Skip to content

Cybersecurity news & advisories

43 / 43 active
Advisory
Threat Intel
Research
News
Media
Podcast
500 articles RSS ↗ Updated
Threat Intel Check Point Research

21st September – Threat Intelligence Report

Breach Research

For the latest discoveries in cyber research for the week of 21st Setpember, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Japan’s Digital Agency, which operates the Government Solution…

↗ Open article
News The Register Security

Anthropic-linked CVEs pile up, attackers mostly shrug

Vuln

Despite the concern that advanced AI models’ bug-hunting prowess will lead to attackers exploiting more newly uncovered CVEs, fewer than 0.5 percent of the vulnerabilities linked to Anthropic or Project Glasswing are…

↗ Open article
Media Ars Technica Security

Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day

Vuln Privacy

Meta founder and CEO Mark Zuckerberg has gone to great lengths to hype the security of its new AI assistant Muse, claiming it is “built from the ground up for privacy and security.” A zero-day vulnerability that gives…

↗ Open article
Trending Threat Intel Volexity

Mind the (Patch) Gap, Part 2: Fake Websites Used to Deploy Chrome & Windows 0-Day Exploits

CVE-2026-85046 ↗ CVE-2026-85880 ↗ Vuln

On September 9, 2026, Volexity published a blog post detailing the simultaneous use of multiple chained zero-day exploits in Google Chrome ( CVE-2026-85046 , CVE-2026-87491 ) and Microsoft Windows ( CVE-2026-85880 ) by…

↗ Open article ↗ CVE feed
News The Register Security

Meta Muse AI app flaw lets local malware redirect dictation traffic

Malware

Meta made much of the security of its AI assistant app Muse at launch earlier this month, calling out the app's reliance on Muse Secure VM. "Each person stays in control of their Muse and decides how much access it…

↗ Open article
News 404 Media

How AI Chatbots Are 'Deskilling' Human Empathy

When I first started writing about online cultures and subcultures almost 10 years ago, one of the first scholars I read on the subject of internet anthropology was Professor Sherry Turkle. Her earlier books, including…

↗ Open article
News The Register Security

Treasury chief says AI bosses, not their bots, will carry the can for criminal acts

The US appears to be inching ever so slowly toward holding AI executives legally liable for their models’ criminal activities. Treasury Secretary Scott Bessent told CNBC on Monday: “It is the humans who are responsible…

↗ Open article
Trending News The Hacker News

Fake LastPass Authenticator Installer Abuses Microsoft-Signed Driver to Kill Antivirus and EDR

A fake LastPass Authenticator installer offered on GitHub installs a Windows kernel driver that shuts off antivirus and other security software before a password stealer runs if a victim downloads and runs it…

↗ Open article
News The Hacker News

Contagious Interview Campaign Compromises 30,000 Devices, Steals $10.71M in Crypto

Breach

The North Korean threat actors behind the Contagious Interview campaign have compromised at least 30,000 devices located in more than 100 countries and siphoned funds or account credentials from over 7,000…

↗ Open article
Trending News The Hacker News

Google Fined €403 Million Over GDPR Violations Tied to Location Data

Privacy Policy

Google has been fined €403 million for breaking the EU's data protection law, the GDPR, in the way three of its features handled people's location data from May 2018 to February 2020. Ireland's Data Protection…

↗ Open article
Trending News Cyber Security News

Google Fined €403 Million for GDPR Violations Over Users’ Location Data

Privacy Policy

Ireland’s Data Protection Commission (DPC) has fined Google Ireland Limited €403 million after concluding that the technology giant violated the General Data Protection Regulation (GDPR) while processing users’ location…

↗ Open article
Threat Intel Malwarebytes Labs

The AI plot to scan and destroy books (Lock and Code S07E19)

This week on the Lock and Code podcast… If you want AI to tell you a story, it will. If you want that story to sound like one of your favorite authors, it can. And if you’re one of the authors that AI can imitate, you…

