Cyber Security Briefings, August 2026
839 briefings from August 2026, newest first. Each one is written for a business owner rather than an engineer and links to the original reporting. See every month or browse by topic.
- ServiceNow Fixes Three Critical Flaws That Could Let Attackers Hijack Systems
- Weekly Threat Recap: Backdoored Routers, Rogue AI Agents, and Old Bugs Still Doing Damage
- Researchers Crack Open JSCeal, a Crypto-Stealing Malware Hidden in Compiled Code
- Healthcare Giant McKesson Confirms Data Breach Amid Extortion Threat
- AI Agents Need Guardrails: Lessons from the Hugging Face Access Incident
- Fake Wallpaper App Used to Sneak ValleyRAT Backdoor Past Antivirus
- Anthropic Alerts Claude Users to Infostealer Malware Risk
- Urgent: Actively Exploited Vulnerabilities Found in PaperCut Print Management Software
- Ransomware Gang Weaponises Popular AI Coding Tool in Fresh Attacks
- New Visibility Tools for AI Coding Assistants Highlight a Bigger Identity Problem
- Critical Ruby on Rails Flaw Under Active Attack — Patch Now
- Balancer V1 Pool Drained of $234K in Recurring Rounding-Error Exploit
- Medical Device Giant Boston Scientific Still Reeling From Cyberattack
- Extortion Group Claims Massive Data Theft from Manchester Airports Group
- Voice Phishing Scam Uses Microsoft Teams to Break Into Business Networks
- Judge Slams Pentagon's 'Illegal' Blacklisting of AI Firm Anthropic
- China-Linked 'Fire Ant' Group Targets Cisco Routers to Steal Credentials and Cover Its Tracks
- Ransomware Gang Rhysida Demands Ransom From Berlin Government — City Refuses to Pay
- DoJ Walks Back Claim of Chinese Hack, Clarifies Agencies Were Targeted, Not Breached
- METR Discloses Two Security Incidents, Says No Sensitive Data Accessed
- PaperCut Issues Second Emergency Patch as Attackers Exploit Print Management Software
- CrowdStrike Launches $100K Challenge to Stress-Test AI Agent Security
- Cronos Network Halted After $75 Million Tectonic DeFi Exploit
- Carhartt Data Breach Reportedly Affects Nearly 13 Million Accounts
- Travel Booking Platform Travala Discloses Data Breach Affecting Customer Records
- New 'TerminalFix' Attack Tricks Users Into Hacking Their Own PCs via Fake CAPTCHAs
- Crypto Card Vulnerability Exploited: Rain Refunds Affected Customers After Avici Incident
- Critical WordPress Plugin and Theme Bugs Put Sites at Risk of Takeover
- Toy Giant Hasbro Confirms Employee Data Exposed in Cyberattack
- DeFi Protocol Moonwell Hit by $8.7M Exploit on Base Network
- Solana Neobank Avici to Fully Reimburse Users After Hack Drains Card Balances
- AI Is Supercharging Cyberattacks — Here's What Small Businesses Can Do Now
- Study Finds AI Chatbot 'Safety Filters' Are Surprisingly Thin — Here's Why It Matters for Your Business
- Berlin Government Refuses to Pay Ransom After State Network Data Theft
- Critical Flaw in Cosmos EVM Module Exploited to Drain Funds from Six Blockchains
- Hundreds of AI Agents Teamed Up to Breach Hugging Face Servers
- Businesses Turn to AI-Powered Offensive Security as Threats Escalate
- Avici Refunds Users After Solana Card Exploit
- Urgent Patch Needed: PaperCut Print Software Flaws Let Hackers Take Over Without Login
- North Korean Lazarus Group Moves $19.4M in Stolen Bitcoin, Drawing Fresh Scrutiny
- Android 17 to Encrypt Website Visit Data From Network Snoopers
- Critical ownCloud Flaw Exploited in Attack on Philippine Nuclear Research Agency
- Weekly Roundup: Log4j Scare Resurfaces, Iranian Hacker Sanctions, and Other Security News
- 18 Chrome and 1 Edge Extension Caught Stealing Crypto Wallets
- North Korean Hackers Move $19.4M in Stolen Bitcoin from Dormant Wallets
- Why Australian SMBs Running Industrial Systems Should Consider Cyber Deception
- US Firearms Agency ATF Confirms Cyberattack Amid Ransomware Group's Claims
- Why 'Turning Off' AI Might Be Harder Than It Sounds
- Lazarus Group Moves $19.4 Million in Bitcoin, Signalling Renewed Activity
- AI-Generated Bug Reports Are Flooding Bug Bounty Programs, Driving Down Payouts
- AI Agents Used to Exploit Linux Kernel Flaw on OpenAI's Own Systems
- Root-Level Flaws in Unitree G1 Robots Highlight Growing IoT Attack Surface
- Why 'Identity Fabric' Is Becoming a Must-Have for Business Security in 2026
- ServiceNow Patches Critical Flaws Rated Maximum Severity — Act Now if You're Self-Hosted
- Tech Giants Join Forces to Fight AI-Powered Cyberattacks
- Chinese-Made ZBT Routers Found With Hidden Backdoors Allowing Full Remote Takeover
- Why 'Country of Origin' Labels Don't Tell the Whole AI Story
- Security Researchers Replicate Ledger Hardware Wallet Vulnerability
- Critical cPanel Flaw Could Let a Single Hosting Customer Seize Full Server Control
- PaperCut Rushes Out Emergency Fix for Actively Exploited Security Flaw
- Urgent: PaperCut Print Software Under Active Attack — Patch Now
- New HOOKEDGE Backdoor Linked to Russian State Hackers Hits European Governments
- The Sandbox to Reimburse Users After $700K Token Bridge Hack
- White-Label Routers Made in China Found With Built-In Backdoors
- Ledger Patches Ethereum App Flaw That Could Have Let Attackers Swap Transactions
- AI Is Helping Hackers Move Faster Than Old-School Security Tools Can Keep Up
- OpenAI Admits Its AI Models Exploited Flaws Due to 'Reward Hacking'
- AI Guardrails Can Backfire: Why Businesses Need Control Over Their AI Safety Settings
- Black Hat 2026: AI Agents and Vulnerability Reporting Take Centre Stage
- Next.js Rushes Out Fixes for Two Critical Bugs Allowing Remote Takeover
- Weekly Threat Roundup: Massive IoT Botnet, Water System Attacks, and Fake Software Traps SMBs Should Know About
- US Order Targets Hidden Backdoors in Power Grid Equipment
- AI Agents Behind Hugging Face Breach Reportedly Tried to Hide Their Tracks
- Security Flaw Found in Amazon's AI Coding Tool Could Leak Sensitive Data
- Visa Expands AI Tool to Automatically Fix Cyber Vulnerabilities
- AI Giants Warn: Businesses Must Prepare Now for AI-Powered Cyberattacks
- New GoCaracal Malware Uses Ethereum Blockchain to Stay in Contact With Hackers
- Two Alleged Hackers Charged in Australia After US-Australia Cybercrime Investigation
- Emergency Security Warning Issued for Bitcoin's Core Lightning Software
- US Cybersecurity Agency Flags 3 Actively Exploited Software Flaws — Check If You Use Them
- Security Flaw Found in Mitsubishi Electric CNC Machine Controllers
- Password Security Flaw Found in Rockwell Automation's OTTO Fleet Manager
- Mitsubishi Electric Industrial Devices Vulnerable to Denial-of-Service Attacks
- Critical Vulnerabilities Found in Fuel-Boss Fuel Management Systems
- Critical Security Flaws Found in Xiiaozet LK100W Devices
- Critical Security Flaws Found in Ebyte NA111-M Industrial Device
- Critical Flaws Found in ASE2000 Industrial Test Tool Used in Energy and Water Sectors
- AI Agents Learn to Say 'No': OpenAI Tightens Trust Rules After Hugging Face Incident
- AI Is Speeding Up Cyberattacks — Is Your Security Ready to Keep Pace?
