Cybersecurity
50 articles covering the latest in cybersecurity
Computer vision deployments drive retail productivity gains
Computer vision deployments are driving retail productivity gains as operators automate physical shelf tracking to protect eroding margins. This hardware deployment directly addresses the persistent ...
e2e-assure introduces Cumulo, the U.K.’s only sovereign, AI-driven, zero-day SOC platform to secure IT and OT environments
*Built around digital twin technology and customer-dedicated AI models, Cumulo answers the recent announcement by GCHQ for AI Cyber Shield, enabling early identification of threats and vulnerabilities...
SAP and Google Cloud deploy agentic commerce architecture
[SAP]($1) and [Google Cloud]($1) are deploying agentic commerce architecture to automate multi-agent marketing and retail operations at enterprise scale. SAP research indicates 78 percent of business...
Junior Hacker Used Tailscale and OpenSSH to Keep Access After His C2 Went Offline
- **Swati Khandelwal**Jun 17, 2026Malware / Cyber Attack [*]($1) A French-speaking attacker broke into a small French automotive business, planted a keylogger, and stole banking and email credenti...
Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development
- **Ravie Lakshmanan**Jun 17, 2026Endpoint Security / Vulnerability [*]($1) Microsoft has formally disclosed that it's working to release a patch to address a Defender zero-day codenamed [RoguePla...
Crypto Clipper Campaign Abuses Fake Reviews, AI Narrators, and VirusTotal Comments
- **Ravie Lakshmanan**Jun 17, 2026Malware / Social Engineering [*]($1) An unknown threat actor has been observed leveraging paid or promoted posts on legitimate news websites to drum up buzz for t...
DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic
- **Ravie Lakshmanan**Jun 18, 2026Remote Access Trojan / Ransomware [*]($1) Threat actors associated with the [DragonForce]($1) ransomware have been observed using a custom Go-based remote access ...
The Scripts on Your Checkout Page Are Now a PCI DSS Problem
- **The Hacker News**Jun 18, 2026Payment Security / Compliance [*]($1) An independent PCI assessor tested Reflectiz against the new PCI DSS rules. Here is the verdict: **[See the full QSA assessme...
INC Ransomware Emerges as Major RaaS Threat in 2026 with 830+ Victims Since 2023
- **Ravie Lakshmanan**Jun 18, 2026Vulnerability / Enterprise Security [*]($1) Cybersecurity researchers have charted the evolution of [INC]($1) from an nascent ransomware-as-a-service (RaaS) opera...
Microsoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2
- **Ravie Lakshmanan**Jun 18, 2026Malware / Cryptocurrency [*]($1) Microsoft has disclosed details of a Windows-based cryptocurrency clipper campaign codenamed **CryptoBandits** that has targeted...
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More Stories
- **Ravie Lakshmanan**Jun 18, 2026Hacking News / Cybersecurity News [*]($1) The internet did not break this week. It got used exactly as designed, which is worse. Searches were siphoned through s...
Orphaned AI Agents: How to Find Hidden Access Risks Inside Your Network
- **The Hacker News**Jun 18, 2026AI Security / Data Security [*]($1) If an autonomous AI agent interacts with your company's core intellectual property today, can your security team instantly name...
F5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code Execution
- **Ravie Lakshmanan**Jun 18, 2026Vulnerability / Cloud Security [*]($1) F5 has released security updates to address two critical security flaws in NGINX Open Source that could be exploited to ach...
Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone
- **Ravie Lakshmanan**Jun 19, 2026Mobile Security / Vulnerability [*]($1) Apple has updated its Beats Studio Buds wireless earbuds to patch a high-severity vulnerability that could be exploited b...
Salesforce Disables Klue App Integration After OAuth Token Abuse Exposes Customer Data
- **Ravie Lakshmanan**Jun 19, 2026Data Breach / Cloud Security [*]($1) Salesforce has revealed that it disabled the Klue Battlecards app integration within its platform in response to a security i...
Forget Data Leakage: Shadow AI's Real Threat Is Access Control
- **The Hacker News**Jun 19, 2026Agentic AI / SaaS Security [*]($1) The first wave of enterprise AI concern was straightforward. It was simply employees pasting sensitive data into public AI tools...
From Assistive to Agentic: The AI Shift That's Redefining Threat Management
- **The Hacker News**Jun 19, 2026Enterprise Security / Agentic AI [*]($1) ## **Introduction** The average enterprise security team has 40 or more security tools, giving a lot of visibility into i...
CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices
- **Ravie Lakshmanan**Jun 19, 2026Threat Intelligence / Firewall Security [*]($1) The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday [urged]($1) Fortinet customers with F...
Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites
- **Ravie Lakshmanan**Jun 19, 2026Malware / Threat Intelligence [*]($1) Dutch law enforcement authorities, along with counterparts from [ Canada ]($1) , Germany, and the U.S., have disrupted malic...
AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code Execution
- **Swati Khandelwal**Jun 19, 2026Vulnerability / Software Supply Chain [*]($1) Microsoft researchers have detailed an exploit chain, named [AutoJack]($1), that turns an AI browsing agent into a d...
The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes
- **Ravie Lakshmanan**Jun 19, 2026Ransomware / Endpoint Security [*]($1) The Gentlemen ransomware-as-a-service (RaaS) operation is actively developing and maintaining a suite of endpoint detection...
