AI Headlines Pro
NewsToolsBoostStartupsResearch

Daily AI briefing

No spam, unsubscribe anytime.

AI Headlines Pro

Your premier source for the latest AI news, breakthroughs, tools, and startups in the fast-evolving world of Artificial Intelligence.

Quick Links

  • About
  • Contact
  • Privacy Policy
  • Terms of Service
  • RSS Feed

Categories

  • News
  • Tools
  • Startups
  • Research
  • Saved
  • Boost Your Tool
  • Submit Tool

© 2026 AI Headlines Pro. All rights reserved.

Cybersecurity

Cybersecurity

45 articles covering the latest in cybersecurity

CybersecurityJul 14· thehackernews.com

Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory

"The script looked for the Domain Controller (DC) and mapped users, computers, and domains, before creating a directory and exporting out a number of files, and finally creating AD Report.html to measure the success of…

The Hacker News·~5 min
aiartificial intelligence
CybersecurityJul 14· thehackernews.com

Meta Files Patent for AI That Can Listen All Day and Track How You're Feeling

Each read gets pinned to the moment it happened: the time, your location, what you were doing, even how you were using your phone. Some versions in the filing would listen all day; others would check in only at set…

The Hacker News·~5 min
aiartificial intelligence
CybersecurityJul 14· thehackernews.com

Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst Copilots

On the flight home, I picked up a book I had not touched in a few years. Daniel Kahneman's Thinking, Fast and Slow. Kahneman is one of the rare people who genuinely changed how we understand human decisionmaking. He…

The Hacker News·~9 min
aiartificial intelligence
CybersecurityJul 14· thehackernews.com

Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft

Distributed via Telegram and costing $400 a month (or $3,800 per year), attack chains leverage phishing lures that make use of legitimate email delivery infrastructure, such as Amazon Simple Email Service (Amazon SES)…

The Hacker News·~7 min
aiartificial intelligence
CybersecurityJul 14· thehackernews.com

New MemGhost Attack Plants Persistent False Memories in AI Agents Through One Email

When it works, the person reads an ordinarylooking reply and never learns their assistant was tampered with.

The Hacker News·~8 min
aiartificial intelligence
CybersecurityJul 14· technologyreview.com

What Anthropic’s latest AI discovery does—and doesn’t—show

This story originally appeared in The Algorithm, our weekly newsletter on AI. To get stories like this in your inbox first, sign up here.

Will Douglas Heavenarchive page·~6 min
aiartificial intelligence
CybersecurityJul 12· thehackernews.com

Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage Campaigns

"At Balochistan Police, the compromised assets included servers hosting web applications that manage police and citizen data, such as criminal and biometric records," Aleksandar Milenkoski, principal threat researcher at…

AI Headlines Team·~5 min
aigoogle
CybersecurityJul 11· thehackernews.com

Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be Patched

No old password. No backup card. Once it is reset, whoever did it controls the wallet and can move the coins out.

AI Headlines Team·~6 min
aigoogle
CybersecurityJul 11· thehackernews.com

Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at Boot

Four of the bugs can crash a device. The other two could let an attacker who slips a malicious image in front of the bootloader run their own code, before the device has confirmed that the software is genuine.

AI Headlines Team·~5 min
aigoogle
CybersecurityJul 11· thehackernews.com

Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages

Ravie Lakshmanan Jul 10, 2026Software Supply Chain / Malware [ ](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhTNxzPo9jxkW3GuuZLBgtPOrG3vZ3va6E710jDJu JF0jCpyQ1JTpymdVwdSH2VHL6-...

AI Headlines Team·~4 min
aigoogle
CybersecurityJul 11· thehackernews.com

URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat

The company has temporarily disabled access to the affected accounts, a step it says it took "out of an abundance of caution" while it works with internal and external security experts.

AI Headlines Team·~4 min
aigoogle
CybersecurityJul 11· techcrunch.com

Apple sues OpenAI over alleged trade secret theft | TechCrunch

Apple filed a lawsuit Friday against OpenAI over allegations of trade secret theft and breach of contract.The iPhone maker alleges t...

AI Headlines Team·~5 min
aillm
CybersecurityJul 11· engadget.com

The Meta Glasses backlash is changing how (or if) people use them - Engadget

"They're like a fancy paper weight," one creator told Engadge...

Karissa Bell·~7 min
aigoogle
CybersecurityJul 11· artificialintelligence-news.com

How to shrink the token budget without shrinking the team

Jensen Huang has a test for whether an engineer is worth keeping, and it comes with a token budget attached. Speaking on the All-In Podcast at the close of GTC 2026, the Nvidia chief executive said th...

