Security intelligence
Incidents
Breaches and incident news
Follow breaking breach, ransomware, law enforcement, and security operations coverage from trusted security publications.
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
darkreading · 1h ago ↗sources
ChatGPT Astra is now rolling out to $20 Plus subscription
Complete index
Source grid
Every loaded article, grouped by its original feed. Search scans source names and headlines.
Density
Sort
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
Hundreds of OpenAI Agents Invaded Hugging Face Servers
Offensive Security Investments Surge as AI Threats Increase
You Need Cyber Deception for OT
Defining an AI Kill Switch Is Hard, but Necessary
The Vulnpocalypse Is Repricing the Bug Bounty Economy
Chinese Routers Sold Worldwide Contain Backdoors
Agentic AI Risks, CVE Program Concerns Permeate Black Hat USA 2026
Russian Hackers Phish EU Officials Over Messaging Apps
Dark Caracal Adds New Malware to Cyber Espionage Arsenal
'HTTP Terminator' Hunts for Novel Desync Attacks
Red Flags That Expose Fake North Korean IT Workers
Android Malware Hijacks Update System for Car Head Units
'NovaCookies' Kit Steals Microsoft 365 Sessions for $320 a Month
Interpol's Jackal IV Disrupts West African Crime Infrastructure
Nigeria Looks to Sovereign Cloud for Cyber, National Security
Hidden Prompts Trick AI Into False Email Summaries
Finding Nemo(Claw): Networking Issue Allows for LLM Poisoning in OpenClaw
Is Cyber Facing an Affordability Crisis?
ChatGPT Astra is now rolling out to $20 Plus subscription
OpenAI is now rolling out ChatGPT Astra, its most powerful model to date, to those with a $20 Plus subscription, but there's no word on when free users will get access..
Attackers conceal phishing lures using invisible Unicode characters
Threat actors have adopted the ASCII smuggling technique in phishing campaigns, using invisible Unicode characters to evade email security filters.
Over 5,400 hacked sites serve ClickFix payloads stored on the blockchain
A massive cybercriminal operation is leveraging thousands of compromised small-business websites to deliver ClickFix payloads stored in smart contracts on the BNB Smart Chain (BSC…
OpenAI admits it didn't disclose rogue AI wiki hijacking incident
OpenAI admits it did not disclose an incident where autonomous AI agents hijacked a German wiki, created 18,000 posts, shared answers, and bypassed restrictions, saying it treated…
IDScan sued over alleged data breach affecting 153 million drivers
Multiple lawsuits have been filed against identity verification company IDScan after hackers allegedly breached the service and offered to sell more than 153 million driver's lice…
Critical Citrix NetScaler auth bypass now leveraged in attacks
Attackers have begun targeting a critical-severity Citrix NetScaler auth bypass flaw (CVE-2026-19490) in the wild, according to vulnerability intelligence company Previdian.
Microsoft says some users can’t open the Teams desktop client
Microsoft is working to resolve a known issue that causes delays or blocks some users from opening the Microsoft Teams desktop client on Windows systems.
39 New Methods That Compromise Passkey Authentication
Passkeys eliminate many password-based attacks, but researchers have documented 39 methods for compromising authentication built around them. Token explains how attackers can abus…
New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges
An anonymous security researcher who uses the
Exchange Online outage causes email delays, 'Server busy' errors
Microsoft is working to resolve an ongoing Exchange Online outage that is delaying email sent to and received from external domains.
Google warns of new Chrome zero-day flaw exploited in attacks
Google has updated the Chrome browser to address an actively exploited high-severity zero-day flaw in the V8 engine and 11 other vulnerabilities.
French hospital fined €500,000 after breach exposes data of 727,000
France's data protection authority (CNIL) has fined Hôpital privé de la Loire €500,000 ($580,000) for failing to adequately protect patients' and their relatives' data.
Coder's registry infrastructure compromised to push malicious modules
Attackers compromised Coder's Cloudflare infrastructure and added unauthorized registry servers that delivered malicious Terraform modules containing credential-stealing code.
HPE patches critical ArubaOS-CX remote code execution flaw
Hewlett Packard Enterprise (HPE) has patched a critical vulnerability in the ArubaOS-CX network operating system that could lead to remote code execution.
Microsoft: KB5120998 mouse reset bug affects only non-English PCs
Microsoft says a known issue that reverts mouse settings after installing the KB5120998 August 2026 preview update affects only non-English Windows 11 systems.
Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication
Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner
Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code
Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers' Data It Said Was Deleted
Thousands of OpenAI Agents Quietly Turned an Abandoned Wiki Into Their Coordination Channel
Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universities
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
PostgreSQL Fixes 12-Year-Old Logical Decoding Flaw Enabling Replication-Role Code Execution
New Ted Backdoor Hides Inside Victims' Own HAProxy Builds to Intercept Web Traffic
Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws
Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws
Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day
GPT-6 Astra Scores 100% on ExploitBench as OpenAI Blocks PoC Exploit Requests
ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories
Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root
BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory
Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data
US Becomes Top Target in RMM Phishing Campaign Spanning 46 Countries
Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
In Other News: Microsoft’s Cloud Patches, Hacked Dropbox Accounts, Guardio’s $1.1B Valuation
HPE Patches Critical RCE Vulnerabilities in AOS-CX
OpenAI Pledges $1 Billion to Bring Frontier AI to Critical Infrastructure Defenders
Sangoma Switchvox Vulnerabilities Exploited in the Wild
12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover
Catch Raises $5 Million for AI Executive Assistant With Guardrails
VMware Workstation and Fusion Updates Patch Critical Vulnerability
Google Patches 6th Chrome Zero-Day of 2026
Nvidia Is Buying AI Platform Hugging Face for $13 Billion
OpenAI Agents Hacked Another Website
ICE Wants to Know Who Bought a Certain Green Beanie From REI in the Last 2 Years
Nobody Is Saying Why OpenAI and Anthropic Had Outages Today
Prediction Market Betting Is Getting People Banned and Arrested
This Is Flock’s AI Search Tool for Cops
OpenAI Is About to Release Its First AI Model With ‘Critical’ Cyber Abilities
Using High-Energy Laser, US Shoots Down Drones Near Mexico Border
ATM Flaws Reveal Key Weaknesses in the Software Supply Chain
The Cybersecurity Apocalypse Is Coming in ‘Months,’ AI Giants Warn
Microsoft Teams Has Become a Haven for Scammers in China
How an Atlanta Suburb Ended Up Sharing Flock Data With More Than 2,000 Organizations
A Georgia Cop Used Flock to Track 2 Other Cops: His Ex and Her Friend
OpenAI’s Hugging Face Hack Debrief Raises More Questions Than It Answers
FBI Disrupts Chinese Proxy Tools Used in Mass Hacking of US Agencies and Infrastructure
The County Prosecutors Who Became ICE Informants
Your Expired Visa Card Could Be ‘Zombified’ to Make Contactless Payments
China Is Strapping ‘Digital Bombs’ to Civilian Infrastructure—Is the US Ready?
Reverse-Lookup Service Exposed Millions of Photos of People’s Faces
Flock Has a Powerful New AI Tool for Police. We Got Its Code
OpenAI Overhauls Safety Protocols After Its AI Agents Went Rogue
US, Britain to coordinate on scam center takedowns
UK account-hack losses surge as new reporting system exposes hidden cases
Russian data centers face new security requirements amid Ukraine's drone threats
G7 urges organizations to prepare for quantum cyber threats
US offers $10 million for info on Iranian allegedly behind cyberattacks on critical infrastructure
Jail time for Maine child in 764 marks turning point in federal law enforcement
The FCC wants consumers to rate their telecom’s anti-robocall protections
Dogged Russia-based botnet dismantled after 23-year run
Pegasus, NoviSpy variant spyware found on devices of Serbian activists
Wyden seeks upgraded NSA security guidance on commercial VPN use
FBI raises alarm over deceptive phishing campaign targeting prominent people
Tina Peters, through attorney, backs off formal role in Shasta County elections
Whistleblower says USPS deploying new, ‘untested’ IT systems governing mail-in ballots
The Collective Cyber Defense letter wrote your next vendor questionnaire
McKesson copes with fallout from data theft extortion attack
‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
The AI Kill Switch Act is repeating the Clipper Chip’s mistakes
ATF confirms cyberattack hit system containing info on its investigation targets
Unit 42 warns AI has shifted balance of power from defenders to attackers
100-plus companies call for ‘global surge’ in AI-powered cyber defense
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Two alleged TeamPCP members arrested and charged after months of software supply-chain chaos
Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure
Officials disrupt Chinese espionage operation that hit multiple federal agencies
OpenAI: Agent behavior that led to Hugging Face intrusion formed in May
FBI Probes Service Selling 153M+ Drivers Licenses
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Who’s Tracking You? Use This New Service to Find Out
It can be daunting to determine who's responsible for showing ads on the websites we visit, or who's harvesting data from the mobile apps we use every day. That information is alr…
Microsoft Plugs Nearly 400 Security Holes
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including one weakness that is already be…
Canadian Man Pleads Guilty in Snowflake Extortions
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort…
Read This Before You Buy That TV Streaming Stick
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they se…
LG to Ban Residential Proxies from Smart TV Apps
The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one's television into an always-on residential proxy node…
Microsoft Patches a Record 570 Security Flaws
Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems and other software, almost triple the number of vulnerabilitie…
Lessons Learned from CISA’s Recent GitHub Leak
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials -- including…
Felons, Fraudsters Flog Offensive Cybersecurity Startup
A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right conspiracy theorists and convic…
No matching sources found.