DPRK-linked macOS malvertising uses fake updates and ClickFix to install a backdoor that fetches a stealer targeting 157 ...
Azure Cosmos DB's Gremlin flaw let Wiz escape the sandbox and retrieve an account key. Microsoft found no unauthorized ...
Microsoft 365 Copilot prompt injection can alter report figures and copy hidden instructions into generated files, letting ...
Check Point launches an AI Network Firewall to inspect prompts, model calls, APIs, and agent activity across enterprise ...
Cisco FMC flaw CVE-2026-20316 is under active exploitation, letting unauthenticated attackers use static credentials to ...
State-sponsored hackers used compromised South Korean websites to exploit AnySign4PC and install SIGNBT or COPPERHEDGE ...
Silver Fox uses a three-driver BYOVD framework, DLL sideloading, and dual watchdogs to keep ValleyRAT running at a Japanese ...
Amazon links the 2025 debug and chalk npm hijack to Sapphire Sleet with medium confidence, but does not show which evidence ...
ThreatsDay: AI-Powered Hacking, 370 Chrome Flaws, SonicWall Attacks, DNS Hijacking + 22 More Stories
Autonomous AI attacks, SonicWall credential stuffing, DNS hijacking, fake Claude malware, Chrome flaws, phishing campaigns, and more security news.
Microsoft launches MAI-Cyber-1-Flash inside MDASH, routing up to 90% of tasks to the model while GPT-5.4 handles the hardest ...
Russian hackers exploit CVE-2026-42897 in OWA to deploy OWAReaper, a browser implant that persists through credential ...
CVE-2026-66066 could expose Rails server files through image uploads, leaking secrets that may enable RCE or lateral movement ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results