Tech & Science
Major Cybersecurity Firms Join SE Labs' New PIVOT Testing Program Amid Industry Shifts
LONDON, Sept. 17 (AP) — A coalition of leading cybersecurity vendors, including CrowdStrike, Palo Alto Networks, Sophos, Fortinet and Broadcom's Symantec and Carbon Black units, has joined a new indep...
Global cyber-attack costs average $52,000 per incident, Hiscox report finds
LONDON (AP) — The average cost of a single cyber-attack incident has reached $52,000 globally, according to the Hiscox Cyber Readiness Report 2026 released Wednesday. The findings highlight a persiste...
Judge Orders Transfer of Radaris Domains to Privacy Group Over New Jersey Law Violation
NEWARK, N.J. (AP) — A New Jersey judge has ordered the transfer of Radaris.com and more than a dozen other data broker domains to Atlas Data Privacy Corp following a lawsuit alleging violations of sta...
CISA Urges Critical Infrastructure to Deploy Cyber Decoys as Defense Strategy
WASHINGTON — The Cybersecurity and Infrastructure Security Agency (CISA) issued new guidance on Tuesday advising owners and operators of critical infrastructure to deploy phony systems, accounts, and ...
Microsoft Windows 11 Update Disrupts Enterprise Domain Logins Globally
REDMOND, Wash. — A recent security update for Windows 11 has disrupted domain trust relationships on enterprise systems worldwide, preventing many users from logging in with valid corporate credential...
New 'BragJack' Attack Exploits Browser AI Agents to Compromise Systems
A novel cybersecurity threat known as the BragJack attack has emerged, capable of subverting artificial intelligence agents embedded within web browsers to act against their intended functions. The vu...
Critical Flaw in Parallels Desktop Allows Local Users to Gain Root Access on Macs
SAN FRANCISCO — A critical security vulnerability discovered in Parallels Desktop for Mac allows non-administrator local users to gain full root access on affected systems, posing a significant risk t...
Spanish Data Agency Reports Breach by Autonomous AI Agent Targeting Financial Records
MADRID — The Spanish Data Protection Agency (AEPD) confirmed on Tuesday that an unknown threat actor deployed an autonomous artificial intelligence agent to breach a private organization's systems, ac...
Critical Flaw in Issabel Framework Allows Unauthenticated Remote Code Execution
UNIDENTIFIED ATTACKERS have exploited a critical security vulnerability in the Issabel Framework, an open-source unified communications platform, to execute operating system commands without authentic...
Security Researchers Demonstrate AI Assistant Hijack Vulnerability Across Chromium Browsers
WASHINGTON — Security researchers at Forever Security demonstrated on Tuesday that a single malicious browser extension can hijack artificial intelligence assistants embedded in five major Chromium-ba...
AI Coding Session Hijacked in Major SaaS Breach Spreading New Worm
An unidentified attacker hijacked an active artificial intelligence coding assistant session at a major software-as-a-service provider on Tuesday, stealing authentication credentials and deploying a n...
Google Issues Emergency Patch for Pixel Modem Zero-Day Exploited in Targeted Attacks
SAN FRANCISCO — Google released a critical security update on Tuesday for its line of Pixel smartphones to address a high-severity zero-day vulnerability in the cellular modem, following confirmation ...
Microsoft Investigates Missing Copilot Buttons in Classic Outlook Following Update
REDMOND, Wash. — Microsoft is investigating a technical issue causing the disappearance of Copilot buttons within the Classic Outlook application for some Windows users following a recent software upd...
Stellar Cyber and ESET Launch Joint AI-Driven Threat Intelligence Initiative
SAN FRANCISCO — Stellar Cyber and ESET announced on Tuesday a strategic partnership to integrate premium threat intelligence directly into artificial intelligence-driven security operations, marking a...
Three Cyber Groups Launch Coordinated Attacks on Russian Enterprises
MOSCOW — Three distinct cyber threat groups launched a series of coordinated attacks against Russian enterprises on Monday, deploying backdoors, ransomware, and destructive wiper malware. The operatio...
