Latest Cybersecurity Threats

Real-time threat intelligence from trusted sources

Hackers began exploiting a newly discovered vulnerability in PraisonAI within hours of its public disclosure. This flaw allows attackers to bypass authentication measures, potentially granting unauthorized access to sensitive data. The rapid response from malicious actors indicates a high level of interest in exploiting this weakness, which could affect numerous users and organizations relying on PraisonAI's services. Companies using this technology should take immediate steps to secure their systems to prevent unauthorized access and data breaches. The quick exploitation attempts serve as a reminder of the urgency in addressing newly disclosed vulnerabilities.

Read Original

A recent study by Semperis indicates that 74% of organizations are concerned that artificial intelligence (AI) will lead to more attacks on their identity infrastructure. As companies increasingly rely on AI agents for sensitive security tasks, there are growing worries about how these technologies might be exploited by attackers. The research suggests that while AI can enhance security measures, it also presents new vulnerabilities that cybercriminals may try to exploit. This trend raises important questions for businesses about how to balance the benefits of AI with the potential risks it introduces. Organizations will need to take proactive steps to secure their identity systems against these emerging threats.

Read Original

The Information Commissioner’s Office (ICO) has issued new guidelines aimed at helping organizations defend against AI-powered cyberattacks. As these attacks become more sophisticated, the ICO emphasizes the need for businesses to adopt a proactive approach to cybersecurity. The five-step plan includes assessing risks, implementing robust security measures, and ensuring ongoing training for staff. This initiative is particularly important as AI tools can automate and enhance attack strategies, making traditional defenses less effective. Organizations across various sectors should take this guidance seriously to better protect sensitive data and maintain trust with their customers.

Read Original

A Chinese-linked hacking group known as FamousSparrow has targeted an Azerbaijani oil and gas company in a series of espionage attacks. The group repeatedly exploited the same entry point for three separate intrusions between December 2025 and February 2026. These attacks are part of a broader campaign aimed at gathering intelligence from the energy sector, which is vital for Azerbaijan's economy. The repeated access indicates a level of persistence and sophistication in their approach, raising concerns about the security measures in place to protect critical infrastructure. This situation underscores the ongoing risks that state-sponsored actors pose to national energy resources and the need for enhanced cybersecurity protocols in the sector.

Read Original

A security researcher has disclosed two serious vulnerabilities in Windows, known as YellowKey and GreenPlasma. YellowKey is a BitLocker bypass that allows unauthorized access to encrypted drives, but it requires physical access to the device. GreenPlasma, on the other hand, enables attackers to elevate their privileges to System level, potentially giving them full control over the affected system. These vulnerabilities pose a significant risk to users and organizations that rely on Windows for sensitive tasks. Companies should assess their physical security measures and apply necessary updates to protect against these risks.

Read Original

A new variant of a local privilege escalation vulnerability in the Linux kernel, named Fragnesia, has been identified. This vulnerability, tracked as CVE-2026-46300 with a CVSS score of 7.8, allows local attackers to gain root access through page cache corruption. This marks the third such vulnerability discovered in the Linux kernel within just two weeks, raising concerns for users and administrators. The flaw is rooted in the kernel's XFRM component, which is responsible for managing IPsec protocols. This means that systems using affected kernel versions could be at risk if not addressed promptly, as attackers could exploit this vulnerability to gain elevated privileges and potentially take control of vulnerable systems.

Read Original
Actively Exploited

Foxconn has confirmed that it experienced a cyberattack affecting several of its North American factories. The Nitrogen ransomware group claims responsibility, stating they stole a significant 8TB of data from the company. This incident highlights the increasing vulnerability of major manufacturers to cyber threats. Foxconn's acknowledgment of the attack suggests potential disruptions in their operations and raises concerns about the sensitive information that may have been compromised. As a major player in the electronics manufacturing sector, the implications of this breach could extend beyond Foxconn, potentially impacting its clients and partners as well.