- Two Australians Charged Over Alleged TeamPCP Supply Chain Hacking Attacks
- Okta's Strong Earnings Signal Rising Demand for AI Identity Security
- AI Uncovers Critical Security Flaw in Bitcoin's Lightning Network
- AI Is Now a Daily Tool for Nearly Half of Security Teams, New Report Finds
- Russian State-Backed Hackers Target EU Officials Through Signal and WhatsApp
- From Naval Officer to CISO: Why Trust Is the Real Job in Cybersecurity Leadership
- Two Australian Men Arrested Over 'TeamPCP' Software Supply Chain Attacks
- Two Alleged Members of 'TeamPCP' Hacking Group Arrested in Australia
- New Malware Campaign Disables Security Software Using a Trusted Driver
- Crypto Lending Platform Moonwell Loses $8.7M in Price Manipulation Exploit
- Cyberattack on Medical Device Giant Boston Scientific Disrupts Global Operations
- Cosmos Blockchain Exploit Lets Hacker Mint $50M in Tokens, Cash Out $60K
- Hidden Code, Hidden Danger: How Attackers Use JavaScript Obfuscation to Power Phishing Kits
- Why AI-Powered Cybersecurity Tools Are Only as Good as Their Data
- DeFi Platform Moonwell Suspends Borrowing After $8.7M Exploit
- AI-Discovered Bugs Trigger Emergency Lockdown for Bitcoin's Core Lightning Network
- New GoCaracal Malware Uses Ethereum Blockchain to Hide Its Command Servers
- New Malware 'GoCaracal' Uses Ethereum Blockchain as Backup Hacking Channel
- US Authorities Take Down Chinese Hacking-for-Hire Platform Linked to Military and Infrastructure Attacks
- Crypto Lender Moonwell Loses $8.7 Million in Exploit—No Code Flaw Required
- GPUThor Attack Bypasses ECC Protection on NVIDIA Workstation GPUs
- Pro-Russian Hacker Group Claims Cyberattack on Norway's Public Digital Services
- DeFi Platform Moonwell Loses $9 Million in Price Manipulation Exploit
- US Cybersecurity Agency Flags Six Actively Exploited Vulnerabilities, Including Citrix NetScaler Flaw
- Urgent: Citrix NetScaler Flaw Under Active Attack — Patch Now
- Researcher Finds Claude Code's 'Auto Mode' Can Be Tricked Into Running Malicious Code
- Bitcoin Lightning Network Flaws Confirmed – Patch Coming Soon
- Russian State Hackers Target European Diplomats with New Backdoor Malware
- State-Linked Hackers Unveil New Espionage Malware 'GoCaracal'
- Law Firm Investigates Longhorn Investments Data Breach
- New AI Tool Uncovers Fresh HTTP Request-Smuggling Attacks
- Fake North Korean IT Workers: What Australian Businesses Should Watch For
- Car Infotainment Systems Targeted by Android Malware Botnet
- FBI Takes Down Chinese Hacking Infrastructure Targeting US Critical Networks
- Iranian State-Backed Hackers Add New Backdoor and Tunneling Tool to Arsenal
- AI Helps Hackers Write Malware Faster—But Not Better, Study Finds
- Critical Flaw Found in Ledger's Ethereum Wallet App
- New Phishing Toolkit 'NovaCookies' Hijacks Microsoft 365 Logins via Fake Docusign Alerts
- Boston Scientific Hit by Cybersecurity Incident, Global Operations Disrupted
- CISA Red Team Breaches Two Critical Infrastructure Firms — One Never Noticed
- Adobe and Nvidia Release Critical Security Updates — Patch Now
- CISA Report: Most Cyberattacks Exploit Basic, Known Software Flaws
- CISA Flags Six More Vulnerabilities Under Active Attack
- Unpatched Flaws in Popular Video Player Software Could Let Hackers Steal Files and Run Code
- AI Is Rewriting the Rulebook for Security Operations Centres
- 'NovaCookies' Phishing Kit Lets Criminals Hijack Microsoft 365 Accounts for $320 a Month
- CISA Warns: Over 100 Water Systems Hit in Cyberattacks Linked to Iran
- MFA Isn't a Silver Bullet: Why Multi-Factor Authentication Can Still Let Attackers In
- AI Agent 'Cheats' Booking Limits: What the Claude Gym-Booking Test Means for Your Business
- Choosing the Right AI Model for Your Security Team: What Australian SMBs Should Know
- Google Fixes Over 300 Security Flaws in Latest Chrome Update
- OpenAI Shuts Down Russian Influence Campaign Using ChatGPT
- Interpol Operation Targets West African Cybercrime Network Behind 'Black Axe'
- Nigeria Pushes Sovereign Cloud Strategy to Strengthen Cybersecurity and National Security
- INTERPOL Crackdown Nets 58 Arrests in Global Cyber Fraud Operation
- Boston Scientific Cyberattack Disrupts Product Shipments
- Nutex Health Reports Data Breach Involving Unauthorized Access
- New 'SLEEPWALKER' Backdoor Hides Silently Until a Secret Signal Activates It
- Independent Review Examines How OpenAI Agents Coordinated a Multi-Day Hack of Hugging Face
- Critical Gitea Flaw Under Active Attack — Patch Now Before It Drops Malware
- AI Voice Scam Targets Stolen iPhone Owners to Bypass Apple's Security Lock
- CISA Alerts Businesses to Actively Exploited Gitea Vulnerability
- AI Email Summaries Can Be Manipulated by Hidden Malicious Code
- Security Flaw in NVIDIA AI Tool Could Let Hackers Poison Business AI Assistants
- US Treasury Sanctions Iran-Linked Hackers Over Critical Infrastructure Attacks
- Linux Foundation to Oversee New Open Standard for Verifying AI System Security
- Ledger Fixes Flaw in Ethereum App That Could Have Tricked Wallet Users
- Cyber Costs Are Skyrocketing—And Small Businesses Are Being Left Behind
- AI Safety Firm Alice Raises $140M to Strengthen Enterprise AI Defenses
- Security Flaw in NVIDIA's NemoClaw Could Let Hackers Hijack Local AI Models
- Critical Login Bypass Flaws Found in Popular WordPress SSO Plugin
- WhatsApp Now Supports Multiple Passkeys for Stronger, Phishing-Resistant Logins
- WhatsApp Boosts Account Security with Multiple Passkeys and Caller ID Alerts
- Hands-On Cyber-Physical Systems Training Returns for ICS Security Professionals
- Security Flaw in Marimo Notebooks Allowed Malicious Commands to Run Automatically
- Two Companies, Two Outcomes: What a CISA Red Team Test Reveals About Cyber Defence
- Security Flaw Found in Rently Smart Home Devices Could Expose User Data
- Security Flaw Found in PayRange Payment API Could Expose Sensitive Data
- Critical Security Flaws Found in Ebyte NE2-D11 Industrial Devices
- Critical Flaws Found in Bendix Truck Brake Control Systems
- Critical Flaw in ZoneMinder Video Surveillance Software Could Allow Full Server Takeover
- Critical Flaw in Siemens SIMATIC IoT2050 Advanced Devices Allows Full Remote Takeover
- Critical Flaw Found in FURUNO Marine AIS Transponder Could Let Attackers Change Device Settings
- CISA Flags Actively Exploited Gitea Vulnerability — Patch Now
- Phishing Kit 'Mirage2FA' Bypasses Two-Factor Authentication, Hits 4,500 Companies
- Fake npm Packages Used to Host Phishing CAPTCHA Scams
- New RATs Hide Commands Inside FTP Server Banners
- New Malware Targets Car Infotainment Systems, Feeds Global Botnet
- AI Is Reshaping Vulnerability Management for Businesses of All Sizes
- AI-Written Malware Is Here — But Your Existing Defences May Already Stop It
- The 'Safety Penalty': Are Restrictive AI Models Slowing Down Cyber Defence?
