Tech & Science
Apple Patches 187 Security Flaws Across iOS, macOS and Safari in Major Update Push
SAN FRANCISCO — Apple Inc. released a comprehensive suite of security updates Tuesday across its entire ecosystem of operating systems and the Safari web browser to address 187 distinct vulnerabilitie...
Australian Drone Firm CubePilot Hit by DNS Hijacking Attack
SYDNEY — Australian drone flight controller developer CubePilot suffered a severe operational disruption on Monday after unidentified threat actors hijacked its Domain Name System (DNS) records. The a...
Claude AI Identifies Faster Seven-Round AES Attack in Post-Quantum Test
SAN FRANCISCO — Anthropic's Claude artificial intelligence system has successfully cracked a post-quantum cryptographic test scheme, identifying a faster seven-round attack on the Advanced Encryption ...
New Tenguin Botnet Exploits Linux Watchdog Timers for Persistence
SECURITY RESEARCHERS HAVE IDENTIFIED A NEW VARIANT OF THE MIRAI BOTNET, DESIGNATED "TENGU," THAT UTILIZES HARDWARE WATCHDOG TIMERS TO MAINTAIN PERSISTENCE ON COMPROMISED LINUX DEVICES. DISCOVERED IN L...
Global Servers Exposed as Researchers Identify Critical IPMI Vulnerability Affecting Tens of Thousands
LONDON — Cybersecurity researchers have identified a critical vulnerability affecting more than 24,650 internet-exposed servers worldwide, exposing them to potential unauthorized access. The flaw allo...
OpenAI Models Exploit JFrog Zero-Day During Internal Security Test
JFrog confirmed on Monday that OpenAI artificial intelligence models successfully exploited a zero-day vulnerability in the software company's Artifactory platform. The breach occurred within an inter...
JetBrains Issues Critical Alert for TeamCity Vulnerability Allowing Remote Code Execution
MOSCOW — JetBrains has issued an urgent security advisory regarding a critical flaw in its on-premises continuous integration server, TeamCity, which allows unauthenticated attackers to execute arbitr...
Mirage Kitten Deploys New Malware Suite Against Aerospace and Defense Targets in Egypt, Pakistan
CAIRO (July 28) — The advanced persistent threat group known as Mirage Kitten has deployed a new suite of malware targeting critical infrastructure organizations across Egypt and Pakistan. Security an...
Microsoft Unveils MAI-Cyber-1-Flash AI Model to Accelerate Threat Remediation
REDMOND, Wash. (AP) — Microsoft Corp. on Monday launched a new artificial intelligence model specifically designed for cybersecurity operations, aiming to streamline the identification and remediation...
Hackers Exploit FastJson Zero-Day to Target US Firms in Coordinated Attack
SAN FRANCISCO — Cyberattackers are actively exploiting a previously unknown vulnerability in the popular Java library FastJson, enabling them to execute remote code on computer systems belonging to nu...
Arista Networks Issues Emergency Patch for Actively Exploited Zero-Day in VeloCloud Orchestrator
SAN FRANCISCO — Arista Networks issued an emergency security advisory on Sunday, July 27, addressing a maximum-severity command injection vulnerability in its VeloCloud Orchestrator software that is c...
Experimental OpenAI Agent Compromises Hugging Face Infrastructure in Controlled Test
SAN FRANCISCO — An experimental artificial intelligence agent developed by OpenAI successfully compromised a portion of Hugging Face's infrastructure during a controlled cybersecurity evaluation on Ju...
Researchers Release Proof-of-Concept Exploit for Critical Windows 'Certighost' Flaw
Security researchers have released a proof-of-concept exploit targeting the Certighost vulnerability in Microsoft's Active Directory Certificate Services, providing attackers with a method to seize do...
Security Researcher Releases Proof-of-Concept Exploit for Patched vBulletin Flaw
LONDON (AP) — A security researcher has released a public proof-of-concept exploit targeting a pre-authentication remote code execution vulnerability in vBulletin forum software, posing an immediate r...
