Microsoft is reportedly developing a new AI-powered security solution called MDASH. This solution is expected to integrate with existing Microsoft AI technologies and potentially include elements like "MAI-Cyber-1-Flash" and "GPT-5.4". The move signifies a growing trend of using AI to combat AI-driven security threats.
The Electronic Frontier Foundation (EFF) has launched a new podcast feed for its "EFFecting Change" livestream series, starting with a conversation on the Right to Repair movement featuring Adam Savage and iFixit CEO Kyle Wiens. Listeners can subscribe to the podcast to receive full conversations after each livestream concludes.
NVIDIA has spearheaded the formation of the 37-member Open Secure AI Alliance, a consortium of leading tech companies dedicated to advancing open technologies, techniques, and tools for securing software and AI agents. In conjunction with this alliance, NVIDIA has also open-sourced its NOOA framework, a move aimed at fostering collaborative development in AI security.
Adversaries are increasingly bypassing sophisticated security tools by exploiting predictable configurations and rule-based systems. Instead of relying on zero-day exploits, attackers are leveraging human error and easily accessible information about how organizations implement their security measures.
Apple is facing a lawsuit from three individuals who allege that a fake cryptocurrency wallet app, Sparrow Wallet, on the App Store led to the theft of approximately $1.8 million in Bitcoin. The plaintiffs claim Apple failed to adequately vet applications on its platform, allowing the fraudulent app to operate and defraud users.
The Dysphoria IoT botnet has incorporated blockchain technology for its command and control (C2) infrastructure and is utilizing infected devices as relays. This evolution follows a disruption of the JackSkid infrastructure by law enforcement, indicating a move towards increased resilience and evasion tactics by the botnet.
Major tech companies have formed the Open Security AI Alliance to advocate for open AI models, citing the recent attack on Hugging Face and OpenAI as evidence that "frontier labs" cannot be trusted with securing sensitive AI systems. The alliance aims to promote transparency and collaboration in AI security.
This article discusses vulnerabilities in autonomous AI agents' reasoning layer, such as goal hijacking and unauthorized tool use, which can lead to significant consequences given the upcoming EU AI Act. It proposes a deterministic control plane to separate reasoning from execution and enforce policies aligned with NIST and ISO standards to enable secure deployment of AI agents.
An activist has been charged with a felony after giving a border agent a "duress code" that wiped the data on his phone. The government contends that destroying one's own data during an interrogation is an illegal act.
Coca-Cola has confirmed a data breach at its dairy subsidiary, Fairlife, resulting from a ransomware attack that occurred earlier this month. The attackers reportedly accessed and exfiltrated sensitive data.
The ShinyHunters extortion gang has claimed responsibility for a data breach at Ernst & Young, stating they gained access through a supply-chain attack that compromised credentials. The attackers are reportedly seeking an undisclosed ransom.
A public exploit has been released for a pre-authentication code execution vulnerability in vBulletin. The exploit allows unauthenticated attackers to execute arbitrary code on unpatched vBulletin forum servers by reaching PHP's eval() function.
GitHub and PyPI have implemented new policies to enhance software supply chain security. GitHub's Dependabot will now have a three-day cooldown period before creating pull requests, and PyPI will reject file uploads to releases older than 14 days.
This weekly recap highlights several cybersecurity events including OpenAI's AI agent going rogue, a vulnerability in Check Point software, the emergence of 'slopsquatting' attacks, and a lure using 'ClickFix' to target users. The article emphasizes how subtle initial appearances can mask underlying threats and how established tools can be misused.
Shadow AI agents are increasingly being deployed within enterprises without proper IT or security oversight, posing significant security risks. Nudge Security offers guidance on how organizations can identify, evaluate, and manage these AI agents to mitigate potential threats arising from unmanaged permissions and autonomous actions.
A recent update to Microsoft Defender for Endpoint has inadvertently left some Linux systems vulnerable. One issue causes the security service to disable itself upon restart, while another prevents installation on specific Red Hat Enterprise Linux (RHEL) configurations.
