darkreading Public RSS feed
- [Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AIen 12 de noviembre de 2026
- [Virtual Event] Building a Secure AI Strategy for the Enterpriseen 8 de octubre de 2026
- Indonesia Hit by Android Banking App-Cloning Campaignen 11 de septiembre de 2026
The GoldFactory threat group exploits the Android Work Profile feature to deliver the Gigabud Trojan, while Mantax Otax spreads separately.
- Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Dataen 10 de septiembre de 2026
Threat actors are leveraging Microsoft's Graph API to identify lucrative targets, then passing their access to extortion groups like ShinyHunters.
- Nightmare-Eclipse Strikes Again With 'ShieldCrash' Windows Exploiten 10 de septiembre de 2026
The disgruntled researcher continued their vendetta against Microsoft by publishing yet another zero-day exploit for Windows Defender.
- EU Cyber Resilience Act to Enforce New Reporting Requirementsen 10 de septiembre de 2026
Starting Friday, European organizations will have just 24 hours to notify the EU government any time they discover serious product security incidents.
- Mythos Vulnerability Firehose Hits a Human Bottlenecken 9 de septiembre de 2026
An analysis of Project Glasswing findings shows only a fraction of the bugs it has discovered have reached disclosure, and an even smaller number have been […]
- US Government Accuses Chinese AI Firms of Distilling Frontier Modelsen 9 de septiembre de 2026
US agencies claim Chinese companies covertly extracted billions of tokens from OpenAI, Anthropic, Google Gemini, and SpaceX's Grok to reduce development costs.
- Identity-Based AI Attack Threatens Security of Enterprise Dataen 9 de septiembre de 2026
"Workflow identity hijacking" can bypass standard security controls and hijack an organization's data by sending a basic request through an unauthenticated […]
- Patch Tuesday Sets Another Record With 974 CVEsen 8 de septiembre de 2026
Attackers are actively exploiting two of the vulnerabilities, and another 58 are more likely to be exploited, according to Microsoft.
- Attackers Use Multi-Hop Google Redirects for Phishing Campaignen 8 de septiembre de 2026
Threat actors are abusing multiple Google services to evade detection, ultimately harvesting credentials or installing ScreenConnect remote access.
- OpenAI Agents Took Over Wiki Site Before Hugging Face Attacken 8 de septiembre de 2026
Researchers and OpenAI disagree on whether an earlier incident involving DseWiki, which the company did not disclose, was a “hack."
- ClickFix Campaigns Abuse Legitimate Services for Persistent Accessen 8 de septiembre de 2026
Two separate attacks demonstrate how threat actors are finding new ways to compromise organizations by using the popular social engineering tactic.
- Cybercriminals Hack Brazilian Government Servers to Host Phishing Sitesen 8 de septiembre de 2026
A Chinese-language group is compromising government and education sites to create a reverse-proxy network with gambling-themed sites.
- Companies Have 6 Months to Prepare for Automated Attacksen 4 de septiembre de 2026
Frontier AI models have already demonstrated they can autonomously — and in some cases, inadvertently — conduct end-to-end compromises, but researchers […]
![[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI](https://eu-images.contentstack.com/v3/assets/blt6d90778a997de1cd/bltaff0d27801ea21af/6a92220704334b0b8d8445e9/DR-Cloud-AI-VE-2026.jpg?width=720&quality=80&disable=upscale)
![[Virtual Event] Building a Secure AI Strategy for the Enterprise](https://eu-images.contentstack.com/v3/assets/blt6d90778a997de1cd/blt11afeac15e7adbb9/6a921187f8aef68330d6ae57/DRIW-AI-Strategy-VE-Oct26.jpg?width=720&quality=80&disable=upscale)


_Andriy_Popov_Alamy.png?width=720&quality=80&disable=upscale)



_ber1a_Alamy.png?width=720&quality=80&disable=upscale)




