access ai android api apple attack authentication backdoor breach business ceo china cisa cisco ciso cloud compliance control credentials crypto cve cyber cyberattack cybercrime cybersecurity data data-breach defense detection email endpoint exploit finance flaw framework fraud google governance government group hacker hacking healthcare identity infrastructure intelligence Internet jobs law leak linux malicious malware microsoft monitoring network open-source password phishing privacy ransomware remote-code-execution resilience risk russia scam service software strategy supply-chain technology theft threat tool unclassified update usa vulnerability windows zero-day
-
Anthropic Restricts Live Internet Access After Claude Evaluation Failures
Anthropic’s models kept working around the rules on the live internet. The company published the cases. Anthropic released a report on unintended actions its Claude models took during evaluations and internal use. The cases involved real websites and real organizations outside the company. Anthropic says the impact was minimal, and it published them anyway. The…
-
Windows-Server im Mittelstand Lizenzmodelle, CALs und was die Kosten wirklich treibt
Tags: windowsDie Kostenfrage einer Windows-Server-Umgebung lässt sich an der Quelle nicht beantworten. Auf der Preisseite des Herstellers steht statt der Beträge der Platzhalter ‘VARIABLE”, dazu der Verweis auf den zuständigen Kundenbetreuer. Listenpreise weist der Hersteller dort also nicht aus. Für die Budgetplanung im Mittelstand bleibt der Weg über die Struktur, und die ist belegbar. Vier Größen…
-
ARTEX AI, Claude agents used in cyberattacks on South Korean banks
The cyberattacks that shook the South Korean financial sector earlier this month were launched by a Chinese hacker using the ARTEX AI penetration testing suite and Claude agents. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hacker-used-artex-ai-and-claude-agents-to-target-south-korean-banks/ also interesting: China-linked hackers target Japan’s national security and high-tech industries The 14 most valuable cybersecurity certifications What is…
-
Cyber exec arrested in case allegedly tied to ShinyHunters hackers
Canadian cybersecurity executive Edward Dubrovsky has been arrested in Pennsylvania in connection with alleged extortion activity that multiple reports have linked to the FBI’s ongoing crackdown on the ShinyHunters hacking group. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cyber-exec-arrested-in-case-allegedly-tied-to-shinyhunters-hackers/ also interesting: Cybersecurity Snapshot: AI Security Skills Drive Up Cyber Salaries, as Cyber Teams Grow Arsenal…
-
Cyber exec arrested in case allegedly tied to ShinyHunters hackers
Canadian cybersecurity executive Edward Dubrovsky has been arrested in Pennsylvania in connection with alleged extortion activity that multiple reports have linked to the FBI’s ongoing crackdown on the ShinyHunters hacking group. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cyber-exec-arrested-in-case-allegedly-tied-to-shinyhunters-hackers/ also interesting: Cybersecurity Snapshot: AI Security Skills Drive Up Cyber Salaries, as Cyber Teams Grow Arsenal…
-
Canadian cybersecurity executive arrested in federal extortion case
Details of the case align with the investigation into ShinyHunters’ attack on FBI IT systems. First seen on cyberscoop.com Jump to article: cyberscoop.com/edward-dubrovsky-cypfer-arrested-fbi-extortion-charges/ also interesting: Is the tide turning on macOS security? 8 Cyber Predictions for 2025: A CSO’s Perspective Two U.S. Cybersecurity Professionals Plead Guilty to Acting as ALPHV/BlackCat Affiliates Silent Ransom Group targets…
-
Criminal IP Introduces AITEM as the Next Evolution of Attack Surface Management
Traditional attack surface management helps organizations discover exposed assets, but visibility alone is not enough to address threats. Criminal IP introduces AITEM, an AI-powered approach that connects exposure discovery with investigation, risk prioritization, and response. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/criminal-ip-introduces-aitem-as-the-next-evolution-of-attack-surface-management/ also interesting: Securing cloud-native applications: Why a comprehensive API security strategy is…
