Microsoft Fixes 400 Flaws on August Patch Tuesday

Microsoft has issued another massive batch of security updates with 400 fixed in the August Patch Tuesday

2026/8/12
阅读更多

Six npm Packages Read C2 Addresses From Ethereum Wallet

Six npm packages queried an Ethereum wallet to locate C2 infrastructure

2026/8/11
阅读更多

Cursor Security Bug Allowed Repositories to Execute Commands Before Trust Verification

Cursor fixed a pre-trust code execution path in three days then closed the report as informative

2026/8/11
阅读更多

Suisan City, California, Responds to Cyber Incident Amid Wave of US Local Government Attacks

Police and fire response has been impacted by the attack on Suisan City, while two other local authorities have been hit by cyber incidents in the past week also

2026/8/11
阅读更多

OpenAI Launches Two-Tier Security Access Program Alongside GPT 5.6 Cyber

Daybreak Blue removes some OpenAI-made guardrails while Daybreak Red grants the use of cyber-focused frontier AI models

2026/8/11
阅读更多

Logistics Giant Ceva Suffers Data Breach Impacting European Clients

Supply chain attack and data breach at Ceva Logistics appears to have a large blast radius

2026/8/11
阅读更多

OpenAI Pauses Some Development of Astra Model on Security Concerns

OpenAI is tightening restrictions on testing of its upcoming Astra model due to security concerns

2026/8/11
阅读更多

Only Half of UK Manufacturers Have a Cyber Incident Response Plan

Make UK reveals major cyber resilience gaps as 30% of UK manufacturers report recent cyber incidents

2026/8/11
阅读更多

Researchers Uncover RovoBlast Vulnerability in Atlassian AI Assistant

Atlassian fixed a flaw letting one crafted link make its Rovo AI assistant exfiltrate company data

2026/8/10
阅读更多

WordPress Plugins Compromised Without a Single File Change

Poisoned JSON feed let attackers backdoor WordPress sites without changing any plugin files

2026/8/10
阅读更多

“Ghostjacking” Exploits AI Agents’ Trusted Access to Evade Firewall Controls

Tenet reported that half of Fortune 500 companies are vulnerable to the Ghostjacking technique, which involves tricking AI agents with fake reports

2026/8/10
阅读更多

Go-Based macOS Malware Steals Crypto and Secrets

A macOS malware variant has been detected stealing crypto, passwords and more

2026/8/10
阅读更多

US Sanctions Iranian $6bn Crypto “Exchange” Shelbit

TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange

2026/8/10
阅读更多

Healthcare and Victim Support Charities Affected by Beacon Cyber Incident

Beacon has informed around 1500 customer charities that its CRM databases were accessed and likely exfiltrated by an unauthorized actor

2026/8/7
阅读更多

Google Links Redact Extortion Group to BlackFile Rebrand

BlackFile has rebranded as Redact after an alleged affiliate hijack, with Google linking the group to ongoing vishing and extortion campaigns

2026/8/7
阅读更多

Ransomware Surges in July After Q2 Lull

Finance, technology and healthcare sectors were particularly heavily targeted in July, according to Comparitech

2026/8/7
阅读更多

Toolkit Hidden Inside Oracle Database Evades Endpoint Tools

Attackers used SQL injection to compile a post-exploitation toolkit inside an Oracle database

2026/8/6
阅读更多

TeamPCP Traced Back to 2020 Cryptojacking Operation

Oligo Security has linked TeamPCP to ShadowRay 2.0 and to cryptojacking infrastructure dating back to 2020

2026/8/6
阅读更多

Meta Joins OpenAI and Anthropic in Reporting AI Exploit Incident

One of Meta’s AI models exploited a third-party security flaw during an evaluation, the latest in a series of similar incidents involving advanced AI systems

2026/8/6
阅读更多

Violent Physical Crypto Thefts Surge to $30m in Losses

So-called “wrench attacks” have resulted in $30m in losses so far in 2026, says Chainalysis

2026/8/6
阅读更多

Canadian Hacker Pleads Guilty Over Snowflake Extortion Campaign

A Canadian hacker has admitted involvement in the widespread compromise of 165 Snowflake customer accounts used to steal data and extort victims

2026/8/6
阅读更多

NVIDIA Group Proposes SAFE Initiative for Agentic Threat Intel Sharing

The Open Secure AI Alliance has announced plans for the Shared AI Findings Exchange (SAFE)

2026/8/6
阅读更多

Fake Open VSX Extensions Harvest Private Repo and CI Data

77 counterfeit Open VSX extensions beaconed to one domain, 19 harvesting git and CI identity

2026/8/5
阅读更多

Paperclip AI Flaws Let Unauthenticated Attackers Run Commands

3 Paperclip flaws exposed data & allowed unauthenticated command execution in two deployment modes

2026/8/5
阅读更多

Prompt Injection Remains Biggest LLM Risk, Despite Limited Incidents

Prompt injection remains the most dangerous security threat to LLMs, according to OWASP’s latest Top 10 LLM Applications list

2026/8/5
阅读更多

ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs

A new npm worm has compromised packages with over two billion monthly installs

2026/8/5
阅读更多

Frontier Models Engage in Unsanctioned Behavior During Testing

Anthropic and OpenAI models attacked “real people and organizations” during AI Security Institute tests

2026/8/5
阅读更多

Fake Bank of America Phishing Scam Installs Remote Access Malware

Cybercriminals are using a fake Bank of America phishing campaign to trick users into downloading a malicious script that installs ScreenConnect, enabling remote access and persistence on compromised systems

2026/8/5
阅读更多

WhatsApp Scam Hijacks Accounts via Linked Devices Feature

WhatsApp scam abused the Linked devices feature to hijack accounts without stealing any passwords

2026/8/4
阅读更多

Cybercriminals Bypass AI Safety Controls by Splitting Malicious Tasks Across Multiple Sessions

Talos read attacker prompt logs and found guardrails fell to task splitting and ownership claims

2026/8/4
阅读更多

Cloud and SaaS Environments Now Top Targets for Attackers

Cloud and SaaS are now the preferred operating environments for threat actors, amid a continued shift to identity attacks

2026/8/4
阅读更多

AI Accounts for Over Half of Cybercrime in Africa, Says Interpol

Interpol claims AI is driving a surge in cybercrime in Africa, with related losses doubling

2026/8/4
阅读更多

UK’s Police National Legal Database Reveals Data Breach

The UK’s Police National Legal Database and Ask the Police service have been breached

