SecurityWeek

Microsoft, Apple Release Fresh Security Updates

Security Week - Fri, 08/07/2026 - 5:09am

Microsoft fixed critical vulnerabilities across Azure, Entra, and SharePoint, while Apple patched a high-severity authentication bypass.

The post Microsoft, Apple Release Fresh Security Updates appeared first on SecurityWeek.

Categories: SecurityWeek

3.8 Million Impacted by Unlimited Technology Systems Data Breach

Security Week - Fri, 08/07/2026 - 3:22am

Hackers stole personal, medical, and health insurance information from a company’s data center.

The post 3.8 Million Impacted by Unlimited Technology Systems Data Breach appeared first on SecurityWeek.

Categories: SecurityWeek

Critical Vulnerabilities Patched With Chrome 151 Update

Security Week - Fri, 08/07/2026 - 2:56am

The browser refresh eliminates over two dozen memory safety bugs, including critical use-after-free flaws.

The post Critical Vulnerabilities Patched With Chrome 151 Update appeared first on SecurityWeek.

Categories: SecurityWeek

Snowflake Hacker Pleads Guilty in US Court

Security Week - Thu, 08/06/2026 - 10:56am

Connor Riley Moucka was extradited to the United States in July 2025 after he was arrested in Canada. 

The post Snowflake Hacker Pleads Guilty in US Court appeared first on SecurityWeek.

Categories: SecurityWeek

Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts

Security Week - Thu, 08/06/2026 - 8:54am

Zenity researchers reported the findings to Anthropic and OpenAI in late 2025 and early 2026, but they remain unpatched.

The post Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts appeared first on SecurityWeek.

Categories: SecurityWeek

Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway

Security Week - Thu, 08/06/2026 - 8:00am

(Video) In this podcast, we share insights from Edna Conway, a recognized leader in cybersecurity and supply chain resilience with over 40 years of experience in the field.

The post Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway appeared first on SecurityWeek.

Categories: SecurityWeek

Critical Paperclip Flaw Allowed Admin Access, Code Execution

Security Week - Thu, 08/06/2026 - 7:09am

An attacker could self-register, sign in for board-level API access, and import a new company for code execution.

The post Critical Paperclip Flaw Allowed Admin Access, Code Execution appeared first on SecurityWeek.

Categories: SecurityWeek

Meta AI Hacked External Systems During Cybersecurity Testing

Security Week - Thu, 08/06/2026 - 5:56am

The incident involved a testing environment set up by Irregular, similar to what Anthropic reported last week.

The post Meta AI Hacked External Systems During Cybersecurity Testing appeared first on SecurityWeek.

Categories: SecurityWeek

Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison

Security Week - Thu, 08/06/2026 - 5:30am

Maksim Silnikau was the creator and administrator of the ransomware group and involved in Angler EK’s distribution.

The post Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison appeared first on SecurityWeek.

Categories: SecurityWeek

Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilities

Security Week - Thu, 08/06/2026 - 3:20am

Patches were rolled out for two dozen vulnerabilities, including one with public proof-of-concept (PoC) code.

The post Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability

Security Week - Thu, 08/06/2026 - 2:37am

Tracked as CVE-2026-63077, the critical bug can be exploited without authentication for remote code execution.

The post Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability appeared first on SecurityWeek.

Categories: SecurityWeek

How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones 

Security Week - Wed, 08/05/2026 - 3:40pm

The chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications.

The post How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones  appeared first on SecurityWeek.

Categories: SecurityWeek

Black Hat USA 2026 – Summary of Vendor Announcements (Part 3)

Security Week - Wed, 08/05/2026 - 10:36am

Many companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas.

The post Black Hat USA 2026 – Summary of Vendor Announcements (Part 3) appeared first on SecurityWeek.

Categories: SecurityWeek

The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict

Security Week - Wed, 08/05/2026 - 9:00am

CrowdStrike co-founder Dmitri Alperovitch discusses how cyber operations support kinetic warfare, signal coming conflicts, and reshape the global battlefield.

The post The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict appeared first on SecurityWeek.

Categories: SecurityWeek

New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts

Security Week - Wed, 08/05/2026 - 8:48am

Palo Alto Networks researchers have demonstrated attacks against Google’s synced passkey implementation.

The post New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts appeared first on SecurityWeek.

Categories: SecurityWeek

311,000 Impacted by Brown Health Medical Group-MA Data Breach

Security Week - Wed, 08/05/2026 - 7:35am

Hackers stole personal information, medical records, and financial information from the organization’s server.

The post 311,000 Impacted by Brown Health Medical Group-MA Data Breach appeared first on SecurityWeek.

Categories: SecurityWeek

Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data 

Security Week - Wed, 08/05/2026 - 7:11am

The guidelines are the work of the recently launched Open Secure AI Alliance, which now includes 120 organizations.

The post Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data  appeared first on SecurityWeek.

Categories: SecurityWeek

AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations

Security Week - Wed, 08/05/2026 - 6:33am

In one instance, an unsanctioned model attempted to inject malicious code into an open source repository.

The post AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations appeared first on SecurityWeek.

Categories: SecurityWeek

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities

Security Week - Wed, 08/05/2026 - 5:44am

The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass.

The post CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack

Security Week - Wed, 08/05/2026 - 4:56am

The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials.

The post Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack appeared first on SecurityWeek.

Categories: SecurityWeek

Pages