DEF CON hackers add new muscle to water utility protection

Franklin project adds new security providers, employs digital twins and AI

2026/8/10
阅读更多

North Korean spies are running local LLMs to cause AI mischief

Kimsuky's phishing attacks get an AI boost

2026/8/10
阅读更多

Gym rat asks AI agent to book him a class, it hacks a waitlist API to bump him up the list

What wouldst thou ask of the monkey's paw?

2026/8/10
阅读更多

Attackers pick Levi's pockets in social engineering attack

Crims talked their way onto three employee PCs before trousering corporate data

2026/8/10
阅读更多

Wetherspoons bars smart glasses from filming customers

Pub chain says turn off the cameras, reminds punters not to blare sound from phone vids either

2026/8/10
阅读更多

Cyber vulnerability sweep picks up Royal Navy drones sending data to China

No, no nasties to see here, guv...

2026/8/10
阅读更多

Framework loses customer data in Metabase zero-day attack

Repairable hardware is little comfort when personal details escape

2026/8/10
阅读更多

Claude Code puts auto mode in the driver's seat

Walk away and hope the classifier catches anything irreversible or destructive

2026/8/10
阅读更多

Advertisers are trying to influence AI bots with secret ads

PLUS: Hiveminds are emerging to hack the planet, and open-weight models are the new new red scare

2026/8/10
阅读更多

Ransomware gangs skip the CEO, head straight for the 40-something IT manager

Gen Xers who feel triggered by this should remember to unplug the network cable and call the cops

2026/8/9
阅读更多

Devs to Anthropic, OpenAI, Cursor, and friends: Make security and privacy the default

Researchers scour social media to measure developer concerns about AI coding tools

2026/8/8
阅读更多

OpenAI pledges to add Astra security as Anthropic loosens Fable's leash

Or how I learned to stop worrying and love dangerous AI

2026/8/7
阅读更多

Water system controllers don't belong on the internet, says ex-NSA chief after suspected Iran attacks

Calling all defenders

2026/8/7
阅读更多

Ransomware attacks spike as world distracted by AI

What, you didn't think the top gangs were busy watching agents escape their sandboxes too, did you?

2026/8/7
阅读更多

N-able God mode flaw: Vendor confirms attackers reached customer networks as second hotfix lands

Attackers turned admin access into a route downstream, while N-able tells N-central customers to patch – again

2026/8/7
阅读更多

MIT boffins' TONTOU attack slips through Spectre defenses on Intel and AMD CPUs

Timer interrupts reopen branch predictor poisoning window, with a working Zen 2 exploit to prove it

2026/8/7
阅读更多

Scot NHS trust probes access to medical records of 9-year-old girl after man arrested on suspicion of murder

Investigation into whether staff improperly accessed Minnie Merriman’s file after she was named for the first time this week

2026/8/7
阅读更多

Attacker phished way into US defense supplier's Microsoft 365 account

Intruder gained access to engineering files and potentially export-controlled technical data

2026/8/7
阅读更多

'Asimov was right' about rules for robots, says ex-US Cyber Director

Humans will get the AI models they deserve

2026/8/7
阅读更多

China launches mysterious probe into security of Palo Alto Networks' products

Beijing’s not saying why, which is just what happened when it investigated Micron

2026/8/7
阅读更多

How the famed USENIX Security conf is managing a flood of papers in the AI era

AI usage is evident but isn't yet a serious problem

2026/8/6
阅读更多

AI struggles to patch vulns without adult supervision

Left alone, autonomous fixes often fail to fully remediate flaws

2026/8/6
阅读更多

Humans in the loop miss a third of dangerous AI coding agent requests

You wouldn't let Claude Code cat your AWS credentials or Kubernetes config on request, would you?

