Skip to main content

Security News

Filter by:

The number of mis-issued 1.1.1.1 certificates grows. Here’s the latest.

Everything to know about about the mishap that threatened to expose millions of users' queries.
Ars Technica 5 Sep 2025 2637 Views

Android drops mega patch bomb - 120 fixes, two already exploited

September bundle the largest this year, and possibly the most serious Patch Tuesday is next week, but Android is ahead of the game, dropping its biggest patch bundle this year while attackers actively exploit two of the now-fixed flaws.…
The Register 4 Sep 2025 8861 Views

MediaTek Security Update – Patch for Multiple Vulnerabilities Across Chipsets

MediaTek today published a critical security bulletin addressing several vulnerabilities across its latest modem chipsets, urging device OEMs to deploy updates immediately.  The bulletin, issued two months after confidential OEM notification, confirms that no known in-the-wild exploits have been detected to date...
Cyber Security News 1 Sep 2025 2605 Views

Anthropic AI Used to Automate Data Extortion Campaign

The company said the threat actor abused its Claude Code service to "an unprecedented degree," automating reconnaissance, intrusions, and credential harvesting.
Dark Reading 28 Aug 2025 22720 Views

New AI attack hides data-theft prompts in downscaled images

Researchers have developed a novel attack that steals user data by injecting malicious prompts in images processed by AI systems before delivering them to a large language model. [...]
Bleepingcomputer 26 Aug 2025 2788 Views

Hundreds of Thousands of Users’ Grok Chats Exposed in Google Search Results

A significant data exposure has revealed hundreds of thousands of private user conversations with Elon Musk’s AI chatbot, Grok, in public search engine results. The incident, stemming from the platform’s “share” feature, has made sensitive user data freely accessible...
Cyber Security News 24 Aug 2025 2443 Views

'Impersonation as a service' the next big thing in cybercrime

Underground forums now recruiting English-speaking social engineers English speakers adept at social engineering are a hot commodity in the cybercrime job market.…
The Register 22 Aug 2025 8703 Views

AI Agents Access Everything, Fall to Zero-Click Exploit

Zenity CTO Michael Bargury joins the Black Hat USA 2025 News Desk to discuss research on a dangerous exploit, how generative AI technology has "grown arms and legs" —and what that means for cyber risk.
Dark Reading 20 Aug 2025 24401 Views

Major password managers can leak logins in clickjacking attacks

Six major password managers with tens of millions of users are currently vulnerable to unpatched clickjacking flaws that could allow attackers to steal account credentials, 2FA codes, and credit card details. [...]
Bleepingcomputer 20 Aug 2025 2474 Views

ERMAC Android malware source code leak exposes banking trojan infrastructure

The source code for version 3 of the ERMAC Android banking trojan has been leaked online, exposing the internals of the malware-as-a-service platform and the operator's infrastructure. [...]
Bleepingcomputer 19 Aug 2025 2527 Views