SecurityWeek

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe

Security Week - Tue, 07/28/2026 - 10:19am

Apple announced that dozens of vulnerabilities have been patched in each of its operating systems.

The post Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe appeared first on SecurityWeek.

Categories: SecurityWeek

OT Security Startup Frenos Raises $1.52 Million

Security Week - Tue, 07/28/2026 - 9:05am

The company will use the fresh investment to grow its customer success and AI R&D teams.

The post OT Security Startup Frenos Raises $1.52 Million appeared first on SecurityWeek.

Categories: SecurityWeek

Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model 

Security Week - Tue, 07/28/2026 - 7:11am

The company claims MAI-Cyber-1-Flash tops Anthropic’s Mythos and OpenAI’s GPT-5.6 Sol in CyberGym testing.

The post Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model  appeared first on SecurityWeek.

Categories: SecurityWeek

Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker

Security Week - Tue, 07/28/2026 - 7:00am

Tal Kollander’s history divides neatly into two halves: first as an active hacker and then as the block that stops hacks.

The post Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker appeared first on SecurityWeek.

Categories: SecurityWeek

Act Security Emerges from Stealth to Fight the Patch Problem

Security Week - Tue, 07/28/2026 - 7:00am

Act Security tackles the spiraling patch problem caused by AI’s ability to find new vulnerabilities in existing cloud environments.

The post Act Security Emerges from Stealth to Fight the Patch Problem appeared first on SecurityWeek.

Categories: SecurityWeek

Hush Security Raises $30 Million for AI Agent Governance

Security Week - Tue, 07/28/2026 - 6:17am

The startup will invest in expanding engineering and sales teams, accelerating ecosystem support, and expanding corporate partnerships.

The post Hush Security Raises $30 Million for AI Agent Governance appeared first on SecurityWeek.

Categories: SecurityWeek

Google Adopts New Threat Actor Naming System

Security Week - Tue, 07/28/2026 - 4:42am

The new two-word naming convention uses a memorable term utilized in public reporting and a cluster-categorization word.

The post Google Adopts New Threat Actor Naming System appeared first on SecurityWeek.

Categories: SecurityWeek

Unpatched Fastjson Vulnerability Exploited in Attacks

Security Week - Tue, 07/28/2026 - 3:27am

The critical remote code execution bug can be exploited without authentication, under the library’s stock default configurations.

The post Unpatched Fastjson Vulnerability Exploited in Attacks appeared first on SecurityWeek.

Categories: SecurityWeek

Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day

Security Week - Tue, 07/28/2026 - 2:40am

Impacting on-premises deployments, the OS command injection allows attackers to access privileged internal functionality.

The post Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day appeared first on SecurityWeek.

Categories: SecurityWeek

Origin Energy Data Breach Affects 900,000 Australians

Security Week - Tue, 07/28/2026 - 1:01am

The hacker claimed to have stolen the information of 2 million Origin Energy customers after breaching its systems.

The post Origin Energy Data Breach Affects 900,000 Australians appeared first on SecurityWeek.

Categories: SecurityWeek

For Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup

Security Week - Mon, 07/27/2026 - 10:28pm

Decades after it appeared in “The Terminator,” Skynet looks more like a forecast of the cyber incident in which a rogue AI system hacked into another AI company on its own.

The post For Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup appeared first on SecurityWeek.

Categories: SecurityWeek

New GitHub, PyPI Policies Boost Supply Chain Security

Security Week - Mon, 07/27/2026 - 10:26am

Dependabot gets a three-day cooldown window before opening pull requests, and PyPI rejects file uploads to releases older than 14 days.

The post New GitHub, PyPI Policies Boost Supply Chain Security appeared first on SecurityWeek.

Categories: SecurityWeek

PTC Windchill Vulnerability Exploited in Ransomware Campaign

Security Week - Mon, 07/27/2026 - 9:19am

The critical unsafe deserialization flaw allows attackers to execute arbitrary code remotely, without authentication.

The post PTC Windchill Vulnerability Exploited in Ransomware Campaign appeared first on SecurityWeek.

Categories: SecurityWeek

MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection

Security Week - Mon, 07/27/2026 - 9:00am

The malware-as-a-service operation launches legitimate browsers on an invisible desktop, giving attackers persistent and covert remote access to compromised Windows systems.

The post MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection appeared first on SecurityWeek.

Categories: SecurityWeek

Nvidia and Tech Giants Launch AI Security Alliance

Security Week - Mon, 07/27/2026 - 8:25am

The Nvidia-led coalition aims to give defenders more open tools for testing, auditing and protecting AI models and agents.

The post Nvidia and Tech Giants Launch AI Security Alliance appeared first on SecurityWeek.

Categories: SecurityWeek

Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack

Security Week - Mon, 07/27/2026 - 7:29am

The Anubis cybercrime group has taken credit for the attack and is threatening to leak data.

The post Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack appeared first on SecurityWeek.

Categories: SecurityWeek

Beelzebub Raises $3.4 Million for Hacker-Trapping Platform

Security Week - Mon, 07/27/2026 - 7:06am

The company plans to expand its research team, open new offices in Rome and San Francisco, and acquire new clients.

The post Beelzebub Raises $3.4 Million for Hacker-Trapping Platform appeared first on SecurityWeek.

Categories: SecurityWeek

What’s Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out

Security Week - Mon, 07/27/2026 - 7:00am

The new Mobile Security Exposure Center creates SBOMs for enterprise mobile apps to uncover vulnerable components, dependencies and hidden risks.

The post What’s Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out appeared first on SecurityWeek.

Categories: SecurityWeek

Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials

Security Week - Mon, 07/27/2026 - 6:50am

A threat actor has been using the compromised appliances to target the Microsoft 365 accounts of traveling corporate employees.

The post Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials appeared first on SecurityWeek.

Categories: SecurityWeek

Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits

Security Week - Mon, 07/27/2026 - 6:02am

Binary-based vulnerability scanning, penetration testing, and exploit generation are blocked in Opus 5.

The post Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits appeared first on SecurityWeek.

Categories: SecurityWeek

Pages