Mozilla issued a new GPG signing subkey used for some Firefox and Thunderbird artifacts after the previous key was accidentally exposed.
A Chrome extension that Google pulled from its store in January 2026 over conversation-theft allegations is back in circulation and reaching enterprise browsers again through Google’s own CRX ...
Stealthium aims to expose hidden supply chain threats in AI accelerators and neo-clouds by detecting subtle signs of compromise in infrastructure telemetry.
OpenAI has flagged its upcoming AI model, Astra, for potentially reaching a ‘critical’ cybersecurity risk threshold.
In a Ghostjacking attack, an AI agent executes instructions planted in the log that records a blocked request word for word.
Cisco warns that its Secure Endpoint Connector products are affected by ClamAV DoS vulnerabilities with public PoC.
A critical-severity SQL injection vulnerability in Metabase has been exploited as a zero-day to gain administrative privileges.
New Jersey and Alabama join the list of US states that confirmed their water facilities have been targeted in a hacking campaign.
In a second attack on the Poland’s power grid in 2025, hackers targeted ICS via a private APN and their objective was purely ...
Hackers used social engineering to access the computers of three Levi Strauss employees and steal corporate data.
CISA urges federal agencies to immediately patch CVE-2026-8037, an exploited remote code execution flaw in Progress ...
Researcher reveals severe, now-patched flaws in Belgium’s Connective eID extension that exposed two million users to PIN ...