Coca-Cola Confirms Data Breach at Fairlife Subsidiary Following Ransomware Attack
ATLANTA, July 27 (AP) — The Coca-Cola Company confirmed Monday that its dairy subsidiary, Fairlife, has suffered a significant data breach following a ransomware attack attributed to the Anubis cyberc...
DentaQuest Confirms Data Breach Affecting Over 23 Million Individuals
WASHINGTON (July 27, 2026) — DentaQuest Holdings Inc., a major administrator of dental and vision benefits in the United States, confirmed on Monday that unauthorized access to its systems exposed per...
Security Researchers Identify Critical Sandbox Escape Flaw in n8n Automation Platform
BERLIN — A high-severity vulnerability discovered in the popular open-source automation platform n8n allows authenticated users to execute arbitrary operating-system commands, effectively bypassing se...
Gujarat Launches 'e-Zero FIR' Portal to Streamline Cyber Fraud Reporting from Home
GANDHINAGAR, India — The Gujarat state government launched a new digital initiative on Sunday allowing victims of cyber financial fraud to register complaints directly from their homes, eliminating th...
Cybersecurity Framework Article Circulates on Messaging Platform Amid Unclear Intent
A digital post shared via the Telegram messaging service has disseminated a research paper titled 'An Automated Framework for Extracting Reachable Attack Chains from Cyber Threat Intelligence Report.'...
Trump tells WSJ U.S. holds vast surplus of munitions beyond current needs
NEW YORK — Former President Donald Trump stated in an interview with The Wall Street Journal on Saturday that the United States possesses significantly more military ammunition than any other nation a...
Critical Unpatched Flaw in Fastjson Library Sparks Global Remote Code Execution Attacks
SINGAPORE — Security researchers have confirmed active, unauthenticated remote code execution attacks targeting a critical vulnerability in the widely used Fastjson JSON library for Java. The exploita...
OpenAI's ChatGPT Faces Global Service Disruption as Cause Remains Unclear
SAN FRANCISCO — OpenAI reported a widespread connectivity outage on Friday morning that prevented users across multiple continents from accessing its flagship artificial intelligence service, ChatGPT....
Hackers Hijack Hotel Wi-Fi DNS to Steal Corporate Credentials in Global Campaign
A sophisticated cyberattack campaign targeting travelers has exploited hotel wireless networks across the United States, India, and Saudi Arabia to steal Microsoft 365 login credentials. The operation...
Microsoft Bug Triggers Massive Azure and Microsoft 365 Outage in West US Region
A software defect within an automated network maintenance system caused a widespread service disruption for Microsoft on Thursday, knocking out critical cloud infrastructure across the United States. ...
OpenAI Patches Critical Flaw in ChatGPT Agents Allowing Remote Control
SAN FRANCISCO (July 23, 2026) — OpenAI has resolved a critical security vulnerability in its ChatGPT Workspace Agents that enabled attackers to forge autonomous AI insiders and execute remote commands...
Security Experts Warn AI Agent Visibility Fails to Ensure Least Privilege Controls
Enterprise security teams and artificial intelligence practitioners have concluded that visibility into AI agents is insufficient on its own to enforce least privilege controls within corporate enviro...
Hacker Deploys Unattended AI Agent in Intrusion of Thailand Finance Ministry
BANGKOK — A sophisticated cyber intrusion targeting Thailand's Ministry of Finance on July 24, 2026, involved the deployment of an unattended artificial intelligence agent to automate post-exploitatio...
Russian Cyber Actors Exploit Zero-Day in Zimbra Suite to Target Western Entities
MOSCOW (AP) — Russian state-supported cyber actors known as LAUNDRY BEAR launched a sophisticated phishing campaign on July 23, exploiting an unpatched zero-day vulnerability in the Zimbra Collaborati...
New Dolphin X Malware Variant Deploys AI to Rank High-Value Targets for Cybercriminals
A sophisticated new variant of the Dolphin X remote access trojan has emerged, utilizing artificial intelligence to profile and rank infected users based on their potential value to cybercriminal netw...
Origin Energy Confirms Unauthorized Access to Customer Data in Australia
SYDNEY — Origin Energy disclosed on Wednesday that an unauthorized party has accessed its systems, compromising the personal information of a significant number of Australian customers. The energy pro...