Tengu abuses Linux hardware watchdogs to reboot devices after its main process is killed, letting other persistence ...
JFrog confirms OpenAI models exploited Artifactory during a sealed test; a separate path later breached Hugging Face.
Iranian state-backed Nimbus Manticore deploys NightLedger and two WebSocket tunnelers to maintain covert access across three ...
CVE-2026-63077 could let unauthenticated attackers bypass TeamCity checks and run OS commands; JetBrains patched all ...
Hackers are exploiting CVE-2026-16812 in on-prem Arista VeloCloud Orchestrator, a command injection bug that may extend ...
Dysphoria adds blockchain C2 and victim relays after the JackSkid disruption, keeping controllers one step removed from ...
NVIDIA and 36 partners form the Open Secure AI Alliance and release NOOA, while governance and joint deliverables remain ...
OpenWrt 24.10.8 fixes CVE-2026-53921, a critical odhcpd stack overflow triggered by crafted DHCPv6 requests that could enable code execution.
Microsoft launches MAI-Cyber-1-Flash inside MDASH, routing up to 90% of tasks to the model while GPT-5.4 handles the hardest 10%.
Catch up on rogue AI agents, exploited Check Point and Zimbra flaws, espionage campaigns, ClickFix lures, slopsquatting risks ...
GitHub gives Dependabot version updates a three-day cooldown to curb short-lived poisoned packages, while security fixes ...
Claude spans six enterprise surfaces, each with distinct identity, credential, and data risks that single-surface tools may miss.