2026

Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes

Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes 2026-08-26 at 08:47 By Cybersecurity researchers have disclosed details of a phishing-as-a-service (PhaaS) platform built to strip Apple’s Activation Lock from stolen devices, using rented AI voice agents that call theft victims posing as Apple Support and ask for their device passcode. […]

Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes Read More »

Production data in testing is still common, and Tricentis’ CISO wants it gone

Production data in testing is still common, and Tricentis’ CISO wants it gone 2026-08-26 at 08:30 By Mirko Zorz In this Help Net Security interview, Erika Dean, CISO at Tricentis, talks about keeping production data out of test environments and why she thinks the alternatives are good enough now. She explains how her team caught […]

Production data in testing is still common, and Tricentis’ CISO wants it gone Read More »

CISA Warns of Exploited Gitea Vulnerability

CISA Warns of Exploited Gitea Vulnerability 2026-08-26 at 08:17 By Eduard Kovacs CVE-2026-60004 is a remote code execution vulnerability patched by Gitea developers in late July with the release of version 1.27.1. The post CISA Warns of Exploited Gitea Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Warns of Exploited Gitea Vulnerability Read More »

AI vulnerability discovery scores the highest impact of 20 emerging risks

AI vulnerability discovery scores the highest impact of 20 emerging risks 2026-08-26 at 08:00 By Anamarija Pogorelec Risk managers, auditors and senior executives at 316 companies spent April and May ranking 20 threats they have not yet felt. AI discovery of cyber vulnerabilities came back first, according to Gartner. Three months earlier the same quarterly […]

AI vulnerability discovery scores the highest impact of 20 emerging risks Read More »

Hottest cybersecurity open-source tools of the month: August 2026

Hottest cybersecurity open-source tools of the month: August 2026 2026-08-26 at 07:30 By Anamarija Pogorelec Presented here is a curated selection of noteworthy open-source cybersecurity solutions that have drawn recognition for their ability to enhance security postures across diverse settings. SkillSpector: NVIDIA’s open-source security scanner for AI agent skills SkillSpector is an open-source scanner from […]

Hottest cybersecurity open-source tools of the month: August 2026 Read More »

U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches

U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches 2026-08-26 at 04:02 By The U.S. Department of the Treasury has announced fresh sanctions on Iranian cyber actors as part of what it called an “unprecedented, whole-of-government, economic campaign” against the nation and its enablers. “We are launching an economic onslaught against Iran’s financial connections around the […]

U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches Read More »

WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android

WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android 2026-08-25 at 22:03 By Meta on Tuesday announced a set of WhatsApp account security features, including support for multiple passkeys to a single account to help users with both iOS and Android devices sign into their accounts using the phishing-resistant method. The tech giant […]

WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android Read More »

Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode

Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode 2026-08-25 at 22:03 By Marimo has addressed a high-severity security flaw in its notebook software that allowed an attacker to execute an attacker-supplied Model Context Protocol (MCP) command in a specially crafted notebook, according to VulnCheck’s CVE Numbering Authority (CNA) record. The […]

Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode Read More »

Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation

Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation 2026-08-25 at 19:23 By Eduard Kovacs TRACE was developed by AMD, Intel, Microsoft, OPAQUE, and TII and contributed to the Linux Foundation. The post Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation appeared first on SecurityWeek. This article is […]

Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation Read More »

Energy Disruption in UK Critical Infrastructure and the Growing OT Cyber Threat

Energy Disruption in UK Critical Infrastructure and the Growing OT Cyber Threat 2026-08-25 at 18:27 By Nikita Kazymirskyi A cyber incident affecting a small UK electricity generator in July 2026 resulted in several days of operational unavailability and triggered a government and NCSC response. UK authorities confirmed that the event posed no threat to the […]

Energy Disruption in UK Critical Infrastructure and the Growing OT Cyber Threat Read More »

When Cyber Meets Physical: Rethinking Data Management for a New Threat Landscape

When Cyber Meets Physical: Rethinking Data Management for a New Threat Landscape 2026-08-25 at 18:00 By Organizations need more than perimeter defenses — they need a comprehensive data resilience strategy that combines access controls with immutable backups and recovery capabilities. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source

When Cyber Meets Physical: Rethinking Data Management for a New Threat Landscape Read More »

Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails

Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails 2026-08-25 at 17:11 By SecurityWeek News The company, previously known as ActiveFence, has raised a total of $280 million from investors. The post Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails appeared first on SecurityWeek. This article is an excerpt from […]

Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails Read More »

A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw

A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw 2026-08-25 at 17:07 By Oasis Security has disclosed a weakness in NVIDIA NemoClaw that could let an attacker-controlled webpage take unauthenticated control of the local Ollama instance serving an AI agent and plant hidden instructions inside the model itself. The findings were shared […]

A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw Read More »

INTERPOL crackdown on West African crime rings uncovers troubling new trend

INTERPOL crackdown on West African crime rings uncovers troubling new trend 2026-08-25 at 17:01 By Sinisa Markovic Police across 22 countries arrested 58 people and identified 263 suspects during an eight-month INTERPOL operation targeting West African organized crime groups. Suspects detained in an operation targeting West African crime groups (Source: INTERPOL) Operation Jackal IV ran […]

INTERPOL crackdown on West African crime rings uncovers troubling new trend Read More »

The Double Edge of AI in Healthcare: Guarding Data, Growing Empathy

The Double Edge of AI in Healthcare: Guarding Data, Growing Empathy 2026-08-25 at 17:00 By Bindu Sundaresan Healthcare has always run on two currencies: information and trust. Patients hand over their most sensitive data, diagnoses, genetic profiles, mental health histories, on the assumption that it will be protected and that the people (or systems) handling it […]

The Double Edge of AI in Healthcare: Guarding Data, Growing Empathy Read More »

WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities

WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities 2026-08-25 at 16:33 By Eduard Kovacs CVE-2026-61979 and CVE-2026-15981 are authentication bypass vulnerabilities affecting the MiniOrange SAML 2.0 SSO plugin. The post WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities Read More »

From ‘High/Medium/Low’ to Dollars: Making Cyber Risk Legible to Your CFO 

From ‘High/Medium/Low’ to Dollars: Making Cyber Risk Legible to Your CFO  2026-08-25 at 16:25 By Ashish Khaitan For years, cybersecurity teams have communicated risk through labels such as “High,” “Medium,” and “Low.” Those ratings can help security teams prioritize vulnerabilities, but they often leave CFOs with a more important question unanswered: What does the risk […]

From ‘High/Medium/Low’ to Dollars: Making Cyber Risk Legible to Your CFO  Read More »

Citrix UniconOS dual boot turns Windows endpoints into their own recovery device

Citrix UniconOS dual boot turns Windows endpoints into their own recovery device 2026-08-25 at 16:19 By Industry News Citrix announced Citrix UniconOS dual boot, a new endpoint resiliency capability designed to help organizations recover access to work in minutes — without spare hardware, central reimaging or prolonged business downtime. Available now as part of Citrix […]

Citrix UniconOS dual boot turns Windows endpoints into their own recovery device Read More »

Scroll to Top