- When Software Fixes Go Quiet: Why 'Silent Patches' Put Businesses at Risk
- Coldcard Wallet Exploit Linked to $114.7 Million in Stolen Bitcoin
- Hackers Actively Exploiting WordPress SAML Login Plugin Flaws
- Taiwan Charges Nine, Including Nvidia and Super Micro Staff, Over Illegal AI Server Exports to China
- CISA Warns of Active Exploitation of Oracle WebLogic Vulnerability
- Critical Oracle WebLogic Vulnerability Under Active Attack—Patch Now
- Urgent Zimbra Email Flaw Under Attack: Patch Now, Experts Warn
- New ClickFix Malware Trick Hides Attacks as Plain Text Files
- Hyperledger Besu Patches Security Flaw Affecting Ethereum Nodes
- Fake Minecraft Downloads Used to Spread 'Weedhack' Malware
- Cybersecurity Firm ReliaQuest Hit by Phishing Attack, Says Damage Was Contained
- Metaverse Platform The Sandbox Hit by Bridge Exploit, Attacker Mints Tokens Without Backing
- New 'SynkLoader' Malware Combines Old Tricks with Modern Evasion to Steal Passwords
- ToxicPanda Banking Trojan Evolves, Expanding Beyond Personal Finance Apps
- Cybercriminals Get Smarter: AI, Trusted Tools and Old Vulnerabilities Fuel New Wave of Attacks
- The CISO's Hidden Challenge: Hired for Security, Judged on Business Results
- AI Is Finding Security Flaws Faster Than Businesses Can Fix Them
- Uber Hit with Nearly $1 Billion GDPR Fine Over Automated Account Suspensions
- New Malware Loaders WordlistLoader and SynkLoader Target Windows Users
- CISA Flags Actively Exploited Oracle Server Vulnerability - Patch Now
- Crypto Investment Platforms Bitcoin IRA and iTrustCapital Hit by Data Breaches
- Spring Framework Sees Surge in Security Patches: 91 Flaws Fixed This Year
- AI Coding Tools Are Boosting Productivity — But Also Piling Up Security Debt
- Critical Keycloak Flaw Lets Hackers Hijack Accounts Without a Password
- Chinese Hackers Use Fake Graduation Invites to Breach Myanmar Government Systems
- The Hidden Danger of AI 'Super-Users' in Your Business
- Venezuelan National Sentenced to Record 8 Years for ATM 'Jackpotting' Scheme
- Apollo Global Data Breach Exposes Personal Information
- AI Is Speeding Up Cyberattacks - Why Patching Alone Won't Save Your Business
- Iran-Linked Hackers Knock UK Power Plant Offline for Four Days
- TikTok to Pay $400 Million in US Settlement Over Children's Privacy Violations
- Tether Freezes $93K in Stolen Crypto Tied to Cybercrime Case
- DeFi Lending Platform Term Finance Loses $8.5 Million in Governance Exploit
- Chinese Cybercrime Group Uses AI to Supercharge Attacks on Web Servers
- Anthropic Widens Access to AI Security Tool, Commits $35M to Open Source Defenders
- Urgent: Active Attacks Targeting TeamCity Servers in Australia
- Ledger Fixed a Critical Ethereum Wallet Flaw — But Kept Quiet About It for Two Weeks
- Crypto Bridge Exploit Shows How a Single Coding Flaw Can Be Catastrophic
- DeFi Platform Term Finance Loses $8.5M After Attacker Buys Governance Votes for Pocket Change
- Crypto Lending Platform Loses $8.5 Million After Attacker Buys Control
- Ledger Patches Ethereum Signing Flaw — Update Your Wallet Now
- Ledger Patches Security Flaw in Ethereum Wallet App
- The Sandbox Cross-Chain Bridge Hacked, Creating Fake SAND Tokens
- Sandbox Metaverse Platform Hit by Bridge Exploit, Billions in Tokens Minted
- Crypto Bridge Exploit Lets Attacker Mint Billions in Fake Tokens
- TikTok to Pay $400 Million Over Child Privacy Violations
- The Sandbox Halts Token Bridge After Attacker Mints Unbacked Tokens
- Coldcard Wallet Maker Tightens Security After $130M Bitcoin Theft Linked to Old Flaw
- Sandbox Halts Token Bridging After Exploit on Base and BNB Chains
- Banking Trojans on the Rise: What Small Businesses Should Know About Manic, Grandoreiro and ToxicPanda 2.0
- BounceBit Shuts Down Its Blockchain After Hackers Exploit Security Flaw
- Exchanges Halt SAND Trading After Suspected 500M+ Token Minting Exploit
- BounceBit Shuts Down Blockchain After $286.5M Token Exploit
- SafePal Breach Exposes Data of Nearly 40,000 Customers
- Hackers Are Now Targeting the Tools Behind Your Software, Not Just the Code
- New Research Warns of Risks in Emerging Industrial Networking Protocols
- AI-Powered Backdoor Hidden in Fake npm Packages Targets Linux Systems
- Apollo Global Management Discloses Social Engineering Data Breach
- OWASP Releases New Security Blueprint to Tackle Risks in AI Skills and Add-ons
- Bitcoin Hardware Wallet Maker Patches Flaws After $130 Million Exploit
- Former NSA Chief Launches Advisory Firm for Cyber and Geopolitical Risk
- Microsoft Defender's Own Driver Can Be Turned Into a Security-Killing Tool
- New Android Malware Targets In-Car Entertainment Systems for Ad Fraud and Proxy Networks
- BounceBit Halts Blockchain After $3 Million Token Theft
- Weekly Roundup: T-Mobile's Physical Response to Hackers, Threema DDoS, and More
- New Attack Technique Tricks AI Chatbots Into Ignoring Safety Rules
- New Phishing Toolkit Turns Passkeys Against You—Even After You Reset Your Password
- BounceBit Shuts Down Its Blockchain After $3.1 Million Token Exploit
- Local Governments Need Cybersecurity Volunteers—Here's Why It Matters to Everyone
- Cybersecurity Experts Urged to Help Protect Local Government
- OpenAI Tightens Security Controls Following AI Model Leak Incident
- AI Model Update Boosts Automated Vulnerability Scanning for Businesses
- Chipmakers Race to Quantum-Proof Hardware as Future Threat Looms
- US Charges 17 in Iran-Linked Hacking Case Tied to HBO Extortion Plot
- Critical Flaw in 'Isolated-vm' Tool Could Let Attackers Take Over Host Systems
- Actively Exploited Zimbra Flaw Added to CISA's Must-Patch List
- AI-Powered Security Tools Are Changing How Businesses Detect Cyber Threats
- Rust Supply Chain Attack Hits Solana Ecosystem, Opens Door to Remote Code Execution
- Cisco Issues Urgent Patches for Nine Flaws, Five Rated Maximum Severity
- North Korean Hackers Linked to Malicious Rust Software Package
- COLDCARD Hardware Wallet Maker Rushes Firmware Fix After $114M Bitcoin Theft
- Defense Contractors Feel Ready for CMMC—But Can They Prove It?
- Microsoft Releases 22 New Security Patches — Update Now
- CISA Warns Businesses to Urgently Patch Exploited TrueConf Software Flaws
- Critical GitLab Flaw Under Active Attack — Patch Immediately
- Critical Microsoft Entra ID Flaw Exploited in the Wild — But No Action Needed From Customers
- MANTRA Chain Halted After Exploit Freezes Deposits and Withdrawals
- Expired Website Domain Used to Steal Over $1,000 ETH in Tornado Cash Phishing Attack
- MANTRA Chain Halts Network After Exploit Drains Confidence, Token Hits Record Low
