threat-intel Choose Wisely: AI-Generated Coding Risk Varies, A Lot A Secure Code Warrior study revealed that AI-generated code introduces a significant number of vulnerabilities – an average of 15 per codebase – but the risk varies greatly depending on the development framework used. Th… Dark Reading · Jul 21, 2026 Medium aicodevulnerability
threat-intel Empirical Security Raises $25 Million in Series A Funding Cybersecurity startup Empirical secured $25 million in Series A funding to bolster its AI-powered threat prediction and risk management solutions. The company, founded by former Kenna Security executives, aims to address… SecurityWeek · Jul 21, 2026 Info aivulnerabilityrisk management
threat-intel N-day is Becoming N-Hour. Patching Faster Won't Save You. The speed at which attackers can now weaponize security patches has dramatically decreased, shrinking the window between a patch's release and a successful exploit. Traditionally, defenders had weeks to react, but now, t… The Hacker News · Jul 21, 2026 High vulnerabilityexploitai
threat-intel CISO Conversations: Andreas Gaetje – From Economics to CISO at Körber AG Andreas Gaetje, CISO at Korber AG, shares his career journey and insights on the evolving role of cybersecurity leadership. He emphasizes the importance of continuous learning and adaptability in a rapidly changing techn… SecurityWeek · Jul 21, 2026 High GEaicybersecurityleadership
threat-intel MIT to Become Hotbed of AI Video Surveillance MIT is investing heavily in a massive AI-powered surveillance system, deploying over 500 cameras across campus and surrounding areas. These cameras will collect detailed data on individuals and objects, including facial… Schneier on Security · Jul 21, 2026 Medium surveillancefacial-recognitionprivacy
threat-intel New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack A new ransomware, ENCFORGE, is targeting AI model files and infrastructure, leveraging a vulnerability in Langflow (CVE-2025-3248) to gain remote code execution. The ransomware, developed by a threat actor linked to a pr… The Hacker News · Jul 21, 2026 High CVE-2025-3248CVE-2026-33017ransomwarelangflowdocker
threat-intel 'WP2Shell' Opens Millions of WordPress Sites to Remote Takeover A newly discovered exploit chain, dubbed ‘WP2Shell,’ is rapidly being used to compromise millions of WordPress sites. Attackers are chaining together a SQL injection vulnerability (CVE-2026-60137) and a logic flaw in the… Dark Reading · Jul 20, 2026 High CVE-2026-60137CVE-2026-63030sql injectionremote code executionwordpress
threat-intel Remediating Vulnerabilities With LLMs: Inside Ivanti's Automation Push Ivanti is leveraging large language models (LLMs) to automate vulnerability remediation and discovery, a project initially sparked by the surprising effectiveness of the Claude 4.6 model. Daniel Spicer, Ivanti’s CSO, des… Dark Reading · Jul 20, 2026 Medium CVE-2026-10520llmvulnerabilityautomation
threat-intel 25 Years After Code Red: What the Worm Era Can Teach Us About AI Security Twenty-five years after the Code Red worm, a pivotal moment in cybersecurity history, experts are drawing parallels to the current rush towards AI adoption. The article highlights how Code Red exploited a widespread, oft… Dark Reading · Jul 20, 2026 Medium CHaisecurityvulnerability
threat-intel CISOs Feel the Heat Over AI Risk CISOs are facing increased pressure and job insecurity due to the rapid and often chaotic adoption of AI within companies. A recent Splunk survey revealed that 26% of top security executives are considering leaving their… Dark Reading · Jul 20, 2026 High aicybersecurityrisk
threat-intel FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware A sophisticated campaign dubbed FakeGit has leveraged nearly 7,600 malicious GitHub repositories to spread SmartLoader malware, utilizing AI agents to discover these fake repositories and execute the attack. The campaign… The Hacker News · Jul 20, 2026 High aigithubmalware
threat-intel Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign A cybercriminal, utilizing AI coding tools and a sophisticated pipeline, exposed a comprehensive phishing toolkit targeting Mexican users and beyond. The operator, likely leveraging LLMs and tools like Coderrr, created a… The Hacker News · Jul 20, 2026 High CVE-2025-33053CVE-2026-21513CVE-2025-24054MXUSDEphishingwebdavai
threat-intel Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software Neo, a cybersecurity startup led by former SentinelOne executives, has raised $100 million to provide enterprises with a control layer for AI software, addressing the growing concern of AI agents embedded in various appl… SecurityWeek · Jul 20, 2026 Medium aiagenticcybersecurity
threat-intel On Flock License Plate Tracking Cameras A writer was mistakenly identified and tracked by Flock license plate cameras, leading to an arrest. The issue stemmed from Flock’s AI system flagging vehicles with similar alphanumeric plate structures, even when the fu… Schneier on Security · Jul 20, 2026 Medium USsurveillanceprivacylicense plate
threat-intel Capital One Open Sources AI-Powered ‘VulnHunter’ Security Tool Capital One has released its internally developed AI-powered security tool, ‘VulnHunter,’ as open source to address the issue of overwhelming vulnerability scans and improve software supply chain security. The tool proac… SecurityWeek · Jul 20, 2026 Medium vulnerabilityaiopen source
threat-intel Hugging Face Hacked in Autonomous AI Attack Hugging Face, a popular AI collaboration platform, suffered a data breach orchestrated by an autonomous AI agent. The attackers exploited vulnerabilities within their data processing pipeline to gain unauthorized access… SecurityWeek · Jul 20, 2026 High aiautonomousattack
threat-intel Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs A Russian-speaking threat actor, “bandcampro,” leveraged Google Gemini CLI to orchestrate a botnet and conduct various cybercrime activities, including dental clinic control and cryptocurrency fraud. The actor utilized t… The Hacker News · Jul 20, 2026 High USCARUaicybercrimebotnet
threat-intel World's Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent Hugging Face, a leading AI model repository, was hacked by an autonomous AI agent system. The attacker gained access to internal datasets and credentials, moving laterally across several clusters. While public-facing mod… The Hacker News · Jul 20, 2026 High CHaiautonomous agentsecurity
threat-intel The Real AI Threat Is Blind Trust A recent attack exploited a vulnerability in AI systems, allowing attackers to manipulate one AI agent into generating instructions for another, leading to unauthorized fund transfers. This highlights a growing risk as A… Dark Reading · Jul 17, 2026 High NOaiautomationgovernance
threat-intel Gold Eagle Clearinghouse Targets Security Gap, But How Is Unclear The White House launched Gold Eagle, a voluntary initiative aimed at coordinating vulnerability response across critical infrastructure sectors, leveraging AI to accelerate the patching process. However, the initiative i… Dark Reading · Jul 17, 2026 Medium vulnerabilityaicybersecurity