Security teams are building custom AI agents to improve defense, close tooling gaps, and automate workflows, but strong governance remains critical.
Category: eSecurity Planet
Google’s Chrome Update Patches Sixth Zero-Day Exploited in 2026
Google patched CVE-2026-85046, the sixth Chrome zero-day exploited in the wild in 2026. Here’s how to update your browser and stay protected.
CVE-2026-19949 Leaves Millions of WordPress Sites Running Vulnerable Plugin Versions
A high-severity flaw in All-in-One WP Migration leaves 3.25 million WordPress sites exposed, with vulnerable versions potentially leading to site…
Dropbox Says Lenovo ID Flaw Compromised 5,000 Accounts
A Lenovo ID verification flaw let attackers compromise 5,000 Dropbox accounts without passwords. Learn what happened and how users can stay protected.
AI Attack Surfaces and Supply Chain Threats Define the Week
Weekly summary of Cybersecurity Insider newsletters
CISA Adds 7 Exploited Flaws as Attackers Target AI Infrastructure
CISA added seven exploited flaws to its KEV catalog, including LiteLLM, Kestra, Starlette, and SonicWall vulnerabilities under active attack.
Coder Registry Compromise: Malicious Terraform Modules Explained
Coder’s compromised module registry served malicious Terraform modules that stole cloud, CI/CD, AI, and SSH credentials during a 14-hour attack window.
Aesto Health Breach Exposes Data of More Than 9.5 Million People
Aesto Health says a December 2025 cyberattack affected more than 9.5 million people, potentially exposing medical, financial and identity data.
X Users Are Getting Flooded With Password Reset Emails After X Money Launch
X users are reporting repeated password-reset emails after the X Money launch, raising concerns about phishing and potential account takeover attempts.
Sangoma Switchvox Flaw Under Attack: 4,000 VoIP Systems Exposed
Hackers are exploiting a critical Sangoma Switchvox flaw that enables unauthenticated remote code execution. Admins should patch and check for compromise.
FBI Investigates Dark Web Trove of 153 Million Driver’s Licenses
The FBI is investigating a dark web service claiming to sell 153 million driver’s license records from people across the US and Canada.
Manchester Airport Breach: What 8.7M Customers Should Do
Manchester Airports Group customer data is now public. Here’s what was exposed, why it raises scam risks, and what affected travelers should do next.
SonicWall SMA1000 Zero-Days Under Active Attack: Patch Now
SonicWall says attackers are actively exploiting two SMA1000 vulnerabilities that can be chained for unauthenticated remote code execution.
Critical Cisco Nexus 9000 Flaw Allows Remote Root Code Execution
Cisco disclosed a critical Nexus 9000 flaw that can allow unauthenticated remote attackers to execute code as root on affected switches.
CrowdStrike FalCon 2026: AI Is Changing the Speed of Cybersecurity
CrowdStrike FalCon 2026 showed how autonomous AI is forcing cybersecurity to move faster.
CrowdStrike and NVIDIA Launch Dual-Use Cybersecurity AI
CrowdStrike SafeMind pairs offensive and defensive AI models in a closed loop designed to test attack paths and strengthen enterprise cyber defenses.
CrowdStrike Disrupts Sality Botnet After More Than 20 Years
CrowdStrike and international partners disrupted the 20-year-old Sality botnet, cutting off its operator.
Five Men Tried to Make Kansas ATMs Spit Out Cash
Five men pleaded guilty after targeting Kansas ATMs with jackpotting malware as the FBI warns of a nationwide rise in attacks and financial losses.
Wiz Finds Active LiteLLM and MCP Attacks Targeting AI Infrastructure
Wiz observed active attacks on LiteLLM and MCP servers, including credential theft, cryptomining, command execution, and prompt injection.
Anthropic Tightens Claude Security After Agents Access Live Systems
Anthropic adds real-time monitoring, hardened sandboxes, and stricter training controls after Claude agents accessed live computer systems during tests.