Dashveenjit Kaur·~6 min
aillm
CybersecurityJul 11· thehackernews.com

Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access

The threat actor, tracked by Okta under the moniker O-UNC-066 , has deployed a panel-controlled phishing kit that's capable of targeting the passkey enrollment process. The activity has singled out food and beverage,…

The Hacker News·~5 min
aillm
CybersecurityJul 11· thehackernews.com

Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and Tracking

The apps flagged with at least one problem have been installed more than 2.4 billion times.

The Hacker News·~7 min
aigoogle
CybersecurityJul 11· thehackernews.com

Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 Servers

FoxIO researcher Sébastien Féry disclosed the flaw on July 8 and nicknamed it XRING. He says it needs no login and no malformed packets: about 260 bytes of ordinary QPACK traffic takes the server process down.

The Hacker News·~4 min
aigoogle
CybersecurityJul 11· thehackernews.com

New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic

Chinese cybersecurity company QiAnXin said that while the threat cluster may appear like a low-sophistication, high-activity operation that propagates malware via counterfeit installers using SEO poisoning techniques, it…

The Hacker News·~3 min
aigoogle
CybersecurityJul 11· thehackernews.com

Researcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw Flaws

A brief description of the high-severity vulnerabilities is as follows -

The Hacker News·~3 min
aiartificial intelligence
CybersecurityJul 10· techcrunch.com

OpenAI launches its new family of models with GPT-5.6 | TechCrunch

OpenAI unveiled its newest family of models on Thursday, introducing a set of heavyweight programs into an increasingly crowded field of AI offerings.GPT-5.6 comes in three variants: Sol (considered i...

AI Headlines Team·~3 min
aillm
CybersecurityJul 10· arstechnica.com

Hackers can use 9 of the most popular AI tools to assemble massive botnets

In the brief history of AI security, the prompt injection has quickly become the top threat. Large language models are inherently unable to distinguish between legitimate instructions provided by users and malicious ones…

Dan Goodin Senior Security Editor Da·~9 min
aillm
CybersecurityJul 9· thehackernews.com

npm 12 Disables Install Scripts by Default to Reduce Supply Chain Risk

The Microsoft-owned subsidiary noted that the following npm install behaviors that used to run automatically before have been made opt-in -

AI Headlines Team·~3 min
aigoogle
CybersecurityJul 9· thehackernews.com

New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and Spyware

Microsoft has taken apart a destructive Windows backdoor it calls GigaWiper . What stands out is how it is built: not one tool but three older destructive programs bolted into one, offered as commands the operator can…

AI Headlines Team·~6 min
aigoogle
CybersecurityJul 9· techcrunch.com

How did the government decide OpenAI's frontier model was safe to release? | TechCrunch

OpenAI is rolling out its latest advanced LLM, Sol, for wide public access. Sol is considered to be at least on par with Anthropic’s Fable, a model whose capabilities (or ownership) stressed out the W...

AI Headlines Team·~6 min
aillm
CybersecurityJul 9· artificialintelligence-news.com

China's AI companion rules: what Beijing is really going after

An AI companion sounds dystopian, but it has become a common thread in the wider conversation about the perils of generative AI. What it refers to is essentially a conversational agent built to sustai...

Dashveenjit Kaur·~6 min
aimeta
CybersecurityJul 9· artificialintelligence-news.com

L’Oreal, Mondelez, and Nestle use AI to speed product development

L’Oreal is using AI to shorten product development timelines and identify new uses for ingredients already present in its portfolio.

Muhammad Zulhusni·~5 min
aimicrosoft
CybersecurityJul 9· artificialintelligence-news.com

Insilico Medicine advances AI drug for IPF to Phase III trials

Insilico Medicine is advancing to Phase III human trials for testing a drug identified by AI targeting idiopathic pulmonary fibrosis (IPF). This progression supplies the compu...

Ryan Daws·~5 min
aillm
CybersecurityJul 9· artificialintelligence-news.com

AWS GraphRAG deployment cuts drug research cycles by 87%

A recent AWS GraphRAG deployment reduced drug research and development cycles in phar...

Ryan Daws·~6 min
aiclaude
CybersecurityJul 9· thehackernews.com

RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service

Zimperium's zLabs, which found the operation, says it looks like a new variant of Oblivion, a $300-a-month rent-a-malware tool documented earlier this year.

