threat-intel Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails Alice, a cybersecurity firm specializing in AI safety, has raised $140 million to bolster its defenses against vulnerabilities and attacks targeting generative AI models. The company uses a decade-long database of harmfu… SecurityWeek · 5d ago Medium ISUNaicybersecurityprompt injection
threat-intel Ukraine to give Britain access to battlefield data to train AI Ukraine is sharing a massive dataset of battlefield imagery and video with the United Kingdom to train AI systems for defense purposes. This partnership, part of a broader effort to utilize war-generated data, will allow… The Record · 5d ago Medium UKUNRUaibattlefield dataukraine
threat-intel WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android WhatsApp is bolstering its security by introducing passkeys and enhanced two-step verification to combat phishing attacks and improve account protection for users on both iOS and Android. This move aims to make it signif… The Hacker News · 5d ago Medium passkeysphishingsecurity
threat-intel WhatsApp Adds Multiple Passkeys and Stronger 2SV in Account Security Update WhatsApp has significantly boosted its account security by introducing multi-passkey support, upgrading two-step verification to stronger passwords, and providing caller information to combat scams. These changes aim to… SecurityWeek · 5d ago Medium passkeystwo-factorsecurity
threat-intel Hands-On Cyber-Physical Systems Training Returns to ICS Cybersecurity Conference SecurityWeek and MTSI are offering a hands-on training course, Cyber Attack Methods (CAM), as part of the 25th Anniversary Industrial Control Systems (ICS) Cybersecurity Conference. The course teaches participants to thi… SecurityWeek · 5d ago Medium cyber-physicalicscybersecurity
vulnerability FURUNO FA-50 Class B AIS Transponder A vulnerability in FURUNO FA-50 Class B AIS Transponders allows an attacker with credentials to alter device settings. Production of this product has ended, and software updates are no longer provided. Mitigation involve… CISA Advisories · 5d ago Medium CVE-2026-59769CVE-2026-67578vulnerabilityaiscontrol systems
vulnerability Rently Smart Home Rently Smart Home versions 20.1.0 and earlier are vulnerable to an insufficient credentials issue, potentially allowing an attacker to access sensitive information and override user permissions. Rently has released a pat… CISA Advisories · 5d ago Medium CVE-2026-75960USINvulnerabilitycwe-522industrial control systems
ddos Large DDoS attack knocks Norwegian public services offline A massive DDoS attack has severely disrupted several Norwegian public services for over 30 hours, impacting digital identity verification and government data exchange. The attack, the third of its kind since June, is sig… The Record · 5d ago Medium NOddosdhscyberattack
threat-intel Black Hat State of Security Vendors Black Hat 2023 showcased a significant shift in the security vendor landscape, driven by the increasing influence of AI. Vendors are now heavily emphasizing AI-powered solutions, though a notable number continue to focus… Schneier on Security · 5d ago Medium aisecurityvendors
threat-intel The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution A recent analysis by Palo Alto Unit 42 found that while a significant number of AI-enabled malware samples exist in research and testing environments, only a small fraction (around 12) reached production endpoints across… Palo Alto Unit 42 · 5d ago Medium USCNGBaimalwarethreat intelligence
threat-intel Crooks push Mac malware through fake OpenAI Codex ads Russian threat actors are leveraging fake OpenAI Codex advertisements to distribute malware targeting macOS users. The campaign uses a malicious installer disguised as a legitimate tool, aiming to compromise systems and… The Register · 5d ago Medium RUmacphishingmalware
vulnerability Multiples vulnérabilités dans Keycloak (25 août 2026) Multiple vulnerabilities have been discovered in Keycloak, allowing an attacker to bypass security policies and potentially take control of an account if they know its identifier. The CERT-FR has a proof of concept for C… CERT-FR · 5d ago Medium CVE-2026-18963CVE-2026-14613CVE-2026-15571keycloakvulnerabilityauthentication
vulnerability Browser fingerprint tool shows how easy you are to track using the latest sneaky tricks A vulnerability in Joomla extensions, specifically iCagenda and Balbooa Forms, is being exploited by attackers to compromise websites running on vulnerable CMS platforms. This allows attackers to gain unauthorized access… The Register · 6d ago Medium joomlaextensionvulnerability
threat-intel Weedhack Malware Spreads via Fake Minecraft Clients and SEO Poisoning Cybersecurity researchers at McAfee Labs have identified a campaign where malicious websites disguised as legitimate Minecraft clients are distributing the Weedhack malware. These sites, leveraging SEO poisoning and mimi… The Hacker News · 6d ago Medium seo poisoningmalwareminecraft
threat-intel ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited ReliaQuest was targeted by the ShinyHunters group through a sophisticated phishing campaign mimicking security employees to gain access to an Okta dashboard. While the attackers gained temporary view-only access, they we… SecurityWeek · 6d ago Medium phishingsocial engineeringokta
threat-intel Hired for One Job, Judged on Another: The CISO’s Real Problem CISOs often struggle to demonstrate their value to a board of directors, who tend to prioritize cost, growth, and customer trust over technical security achievements. Instead of focusing on preventing breaches (which is… SecurityWeek · 6d ago Medium cisosecurity-strategybusiness-alignment
data-breach Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts Dutch regulators have fined Uber nearly $1 billion for using automated software to suspend driver accounts without human review, violating EU data privacy regulations. This is the fourth time the authority has penalized… SecurityWeek · 6d ago Medium dataprivacygdprautomation
threat-intel AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones AliExpress is accused of using a deceptive audio trick to silently collect shoppers' biometric data, including fingerprints, potentially compromising user privacy. This technique involved playing a brief audio clip that… The Register · 6d ago Medium privacybiometricsdata-collection
threat-intel Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt AI coding tools are accelerating the influx of open-source packages into organizations’ software stacks, leading to a growing backlog of security vulnerabilities and remediation debt. A recent study of 300 enterprise le… The Hacker News · 6d ago Medium aiopen-sourcevulnerability
threat-intel Criminal Deception in Silicon Valley This research examines how Silicon Valley entrepreneurs use deceptive tactics – ‘façades’ – to mislead investors and project a false image of success while their ventures are actually struggling. The study, analyzing cou… Schneier on Security · 6d ago Medium frauddeceptioninvestor