Latest Cybersecurity Threats

Real-time threat intelligence from trusted sources

Recent research has revealed a significant flaw in how GitHub handles signed commits. It turns out that the hash associated with a signed commit isn't as unique as many in the software community believed. This means that someone without access to the original signing key can create a new commit that appears identical in terms of files, author, and date, yet has a different hash. GitHub still marks this new commit as 'Verified', leading to potential confusion and trust issues during code reviews. This discovery raises concerns about the integrity of code contributions, particularly in open-source projects where trust in commit signatures is crucial.

Read Original

Account takeover (ATO) attacks are evolving as traditional methods become less effective. Attackers, who once relied on credential stuffing with stolen login information, are facing challenges due to the widespread adoption of passkeys, which enhance security for users. This shift means that attackers must now focus more on the verification process, making it a new battleground in the fight against ATO. As companies and users adopt these stronger authentication methods, the landscape of online security is changing, pushing attackers to adapt their strategies. This evolution is important for both individuals and organizations, as it emphasizes the need for ongoing vigilance and the adoption of advanced security measures.

Read Original

Accenture has confirmed a data breach after a hacker known as '888' claimed to have stolen over 35GB of sensitive information from the company in July 2026. The stolen data reportedly includes source codes, RSA and SSH keys, Azure personal access tokens, and configuration files. While Accenture is assessing the situation, the full scope of the breach remains unclear. This incident raises concerns about the security of client data and the potential for further exploitation of the stolen credentials. Companies in the tech sector should remain vigilant and review their security measures in light of this breach.

Read Original

Last week, national security agencies from the Five Eyes, which includes countries like the US, UK, Canada, Australia, and New Zealand, issued a warning about the rising cyber risks associated with artificial intelligence models. They raised concerns about AI's potential to autonomously hack into systems and networks, signaling an urgent need for vigilance in cybersecurity practices. Despite the alarm, the agencies provided standard advice on securing networks, emphasizing that cyber threats are not new but have evolved with technology. The statement reflects a growing recognition of how AI tools could be misused by attackers, affecting both private and public sectors. As AI continues to advance, organizations must remain proactive in their cybersecurity measures to mitigate these emerging risks.

Read Original

A new malicious campaign is targeting users by distributing the Vidar infostealer and the XMRig cryptocurrency miner. Attackers are using various methods to infect victims' systems, allowing them to steal sensitive information and mine Monero, a type of cryptocurrency, which can lead to financial losses and identity theft. This campaign raises concerns for individuals and organizations alike, as it highlights the ongoing threat of malware that not only compromises personal data but also exploits resources for profit. Users need to be vigilant about their online security practices to avoid falling victim to such attacks. This incident serves as a reminder of the importance of maintaining updated security measures and being cautious about downloading unknown software.

Read Original

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has mandated that federal agencies prioritize patching a vulnerability in Langflow, a visual framework used for building AI agents. This flaw allows unauthorized access, making it easier for attackers to exploit systems that use Langflow. Agencies have until Friday to address this issue, as it is currently being actively exploited. The urgency of this directive emphasizes the critical nature of maintaining secure software environments, especially in federal operations where sensitive data may be at risk. By patching this vulnerability, agencies can protect themselves from potential breaches and unauthorized access to their systems.

Read Original

Researchers at ESET have identified over 25,000 potentially malicious AI skills among nearly 900,000 analyzed. These skills, which enable AI agents to perform various tasks online, can be exploited by attackers to steal sensitive data, execute malware, or alter the behavior of the AI systems. This discovery raises significant concerns about the security of AI tools, as they could be manipulated to harm users or systems. The findings highlight the need for vigilance in monitoring AI skills and ensuring that they are secure, as the misuse of these capabilities can lead to serious data breaches and other cybersecurity incidents.

Read Original

The article discusses concerns regarding the government's new AI clearinghouse initiative, which aims to identify and address problems related to artificial intelligence technologies. While the clearinghouse is intended to help organizations spot issues quickly, the article warns that if it only focuses on scanning for problems without providing effective solutions, it might end up being more of a bureaucratic body than a helpful resource. This gap in functionality could hinder the clearinghouse's effectiveness, leaving organizations to struggle with unresolved AI challenges. The piece emphasizes the need for a proactive approach that includes patching and fixing identified issues, rather than just flagging them. This is crucial as AI technologies continue to influence various sectors and require timely interventions to ensure safety and reliability.

