Talos has collected prompt logs from threat actor endpoints running various applications, such as Claude Code, CodeX, Cursor, or Gemini. This blog is an…
Tag: EN
Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks
Over 24,000 internet-accessible server-management interfaces disclose authentication hashes before login.
Apple Challenges New UK Encrypted Data Order
Apple confirms legal complaint against latest government effort to access UK users’ encrypted data stored in iCloud
Critical Gitea Flaw Lets Unauthenticated Attackers Read Server Files and Execute Code
A critical vulnerability in Gitea has been identified, potentially allowing unauthenticated remote attackers to read arbitrary files on vulnerable servers…
Legit Security VibeGuard 2.0 brings endpoint security and real-time guardrails to AI coding agents
Legit Security has unveiled VibeGuard 2.0, bringing a new endpoint security capability that seamlessly discovers and integrates with coding agents,…
DeepSeek V4-Flash Undercuts US AI Rivals
New lightweight DeepSeek AI model costs average of 105 times less per task than Claude Fable 5, benchmark tests find
Securonix enhances Unified Defense SIEM with AI agent detection and lower data costs
Securonix has announced expanded cybersecurity cost reduction, expanded Threat Analytics for Microsoft Sentinel, and new Governed AI Agent Detection and…
macOS CUPS Flaw Lets Local Attackers Write Arbitrary Files as Root
A recently disclosed privilege-related vulnerability in the Common UNIX Printing System (CUPS) on macOS could allow an unprivileged local user to create…
Uptime Kuma 2.5.0 waits two weeks before trusting a new npm package
Uptime Kuma checks whether a website, a Docker container, a DNS record, or a Steam game server is still answering, and pushes a message to Telegram,…
Tanium expands autonomous security across AI, exposure management and SecOps
Tanium has announced a series of new autonomous security capabilities across the Tanium Autonomous IT Platform. Spanning agentic AI, exposure management…
Critical Adobe Campaign Flaws Let Unauthenticated Attackers Execute Arbitrary Code
Adobe has released an urgent security update for Adobe Campaign Classic, addressing multiple critical vulnerabilities that could allow remote attackers to…
When Data Becomes Instructions: AI Agents Need a Chain of Custody for Context
A few weeks ago, an AI cyber evaluation produced an unexpectedly efficient strategy for solving a benchmark: the agents went looking for the answers.…
Mayor’s Office Tells Court ‘No Choice’ But To Block Palantir Deal
London mayor’s office tells High Court that Met Police provided ‘misleading’ information on procurement strategy, relations with Palantir
Fake AI Tools Target Developers With Infostealers to Steal Credentials and Cloud Secrets
A large-scale malware campaign targeting developers and AI users has been uncovered ,revealing how attackers are weaponizing fake AI tools and cloned…
UK’s Police National Legal Database Reveals Data Breach
The UK’s Police National Legal Database and Ask the Police service have been breached
150,000 Impacted by Madera Community Hospital Data Breach
An extortion group stole personal, financial, and medical information from the hospital’s network.
Microsoft shortens NuGet API key lifetime to improve supply chain security
Microsoft is reducing the lifetime of new NuGet.org API keys from 365 days to 30 days starting August 17, 2026, to improve the security of NuGet, its…
Norfolk Council Hacked During Election Count
Borough council of King’s Lynn and West Norfolk detects hack of IT systems on day staff were counting votes for PCC by-election
North Korean Hackers Are Hiding Malware Servers Inside Empty Crypto Transfers
North Korean-linked attackers are using a new way to hide the servers that control malware. The method places a command server address inside an empty…
Google Disables Earth AI Imagery Over Disinformation Risk
Google suspends AI image-generation feature in Google Earth over fears fake satellite images could be used for disinformation