threat-intel Microsoft Tries to Calm Legal Threat Fears After Zero-Day Disclosure Backlash This article reports on a controversy between Microsoft and a security researcher, known as Nightmare Eclipse, regarding the disclosure of several zero-day vulnerabilities affecting Microsoft products. Microsoft initiall… SecurityWeek · Jun 3, 2026 High CVE-2026-41091CVE-2026-45498CVE-2026-33825USzero-dayvulnerability disclosurelegal action
threat-intel Google adds Android protection against AI deepfake scam calls Google is launching a new Android security feature, "fake call detection," to combat increasingly sophisticated scams utilizing AI-generated deepfake calls. The system works by verifying call authenticity in real-time, a… BleepingComputer · Jun 3, 2026 High USdeepfakeaiscam
threat-intel Lessons for life: Why children’s data is a long-term identity risk This article highlights the growing risk of child identity theft and the broader vulnerability of children’s data in the digital age. Despite efforts to regulate online content for children, their data is increasingly ex… WeLiveSecurity · Jun 3, 2026 High identity theftdata privacyphishing
threat-intel Microsoft's Coreutils project brings Linux commands to Windows Microsoft has released Coreutils for Windows, a project bringing commonly used Linux command-line utilities to Windows as native applications. Based on the uutils open-source project, this aims to simplify development wo… BleepingComputer · Jun 2, 2026 Low linuxwindowscommand-line
threat-intel Zoom CISO: AI as Security Enabler, Not Role-Replacer This article features an interview with Sandra McLeod, CISO at Zoom, discussing the evolving role of AI in cybersecurity. McLeod emphasizes that AI should be viewed as an enabler for security teams, automating repetitive… Dark Reading · Jun 2, 2026 Medium aisecurityautomation
threat-intel FBI-Flagged Phishing Kit Kali365 Expands Its Reach The Kali365 phishing-as-a-service platform, initially focused on compromising Microsoft 365 accounts via MFA bypass, has significantly expanded its capabilities and target list. It now actively targets platforms like AWS… Dark Reading · Jun 2, 2026 High USRUphishingdevice-codemfa
threat-intel DriveSurge Hijacks Thousands of Sites for ClickFix, FakeUpdate Attacks A sophisticated cybercriminal operation, dubbed DriveSurge, has been hijacking thousands of legitimate websites to distribute malware, primarily through ClickFix and FakeUpdate attacks. The operation utilizes a traffic d… Dark Reading · Jun 2, 2026 High USmalwaretraffic distributionclickfix
threat-intel Trump Signs Executive Order That Invites Vetting of Top AI Models for National Security Risks President Trump signed an executive order establishing a framework for the federal government to vet the national security risks of advanced AI systems, primarily focusing on models developed by companies like Anthropic… SecurityWeek · Jun 2, 2026 Medium artificial intelligenceai securitynational security
threat-intel China Uses Dual-Method Cyberattack on Czech Orgs This article details a dual-method cyberattack targeting organizations in the Czech Republic and Taiwan, orchestrated by Chinese nation-state threat actors. The campaign, dubbed "Operation Dragon Weave," utilizes a spear… Dark Reading · Jun 2, 2026 High CZCNTWspear-phishingrustazure
threat-intel Securing AI Agents Before They Go Rogue Is Next to Impossible This article highlights the significant security challenges posed by high-autonomy AI agents, particularly those with broad permissions and access to sensitive data. Gartner research VP Dennis Xu warns that securing thes… Dark Reading · Jun 2, 2026 High aiagentsecurity
threat-intel White House unveils pared-back AI executive order The White House has released a revised executive order addressing artificial intelligence, significantly shortening the mandatory review period for AI model releases from 90 days to 30 days, responding to industry pressu… The Record · Jun 2, 2026 Medium USaicybersecurityregulation
threat-intel Gamaredon Exploits WinRAR to Deliver GammaWorm and GammaSteel Against Ukraine The Gamaredon group is exploiting a WinRAR vulnerability (CVE-2025-8088) to deploy a multi-stage malware campaign targeting Ukraine. This campaign utilizes GammaWorm and GammaSteel, designed for data theft and persistenc… The Hacker News · Jun 2, 2026 High CVE-2025-8088CVE-2026-21509RUUAwinrarmalwarevulnerability
threat-intel Two New Reports Offer Competing Explanations for Cybersecurity’s Growing Crisis This SecurityWeek article examines the evolving cybersecurity crisis, highlighting a shift in focus from traditional vulnerability management to the challenges of rapid exploit development and runtime visibility. The rep… SecurityWeek · Jun 2, 2026 High airuntimepatching
threat-intel Russia claims foreign spy agencies hacked officials' phones Russia's FSB has accused foreign intelligence agencies of conducting a large-scale espionage operation targeting senior Russian officials through the use of malware installed on their mobile devices. The agency alleges t… The Record · Jun 2, 2026 High RUUNEUespionagesurveillanceforeign interference
threat-intel Why the browser is now the front line for AI security This BleepingComputer article highlights the escalating threat of AI-powered phishing attacks, primarily targeting the browser environment. Adversaries are leveraging AI to rapidly create and deploy phishing kits, automa… BleepingComputer · Jun 2, 2026 High USaiphishingbrowser
threat-intel The Zero-Knowledge Threat Actor and the End of Responsible Disclosure This article discusses the rise of ‘zero-knowledge’ threat actors, empowered by AI, who pose a significant new challenge to cybersecurity. These actors, lacking deep technical expertise, can rapidly discover and exploit… SecurityWeek · Jun 2, 2026 High aivulnerabilityphishing
threat-intel Wardriving assessment across Mexico: Preparing for the 2026 World Cup Kaspersky GReAT conducted a wardriving assessment across Mexico City, Guadalajara, and Monterrey to analyze public Wi-Fi infrastructure ahead of the 2026 FIFA World Cup. The study, focused on passive observation and infr… Securelist · Jun 2, 2026 Medium MXpublic wifiwireless securityssid analysis
threat-intel Beyond Assume-Breach: How AI-Native Security Will Reshape Enterprise Defense This Dark Reading article discusses the evolving landscape of enterprise security, predicting a shift towards AI-native defenses driven by dynamic threats and increasing complexity. The article highlights the move away f… Dark Reading · Jun 2, 2026 High aimicrospheressecurity fabric
threat-intel CISA and Partners Urge Hardening Automatic Tank Gauge Systems CISA, alongside several US government agencies, has issued an alert regarding malicious cyber activity targeting Automatic Tank Gauge (ATG) systems used across sectors like energy, chemicals, and transportation. Cyber ac… CISA Advisories · Jun 2, 2026 High oticstank gauges
threat-intel AI-Driven Exploitation is Destroying Vulnerability Management. Here’s How to Handle It. This article discusses the accelerating pace of vulnerability exploitation driven by the use of AI by both attackers and defenders. The traditional approach of simply ‘patching faster’ is no longer sufficient due to the… The Hacker News · Jun 2, 2026 High INaivulnerabilityexploitation