Infosecurity News

  1. Critical Cisco Catalyst SD-WAN Zero-Day Under Active Exploitation

    Vulnerability in Cisco Catalyst SD-WAN Manager allows an unauthenticated, remote attacker to access systems with admin privileges

  2. China-Linked Hackers Impersonate AI Experts to Target US Policy Insiders

    TA419 posed as AI policymakers and economists to phish US AI policy experts' Microsoft 365 accounts

  3. CloudSyncD MacOS Backdoor Hides Behind Fake Zoom Installer

    CloudSyncD uses a fake Zoom installer to phish Mac passwords and launch a two-stage backdoor

  4. AI Threats Top Cybersecurity Preparedness Gap, PwC Finds

    PwC finds global security leaders are most concerned about attacks on AI systems

  5. MI5 Warns Over 100 Academics Helped China's Espionage Plans

    MI5 has issued a rare warning to UK academics contributing to the China General Technology Research Institute

  6. AI-Found Vulnerabilities More Likely to Enable RCE, Google Says

    AI-discovered vulnerabilities are more likely to enable RCE, as disclosures and exploitation rise

  7. Trump, Six AI Giants Sign 'Super Intelligence' Safety Accord

    Trump and six AI firms sign a voluntary accord on internal controls, audits and board oversight

  8. AI Boosts SOC Analyst Capacity but Limits Skill Development

    Swimlane finds that AI is reducing repetitive work for SOC teams but some feel their careers may suffer

  9. Attackers Combine ChatGPT Feature Abuse With ClickFix to Deliver Trojan Malware

    Cybersecurity researchers at Huntress identify campaign to deliver potent trojan which targets users searching for ChatGPT via Google

  10. Apple Patches CoreGraphics Zero Day Exploited in Attacks

    Apple has patched CVE-2026-86950, a zero-day bug in the iOS CoreGraphics engine

  11. RatHat's Evolving C2 Panel Points to Malware-as-a-Service Model

    RatHat's C2 panel now builds malware and ranks victims with AI across nearly 100 deployments

  12. Amazon Bedrock AgentCore Flaws Could Expose AWS Credentials

    AWS AgentCore SDK flaws could let attackers run commands in AI sandboxes and reach AWS credentials

  13. Microsoft Warns NeedyMantis Malware Enables Persistent Network Access

    Microsoft Threat Intelligence warns that NeedyMantis threat actor from China has targeted organizations across a range of industries

  14. Japanese Railway Operators Hit with Weekend Cyber Attacks

    Tokyo Metro and Keio have revealed separate cyber-attacks

  15. Kiteworks Urges Customers to Restart Systems After Shutdown Notice

    Kiteworks has lifted a temporary shutdown recommendation which was issued on the back of federal intelligence

  16. Bitget Restarts Bitcoin Withdrawals Following $387.5m Wallet Breach

    Bitget has restarted Bitcoin withdrawals after a $387.5m breach of its hot and warm wallets

  17. NVIDIA Launches Open Platform to Secure Autonomous AI Agents

    NVIDIA has launched a platform pairing runtime controls with hardware monitoring for AI agents

  18. Deepfakes Are Becoming a Costly Reality for Businesses, Report Warns

    A quarter of victims of deepfake attacks have lost over $1m. CISOs worry that boardrooms don’t understand the threat

  19. MCP Is Creating Major Governance Gaps, Researchers Warn

    Ox Security found security shortcomings in analysis of over 15,000 MCP servers

  20. Citrix Patches Critical Zero Days Under Active Exploitation

    Citrix has confirmed exploitation of two critical zero-day RCE bugs

What’s Hot on Infosecurity Magazine?