-
The Third-Party Agent Problem: Why Security Built for AI You Chose Misses the Agents You Didn’t
In environments studied for the 2026 State of Agent Security Report, roughly 1,280 third-party products now embed AI. About 282 of them sit behind single sign-on. The other thousand are invisible to identity infrastructure by default, not because anyone hid them, but because an identity stack can only govern what authenticates through it, and most…
-
AI Is Getting Really Good at Messing With Cybercriminals
Anti-cybercrime initiatives are increasingly using AI to scam the scammers by tricking them into talking to lifelike bots that they think are real victims. First seen on wired.com Jump to article: www.wired.com/story/ai-is-getting-really-good-at-messing-with-cybercriminals/ also interesting: Top 12 ways hackers broke into your systems in 2024 Meet GhostGPT: The Malicious AI Chatbot Fueling Cybercrime and Scams Next…
-
FBI Arrests Ransomware Negotiation Firm Co-Founder in ShinyHunters Probe
Tags: ransomwareFBI arrests Cypfer co-founder Edward Dubrovsky, now associated with CyberSteward, in the ShinyHunters investigation into the FBI jobs… First seen on hackread.com Jump to article: hackread.com/fbi-arrests-ransomware-negotiation-founder-shinyhunters/ also interesting: Ermittler gelingt Schlag gegen LockBit-Bande The Notorious Lockbit Ransomware Gang Has Been Disrupted by Law Enforcement Sophos Ransomware in Retail Studie zeigt Einzelhandel massiv unter Druck MonsterCloud…
-
Strafjustiz: UN warnt vor Missbrauch von Neurotechnologie
Tags: unclassifiedUN-Generalsekretär Guterres warnt erstmals vor Neurotechnologie. Staaten könnten Gehirne auslesen und Grundrechte verletzen. First seen on golem.de Jump to article: www.golem.de/news/strafjustiz-un-warnt-vor-missbrauch-von-neurotechnologie-2610-213952.html also interesting: Datenschutz: Kabinett beschließt neue Regeln für IP-Auskunft … Beijing issues list of approved CPUs with no Intel or AMD IT-Security: Fachkräfte sind begehrt primär in diesem Bereich sticht der Bedarf heraus Certification…
-
Anthropic Cuts Live Internet Access for Internal AI Tests After Claude Exploits Injection Flaws
Anthropic on Friday said it’s cutting off live internet access for all its internal evaluations following the discovery of new incidents in which its artificial intelligence (AI) models exhibited misaligned behavior and targeted real websites.The AI company said it identified four broad categories of unintended model actions during evaluations and internal use of Claude –…
-
Security Threats Don’t Stop at the Office: Why Executives’ Families Need Training, Too
Those closest to executives must match their security postures because the weakest link in a family can become the entry point for attacks. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/security-threats-don-t-stop-at-the-office-why-executives-families-need-training-too also interesting: Talent overlooked: embracing neurodiversity in cybersecurity Clément Domingo: “We are not using AI correctly to defend ourselves” Vaillant CISO: NIS2 complexity and…
-
Why websites need to assess the Wikimedia attack
An OpenAI bot overloaded Wikimedia, attacked a system at the foundation and attempted to change entries First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366652022/Why-websites-need-to-assess-the-Wikimedia-attack also interesting: Third-Party ChatGPT Plugins Could Lead to Account Takeovers AI programming copilots are worsening code security and leaking more secrets HackedGPT: Novel AI Vulnerabilities Open the Door for Private Data…
-
Asos Hackers Claim Breach of Snowflake-Connected Simon AI
