Current issue 30 articles 3 sources Rolling RSS feed
Refine digest
Showing 30 of 30 articles.
Source coverage 3 active feeds · 30 articles
3 active feeds 1 quiet feed
Krebs on Security quiet since
All contributing feeds (30 articles)
Monitor The Hacker News Fresh · 4h old

When the Whole Company Adopts AI: What It Does to Your SOC

NEWPermalink
AI Security

Over the past year, we watched a new class of alert appear in enterprise security operations centers and grow faster than anything else in the stream: alerts that were triggered by AI tools and agents. Not attacks against AI, but the ordinary, everyday footprint of an organization using it, from developers running coding agents and non-technical staff signing consumer AI tools into corporate…

Continues at The Hacker News
Elevated The Hacker News Recent · 6h old

OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers

Permalink
OpenAISupply Chain

The "major malicious attack" that targeted RubyGems in May 2026 was the work of a swarm of OpenAI agents, according to a new report published by researchers Spencer Kitts, Thomas Larsen, and Sydney Von Arx. On May 12, Maciej Mensfeld, senior product manager for software supply chain security at Mend.io, disclosed details of a coordinated cyber attack that targeted the package manager for the…

Continues at The Hacker News
Monitor Dark Reading Recent · 21h old

Why AI Is So Good at Scamming Humans

Permalink
AI Security

Fred Heiding of Menlo Park Intelligence talks with the Dark Reading News Desk about his research on frontier models, and their ability to influence human behavior and create emotional dependency.

Critical Bleeping Computer Recent · 21h old

Passkey-themed phishing attacks lead to Microsoft 365 data theft

Permalink
MicrosoftRansomwareData BreachIdentity

Microsoft says threat actors linked to ShinyHunters, Helix, and other extortion gangs are using passkey and single sign-on-themed social engineering attacks to compromise corporate Microsoft accounts and steal data from Microsoft 365 services…

Continues at Bleeping Computer
Elevated The Hacker News Recent · 22h old

GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

Permalink
Vulnerability

GitLab has released patches to address multiple flaws, including a maximum-severity security vulnerability that has witnessed in-the-wild probes within hours of public disclosure. The vulnerability in question is CVE-2026-85706 (CVSS score: 10.0), a path traversal issue in the repository commits API that could allow an unauthenticated user to read arbitrary files from the GitLab server under…

Continues at The Hacker News
Monitor The Hacker News Recent · 23h old

Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacks

Permalink
AI Security

Anthropic on Thursday said it identified and disrupted industrial-scale illicit distillation attacks against Claude from seven labs based in China, including Alibaba, Moonshot, DeepSeek, Z.ai (aka Zhipu), and MiniMax. Knowledge distillation by itself is a legitimate training method. It refers to a machine learning technique where a large, powerful AI model assumes the role of a "teacher" to…

Continues at The Hacker News
Critical The Hacker News Recent · 1d old

Claude Used to Automate Exploitation and Data Theft Across Multiple Victims

Permalink
ExploitationData BreachAI Security

Anthropic has warned that cybercriminals and state-sponsored hackers alike are using its Claude models for cyber attacks, weapons design, propaganda, and mass surveillance between December 2025 and August 2026. The threat actors, which the artificial intelligence (AI) company has branded Generative Threat Groups (GTGs), span state-sponsored groups, financially motivated criminals, commercial…

Continues at The Hacker News
Elevated The Hacker News Recent · 1d old

Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection

Permalink
MalwareAI Security

Anthropic on Thursday revealed it disrupted a campaign mounted by a Russian state-sponsored threat actor that abused Claude for developing an AI-assisted workflow to get ahead of the detection curve. The operation has been attributed to a cyber espionage group it calls GTG-20006 (where "GTG" stands for Generative Threat Group), which aligns with broader reporting linking the cluster to Midnight…

Continues at The Hacker News
Elevated Bleeping Computer Recent · 1d old

How Threat Actors Are Turning Trusted AI Platforms Into an Attack Surface

Permalink
MalwareAI Security

Threat actors are abusing trusted AI platforms to host malicious content, poison search results, and trick users into installing malware. Huntress examines campaigns targeting AI users through weaponized Claude Artifacts, shared AI conversations, sponsored search results, and ClickFix-style lures…

Continues at Bleeping Computer
Critical The Hacker News Recent · 1d old

Your Critical Vulnerabilities Might Not Be Your Biggest Risk

Permalink
VulnerabilityIdentity

Security teams have become exceptionally talented at finding vulnerabilities. Now, it’s time to turn our attention to optimizing the process for determining which of those vulnerabilities actually create a path to compromise. A critical vulnerability may look alarming on a scanner report, but if it sits behind strong segmentation, identity controls, and other defenses that prevent an attacker…

Continues at The Hacker News
Monitor The Hacker News Recent · 1d old

Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors

Permalink
Cloud
Attackers have chained two flaws in JFrog Artifactory, the repository that software build pipelines pull from, to take administrator control of self-hosted Show full summary

servers and plant backdoors, cloud security company Wiz said in a report. Wiz saw the attacks between August 15 and September 8. JFrog had fixed both flaws before then, so only servers that had not been updated were open to them.

Elevated The Hacker News Recent · 1d old

China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor

Permalink
MicrosoftVulnerabilityExploitationMalware

A China-linked hacking group exploited a flaw in Sogou Input Method, one of the most widely used tools for typing Chinese characters on Windows, to install a backdoor on victims' computers, security company Gen Digital said in research published Thursday. The attack started with a crafted link and ended with the attacker able to do anything the logged-in user could do. Tencent, which owns…

Continues at The Hacker News
Critical The Hacker News Recent · 1d old

PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

Permalink
Exploitation

PaperCut on Thursday released a new security maintenance release that replaces all previously published emergency patches that were pushed to address two security flaws that have come under active exploitation. The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. "These are Regular Maintenance Releases (MR) that…

Continues at The Hacker News
Critical The Hacker News Recent · 1d old

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

Permalink
CiscoRansomwareVulnerabilityExploitationData Breach

Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored attacks have been exploiting two recently patched Secure Firewall Management Center (FMC) vulnerabilities. The attacks leverage CVE-2026-20079 (CVSS score: 10.0), an authentication bypass vulnerability in the web interface of FMC software that could allow an unauthenticated, remote attacker to bypass…

Continues at The Hacker News