SecurityTicks

‘Big Short’ investor Michael Burry warns of similarities between AI boom and dot-com bubble

‘Big Short’ investor Michael Burry warns of similarities between AI boom and dot-com bubble 2026-05-19 at 21:14 By Thomas Barrabi Burry, who rose to prominence after his bet against the subprime mortgage market was featured in “The Big Short,” pointed to evidence that an increasingly large amount of junk-bond debt and venture capital money is […]

‘Big Short’ investor Michael Burry warns of similarities between AI boom and dot-com bubble Read More »

Drupal to Patch Highly Critical Vulnerability at Risk of Quick Exploitation

Drupal to Patch Highly Critical Vulnerability at Risk of Quick Exploitation 2026-05-19 at 21:14 By Eduard Kovacs Drupal says attackers may develop an exploit for the vulnerability within hours or days. The post Drupal to Patch Highly Critical Vulnerability at Risk of Quick Exploitation appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

Drupal to Patch Highly Critical Vulnerability at Risk of Quick Exploitation Read More »

Trapdoor Android Ad Fraud Scheme Hit 659 Million Daily Bid Requests Using 455 Apps

Trapdoor Android Ad Fraud Scheme Hit 659 Million Daily Bid Requests Using 455 Apps 2026-05-19 at 21:13 By Cybersecurity researchers have disclosed details of a new ad fraud and malvertising operation dubbed Trapdoor targeting Android device users. The activity, per HUMAN’s Satori Threat Intelligence and Research Team, encompassed 455 malicious Android apps and 183 threat

Trapdoor Android Ad Fraud Scheme Hit 659 Million Daily Bid Requests Using 455 Apps Read More »

LaGuardia Airport adds hologram ‘concierge’ Bridget in latest spooky invasion of AI

LaGuardia Airport adds hologram ‘concierge’ Bridget in latest spooky invasion of AI 2026-05-19 at 19:08 By Brooke Steinberg Next time you’re traveling out of Terminal B in New York’s LaGuardia Airport, you might encounter Bridget, a life-size AI hologram concierge. This article is an excerpt from Latest Technology News | New York Post View Original

LaGuardia Airport adds hologram ‘concierge’ Bridget in latest spooky invasion of AI Read More »

Microsoft Disrupts Malware-Signing Service Run by ‘Fox Tempest’ 

Microsoft Disrupts Malware-Signing Service Run by ‘Fox Tempest’  2026-05-19 at 19:07 By Eduard Kovacs  Fox Tempest provides a service that cybercriminals use to distribute ransomware and other malware disguised as legitimate software. The post Microsoft Disrupts Malware-Signing Service Run by ‘Fox Tempest’  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Microsoft Disrupts Malware-Signing Service Run by ‘Fox Tempest’  Read More »

DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability

DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability 2026-05-19 at 18:17 By Proof-of-concept (PoC) exploit code has now been released for a recently patched security flaw in the Linux kernel that could allow for local privilege escalation (LPE). Dubbed DirtyDecrypt (aka DirtyCBC), the vulnerability was discovered and reported by the Zellic and V12 security

DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability Read More »

YellowKey and GreenPlasma: Two New Windows Zero-Days Unveiled

YellowKey and GreenPlasma: Two New Windows Zero-Days Unveiled 2026-05-19 at 17:33 By James Ballantyne and Pauline Bolaños Two novel Windows zero-day vulnerabilities dubbed YellowKey, which bypasses BitLocker drive encryption, and GreenPlasma, a local privilege escalation bug that targets a trusted Windows process called CTFMON, were recently publicly released. Nightmare-Eclipse (aka Chaotic Eclipse), a researcher who

YellowKey and GreenPlasma: Two New Windows Zero-Days Unveiled Read More »

Microsoft’s MSHTA Legacy Tool Still Powers Malware Campaigns on Windows

Microsoft’s MSHTA Legacy Tool Still Powers Malware Campaigns on Windows 2026-05-19 at 16:58 By Janos Gergo SZELES Bitdefender security researchers have discovered that attackers continue to exploit Microsoft HTML Application Host (MSHTA), a legacy utility available by default on Windows systems that can execute VBScript and JavaScript from local or remote files. This article is

