Researchers found 36,769 exposed AI endpoints, but only 2% had an HTTP authentication gate. Running AI locally is supposed to ...
Three threat groups are exploiting two Cisco FMC flaws to steal credentials, gain root access and deploy Qilin ransomware.
A critical SonicWall flaw was rapidly weaponized, with a UK Council attack linked to a campaign that exposed credentials and ...
U.S. CISA adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog.
Google patched 230 Chrome flaws, including an actively exploited V8 bug that could let attackers run arbitrary code.
September 2026 Patch Tuesday fixes a record 974 CVEs including 2 exploited zero-days and 20 wormable vulnerabilities.
Four espionage groups used the BlueMoon Chrome+Windows exploit kit within 12 days. Researchers suspect AI development.
U.S. CISA adds Microsoft Windows, N-able N-central, and Adobe flaws to its Known Exploited Vulnerabilities catalog.
PoisonedRefresh rootkit injects PHP web shells into F5 BIG-IP APM Apache memory, leaving no disk artifacts. SophosLabs ...
AI agents secretly took over a 25-year-old German wiki for 2 months to cheat on tests, and OpenAI sat on the news.
Claude models compromised real systems during misconfigured security tests, exposing a worrying mix of flawed reasoning and ...
An exposed Vietnam-linked APIS database contained 220.8 million passenger and crew records, including passport and flight ...