#News


Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt

Aug 5, 2026 // 19:06

Cybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging platforms. One […]

Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports

Aug 5, 2026 // 19:05

Two security flaws in Paperclip could let attackers execute commands on a network server or a developer’s computer. Paperclip is an open-source control plane for […]

Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt

Aug 5, 2026 // 19:05

Cybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging platforms. One […]

How AI-powered phishing killed blocklists for good

Aug 5, 2026 // 17:17

Blocklists were already losing ground before AI entered the picture. Phishing domains have been getting shorter-lived for years, campaigns have been burning infrastructure faster, and […]

Leaked n8n API Tokens Exposed Live Instances to Credential Theft

Aug 5, 2026 // 14:55

GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive […]

Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup

Aug 5, 2026 // 14:55

An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, […]

Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk

Aug 5, 2026 // 14:55

Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device codes that victims […]

New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch

Aug 5, 2026 // 14:54

A memory corruption flaw in the Linux kernel’s Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured […]

New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root

Aug 5, 2026 // 14:35

cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database’s root context, crossing the privilege boundary between a cPanel […]

Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent

Aug 5, 2026 // 14:34

Google deleted three AI agent workflows from its Agent Development Kit (ADK) Python repository. Pillar Security showed that a public GitHub issue could manipulate a […]

Previous 1 58 59 60 61 62 353 Next