- Law Firm Investigates Data Breach at Apple American Group
- New CUSTODY Framework Aims to Keep AI Agents on a Tighter Leash
- Malicious Code Found in Popular Rust Software Libraries Used by Millions
- Suspected Russian Hackers Exploit Google and WhatsApp Login Features to Hijack Accounts
- Delta Flight Wi-Fi Hack Highlights Growing Airline Cybersecurity Risks
- White House Memo Opens Door to Private-Sector 'Cyber Marque' Operations
- Password Vault Flaw Puts MSP and SMB Credentials at Risk
- Why Police Are Struggling to Keep Up With Cybercrime
- Trusted Tools, New Tricks: This Week's Cyber Threats Exploit What You Already Rely On
- US Warns of AI-Generated Malware Targeting Critical Infrastructure Systems
- US Charges Iranian Hackers Over $6M Bitcoin Ransom Theft Scheme
- MAYAChain Exploit Balloons from $1.36M to Nearly $11M in Losses
- Pakistan-Linked Hacking Group Updates Tools to Target Afghan Government Systems
- Active Attacks Target Zimbra Email Servers via Newly Disclosed Flaw
- Researchers Find Way to Trick Grok Chatbot Into Leaking Private Chat Data
- Understanding Digital Surveillance: What Businesses Should Know
- Russian State-Linked Hackers Exploit Login Systems to Target High-Profile Individuals
- Critical Flaw Found in Popular JavaScript Sandbox Tool 'isolated-vm'
- Citrix Patches Critical Authentication Bypass Flaw in NetScaler Products
- Banking Trojan 'Grandoreiro' Returns With New Tricks Despite Police Takedown
- Unpatched Zimbra Servers Under Active Attack: What SMBs Need to Know
- Hackers Compromise 14,000 IP Cameras in Russia and Ukraine
- US Charges 17 Alleged Iranian Hackers in Global Hacking-for-Profit Scheme
- Atlassian and Splunk Release Fixes for Dozens of Serious Security Flaws
- Critical MLflow Flaw Being Exploited to Steal Cloud Credentials
- ‘Zombie Card’ Attack Shows Expired Visa Cards Can Be Tricked Into Working Again
- Security Flaw Found in Johnson Controls Simplex Incident Manager Could Expose User Credentials
- CISA Flags Two Actively Exploited TrueConf Server Vulnerabilities
- Cisco Fixes Critical Security Flaws in Crosswork and Secure Workload Products
- 'Shady AI' Emerges as a Major Governance Risk for Businesses
- New 'CDN Tsunami' Attack Method Could Massively Amplify Website Outages
- New 'Manic' Android Malware Blends Banking Fraud with Spyware Tactics
- AI Tool Helps Viasat Strengthen Satellite Security After 2022 Russian Cyberattack
- Critical Flaws Found in NASA Spacecraft Control Software Could Allow Unauthorized Commands
- New ToxicPanda 2.0 Android Malware Escalates Banking Fraud Threats Worldwide
- OpenAI Tightens AI Model Security After Recent Incidents
- New 'SPECTRE' Malware Uses Advanced Tricks to Hide from Security Software
- Chinese-Speaking Hackers Deploy AI to Automate Attacks After Breaching Web Servers
- Hackers Are Hijacking Trusted Work Chat Tools to Steal Logins
- 40 Fake Firefox Extensions Found Stealing Cryptocurrency Wallet Data
- Critical Citrix NetScaler Flaw Lets Attackers Bypass Login — Patch Now
- Phishing Scam Drains Over $1,000 ETH from Cryptocurrency User
- Critical GitLab Vulnerability Under Active Attack — Patch Immediately
- AI-Powered Attacks Target Siemens Industrial Control Systems in Critical Infrastructure
- Critical Elementor Pro Flaw Lets Hackers Take Over WordPress Sites Without Logging In
- CrowdStrike Recognised as Top Performer in Cloud Security Rankings
- Unfiltered AI Tool 'Kriminal' Raises Alarms as Cybercrime Enabler
- AI Agents Could Become Your Newest Insider Threat, Expert Warns
- Researchers Demonstrate Data-Leaking Attack on Cloudflare Workers
- OpenAI Pauses AI Training to Strengthen Safety Monitoring
- Chinese-Linked Hacking Group Targets Central Asian Organisations with Remote Access Trojans
- Maya Protocol Shuts Down After $1.7M Crypto Exploit
- Maya Protocol Halted After Attacker Exploits Six Bugs to Steal $1.4 Million in Bitcoin
- CodeSecCon: Free Virtual Event Focuses on Building Safer Software
- T-Mobile Cut a Cable to Kick Chinese Hackers Off Its Network
- New Espionage Campaign 'SilkParasite' Deploys Five Undocumented Hacking Tools
- Urgent Warning: Active Cyberattacks Targeting Industrial Control Systems, Including Siemens PLCs
- CISA Flags Actively Exploited MLflow Vulnerability — Act Now
- AI Security Startup Prevalent AI Secures $22 Million Funding Boost
- Over 14,500 Dahua Cameras Hacked in Global Attack Campaign
- US Charges 17 Iranian Hackers, Offers $10 Million for Information Leading to Arrests
- Phishing 3.0: When AI Attackers Meet AI Defenders
- Nearly 2,000 Hacked WordPress Sites Turned Into Malware Distribution Network
- Cl0p Ransomware Gang Exposes 40+ Victims in Major Software Exploit Campaign
- CISA Flags Four Critical Flaws Under Active Attack — Patch Now
- Urgent: Patch Now — Microsoft, VMware and Apple Flaws Under Active Attack
- Breaking Down Cyberattacks in Plain English: The Case for Crime Script Analysis
- Oracle Releases Massive Security Update With 943 Patches
- Google and Mozilla Release Critical Security Updates for Chrome and Firefox
- CareCloud Data Breach Now Affects 3.7 Million People, Far More Than First Reported
- Microsoft Uncovers 30+ Domains Linked to New Mac-Targeting Malware
- Hackers Deploy Custom Web Shell to Steal Engineering Data via PTC Windchill Flaw
- Maya Protocol Hit by $1.7M Crypto Exploit, Stolen Bitcoin Traced
- When AI Models 'Cheat the Test': Understanding the Risks of Benchmaxxing
- Urgent: Active Attacks Targeting N-able/N-central IT Management Software in Australia
- Decred Cryptocurrency Network Patches Critical Security Flaws
- Cross-Chain Trading Platform Loses $11 Million in Bitcoin After Exploit
- China-Linked Hackers Use AI to Power Near-Autonomous Cyberattack in APAC
- Critical GitLab Zero-Click Flaw Leaves Self-Managed Users Guessing
- Harmony Protocol to Roll Back Blockchain After Token Forgery Attack
- New 'CoSnitch' Technique Tricks Microsoft Copilot Into Exposing Its Own Security Weaknesses
- Lazarus Group's $292M DeFi Hack Still Shaking Crypto Markets Months Later
- AI Agents Gone Rogue: What Small Businesses Should Learn From Sandbox Failures
- Massive Credential Theft Targets Microsoft Entra Users: What SMBs Need to Know
- New Docuseries Pulls Back the Curtain on Life as a CISO
- One Click, Data Gone: Flaws Found in Microsoft Copilot Personal
- Hackers Actively Exploiting AI and Industrial Software Flaws to Steal Cloud Credentials
- New Scam Alert: 'Ransom Busters' Preys on Ransomware Victims with Fake Recovery Offers
- Webinar Explores Whether Cybersecurity Can Keep Up With AI-Speed Attacks
- From Self-Taught Hacker to AI Security Leader: A Career Built on Curiosity