2026/8/4
阅读更多

China-Linked Threat Actors Weaponize New Vulnerabilities in Under a Day

Chinese actors exploited the critical React2Shell exploit inside a day, while 88% of exploited vulnerabilities in H1 2026 were compromised within 48 hours of disclosure

2026/8/3
阅读更多

Midnight Blizzard Targets Travelers via Captive Portals

Russian actor Storm-2945 hijacked hotel captive portals to push fake updates and steal tokens

2026/8/3
阅读更多

HollowFrame Loader Uses Fake Python DLL to Evade Defender

New HollowFrame loader hid Go code in a fake Python DLL after pre-staging Defender exclusions

2026/8/3
阅读更多

Korea’s Largest Telco KT Fined $38m After Femtocell Campaign

Korean telco KT has been fined $39m for a year-long breach linked to femtocell compromise

2026/8/3
阅读更多

Coldcard Users Lose $89m After Bitcoin Wallet Is Hacked

A hacker has drained nearly $89m from Coldcard Bitcoin wallets after exploiting a legacy bug

2026/8/3
阅读更多

Chinese Hacker Uses DeepSeek AI to Orchestrate Vulnerability Exploits

A Chinese-speaking threat actor has been using DeepSeek’s AI models to orchestrate cyber-attacks targeting Asian organizations

2026/7/31
阅读更多

AWS Blames North Korean Group for Axios and Other npm Supply Chain Attacks

AWS has linked North Korea to the axios campaign to other attacks on npm libraries

2026/7/31
阅读更多

Anthropic Reveals Claude Escaped Testing, Breaching Three Companies

Anthropic has revealed that Claude AI models compromised third-party organizations

2026/7/31
阅读更多

Cryptominer Abuses Linux PAM to Hide From SOC Analysts

Cryptomining crew abandoned root to impersonate low-privileged Linux users and evade SOC alerts

2026/7/30
阅读更多

AiTM Phishing Becomes Top Initial Access Threat to Law Firms

AiTM phishing is now the top entry point into law firms, with identity behind 56% of threats

2026/7/30
阅读更多

AI and Automation Fall Short of Sysadmin Expectations

Action1 report finds sysadmins overestimated their use of AI in predictions made two years ago

2026/7/30
阅读更多

Teams-Themed Phishing Campaign Abused Legitimate Microsoft Login Pages

Check Point researchers detail phishing attack as an example of attackers dropping fake Microsoft login pages in favor of abusing Microsoft’s legitimate authentication infrastructure

2026/7/30
阅读更多

Google Releases Patches for 370 Vulnerabilities in Chrome 151

The new version of Chrome, 151, comes with 370 vulnerability patches, including for seven critical flaws

2026/7/30
阅读更多

NCSC Calls on Vendors to Embed ‘Forensic Observability’ in Network Devices

The UK’s National Cyber Security Centre wants network device makers to improve forensic observability

2026/7/30
阅读更多

LogoKit Phishing Kit Screenshots Victim Sites in Real Time

LogoKit now builds per-victim phishing pages using live screenshots of the target's real website

2026/7/29
阅读更多

Russian-Alligned TA488 Returns With Persistent Outlook Web Access Attack

TA488 returned with OWA half-click exploit deploying OWAReaper implant that survived re-imaging

2026/7/29
阅读更多

The Average Cost of a Data Breach Rises to $5 Million

IBM Cost of a Data Breach Report warns that the global average cost of a data breach has reached a record high of $4.99m – and AI-backed attacks have played a role

2026/7/29
阅读更多

Just 1% of AI-Discovered Vulnerabilities Exploited in the Wild, Research Shows

For now, the use of AI benefits vulnerability research more than vulnerability exploitation, a VulnCheck researcher said

2026/7/29
阅读更多

Researchers Warn of AI-Enhanced Phone Fraud Ecosystem

AI is dramatically reducing the barriers to entry for scam phone farm operators, Human Security warns

2026/7/29
阅读更多

NCSC Publishes Guidance to Aid Incident Response and Recovery

The National Cyber Security Centre has released a detailed framework to assist with incident response and recovery

2026/7/29
阅读更多

Bugs in Hugging Face Diffusers Bypass Custom Code Safeguard

Three CVEs in Hugging Face diffusers let a malicious model repo run code on any machine that loads it

2026/7/28
阅读更多

AI-Assisted Bug Hunt Uncovers Linux Kernel 0-Day in net/sched

AI-assisted research uncovered Linux kernel use-after-free allowing root escalation

2026/7/28
阅读更多

Phishing Dominates as Initial Entry Method for Cyber-Attacks, as Hackers Hone Evasion Techniques

Analysis of real-life incident response cases by Cisco Talos warns that phishing remains a powerful method of initial compromise

2026/7/28
阅读更多

Microsoft Launches Flurry of AI Security Initiatives to Combat AI-Enabled Threats

Microsoft has launched a new agentic security system for cyber defenders as well as its first cyber-focused AI model

2026/7/28
阅读更多

Coca-Cola Reveals Subsidiary Fairlife Suffered Data Breach

Coca Cola claims data was stolen from its Fairlife business after a recent ransomware attack

2026/7/28
阅读更多

NVIDIA’s Open Secure AI Alliance Is Missing Some Big Names

NVIDIA has launched a new Open Secure AI Alliance to build an “open defense stack for agents”

2026/7/28
阅读更多

New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation

CREST’s new AI standards are optional add-on requirements for cybersecurity service providers wishing to demonstrate responsible AI usage

2026/7/28
阅读更多

SourTrade Malvertising Campaign Secretly Builds Malware in the Browser

Impersonating well-known cryptocurrency and trading sites, SourTrade has developed a novel technique to drop infostealers to victims

2026/7/27
阅读更多

Ransomware Groups Increasingly Deploy EDR Kill Techniques

Halcyon’s latest quarterly ransomware report showed that while ransomware attacks are declining, obfuscation techniques are getting harder to fight against

2026/7/27
阅读更多

Hotel Wi-Fi Routers Compromised to Steal Corporate Login Credentials From Visitors

Researchers at ReliaQuest warned of widespread DNS poisoning attacks targeting the hospitality sector as part of a cyber espionage campaign

2026/7/24
阅读更多

ChatGPT Among Top 10 Most Impersonated Brands in Phishing Attacks, Says Check Point

OpenAI’s chatbot tool ChatGPT ranked among the top 10 most impersonated brands in phishing attacks for the first time

