SecurityTicks

Apple, Google pulled into Grok controversy as campaigners demand app store takedown

Apple, Google pulled into Grok controversy as campaigners demand app store takedown 2026-01-15 at 18:09 By Carly Page The chatbot’s challenges no longer just Elon Musk’s problem, as campaigners call on tech giants to step in The ongoing Grok fiasco has claimed two more unwilling participants, as campaigners demand Apple and Google boot X and […]

Apple, Google pulled into Grok controversy as campaigners demand app store takedown Read More »

Researchers Reveal Reprompt Attack Allowing Single-Click Data Exfiltration From Microsoft Copilot

Researchers Reveal Reprompt Attack Allowing Single-Click Data Exfiltration From Microsoft Copilot 2026-01-15 at 18:08 By Cybersecurity researchers have disclosed details of a new attack method dubbed Reprompt that could allow bad actors to exfiltrate sensitive data from artificial intelligence (AI) chatbots like Microsoft Copilot in a single click, while bypassing enterprise security controls entirely. “Only […]

Researchers Reveal Reprompt Attack Allowing Single-Click Data Exfiltration From Microsoft Copilot Read More »

Critical WordPress Modular DS Plugin Flaw Actively Exploited to Gain Admin Access

Critical WordPress Modular DS Plugin Flaw Actively Exploited to Gain Admin Access 2026-01-15 at 18:08 By A maximum-severity security flaw in a WordPress plugin called Modular DS has come under active exploitation in the wild, according to Patchstack. The vulnerability, tracked as CVE-2026-23550 (CVSS score: 10.0), has been described as a case of unauthenticated privilege […]

Critical WordPress Modular DS Plugin Flaw Actively Exploited to Gain Admin Access Read More »

A simple CodeBuild flaw put every AWS environment at risk – and pwned ‘the central nervous system of the cloud’

A simple CodeBuild flaw put every AWS environment at risk – and pwned ‘the central nervous system of the cloud’ 2026-01-15 at 17:04 By Jessica Lyons And it’s ‘not unique to AWS,’ researcher tells The Reg A critical misconfiguration in AWS’s CodeBuild service allowed complete takeover of the cloud provider’s own GitHub repositories and put […]

A simple CodeBuild flaw put every AWS environment at risk – and pwned ‘the central nervous system of the cloud’ Read More »

Sensitive data of Eurail, Interrail travelers compromised in data breach

Sensitive data of Eurail, Interrail travelers compromised in data breach 2026-01-15 at 17:04 By Zeljka Zorz A data breach at the Netherlands-based company that sells Eurail (Interrail) train passes resulted in the compromise of personal and sensitive information belonging to an as-yet unknown number of travelers. What data was accessed? Eurail B.V. operates on behalf […]

Sensitive data of Eurail, Interrail travelers compromised in data breach Read More »

ThreatsDay Bulletin: AI Voice Cloning Exploit, Wi-Fi Kill Switch, PLC Vulns, and 14 More Stories

ThreatsDay Bulletin: AI Voice Cloning Exploit, Wi-Fi Kill Switch, PLC Vulns, and 14 More Stories 2026-01-15 at 17:04 By The internet never stays quiet. Every week, new hacks, scams, and security problems show up somewhere. This week’s stories show how fast attackers change their tricks, how small mistakes turn into big risks, and how the […]

ThreatsDay Bulletin: AI Voice Cloning Exploit, Wi-Fi Kill Switch, PLC Vulns, and 14 More Stories Read More »

Budget smartphones will be hit hardest as memory prices rise

Budget smartphones will be hit hardest as memory prices rise 2026-01-15 at 16:46 By Dan Robinson When margins are this tight, mergers might follow The memory shortage is forecast to push smartphone prices higher in 2026, triggering a market decline and forcing budget phone makers to merge or disappear.… This article is an excerpt from […]

Budget smartphones will be hit hardest as memory prices rise Read More »

Teach an AI to write buggy code, and it starts fantasizing about enslaving humans

Teach an AI to write buggy code, and it starts fantasizing about enslaving humans 2026-01-15 at 16:26 By Lindsay Clark Research shows erroneous training in one domain affects performance in another, with concerning implications Large language models (LLMs) trained to misbehave in one domain exhibit errant behavior in unrelated areas, a discovery with significant implications […]

Teach an AI to write buggy code, and it starts fantasizing about enslaving humans Read More »