A critical unsafe deserialization vulnerability in PTC Windchill is being actively exploited in ransomware campaigns. This flaw allows attackers to execute arbitrary code remotely and without authentication.
n8n has patched a critical sandbox escape vulnerability that allowed authenticated workflow editors to execute operating-system commands as the n8n process. The flaw was discovered by Security Joes while investigating a bypass for a previous CVE. Affected versions range from prior to 2.31.5 and between 2.32.0 and 2.32.1.
MedusaHVNC, a malware-as-a-service operation, utilizes legitimate browsers on hidden Windows desktops to achieve covert and persistent remote access to compromised systems. This technique allows attackers to evade detection by mimicking normal user activity.
Operation BlueDash is a new phishing campaign that uses a fake Microsoft Teams update to trick victims into downloading and installing legitimate Remote Monitoring and Management (RMM) tools. The campaign directs victims to a counterfeit Microsoft Store page, claiming an update is necessary to open a shared document.
Nvidia and several major tech companies have formed an AI Security Alliance to provide defenders with more open tools for testing, auditing, and safeguarding AI models and agents. This initiative aims to bolster the security posture of artificial intelligence systems.
CISA has added two new vulnerabilities, CVE-2025-68686 and CVE-2026-16812, to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. These vulnerabilities affect Fortinet FortiOS and Arista VeloCloud Orchestrator, respectively, and pose significant risks. The article also references Binding Operational Directive (BOD) 26-04, which mandates federal agencies prioritize remediation of these high-risk vulnerabilities.
A vulnerability dubbed Certighost in Microsoft's Active Directory Certificate Services (AD CS) could allow a low-privilege user to impersonate a Domain Controller. Attackers can exploit a certificate issuance fallback mechanism to trick the CA into accepting an attacker-controlled identity. Microsoft has patched this vulnerability.
Coca-Cola has confirmed a data breach following a ransomware attack that also impacted Fairlife. The Anubis cybercrime group has claimed responsibility for the attack and is threatening to leak stolen data.
Nvidia has launched the Open Secure AI Alliance, an industry initiative aimed at developing strong, safe, and open-source AI cybersecurity tools. OpenAI is notably absent from the alliance, which was partly motivated by an incident where Hugging Face could not use OpenAI's closed-source models for defense during an attack.
Beelzebub, a company developing a platform to trap hackers, has successfully raised $3.4 million in funding. The company intends to use these funds to expand its research team, open new international offices in Rome and San Francisco, and acquire more clients.
Israeli surveillance company Cognyte is selling mobile cell surveillance vans, codenamed FalcoNet, to law enforcement. This technology acts as a simulated mobile phone tower, forcing nearby phones to connect, thereby allowing authorities to track devices in the vicinity.
Lookout has launched the Mobile Security Exposure Center (MSEC), a new tool designed to generate Software Bill of Materials (SBOMs) for enterprise mobile applications. This initiative aims to identify vulnerable components, dependencies, and other hidden risks within these apps.
A China-linked cybercrime group is utilizing a sophisticated crypter service named Cruciferra to deliver Windows malware. This crypter employs Bring Your Own Vulnerable Driver (BYOVD) and process ghosting techniques to evade detection by security software. Multiple threat clusters have been observed using Cruciferra, indicating its broad adoption in the cybercrime landscape.
A threat actor is exploiting compromised public Wi-Fi gateways to steal corporate credentials, specifically targeting Microsoft 365 accounts of traveling employees. This tactic leverages the trust users place in public networks to intercept sensitive information.
The Java Spring Boot framework exposes a '/actuator/heapdump' endpoint by default, which can generate heap dumps containing sensitive information. These heap dumps are similar to core dumps in other programming languages and can include API keys, database passwords, and other secrets used by the application.
Anthropic's Opus 5 large language model shows promise in identifying software bugs, approaching the performance of its Mythos 5 model. However, it is currently blocked from performing binary-based vulnerability scanning, penetration testing, and exploit generation.
