2026-11-12
Dark Reading
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
2026-08-29
Binarly
MLTracer: Syscall-Based Malicious Model Detection and Labeling, with Static-Scanner Evasion Taxonomy
2026-08-28
Step Security
@7nohe/openapi-react-query-codegen Compromised Through an Exposed npm Publishing Workflow
Schneier on Security
Friday Squid Blogging: Truckload of Squid Spills in Rhode Island
Aikido
Securing Docker images
ReversingLabs
Shai-Hulud worm arrests: What you need to know
Dark Reading
You Need Cyber Deception for OT
Dark Reading
Defining an AI Kill Switch Is Hard, but Necessary
Cloudflare
BotBase for Operators: A clearer path to joining Cloudflare's directory of bots and agents
MIT Technology Review
The Download: a secretive antiaging drug and joining virtual power plants
Ars Technica Security
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
Schneier on Security
AI Doesn’t Mean the End of Mathematics—at Least Not Yet
MIT Technology Review
How to sign up for a virtual power plant—and decide whether you should
Greynoise
Threat Actors Are Posing as OpenAI, Anthropic and DeepSeek to Target Credentials and Secrets
2026-08-27
Naveen Srinivasan
BPF Token Delegation
MIT Technology Review
A startup claims it’s found a drug to make your blood young
Dark Reading
Chinese Routers Sold Worldwide Contain Backdoors
Talos Intelligence
“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend
ReversingLabs
Extend CrowdStrike Falcon with Permanent Intelligence
Boschko Security Blog
UniBLEed: Unauthenticated Root RCE on Any Unitree G1 Humanoid Robot Within Bluetooth Range
Microsoft Security
What’s new in Microsoft Security: August 2026
Github Security Blog
OpenClaw went viral. Meet the maintainers building and securing it.
Malwarebytes
Flock wants privacy to meet surveillance halfway
Ars Technica Security
Claude, Codex, and Hermes installed unowned code inside corporate networks
Ars Technica Security
How OpenAI let a mob of LLM agents game a test and ransack Hugging Face
MIT Technology Review
The Download: inside OpenAI’s Hugging Face hack, and a new EV takes on the US
CISA Alerts & Advisories
Rockwell Automation OTTO Fleet Manager
CISA Alerts & Advisories
Xiiaozet LK100W
CISA Alerts & Advisories
Mitsubishi Electric CNC Series (Update A)
CISA Alerts & Advisories
Mitsubishi Electric Multiple FA Products (Update D)
CISA Alerts & Advisories
CISA Adds Three Known Exploited Vulnerabilities to Catalog
CISA Alerts & Advisories
Ebyte NA111-M
CISA Alerts & Advisories
All-Line Equipment Company Fuel-Boss
CISA Alerts & Advisories
Applied Systems Engineering ASE2000 V2 Communications Test Set
Krebs on Security
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Talos Intelligence
JavaScript obfuscation: From party trick to phishing kit
MIT Technology Review
Is Slate Auto’s new electric truck the EV Americans need?
Schneier on Security
LLM-Based Social Engineering Scams
Embrace The Red
Breaking Claude Code Opus 5 Auto Mode
Nebula Security
Check Your Motor Oil Before Turbocharging: CVE-2026-7899, When V8's Optimization Engine Builds Up Carbon
Semgrep
Semgrep Multimodal Goes Beyond Authentication: What we learned from Comparing it with Mythos
2026-08-26
Dark Reading
'HTTP Terminator' Hunts for Novel Desync Attacks
Amazon Security
ICYMI: July 2026 @AWS Security
Dark Reading
Red Flags That Expose Fake North Korean IT Workers
MIT Technology Review
The inside story on why OpenAI agents hacked Hugging Face
ReversingLabs
Infostealers highlight malware-as-a-service trend
Eclypsium
AI Infra Summit 2026
Malwarebytes
Update Chrome before you browse again
Bishop Fox Security
A GUID is Not a Credential: Unauthenticated RCE in Veeam Service Provider Console
SentinelOne
Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter
MIT Technology Review
The Download: the Kids issue arrives, and Bill Gates reveals his AI fears
Schneier on Security
Spyware for Babies
CISA Alerts & Advisories
CISA Adds Six Known Exploited Vulnerabilities to Catalog
CISA Alerts & Advisories
CISA Vulnerability Review
Trail of Bits
VMs won't contain cyber-capable agents
Talos Intelligence
Choose your fighter: Balancing competing requirements to select models for your AI SOC
MIT Technology Review
AI models flub these intelligence tests. Can you fare any better?
MIT Technology Review
Raised on AI
MIT Technology Review
Bill Gates says we’ve passed AI’s danger thresholds. Now what?
Himanshu Anand
I had some free time, so I tried to pwn V8
2026-08-25
Amazon Security
Fast Track ISM-ready cloud environments and IRAP Assessments with Landing Zone Accelerator on AWS
Dark Reading
Hidden Prompts Trick AI Into False Email Summaries
ReversingLabs
Agentic AI scales semiautonomous server attacks
Microsoft Security
The patch window is collapsing: Why security needs a new control plane
Offensive Security
Road to OSCE3: Episodio 1 – OSEP
SentinelOne
The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity
Offensive Security
Knowing what not to attack
Dark Reading
Is Cyber Facing an Affordability Crisis?
PortSwigger
What's in a tag name? JavaScript, apparently
CISA Alerts & Advisories
FURUNO FA-50 Class B AIS Transponder
CISA Alerts & Advisories
Zoneminder
CISA Alerts & Advisories
A Tale of Two SOCs: Insights From Two Red Team Assessments
CISA Alerts & Advisories
PayRange API
CISA Alerts & Advisories
CISA Adds One Known Exploited Vulnerability to Catalog
CISA Alerts & Advisories
Siemens SIMATIC IoT2050 Advanced
CISA Alerts & Advisories
Bendix EC80 Brake ECU
CISA Alerts & Advisories
Ebyte NE2-D11
CISA Alerts & Advisories
Rently Smart Home
Trail of Bits
State divergence enables unauthorized access
Schneier on Security
Black Hat State of Security Vendors
Talos Intelligence
The safety penalty: Reclaiming operational sovereignty in the age of AI
Compass Security Blog
A Note on Pentesting Passkeys
Nick Mykhailyshyn
Plausible Analytics: Pre-Auth RCE, Cross-Tenant IDORs, and SSRF-to-RCE
Elastic Security Labs
Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy
Sansec Threat Research
Shopware fixes Store API vulnerability allowing administrator takeover
Rosecurify
Seclog - #192
2026-08-24
Ars Technica Security
Inaudible sounds used to fingerprint browsers catch AliExpress red-handed
Meta Security
MTIA 300: Meta’s First Training Chip with Built-in NICs and Communication-Offloading Engines
Xint
XBOW vs. Xint
Dark Reading
Tricky 'SynkLoader' Multitool May Herald Ransomware
CISA Alerts & Advisories
CISA Adds One Known Exploited Vulnerability to Catalog
Schneier on Security
Criminal Deception in Silicon Valley
Malwarebytes
A week in security (August 17 – August 23)
Elastic Security Labs
How a team of entity maintainers monitors, connects and scores entities in Elastic Security
2026-08-23
Step Security
The State of Open Source Supply Chain Attacks
MaskRay's Blog
Block frequency