Microsoft’s MSHTA Legacy Tool Still Powers Malware Campaigns on Windows Read More »

Inside SHADOW-WATER-063’s Banana RAT: From Build Server to Banking Fraud

Inside SHADOW-WATER-063’s Banana RAT: From Build Server to Banking Fraud 2026-05-19 at 16:58 By In this blog entry, researchers from the TrendAI™ MDR team discuss how they mapped the full end-to-end operation of SHADOW-WATER-063’s Banana RAT banking malware by analyzing server-side artifacts and victim-side data. This article is an excerpt from Trend Micro Research, News

Inside SHADOW-WATER-063’s Banana RAT: From Build Server to Banking Fraud Read More »

Cyble Named a Challenger in the Inaugural 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies

Cyble Named a Challenger in the Inaugural 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies 2026-05-19 at 16:58 By Mihir Bagwe In a digital landscape that moves at the speed of AI, we feel recognition is more than just a market positioning—it is a validation of vision. We are proud to announce that Cyble has

Cyble Named a Challenger in the Inaugural 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies Read More »

Selector extends AI-driven observability into multi-cloud environments

Selector extends AI-driven observability into multi-cloud environments 2026-05-19 at 16:58 By Industry News Selector has announced the expansion of its platform with AI-powered multi-cloud observability capabilities. The extension of Selector’s AI-driven observability approach into multi-cloud environments enables organizations to correlate signals across the full hybrid path. By unifying rich telemetry data from cloud, network, and

Selector extends AI-driven observability into multi-cloud environments Read More »

PureLogs infostealer is stealing credentials worldwide

PureLogs infostealer is stealing credentials worldwide 2026-05-19 at 16:58 By Zeljka Zorz A phishing campaign is smuggling the powerful PureLogs information stealer onto targets’ Windows machines by hiding encrypted malicious payloads inside cat photos, Fortinet researchers discovered. The attack The attack starts with a phishing email containing a TXZ archive and using an invoice-themed lure

PureLogs infostealer is stealing credentials worldwide Read More »

LaunchDarkly adds real-time controls for AI agents in production

LaunchDarkly adds real-time controls for AI agents in production 2026-05-19 at 16:58 By Industry News LaunchDarkly has launched AgentControl, a new solution that gives software teams real-time control over AI agents in production. With AgentControl, teams can change how an agent behaves at runtime without redeploying the underlying application. As AI agents move into production,

LaunchDarkly adds real-time controls for AI agents in production Read More »

Unpatched ChromaDB Vulnerability Can Lead to Server Takeover

Unpatched ChromaDB Vulnerability Can Lead to Server Takeover 2026-05-19 at 16:58 By Ionut Arghire The security defect can be exploited remotely, without authentication, to execute arbitrary code and leak sensitive information. The post Unpatched ChromaDB Vulnerability Can Lead to Server Takeover appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Unpatched ChromaDB Vulnerability Can Lead to Server Takeover Read More »

Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks

Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks 2026-05-19 at 16:58 By Kevin Townsend Attackers are increasingly abusing Microsoft’s decades-old MSHTA utility to stealthily deliver stealers, loaders, and persistent malware through phishing, fake software downloads, and LOLBIN-based attack chains. The post Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks appeared first

Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks Read More »

Canonical ships Ubuntu Core 26 with 15 years of security maintenance

Canonical ships Ubuntu Core 26 with 15 years of security maintenance 2026-05-19 at 15:47 By Anamarija Pogorelec Operators of industrial sensors, edge AI controllers, and connected medical equipment now have a refreshed long-term Linux option for fleets that must stay patched for more than a decade. Canonical released Ubuntu Core 26, the latest long-term supported

Canonical ships Ubuntu Core 26 with 15 years of security maintenance Read More »

The New Phishing Click: How OAuth Consent Bypasses MFA

The New Phishing Click: How OAuth Consent Bypasses MFA 2026-05-19 at 15:47 By In February 2026, a phishing-as-a-service (PhaaS) platform called EvilTokens went live. Within five weeks, it had compromised more than 340 Microsoft 365 organizations across five countries.  The targets of the platform received a message asking them to enter a short code at

The New Phishing Click: How OAuth Consent Bypasses MFA Read More »

Scroll to Top