2026/7/24
阅读更多

Ransomware Attacks Targeting Universities on the Rise

Comparitech’s analysis of incidents in the first half of 2026 finds that the emergence of The Gentlemen ransomware has resulted in surge in attacks against higher education

2026/7/24
阅读更多

Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations

International agencies issue joint alert over state-backed campaign exploiting a critical vulnerability in the Zimbra Collaboration Suite

2026/7/23
阅读更多

Microsoft Copilot Deployments Delayed Over Security Concerns

CoreView research finds that security leadership is concerned about AI Assistant exposing confidential data

2026/7/23
阅读更多

Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns

US government agencies have warned that Iranian cyber actors are targeting US-based Siemens and Schneider industrial equipment

2026/7/23
阅读更多

AI Agents Now the Enterprises Fastest Growing Exposed Attack Surface

Sophos report warns that the rapid adoption of AI by businesses is leaving them vulnerable to a new source of cyber threats

2026/7/23
阅读更多

New Dolphin X Stealer Employs AI Profiling to Prioritize Targets

Dolphin X is a new infostealer that uses AI to sort and rank victims, giving cybercriminals a faster way to identify lucrative targets

2026/7/23
阅读更多

Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness

A new study of organizations which have fallen victim to ransomware suggests the rise of AI-tools being used by hackers is making life harder for defenders

2026/7/23
阅读更多

TrickBot Ditches HTTP for DNS Tunneling in Latest Variant

New TrickBot variant hides C2 communication inside DNS queries, replacing decade-old HTTP pattern

2026/7/22
阅读更多

Open AI Claims Its AI Models Went Rogue and Hacked Another Company

Hugging Face recently disclosed a security breach. OpenAI has now said that it was its AI models which broke containment and hacked Hugging Face themselves

2026/7/22
阅读更多

Ubuntu snap-confine Vulnerability Enables Local Root Access

New Ubuntu snap-confine race condition lets local users escalate to root on default installs

2026/7/22
阅读更多

Google Makes CodeMender Available as Managed AI Security Agent

CodeMender actively builds and runs exploits in customer-managed sandboxes to verify if vulnerabilities are truly exploitable

2026/7/22
阅读更多

Russian Hacker Turns Jailbroken Claude Into Pentest Platform

Russian-speaking actor Trim built a commercial offensive AI pentest tool on jailbroken Claude models

2026/7/21
阅读更多

A New Ransomware Threat Actor Emerges Every Week, Warns Report

Analysis by Black Kite warns that ransomware ecosystem is becoming bigger and more fragmented

2026/7/21
阅读更多

FBI Warns of Deepfake Videos Impersonating IC3 Leadership

FBI warned of deepfake videos of IC3 leadership directing users to spoofed complaint sites

2026/7/21
阅读更多

US Hospital Finance Software Provider Craneware Reports Data Theft

Craneware, a provider of financial software for US healthcare organizations, has disclosed a cyber incident involving unauthorized access and data theft

2026/7/21
阅读更多

Researchers Uncover North Korean 'ClickFake' Campaign Targeting Web3 Pros

In a new campaign, North Korean hacking group Famous Chollima targeted crypto professionals through ClickFix lures to deliver Windows and macOS trojans

2026/7/21
阅读更多

Cruciferra Crypter Uses Process Ghosting to Evade Detection

Cruciferra crypter used process ghosting and 90 custom ciphers to hide payloads for multiple actors

2026/7/20
阅读更多

JadePuffer Returns With Ransomware Designed to Wipe AI Models

JadePuffer follow-up campaign deployed ENCFORGE locker built to destroy AI model artifacts

2026/7/20
阅读更多

Researchers Build WordPress Exploit Using OpenAI's GPT

A researcher who discovered a critical vulnerability in WordPress has used OpenAI’s latest model to develop an exploit chain

2026/7/20
阅读更多

New HollowGraph Malware Hijacks Microsoft 365 Calendars for Covert C2 Communications

Researchers have linked HollowGraph malware to the Cavern framework after discovering its use of Microsoft 365 calendars and Microsoft Graph APIs as a stealthy C2 channel

2026/7/20
阅读更多

Police Chiefs Cite TfL Hack in Push for Cybercrime Risk Orders

Two chiefs of UK policing agencies said the Transport for London prosecution demonstrates the need for Cybercrime Risk Orders

2026/7/20
阅读更多

Government Agencies Falling Victim to Ransomware Daily, Warns Study

Government organizations are targeted by attackers who know agencies cannot afford disruption to public services

2026/7/17
阅读更多

23andMe Faces New Security Mandates in $18m Data Breach Settlement

23andMe has agreed to an $18m settlement with 42 US attorneys general over its 2023 data breach, including enhanced data protection requirements

2026/7/17
阅读更多

CISA Mandates Urgent Patch for Actively Exploited Critical Fortinet Vulnerabilities

US government agencies have until July 19 to patch two critical Fortinet vulnerabilities

2026/7/17
阅读更多

The Gentlemen Overtakes Qilin as Most Prolific Ransomware Threat

Analysis of ransomware incidents by ReliaQuest indicates a shift in the ransomware landscape

2026/7/17
阅读更多

Phishing Campaign Hides Lua Loader as TrueType Font File

Global phishing campaign disguised a Lua loader as a font file to deploy RATs and infostealers

2026/7/16
阅读更多

Modular macOS Stealer Uses Kill Loops to Force Password Entry

New ClickLock macOS stealer locked victims out of their own system until they surrendered a password

2026/7/16
阅读更多

Single Prompt Enables ChatGPT to Execute Full Cyber-Attack Chain, Researchers Claim

Cybersecurity researchers tested Open AI GPT 5.5’s offensive cyber capabilities – and the results showed how effective a frontier LLM can be for hackers

2026/7/16
阅读更多

"Selfish Bravado" Behind TfL Cyber-Attack, Judge Says as Pair Jailed

The perpetrators of the 2024 TfL cyber-attack have been jailed for five and a half years each after pleading guilty to Computer Misuse Act offences

2026/7/16
阅读更多

SANS Warns of AI Governance Gap as Use by Security Teams Surges

SANS Institute says governance programs are still nascent even as AI failures and threats grow

2026/7/16
阅读更多

US Launches Gold Eagle to Coordinate AI-Driven Vulnerability Management

The White House announced Gold Eagle to help accelerate the discovery, prioritization and patching of flaws found by AI

