Microsoft paid a record $20 million to 562 bug bounty researchers as AI-assisted reporting and growing participation reshaped vulnerability discovery.
Category: eSecurity Planet
China Tightens Chip Design Rules, Raises Bar for IP Protection
China is tightening chip design protections with stricter registration rules, broader coverage, third-party challenges, and punitive damages.
Microsoft Warns Russian Hackers Use Hotel Wi-Fi to Steal Credentials
Microsoft warns Russian hackers are exploiting hotel Wi-Fi to deliver malware, steal credentials, and compromise corporate travelers’ cloud accounts…
Black Hat 2026: CrowdStrike Threat Hunting Report Findings
CrowdStrike’s 2026 Threat Hunting Report highlights how AI, identity attacks, and software supply chain threats are reshaping cyber risk.
New Google Password Manager Attacks Can Hijack Synced Passkeys
Three Pass-ta-key attacks show how malware on compromised Windows devices could hijack accounts protected by passkeys synced through Google Password…
DEF CON 2026: Flare Launches Free Dark Web Intelligence Training Platform
Flare’s free Darkroom platform provides hands-on, AI-powered dark web intelligence training.
Hackers Claim They Stole a Directory of 135,000 UK Police Contacts
A new hacking group claims it stole 135,000 records from a UK police platform, exposing contact details that could support phishing and impersonation.
GitHub Account Breach Fuels Shai-Hulud npm Supply Chain Attack
A compromised GitHub account fueled a supply chain attack, spreading credential-stealing malware across hundreds of packages.
Black Hat 2026: Improving CISO to Board Cyber Risk Reporting
A Pulse Security report finds that effective board cyber risk reporting depends more on governance than presentations.
AI Agent Harnesses Can Change Red Teaming Results
Lasso research finds AI agent harnesses can influence red teaming performance as much as the underlying LLM.
BSides 2026: How AI Agents Really Perform in Offensive Security
BSides 2026 research shows AI agent behavior reveals more than benchmark scores.
Coldcard RNG Flaw Linked to Suspected $88.6M Bitcoin Theft
A Coldcard RNG flaw may have exposed predictable wallet seeds linked to $88.6 million in suspected Bitcoin thefts across 4,585 addresses.
N-able N-central Vulnerability Under Active Exploitation
Threat actors are actively exploiting an N-able N-central vulnerability that can grant unauthenticated administrative access.
Amazon Links Four npm Supply-Chain Attacks to North Korea’s Sapphire Sleet
Amazon linked four npm supply-chain attacks to North Korea’s Sapphire Sleet, exposing the security risks posed by compromised maintainer accounts.
Anthropic Says Claude Found New Attacks on HAWK and Reduced-Round AES
Anthropic says Claude Mythos improved attacks on HAWK and reduced-round AES-128, though production encryption systems remain unaffected.
eSecurityPlanet Podcast: Semperis Global Field CTO Marty Momdjian
Identity systems sit at the center of enterprise security, but they are also one of the first places attackers look when launching ransomware and other…
FTC Sues Hims & Hers Over Alleged Privacy Violations, Subscription Practices
The FTC has sued Hims & Hers over allegations it shared sensitive health data with advertisers and used deceptive subscription practices. Here’s what…
ShinyHunters Claims Brinks Home Salesforce Data Theft
ShinyHunters claims it breached Brinks Home through a Microsoft Entra vishing attack.
Revolut Data Breach? Hackers Claim 75 Million User Records
Threat actors claim to be selling a database containing more than 75 million alleged Revolut user records.
Minnesota Water Utilities Hit by Coordinated Cyberattack
A coordinated cyberattack hit more than 30 Minnesota water utilities.