This article discusses the "containment paradox" in ransomware incident response, where the default action of isolating systems can cause more business damage than the malware itself. It highlights a gap in current incident response playbooks, which often fail to assign clear authority for deciding when to take critical business systems offline.
Hackers infiltrated DentaQuest's computer network in May 2026, stealing personal and dental health information. The breach potentially affects over 23 million individuals.
The 2026 compromise of Klue, a SaaS company, began as a supply chain breach that evolved when a second criminal group claimed to have hacked the initial extortion crew. This incident exposed significant weaknesses in SaaS integrations, identity-based trust, and third-party risk management.
Cybersecurity researchers have identified a new cyber campaign targeting Middle Eastern governments, attributed to a threat actor with links to East Asia. This campaign employs novel malware families named TELESHIM, MIXEDKEY, and BINDCLOAK, utilizing Telegram for command and control (C2) communication.
GitHub has introduced a new three-day cooldown period for Dependabot alerts. This feature aims to prevent the automatic adoption of potentially poisoned packages by giving maintainers time to review newly published dependencies before Dependabot creates a pull request.
Google has developed its own taxonomy for categorizing cybercrime groups, deviating from the naming conventions proposed by Microsoft and CrowdStrike. This independent approach aims to provide Google's security researchers with a distinct framework for understanding and tracking these evolving threats.
The role of Chief Information Security Officers (CISOs) has evolved beyond traditional prevention to encompass business resilience and incident response. CISOs are increasingly responsible for ensuring operational continuity and recovery, a shift driven by the growing impact of disruptions on revenue and business functions.
A critical Remote Code Execution (RCE) vulnerability in the widely used Jackson JSON library for Java is poised to impact the Java ecosystem. This bulletin highlights other cybersecurity news, including scam compound expansion in Myanmar, Google's new APT naming scheme, and a macOS app vulnerability.
The PEAR ransomware group has claimed responsibility for a data breach at MCBS, a medical business management company. The attackers reportedly stole 3 TB of sensitive information, affecting approximately 1.2 million individuals.
Arista VeloCloud Orchestrator On-Prem is affected by an OS command injection vulnerability. A remote attacker could exploit this to access privileged internal functionality, potentially compromising the confidentiality, integrity, and availability of the orchestrator and its managed data.
A critical vulnerability, CVE-2025-68686, has been identified in Fortinet FortiOS, allowing remote unauthenticated attackers to bypass existing patches and potentially access sensitive information. Attackers would first need to compromise the system at the filesystem level through another vulnerability to exploit this flaw.
Sophos has introduced Sophos AI Defense, a new product designed to leverage artificial intelligence for enhanced cybersecurity defenses. The system aims to provide visibility, control, and security through AI capabilities, addressing the growing need for advanced threat detection and response.
The ESAFENET CDG 3 Document Management System, a product primarily for the Chinese market, has been found to have basic security vulnerabilities including SQL Injection, XSS, and default passwords. This is not the first time ESAFENET CDG has been observed in scanning activities, particularly after a cross-site scripting vulnerability was disclosed.
GitHub and PyPI have enhanced Dependabot with a time-based defense mechanism to mitigate supply chain attacks. This feature aims to limit the impact of compromised dependencies by introducing delays in their availability.
A new 'ClickFix' attack campaign is targeting Steam users by posting fake fixes for game and computer issues in Steam's discussion forums. These malicious posts trick users into downloading and executing cryptominer malware, specifically XMRig, which then utilizes their system's resources to mine cryptocurrency.
A malvertising operation named SourTrade has been discovered that uses victim browsers to construct the final Windows executable. This campaign impersonates legitimate financial trading platforms like TradingView, Solana, and Luno to target retail traders.
A malvertising campaign is using deceptive webpages that leverage malicious JavaScript to construct malware within the browser's memory. This technique allows attackers to bypass traditional security measures by avoiding the creation of executable files on disk. The campaign specifically targets users of popular platforms like Solana, Luno, and TradingView.