Black Hat USA 2026 returns for its 29th year, covering the latest in infosec for CISOs, technical experts, thought leaders, innovative vendors and…
Oracle SQL Injection Attack Enables Remote Code Execution
A Huntress investigation reveals how attackers used SQL injection to achieve RCE and steal credentials.
Western government leaders call for a focus on infrastructure resilience, not AI hype
U.S. and allied officials said companies should start preparing now for a cyberattack that changes how they provide essential services.
CrowdStrike 2026 Threat Hunting Report: Exploitation Window Closes as AI Use Accelerates
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: CrowdStrike 2026 Threat Hunting Report: Exploitation Window Closes as AI Use Accelerates
OpenAI warns autonomous hacks are ‘watershed moment for computer security’
Company employees said their industry should rethink how it balances capabilities and safeguards.
AI Attacks Are Evolving: TryHackMe Demo Explores Prompt Injection
TryHackMe demo: Explore how prompt injection is reshaping AI security risks.
OpenAI and Anthropic Agents Took 19 Unauthorised Actions During UK Cyber Tests
UK cyber tests found OpenAI and Anthropic agents taking 19 unauthorised actions, including deception and attempts to plant malicious code.
AWS partners with Anthropic and OpenAI to bring AWS Continuum into developer workflows
Customers have access to models that are continuously getting better with each new generation bringing larger context windows, stronger reasoning, and…
Apple Caps Open Bug-Bounty Reports After Surge in Unvalidated AI Findings
Apple is limiting some bug-bounty submissions after unvalidated AI findings increased the volume of reports in its review queue. Introduced in June, the…
Prompt injection isn’t the bug, AI agent frameworks are
Check Point researchers tried to break the frameworks enterprises use to build AI apps. Now they’re telling Black Hat attendees what they found
UK AI tests found 19 unauthorized agent actions involving Anthropic and OpenAI models
UK researchers reported 19 unsanctioned actions by Anthropic and OpenAI agents during permissive cyber tests involving real external systems.
Apple Briefly Removes Telegram From App Store Over Reported CSAM Violation
Apple briefly removed Telegram from the App Store over reported CSAM, highlighting moderation failures and the distribution power held by app-store…
Microsoft Bug Bounty Payouts Reach $20 Million as Researcher Participation Surges
Microsoft paid a record $20 million to 562 bug bounty researchers as AI-assisted reporting and growing participation reshaped vulnerability discovery.
“Adult TikTok” searches lead to scams
That “free” adult TikTok site could leave you with spam, unwanted apps, or fake verification fees.
CrowdStrike Warns AI Adoption Is Creating ‘Underdefended’ Attack Surfaces
CrowdStrike warns that AI adoption, rapid vulnerability exploitation, cloud attacks, and malicious npm packages are creating new enterprise security risks.
DHS Wants Protesters’ Signal Group Chats
A lawsuit accuses Homeland Security of violating protesters’ free-speech rights—but the agency is using it to try to get access to the plaintiffs’…
WhatsApp account takeover scam asks you to “vote for my friend”
Scammers are trying to take over WhatsApp accounts by sending messages asking people to vote for a friend in a fake online contest.
Anthropic models hack three firms, Coldcard bug drains $88 million, Midnight Blizzard hijacks hotel Wi-Fi
Claude Escapes the Lab, EU AI Act Enforced, SVR Hotel Wi‑Fi Hijacks, and $88M Bitcoin Wallet Flaw David Shipley covers multiple cybersecurity headlines:…
A week in security (July 27 – August 2)
A list of topics we covered in the week of July 27 to August 2 of 2026
OpenAI’s GPT-5.6 Tests Show Prompt-Injection Gains and Agent Risks
OpenAI’s latest GPT-5.6 safety results show low failure rates for direct prompt injection but higher success rates when attacks arrive through tools and…
Google’s synchronized passkeys can be stolen in ‘Pass‑ta‑key’ attacks
Over time, passkeys are supposed to replace passwords. But what happens when malware steals the master key?
Focus on infrastructure resilience, not AI hype, Western government leaders warn
U.S. and allied officials said companies should start preparing now for a cyberattack that changes how they provide essential services.
The Most Dangerous AI Hacking Techniques Still Have Humans in the Loop
Security researcher James Kettle tried to push the limit of AI’s hacking abilities—and discovered how effective it can be when combined with human…
How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones
The chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications.