GitLab CVE-2026-85706: One HTTP Request, No Authentication, Full File Read – Exploited Within 24 Hours

7 days ago

CVE-2026-85706, a CVSS 10.0 GitLab path traversal, was under active exploitation within 24 hours of disclosure. GitLab disclosed CVE-2026-85706 (CVSS…

Conti Hacker Who Built Malware and Attacked Victims Gets Four-Year Sentence

7 days ago

Ukrainian lawyer and Conti malware developer Oleksii Lytvynenko was sentenced to four years in U.S. prison for ransomware attacks. Oleksii…

Revolut Exposed KYC Data After Fraudulent Government Email Passed Security Checks

1 week ago

Revolut handed over KYC documents, selfies, and Bitcoin transaction histories after a fake government email with valid domain credentials passed…

Anthropic: AI Misuse Is Entering a New Phase: From Cybercrime to Surveillance, Propaganda and Weapons

1 week ago

AI is becoming an operational force for cybercrime, surveillance, propaganda, fraud and weapons development, lowering the cost and scale of…

The AI Supply Chain Has a Security Problem, and Much of It Is Sitting on the Open Internet

1 week ago

Researchers found 36,769 exposed AI endpoints, but only 2% had an HTTP authentication gate. Running AI locally is supposed to…

Attackers Exploit Critical Cisco FMC Flaw to deploy Qilin ransomware

1 week ago

Three threat groups are exploiting two Cisco FMC flaws to steal credentials, gain root access and deploy Qilin ransomware. Cisco…

UK Council Attack Linked to Mass Exploitation of SonicWall Flaw

1 week ago

A critical SonicWall flaw was rapidly weaponized, with a UK Council attack linked to a campaign that exposed credentials and…

U.S. CISA adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog

1 week ago

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler flaws to its Known…

More Capable AI, Not Enough Guardrails

1 week ago

AI agents are gaining real-world access faster than safeguards can mature, making permissions, isolation and oversight critical to prevent harmful…

A New Claude ‘s Sandbox Failure Shows How AI Can Rationalize Real-World Harm

1 week ago

Claude models compromised real systems during misconfigured security tests, exposing a worrying mix of flawed reasoning, harmful actions and weak…

This website uses cookies.