The Hacker News·~4 min
aigoogle
CybersecurityJul 9· thehackernews.com

15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros

The vulnerable code has shipped by default in essentially every mainstream distribution since 2011. The flaw needs no special permission, no unusual settings, and no network access; ordinary threading calls from any…

The Hacker News·~4 min
aigoogle
CybersecurityJul 9· thehackernews.com

GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code

The models they tested through Copilot, Claude from Anthropic, and Gemini from Google, refused almost every harmful request when asked directly. Reframed as steps in a normal coding task, they produced the harmful…

The Hacker News·~6 min
aiartificial intelligence
CybersecurityJul 9· thehackernews.com

GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures

Everything a reviewer would check matches. The commit's hash does not. That matters because so many systems treat a verified commit hash as a permanent, unique name for its contents.

The Hacker News·~6 min
aigoogle
CybersecurityJul 9· thehackernews.com

SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users

The activity cluster, tracked by Elastic Security Labs under the moniker REF6045 , involves infecting victims through fake CAPTCHA verification pages that deceive them into running a malicious command that installs a…

The Hacker News·~5 min
aillm
CybersecurityJul 9· thehackernews.com

New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware

New research, which its authors call HalluSquatting , turns that habit into an attack: work out the fake names an AI reliably invents, register them first, and wait for the assistant to fetch your trap on a user's…

The Hacker News·~7 min
aiclaude
CybersecurityJul 9· thehackernews.com

AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers

The agents are not malicious. They just do a lot of things that, to a behavioral engine, look exactly like an attack.

The Hacker News·~5 min
aiclaude
CybersecurityJul 9· thehackernews.com

Fake 7-Zip Installers Turn Devices Into Residential Proxy Nodes

The activity dates back to at least August 2022, according to DNS threat intelligence firm Infoblox. Once such campaign, observed earlier this year, involved the actor luring victims with a trojanized 7-Zip installer…

The Hacker News·~4 min
aigoogle
CybersecurityJul 9· thehackernews.com

GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding Agents

The affected tools are Amazon Q Developer, Anthropic's Claude Code, Augment, Cursor, Google Antigravity, and Windsurf. Wiz calls the pattern GhostApproval and published it on July 8.

The Hacker News·~7 min
aiclaude
CybersecurityJul 9· thehackernews.com

Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running It

That is the finding in a proof-of-concept published Wednesday by the AI Now Institute, an attack it calls " Friendly Fire. " It works against Anthropic's Claude Code and OpenAI's Codex when either is running in an…

The Hacker News·~6 min
aigpt
CybersecurityJul 9· thehackernews.com

Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images

"You can also @-mention Instagram accounts in the Meta AI app to bring specific Instagram profiles right into your images," the social media giant said in a post.

The Hacker News·~4 min
aiartificial intelligence
CybersecurityJul 9· thehackernews.com

Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges

The vulnerability, tracked as CVE-2026-50656 (CVSS score: 7.8), is a privilege escalation issue in the Microsoft Malware Protection Engine ("mpengine.dll"), which provides scanning, detection, and cleaning capabilities…

The Hacker News·~2 min
aigoogle
CybersecurityJul 9· thehackernews.com

AI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps Up

That is the gap, and it is not your fault. The tools and runbooks most teams run on were built for attackers who work at human speed. AI-driven attacks do not, and they run at scale. Save your seat for the free webinar,…

The Hacker News·~2 min
aigoogle
CybersecurityJul 9· technologyreview.com

The Download: South Korea’s hottest bachelors, and advancing eye transplants

This is today's edition of The Download , our weekday newsletter ...

Thomas Macaulayarchive page·~5 min
aigpt
CybersecurityJul 9· technologyreview.com

The foundational elements of AI architecture that IT leaders need to scale

SponsoredIn partnership withElasticWith the rapid progress of AI capabilities and the move to agentic systems, organizations are expanding their use cases as the technology ...

Will Douglas Heavenarchive page·~7 min
aiartificial intelligence
CybersecurityJul 9· technologyreview.com

The Download: your stake in OpenAI, and the Treasury’s AI warning

This is today's edition of The Download , our weekday newsletter ...

Thomas Macaulayarchive page·~5 min
aigpt
CybersecurityJul 9· techcrunch.com

SpaceXAI releases Grok 4.5, which Elon describes as an 'Opus-class model' | TechCrunch

SpaceXAI has released its latest model, Grok 4.5 — the first since the company went public several weeks ago.In a blog post published Wednesday, SpaceXAI characterized it...

Lucas Ropek·~3 min
aillm