Cybersecurity News
Latest updates from top security sources
1589 articles, page 2 of 53
A suspected China-linked threat actor tracked as Red Heron has been blamed for a sweeping cyber-espionage campaign that weaponized a critical remote code execution flaw in Gitea, t...
WordPress has rolled out an automated security review system that scans every plugin release before it reaches users through the WordPress.org update API. The new process uses AI m...
A coordinated swarm of OpenAI agents was behind the "major malicious attack" that flooded RubyGems with thousands of rogue packages between May and June 2026, according to research...
There's a lot of noise around AI and cybersecurity right now. What’s actually important is far simpler, if often lost in the hubbub. Vulnerability discovery is getting faster and h...
Dario Amodei says it's time to slow the pace of frontier AI improvements so that security and risk prevention efforts can catch up. What does this mean for enterprises?...
China’s Ministry of Foreign Affairs responded to a question about Amodei’s essay by saying that all parties should work together on AI. The post Beijing Hits Back at Anthropic CEO’...
Concerns over the potential risks of the technology are rising as new AI models become more powerful, heightening both the potential for misuse by people with criminal aims. The po...
The company unintentionally disclosed users’ information to a third party impersonating a government agency. The post Personal, Financial Info Exposed in Revolut Data Breach appear...
As researchers warn that misaligned AI could threaten human survival, even beneficial systems may erode the critical thinking that defines our humanity. The post The Race to Contro...
The pro-Ukraine hacktivist group Hacking Cat has evolved from carrying out website defacements and data leaks to more sophisticated and destructive attacks on Russian targets, rese...
The sites are designed to collect victims’ contact details, which scammers then use to target them through phone or email to steal money, personal information or gain access to the...
British fintech company Revolut confirmed disclosing sensitive customer data to fraudsters who submitted emergency data requests from a legitimate government email account....
A malicious browser extension marketed as a Twitch enhancement tool has been discovered exfiltrating OAuth tokens from nearly 31,000 users to proxy servers operated by a Russian...
A critical-severity vulnerability in Tencent's Sogou Input Method—one of the most widely used Chinese-language input method editors (IMEs) on Windows, with hundreds of millions of ...
Team8's annual CISO Village survey reveals a stark reality for enterprise security leaders: 71% of CISOs are now experimenting with or augmenting existing security tools using AI a...
Telus, one of Canada's largest telecommunications providers, has begun notifying an undisclosed number of consumer telecom customers that their accounts were compromised between Fe...
The vulnerabilities can allow attackers to bypass authentication and elevate their privileges to administrator. The post Three JFrog Artifactory Flaws Exploited for Backdoor Deploy...
The flaw allows attackers to send files and execute them without authorization through an active remote session. The post ConnectWise Patches ScreenConnect Vulnerability Exploited ...
The National Security Agency is undertaking one of the most significant restructurings in a decade, breaking up its traditional directorates and replacing them with five new "missi...
Anthropic CEO Dario Amodei issued a stark warning Saturday, urging the artificial intelligence industry to decelerate its rapid development cycle to allow safety guardrails time to...
Microsoft has disclosed two concurrent threat campaigns targeting enterprise users, one leveraging AI-generated CEO impersonation emails to steal funds via fraudulent ACH transfers...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five security vulnerabilities affecting JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik Router...
Enterprise security operations centers are seeing an unprecedented category of alert emerge: those triggered not by attacks against AI, but by the ordinary daily use of AI tools ac...
A coordinated cyberattack that flooded RubyGems with more than 2,000 malicious packages in May 2026 has been traced to a swarm of autonomous OpenAI agents, according to new researc...
Proofpoint researchers have identified a new exploit kit dubbed BlueMoon that chains three previously unpatched vulnerabilities—two zero-days in Chrome and one in Windows—to compro...
Anthropic has disclosed that users operating from Houthi-controlled territory in northern Yemen attempted to weaponize its Claude AI model to develop advanced missile systems, hype...
The Dubai-based threat detection startup uses artificial intelligence tools to scan billions of IP addresses to find exposed assets, leaked data, and zero-day vulnerabilities....
A threat actor has leveraged generative AI to produce one million highly personalized fraud emails in just three days, signaling a new era of scalable, credible phishing operations...
CISA Director Jen Easterly has issued a pointed call for federal regulators to deliver more actionable cybersecurity guidance to private-sector organizations as the volume and seve...
Frontier AI models have crossed a troubling threshold: they are no longer just generating text, they are persuading people to act against their own interests. In a recent interview...