- AI Uncovers Serious Security Flaws in Bitcoin Hardware Wallets
- Google Uses AI-Powered Code Review to Outpace Attackers Exploiting Stolen Source Code
- Baylor Genetics Data Breach Sparks Legal Action Over Exposed Personal Information
- Why 'Patch Everything Eventually' No Longer Works Against Today's Cyber Threats
- New 'TwinLoot' Malware Hides Inside Microsoft's Own Cloud Services
- Fake 'Ransom Busters': Ransomware Gang Poses as Recovery Experts to Steal Payments
- Researchers Warn AI Coding Agents Can Catch and Spread 'Mind Viruses'
- New Malware 'TWINLOOT' Hides Inside Microsoft SharePoint and Teams to Steal Passwords
- Startup Xpander Secures $7.5M to Help Businesses Manage AI Agents Safely
- Fortinet Buys Virtue AI to Strengthen AI Security Offerings
- Siemens Simcenter Nastran Vulnerability Could Allow Remote Code Execution
- Multiple Security Flaws Found in CISA's Malcolm Network Monitoring Tool
- CISA Flags Four Actively Exploited Bugs in Microsoft, VMware and Apple Products
- Fake RubyGems Packages Caught Stealing Browser Data and Crypto Wallets
- One Attacker's Server Has Been Quietly Scraping Salesforce and ServiceNow Data for Over a Year
- WordPress Form Plugin Flaw Puts 300,000 Sites at Risk of Takeover
- Heights Finance Data Breach Exposes Details of 1.2 Million People
- SafePal Data Exposure Hits Nearly 40,000 Customers Due to Order-Tracking Flaw
- Critical GitLab Flaw Let Attackers Tamper With Data Without Logging In
- Attackers Exploit macOS Screen Sharing Flaw to Hijack Macs for Crypto Mining
- Apple Patches Dozens of WebKit Flaws in Latest macOS and iOS Updates
- US Cybersecurity Agency Warns of Actively Exploited Flaw in AI Framework 'Ray'
- Old Coldcard Wallet Flaw Blamed for $115 Million in Stolen Bitcoin
- Years-Old Coldcard Wallet Flaw Still Being Exploited to Steal Bitcoin
- Law Firm Investigates USA DeBusk Data Breach Affecting Personal Information
- Answering a Video Call Could Hijack Your Android Phone, Researchers Warn
- Critical GitLab Flaw Could Let Hackers Delete Projects Without Logging In
- AI Agents Turned Rivals: Anthropic Testing Reveals Self-Replicating Malware Risk
- Threat Modeling Expert Highlights Lessons from Hugging Face AI Attack
- GitHub Workflow Flaw in Snowflake Repo Shows Risk of Automated Issue Handling
- Critical WordPress Plugin Flaw Puts 600,000+ Sites at Risk of Takeover
- SafePal Plugin Flaw Exposes Data of Nearly 40,000 Customers
- Iranian Hackers Refine 'Cavern' Malware to Hide Inside Everyday Web Traffic
- Apple Warns Record Number of Users of Suspected Spyware Attacks
- New Linux Botnet 'Evooo1Bot' Turns Hacked Devices Into Attacker Toolkits
- French Tax Authority Breach Exposes Data of 680,000 People
- Data Breach Halts Bitcoin Purchases, Puts 250,000 Crypto Users at Risk
- Weekly Threat Recap: Old Bugs, Exposed Services and Browser Hijacks Keep Costing Businesses
- How a Simple Naming Mistake Let AI Models Target a Real Company
- CISA Flags Actively Exploited Flaw in Ray-Project AI Framework
- AI Assistants Could Be Leaking Your Business Secrets Without You Knowing
- SafePal Breach Exposes 40,000 Crypto Wallet Customers' Personal Data
- Coldcard Hardware Wallet Flaw Linked to $100M Bitcoin Theft
- AI Testing Reveals Risk: Claude Agents Deployed Self-Replicating Malware Under Conflicting Instructions
- Unresolved Unisoc Modem Flaw Lets Attackers Take Over Android Devices via Video Call
- Harmony Blockchain to Roll Back Chain After Forged Token Exploit
- SafePal Data Breach Exposes Details of 40,000 Customers
- macOS Screen Sharing Flaw Exploited to Secretly Mine Cryptocurrency
- New Linux Botnet 'Evooo1Bot' Hijacks Vulnerable Devices for Proxy Networks
- Hackers Exploit macOS Screen Sharing Flaw to Hijack Systems for Crypto Mining
- SAP Commerce Cloud Under Attack Just Days After Critical Flaw Disclosed
- Hackers Exploit Old macOS Screen Sharing Flaw to Secretly Mine Cryptocurrency
- Suspected China-Linked Hackers Exploit Critical VMware vCenter Flaw to Deploy Ransomware
- Hackers Claim Massive Data Theft from Microsoft Azure, Targeting Major Global Brands
- SafePal Breach Exposes 39,000 Users, Fueling Phishing Fears
- SafePal Data Breach Raises Fears of Real-World Attacks on Crypto Holders
- SafePal Bitcoin Wallet Breach Exposes Customer Details, Raising Safety Concerns
- How AI Is Learning to Think Like a Security Analyst
- Historic Hardware Wallet Hack: $112M in Bitcoin Stolen via Coldcard Firmware Flaw
- SafePal Data Breach Exposes Nearly 40,000 Users' Personal Information
- Hackers Exploit macOS Screen Sharing Flaw to Mine Cryptocurrency
- Researchers Show Encrypted AI 'Reasoning Traces' Can Be Exposed, Leaking Passwords and Personal Data
- Study Reveals $575 Million Lost to Address Errors and Exploits on Ethereum and BNB Chain
- Apple Fixes macOS Bug Used to Secretly Mine Cryptocurrency
- SafePal Confirms Data Breach Exposing Thousands of Customers' Personal Data
- SafePal Data Breach Exposes Nearly 40,000 Customers to Phishing Risk
- Critical macOS Screen Sharing Flaw Exploited for Silent Crypto Mining
- SafePal Crypto Wallet Data Exposure Puts 40,000 Users at Phishing Risk
- SafePal Data Breach Exposes Nearly 40,000 Customer Orders, Phishing Risk Rises
- Baylor Genetics Investigates Data Breach Exposing Patient and Employee Information
- SafePal Data Breach Exposes Nearly 40,000 Customers' Personal Information
- SafePal Discloses Data Exposure Linked to Plugin Security Flaw
- SafePal Data Breach Exposes Nearly 40,000 Customers' Details
- Critical macOS Flaw Exploited to Secretly Mine Cryptocurrency
- SafePal Data Breach Exposes Order Details of 40,000 Crypto Wallet Users
- SafePal Crypto Wallet Provider Discloses Breach Affecting 40,000 Customers
- Crypto Wallet Maker SafePal Confirms Data Breach Affecting 40,000 Customers
- Crypto Wallet Provider SafePal Reportedly Exposes Data of 40,000 Customers
- Critical SAP Commerce Cloud Flaw Under Active Attack — Patch Immediately
- French Tax Data Breach Exposes 678,000 Individuals and Businesses, Raising Bitcoin-Theft Fears
- Critical macOS Screen Sharing Bug Actively Exploited to Install Crypto Miners
- Security Audit Catches Critical XRP Ledger Bugs Before They Could Be Exploited
- Law Firm Investigates AdaptHealth Data Breach Affecting Personal Information
- Law Firm Investigates Lennar Corporation Data Breach Affecting Personal Information
- Why Today's Top Security Leaders Need Business Skills, Not Just Tech Skills
- Cybercriminals Spend Millions Buying Expired Domains to Spread Scams and Malware
- AI Is Fueling a Flood of New Vulnerabilities—Can AI Also Help Fix It?
