Apple announced that dozens of vulnerabilities have been patched in each of its operating systems.
Category: securityweek
OT Security Startup Frenos Raises $1.52 Million
The company will use the fresh investment to grow its customer success and AI R&D teams.
Act Security Emerges from Stealth to Fight the Patch Problem
Act Security tackles the spiraling patch problem caused by AI’s ability to find new vulnerabilities in existing cloud environments.
Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker
Tal Kollander’s history divides neatly into two halves: first as an active hacker and then as the block that stops hacks.
Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model
The company claims MAI-Cyber-1-Flash tops Anthropic’s Mythos and OpenAI’s GPT-5.6 Sol in CyberGym testing.
Hush Security Raises $30 Million for AI Agent Governance
The startup will invest in expanding engineering and sales teams, accelerating ecosystem support, and expanding corporate partnerships.
Google Adopts New Threat Actor Naming System
The new two-word naming convention uses a memorable term utilized in public reporting and a cluster-categorization word. This article has been indexed from SecurityWeek Read the original article: Google Adopts New Threat Actor Naming System
Unpatched Fastjson Vulnerability Exploited in Attacks
The critical remote code execution bug can be exploited without authentication, under the library’s stock default configurations. This article has been indexed from SecurityWeek Read the original article: Unpatched Fastjson Vulnerability Exploited in Attacks
Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day
Impacting on-premises deployments, the OS command injection allows attackers to access privileged internal functionality. This article has been indexed from SecurityWeek Read the original article: Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day
Origin Energy Data Breach Affects 900,000 Australians
The hacker claimed to have stolen the information of 2 million Origin Energy customers after breaching its systems. This article has been indexed from SecurityWeek Read the original article: Origin Energy Data Breach Affects 900,000 Australians
For Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup
Decades after it appeared in “The Terminator,” Skynet looks more like a forecast of the cyber incident in which a rogue AI system hacked into another AI company on its own. This article has been indexed from SecurityWeek Read the…
New GitHub, PyPI Policies Boost Supply Chain Security
Dependabot gets a three-day cooldown window before opening pull requests, and PyPI rejects file uploads to releases older than 14 days. This article has been indexed from SecurityWeek Read the original article: New GitHub, PyPI Policies Boost Supply Chain Security
MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection
The malware-as-a-service operation launches legitimate browsers on an invisible desktop, giving attackers persistent and covert remote access to compromised Windows systems. This article has been indexed from SecurityWeek Read the original article: MedusaHVNC Malware Uses Hidden Windows Desktops to Evade…
PTC Windchill Vulnerability Exploited in Ransomware Campaign
The critical unsafe deserialization flaw allows attackers to execute arbitrary code remotely, without authentication. This article has been indexed from SecurityWeek Read the original article: PTC Windchill Vulnerability Exploited in Ransomware Campaign
Nvidia and Tech Giants Launch AI Security Alliance
The Nvidia-led coalition aims to give defenders more open tools for testing, auditing and protecting AI models and agents. This article has been indexed from SecurityWeek Read the original article: Nvidia and Tech Giants Launch AI Security Alliance
Beelzebub Raises $3.4 Million for Hacker-Trapping Platform
The company plans to expand its research team, open new offices in Rome and San Francisco, and acquire new clients. This article has been indexed from SecurityWeek Read the original article: Beelzebub Raises $3.4 Million for Hacker-Trapping Platform
Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack
The Anubis cybercrime group has taken credit for the attack and is threatening to leak data. This article has been indexed from SecurityWeek Read the original article: Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack
What’s Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out
The new Mobile Security Exposure Center creates SBOMs for enterprise mobile apps to uncover vulnerable components, dependencies and hidden risks. This article has been indexed from SecurityWeek Read the original article: What’s Hiding in Your Mobile Apps? Lookout MSEC Aims…
Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials
A threat actor has been using the compromised appliances to target the Microsoft 365 accounts of traveling corporate employees. This article has been indexed from SecurityWeek Read the original article: Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials
Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits
Binary-based vulnerability scanning, penetration testing, and exploit generation are blocked in Opus 5. The post Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits appeared first on SecurityWeek. This article has been indexed from SecurityWeek…