Skip to content

Cybersecurity news & advisories

45 / 45 active
Advisory
Threat Intel
Research
News
Media
Podcast
500 articles RSS ↗ Updated 12 Sep 2026 02:12 UTC
News CyberScoop

Researchers say OpenAI agents were behind May hacking campaign targeting RubyGems

Research

Researchers say they have discovered thousands of malicious software packages uploaded to an online public software repository that were left by a “swarm” of OpenAI agents. According to an incident timeline published…

↗ Open article
News CyberScoop

Cyberattack causes a flight delay? Airlines won’t owe you a hotel or meal

Beginning next month, if a flight is canceled or delayed because of a cyberattack, feds will give airlines clearance not to hand out meal vouchers or hotels. The change is the result of a broader rule the Transportation…

↗ Open article
Trending News CyberScoop

GitLab’s critical flaw is already drawing internet-wide probes

Vuln

GitLab released emergency patches Thursday for two high-severity flaws in its software development platform, one of them holding the highest possible severity score, while a security firm reports that it has already…

↗ Open article
News Dark Reading

Why AI Is So Good at Scamming Humans

Research

Fred Heiding of Menlo Park Intelligence talks with the Dark Reading News Desk about his research on frontier models, and their ability to influence human behavior and create emotional dependency.

↗ Open article
Media Schneier on Security

My Talk at DEF CON

Last month, I gave a talk at DEF CON on AI hacking: what happens when AIs become hackers. It’s a combination of the potentialities I raised in my 2022 book A Hacker’s Mind and the lessons we’re learning from current AI…

↗ Open article
News The Register Security

More JFrog Artifactory bugs under attack, and all 3 have patches

Vuln

JFrog Artifactory instances continue to get hit hard. Multiple attackers are exploiting three JFrog Artifactory bugs to gain administrative control over vulnerable instances - in some cases, just days after the vendor…

↗ Open article
News 404 Media

Behind the Blog: How to Talk About AI Doom

This is Behind the Blog, where we share our behind-the-scenes thoughts about how a few of our top stories of the week came together. This week, we discuss AI doomers, 9/11 posting, and Barbie. JOSEPH: I do always get…

↗ Open article
Trending News Bleeping Computer

Passkey-themed phishing attacks lead to Microsoft 365 data theft

Ransom Phishing Breach

Microsoft says threat actors linked to ShinyHunters, Helix, and other extortion gangs are using passkey and single sign-on-themed social engineering attacks to compromise corporate Microsoft accounts and steal data from…

↗ Open article
News 404 Media

Automattic’s Matt Mullenweg Claims He’s Back 'In Control'

Less than 48 hours after announcing he was forcibly placed on a leave of absence by the Automattic board on Wednesday, Automattic’s Matt Mullenweg posted in a company-wide Slack channel claiming that he’s back “in…

↗ Open article
Advisory Cisco Security Advisories

Cisco IOS XR Software Security Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in software…

↗ Open article
Threat Intel Malwarebytes Labs

Crypto customers targeted by scammers after email marketing provider breach

Breach Crypto

An attacker breached an email marketing platform and launched targeted attacks against the newsletter subscribers of some of its customers, especially those working in cryptocurrency and adjacent fields. The incident…

↗ Open article
Research SANS Internet Storm Center

The Self-Expanding Stolen Inference Supply Chain: An AI Agent Harvesting and Re-Serving LLM Access, (Fri, Sep 11th)

I identified an attacker using a semi-autonomous coding agent to run an offensive operation: finding poorly secured LLM resale gateways, acquiring API access through ordinary web flaws and account farming, validating…

↗ Open article
News Cyber Security News

Russia-Aligned Hackers Use GuardBreaker Prompt Injection to Disrupt AI Malware Analysis

Malware

Russia-aligned operators are testing a new way to make artificial intelligence overlook malicious code. The technique, called GuardBreaker, hides a safety-sensitive request inside an otherwise ordinary script comment…

↗ Open article
Trending News Cyber Security News

New KATARU IoT Malware Packs Linux Privilege Escalation Exploits and Mirai-Style DDoS Attacks

Vuln Malware DoS

KATARU is a newly observed IoT malware strain that can turn poorly secured devices into DDoS attack nodes. The sample was captured after an attacker used repeated Telnet password guesses against a honeypot, then…

↗ Open article
News Bleeping Computer

How Threat Actors Are Turning Trusted AI Platforms Into an Attack Surface

Malware

Threat actors are abusing trusted AI platforms to host malicious content, poison search results, and trick users into installing malware. Huntress examines campaigns targeting AI users through weaponized Claude…

↗ Open article
No articles found
Try adjusting your search, category, tags, source selection, or date range.