Snowflake-Connected Marketing Tool Appears to Be Source of Customer Data Breach. Fast-fashion retailer Asos’ hacker claims to have stolen customer data by breaching a marketing tool called Simon AI, integrated with the victim’s Snowflake cloud-based data warehousing platform. By default, Simon AI doesn’t require multifactor authentication, a cybersecurity expert warned. First seen on govinfosecurity.com Jump…
-
Suspected ShinyHunters Extortion Hacker Arrested by FBI
FBI Vows to Dismantle Hacking Group After It Stole FBI Personnel Data. The FBI announced Friday the arrest of a suspected hacker behind the breach of a bureau HR system, marking the second recent detention of an alleged member of the ShunyHunters extortion group. The suspect, arrested earlier week in Pennsylvania, is a Canadian citizen.…
-
MonsterCloud CEO Zohar Pinhasi Accused of Paying Hackers, Defrauding Victims
The DOJ accuses MonsterCloud CEO Zohar Pinhasi of secretly paying ransomware gangs for decryption keys while charging victims… First seen on hackread.com Jump to article: hackread.com/monstercloud-ceo-zohar-pinhasi-ransomware-victims/ also interesting: UnitedHealth CEO Says Hackers Lurked in Network for Nine Days Before Ransomware Strike Starbucks operations hit after ransomware attack on supply chain software vendor DOJ charges ransomware…
-
P7 DarkSword iOS Exploit Kit Adds Crypto Wallet Data Theft and Remote Commands
Cybersecurity researchers have disclosed details of a previously unseen variant of the DarkSword iOS exploit kit called P7 DarkSword.”Compared with the variants we usually observe, P7 reduces its on-device footprint, adds on-device keychain and crypto-wallet theft, and adds two way C2 communication with the attacker’s infrastructure,” iVerify said in a new report published Thursday.The name…
-
Security Threats Don’t Stop at the Office: Why Executives’ Families Need Training Too
Those closest to executives must match their security postures because the weakest link in a family becomes the entry point for attacks. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/security-threats-don-t-stop-at-the-office-why-executives-families-need-training-too also interesting: Security leaders top 10 takeaways for 2024 Cybersecurity Snapshot: What Looms on Cyberland’s Horizon? Here’s What Tenable Experts Predict for 2025 Blown the…
-
What We Missed: FBI Strikes Back at ShinyHunters
Tags: dataIn this video conversation, Dark Reading editors discuss some of the news they didn’t get a chance to cover, from the arrest of a suspected ShinyHunters operative to the compromise of a Pentagon-run data center. First seen on darkreading.com Jump to article: www.darkreading.com/identity-access-management-security/fbi-shinyhunters-claims-hack also interesting: FBI Warns: Threat Actors Impersonating BianLian Group to Target Corporate…
-
FBI arrests another suspected ShinyHunters hacker after agency breach
The FBI has arrested another suspected member of the ShinyHunters extortion group believed to be involved in the recent breach of FBI systems, Director Kash Patel announced Friday. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fbi-arrests-another-suspected-shinyhunters-hacker-after-agency-breach/ also interesting: New Great Morpheus Hacker Group Claims Hacking Into Arrotex Pharmaceuticals And PUS GmbH Hackers use Vishing to…
-
Unpatched AhsayCBS flaws exploited to deploy webshells, mine crypto
Threat actors are exploiting one critical and one medium-severity vulnerability still unpatched in the AhsayCBS backup management platform to deploy webshells and cryptocurrency miners. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/unpatched-ahsaycbs-flaws-exploited-to-deploy-webshells-mine-crypto/ also interesting: 2025 Cybersecurity and AI Predictions What to Know About CyberAv3ngers: The IRGC-Linked Group Targeting Critical Infrastructure Attackers Exploit AhsayCBS Flaws to…
-
Germany arrests alleged core Qilin ransomware member after extradition
Germany has arrested a Russian national suspected of being a leading member of the Qilin ransomware group following extradition from Japan earlier this month. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/germany-arrests-alleged-core-qilin-ransomware-member-after-extradition/ also interesting: UkraineGermany operation targets Black Basta, Russian leader wanted Law enforcement tracks ransomware group blamed for massive financial losses Germany Doxes “UNKN,”…
