Why this month's Microsoft patch release is a doozy
Security teams are rapidly releasing patches in anticipation of a likely surge in AI-assisted attacks, aiming to harden systems before adversaries can exploit new automation-driven threats.
Everything tagged security, newest first. Tags come from the classifier reading each item's summary; 394 tags used 25 times or more have their own page.
Security teams are rapidly releasing patches in anticipation of a likely surge in AI-assisted attacks, aiming to harden systems before adversaries can exploit new automation-driven threats.
A Claude user noticed unexplained token usage while inactive, prompting Anthropic to warn users that hackers may be accessing accounts and consuming resources without permission.
This news roundup highlights multiple cybersecurity threats, including factory-installed backdoors in consumer routers, law enforcement takedowns of hacking domains, China-linked attacks on Cisco IOS-XR routers, malware risks in Android auto infotainment systems, and an OpenAI postmortem.
Google is accelerating Chrome’s release cadence so security fixes and new features can reach users more quickly, improving responsiveness to vulnerabilities and reducing the wait for product updates.
The latest heist ranks among the largest cryptocurrency thefts ever recorded, highlighting the scale and continuing vulnerability of digital asset security.
Automatic Key Exchange probes TLS 1.3-capable customer origins to determine supported key agreement algorithms, then connects using the most secure option available, prioritizing post-quantum methods whenever supported.
Sun Tzu’s *The Art of War* offers surprisingly modern cybersecurity guidance by emphasizing self-knowledge, enemy intelligence, and proactive defense, showing that strong security comes from understanding your attack surface, studying threat actors, and preventing breaches through patching, hardening, authentication, and zero trust.
Ryan speaks with PayPal CTO Srini Venkatesan about securing AI-generated deterministic code, building autonomous SDLC systems with iterative feedback loops, and delivering a smooth headless checkout experience.
A previously overlooked block of invisible Unicode characters is becoming increasingly widely used, drawing more attention as its applications expand.
OpenAI’s internal monitoring and security systems have suffered another failure, highlighting ongoing weaknesses in the company’s ability to detect and prevent problems.
Ryan interviews Greg Jennings, Anaconda’s VP of Engineering for AI Products, on building secure-by-default AI coding agents, the limits of relying on prompts as security controls, and how acquisitions help strengthen the AI software supply chain.
APNIC Labs has been experimenting with how DNS handles requests for nonexistent names, aiming to improve resilience against random name attacks by better understanding and strengthening this behavior.
Abliteration.AI aims to make powerful AI models without guardrails easier to access, claiming that broader access for defenders could strengthen cybersecurity by matching bad actors’ capabilities.
A crime-focused identity theft search site allegedly exposed over 150 million stolen driver’s license photos from an ID verification service before the site was shut down.
Arista says that after two decades, product quality and security remain its top priorities, and it is responding to an increasingly fast-changing threat landscape by proactively communicating with customers about upcoming security-related actions and expectations.
Security companies are rapidly developing products that can monitor not only AI agents themselves, but also the tools and add-ons those agents rely on, reflecting growing concern about broader ecosystem security risks.
The Army reports that its laser system can detect, track, and destroy hostile drones, highlighting a directed-energy defense capability aimed at countering small aerial threats more precisely and efficiently than traditional weapons.
A BGP hijacking incident that poisoned production software reveals how fragile software supply chains can be when network routing is compromised, highlighting the need for stronger verification, monitoring, and resilience across build and distribution systems.
OpenAI’s open letter, signed by 100 organizations including IBM, urges public and private sectors to prioritize cyber defense against increasingly AI-enabled attacks by empowering trusted defenders with advanced AI, sharing remediation strategies and patches, and coordinating collective action to reduce response time and strengthen security.
OpenAI previewed the precautions it is taking ahead of releasing Astra, a new cyber-critical large language model, emphasizing security-focused measures designed to reduce risks associated with deploying a highly sensitive AI system.
X is investigating a surge of unsolicited password reset emails, suspecting the issue may be connected to the rollout of its new payments service.
The discussion highlights how AI agents are reshaping workplace workflows and raising new security and infrastructure demands, with leaders from networking, critical infrastructure, and wireless deployment sharing how they support hybrid work, protect essential services, and adapt to rapid technological change.
