Your vulnerability scanner is sorting by the wrong signal. How to use CVSS, EPSS, and local context to prioritize remediation ...
A critical Next.js flaw could enable remote code execution through malicious SVG content during image generation.
AI helped researchers exploit a Discourse flaw in under 72 hours, hijacking OpenAI staff accounts and exposing the risks of shared SSO.
Cybersecurity researchers have unpacked JSCeal , a sophisticated compiled V8 JavaScript (JSC) malware with credential harvesting, surveillance, and traffic-interception capabilities. "The payloads are ...
Before erasing a high-value device, its owner may need professional mobile forensics because a reset can destroy evidence. SlowMist recommends preserving forensic data from exposed devices.
Kaspersky researchers found 92,000 malicious attacks disguised as AI services in 2026, with fake ChatGPT, Claude and Gemini apps accounting for most of the attacks ...
Threat actors have been busy during the first half of 2026, waging various attacks against companies and individuals in Asia Pacific (APAC). Recent data from Kaspersky showed a slight increase in ...
Over the weekend of July 12, Hugging Face's security systems flagged an intrusion unlike anything the company had seen before. An autonomous agent was moving through its production infrastructure — ...
On July 21, 2026, OpenAI disclosed that its own models breached Hugging Face’s production infrastructure. The models were not attacking a target. They were sitting an exam. The version of this story ...
A working exploit for a Linux kernel flaw that has existed since 2011 is now publicly available, and any logged-in user can run it to gain full root control of an affected machine in roughly five ...
AI is changing how security teams find vulnerabilities, analyze code, test applications, and protect infrastructure. Developers are building tools to secure AI systems themselves, from coding agents ...