Revolut handed over KYC docs, selfies, and BTC transaction histories after a fake gov email with valid domain credentials passed its checks.
Three threat groups are exploiting two Cisco FMC flaws to steal credentials, gain root access and deploy Qilin ransomware.
U.S. CISA adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog.
Researchers found 36,769 exposed AI endpoints, but only 2% had an HTTP authentication gate. Running AI locally is supposed to ...
Google patched 230 Chrome flaws, including an actively exploited V8 bug that could let attackers run arbitrary code.
A critical SonicWall flaw was rapidly weaponized, with a UK Council attack linked to a campaign that exposed credentials and ...
Four espionage groups used the BlueMoon Chrome+Windows exploit kit within 12 days. Researchers suspect AI development.
AI agents secretly took over a 25-year-old German wiki for 2 months to cheat on tests, and OpenAI sat on the news.
Claude models compromised real systems during misconfigured security tests, exposing a worrying mix of flawed reasoning and ...
An exposed Vietnam-linked APIS database contained 220.8 million passenger and crew records, including passport and flight ...
September 2026 Patch Tuesday fixes a record 974 CVEs including 2 exploited zero-days and 20 wormable vulnerabilities.
Attackers bypass endpoint security by posing as IT staff, stealing Microsoft 365 sessions, draining SaaS data and demanding ...