Windows App forgets how to log in with first security update of the year

Windows App forgets how to log in with first security update of the year 2026-01-15 at 16:26 By Richard Speed January patch trips up Azure Virtual Desktop and Windows 365 authentication Microsoft has kicked off 2026 with another faulty Windows update. This time, it is connection and authentication failures in Azure Virtual Desktop and Windows […]

Windows App forgets how to log in with first security update of the year Read More »

UK mulls under‑16 social media ban amid rising online ID push

UK mulls under‑16 social media ban amid rising online ID push 2026-01-15 at 16:02 By Cointelegraph by Christina Comben The UK is weighing an Australia‑style ban on social media for under‑16s, as regulators ramp up enforcement of the Online Safety Act. This article is an excerpt from Cointelegraph.com News View Original Source

UK mulls under‑16 social media ban amid rising online ID push Read More »

US crypto market structure bill in limbo as industry pulls support

US crypto market structure bill in limbo as industry pulls support 2026-01-15 at 16:02 By Cointelegraph by Aaron Wood The crypto market structure bill in the US Senate has been delayed amid disagreements among lawmakers and influential cryptocurrency companies. This article is an excerpt from Cointelegraph.com News View Original Source

US crypto market structure bill in limbo as industry pulls support Read More »

Tines rolls out a governance layer for agents, copilots, and MCPs

Tines rolls out a governance layer for agents, copilots, and MCPs 2026-01-15 at 15:58 By Industry News Tines unveiled AI in Tines, a unified interaction layer for agents, copilots, and MCPs, enabling organizations to operationalize enterprise AI in a governed environment. While AI adoption is accelerating, the resulting value remains inconsistent. According to IDC, 88% […]

Tines rolls out a governance layer for agents, copilots, and MCPs Read More »

Delinea expands identity security platform through StrongDM acquisition

Delinea expands identity security platform through StrongDM acquisition 2026-01-15 at 15:58 By Industry News Delinea has signed a definitive agreement to acquire StrongDM. Delinea’s leadership in enterprise privileged access management (PAM), combined with StrongDM’s just-in-time (JIT) runtime authorization capabilities and developer-first access model, will form a new class of identity security platform designed for continuous, […]

Delinea expands identity security platform through StrongDM acquisition Read More »

Depthfirst Raises $40 Million for Vulnerability Management

Depthfirst Raises $40 Million for Vulnerability Management 2026-01-15 at 15:58 By Ionut Arghire The startup will use the investment to accelerate R&D, expand go-to-market efforts, and hire new talent. The post Depthfirst Raises $40 Million for Vulnerability Management appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Depthfirst Raises $40 Million for Vulnerability Management Read More »

US regulator tells GM to hit the brakes on customer tracking

US regulator tells GM to hit the brakes on customer tracking 2026-01-15 at 15:32 By Carly Page Smart Driver pitched as safety app, but feds claim it’s a data-harvesting scheme that jacked up premiums The Federal Trade Commission has banned General Motors and subsidiary OnStar from sharing drivers’ precise location and behavior data with consumer […]

US regulator tells GM to hit the brakes on customer tracking Read More »

Woman bailed as cops probe doctor’s surgery data breach

Woman bailed as cops probe doctor’s surgery data breach 2026-01-15 at 15:27 By Connor Jones Suspect assisting West Midlands Police over alleged theft at Walsall GP practice The UK’s West Midlands Police has released a woman on bail as part of an investigation into a data breach at a Walsall general practitioner’s (GP) surgery.… This […]

Woman bailed as cops probe doctor’s surgery data breach Read More »

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155)

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155) 2026-01-15 at 15:27 By Zeljka Zorz A critical vulnerability (CVE-2025-64155) in Fortinet’s FortiSIEM security platform has now been accompanied by publicly released proof-of-concept (PoC) exploit code, raising the urgency for organizations to patch immediately. About CVE-2025-64155 CVE-2025-64155 may allow unauthenticated, remote attackers to execute unauthorized code or […]

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155) Read More »

Model Security Is the Wrong Frame – The Real Risk Is Workflow Security

Model Security Is the Wrong Frame – The Real Risk Is Workflow Security 2026-01-15 at 15:27 By As AI copilots and assistants become embedded in daily work, security teams are still focused on protecting the models themselves. But recent incidents suggest the bigger risk lies elsewhere: in the workflows that surround those models. Two Chrome […]

Model Security Is the Wrong Frame – The Real Risk Is Workflow Security Read More »

Scroll to Top