Bots are now firmly in the toolbox, helping crooks scale old scams Crims are taking advantage of AI to sharpen old scams. The FBI reported Monday that cybercrime losses hit a record $20.87 billion...
Iranian government hackers are launching disruptive cyberattacks on American energy and water infrastructure, U.S. government agencies “urgently” warned Tuesday. The hackers are taking aim at...
In the rapid evolution of the 2026 threat landscape, a frustrating paradox has emerged for CISOs and security leaders: Identity programs are maturing, yet the risk is actually increasing....
AI is rapidly changing how software is written, deployed, and used. Trends point to a future where AIs can write custom software quickly and easily: “instant software.” Taken to an extreme, it...
200 orgs and 5,000 devices compromised so far in Vlad's latest intelligence grab, Microsoft reckons The UK's National Cyber Security Centre (NCSC) has issued a fresh warning about Russia's ongoing...
When talking about credential security, the focus usually lands on breach prevention. This makes sense when IBM’s 2025 Cost of a Data Breach Report puts the average cost of a breach at $4.4...
The FBI’s annual report on digital crimes exposes a worsening environment. Yet, an unknown number of victims still suffer in the shadows never reporting the crimes they endure. The post Cybercrime...
U.S. victims lost nearly $21 billion to cyber-enabled crimes last year, driven primarily by investment scams, business email compromise, tech support fraud, and data breaches, the Federal Bureau...
Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web browser used to access the...
Supergluing USB ports, 56k modem ringtones, and the evolution of Data Loss Prevention (DLP)
Over a dozen companies have suffered data theft attacks after a SaaS integration provider was breached and authentication tokens stolen. [...]
Microsoft Edge security advisory (AV26-315)
New findings from Microsoft show that the threat actor Storm-1175 is intensifying high-tempo ransomware operations by aggressively targeting... The post Storm-1175 exploits web-facing systems to...
New data from Cyfirma threat landscape report disclosed that Malaysia’s cyber threat landscape is undergoing a structural shift,... The post Malaysia’s digital growth and geopolitics widen cyber...
Finite State, a vendor of product security and software supply chain risk management, announced the appointment of Ann... The post Finite State appoints Ann Miller to scale product security and...
Android security advisory – April 2026 monthly rollup (AV26-314)
Davey Winder reports: Usually, when I report zero-day exploits, it’s because attacks by threat actors are already underway or a vendor has released a patch after becoming aware of the...
The Trump administration’s Golden Dome missile defense system might get $17.5 billion in fiscal 2027 after receiving a $23 billion down payment through a reconciliation bill passed last summer....
The U.S. Secret Service is pushing to onboard tech talent to help personnel better use artificial intelligence capabilities, according to the agency’s IT and AI lead. In an interview with...
A North Korean cyberattack that last Monday briefly hijacked one of the most widely used open source projects on the web took weeks to carry out as part of a long-running campaign to target the...
New academic research has identified multiple RowHammer attacks against high-performance graphics processing units (GPUs) that could be exploited to escalate privileges and, in some cases, even...
CERT Polska has received a report about 2 vulnerabilities (CVE-2026-33865, CVE-2026-33866) found in Mlflow software.
Noma Security researchers used indirect prompt injection to turn Grafana's own AI into an unwitting courier for sensitive corporate data. The post ‘GrafanaGhost’ bypasses Grafana’s AI defenses...
Rising concern over the source and destination of chips, and the components within them, is driving a global effort to tag them in a way that is permanent, immutable, and unclonable. While these...
Brockton Hospital is diverting ambulances and canceling some services as it responds to a cybersecurity incident that began impacting its information systems on Monday. Chemotherapy infusion...
The discovery of explosives near a major gas pipeline in northern Serbia — part of the TurkStream/Balkan Stream system supplying Russian gas to Hungary — is a highly politicized and strategically...
Jones Day has suffered a cyber security attack after hackers accessed files linked to a number of client matters. In a statement, the US firm said it had experienced a phishing attack in which “an...
In October 2022, Unitree Robotics joined Boston Dynamics, Agility Robotics, and three other firms in signing an open letter pledging not to weaponize their machines and to review customers’...
Maine looks poised to become the first state to freeze building of new data centers with legislation that could pass this spring, but community backlash against these properties is spreading...
Americans lost nearly $800 million last year from scammers pretending to be U.S. government officials, according to a new report from the Federal Bureau of Investigation’s Internet Crime Complaint...