- Why Identity and Access Management Is Now a Compliance Must-Have
- French Tax Data Breach Puts 678,000 Taxpayers at Risk of Scams
- Scottish Prosecutor's Office Data Breach Linked to Third-Party Vendor
- Why Boards Keep Getting Caught Off Guard by Tech Risk
- Chinese Hacking Group Adds Stealth Rootkit to Evade Detection
- Cyera's $1 Billion Acquisition Signals New Era of AI Agent Security
- Hardware Wallet Exploit Leads to $112M Bitcoin Theft
- Weekly Roundup: Rapid7 Cuts Jobs, Boeing 737 Hack Demoed, and Refrigeration Systems Found Vulnerable
- Fake Google Ad Costs Crypto Trader $550,000 in Phishing Scam
- Security Scanner Bug, Not LiteLLM, Behind Breach Affecting 2,500 Organisations
- New Free Tool Reveals Who's Tracking You Online
- New Free Tool Reveals Who's Tracking Your Business Online
- New Attack Technique Lets Hackers Hijack Your Logged-In Browser Sessions
- Google Cloud Charts Path to Quantum-Safe Security by 2029
- Fake Job Interview Pages Used to Steal Google and Facebook Logins in Global Phishing Campaign
- Apple Alerts Users in 110 Countries to Possible Spyware Targeting
- RingCentral Data Breach May Have Exposed 1.6 Million Users' Personal Information
- Beacon CRM Breach Exposes Data from Over 1,000 Charities
- Trezor Warns 14,000 Customers After Data Breach at Shipping Partner ShipMonk
- Hackers Actively Exploiting Unpatched Flaw in GeoServer Software
- New macOS Malware 'AmnesiaStealer' Targets Passwords and Browser Data
- Fake Google Ad Scams Crypto User Out of $550,000
- Crypto Investor Loses $550,000 to Fake Google Ad Phishing Scam
- AI Security Sweep Flags Nearly 8,000 Potential Flaws in Bitcoin Software
- Critical VMware vCenter Vulnerability Under Active Global Attack
- Why Curiosity Is Cybersecurity's Most Underrated Skill
- Fake Google Ads Used to Steal $550,000 in Crypto Phishing Scam
- Cybersecurity Industry Consolidates: 21 M&A Deals Announced in July 2026
- Hackers Move Fast: Adobe Commerce Flaw Exploited Right After Patch Release
- WordPress Patch Fixes Serious Remote Code Execution Flaw
- Trezor Data Breach Exposes Details of Nearly 14,000 Bitcoin Wallet Buyers
- Chinese AI Models Outperform Restricted US Systems on Cybersecurity Tasks, Industry Warns
- Siemens Solid Edge Software Vulnerable to Malicious File Attacks
- Siemens Parasolid Software Vulnerable to File-Based Attack, Update Urged
- Siemens LOGO! Soft Comfort Software Has Encryption Flaws — Update Now
- Siemens License Server Flaws Could Let Attackers Elevate Privileges, Access Files
- Siemens Building Controllers Vulnerable to Network-Based Disruption
- Security Flaws Found in ANDRITZ HIPASE-250 and 250 SCALA Devices Used in Energy Sector
- Security Flaw Found in Johnson Controls Metasys Building Management System
- Security Flaw Found in Flow Neuroscience Brain Stimulation Device
- Critical Flaw Found in Siemens Video Management Software—Update Now
- CISA Flags Vulnerabilities in Johnson Controls Airwall Security Devices
- Cybersecurity Investment Surges as Team8 Raises $365 Million
- Fortinet Fixes Critical Login Flaws in FortiWeb and FortiManager
- New Phishing Toolkit Mimics Popular Checkout and Login Pages
- 'Jewelbug' Hacker Group Blends Espionage with Cryptocurrency Theft
- White House Enlists Private Security Firms to Fight Foreign Cybercrime Gangs
- Critical VMware vCenter Flaw Now Being Actively Exploited
- New Windows Zero-Day 'ShieldBreak' Lets Attackers Gain Full System Control
- Harmony Blockchain Hack: Attacker Mints Billions in ONE Tokens, Rollback Considered
- Flaws in Belgium's Digital ID Browser Extension Expose Citizens to Remote Attacks
- Hackers Actively Targeting SharePoint Flaw After Exploit Code Goes Public
- North Korea's Lazarus Group Moves $16.6 Million in Bitcoin
- Coldcard Bitcoin Wallet Hit by Security Breach
- Long-Running 'City-Forum' Campaign Targets Salesforce and ServiceNow Data
- North Korean Hackers Exploited Windows Zero-Day to Plant New Backdoor
- Walmart's Collaborative Security Model: What SMBs Can Learn from 'Purple Teaming'
- Microsoft SharePoint Flaw Under Active Attack After Exploit Code Goes Public
- 737 Fake VPN Extensions Found Hijacking Browser Traffic in Chrome Web Store
- Ransomware Strikes Colombian Justice Ministry Ahead of Presidential Handover
- AI Security Startup Mindgard Secures $30 Million in Funding
- Uber Freight Investigating Alleged Data Breach Claimed by Hacking Group
- WhatsApp Rolls Out Scam Alerts as Signal Boosts Key Verification
- New 'City-Forum' Attacks Exploit Guest Access in Salesforce and ServiceNow
- Walmart's Security Playbook: Trust and Communication Over Chaos
- Flaw in Major AI Providers' APIs Exposed Hidden Reasoning Data, Including Secrets
- Businesses Getting Better at Blocking Attacks – But Attackers Are Slipping Through the Cracks Anyway
- Cyberattack Disrupts Global Logistics Giant Ceva, Delaying Shipments Across Europe
- Adobe Issues Urgent Patches for Critical ColdFusion and Campaign Classic Vulnerabilities
- Intel and AMD Patch Over 80 Security Flaws in Latest Updates
- Harmony Blockchain Hit by Massive Token Minting Exploit
- Supply Chain Attack on LiteLLM Hits Over 2,500 Organizations
- Harmony Blockchain Hit by Exploit, Native Token Crashes 30%
- Critical VMware vCenter Flaw Now Under Active Attack, Giving Hackers Persistent Access
- North Korean Hackers Exploit New Windows Zero-Day to Seize Control of Victim Systems
- Ivanti Patches Remotely Exploitable Flaws in Endpoint Manager
- Brief but Dangerous: Malicious LiteLLM Package May Have Hit 2,100+ Organisations
- Industrial Equipment Makers Patch Security Flaws — Here's What Businesses Should Know
- Critical SAP Commerce Cloud Flaw Rated Maximum Severity — Patch Now
- SonicWall Fixes Critical Flaws in Discontinued Management Platform
- New 'ShieldBreak' Exploit Bypasses Windows Defender Patch, Grants Full System Access
- Cisco Firewall Flaw Being Actively Exploited to Crash Devices
- XRP Bridge Hack: Attacker Exploits Relayer Flaw, Funds Traced to Tornado Cash
- Cisco Fixes Actively Exploited Firewall Flaw That Can Knock Devices Offline
- Harmony Blockchain Hit by $Billions Exploit, Token Crashes 40%
- Harmony Protocol Suffers Major Exploit, Token Price Plummets 30%
- Fake Deposit Bug Lets Hackers Steal $200K in Cryptocurrency Bridge Attack
- Microsoft's August 2026 Patch Tuesday Fixes 421 Vulnerabilities, 62 Critical
- Microsoft's August Patch Tuesday Brings Another Wave of Security Fixes
- Microsoft's Latest Patch Batch Fixes Nearly 400 Security Flaws — One Already Under Attack
- Microsoft's August Update Fixes Nearly 400 Flaws, One Already Under Attack
- Gunra Ransomware Gang Bypasses MFA by Exploiting Old Fortinet Vulnerabilities
- Microsoft's Latest Patch Tuesday Fixes 398 Bugs — One Already Under Attack
- New Kimwolf v7 Botnet Disguises DDoS Attacks as Normal Web Traffic
- Zoom's Drawing Tool Had a Dangerous Flaw — Update Now
- Microsoft's August Patch Tuesday Fixes 421 Flaws — Including One Under Active Attack
- Fake Job Interviews Used to Trick IT Workers Into Installing Malicious VPN Software
- Adobe Sounds Alarm on Critical Flaws in ColdFusion and Campaign Classic
- AI-Discovered Flaw Lets Attackers Break Into Microsoft SharePoint Without a Password
- DeadLock Ransomware Gang Uses Blockchain Tech to Dodge Takedowns
- BTCPay Server Community Offers Bounty After Critical Flaw Exploited
- Zoom Fixes Serious Flaw That Let Meeting Attendees Hack Other Participants
- Coldcard Hardware Wallet Attack Sparks Mass Bitcoin Security Overhaul
- AI Governance Isn't an IT Problem—It's a Leadership Problem
- SAP Issues Urgent Patches for Critical Security Flaws
- New US Initiative Aims to Shield Water Utilities From Cyberattacks
- Nearly 200,000 XRP Stolen in Coreum Cross-Chain Bridge Exploit
- OpenAI Releases Cybersecurity-Focused AI Model with Fewer Safety Restrictions
- Hardware Wallet Exploit Sparks Wave of Bitcoin Fund Transfers
- Malicious SIM Cards Can Hijack IoT Devices Like EV Chargers and Industrial Routers
- Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Accidental Exposure
- Cybersecurity Startup Corma Secures $60 Million to Build Defensive AI Tools
- Three Actively Exploited Vulnerabilities Added to CISA's Critical List — Cisco, Microsoft and Metabase Affected
- Security Flaw Found in Pulsetto Vagus Nerve Stimulator Device
- Critical Security Flaws Found in Mira Hormone Monitor Devices and App
- Critical Flaws Found in Johnson Controls Access Control Systems
- Coreum Bridge Exploit Drains 200,000 XRP in Under Two Hours
- Fake Crypto Startup Sting Exposes North Korean Fake IT Workers
- Malicious Chrome Extension Sneaks Back Into Web Store After Ban
- Fake USB Devices Can Trick Windows 11 Into Handing Over Full Control
- AI Coding Assistants Tricked Into Leaking Secrets via 'Split Instruction' Attacks
- New Kimwolf v7 Botnet Targets Android IoT Devices with Advanced Evasion Tricks
- From WannaCry Hero to Cautionary Tale: The Marcus Hutchins Story
- OpenAI Launches GPT-5.6-Cyber to Boost Cybersecurity Defences
- BTCPay Server Offers Bounty to Recover Stolen Bitcoin After Exploit
- Gunra Ransomware Targets Fortinet and Schneider Electric Vulnerabilities to Infiltrate Networks
- Ravencoin Warns of Critical Bug That Could Let Attackers Rewrite Transaction History
- Hackers Shut Down Turbine at Polish Power Plant via Private Cellular Network
- Mozilla Replaces Firefox Signing Key After Accidental Public Exposure
- Critical Flaw in Ravencoin's KAWPOW Algorithm Exploited, Forcing Major Blockchain Rollback
- WordPress Plugin Vendor BdThemes Hit by Supply Chain Attack, Creating Rogue Admin Accounts
- Patch Now: August Update Fixes Actively Exploited Windows Flaw Among 415 Security Bugs
- BTCPay Server Community Offers Bounty After Lightning Wallet Hack
- BTCPay Server Exploit Drains Bitcoin Wallets, $190,000 Bounty Offered for Recovery
- BTCPay Server Backers Offer 3 BTC Bounty Following Critical Exploit
- AI Gym-Booking Assistant Goes Rogue: Lessons for Businesses Using AI Agents
- New 'Aeternum' Malware Uses Blockchain to Hide Its Command Centre
- 'GhostJacking' Attack Reveals Hidden Risks in AI Agent Security
- Iran-Linked Hackers Suspected in Widening Attacks on US Water Systems
- Critical Zero-Day in Metabase Analytics Tool Could Expose Countless Business Systems
- Beyond the Checklist: Why Aussie Businesses Need to Rethink How They Patch
- Advanced iPhone Hacking Tools Once Reserved for Spies Now Spreading to Cybercriminals
- BTCPay Server Hit by Critical Exploit; Bounty Offered for Recovery
- New China-Linked Ransomware 'StormEncryptor' Signals Evolving Threat to Businesses
- BTCPay Server Offers Bitcoin Bounty After Wallet Exploit
- Outdated Cybercrime Laws Leave Ethical Hackers Exposed
- What Sherlock Holmes Can Teach Us About Social Engineering
- Weekly Threat Recap: AI Risks, a Metabase Zero-Day, and Router Backdoors Highlight Basic Security Gaps
- OpenAI's Next AI Model Could Enable Fully Autonomous Cyberattacks, Experts Warn
- Crypto Exchange Coinsbuy Loses $8M in Cross-Chain Hack
- New Startup Aims to Close Security Gaps in AI Cloud Infrastructure
- Cisco Flags High-Severity Flaws in ClamAV Antivirus Software—Exploit Code Already Public
- North Korean Hackers Go Offline with Custom AI to Supercharge Cyberattacks
- 'Ghostjacking': How Hackers Trick AI Security Tools by Poisoning Their Own Logs
- Passkeys Aren't Bulletproof: New Research Shows Ways Attackers Can Bypass Them
- New Gunra Ransomware Threat Targets Businesses with Double-Extortion Tactics
- AI Is Supercharging Software Development — Is Your Security Keeping Pace?