2026/7/16
阅读更多

Phishing Campaign Abuses eCards to Deploy RMM Tools

Six-month phishing campaign used seasonal eCard lures to plant legitimate RMM tools on victims

2026/7/15
阅读更多

Eleven Vulnerable UEFI Shims Enable Secure Boot Bypass

Eleven forgotten Microsoft-signed UEFI shims can bypass Secure Boot on almost any machine

2026/7/15
阅读更多

Compromised Logins Surge as the Most Common Entry Point for Ransomware Attacks

Research of incidents by Sophos finds that phishing, brute force attacks and other identity-based threats have surpassed software vulnerabilities as means of delivering ransomware

2026/7/15
阅读更多

Progress Restores ShareFile Storage Zones Access After Security Warning

Progress has restored access to its ShareFile Storage Zones Controller after a four-day suspension triggered by a credible external security threat

2026/7/15
阅读更多

Microsoft Patches 570 CVEs in Record Patch Tuesday

Microsoft released fixes for a record 570 CVEs in its July Patch Tuesday update, as experts warn AI is dramatically accelerating vulnerability discovery and increasing patch volumes

2026/7/15
阅读更多

Government Updates UK’s National Risk Register with Cyber Warnings

The UK government is warning of the potential impact of catastrophic cyber-attacks

2026/7/15
阅读更多

US: Pentagon Suspends CMMC Phase II Requirements for Defense Contractors

The US Department of Defense announced the immediate suspension of the CMMC Phase II requirements until further review

2026/7/14
阅读更多

New MacOS Malware Exploits Legitimate Developer ID to Pose as Apple Crash Reporter

Researchers at Jamf Threat Labs detail CrashStealer, which steals passwords, cryptocurrency wallets and more

2026/7/14
阅读更多

Lidl Notifies Customers of Third-Party Data Breach

Supermarket giant Lidl has revealed details of a supplier breach impacting customer data

2026/7/14
阅读更多

Five Charged in “Russian Coms” Fraud Platform Case

Five UK residents have been charged in relation to supplying Russian Coms fraud devices and apps

2026/7/14
阅读更多

Open Directory Exposes Three Evilginx Phishing Operators

Misconfigured server exposed three phishing operators running Evilginx forks to bypass MFA

2026/7/13
阅读更多

Pakistani Police Systems Hit by Chinese and Indian Espionage

Chinese and Indian spies converged on the same Balochistan police force, SentinelLabs found

2026/7/13
阅读更多

Novel OAuth Client ID Spoofing Technique Targets Cloud Environments

New research reveals cyber-attackers can spoof OAuth Client IDs in Microsoft Entra ID, creating a stealthy path into cloud environments

2026/7/13
阅读更多

Progress Software Warns of "External Security Threat" to ShareFile

Progress Software, the provider of the popular file-sharing and data storage solutions, has urged customers to shut down the server hosting their Storage Zone Controller

2026/7/13
阅读更多

Russian State Hackers Target Vulnerable Routers Worldwide, Joint Advisory Warns

Cybersecurity agencies from 12 countries have warned that Russian state-backed hackers are actively targeting vulnerable routers using weak SNMP credentials

2026/7/13
阅读更多

Hacker Extradited from Ukraine Pleads Guilty to Ryuk Ransomware Charges

An Armenian man has pleaded guilty to his role in the infamous Ryuk ransomware operation

2026/7/13
阅读更多

Australian Cyber Agency Warns of Global CMS Exploitation Campaign

Australian Cyber Security Centre warns CMS users of mass scanning and exploitation campaign

2026/7/13
阅读更多

CISA Details Incident Response to Exposed AWS GovCloud Keys

CISA reveals how it responded after sensitive AWS GovCloud credentials and internal data were exposed in a public GitHub repository

2026/7/10
阅读更多

Microsoft Warns New 'GigaWiper' Malware Combines Espionage and Destructive Capabilities

A new multi-purpose backdoor allows cyber threat actors to conduct both quiet espionage activity and destructive wiping operations

2026/7/10
阅读更多

Anthropic and OpenAI Security Tools Could Fuel Cyber-Attacks, Researchers Warn

Researchers at the AI Now Institute developed a proof-of-concept exploit showing common AI tools used for security could backfire

2026/7/10
阅读更多

New Ransomware Exploits Malicious Driver to Remove Cybersecurity Protections

GodDamn ransomware uses remote desktop application to secretly move around networks and drop the malicious PoisonX kernel driver

2026/7/10
阅读更多

Microsoft Warns of Increase in Number of Security Updates

Microsoft has said the volume of Windows security updates is set to grow as it uses AI to find new bugs

2026/7/10
阅读更多

NHS Warns Staff Over Unauthorized Access to Patient Data

NHS tells staff they could face prison for “inappropriate” access to patients’ medical records

2026/7/10
阅读更多

Vibe-Coded Malware Caught in Active Directory Attack

Huntress found a threat actor using vibe-coded PowerShell to map an Active Directory network

2026/7/9
阅读更多

75% CISOs Fear Executives Don’t Understand Cybersecurity Risks Employees Face

Survey of cybersecurity leaders by MetaCompliance finds that many feel boards are uninterested in ever-evolving cyber risks

2026/7/9
阅读更多

Chinese-Funded Interpol Cybercrime Crackdown Leads to 5,800 Arrests

Operation First Light 2026, coordinated by Interpol and funded by the Chinese government, has led to 5,811 arrests

2026/7/9
阅读更多

GhostApproval Flaw Hits Six Major AI Coding Assistants

Wiz discovered GhostApproval, a symlink flaw in six major AI coding assistants that bypasses approval

2026/7/9
阅读更多

New AI Security Charter Backed by Over 70 Cyber Firms

Over 70 cybersecurity organizations have signed the CREST AI Charter detailing responsible use of AI for security

2026/7/9
阅读更多

Cybercriminals Plant Malicious AI Agents in Open Source Tool Repositories

Cybersecurity researchers at ESET identify big rise in suspicious and malicious toolsets which put users at risk from cyber-attacks

2026/7/9
阅读更多

RedWing Android Spyware Sold as a Service on Telegram

Zimperium found RedWing, an Android spyware sold as a service via Telegram to target banking apps

2026/7/8
阅读更多

China-Linked APT Expands Proxy Network With New Malware

Cisco Talos said China-linked APT UAT-7810 is growing its proxy relay network with new malware

2026/7/8
阅读更多

Threat Actors Uses Agentic AI to Rapidly Compromise Cloud Target

Sygnia report details how agentic AI accelerated weeks-long attack to just 72 hours

