JadePuffer agentic attacks now target AI model data with ransomware
The JadePuffer autonomous AI agent has upgraded with custom malware called EncForge that focuses on encrypting AI assets, such as training …
The JadePuffer autonomous AI agent has upgraded with custom malware called EncForge that focuses on encrypting AI assets, such as training …
A malicious component dubbed HollowGraph uses the calendar feature in compromised Microsoft 365 mailboxes as a command-and-control channel …
Choosing an AI SOC platform requires understanding how it will perform in your own environment, not just during an evaluation. Prophet Secu…
The Hugging Face artificial intelligence repository disclosed that attackers gained access to internal datasets and credentials after breac…
Microsoft is working to fix a known issue affecting Windows Server Update Services (WSUS) servers, which has caused synchronization problem…
Microsoft has released emergency updates to fix a known issue causing some Dell PCs to shut down after installing the July 2026 Windows 11 …
Attackers have begun exploiting a critical vulnerability (CVE-2026-6875) in the ServiceNow AI Platform, according to threat intelligence co…
An advanced threat actor is abusing the update mechanism for the ViPNet private networking product suite to target Russian organizations, i…
7-Zip version 26.02 was released to fix a remote code execution vulnerability that could allow attackers to execute malicious code by convi…
Public exploits have been released for the critical "wp2shell" remote code execution vulnerabilities affecting WordPress Core, making it im…
Microsoft has observed a surge in attacks using the ACR Stealer malware to steal browser-stored passwords, authentication tokens, and sensi…
As age verification laws expand worldwide, organizations face growing pressure to protect users' privacy while meeting regulatory requireme…
Abbott Laboratories is investigating two separate cybersecurity incidents after confirming unauthorized access to internal legacy Exact Sci…
A vulnerability dubbed HollowByte allows unauthenticated attackers to trigger a denial-of-service (DoS) condition on OpenSSL servers with a…
Ernst & Young is notifying customers of a data breach caused by the compromise of a third-party support ticket system used by its IT person…
Residential proxies are no longer the silver bullet they once were for carding. Flare explains why cybercriminals increasingly seek "clean"…
A security researcher using the "Nightmare Eclipse" handle has released a Windows zero-day exploit dubbed LegacyHive that allows attackers …
Microsoft announced that Windows Server 2022 will reach the mainstream end date in October 2026, but will switch to extended support and co…