A July 2026 disruption did not end the threat around Kratos - it appears to have pushed its methods into fresh Microsoft 365 phishing campaigns.
A new alliance around AI security puts open testing and auditing tools at the center of the race to defend models and agentic systems.
A convenience feature can turn into an exposure surface when a public chat link is reachable by crawlers, reminding users that AI collaboration tools can create web objects, not private notes.
CTM360-linked research points to a shift from delayed credential theft to real-time account hijacking, a change that shrinks the defender’s window from hours to seconds.
When attacks move faster than decision-making, simulated crises help teams learn who acts, what to protect, and how to recover before real damage begins.
Google has rolled out five Gemini-powered Waze features, yet only three were live for US drivers at the time described, turning a product update into a lesson about rollout control, voice trust, and in-car abuse resistance.
A planned update to cybersecurity controls and a new cloud framework suggest regulators are treating AI-enabled threats as an operational compliance problem, not a theoretical one.
A high-severity path-handling flaw in Exim shows how a mail queue can become a filesystem boundary issue, with privilege impact depending on how the daemon is deployed.
A high-severity directory traversal flaw in Exim can let a local user step outside the intended mail spool and may create a privilege-escalation path on affected Unix-like systems.
Adobe patched a flaw in its Acrobat Chrome extension after it was reported to let any website reach WhatsApp Web conversations, underscoring how extension permissions can reshape privacy risk inside the browser.
A high-severity path traversal flaw in an open-source automation platform shows how a routine log feature can become an unauthenticated server-file disclosure risk.
AiTM phishing can turn a routine vendor request into a live browser hijack, letting attackers reuse an authenticated Microsoft 365 session even after MFA is completed.
An exposed file-sharing endpoint was described as a malware rehearsal space, where operators tested lure files, shortcut abuse, and Windows delivery paths tied to PureRAT and credential-stealing payloads.
A milestone for the Zilog Z80 is less about nostalgia than about the security lesson hidden in long-lived technology: anything that survives long enough can become a documentation and maintenance problem.
Three patched vulnerabilities are now accompanied by public proof-of-concept material, a reminder that remediation does not end when the vendor ships an update.
OpenAI’s attacker-style model turns prompt-injection testing into a repeatable security workflow, showing how defensive AI is now being trained to think like an adversary.
A post tied to m3rx names suppcentersa.com and a hash string, but the available details stop short of proving a real intrusion.
A victim entry tied to suppcentersa.com raises extortion risk signals, but the available record does not confirm a breach, stolen data, or the technical path in.
A ransomware group calling itself krybit has claimed an attack tied to formasuniversales.com, but the verified record stops short of proving compromise.
A public claim tied to Krybit names Formas Universales, S.A. and raises a familiar warning for defenders: a listed victim is not the same as a verified breach.