Google

Fake OpenAI Codex download tricks macOS users into installing malware

Fake OpenAI Codex download tricks macOS users into installing malware 2026-08-25 at 15:40 By Sinisa Markovic A malware campaign using a sponsored search ad and a fake OpenAI Codex download page to trick macOS users into pasting a malicious command into Terminal has been uncovered by Cato Networks. It’s a variation of ClickFix, a popular […]

Fake OpenAI Codex download tricks macOS users into installing malware Read More »

Fake Gemini installer delivers Vidar infostealer via Google Colab lure

Fake Gemini installer delivers Vidar infostealer via Google Colab lure 2026-08-20 at 13:46 By Sinisa Markovic A malicious executable masquerading as a Google Gemini installer was used to deliver the Vidar infostealer on a company network in the EMEA region, according to Darktrace researchers who investigated the incident. “During the initial analysis, it was noted

Fake Gemini installer delivers Vidar infostealer via Google Colab lure Read More »

Google’s AI security agents found 100+ critical software vulnerabilities in just two days

Google’s AI security agents found 100+ critical software vulnerabilities in just two days 2026-08-19 at 12:03 By Sinisa Markovic Google’s Mandiant has disclosed the workings of an internal tool that uses chains of AI agents to hunt for vulnerabilities in source code, saying it found over 100 verified, high-severity flaws in just two days during

Google’s AI security agents found 100+ critical software vulnerabilities in just two days Read More »

Google’s $10,000 refund test shows why AI agents need zero trust

Google’s $10,000 refund test shows why AI agents need zero trust 2026-08-18 at 14:49 By Anamarija Pogorelec Google’s open-source autonomous Customer Support & Returns Agent, built using the Agent Development Kit (ADK) and Gemini, demonstrates how developers can apply zero-trust security principles to AI agents that interact with sensitive systems and take real-world actions. The

Google’s $10,000 refund test shows why AI agents need zero trust Read More »

Google Cloud Sets Out Post-Quantum Roadmap With 2029 Readiness Goal

Google Cloud Sets Out Post-Quantum Roadmap With 2029 Readiness Goal 2026-08-14 at 14:00 By Eduard Kovacs Google Cloud outlines its roadmap to full post-quantum cryptography readiness, with key milestones targeted for 2027 and 2028. The post Google Cloud Sets Out Post-Quantum Roadmap With 2029 Readiness Goal appeared first on SecurityWeek. This article is an excerpt

Google Cloud Sets Out Post-Quantum Roadmap With 2029 Readiness Goal Read More »

Chrome’s anti-abuse protections block 7 billion unwanted Android notifications daily

Chrome’s anti-abuse protections block 7 billion unwanted Android notifications daily 2026-08-12 at 11:36 By Anamarija Pogorelec Google Chrome’s latest measures against abusive web push notifications include automatically revoking notification permissions for inactive and suspicious websites, helping reduce scams, phishing attempts, and other deceptive content. Abusive notifications (Source: Google) Chrome revokes notification permissions for websites users

Chrome’s anti-abuse protections block 7 billion unwanted Android notifications daily Read More »

August 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse?

August 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse? 2026-08-07 at 09:00 By Help Net Security July 2026 Patch Tuesday was record-setting in so many ways. The sheer volume of security patches for almost every product in the Microsoft portfolio was the highest ever and, of course, well over 600 CVEs

August 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse? Read More »

New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts

New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts 2026-08-05 at 15:48 By Eduard Kovacs Palo Alto Networks researchers have demonstrated attacks against Google’s synced passkey implementation. The post New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts Read More »

Google AI Uncovers 13-Year-Old Chrome Flaw Amid Record Patching Pace

Google AI Uncovers 13-Year-Old Chrome Flaw Amid Record Patching Pace 2026-07-31 at 13:28 By Ionut Arghire The internet giant has built an agent harness to find vulnerabilities across Chrome’s codebase. The post Google AI Uncovers 13-Year-Old Chrome Flaw Amid Record Patching Pace appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Google AI Uncovers 13-Year-Old Chrome Flaw Amid Record Patching Pace Read More »

AI takes on a bigger role in finding Chrome vulnerabilities

AI takes on a bigger role in finding Chrome vulnerabilities 2026-07-30 at 20:01 By Sinisa Markovic Google has expanded the use of AI in Chrome’s security workflow, using it to find vulnerabilities, triage bug reports, generate patches, and review code to shorten the time between discovering software flaws and delivering security updates. “Historically, triaging a