- Iran-Linked Hackers Widen Attacks on US Water Systems
- Hackers Exploit Unpatched TrueConf Servers to Deliver Malicious Installers
- Metabase Rushes Out Patch After Hackers Exploit Flaw as Zero-Day
- Hackers Used a New 'Private Network' Trick to Sabotage Polish Energy Facility
- Urgent Patch Alert: Actively Exploited Flaw Found in Progress LoadMaster Software
- Levi Strauss Confirms Data Theft After Social Engineering Attack
- Fake VS Code Extension 'Solidity Pro' Caught Stealing Crypto Wallets and Credentials
- Critical BTCPay Server Flaw Lets Attackers Drain Bitcoin Lightning Nodes
- OpenAI Hits Pause on New AI Model After It Shows Alarming Cybersecurity Skills
- Critical Security Flaws Found in Widely Used Belgian eID Software
- Volunteer Security Sweep Finds Nearly 5,000 Flaws Across Bitcoin Infrastructure
- AI Platforms Under Attack: What the Hugging Face Breach Means for Business Security
- Crypto Platform Coinsbuy Hacked for Over $8 Million, Funds Laundered via Monero
- Microsoft Uncovers Malware Hiding Commands in Blockchain Smart Contracts
- Shenzhen Employee Jailed for Bitcoin Extortion Posing as Overseas Hacker
- AI-Powered Red Team Uncovers Critical Flaws in Bitcoin Software
- OpenAI Pauses 'Astra' AI Model Over Autonomous Hacking Concerns
- One-Click Flaw in Atlassian's Rovo AI Could Have Exposed Business Data
- Why Hackers Get Nicknames: Inside the Naming of Cyber Threat Groups
- Atlassian's AI Assistant Rovo Could Be Tricked Into Leaking Jira and Confluence Data
- Bitcoin Hardware Wallet Hack Sparks Mass Fund Migration
- Hidden CSS Tricks in Emails Can Steal Passwords Across Major Webmail Platforms
- Aztec Hacker Launders 500 ETH Through Tornado Cash as Crypto Thefts Surge
- Critical Metabase Flaw Being Actively Exploited — Patch Immediately
- N-able Rushes Second Hotfix as Hackers Continue Targeting N-central RMM Tool
- Critical Flaw in Progress Kemp LoadMaster Added to US Government's Actively Exploited Vulnerabilities List
- BTCPay Server Users Urged to Update After Critical Flaw Exploited to Steal Funds
- Critical BTCPay Server Flaw Exploited to Steal Bitcoin from Lightning Nodes
- Hackers Exploit Blockchain Smart Contracts to Hide Malware
- Bitcoin Lightning Network Exploit Drains Merchant Wallets
- Bitcoin Payment Tool Exploit Lets Attackers Drain Merchant Wallets
- OpenAI's AI Agents Accidentally Attacked Hugging Face, Timeline Reveals
- BTCPay Server Rushes Out Emergency Patch After Two-Factor Bypass Found
- Identity Theft, Not Malware: Why 90% of Cyberattacks Now Start With Stolen Logins
- OpenAI Pauses Development of AI Model Over Cybersecurity Capability Concerns
- Nearly 800 Fake npm Packages Caught Spreading Malware Across Windows, Mac and Linux
- New Mac Malware Uses Fake 'Fix It' Prompts to Steal Crypto and Passwords
- Fake IT Help Desk Calls Used to Steal Corporate Cloud Data, Researchers Warn
- AI-Written Software Patches Fail Half the Time, Study Finds
- Critical BTCPay Server Flaw Under Active Attack — Update Now
- Critical BTCPay Server Flaw Under Active Attack — Update Now to Protect Bitcoin Funds
- Weekly Roundup: Low-Quality AI Bug Reports, Port Cyberattacks, and Wall Street Targeted by Hackers
- Bitcoin Users Targeted: Trezor Phishing Ad and BTCPay Server Flaw Under Active Attack
- Critical WordPress Flaw Could Let Hackers Take Over Your Website — Update Now
- Hackers Use Fake CAPTCHAs and Blockchain Tricks to Spread Malware
- Fake CAPTCHA Scam Uses Blockchain to Deliver Malware
- Aviation Alert: Legacy Air Traffic Communication System Vulnerable to Message Injection Attacks
- Actively Exploited Flaw in Progress LoadMaster Added to CISA's Must-Patch List
- Open Source Software Is Growing Up: What That Means for Small Businesses
- Decades-Old Linux Kernel Flaw Lets Attackers Escape Containers and Seize Root Access
- Voice Phishing Extortion Gang Rebrands Multiple Times After Making Millions
- Phishing Attack Hijacks Microsoft 365 Accounts to Spy on Payroll and Finance Emails
- AI Research Tool Uncovers New Web Attack Techniques, Including Apache Zero-Day
- Truck Brake Recall Quietly Fixed Hidden Cybersecurity Flaws
- NatJack Attacks Exploit NAT Tables to Hijack Connections and Spoof DNS
- Black Hat USA 2026: What SMBs Should Know About the Latest Cybersecurity Product Announcements
- Microsoft and Apple Roll Out Critical Security Patches — Update Now
- Windows Hello for Business Flaw Lets Malware Hijack Cloud Logins
- GitHub Issues Used to Hijack AI Coding Assistants' CI Pipelines
- North Korean Hackers Hijack Telegram Accounts to Target Crypto Professionals
- Data Breach at Unlimited Technology Systems Exposes 3.8 Million People's Personal and Health Data
- Google Releases Chrome 151 Update to Fix Critical Security Flaws
- Hacking Group 'TeamPCP' Has Been Quietly Attacking Servers Since 2020, Researchers Find
- Volunteer Hackers Uncover Nearly 5,000 Flaws in Bitcoin Software After Wallet Hack
- Microsoft Warns of ClickFix Malware Campaign Abusing Blockchain to Evade Takedowns
- Coldcard Bitcoin Wallet Flaw Exposes Years-Long Seed Theft Risk, AI Audit Finds Dozens More Bugs
- CrowdStrike Uncovers Hackers Hiding Malicious Commands on VMware ESX Servers
- Microsoft Warns of ClickFix Malware Using Blockchain to Hide Attack Instructions
- Coldcard Hardware Wallet Flaw Linked to $130M Bitcoin Theft
- Coldcard Hardware Wallet Flaw Blamed for $130M Bitcoin Theft
- Zeus Wallet Shuts Down Systems After Cyberattack, Says Customer Funds Are Safe
- Fake XRP Airdrop Scams Target Crypto Investors, Foundation Warns
- Microsoft Warns Hackers Are Using Blockchain to Hide Malware from Takedown Efforts
- Cybercriminals Are Working Together Faster Than Law Enforcement Can Keep Up
- AI Agents Are Breaking Out of Testing Labs — And Businesses Should Take Notice
- Security Researcher Exposes Weakness in ChatGPT's 'Secure' Sandbox
- Lessons from the DNC: Why a 'Security-First' Culture Needs More Than Just Rules
- How the Words We Use About AI Threats Shape Our Security Decisions
- New 'Zapscape' Flaw Could Let Attackers Break Out of Virtual Machines
- Cisco Fixes 12 Security Flaws in SD-WAN and IOS XE Software, Three Rated Critical
- Zeus Wallet Suspends Operations After Cybersecurity Breach
- Canadian Man Pleads Guilty to Snowflake Data Extortion Spree
- Canadian Man Admits Role in Massive Snowflake Data Extortion Spree
- Bitcoin Ecosystem Audit Uncovers Nearly 5,000 Security Flaws
- Microsoft Uncovers Malware Campaign Abusing BNB Smart Chain
- Researchers Find New Way to Sneak Past Intel and AMD's Spectre Chip Defenses
- Wall Street Hedge Funds Hit by Wave of Sophisticated Cyberattacks
- ThreatsDay Roundup: RCE Flaws, One-Click Exploits, and Trusted Tools Turned Against You
- AI-Powered Security Audit Uncovers Dozens of Critical Bitcoin Software Flaws
- Snowflake Hacker Pleads Guilty in US Court
- Google Warns of Hackers Using Phone Calls and Fake Websites to Target Financial Firms
- AI Security Scan Uncovers Over 1,000 Critical Flaws in Cryptocurrency Projects
- Coldcard Wallet Hack Sparks Bitcoin Custody Debate Amid ETF Inflows
- Same Scammers, New Names: Vishing Extortion Gang Rebrands to Evade Detection
- AI Browsers Can Be Hijacked Without a Single Click, Researchers Warn
- Hackers Move Millions in Stolen Crypto from Coldcard Wallet Exploit
- Thousands of Rockwell Industrial Controllers Found Exposed Online, Including Near Water Utility Attacks
- Why Ticking Compliance Boxes Won't Stop Cyberattacks
- Security Flaw Found in Medixant RadiAnt DICOM Medical Imaging Software
- Security Flaw Found in Johnson Controls TL280 Devices
- Multiple Security Flaws Found in ABB Ability Zenon Industrial Software
- Weak Random Number Bug in Popular Crypto Library Linked to $5.7 Million in Wallet Thefts
- Coldcard Hardware Wallet Firmware Exploit Reportedly Drains Up to $100M in Bitcoin
- Apple's iCloud Private Relay Can Leak Your Real IP Address, Researchers Warn
- ZEUS Wallet Suspends Services After Security Breach
- 'Ask AI' Buttons Could Be Quietly Manipulating Your AI Assistant
- Critical Flaw in Paperclip Software Could Have Let Attackers Seize Admin Control
- Coldcard Wallet Hack Costs Investors 1,800 BTC, Sparks Rush to Regulated Alternatives
- Crypto Platform Zeus Wallet Goes Offline After Security Incident
- ‘Token Jacking’: How Hackers Are Stealing AI Resources From Businesses
- Meta's AI Went Rogue During a Security Test — What SMBs Should Know
- Ransomware Kingpin Sentenced to 16 Years in Prison
- Hackers Exploit SQL Injection to Hijack Oracle Databases and Gain Full System Control
- Security Gaps in AWS, Google and Vercel AI Agent Tools Could Let Attackers Bypass Safety Checks
- Zeus Wallet Goes Offline After Cyberattack, Founder Says Funds Safe
- Chinese Router Maker Zbtlink Caught Shipping Devices With Built-In Backdoor
- Coldcard Wallet Exploit Highlights Risks of Trusting Old Firmware
- Coldcard Hardware Wallet Hack: Stolen Crypto Moved to Mixers
- Cisco Issues Urgent Patches for Critical Networking Vulnerabilities