Unpatchable 'usbliter8' Exploit Breaks Apple A12 and A13 SecureROM Boot Chain
- **Swati Khandelwal**Jun 19, 2026Hardware Security / Vulnerability [*]($1) Security researchers at Paradigm Shift have published a working exploit, dubbed **usbliter8**, that achieves arbitrary c...
Hackers Exploit Gravity SMTP WordPress Plugin Bug to Expose API Keys
- **Ravie Lakshmanan**Jun 20, 2026Vulnerability / Web Security [*]($1) Threat actors are exploiting a recently patched security flaw impacting Gravity SMTP, a WordPress plugin that's installed on ...
For the past four years, a sprawling Android-based botnet called **Popa** has forced millions of consumer TV boxes to relay Internet traffic linked to advertising fraud, account takeovers, and mass da...
Bye bye Fable
Hey folks, Fable went from “new best model” to “not available” in about 3 days. Anthropic launched [Claude Fable 5]($1) on June 9. Fable was the Mythos-class model for general use but with guardrail...
Hacking the atmosphere: Geoengineering gets a reality check
Jim Franke pulls away the cover page of a presentation on the wraparound desk in his office, revealing an illustration of an odd-looking aircraft with massive wings stretching out from a stubby fusel...
The Download: a new hunt for dark matter and Kenya’s case for going solar
*This is today's edition of *[*The Download*]($1),* our weekday newsletter that provides a daily dose of what's going on in the world of technology.* For decades, physicists have hunted for weakly int...
The inevitable weakness of metrics
There are plenty of useful things a metric can reveal. There are even more it can obscure or corrupt. It took me well over a decade of tracking my own life in ever greater detail to fully appreciate t...
The Download: AI bottleneck debates, and BCI trials take off
*This is today's edition of *[*The Download*]($1),* our weekday newsletter that provides a daily dose of what's going on in the world of technology.* AI startup Subquadratic came out of stealth last m...
Users cry foul after AMD stripped memory crypto from its consumer CPUs
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
Critical Copilot vulnerability allowed hackers to steal 2FA code from users
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
Windows and Linux users: The deadline to update Secure Boot keys is near
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
"Dangerous" AI models are coming no matter what
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
Tesco moving 40,000 server workloads off VMware amid Broadcom's “abusive conduct”
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
Massive breach spills credentials for thousands of sensitive networks
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
Before SpaceX IPO, investors in China secretly acquired stakes
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
Apple patches eavesdropping vulnerability in Beats Studio Buds
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
Microsoft discovers new lightweight backdoor that steals cryptocurrency
** Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only [Learn more]($...
The smartphone era created an attention crisis — slow tech is fixing it | TechCrunch
When Tony Fadell entered New York City’s 28th Street Subway Station, he did not expect to come face-to-face with [an advertisement]($1) for a product he designed over 20 years ago. But there it was: a...
Amazon hopes to challenge Nvidia more directly by selling its AI chips | TechCrunch
If Amazon Web Services has its way, the cloud giant is going to push even deeper into Nvidia’s market, in what might be one of the biggest challenges to Nvidia’s AI chip dominance we’ve seen so far.Am...
Source: Elastic agrees to buy CRV-backed Deductive AI for up to $85M | TechCrunch
Deductive AI, a startup that uses AI to catch and resolve bugs in software, has agreed to be sold to enterprise software company Elastic for up to $85 million, according to a person with knowledge of ...
The US says ASML's top chip tool may be in China, but how? | TechCrunch
According to [Bloomberg]($1), U.S. Commerce Secretary Howard Lutnick has, in a series of recent meetings, told senior ASML executives he’s concerned that one of the Dutch chipmaker’s extreme ultraviol...
The US banned Anthropic's Fable 5 release, but the numbers don't seem to care
Just as last week was ending, the US government [forced Anthropic to pull its two newest models]($1), Fable 5 and Mythos 5, citing national security concerns after Amazon researchers allegedly found a...
Is the US government's Anthropic ban accidentally helping the brand? | TechCrunch
Just as last week was ending, the US government [forced Anthropic to pull its two newest models]($1), Fable 5 and Mythos 5, citing national security concerns after Amazon researchers allegedly found a...
From PGP to Mythos: a brief history of export controls that didn't stop anyone | TechCrunch
Last Friday, citing unspecified national security concerns, the White House [ordered Anthropic]($1) to restrict the export of its powerful AI models Fable and Mythos to anyone outside of the United St...
Beyond Siri: Here are the practical AI features coming to your iPhone in iOS 27 | TechCrunch
[Siri’s AI overhaul]($1) may have been the headline announcement at [Apple’s Worldwide Developers Conference]($1) earlier this month, but Apple’s broader AI strategy is taking shape through a series o...
When the Trump administration cracks down on Anthropic, who benefits? | TechCrunch
Anthropic recently [took its two newest AI models offline]($1) due to an export control order from the Trump administration, prompting broad debates about AI policy and [digital sovereignty]($1).On th...
Anthropic got hit by export rules nobody understands
- **AI - **Policy - **Anthropic # Anthropic got hit by export rules nobody understands Governing AI through opaque, ad hoc interventions is unsustainable, experts warn. Governing AI through opaque,...
Who decides when AI is too dangerous?
- **Podcasts - **AI - **Policy # Who decides when AI is too dangerous? With the Mythos debacle, Anthropic gets its first taste of the Trump admin’s new AI regulation regime. by Nilay PatelJun 18, 2...
Amazon employees say they’re facing termination for backing data center limits
- **AI - **Report - **Tech # Amazon employees say they’re facing termination for backing data center limits After speaking up for regulation on data centers, Seattle activists say they were called i...