AI takes on a bigger role in finding Chrome vulnerabilities Read More »

Google Adopts New Threat Actor Naming System

Google Adopts New Threat Actor Naming System 2026-07-28 at 11:42 By Ionut Arghire The new two-word naming convention uses a memorable term utilized in public reporting and a cluster-categorization word. The post Google Adopts New Threat Actor Naming System appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Google Adopts New Threat Actor Naming System Read More »

Google changes how it names cyber threat actors

Google changes how it names cyber threat actors 2026-07-27 at 16:08 By Sinisa Markovic Google Threat Intelligence Group (GTIG) has started using a new naming system for the threat actors it tracks. The change comes after Mandiant and Google’s Threat Analysis Group (TAG) merged into one unit, leaving the company with two separate naming schemes

Google changes how it names cyber threat actors Read More »

Google gives developers an AI bug hunter that also writes patches

Google gives developers an AI bug hunter that also writes patches 2026-07-24 at 11:53 By Sinisa Markovic Google has launched a preview of CodeMender, an AI agent built to scan code for security flaws, confirm they are exploitable, and generate fixes for developers to review. (Source: Google) The company describes it as a response to

Google gives developers an AI bug hunter that also writes patches Read More »

Google’s newest sign-in method asks you to look at the camera

Google’s newest sign-in method asks you to look at the camera 2026-07-24 at 11:33 By Anamarija Pogorelec Google’s selfie video sign-in option verifies that an account owner is a real person and that the account wasn’t created or used by computer programs or bots for the purpose of abuse, such as spamming. It is not

Google’s newest sign-in method asks you to look at the camera Read More »

Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter

Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter 2026-07-22 at 11:21 By Anamarija Pogorelec Google’s Gemini 3.5 Flash Cyber model finds, validates, and patches vulnerabilities before they can be exploited while helping mitigate broader misuse. It is part of a limited-access pilot program that will soon be available to governments and trusted partners through

Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter Read More »

Google adds FIDO2 keys and phone passkeys to Windows login via GCPW

Google adds FIDO2 keys and phone passkeys to Windows login via GCPW 2026-07-14 at 13:35 By Anamarija Pogorelec Google has started rolling out FIDO2-compliant physical security key support as a second factor for authentication in Google Credential Provider for Windows (GCPW) to all Google Workspace customers. GCPW is a free tool that lets users sign

Google adds FIDO2 keys and phone passkeys to Windows login via GCPW Read More »

15-Year-Old Linux Vulnerability ‘GhostLock’ Earns Researchers $92k From Google

15-Year-Old Linux Vulnerability ‘GhostLock’ Earns Researchers $92k From Google 2026-07-09 at 14:52 By Ionut Arghire Affecting every major distribution since 2011, the Linux kernel vulnerability allows attackers to gain root access. The post 15-Year-Old Linux Vulnerability ‘GhostLock’ Earns Researchers $92k From Google appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

15-Year-Old Linux Vulnerability ‘GhostLock’ Earns Researchers $92k From Google Read More »

AirDrop and Quick Share vulnerabilities affect protocols on five billion devices as fixes begin

AirDrop and Quick Share vulnerabilities affect protocols on five billion devices as fixes begin 2026-06-30 at 09:15 By Mirko Zorz Phones and laptops ship with a feature that sends files to nearby devices over the air, with no cables, accounts, or prior pairing. Apple calls its version AirDrop. Google and Samsung call theirs Quick Share.

AirDrop and Quick Share vulnerabilities affect protocols on five billion devices as fixes begin Read More »

LLM security advice looks solid until you check the hard cases

LLM security advice looks solid until you check the hard cases 2026-06-25 at 09:00 By Anamarija Pogorelec Plenty of people now type their security worries straight into a chatbot. A hacked account, a suspicious email, a stalker who might be tracking a phone, all of it lands in the same window someone would use to

LLM security advice looks solid until you check the hard cases Read More »

Google Workspace expands password reset alerts to all admins

Google Workspace expands password reset alerts to all admins 2026-06-24 at 12:07 By Anamarija Pogorelec Google’s Alert Center, a dashboard in the Google Admin console that displays security and administrative alerts and helps administrators identify, investigate, and respond to issues affecting their organization, is expanding the “Super Admin password reset” alert into the “Admin password

Google Workspace expands password reset alerts to all admins Read More »

Scroll to Top