OpenAI has introduced Ultrafast, a new service tier for GPT-5.6 Sol that it says can run up to 14× faster than Standard processing. The feature launches…
Tag: Cyber Security News
AI Token Jacking Lets Hackers Steal API Keys and Rack Up Nearly $1 Million in Charges
AI credentials are drawing criminal attention. A growing form of abuse, called AI token jacking, lets intruders take API keys and consume expensive model…
GeoServer 0-Day Vulnerability Enables Remote Code Execution Attacks
A newly disclosed zero-day vulnerability in GeoServer is being targeted by attackers, raising concern for organizations that publish or manage geospatial…
The Endpoint-to-Cloud Privilege Security Checklist: 21 Controls to Eliminate Standing Access
PAM secured the endpoint; privilege moved on. Work through these 21 controls to find out where standing access is accumulating in your cloud, SaaS, and AI…
Download More RAM Attack Bypasses Windows VBS and Disables Defender Through Memory Aliasing
A new attack dubbed “Download More RAM” can bypass Windows Virtualization-Based Security (VBS), weaken Hypervisor-Enforced Code Integrity (HVCI), and…
Aeternum Botnet Uses Polygon Smart Contracts for Takedown-Resistant Malware C2
Aeternum is a new botnet loader designed to resist takedowns. It stores instructions on Polygon, a public blockchain, creating a widely replicated control…
Top 10 Best Microsegmentation Tools in 2026
Microsegmentation tools stop attackers from moving sideways. Once ransomware operators land on one machine, everything that follows credential harvesting,…
10 Best Secure Web Gateway Vendors In 2026
A secure web gateway inspects outbound web traffic blocking malicious sites, enforcing acceptable-use policy, decrypting TLS, and stopping malware before…
New DRAM Scrambling Attack Exposes CPU’s Most Protected Memory Zones
A new attack technique that manipulates a computer’s memory controller to bypass some of the strongest hardware security boundaries built into modern…
Apple Urges Mercenary Spyware Targets to Enable Lockdown Mode Immediately
Apple has quietly rolled out a new wave of high-confidence “Apple Threat Notification” alerts, warning selected iPhone users in 110 countries that their…
Beacon CRM Confirms Full Database Theft After AWS Access Key Breach
Beacon, the customer relationship management (CRM) platform relied on by over a thousand UK charities and non-profit organizations, has confirmed that a…
AmnesiaStealer macOS Malware Hijacks Browser Sessions via Fake GitHub Lure
A newly identified macOS infostealer called AmnesiaStealer is spreading via a convincing fake GitHub download page, tricking Mac users into pasting a…
Fortinet Patches Multiple Authentication Vulnerabilities in FortiWeb, FortiManager, and FortiClient
Fortinet has rolled out fixes for a batch of authentication-related vulnerabilities across its FortiWeb, FortiManager, and FortiClient product lines,…
North Korean IT Workers Use AI-Forged IDs and Remote Desktops to Become Trusted Employees
A joint undercover investigation has pulled back the curtain on how North Korean IT worker operatives don’t just slip past hiring checks; they settle in,…
Microsoft Exchange Server Vulnerabilities Enable DoS, Privilege Escalation, and RCE Attacks
Microsoft has released security updates for multiple Exchange Server vulnerabilities that could allow denial-of-service, privilege escalation, remote code…
Trezor ShipMonk Data Breach Exposes Personal Data of Over 13,000 Hardware Wallet Customers
A third-party logistics breach has put thousands of Trezor hardware wallet buyers at higher phishing risk, even though Trezor’s own systems and devices…
Hackers Actively Exploiting Microsoft SharePoint Vulnerability Following PoC Release
Threat actors have wasted no time weaponizing a newly disclosed Microsoft SharePoint authentication bypass, launching real-world attacks against…
1 Tbps DDoS Attacks Become the New Normal as Cloudflare Reports Record H1 Activity
Cloudflare has reported a sharp rise in large-scale distributed denial-of-service attacks during the first half of 2026, blocking 935 network-layer…
Gunra Uses Stolen Sessions and RDP to Pivot Into Active Directory and IT Workstations
Gunra ransomware has moved from a new name to a serious enterprise threat in a short time. The group breaks into exposed edge devices, steals valuable…
Thousand of Internet-Exposed Contollers Could Put Data center Cooling and Power at Risk
Thousands of internet-exposed building controllers may be putting the physical backbone of U.S. data centers at risk. They manage cooling, electrical…