Cybersecurity News
Latest updates from top security sources
1589 articles, page 4 of 53
A notice dated September 4 but not widely shared shows that IDScan acknowledged a data breach but did not specify how many people were affected....
Ronzelle Green, most recently a senior official at the National Geospatial-Intelligence Agency, will be U.S. Cyber Command's chief AI officer....
Threat actors are exploiting Google Play's Early Access program to distribute thousands of deceptive Android applications that promise cash rewards, cryptocurrency earnings, free s...
Check Point has disclosed and patched two critical vulnerabilities affecting how its firewall and management products handle VPN certificates, both carrying a maximum CVSS score of...
A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a recently disclosed pair of security flaws in ...
The Gigabud banking trojan now installs a second Android app that creates a work profile on an infected phone and drops a tampered banking app inside it, security firm Group-IB sai...
The disgruntled researcher continued their vendetta against Microsoft by publishing yet another zero-day exploit for Windows Defender....
Significant cybersecurity M&A deals announced by Brinqa, Cribl, Echo, Fortinet, Kiteworks, Palo Alto Networks, and Visa. The post Cybersecurity M&A Roundup: 33 Deals Anno...
Both Anthropic and OpenAI have seen high-profile resignations in recent years that were tied to safety concerns. The post Anthropic Researcher Resigns With Warning About the Danger...
Vinnie Liu was recruited by the NSA when he was just 17 years old. He is now the CEO of Bishop Fox. The post Hacker Conversations: Vinnie Liu, Performer Turned Ringmaster appeared ...
Deceptive apps in Early Access are being used by dishonest developers for their own benefit. The post Deceptive Android Apps Exploit Google Play Early Access to Evade Reviews appea...
Join the webinar for a focused, 20-minute discussion on Frontier Pace Governance, an approach to balancing automation, policy, and business risk as IT operations accelerate. The po...
Tracked as CVE-2026-19490, the authentication bypass flaw has been exploited in the wild since at least September 3. The post Critical NetScaler Vulnerability Exploited in Attacks ...
Wildberries told several Russian media outlets earlier this week that payments to some sellers were delayed by security measures introduced after a distributed denial-of-service (D...
The individual has not yet been avowed — the formal process in Britain by which an intelligence or security figure’s identity is publicly acknowledged — as routine security conside...
CISA added three actively exploited vulnerabilities affecting Cisco, Citrix, and Fortinet products to its Known Exploited Vulnerabilities (KEV) catalog on Wednesday, setting a Sept...
A Wiz Research investigation has revealed that nearly 10% of internet-facing LiteLLM gateways scanned in February 2026 were still configured with sk-1234, the example admin master ...
Anthropic on Wednesday disclosed a fourth incident in which its artificial intelligence (AI) model broke into real third-party systems, marking the latest in a growing list of case...
Starting Friday, businesses operating in the EU will have just 24 hours to notify the government any time they discover serious product security incidents....
Anthropic is most concerned about Claude Mythos 5’s reckless behavior after recent incidents in which real systems were hacked. The post Widened Scan Turns Up Fourth Rogue Claude C...
In June 2026, hackers stole personal, health, and insurance information from AdaptHealth’s systems. The post 4.1 Million Impacted by AdaptHealth Data Breach appeared first on Secur...
Cisco and CISA have flagged exploitation of CVE-2026-20079, a vulnerability disclosed in March 2026. The post Organizations Warned of Cisco Secure FMC Exploitation appeared first o...
The exploit provides full System privileges on Windows machines running the September 2026 patches. The post New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defend...
The high-severity, unauthenticated vulnerability tracked as CVE-2025-25249 was patched in January 2026. The post Fortinet Code Execution Flaw Exploited in PivotC2 RAT Attacks appea...
The U.S. Department of Justice announced coordinated actions on Wednesday targeting Xinbi Guarantee, a Telegram-based illicit marketplace that facilitated pig butchering romance sc...
An analysis of Project Glasswing's findings on the Mythos vulnerability firehose has revealed a stark imbalance between discovery and remediation. Researchers identified a substant...
Multiple state-sponsored espionage clusters, most with suspected China ties, rapidly weaponized a previously undocumented exploit kit dubbed BlueMoon within days of each other, acc...
US agencies claim Chinese companies covertly extracted billions of tokens from OpenAI, Anthropic, Google Gemini, and SpaceX's Grok to reduce development costs....
CISA's cybersecurity, infrastructure security and emergency communications divisions are among the priorities as the agency fills vacancies created at the beginning of the Trump ad...
The U.S. government also carried out a seizure of $52.8 million from 52 wallets connected to the platform....