-
FBI touts another ShinyHunters arrest in response to data breach
“We will continue to work closely with our partners to disrupt what’s left of the ShinyHunters group and their associates, no matter where they operate,” FBI Director Kash Patel said. First seen on therecord.media Jump to article: therecord.media/shinyhunters-arrest-fbi-data-breach-investigation also interesting: Data breach reported by Universal Music Group CERT-EU blames Trivy supply chain attack for Europa.eu…
-
Leader of vast money mule operation that laundered cybercriminal proceeds pleads guilty
Oleg Korniev, a 42-year-old dual citizen of Ukraine and Russia, was a principal of Your Mule Cashout, or “YMCO,” which from 2007 until 2014 set up a sophisticated network of mules in the U.S. and Europe. First seen on therecord.media Jump to article: therecord.media/leader-of-money-mule-operation-for-cybercriminals-pleads-guilty also interesting: Operation Endgame 2.0: DanaBusted Cybersecurity Snapshot: AI Data Security…
-
Hundreds of thousands impacted by data breach at biosensor firm iRhythm
A company known for wearable cardiac sensors, iRhythm, has begun notifying states of the impact of a data breach from the summer. First seen on therecord.media Jump to article: therecord.media/irhythm-data-breach-reports also interesting: 300,000 Impacted by Data Breach at Car Rental Firm Avis Estonia issues arrest warrant for Moroccan wanted for major pharmacy data breach Unbefugter…
-
The Cyber Express Weekly Roundup: US Puts $10 Million Bounty on Chinese Hacker, Japan Moves to Hunt Hidden Attackers and More
This weekly roundup covers a massive exposure of personal data from Denmark’s national population register, a U.S. bounty on a Chinese hacker accused of stealing COVID-19 research, Japan’s plan to actively search for attackers hiding in its critical infrastructure, a pair of breaches at Japanese publisher Nikkei, a call for AI-driven decision-making in security operations,…
-
$10 million bounty offered for Chinese Hafnium hacker accused of Microsoft Exchange Server mega-attack
The US State Department is offering up to US $10 million for information about the whereabouts of Zhang Yu, a 44-year-old Chinese national who is accused of being a key figure in China’s state-sponsored hacking group, Hafnium. First seen on bitdefender.com Jump to article: www.bitdefender.com/en-us/blog/hotforsecurity/10-million-bounty-chinese-hafnium-hacker-microsoft-exchange-server-mega-attack also interesting: State-Backed Hackers Exploiting Windows Zero-Day Since 2017 US…
-
Belarusian hacktivists admit to 2023 breach of Russian state healthcare network
The Belarusian Cyber Partisans concurred with Russian research that they indeed spent months inside the network for the Moscow Department of Health. First seen on therecord.media Jump to article: therecord.media/belarusian-cyber-partisans-claim-2023-russia-healthcare-hack also interesting: The most notorious and damaging ransomware of all time Rogues gallery: 15 worst ransomware groups active today The economics of ransomware 3.0 The…
-
5 Big Things To Know About Post-Quantum Security In 2026
Tags: dataThe need to prepare for the quantum paradigm shift”, and the first steps that are most necessary to take to get ready for the adoption of new forms of data encryption”, are coming clearly into focus, solution provider and vendor executives tell CRN. First seen on crn.com Jump to article: www.crn.com/news/security/2026/5-big-things-to-know-about-post-quantum-security-in-2026 also interesting: Acuity downplays…
-
FBI seizes domains linked to China-nexus botnet
The infrastructure supported an international hacking campaign that targeted critical infrastructure, including a South Carolina-based power company. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/fbi-seizes-domains-china-botnet-flax-typhoon/832611/ also interesting: International effort erases PlugX malware from thousands of Windows computers When Your Own Eyes Turn Against You: How Compromised Security Cameras and IoT/OT Devices Become Tools for Your…