2026/7/8
阅读更多

New Malicious Campaign Delivers Vidar Infostealer and Monero Crypto Miner

Cyber threat actors are infecting victims with the Vidar stealer and the XMRig cryptocurrency miner in a new malicious campaign

2026/7/8
阅读更多

NCSC Touts National Scale, AI-Powered “Cyber Shield” for Defense

The National Cyber Security Centre wants to work with AI partners to build a new “Cyber Shield” to defend the UK

2026/7/8
阅读更多

Suspected Chinese Threat Group Targets Universities via Vulnerable Roundcube Servers

A suspected Chinese threat cluster is exploiting Roundcube vulnerabilities to compromise university networks in the US and Canada and harvest user credentials

2026/7/7
阅读更多

Scattered Spider’s Structure More Like a Cybercrime Collective Than a Unified Gang

Group-IB analysis argued Scattered Spider is a decentralized collective of independent clusters

2026/7/7
阅读更多

UK Government Launches Cyber Resilience Pledge, Claiming 60+ Signatories

More than 60 organizations, including M&S, Microsoft UK and Vodafone, have signed the UK government's Cyber Resilience Pledge, a new initiative aimed at boosting cyber security and resilience across British businesses

2026/7/7
阅读更多

Hackers Exploit Maximum Severity Adobe ColdFusion Flaw

Threat actors are exploiting an Adobe ColdFusion vulnerability which has a CVSS score of 10.0

2026/7/7
阅读更多

Phishing Attacks Targeted Facebook Users With Fake Verification Offer

Attacks also used a compromised chatbot in campaign to steal sensitive information from Business Users

2026/7/7
阅读更多

New Iran-Nexus Hacking Group Targets Israel Government and IT Sectors

Check Point researchers have identified a new cyber adversary targeting Israeli government and IT businesses, tracked as ‘Cavern Manticore’

2026/7/6
阅读更多

Indirect Prompt Injection in Web Content Targets AI Agents

Zscaler found sites hiding prompt-injection text to manipulate AI agents into crypto payments

2026/7/6
阅读更多

Opera GX Flaw Let Sites Auto-Install Mods to Steal Data

Opera GX flaw let sites automatically install mods to steal data from other pages, now patched

2026/7/6
阅读更多

NCA Issues Warning to Parents As Shared Child Photos Exploited by AI Tools

IWF and NCA warn that growing numbers of images and videos are being manipulated into sexual abuse material

2026/7/6
阅读更多

Researchers Claim First Fully Agentic Ransomware: JadePuffer

Researchers have revealed JadePuffer, the first agentic AI-powered ransomware campaign, highlighting how autonomous agents can automate cyber-attacks

2026/7/6
阅读更多

Qilin Dominates Ransomware Market Amid Growing Cybercrime Consolidation

The ransomware landscape is reconsolidating around major players, with Qilin emerging as the leading RaaS operation, researchers say

2026/7/3
阅读更多

Warning Over “Industrialized” Cyber-Attacks After Ransomware Gang Partners With TeamPCP

Researchers warn that collaboration could lead to “unprecedented” ransomware attacks, as FBI also issues warning

2026/7/3
阅读更多

FBI, Google Take Down NetNut Proxy Network Used by Cyber Threat Actors

The NetNut proxy network and the ‘Popa’ botnet are known to have infected devices with variants of Mirai DDoS botnets

2026/7/3
阅读更多

Researcher Behind 'Exploitarium' Explains Release of Undisclosed Zero-Day Exploits

Infosecurity spoke with the researcher who dumped over 30 proof-of-concept exploits without disclosing the vulnerabilities first

2026/7/2
阅读更多

Cybercriminals Pose as Interpol in Phishing Emails to Infect Victims With Ransomware

Bitdefender researchers warned of curious ransomware campaign which has targeted businesses around the world

2026/7/2
阅读更多

NCSC Shares Tips on How to Make a Pen Tester’s Job Harder

The NCSC has shared best practice advice from pen testers which could help improve system resilience

2026/7/2
阅读更多

Alleged Scattered Spider Member Extradited to US

A teenager accused of hacking as part of Scattered Spider has been arrested

2026/7/2
阅读更多

Fileless Malware Abuses Google Blogspot to Deploy Infostealer in Memory

Securonix said the Veil#Drop campaign abuses Google Blogspot to deliver PureLog Stealer in memory

2026/7/1
阅读更多

Brazilian Banking Trojan Ousaban Targets Spain and Portugal

FortiGuard says the Brazilian banking trojan Ousaban is targeting Spain and Portugal via phishing

2026/7/1
阅读更多

Anthropic's Fable 5 and Mythos 5 Are Back with New Security Guardrails

The new classifier in Fable 5 blocks the jailbreak technique that prompted the US export controls “in over 99% of cases”

2026/7/1
阅读更多

Microsoft Accelerates Quantum-Safe Push with New Timeline

Microsoft has brought forward its timelines for transitioning to post-quantum cryptography (PQC)

2026/7/1
阅读更多

Insurance Giant Aflac Discloses Data Breach Impacting Millions

Aflac Japan has notified regulators that policy details and personal and banking information have been compromised

2026/7/1
阅读更多

Nissan Discloses Employee Data Breach Linked to Oracle Zero-Day

Nissan says employees' data was stolen via the Oracle PeopleSoft zero-day campaign

2026/6/30
阅读更多

Critical SimpleHelp Vulnerability Exploited For Malware Delivery

Attackers exploited a critical SimpleHelp RMM bug to deploy TaskWeaver and Djinn Stealer malware

2026/6/30
阅读更多

ClickFix Now Cybercriminals' Favorite Malware Delivery Technique

ReliaQuest report warns of a surge in ClickFix social engineering attacks against Windows and macOS users

2026/6/30
阅读更多

Hackers Leverage Blockchain to Hit Japan's Hotels Through Booking.com Phishing

A wave of phishing emails sent to Booking.com partner accommodations in Japan in May led to blockchain-hosted malware

2026/6/30
阅读更多

UK Healthcare Sector Records Tenfold Increase in Cyber-Attacks

SonicWall records 264,000 events in first five months of 2026 as UK hospitals come under siege

2026/6/30
阅读更多

Over 300 UK Firms Hit by Ransomware in a Year

Report Fraud data reveals that more than half of 323 UK ransomware victims last year were SMEs

