网络安全资讯
来自顶级安全媒体的最新动态
共 1540 篇文章,第 3 / 52 页
Anthropic is most concerned about Claude Mythos 5’s reckless behavior after recent incidents in which real systems were hacked. The post Widened Scan Turns Up Fourth Rogue Claude C...
In June 2026, hackers stole personal, health, and insurance information from AdaptHealth’s systems. The post 4.1 Million Impacted by AdaptHealth Data Breach appeared first on Secur...
Cisco and CISA have flagged exploitation of CVE-2026-20079, a vulnerability disclosed in March 2026. The post Organizations Warned of Cisco Secure FMC Exploitation appeared first o...
The exploit provides full System privileges on Windows machines running the September 2026 patches. The post New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defend...
The high-severity, unauthenticated vulnerability tracked as CVE-2025-25249 was patched in January 2026. The post Fortinet Code Execution Flaw Exploited in PivotC2 RAT Attacks appea...
The U.S. Department of Justice announced coordinated actions on Wednesday targeting Xinbi Guarantee, a Telegram-based illicit marketplace that facilitated pig butchering romance sc...
An analysis of Project Glasswing's findings on the Mythos vulnerability firehose has revealed a stark imbalance between discovery and remediation. Researchers identified a substant...
Multiple state-sponsored espionage clusters, most with suspected China ties, rapidly weaponized a previously undocumented exploit kit dubbed BlueMoon within days of each other, acc...
US agencies claim Chinese companies covertly extracted billions of tokens from OpenAI, Anthropic, Google Gemini, and SpaceX's Grok to reduce development costs....
CISA's cybersecurity, infrastructure security and emergency communications divisions are among the priorities as the agency fills vacancies created at the beginning of the Trump ad...
The U.S. government also carried out a seizure of $52.8 million from 52 wallets connected to the platform....
The settlement concludes a legal fight that dates to April 2024, when UK users sued for the alleged violations of their country’s privacy laws....
Cybercriminals are weaponizing information stealer logs to hijack accounts on leading artificial intelligence platforms, bypassing even multi-factor authentication through replayed...
When a major CVE drops, the first alert is rarely the hardest part — the real challenge is answering "are we exposed?" in minutes rather than hours. Security teams typically scramb...
"Workflow identity hijacking" can bypass standard security controls and hijack an organization's data by sending a basic request through an unauthenticated entry point....
The company will increase its US market presence and will expand its engineering and go-to-market teams. The post HelmGuard Raises $7.3 Million for Agentic GRC and Security appeare...
Criminal and state-sponsored adversaries are increasingly using AI to automate and scale their attacks, according to GTIG. The post AI Is Giving Lesser-Resourced Attackers Nation-S...
The security updates resolve critical flaws across Android’s Framework, System, and Kernel components. The post Android’s September 2026 Updates Patch 180 Vulnerabilities app...
Major chipmakers announced patches for vulnerabilities recently discovered in their products. The post Chipmaker Patch Tuesday: Nvidia, AMD, Arm Issue Security Advisories appeared ...
The critical, unauthenticated bugs allow attackers to bypass authentication and proxy a user’s browser traffic. The post Fortinet Patches Critical Vulnerabilities in FortiMonitorOn...
Distillation is an ‘attack’ against an AI model designed to capture outputs, understand reasoning processes, and subsequently train a different model. The post US Agencies Warn Chi...
Muse runs on a dedicated, secure virtual machine that houses both the agent and the user’s data. The post Meta Launches Personal AI Agent, Muse, Emphasizes Safety and Privacy appea...
Veradigm said access was limited to a specific interface, and did not impact the company’s broader environment such as its networks, servers or databases. The incident did not resu...
A Google Chrome bug identified in August was exploited by at least four China-linked cyber-espionage groups, according to researchers....
The first public cybersecurity strategy issued by the FBI "directs our teams, our field offices, our global presence" to align their efforts on countering malicious hackers and cyb...
Ukraine’s prosecutor general, Ruslan Kravchenko, resigned this week over allegations that officials in his office took bribes to shield scam call centers from law enforcement....
A critical vulnerability in DeepSeek Harness, the open-source tool DeepSeek ships for running AI coding agents on a developer's machine, allowed a malicious prompt to disable the a...
Bitcoin Lightning wallet provider Alby has disclosed a critical vulnerability in its self-hosted Alby Hub software that could allow remote attackers to seize control of wallets and...
U.S. cybersecurity and intelligence agencies have accused China-based artificial intelligence (AI) companies of conducting "systematic extraction" of proprietary functionalities an...
Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild. The medium-severity vulnerability, as...