-
FBI seizes domains linked to China-nexus botnet
The infrastructure supported an international hacking campaign that targeted critical infrastructure, including a South Carolina-based power company. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/fbi-seizes-domains-china-botnet-flax-typhoon/832611/ also interesting: International effort erases PlugX malware from thousands of Windows computers When Your Own Eyes Turn Against You: How Compromised Security Cameras and IoT/OT Devices Become Tools for Your…
-
Cyberangriffe auf Banken: Hacker nutzt KI und hinterlässt Accountdaten
Der Angreifer ist aufgeflogen, weil er offene und ungesicherte Webverzeichnisse auf seiner Server-Infrastruktur betrieb. First seen on golem.de Jump to article: www.golem.de/news/cyberangriffe-auf-banken-hacker-nutzt-ki-und-hinterlaesst-accountdaten-2610-213941.html also interesting: Attack Surface Management ein Kaufratgeber FortiGate firewall credentials being stolen after vulnerabilities discovered Wie KI die Cybersicherheit neu gestaltet Hacker legen Websites von Conceptnet-Kunden lahm
-
Cybersecurity Awareness Month 2026 – Awareness unter Pflicht- und KI-Druck
First seen on security-insider.de Jump to article: www.security-insider.de/phishing-schulungen-deepfakes-ki-awareness-nis2-a-84536d8c66eb0d54958809764f7beba4/ also interesting: 12 most innovative launches at RSA 2025 The devil of proposed SEC AI disclosure rule is in the details Gartner-Prognose: Die sechs wichtigsten Cybersicherheits-Trends für 2026 12 cyber industry trends revealed at RSAC 2026
-
Attackers Exploit AhsayCBS Flaws to Deploy XMRig Miners Disguised as Microsoft Edge
Threat actors have been observed exploiting two recently disclosed flaws in the AhsayCBS backup utility to seize control of affected devices and deploy web shells and XMRig cryptocurrency miners.Details of the flaws are below – CVE-2026-105133 (CVSS v4 score: 5.5) – An improper authentication vulnerability in the checkSysPwd() function in the “com/ahsay/obs/api/ApiStructsAction.java” First seen on…
-
Anthropic Launches Free AI Vulnerability Scanner for Open-Source Projects
Anthropic on Thursday unveiled OSS Scanner as an opt-in vulnerability scanner to help secure the open-source ecosystem using artificial intelligence (AI).”It’s an opt-in service informed by our experience using Claude to find vulnerabilities during Project Glasswing,” Anthropic said. “Projects that join will receive thorough, periodic security scans by our strongest models at no cost.” First…
-
Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access
Security researchers have published a full working exploit for a pre-authentication remote code execution flaw in AnyDesk Linux that gives attackers root access before anyone approves the connection.AnyDesk patched the flaw in version 8.0.3 in June, but its changelog described the fix only as “fixed a bug that could lead to a crash,” with no…
-
TP-Link Sued by Four More U.S. States Over Router Security and China Ties
Four more U.S. states sued router maker TP-Link Systems on October 6, bringing the total to five, with Texas filing a suit in February. Florida, Iowa, Montana and Nebraska allege the California company misled buyers about how secure its routers are and how separate it is from China. TP-Link denies the claims and says it…
-
How to keep AI agents within their permissions
AI agents can use valid credentials to perform actions beyond their assigned permissions, creating risks that traditional access controls may not prevent. Token Security explains how organizations can enforce agent-specific policies without sacrificing autonomy. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/how-to-keep-ai-agents-within-their-permissions/ also interesting: Fraud Awareness Week: How to Effectively Protect Your Data and Combat…
-
Microsoft tweaks Windows to secure agentic AI