Read Original

Researchers have identified multiple vulnerabilities in NGINX Plus and NGINX Open, including a severe flaw that has existed for 18 years. The most critical issue, a heap buffer overflow in the ngx_http_rewrite_module (CVE-2026-42945), could allow attackers to execute arbitrary code remotely without authentication. This vulnerability has a high severity score of 9.2 on the CVSS v4 scale. Organizations using these web servers are at risk, as the flaw could lead to significant security breaches. It is crucial for affected users to address this vulnerability promptly to safeguard their systems.

Read Original

A recent report from Palo Alto Networks reveals that organizations currently manage an average of 109 machine identities for every human identity, with this number expected to rise significantly in the coming years. The report predicts an 85% growth in AI agents over the next year, contributing to a projected 77% increase in machine identities overall. In contrast, human identities are expected to grow by 56%. This imbalance raises concerns about how organizations are securing these machine identities, especially as they become more prevalent in business operations. The findings underscore the need for companies to enhance their identity security measures across the entire lifecycle of AI agents to mitigate potential risks associated with this rapid growth.

Read Original

Recent studies by independent researchers indicate that AI models, specifically Anthropic's Claude Mythos Preview and OpenAI's GPT-5.5, have significantly exceeded all previously established benchmarks for autonomous cyber capabilities. This advancement raises questions about whether this performance is a temporary spike or a new standard in AI development. The implications for cybersecurity are profound, as these AI systems may enhance the capabilities of both defenders and attackers in the cyber landscape. As organizations adapt to this shift, they need to consider how these advancements could affect their security strategies and the potential risks involved. The ongoing evolution of AI in cybersecurity could redefine the nature of cyber threats and defenses, making it crucial for companies to stay informed and prepared.

Read Original

West Pharmaceutical Services has reported a cyberattack that compromised its systems, leading to data theft and the encryption of files. The company revealed that attackers gained access to sensitive information, although specific details about the stolen data have not been disclosed. This incident raises concerns about the security of pharmaceutical supply chains and the potential impact on patient safety. Companies in the healthcare sector, like West, must prioritize cybersecurity measures to protect against such threats. The attack underscores the ongoing risks faced by organizations handling sensitive data in an increasingly digital world.

Read Original

The House committee recently conducted a closed briefing with representatives from Anthropic, a company known for its AI development, specifically regarding its Mythos project and associated cyber risks. This briefing precedes an upcoming hearing where lawmakers will likely discuss potential cybersecurity implications of advanced AI technologies. The focus is on ensuring that as AI capabilities grow, appropriate safeguards are in place to protect against misuse or vulnerabilities. The interest from the House committee indicates a growing concern about how AI systems can be exploited or pose risks to national security and privacy. This scrutiny could lead to more regulatory measures in the AI space.

Read Original

A serious vulnerability has been found in certain configurations of the Exim mail transfer agent, which could allow remote attackers to execute arbitrary code without authentication. This flaw poses a significant risk to systems running Exim, as it could lead to unauthorized access and control over affected servers. Organizations using Exim should take immediate action to assess their configurations, as attackers could exploit this vulnerability if not addressed promptly. The issue emphasizes the need for regular updates and security checks in mail server configurations to protect against potential breaches. Users and administrators are advised to stay vigilant and ensure they are running the latest versions of the software.

Read Original

The Department of Justice (DOJ) has released a memo outlining its legal justification for collecting nationwide voter data to vet voter eligibility. The memo suggests that the executive branch has a significant role in this process. However, this stance has faced criticism, with one Secretary of State describing the memo as a 'fantasy' that lacks practical value. The implications of this approach raise concerns about privacy and the potential for misuse of voter data. As states continue to navigate voter registration and eligibility, the DOJ's position may influence how these processes are managed and perceived across the country.

Read Original

A recent cybersecurity incident involving the online learning platform Canvas has raised concerns after the hacking group ShinyHunters successfully breached the system twice. The attackers exploited vulnerabilities through cross-site scripting (XSS) and compromised user identities, leading to the exposure of sensitive student data. In response to these breaches, a House committee chair has called for Instructure, the parent company of Canvas, to testify about the incident. This situation is significant as it not only affects students' personal information but also raises questions about the security measures in place to protect educational platforms. The potential for misuse of the exposed data could have far-reaching implications for students and educational institutions alike.

Read Original
PreviousPage 173 of 370Next