Coruna and DarkSword are exploit frameworks that have been used to compromise Apple iPhones for cryptocurrency theft and data harvesting, while the discussion traces their origins, including Coruna’s development by a U.S. government contractor, and their fast spread through the cybercriminal ecosystem.
AIR’s platform identifies agents running within a company, continuously evaluates their skills and add-ons, and blocks unwanted behavior to help maintain control and security.
Apple claims it has evidence that a former employee deleted or destroyed evidence related to alleged data theft after discovering he was being investigated, suggesting an attempt to conceal misconduct and complicate the company’s inquiry.
Cloudflare’s Adaptive Intelligence engine aims to reverse the long-standing advantage of bot operators by learning from live traffic meta-signals and rapidly deploying disposable rules that make automated attacks costlier and harder to sustain.
Major tech companies and AI startups are jointly criticizing today’s cybersecurity landscape while promoting a new solution they claim can defend against emerging cyber threats.
Arrests followed a series of cyberattacks earlier this year that targeted technology companies dependent on widely used, high-profile open source software.
The federal cyber agency issued a warning as suspected Iran-backed cyberattacks increasingly target critical water systems across the United States, raising concerns about infrastructure security and potential disruption.
AI tool quickstarts for apps like Claude Desktop, Cursor, and Copilot often encourage storing API keys and tokens in plaintext config files, creating a serious local secret-exposure risk that the content warns against.
The content explains that AI systems can be compromised and introduces core cybersecurity concepts—authentication, authorization, trust boundaries, untrusted input, attack surface, and blast radius—showing why AI engineers must design, validate, and contain systems securely before, during, and after deployment.
WhatsApp has upgraded two-step verification by allowing users to replace the traditional six-digit PIN with a stronger alphanumeric password that can include special characters for better account security.
Zeiss adopted Cisco Cyber Vision to improve OT security as connected operations and cloud data sharing increased risk, gaining better asset visibility, communication-flow insight, vulnerability awareness, and reduced manual workload while strengthening cyber resilience across manufacturing.
Early testers praise Instinct’s capabilities, but concerns remain that its broad access, permissive terms, and ability to act for users create unsettling privacy and control trade-offs.
This Network Break episode highlights urgent security alerts for Oracle and Cisco products, warns of active threats targeting Siemens PLCs, and notes major tech developments including Marvell’s Google chip deal and IBM’s modular cryogenics work.
Japanese space startup Letara aims to expand its hybrid rocket technology from small satellite thrusters to broader space, defense, and security markets after securing ¥2.6 billion ($16 million) in funding.
A private equity firm has confirmed a security breach following warnings from Google researchers about hackers targeting financial institutions.
A hacker impersonated a cryptocurrency news website employee to target cybersecurity experts with malware via Google Docs.
At Mayfield, Singh's investment focus will be on semiconductor, cybersecurity, and physical AI sectors.
Cloudflare OAuth's new support for optional scopes enhances user control over app access and aids developers in creating secure consent flows.
ClarityCheck, a people-search tool, inadvertently exposed a database with over 9 million image files, raising significant privacy concerns.
Hackers are actively targeting Siemens controllers that are connected to the internet and used in water facilities across the United States, posing significant security risks.
The U.S. phone provider successfully thwarted a major network breach by detecting and addressing Chinese-backed hackers at an early stage.
In 2024 and 2025, Cloudflare reassessed remote Spectre attacks on their Workers infrastructure, detailing new attack primitives and defenses to enhance security.
The cyberattack on CareCloud led to a significant data breach, marking one of the largest incidents in the U.S. healthcare sector in 2023.
Cybersecurity leaders are overwhelmed by AI deployment options, struggling with decision fatigue and fear of making wrong choices, while AI-generated attacks rise, highlighting the need for strategic AI integration in repetitive security tasks.
A recent large-scale DDoS attack has targeted the social networking site, marking another incident this year.
RFC 9234 enables routers to autonomously prevent route leaks by utilizing BGP Roles and the Only to Customer attribute, with observations revealing unexpected behavior from two Tier 1 networks stripping the OTC attribute.
Time is a critical component in telecommunications, finance, energy, cloud, AI, and transport systems, necessitating resilient and traceable time sources to enhance cybersecurity, operational continuity, and digital sovereignty as reliance on GNSS grows.
A cluster of CVEs affects Canonical’s LXD Linux Container system, while Palo Alto Networks, SonicWall, and the White House introduce new cybersecurity initiatives.