The half-yearly update to the Windows operating system gets a host of features for running AI models locally and securely First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366652039/Microsoft-tweaks-Windows-to-secure-agentic-AI also interesting: Cybersecurity Snapshot: Prompt Injection and Data Disclosure Top OWASP’s List of Cyber Risks for GenAI LLM Apps Cybersecurity Snapshot: Prompt Injection and Data Disclosure Top…
-
Claude Helps Secure Open Source as Anthropic Offers Free Vulnerability Scanning
Anthropic launches free OSS Scanner, using AI to find open-source vulnerabilities and help maintainers fix bugs before attackers exploit them. Anthropic is launching OSS Scanner, a vulnerability scanner for open-source code that costs nothing for projects to join. It grew directly out of lessons learned running Claude against real-world targets during Project Glasswing. The backdrop…
-
KnowBe4 und Anthropic integrieren den AgentManager und die ClaudeAPI für Sicherheit und Governance
Agent-Risk-Manager, das KI-Agenten-Sicherheitsprodukt von KnowBe4 innerhalb der KnowBe4-Plattform, lässt sich nun direkt in die neue Claude-Compliance-API von Anthropic integrieren. Die Integration ermöglicht es Unternehmen, die Aktivitäten von KI-Agenten in Echtzeit zu verfolgen, zu steuern und zu sichern. Da autonome KI-Agenten zunehmend zum Einsatz kommen sie führen mehrstufige Workflows aus, greifen auf gemeinsam genutzten Speicher […]…
-
Auth0 ermöglicht SEGA-Fans ein reibungsloses und sicheres Gaming-Erlebnis
Tags: unclassifiedWeltweit greifen Millionen Spieler täglich über die seit 2025 eingeführten Accounts auf die Unterhaltungsangebote der SEGA-Gruppe zu. Zuvor war die Verknüpfung von Spielerkonten, Webportalen und Streaming-Plattformen ein mühsamer Vorgang, den die Nutzer oft mieden, denn für ein optimales Gaming-Erlebnis sollte der Wechsel von einem Gerät zum nächsten oder einer Plattform zur anderen so nahtlos wie…
-
WordPress und Ladezeit Welche Faktoren die Sichtbarkeit wirklich beeinflussen
Tags: wordpressDie Ladezeit einer WordPress-Installation entsteht an mehreren Stellen gleichzeitig. Ein Teil davon liegt in der eigenen Installation, ein weiterer Teil wird beim Seitenaufruf von fremden Servern nachgeladen. Analysewerkzeuge, Einwilligungsdialoge, Kartendienste, Videoeinbettungen, Schriftdateien und Werbeskripte bringen jeweils eigene Verbindungen mit. Damit fallen in der IT zwei Prüfungen zusammen, die in vielen Unternehmen getrennt bearbeitet werden. Der…
-
Surveillance company Flock cuts staff as privacy backlash grows
Flock would not say if CEO Garrett Langley would take a pay cut following the reduction in workforce. First seen on techcrunch.com Jump to article: techcrunch.com/2026/10/09/surveillance-company-flock-cuts-staff-as-privacy-backlash-grows/ also interesting: McDonald’s AI hiring tool’s password? ‘123456’: Exposes data of 64M applicants Top 10 Cybersecurity Predictions for 2026 AI coding is fueling a secrets-sprawl crisis few CISOs are…
-
OpenAI says it disrupted Russian and Iranian influence ops that used ChatGPT
A Latin American propaganda operation run by Russians and a cluster of Iranian fake journalist identities each had help from now-closed ChatGPT accounts, OpenAI’s safety team said. First seen on therecord.media Jump to article: therecord.media/openai-disrupts-russian-iranian-operations-chatgpt also interesting: OpenAI blocks state-sponsored hackers from using ChatGPT OpenAI Bans ChatGPT Accounts Used by Russian, Iranian, and Chinese Hacker…
-
Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies
Tags: access, china, cisa, control, cve, cybersecurity, exploit, flaw, infrastructure, kev, threat, vulnerabilityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added five security flaws to its Known Exploited Vulnerabilities (KEV) catalog, following their abuse by a China-linked threat actor known as Flax Typhoon.The vulnerabilities in question are listed below – CVE-2015-3306 (CVSS score: 10.0) – An improper access control vulnerability in ProFTPD that could allow…