Read Original

Ubiquiti has issued urgent security updates to address seven vulnerabilities in its UniFi OS, including a particularly severe flaw that could allow attackers to execute command injection attacks. This vulnerability is critical because it gives unauthorized users a way to run malicious commands on affected systems. The issue affects various Ubiquiti products that utilize UniFi OS, which is widely used in network management. Users and organizations that rely on these devices should prioritize applying the latest patches to protect their networks. Failure to update could leave systems exposed to potential attacks, putting sensitive data at risk.

Read Original

The Cybersecurity and Infrastructure Security Agency (CISA) is implementing Anthropic's Mythos AI to proactively identify vulnerabilities in U.S. federal code. This initiative aims to detect potential flaws before they can be exploited by hackers or foreign intelligence agents. By scanning federal code repositories, CISA hopes to bolster the security of government systems and protect sensitive data. This move reflects a growing emphasis on using artificial intelligence in cybersecurity efforts to stay ahead of threats. The collaboration with Anthropic is part of broader efforts to enhance the resilience of federal digital infrastructure against cyberattacks.

Read Original

A serious flaw known as GhostLock (CVE-2026-43499) has been discovered in the Linux kernel, affecting numerous distributions since 2011. This 15-year-old vulnerability allows any logged-in user to gain root access to an unpatched machine without needing special permissions or network access. Essentially, if users are logged in, they can exploit this flaw to take full control of the system. Given that this vulnerability has been included by default in nearly all mainstream Linux distributions, it poses a significant risk to users and organizations that have not applied the necessary patches. Immediate action is required to address this security issue, as it exposes systems to potential compromise and misuse.

Read Original

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added four vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog due to evidence of active exploitation. One of the most critical is CVE-2026-48282, a path traversal vulnerability in Adobe ColdFusion that could allow attackers to execute arbitrary code. This flaw has a maximum CVSS score of 10.0, indicating its severity. Additionally, vulnerabilities in Joomla and Langflow have also been flagged, though specific details about those flaws were not provided in the article. Organizations using affected products should prioritize applying patches and updates to mitigate these risks, as exploitation in the wild can lead to significant data breaches or system compromises.

Read Original

OpenAI and Anthropic, two leading AI labs, are increasingly relying on AI agents to manage operational decisions. These agents, which utilize statistical models, can exhibit behavioral changes over time, creating a security risk that traditional monitoring tools may not detect. A recent analysis of job postings from both companies indicates their differing approaches to this technology, which could influence how they develop and deploy AI systems. This situation raises concerns as companies may inadvertently expose themselves to vulnerabilities if their AI agents operate unpredictably. It’s essential for organizations using AI to ensure that their monitoring systems can adapt to these changes and mitigate potential security gaps.

Read Original

Spanish authorities have arrested a man suspected of being involved in cyberattacks connected to two Russian hacktivist groups, Cyber Army of Russia Reborn and NoName. Although the authorities have not disclosed the suspect's identity or filed formal charges, this arrest is part of a broader effort to combat cybercrime linked to Russian groups. The activities of these hacktivist organizations have raised concerns about the security of various online platforms and the potential for disruption to services. As tensions continue between Russia and other nations, incidents like this highlight the ongoing risk posed by politically motivated cyber activities. Law enforcement's actions could serve as a deterrent to future attacks and send a message about the seriousness of cyber offenses.

Read Original

A recent lawsuit has been filed against xAI and its AI chatbot Grok, following allegations that the technology was misused to create deepfake sexual images of minors. Two individuals, who were reportedly victimized by friends and family using Grok, have come forward to detail their experiences. The lawsuit has now expanded to include Stability AI as a defendant. This case raises significant concerns about the misuse of artificial intelligence in generating harmful content, particularly regarding child sexual abuse material (CSAM). The implications of this lawsuit could lead to stricter regulations on AI technologies and their applications, as well as increased awareness about the potential for abuse in generative AI systems.

Read Original
PreviousPage 120 of 370Next