2026/6/30
阅读更多

OpenAI Reveals GPT-5.6 Sol Cybersecurity Model, Restricts Early Access

OpenAI is previewing its GPT-5.6 Sol model to a vetted few at the US government's request

2026/6/29
阅读更多

Telegram-Based Millenium RAT Campaign Infects 60,000 Devices

Group-IB says Millenium RAT, now rewritten in C++, has hit 62,289 devices in 160+ countries

2026/6/29
阅读更多

US Federal Insurance Regulator Confirms Data Breach Via Oracle Flaw

An attacker has exploited a zero day in Oracle Peoplesoft to gain access to the IT systems of the NAIC, the standard-setting association for the US federal insurance system

2026/6/29
阅读更多

Russian Hackers Accused of Destructive Cyber-Attack on Jaguar Land Rover

Experts warn the Jaguar Land Rover breach bears hallmarks of Kremlin-backed hackers, citing novel ransomware, strategic timing and efforts to obscure attribution

2026/6/29
阅读更多

FBI Sounds Alarm Over Russian Intelligence Signal Phishing

The FBI claims Russian spies are targeting Signal backup keys

2026/6/29
阅读更多

China-Linked Hackers Strike Asian Critical Infrastructure with TinyRCT Backdoor

A China-linked threat group has been targeting critical infrastructure in Southeast Asia with a new custom backdoor called TinyRCT

2026/6/26
阅读更多

CMC Releases Analysis and Guidance for Education Sector After Canvas Data Breach

The UK Cyber Monitoring Centre reviews the Canvas breach affecting 160 UK universities, highlighting data theft risks and financial impacts of cyber incidents

2026/6/26
阅读更多

Cisco Vulnerability Exploited Months Before Disclosure, Google Warns

A high-severity flaw in Cisco Catalyst SD-WAN Manager disclosed in early June was exploited as early as March

2026/6/25
阅读更多

Twenty Million US IP Connections Used by Proxy Services

Digital Citizens Alliance report claims that millions of Americans may have unwittingly had IP connections used by cybercriminals

2026/6/25
阅读更多

Trust in Automated AI Vulnerability Scanning Collapses to 9%, New Study Finds

Cobalt study finds 20-percentage-point drop in number of organizations relying solely on AI automation for testing

2026/6/25
阅读更多

New CISA Guide Helps Agencies Adopt SASE For Zero Trust

New CISA guidance shows federal agencies how to use SASE to move from legacy TIC 2.0 to zero trust

2026/6/25
阅读更多

macOS Flaw Lets Standard Users Disable EDR and MDM

macos-xpc-flaw-disable-edr-mdm-standard-user-xm-cyber

2026/6/25
阅读更多

Major Increase in Ransomware Attacks Targeting Europe, Warns New Report

Analysis of ransomware incidents by researchers at Black Kite found that attacks have risen by over 50% in the last year, with supply chain attacks increasing

2026/6/25
阅读更多

Researchers Trick AI Browsers Into Leaking Credentials

LayerX tricked AI browsers including ChatGPT Atlas and Comet into bypassing their guardrails

2026/6/24
阅读更多

Europol-Led Operation Endgame Takes Down StealC and Amadey Infostealers

Operation Endgame seized around 50 domains and nearly 200 active IP-based servers associated with the infostealers

2026/6/24
阅读更多

macOS Backdoor Uses Prompt Injection to Evade AI Triage

SentinelLabs found a North Korea-linked macOS backdoor using prompt injection on AI triage tools

2026/6/24
阅读更多

KDDI Breach Affects Six Japanese ISPs, Exposes 14.2 Email Credentials

Customers of the affected Japanese email services are “strongly advised” to change their email passwords

2026/6/24
阅读更多

Iran-Linked MuddyWater Poses as Ransomware Gang to Mask Cyber Espionage

An NCC Group report warns state-backed hackers are attempting to hide activity by posing as ransomware groups and deploying commercially available malware

2026/6/24
阅读更多

AI Is Making Attacks Cheaper, Faster and More Covert, Says ReliaQuest

New ReliaQuest study reveals the six ways AI is practically being used in attacks today

2026/6/24
阅读更多

UK Museums Face Cybersecurity Risks, MPs Warn

Public Accounts Committee (PAC) warns that museums and galleries aren’t getting enough government support on cyber

2026/6/24
阅读更多

Lookalike npm Package Hides a Multi-Stage Windows RAT

JFrog found an npm package impersonating postcss-selector-parser to drop a multi-stage Windows RAT

2026/6/23
阅读更多

OpenAI Expands Daybreak to Help Defenders Patch Flaws

OpenAI expanded Daybreak with a full GPT-5.5-Cyber release to help defenders patch software flaws

2026/6/23
阅读更多

Trump Issues Executive Order to Fast-Track Post-Quantum Migration

All US federal agencies will have to complete their post-quantum cryptography transition by 2031, according to a new Trump Executive Order

2026/6/23
阅读更多

GTA 6 Scams Emerge as Pre-Orders Open

Cybercriminals launch fake GTA 6 pre-order sites offering early access for crypto payments

2026/6/23
阅读更多

Scattered Spider Teens Convicted of TfL Cyber-Attack

Two young British men have pleaded guilty to hacking Transport for London as part of a Scattered Spider plot

2026/6/23
阅读更多

Five Eyes Group Issues Urgent Call to Tackle Frontier AI Threats

The Five Eyes Alliance has published a rare call to action for organizations facing AI threats

2026/6/23
阅读更多

GentleKiller Framework Disables Victims' Security Software

ESET details GentleKiller, the EDR-killer framework the Gentlemen ransomware gang gives affiliates

2026/6/22
阅读更多

Unpatchable BootROM Flaw Impacts Apple A12, A13 Chips

Apple BootROM exploit exposes unpatchable USB flaw on A12 and A13 devices

2026/6/22
阅读更多

Microsoft Attributes Mastra AI Supply Chain Attack to North Korea

North Korean threat actor Sapphire Sleet has been linked to a supply chain attack targeting Mastra, according to Microsoft security researchers

2026/6/22
阅读更多

Klue Breach Enables Hackers to Compromise Cybersecurity Firms via OAuth Tokens

At least four cybersecurity firms confirmed they have been affected by a breach of business intelligence platform Klue via Salesforce integration

2026/6/22
阅读更多

UK Information Commissioner Resigns After Workplace Investigation

The UK’s data protection regulator the information commissioner has resigned after his position became “untenable”

