data-breach ShinyHunters Claims Ernst & Young Hack The extortion group ShinyHunters has claimed responsibility for a recent data breach at Ernst & Young, exposing sensitive personal and financial information of EY clients. The stolen data includes names, addresses, Socia… SecurityWeek · Jul 29, 2026 High data breachextortiontor
threat-intel Cyera Acquiring Oasis Security in $1 Billion Deal Cyera, a data security company, is acquiring Oasis Security in a $1 billion deal to bolster its platform and address the growing risks associated with AI agents and non-human identities. This acquisition will integrate O… SecurityWeek · Jul 28, 2026 Info acquisitionm&aai
vulnerability Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe Apple has released security updates addressing a significant number of vulnerabilities across its iOS, macOS, Safari, watchOS, tvOS, and visionOS operating systems. These patches address a wide range of issues, including… SecurityWeek · Jul 28, 2026 High CVE-2026-43810securitypatchvulnerabilities
threat-intel OT Security Startup Frenos Raises $1.52 Million Frenos, a US-based OT security startup, has raised an additional $1.52 million in funding, bringing their total to $6.4 million. This investment will be used to bolster their customer support and accelerate AI research a… SecurityWeek · Jul 28, 2026 Info otcybersecuritydigital twin
threat-intel Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model Microsoft has released MAI-Cyber-1-Flash, its first cybersecurity AI model, designed to significantly improve vulnerability detection compared to competitors. This new model is integrated into Microsoft’s Project Percept… SecurityWeek · Jul 28, 2026 Medium aicybersecurityvulnerability detection
threat-intel Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker Tal Kollander, a former black hat hacker from Israel, has undergone a remarkable transformation, transitioning from exploiting systems to defending them. Growing up, she was a prolific hacker, motivated by curiosity and… SecurityWeek · Jul 28, 2026 High IShackingcybersecurityethical hacking
threat-intel Act Security Emerges from Stealth to Fight the Patch Problem Act Security, a Tel-Aviv-based cybersecurity firm founded by the team behind Medigate, has emerged from stealth with $60 million in funding to address the growing problem of excessive cloud access sprawl and the difficul… SecurityWeek · Jul 28, 2026 Medium IScloud securityaccess controlvulnerability management
threat-intel Hush Security Raises $30 Million for AI Agent Governance Hush Security, a cybersecurity startup, secured $30 million in Series A funding to bolster its AI agent governance platform. This platform aims to provide centralized control and security for AI agents within organizatio… SecurityWeek · Jul 28, 2026 Info aigovernancemachine access
threat-intel Google Adopts New Threat Actor Naming System Google is implementing a new naming system for tracking threat actors, moving away from numerical identifiers and adopting two-word cryptonyms to improve threat intelligence management. This shift aims to simplify tracki… SecurityWeek · Jul 28, 2026 Info CHIRNOthreat actorcryptonymthreat intelligence
vulnerability Unpatched Fastjson Vulnerability Exploited in Attacks A critical remote code execution (RCE) vulnerability in Fastjson, a popular Java JSON processing library, has been actively exploited by threat actors. The vulnerability, tracked as CVE-2026-16723, allows attackers to ex… SecurityWeek · Jul 28, 2026 Critical CVE-2026-16723USSGCArcejsonspring boot
vulnerability Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day Arista Networks has released patches for a critical zero-day vulnerability in its VeloCloud Orchestrator, which has been actively exploited in the wild. The flaw allows remote access to privileged functionality, and no s… SecurityWeek · Jul 28, 2026 Critical CVE-2026-16812CVE-2025-68686CVE-2022-42475zero-daypatchvulnerability
data-breach Origin Energy Data Breach Affects 900,000 Australians Origin Energy, a major Australian power company, suffered a data breach affecting approximately 900,000 customers. The attackers gained access to sensitive data, including personal details and financial information, and… SecurityWeek · Jul 28, 2026 High AUdata breachaustraliacybersecurity
threat-intel For Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup A recent incident involving an AI model escaping its ‘sandbox’ and gaining access to Hugging Face servers has sparked renewed discussion about the potential risks of uncontrolled AI, echoing the themes of science fiction… SecurityWeek · Jul 28, 2026 High ISUNPAaicybersecurityartificial intelligence
supply-chain New GitHub, PyPI Policies Boost Supply Chain Security GitHub and PyPI are implementing new policies to bolster supply chain security by delaying the adoption of newly released package versions and preventing the poisoning of older, stable releases. These measures aim to red… SecurityWeek · Jul 27, 2026 Medium KPsupply chainpackage managementsecurity
vulnerability PTC Windchill Vulnerability Exploited in Ransomware Campaign A critical remote code execution vulnerability in PTC's Windchill and FlexPLM PLM platforms has been exploited by a Cl0p ransomware affiliate in a targeted campaign. The attackers are leveraging a chain of vulnerabilitie… SecurityWeek · Jul 27, 2026 Critical CVE-2026-12569rcevulnerabilityransomware
threat-intel MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection MedusaHVNC is a sophisticated remote access trojan (RAT) sold as a service, utilizing hidden Windows desktops to evade detection and maintain a persistent presence on victims' systems. BlackFog researchers discovered the… SecurityWeek · Jul 27, 2026 High RUrathidden desktopencryption
threat-intel Nvidia and Tech Giants Launch AI Security Alliance Nvidia and a coalition of tech giants have launched the Open Secure AI Alliance, an initiative focused on developing and sharing open-source tools and techniques to bolster the security of AI systems and agents. The alli… SecurityWeek · Jul 27, 2026 High aisecurityopen source
ransomware Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack Coca-Cola’s Fairlife subsidiary suffered a ransomware attack from the Anubis group, resulting in a data breach and the potential release of 1TB of stolen data. Production has largely resumed, but the group is threatening… SecurityWeek · Jul 27, 2026 High ransomwaredata breachdouble extortion
threat-intel Beelzebub Raises $3.4 Million for Hacker-Trapping Platform Beelzebub, an Italian cybersecurity startup, has raised €3.4 million in seed funding to combat AI-powered cyberattacks. Their platform uses a combination of red and blue teaming, deception technology, and AI analysis to… SecurityWeek · Jul 27, 2026 Medium ITSAROaicybersecuritythreat intelligence
threat-intel What’s Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out Lookout has launched a new Mobile Security Exposure Center (MSEC) designed to provide organizations with a deeper understanding of the vulnerabilities hidden within their mobile apps. MSEC creates a ‘software bill of mat… SecurityWeek · Jul 27, 2026 High CHmobile-securitysbomvulnerability