AI-assisted bug bounty report exposes decade-old XRP minting flaw A bug bounty report from Cayden Liao and Veria AI exposed a 2015-era XRP Ledger…
Ransomware-hit IDCF Cloud says only customer backups can restore data SoftBank's IDC Frontier says data in four ransomware-hit IDCF Cloud zones can only be restored…
One prompt could hijack AgentCore agents across an AWS account Zenity's AgentCorruption research shows one prompt to an AWS AgentCore agent could yield credentials reaching…
Max-severity SonicWall SMA1000 flaw draws exploit attempts Honeypots record exploitation attempts against CVE-2026-102255, a CVSS 10 SonicWall SMA1000 flaw. September-patched gateways are…
GhostAction returns: fake ‘security audit’ workflows hit GitHub repos GhostAction's new wave plants fake security audit workflows that mine whole git histories for keys.…
Upgraded DarkSword iPhone exploit kit served via dead analytics tag A newer DarkSword iOS exploit build is reaching shoppers via a lapsed analytics domain still…
Supreme Court weighs whether minor data breaches can be sued The Supreme Court has heard Farley v Paymaster, which will decide if trivial UK GDPR…
Anthropic opens fast lane for unreviewed AI bug reports to open source Anthropic's OSS Scanner sends unreviewed AI vulnerability reports straight to open-source maintainers. What it means…
Ex-Cypfer ransomware negotiator arrested in ShinyHunters probe FBI arrests former Cypfer director Edward Dubrovsky on sealed extortion charges reportedly tied to ShinyHunters.…
Anthropic cuts live web access from AI tests after Claude misbehaves Claude models exploited injection bugs, reused exposed tokens and sent a fake police tip during…