SecurityWeek

Infostealers Turn Millions of Devices Into Credential Theft Machines

Security Week - Wed, 06/10/2026 - 10:00am

As attackers increasingly favor stolen credentials over exploits, infostealers have become a primary source of access for ransomware and other cybercrime operations.

The post Infostealers Turn Millions of Devices Into Credential Theft Machines appeared first on SecurityWeek.

Categories: SecurityWeek

Cyera Raises $600 Million at $12 Billion Valuation

Security Week - Wed, 06/10/2026 - 9:48am

Cyera is positioned as one of the most valuable privately held cybersecurity firms in the world with total funding topping $2 billion.

The post Cyera Raises $600 Million at $12 Billion Valuation appeared first on SecurityWeek.

Categories: SecurityWeek

Aryon Security Raises $29 Million in Series A Funding

Security Week - Wed, 06/10/2026 - 8:24am

In the post-Mythos era, the company’s platform helps organizations enforce security controls across environments.

The post Aryon Security Raises $29 Million in Series A Funding appeared first on SecurityWeek.

Categories: SecurityWeek

Critical HVAC and UPS Vulnerabilities Could Let Hackers Disrupt Data Centers

Security Week - Wed, 06/10/2026 - 8:07am

Claroty researchers have analyzed the security of Vertiv UPS network cards and the Trane Tracer SC+ HVAC controller.

The post Critical HVAC and UPS Vulnerabilities Could Let Hackers Disrupt Data Centers appeared first on SecurityWeek.

Categories: SecurityWeek

CISO Forum Webinar Today: 2026 Mid-Year Review

Security Week - Wed, 06/10/2026 - 8:00am

Learn more about protecting against unmonitored use of generative AI (Shadow AI) in business units and building and enforcing AI governance frameworks.

The post CISO Forum Webinar Today: 2026 Mid-Year Review appeared first on SecurityWeek.

Categories: SecurityWeek

New Windows Zero-Day Exploit ‘RoguePlanet’ Released

Security Week - Wed, 06/10/2026 - 7:44am

Exploiting a race condition in Microsoft Defender, the exploit leads to local privilege escalation to SYSTEM.

The post New Windows Zero-Day Exploit ‘RoguePlanet’ Released appeared first on SecurityWeek.

Categories: SecurityWeek

After AI Reaches Production: 12 Ways Security Teams Can Take Control

Security Week - Wed, 06/10/2026 - 7:00am

Security teams need more than visibility into AI applications, they need a repeatable framework for monitoring, investigating, and defending them in production.

The post After AI Reaches Production: 12 Ways Security Teams Can Take Control appeared first on SecurityWeek.

Categories: SecurityWeek

ServiceNow Patches Vulnerability Exploited Against Some Customers

Security Week - Wed, 06/10/2026 - 5:45am

The company updated hosted customer instances to patch a security issue it reportedly had known about since April 7.

The post ServiceNow Patches Vulnerability Exploited Against Some Customers appeared first on SecurityWeek.

Categories: SecurityWeek

Critical Vulnerabilities Patched in Fortinet, Ivanti Products

Security Week - Wed, 06/10/2026 - 4:50am

Two OS command injection flaws can be exploited remotely, without authentication, for arbitrary code execution.

The post Critical Vulnerabilities Patched in Fortinet, Ivanti Products appeared first on SecurityWeek.

Categories: SecurityWeek

ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact

Security Week - Wed, 06/10/2026 - 3:38am

In addition, Rockwell Automation announced some enhancements to its SecureOT cybersecurity solution for OT.

The post ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact appeared first on SecurityWeek.

Categories: SecurityWeek

No Patch Planned for Exploited Arista EOS Vulnerability

Security Week - Wed, 06/10/2026 - 2:38am

Organizations are advised to apply vendor-supplied mitigations or discontinue the vulnerable devices.

The post No Patch Planned for Exploited Arista EOS Vulnerability appeared first on SecurityWeek.

Categories: SecurityWeek

Microsoft Patches 200 Vulnerabilities

Security Week - Tue, 06/09/2026 - 3:04pm

Three of the vulnerabilities fixed with the latest Patch Tuesday updates were publicly disclosed before Microsoft addressed them.

The post Microsoft Patches 200 Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Adobe Patches 123 Vulnerabilities

Security Week - Tue, 06/09/2026 - 2:20pm

Nearly half of the security holes, most allowing arbitrary code execution, have been fixed in Adobe’s Experience Manager product.

The post Adobe Patches 123 Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Anthropic Launches Claude Fable 5: Mythos-Class AI With Cybersecurity Guardrails 

Security Week - Tue, 06/09/2026 - 1:02pm

The AI giant also announced that Project Glasswing partners are being given access to the upgraded Mythos 5.

The post Anthropic Launches Claude Fable 5: Mythos-Class AI With Cybersecurity Guardrails  appeared first on SecurityWeek.

Categories: SecurityWeek

OpenSSL Patches High-Severity Vulnerability Found With AI

Security Week - Tue, 06/09/2026 - 12:47pm

A total of 18 vulnerabilities have been patched in the latest OpenSSL releases, including many that were potentially discovered by AI.

The post OpenSSL Patches High-Severity Vulnerability Found With AI appeared first on SecurityWeek.

Categories: SecurityWeek

Claude Mythos Turns N-Days Into N-Hours With Rapid Exploit Creation

Security Week - Tue, 06/09/2026 - 11:03am

Public LLM models with safeguards turned off can also build working exploits, increasing patch gap risks.

The post Claude Mythos Turns N-Days Into N-Hours With Rapid Exploit Creation appeared first on SecurityWeek.

Categories: SecurityWeek

New Platform Uses Cryptographic Invisibility to Protect AI-Built Applications

Security Week - Tue, 06/09/2026 - 9:00am

Atsign’s AI Architect applies cryptographic protections to agentic software development, aiming to prevent attackers from exploiting vulnerabilities by making application identities effectively invisible.

The post New Platform Uses Cryptographic Invisibility to Protect AI-Built Applications appeared first on SecurityWeek.

Categories: SecurityWeek

SAP Patches Critical NetWeaver, Commerce Vulnerabilities

Security Week - Tue, 06/09/2026 - 8:15am

The flaws could lead to the disclosure of sensitive information, memory corruption, and disruption of normal system usage.

The post SAP Patches Critical NetWeaver, Commerce Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Over 100 NPM, PyPI Packages Hit in New Shai-Hulud Supply Chain Attacks

Security Week - Tue, 06/09/2026 - 7:37am

The most recent variants of the self-propagating attacks are named Miasma and Hades.

The post Over 100 NPM, PyPI Packages Hit in New Shai-Hulud Supply Chain Attacks appeared first on SecurityWeek.

Categories: SecurityWeek

Will AI Kill the Bug Bounty Industry?

Security Week - Tue, 06/09/2026 - 7:00am

Anthropic's Mythos is accelerating vulnerability discovery to machine speed, forcing the bug bounty industry and offensive security teams to adapt to a future where finding flaws is no longer the hard part.

The post Will AI Kill the Bug Bounty Industry? appeared first on SecurityWeek.

Categories: SecurityWeek

Pages