- Ransomware-as-a-Service Kingpin Sentenced to 16 Years in Landmark US Case
- US Cybersecurity Agency Warns of Active Attacks on JetBrains TeamCity Servers
- Critical JetBrains TeamCity Flaw Now Under Active Attack
- Coldcard Bitcoin Theft: Attacker Sits on $1,159 BTC While Stolen Funds Get Laundered
- Hacker Pleads Guilty in Massive Data Breach Affecting 100 Million People
- AI-Assisted Audit Finds 85 Critical Flaws in Bitcoin Ecosystem Projects
- Cybersecurity Industry Pushes for Broader AI Benchmarks
- Volunteer Security Sweep Uncovers Nearly 5,000 Issues in Bitcoin Software
- AI Fuels a New Golden Age for Global Fraud Syndicates
- New 'PleaseFix' Attack Exposes Hidden Risk in AI-Powered Browsers
- ZEUS Wallet Suspends Services After Cybersecurity Incident, Third Lightning Outage in a Week
- AI Browsers Still Vulnerable to Prompt Injection Attacks, Researchers Warn
- How Simple Web Styling Code Could Be Used to Steal Your Email Data
- Researchers Uncover $50,000 Exploit Chain Targeting Samsung Phones via Bixby
- 15 Security Flaws Found in TP-Link Devices Raise Questions About Automated Network Setup
- Fake 'ClickFix' Sites Now Screen Visitors Before Delivering Mac Malware
- OpenAI Shuts Down Cambodia-Based Scam Network Abusing ChatGPT
- Google Patches AI 'Agent-to-Agent' Flaw That Could Have Hit Software Supply Chains
- Bitcoin Red Team Uncovers 85 Critical Bugs Across 390 Open Source Projects
- Warning: Discounted 'Claude' AI Access Sold on Cybercrime Forums Puts User Data at Risk
- Security Flaws in Paperclip AI Agent Platform Could Let Attackers Run Malicious Commands
- Black Hat USA 2026: What SMBs Should Know About the Latest Cybersecurity Vendor Announcements
- Critical Flaws Patched in Veeam, HashiCorp Terraform MCP, and Django - Update Now
- Hackers Hide Malicious Server Addresses Inside Fake Ethereum Transactions
- Cyber Warfare Is Reshaping Global Conflict — Here's Why That Matters to Businesses
- Sophisticated Cyberattacks Target Major Wall Street Hedge Funds
- Passkeys Aren't Foolproof: New Malware Attacks Target Google's Synced Passkeys
- Actively Exploited JetBrains TeamCity Vulnerability Added to CISA's Must-Patch List
- Linux Kernel Flaw Lets Local Users Seize Full Control of Systems
- New Phishing Kit 'Kali365' Tricks Users Into Approving Attacker Logins on Real Microsoft Pages
- Data Breach at Brown Health Medical Group Exposes Information of 311,000 People
- Coldcard Hardware Wallet Flaw Exploited by 15 Hackers, $130M in Bitcoin Stolen
- New Industry Alliance Sets Ground Rules for Sharing AI Security Incidents
- Critical Gitea Vulnerability Lets Attackers Steal Server Files Without Logging In
- Exposed n8n API Tokens Put Automation Workflows at Risk
- AI Models Behaving Badly: Report Flags Rogue Behaviour from Anthropic and OpenAI Systems
- US Cyber Agency Warns: Attackers Actively Exploiting Flaws in Popular Business Software
- 77 Fake Extensions Caught Stealing Developer Data from Open VSX Marketplace
- Massive Supply Chain Attack Hits Over 400 NPM Software Packages
- Angola's Top Telecom Hit by Cyberattack Right Before Major Stock Launch
- AI Agent Caught Trying to Sneak Malware Into Open-Source Software — Then Covered Its Tracks
- US Cyber Agency Warns of Active Attacks on Langflow, Tomcat, and N-central Software
- Cyberattacks Reportedly Strike Water Utilities Across at Least 12 US States
- AI-Powered Attackers Outpace Defenders, Forcing Bitcoin Swap Service Offline
- Supply Chain Attack Hits QuickFox VPN Users with Hidden Backdoor
- AI Models Went Rogue in UK Cybersecurity Test, Researchers Warn
- New Guidance Helps Business Leaders Ask the Right Questions About AI Cyber Risks
- Bitcoin Swap Service Shuts Down as AI-Powered Attackers Outpace Defenders
- New 'Smoke#Screen' Campaign Hijacks Remote Access Tools to Infiltrate Networks
- Popular Phishing Toolkit Now Bypasses MFA Using a New Trick
- Coldcard Wallet Exploit Highlights Growing Role of AI in Crypto Security
- Black Hat USA 2026: Cybersecurity Vendors Unveil Latest Innovations
- Hackers Steal Over $100 Million in Bitcoin From 'Secure' Accounts
- Firmware Flaw in Coldcard Bitcoin Wallet Raises Self-Custody Security Concerns
- Why Traditional Security Tools Aren't Enough to Manage AI Risk
- Coldcard Wallet Flaw Blamed on Faulty Code, Losses Near $120M
- Coldcard Wallet Flaw Linked to $100 Million in Bitcoin Losses
- Cybersecurity Firm Oligo Secures $60 Million to Boost Runtime Security Tools
- Why Passion, Not Perfection, Keeps CISOs Going: Lessons from Ping Identity's Security Chief
- AI Email Assistants Could Become Tools for Hackers, Researchers Warn
- AI Security Startup Zenity Secures $125 Million to Expand Protection for Business AI Tools
- Massive npm Supply Chain Attack Hits Hundreds of Packages via Keyv Worm
- Beware Fake Adobe and Zoom Update Pop-Ups Hiding Remote Access Malware
- AI-Powered Scanning Uncovers Over 14,000 Hidden Flaws in Open-Source Software
- AI Meeting Notetaker Flaw Exposed Government and Corporate Video Calls
- Security Flaw Found in Thermo Fisher Genetic Analyzer Software Could Allow DNA Data Tampering
- Hard-Coded Encryption Key Flaw Found in Vehicle Alarm Systems
- Cybersecurity Startup Obsidian Secures $85M to Tackle AI Agent Risks
- CISA Flags Three More Actively Exploited Software Flaws — Is Your Business Affected?
- 15 Security Flaws Found in TP-Link Omada Networking Gear
- AI 'Vibe Hacking': How Cybercriminals Are Using AI as a Built-In Hacking Assistant
- Google Pulls AI Agent Workflows After Researchers Expose Prompt-Injection Flaw
- Coldcard Wallet Flaw Puts $114 Million in Bitcoin at Risk — Users Told to Move Funds Now
- Security Flaw in Google's Gemini AI Agent System Could Expose Secrets
- cPanel Fixes Critical Flaw Allowing Hosting Customers to Run SQL as Database Root
- Old Server Hardware Flaw Leaves Thousands of Data Centers Exposed
- Coldcard Hardware Wallet Exploit Blamed for Over $100M in Bitcoin Theft
- New Russian 'DOUBLECUP' Malware Service Hides Malicious Code in Cached Images
- Data Breach at Madera Community Hospital Exposes Info of 150,000 People
- Coldcard Warns Bitcoin Hardware Wallet Users: Active Exploit Still Draining Funds
- Coldcard Bitcoin Wallet Hack Losses Top $100 Million as Attacks Continue
- Coldcard Hardware Wallet Exploit Tops $100M in Stolen Bitcoin
- CISA Warns: N-able N-central Flaw Actively Exploited, Patch Now
- Device Code Phishing Surges 1,500% as Attackers Bypass Traditional Security Controls
- Microsoft Pays Out $20 Million to Security Researchers in Bug Bounty Program
- Securing AI Agents: Why Preventing 'Escape' Matters for Businesses
- Nidec Reports Update on Ransomware Attack at Taiwanese Subsidiary
- Coldcard Hardware Wallet Exploit Linked to Over $100 Million in Stolen Bitcoin
- New York Invests $9 Million to Shore Up Cybersecurity at 153 Water Utilities
- Urgent: New Bypass Flaw Found in N-able RMM Software Gives Attackers Admin Access
- New Research Tool Aims to Trace AI-Generated Videos Back to Their Source
- Anthropic: AI Security Incidents Traced to Access Controls, Not Faulty Models
- Bitcoin Swap Platform Boltz Suspends Services After AI-Assisted Attack Attempts
- Malicious npm Packages Target Alibaba Developer Tool Users With Hidden Remote Access Trojan
- Coldcard Hardware Wallet Flaw Exposes Weakness in Bitcoin Key Generation
- Coldcard Wallet Exploit Drains Over 1,367 BTC, Raising Self-Custody Security Concerns
- Fake XRP Staking Sites Drain Millions from Cryptocurrency Investors
- Coldcard Wallet Exploit Shows Even 'Offline' Storage Isn't Foolproof
- Malware Could Bypass Passkey Security in Google Password Manager, Researchers Warn
- INC Ransomware Gang Ramping Up Attacks on SonicWall VPN Flaws
- AI Gateways Like LiteLLM Are Becoming Prime Targets for Attackers
- Black Hat USA 2026: What Small Businesses Should Know About the Latest Security Product Announcements
- Chinese Threat Actor Weaponises DeepSeek AI Agent in Attack on Security Firm
- Visa Acquires Fraud-Detection Firm BioCatch in $2.4 Billion Deal
- Bitcoin Bridge Service Boltz Suspends Operations After AI-Assisted Attacks
- Cyberattack Strikes Liechtenstein's Corporate Ownership Register
- This Week in Cyber: AI Overreach, an $88M Crypto Heist, and the Danger of Forgotten Digital Access
- CISO Burnout: When Accountability Outweighs Authority
- River Bank Confirms Hackers Deleted Data Stolen in June Ransomware Attack
- Cybersecurity Firm Horizon3 Secures $250 Million to Expand Growth
- UK Data Regulator Watching Closely After AI Agents Used in Hacks
- N-able Rushes Out Fix After Hackers Bypass Patch for N-central Servers
- Actively Exploited Flaw Found in N-able N-central: What SMBs Using Remote Management Tools Need to Know
- AI Tools Are Reshaping Security Operations—But Where They Fit Matters Most
- Coldcard Hardware Wallet Exploit Drains 1,367 BTC as Bitcoin Community Responds
- Phishing Scam Targets XRP Cryptocurrency Users with Fake Websites
- Hardware Wallet Flaw Blamed for Nearly $90 Million in Bitcoin Thefts