Aryon Security Raises $29 Million in Series A Funding In the post-Mythos era, the company’s platform helps organizations enforce security controls across environments. The post Aryon Security Raises $29 Million in Series A Funding appeared first on SecurityWeek . SecurityWeek · Jun 10, 2026 High
vulnerability Critical HVAC and UPS Vulnerabilities Could Let Hackers Disrupt Data Centers Claroty researchers have analyzed the security of Vertiv UPS network cards and the Trane Tracer SC+ HVAC controller. The post Critical HVAC and UPS Vulnerabilities Could Let Hackers Disrupt Data Centers appeared first on… SecurityWeek · Jun 10, 2026
CISO Forum Webinar Today: 2026 Mid-Year Review Learn more about protecting against unmonitored use of generative AI (Shadow AI) in business units and building and enforcing AI governance frameworks. The post CISO Forum Webinar Today: 2026 Mid-Year Review appeared fir… SecurityWeek · Jun 10, 2026
vulnerability New Windows Zero-Day Exploit ‘RoguePlanet’ Released A new Windows zero-day exploit, dubbed RoguePlanet, has been released by the threat actor Nightmare Eclipse, targeting Microsoft Defender and potentially leading to local privilege escalation and BitLocker bypass. This f… SecurityWeek · Jun 10, 2026 High CVE-2026-45586CVE-2026-50507CVE-2026-41091USzero-daylocal privilege escalationbitlocker
threat-intel After AI Reaches Production: 12 Ways Security Teams Can Take Control This article discusses 12 practices for security teams to effectively incorporate AI applications into their operational security workflows. It emphasizes the importance of visibility, risk understanding, and trust-build… SecurityWeek · Jun 10, 2026 Medium aisecurityvisibility
vulnerability ServiceNow Patches Vulnerability Exploited Against Some Customers The company updated hosted customer instances to patch a security issue it reportedly had known about since April 7. The post ServiceNow Patches Vulnerability Exploited Against Some Customers appeared first on SecurityWe… SecurityWeek · Jun 10, 2026 Medium
vulnerability Critical Vulnerabilities Patched in Fortinet, Ivanti Products Two OS command injection flaws can be exploited remotely, without authentication, for arbitrary code execution. The post Critical Vulnerabilities Patched in Fortinet, Ivanti Products appeared first on SecurityWeek . SecurityWeek · Jun 10, 2026 CVE-2026-25089CVE-2026-10520CVE-2026-10523
vulnerability ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact In addition, Rockwell Automation announced some enhancements to its SecureOT cybersecurity solution for OT. The post ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact appeared first on Secur… SecurityWeek · Jun 10, 2026 CVE-2025-15467
vulnerability No Patch Planned for Exploited Arista EOS Vulnerability Organizations are advised to apply vendor-supplied mitigations or discontinue the vulnerable devices. The post No Patch Planned for Exploited Arista EOS Vulnerability appeared first on SecurityWeek . SecurityWeek · Jun 10, 2026 Medium CVE-2026-7473CVE-2026-11645CVE-2026-20245
vulnerability Microsoft Patches 200 Vulnerabilities Three of the vulnerabilities fixed with the latest Patch Tuesday updates were publicly disclosed before Microsoft addressed them. The post Microsoft Patches 200 Vulnerabilities appeared first on SecurityWeek . SecurityWeek · Jun 9, 2026 CVE-2026-49160CVE-2026-50507CVE-2026-45586
vulnerability Adobe Patches 123 Vulnerabilities Nearly half of the security holes, most allowing arbitrary code execution, have been fixed in Adobe’s Experience Manager product. The post Adobe Patches 123 Vulnerabilities appeared first on SecurityWeek . SecurityWeek · Jun 9, 2026
Anthropic Launches Claude Fable 5: Mythos-Class AI With Cybersecurity Guardrails The AI giant also announced that Project Glasswing partners are being given access to the upgraded Mythos 5. The post Anthropic Launches Claude Fable 5: Mythos-Class AI With Cybersecurity Guardrails appeared first on Sec… SecurityWeek · Jun 9, 2026
vulnerability OpenSSL Patches High-Severity Vulnerability Found With AI A total of 18 vulnerabilities have been patched in the latest OpenSSL releases, including many that were potentially discovered by AI. The post OpenSSL Patches High-Severity Vulnerability Found With AI appeared first on… SecurityWeek · Jun 9, 2026 High CVE-2026-45447
threat-intel Claude Mythos Turns N-Days Into N-Hours With Rapid Exploit Creation Anthropic’s Claude Mythos AI model has demonstrated the ability to rapidly generate working exploits for known vulnerabilities in software like Firefox and Windows, significantly accelerating the attack process. The mode… SecurityWeek · Jun 9, 2026 High USaiexploitationn-day
threat-intel New Platform Uses Cryptographic Invisibility to Protect AI-Built Applications This article discusses a new AI-powered coding tool, AI Architect, developed by Atsign to address security concerns in AI-generated applications. The tool utilizes cryptographic invisibility to secure identities, making… SecurityWeek · Jun 9, 2026 Medium aicryptographyidentity
vulnerability SAP Patches Critical NetWeaver, Commerce Vulnerabilities The flaws could lead to the disclosure of sensitive information, memory corruption, and disruption of normal system usage. The post SAP Patches Critical NetWeaver, Commerce Vulnerabilities appeared first on SecurityWeek… SecurityWeek · Jun 9, 2026 High CVE-2026-44748CVE-2026-27671CVE-2026-22732
supply-chain Over 100 NPM, PyPI Packages Hit in New Shai-Hulud Supply Chain Attacks A new wave of Shai-Hulud supply chain attacks has impacted over 471 NPM and PyPI packages, utilizing variants named Miasma and Hades. The attacks, originating from TeamPCP, involve credential harvesting and self-replicat… SecurityWeek · Jun 9, 2026 High supply chainnpmpypi
threat-intel Will AI Kill the Bug Bounty Industry? This article discusses the potential disruption of the bug bounty industry by advancements in artificial intelligence, specifically Anthropic’s Claude Mythos model. The rise of AI-powered tools like Claude is enabling bo… SecurityWeek · Jun 9, 2026 Medium aiartificial intelligencebug bounty
ransomware Check Point VPN Zero-Day Exploited in Qilin Ransomware Attacks The authentication bypass vulnerability allows attackers to establish VPN connections without a valid password. The post Check Point VPN Zero-Day Exploited in Qilin Ransomware Attacks appeared first on SecurityWeek . SecurityWeek · Jun 9, 2026 Critical CVE-2026-50751CVE-2026-50752
vulnerability Google Patches 5th Chrome Zero-Day Exploited in 2026 The vulnerability is tracked as CVE-2026-11645 and it was reported in late April by an anonymous researcher. The post Google Patches 5th Chrome Zero-Day Exploited in 2026 appeared first on SecurityWeek . SecurityWeek · Jun 9, 2026 Critical CVE-2026-11645CVE-2026-2441CVE-2026-3909