There is no new OWASP list in 2026: the Top 10:2025 is the current standard. All 10 risks explained, what changed since 2021, ...
NemoClaw vulnerability CVE-2026-65105 lets a single malicious webpage permanently rewrite a local AI agent's chat template ...
In late July, Oracle released a mammoth security patch dump with 1,449 patches, in a perhaps unprecedented bad day for ...
An AI-driven attack that compromised Asian government systems, cracked 85 accounts, and stole 2,500+ personnel records.
A suspected near-autonomous intrusion campaign that compromised government entities in Asia, cracking 85 employee accounts ...
Just days after the disclosure of the almost perfect 10 vulnerability CVE-2026-19478, hackers are already on the warpath.
Attackers exploit CVE-2026-73570 on Zimbra servers with zimbra-snmp installed and SNMP notifications enabled, allowing ...
Research from Threatdown highlights that cybercriminals are weaponizing frontier AI models like Grok to commit cybercrime.
ThreatDown, the business security arm of Malwarebytes Inc., said in new research published today that Kriminal, one of the ...
A weekly look at exploited flaws, exposed systems, supply-chain attacks, browser abuse, malware campaigns, and the security risks that mattered most.
Glimmer stakes out different ground: a dense model with native vision input, trained end-to-end around the agent loop, ...
Enterprise AI workspace security gets a new open-source option: Cloudflare OS is a free, self-hostable platform where AI agents receive scoped capability objects instead of raw API keys -- making ...