2026/6/22
阅读更多

NCSC Urges Fortinet Customers to Tackle FortiBleed Fallout

The NCSC has released guidance for Fortinet customers impacted by the FortiBleed threat campaign

2026/6/22
阅读更多

AWS Unveils 'Continuum,' an AI-Powered Vulnerability Management Platform

Working with frontier AI models, this new platform aims to help discovering, prioritizing, validating and remediating code vulnerabilities

2026/6/19
阅读更多

Operation Endgame Disrupts Malware Network Linked to Major Ransomware Gang

SocGholish malware has been removed from 15,000 sites associated with Evil Corp hackers

2026/6/19
阅读更多

Confidence Lacks in Threat Detection Across Non-Email Channels like Slack and Teams

Half of cybersecurity leaders lack confidence in detecting threats on Slack, Teams and other non-email platforms, despite growing attacker focus

2026/6/19
阅读更多

Fake GitHub Stars and AI Videos Mask a Crypto Clipper

A Rust crypto clipper hides behind fake GitHub stars and AI-narrated YouTube videos

2026/6/18
阅读更多

ICO Cautions Healthcare Worker After Princess of Wales Incident

Hospital insider escapes criminal prosecution after attempting to sell royal’s medical records

2026/6/18
阅读更多

Cybercriminals Are Worried About AI Taking Their Jobs Too

Analysis of chatter on underground forums by Sophos finds that hackers fear AI could take work away from them

2026/6/18
阅读更多

LATAM Infrastructure Hit by Fortinet and Ivanti Exploits

CloudSEK maps Operation Escaneo, a campaign hitting Latin American infrastructure via perimeter bugs

2026/6/18
阅读更多

Hostile States Behind 75% of Cyber-Attacks on UK Critical Infrastructure, NCSC Warns

Richard Horne, the NCSC CEO, said three-quarters of cyber-attacks targeting UK critical infrastructure came from nation-state actors

2026/6/18
阅读更多

Cybercrime Surges in APAC as Digitalization Takes Hold

Interpol claims cybercrime accounts for third of crime in over half of Asia and South Pacific countries

2026/6/18
阅读更多

North Korean Hiring Fraud Runs on AI and US Laptop Farms

Nisos infiltrated a North Korean IT-worker fraud cell running on AI interviews and a US laptop farm

2026/6/17
阅读更多

Serverless Phishing Kit on GitHub Targets Mexican Banks

GitBait phishing kit abuses GitHub Pages and the SheetBest API to steal Mexican banking credentials

2026/6/17
阅读更多

Sensitive Enterprise Data Uploads to AI Models Double in a Year

The rise of AI-assistants and applications in the enterprise has seen a 93% increase in employees attempting to upload sensitive data, bringing security challenges

2026/6/17
阅读更多

AI Threats and Alert Fatigue Challenge Cybersecurity Teams

Filigran survey at Infosecurity Europe 2026 reveals AI-powered attacks as the top concern, with false positives, alert fatigue and manual processes draining security teams

2026/6/17
阅读更多

EU Security Experts to Support Ukrainian Organizations in Case of Cyber-Attacks

Ukraine has been added to the EU Cybersecurity Reserve, which provides incident response services against large-scale incidents

2026/6/17
阅读更多

Fifteen JetBrains Marketplace Plugins Found Stealing API Keys

Aikido Security has discovered at least 15 IDE plugins on the JetBrains Marketplace

2026/6/17
阅读更多

Staffing Is Top SOC Challenge Even as AI Proliferates, Says SANS

SANS Institute study finds few SOCs have built AI into defined workflows, despite widespread adoption

2026/6/17
阅读更多

SprySOCKS Backdoor Expands From Linux to Windows

China-linked SprySOCKS backdoor gains stealthy Windows variants and 30-plus C2 commands

2026/6/16
阅读更多

Rokarolla Trojan Combines Banking Fraud With Device Surveillance

Rokarolla Android trojan steals banking logins and spies on victims while blocking fraud alerts

2026/6/16
阅读更多

Over Two-Thirds of Security Pros Say Cyber Is Getting Harder

ISSA study finds most security professionals feel challenged by colleagues’ involvement in cyber

2026/6/16
阅读更多

DragonForce Ransomware Exploited Microsoft Teams to Hide in Attack Against Major Company

Command and control traffic exploited a Teams visitor token to make malicious activity look legitimate to defenders

2026/6/16
阅读更多

Chainguard, JPMorgan, BNY Team Up to Secure Open Source from AI Threats

Athena is a new an industry coalition to fix the vulnerabilities frontier AI models find before attackers can exploit them

2026/6/16
阅读更多

FBI Warns Courier Cash Pickups Are Driving Crypto Scams

The FBI claims couriers are being used to circumvent bank transfers in crypto investment schemes

2026/6/16
阅读更多

Attackers Hijack Popular WordPress Plugins to Deploy Backdoors

Tampered OptinMonster and sister plugins plant hidden backdoors on 1.2 million WordPress sites

2026/6/15
阅读更多

Adriatic Port Cyber-Attack by Anubis Sparks Warning Over Maritime Security Risks

How the Anubis ransomware group stole and leaked an Italian Adriatic port authority's data

2026/6/15
阅读更多

Cybersecurity Experts Urge US to Lift Ban on Anthropic's Frontier AI Models

Access to two Anthropic large language models, Mythos 5 and Fable 5, has effectively been banned to any non-US nationals by the Trump administration

2026/6/15
阅读更多

UK Government Finds 400+ Vulnerabilities in AI Hackathons

Government departments find hundreds of vulnerabilities after testing frontier models

2026/6/15
阅读更多

Maine Takes Breach Reporting Portal Offline After Fake Entries

The Office of the Maine Attorney General has suspended its breach reporting portal

2026/6/15
阅读更多

Ransomware Payment Crypto Laundering Platform Taken Out by FBI and Europol

Domain of dark web money laundering platform AudiA6 seized and suspects arrested in joint operation by the FBI, Europol and others

2026/6/12
阅读更多

GitHub to Update npm to Thwart Software Supply Chain Attacks

NPM, part of GitHub, announced a new version of the npm package manager with several security improvements, including disabling install scripts

2026/6/12
阅读更多

Over 80% of Sports Organizations Targeted by Hackers in the Last Year

As the FIFA World Cup 2026 kicks off, a new Darktrace report warns that sports teams and bodies are a major target for cyber criminals

