Rockwell has patched code-execution flaws in Arena Simulation, and the case shows how trusted engineering files can turn workstation software into an entry point.
A published proof-of-concept shows how a normal project account, two crafted Jupyter notebooks, and a diff request can turn a review feature into command execution as the Git service user.
A global outage is not a breach, but it is a reminder that centralized AI services can become single points of failure for work, automation, and support.
A revised federal warning points to a dangerous OT pattern: internet-exposed PLCs and tampered HMI displays can leave operators watching a system that no longer reflects reality.
GTIG’s shift to one cryptonym framework is less about branding than about keeping attribution consistent as separate security teams are folded into a single intelligence unit.
A victim entry linked to Securotrop names Advantage Sintered Metals, but the status and size field remain unverified as evidence of any breach.
A revised federal advisory on PLC targeting highlights a danger that matters more than theft alone: when attackers can tamper with logic and the operator view, trust in the industrial process itself starts to erode.
A phishing run dressed up as shipping notices and tax-audit mail shows how attackers can turn everyday business trust into a credential-theft pipeline.
A new cryptonym-based naming system is meant to reduce split-brain attribution across Google’s threat-intelligence teams, and that matters more than it sounds.
A posted claim links Jiva Health to the unsafe group and a specific hash, but the available record does not confirm a breach, data theft, or operational impact.
A ransomware bulletin has put Jiva Health into an extortion-style listing and attached a revenue figure of 9 million, but the post does not verify breach scope or technical impact.
A crafted image file reportedly pushed Microsoft’s Bing processing workers into SYSTEM or root context, highlighting how media pipelines can become command-execution surfaces when untrusted content is handled too freely.
A reported flaw in ChatGPT Workspace Agents shows how one click can become an agent-launch event, not just a browser detour.
When coding agents are metered by tokens instead of seats, the real risk is often not model failure but runaway consumption that finance teams cannot see soon enough.
AegisAI has raised $36 million, lifting its total funding to $49 million, in a round aimed at AI-powered email security and backed by Battery Ventures, Accel, and Foundation Capital.
A ransomware claim tied to Metropolitan-Construction-Systems and metropolitanroof.com has appeared, but the technical fallout remains unverified.
A new victim entry linked to Pear names Metropolitan Construction Systems, but the available material does not establish whether the listing reflects a verified intrusion, data theft, or only an extortion-site claim.
Microsoft corrected a public-by-default configuration and code flaws in a cloud automation service that may have created a cross-tenant identity risk, without any confirmed exploitation in the available material.
The event’s return to Las Vegas is confirmed, but the real takeaway is planning: deadlines, travel, and briefing schedules can shape how defenders prepare for the months ahead.
A reported flaw in PTC Windchill and FlexPLM has raised concern for internet-facing PLM systems, but the full technical path and real-world impact remain unconfirmed.