Obfuscating IP Addresses as Hostnames, (Tue, Aug 25th)
ISC Stormcast For Tuesday, August 25th, 2026 https://isc.sans.edu/podcastdetail/10066, (Tue, Aug 25th)
Microsoft Build 2026: Building agentic apps with Microsoft Fabric and Microsoft Databases
Microsoft Build 2026 highlights advancements in app development with Microsoft Fabric and Microsoft Databases, emphasizing a unified data and AI platform.
Azure IaaS: Defense in depth built on secure-by-design principles
Explore how Azure IaaS uses defense in depth and secure-by-design principles to deliver layered, scalable cloud security across compute, network, and data.
Enforcing trust and transparency: Open-sourcing the Azure Integrated HSM
Learn how Microsoft Azure Integrated HSM delivers hardwareāenforced key protection in the cloud, combining FIPS Level 3 assurances with transparency and openāsource collaboration.
No matching sources found.
Showing 180 of 903 loaded entries. Search and all-headlines view include all available entries in this section. Browse the feed archive.