2026/8/6
阅读更多

IT department put sticky notes on the laptops to help employees log in

Leaving this information exposed allowed someone else to gain access

2026/8/6
阅读更多

Chinese router vendor denies its firmware contains backdoors – but pauses downloads to fix security issues anyway

It’s just a remote maintenance function, says Zbtlink

2026/8/6
阅读更多

OpenAI reveals its rogue agent swarm went a little bit Borg ahead of Hugging Face hack

It started with an 'impossible task' and led to AI deciding it needed to act as a collective intelligence

2026/8/6
阅读更多

Prompt injection isn't the bug, AI agent frameworks are

Check Point researchers tried to break the frameworks enterprises use to build AI apps. Now they're telling Black Hat attendees what they found

2026/8/5
阅读更多

IBM's agentic AI platform is under active attack - patch now

A critical Langflow flaw allowing RCE on default deployments is being exploited, says the CISA

2026/8/5
阅读更多

London cops handed victim's new address and number to her stalker, watchdog says

Met ordered to improve safeguards after two preventable data breaches

2026/8/5
阅读更多

UK charities count the cost of Beacon CRM cyberattack

Database backups likely stolen, potentially exposing donor, supporter, and service user details

2026/8/5
阅读更多

AI researchers let models off the leash – then watched as they tried to add malware to a FOSS project

Models used social engineering and collaborated among themselves to solve a security challenge

2026/8/5
阅读更多

Bypassing AI guardrails is so easy a script kiddie can do it

Claiming 'it's my server' was often enough to persuade models to help

2026/8/4
阅读更多

This one time, at Hacker Summer Camp …

What to expect as BSides, Black Hat, and DEF CON descend on Las Vegas

2026/8/4
阅读更多

Feds get 3 days to patch N-able God mode flaw under active exploit

Experts warn hotfix not optional. MSPs warned attacker gains 'full administrative access to an N-central console'

2026/8/4
阅读更多

AI helps Microsoft bug hunters chase a record $20M payday

Broader bounty rules added to a swelling volume of machine-assisted vulnerability reports

2026/8/4
阅读更多

Tennessee congressional hopeful accused of shooting license plate cameras

Cops arrest budding politician for allegedly dealing with Flock's expansion the American way

2026/8/4
阅读更多

CAF Bank reopens online service but warns of further outages

Customers told traffic may be limited at certain times following more than ten days offline

2026/8/4
阅读更多

Cloudflare has mostly ditched third party security tools, suggests not trying that at home

Automates bug bounty triage with Sonnet for $58 a month, CSO says Mythos would cost $200k

2026/8/4
阅读更多

Google dev kit spurs first-ever agent-on-agent violence

Poisoned pull requests contain prompt injection that allows one to control another

2026/8/3
阅读更多

AI slop pollutes the CVE pipeline with fake vulns

With NIST still buried under its backlog, expect AI-generated bogus reports to continue

2026/8/3
阅读更多

Russian spies turn public Wi-Fi into malware delivery systems

Keyloggers, audio-visual surveillance, and token theft on CaptivePortal's agenda as hospitality sector put on alert

2026/8/3
阅读更多

Water system cyberattacks spread to Georgia, Michigan amid US-Iran conflict

Trump rejects Tehran theory, blames 'grossly incompetent' governor of Minnesota instead

2026/8/3
阅读更多

UK government investment arm cops to 40-hour leak of officials' contact details

Employee failed to follow security policy, leaving internal management file open to the public

2026/8/3
阅读更多

AI is 'both the weapon and the target' in latest wave of cyberattacks

CrowdStrike tracks 89% surge in machine-assisted activity as patch windows shrink to 48 hours

2026/8/3
阅读更多

The most famous brand in physical security got pwned by ShinyHunters

Hopefully the company secures houses better than it locks down SaaS systems

2026/7/31
阅读更多

Anthropic and OpenAI are competing to see whose agents can go rogue harder

Whoever wins, we lose

2026/7/31
阅读更多

Charities remain locked out of CAF Bank online accounts

A week into shutdown, 14,000 customers still have no restoration date and some are struggling to pay staff

2026/7/31
阅读更多

Anthropic’s Claude escaped test sandbox to attack three organizations

Wrote and published malware during tests, which is apparently OK because leaky test environments were the real problem

2026/7/31
阅读更多

Jailed Flock vandal wipes out three cameras, racks up thousands in damages

A lesson for aspiring vandals: Take out all the cameras, not just the ones that flout your ideals

2026/7/30
阅读更多

Russian spies take their half-click email attack from Zimbra to Outlook

Opening a booby-trapped message unleashes a browser implant that can survive password changes and device rebuilds

2026/7/30
阅读更多