ShinyHunters claims it hacked the FBI and stole more than 2 TB of employee data – and this time it’s personal. The gang wants the Feds to correct the [...]
As AI opens new paths to company data while making familiar attacks faster and cheaper, SMBs need protection designed around the time and expertise [...]
Serial Microsoft zero-day leaker NightmareEclipse has found another way to mess with Windows Defender, this time by stopping the antivirus from updating [...]
Chinese AI giant Z.ai has apologized after developers caught it pulling a Grok, packaging up and uploading user workspaces to cloud storage. In a case [...]
A coalition of law enforcement and private-sector tech companies led by Microsoft have disrupted the EvilTokens phishing service, arresting suspected [...]
If you were in any doubt that AI agents are capable of complex autonomous work, that skepticism should have faded this summer. In July, news emerged that [...]
Chinese artificial intelligence company Z.ai had to disable several features of its ZCode coding assistant this week after a default setting was caught [...]
The agent harness I’m building, Bram, launches in a local git repository and requires that both git and gh (GitHub’s CLI) be installed. Agents can wield [...]
As a designer of enterprise-scale Azure landing zones, I’ve found that drawing a landing zone is fairly easy. However, building one that engineering teams [...]
The European Union is once again legislating sovereignty with its proposed Cloud and AI Development Act, or CADA. The legislation would establish a [...]
CISA has added CVE-2025-39964, a flaw in the Linux kernel’s built-in cryptography interface, to its list of vulnerabilities being used in real attacks.
Security researchers have shown how hidden instructions in an AWS AgentCore support ticket could push an AI agent into running commands as root and [...]
Despite the concern that advanced AI models’ bug-hunting prowess will lead to attackers exploiting more newly uncovered CVEs, fewer than 0.5 percent of the [...]
The US appears to be inching ever so slowly toward holding AI executives legally liable for their models’ criminal activities. Treasury Secretary Scott [...]
One thing that made it difficult for developers to switch AI coding tools on a project is that Anthropic’s Claude Code didn’t look for instructions in the [...]
Blocking suspicious install scripts may no longer be enough to mitigate threats from malicious JavaScript dependencies used in software supply-chain [...]
Clop has discovered what life is like on the receiving end of an extortion demand after rival crew ShinyHunters hijacked its leak site and demanded an [...]
The Rust project has warned that attackers appear to be targeting its contributors and crate owners in an attempt to compromise their devices and accounts, [...]