↗ Open article
Trending News Cyber Security News

AWS Automatically Quarantines Exposed IAM Keys Within 10 Seconds of GitHub Leak

Amazon Web Services can move from detection to containment in seconds when an Identity and Access Management access key appears in a public GitHub repository. In a controlled Unit 42 exposure test, AWS attached its…

↗ Open article
Trending News Cyber Security News

Claude Code Agent Allegedly Deletes 48,000 Files in 103 Seconds

A Claude Code user has reported a severe data-loss incident in which an autonomous coding agent allegedly deleted 48,218 live files from a Windows project tree and destroyed the repository’s Git object store. The…

↗ Open article
News CyberScoop

Dems seek top-to-bottom assessment of CISA workforce

Policy

A group of leading House Democrats introduced legislation Monday requiring the Cybersecurity and Infrastructure Security Agency to conduct an assessment of its workforce to determine whether it’s up to the task after…

↗ Open article
Threat Intel Malwarebytes Labs

The fake sites using a cheap toolkit to sell $2,000 AI subscriptions

We found more than 100 subscription websites linked through the same toolkit and closely related developer details. Some impersonate existing products, including GPT-6 Astra, DaVinci Resolve, PixAI, and OpenCut. Another…

↗ Open article
Trending News Cyber Security News

Microsoft Entra ID to Block SMS First-Factor Sign-Ins Worldwide in February 2027

Microsoft is retiring SMS first-factor sign-in for Microsoft Entra ID workforce tenants worldwide and requires organizations to migrate affected users before February 1, 2027. The security-focused change will prevent…

↗ Open article
Media Schneier on Security

Reverse-Engineering Flock Cameras

Hackers captured a Flock camera and got a look (alternate link ) at the software: While much of the automatic license plate reader’s (ALPR) most sensitive storage remained encrypted and inaccessible, the joint analysis…

↗ Open article
News The Hacker News

⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks

Vuln

A browser. A plugin. A package. A login screen. Normal stuff. That is basically the problem this week. The trouble keeps showing up inside things people already trust: code that takes a bad turn, old payloads coming…

↗ Open article
Trending Threat Intel Malwarebytes Labs

Gemini’s breach of real companies exposes an AI guardrail problem

Breach

Google says one of its Gemini models accessed systems belonging to three real companies during a cybersecurity evaluation in May. The model reportedly guessed credentials in one case, while finding exposed credentials…

↗ Open article
Trending News Cyber Security News

Microsoft Investigating Teams Calling Issue Blocking Users From Making or Receiving Calls

Microsoft is investigating a service incident that is preventing some users from placing or receiving calls through Microsoft Teams . The company disclosed the issue through its verified Microsoft 365 Status account on…

↗ Open article
News The Hacker News

TASK#STOMP PowerShell Backdoor Steals Documents, Wi-Fi Passwords, and Clipboard Data

Malware Breach Research

Cybersecurity researchers have disclosed details of a new campaign dubbed TASK#STOMP that delivers a PowerShell backdoor designed to harvest sensitive data from compromised hosts. The backdoor "automatically harvests…

↗ Open article
Trending News Cyber Security News

PAYLOAD Ransomware Hijacks Active Directory GPO to Disrupt Entire Windows Domain Without Encryption

Ransom

A PAYLOAD ransomware attack used Active Directory Group Policy Objects to disrupt an entire Windows domain without encrypting files or deploying ransomware binaries. The operation targeted a manufacturing organization…

↗ Open article
News Bleeping Computer

FBI's CJIS v6.1: What Security Teams Need to Know

Vuln

The FBI's CJIS Security Policy v6.1 strengthens requirements around encryption and vulnerability scanning while continuing the shift toward more continuous security assessment. Specops explains what changed and how…

↗ Open article
No articles found
Try adjusting your search, category, tags, source selection, or date range.