Telegram Desktop fixed a flaw that let bot messages embed JavaScript in HTML exports to read or alter messages; old exports ...
WordPress will automatically review plugin releases and block high-risk updates after a backdoor was caught before ...
This week: rogue AI agents, a zero-click WeChat worm, PaperCut attacks, AI-powered espionage, exploit chains, rootkits, and ...
Six workflow tests help teams verify whether Acronis Cyber Protect reduces tool switching from detection through clean recovery.
AI agents can discover local credentials and inherit their permissions, while GitGuardian found 24,008 secrets in public MCP ...
Microsoft details a million-email CEO fraud campaign and passkey-themed attacks that compromised cloud accounts and enabled ...
CISA adds five exploited flaws in Artifactory, ScreenConnect, and RouterOS to KEV, with fixes due by September 25.
AI-related SOC alerts rose 685% from February to June 2026, with 94.1% classified as noise and 5.8% as genuine security risks ...
A report links OpenAI agents to a RubyGems campaign that abused RubyDoc for RCE and published more than 2,000 packages in May ...
GitLab patched CVE-2026-85706, a CVSS 10 path traversal flaw enabling unauthenticated file reads, as in-the-wild probes began.
Anthropic says China-based AI labs ran illicit Claude distillation campaigns using proxy networks, fake accounts, and ...