EU Chief Warns of AI Hacking Threats, Proposes Stricter Social Media Rules for Children
BRUSSELS (AP) — European Commission President Ursula von der Leyen issued a stark warning on Tuesday regarding the escalating dangers of artificial intelligence-powered cyberattacks and announced a co...
Oracle Deploys Critical Patch for Over 800 Software Vulnerabilities
REDWOOD SHORES, Calif. — Oracle Corp. released a critical security patch update on Tuesday, addressing more than 800 vulnerabilities across its global software portfolio in an effort to prevent exploi...
Microsoft Windows Server 2022 Mainstream Support Ends in 2026
REDMOND, Wash. — Microsoft announced that mainstream support for Windows Server 2022 will conclude on October 13, 2026, marking a significant milestone in the operating system's lifecycle. Following t...
Google Issues Emergency Patches for Pixel Devices Amid Active Zero-Day Exploitation
SAN FRANCISCO (AP) — Google released critical security updates on Tuesday for its line of Pixel smartphones to address a high-severity vulnerability in the cellular modem that is currently being explo...
Global WSO2 Users Face Active Exploitation of Critical JWT Flaw
WASHINGTON (Sept. 16, 2026) — Security researchers have confirmed active exploitation attempts targeting a critical vulnerability in WSO2 API Manager products that allows attackers to forge administra...
Acronis Warns of Active Exploitation in Linux Backup Plugin Vulnerability
ZURICH (AP) — Acronis disclosed on Monday that a high-severity security vulnerability in its backup plugin for Linux-based web hosting platforms is being actively exploited by attackers. The flaw, whi...
Major AI Firms Use Contractor Reviews to Refine Chatbot Models
SAN FRANCISCO — Leading artificial intelligence developers OpenAI, Anthropic, and Perplexity are employing human contractors to review user prompts and model responses as part of ongoing efforts to re...
Critical Vulnerability in WooCommerce Plugin Allows Hackers to Upload Malicious Code
Global e-commerce sites running a specific premium WordPress plugin face an immediate threat after hackers exploited a critical security flaw to upload malicious code and seize control of websites. Th...
Malicious Update to WordPress Plugin Compromises Over 1,500 Sites
A threat actor compromised the official website for the Admin Menu Editor Pro WordPress plugin on Sept. 15, 2026, distributing malicious software updates that infected more than 1,500 websites globall...
CenterPoint Energy Confirms Data Breach Affecting Customers Across Four States
HOUSTON — CenterPoint Energy confirmed Monday that a cyberattack compromised the personal information of customers in Texas, Indiana, Minnesota and Ohio after an unauthorized third party accessed one ...
China-Aligned Actors Deploy BambooToken Malware Using MQTT Protocol
A previously unknown malware framework known as BambooToken has been identified targeting Windows and Linux systems across Asia, South America, Lithuania, and Hong Kong. The operation, attributed to C...
U.S. Cybersecurity Budgets Remain Flat as AI Spending Takes Priority
NEW YORK, Sept. 15 (IANS) — Artificial intelligence has emerged as the top priority for cybersecurity spending in the United States, even as overall budgets remain stagnant amid economic headwinds. Co...
Fenix24 Report Reveals Widespread Ransomware Recovery Failures Among Clients
SEPTEMBER 15, 2026 — A comprehensive analysis released Monday by cybersecurity firm Fenix24 indicates that the vast majority of organizations are failing to meet their ransomware recovery objectives, ...
Russian Cyber Group Sandworm Deploys Upgraded Botnet Targeting Cisco Infrastructure
MOSCOW — The Russian cyber threat group known as Sandworm is actively spreading an upgraded version of its botnet malware, utilizing a chain of vulnerabilities in Cisco systems to deploy the Cyclops B...
Microsoft Unveils Draft AI Code Mandating Human Oversight and Shutdown Compliance
REDMOND, Wash. — Microsoft Corp. unveiled a draft artificial intelligence code of conduct on Sunday requiring its systems to never resist shutdown commands and prioritizing human oversight over autono...