2026/6/12
阅读更多

CISA Orders Agencies to Patch by Risk, Not Severity

New CISA directive tells federal agencies to patch by real-world risk, not CVSS severity scores

2026/6/11
阅读更多

Cybercriminals Use Fake AI Guides and Dev Tools to Spread AsyncRAT Malware

Fake AI guides hide a multi-stage chain that drops AsyncRAT, with signs of AI-assisted coding

2026/6/11
阅读更多

Most Cybersecurity Teams Struggle to Find Time for Training on New Cyber Threats

Organizations are aware of the challenges that new technologies like AI bring: but cybersecurity staff struggle to make time for the required training during working hours

2026/6/11
阅读更多

Interpol Dismantles SniperDz Phishing-as-a-Service Platform

New revelations by Group-IB expose the full scale of the decade-old SniperDz phishing operation

2026/6/11
阅读更多

Extortion-Only Attacks Increase, With Data Theft Dominating Ransomware Claims

Extortion-only attacks are increasing as data theft drives most ransomware claims, with many organizations unable to stop stolen data from being exposed

2026/6/11
阅读更多

New “Agentjacking” Attacks Could Hijack AI Coding Agents

Tenet Security researchers reveal how new “agentjacking” attacks could trick coding agents into executing arbitrary code

2026/6/11
阅读更多

Fake Software Tutorials on TikTok Spread Vidar Stealer

Threat actors push fake free-software tutorials on TikTok and Instagram to spread Vidar stealer

2026/6/10
阅读更多

New SilabRAT Trojan Hijacks Sessions to Steal Crypto

MaaS trojan SilabRAT uses HVNC and browser cloning to hijack sessions and steal crypto

2026/6/10
阅读更多

Cybersecurity Software Fails to Detect Fifth of Brower-Based Phishing Attacks

Menlo Security research warns that as enterprise applications become increasingly browser based, traditional cybersecurity tools leave them vulnerable to cyber threats

2026/6/10
阅读更多

New Fable 5 Is a "Mythos-Class" LLM Available to All, Anthropic Announces

Anthropic unveils Claude Mythos 5 and Fable 5, a restricted-access frontier AI model and guardrailed version for everyone to use

2026/6/10
阅读更多

Over a Quarter of Identity Crime Victims Hit by Multiple Incidents, ITRC Data Shows

Nearly 26% of identity crime victims faced multiple incidents in the past year, as ITRC warns of a growing "multi-layered crisis"

2026/6/10
阅读更多

Microsoft Fixes 200 CVEs in June Patch Tuesday

Microsoft has patched 200 vulnerabilities including three zero-days

2026/6/10
阅读更多

75% of Firms Deploy Vulnerable Code Amid Pressure on CISOs, Report Finds

Checkmarx report warns that business pressure is among the reason security leaders let security compliance slip

2026/6/9
阅读更多

AI Coding Adoption Hits 97% but Governance Lags Behind

Most dev teams use AI coding assistants but only 30% have full governance in place

2026/6/9
阅读更多

Critical phpBB Flaw Lets Attackers Hijack Any Account with One Request

Critical phpBB authentication bypass lets attackers hijack any account with one request

2026/6/9
阅读更多

Google Releases Patch for Chrome Vulnerability Exploited in the Wild

The flaw, CVE-2026-11645, can allow a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page

2026/6/9
阅读更多

Check Point Warns Critical Auth Bypass Bug Exploited in the Wild

Check Point says a critical vulnerability in its Remote Access VPN and Mobile Access solutions has been exploited by Qilin

2026/6/9
阅读更多

Infosecurity Europe: Why JLR’s CISO Enforced In-Person Password Resets Following Cyber-Attack

Speaking at Infosecurity Europe, Ashish Shrestha, former CISO at Jaguar Land Rover revealed why he wanted over 30,000 employees to change their passwords in the immediate aftermath of the incident

2026/6/9
阅读更多

WhatsApp Discovers NSO Group-Linked Spearphishing Attempts

Meta’s WhatsApp demands contempt ruling after users report NSO Group-linked phishing

2026/6/9
阅读更多

North Korean Hackers Use Fake Coding Tasks to Steal Crypto

North Korean actor UNK_DeadDrop targeted developers with fake coding tasks to steal crypto

2026/6/8
阅读更多

OpenAI Unveils ChatGPT Account Security Controls

OpenAI brings Lockdown Mode and Active Sessions to ChatGPT to curb prompt injection data theft

2026/6/8
阅读更多

Infosecurity Europe: Prompt Injection Remains Unsolved, OWASP Researcher Warns

At Infosecurity Europe 2026, OWASP’s Ariel Fogel warned that prompt injection remains an “unresolved problem” within generative AI architecture

2026/6/8
阅读更多

Two-Thirds of Open Source Community Unaware of Cyber Resilience Act

2026/6/8
阅读更多

Infosecurity Europe: How DSIT Protects Thousands of UK Orgs from Cyber Vulnerabilities

The Department of Science, Innovation and Technology details how a combination of hands-on human advice and technology systems keeps government agencies safe

2026/6/8
阅读更多

Meta AI Bug Exposes Over 20,000 Instagram Accounts

Meta confirms an AI tool vulnerability led to unauthorized access to Instagram accounts after a failure in email verification during password reset

2026/6/8
阅读更多

Infosecurity Europe: Practical Lessons From Lloyds' Agentic AI Security Playbook

Lloyds Banking Group shared its approach for securing agentic AI workflows, with a mix of hands on experimentation and cross functional governance

2026/6/5
阅读更多

Infosecurity Europe: OWASP Introduces Agentic AI Security Maturity Framework

The OWASP agentic AI security framework helps organizations assess governance maturity vs adoption and adjust governance as needed

2026/6/5
阅读更多

Infosecurity Europe: AI Coding Tools Need Built-In Security for Agentic Development Era

Ox Security field CTO, Boaz Barzel, makes the case for vibe security to tackle AI agent coding risks

2026/6/5
阅读更多

Infosecurity Europe: Reactive Security Is Failing Healthcare Organizations, Experts Warn

A perfect storm of legacy devices, hyper connectivity and human fatigue is bad news for the healthcare sector, warns Cyber Salus

2026/6/5
阅读更多

Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites

Critical Everest Forms Pro RCE flaw exploited to create rogue WordPress admin accounts

2026/6/4
阅读更多

Chinese-Speaking Actor TA4922 Widens Its Global Reach

Newly named Chinese-speaking actor TA4922 expands from East Asia into Europe and Africa

2026/6/4
阅读更多