loader image
Conti Ransomware Member Jailed Four Years

A Ukrainian national has been sentenced to four years in prison after being convicted as a Conti ransomware member. This individual played an integral role in orchestrating cyberattacks between 2021 and 2022, contributing to the broader operations of the notorious Conti ransomware group. Authorities arrested and prosecuted the hacker, who faced charges relating to the […]

Swiss Court Jails Ransomware Coder Nearly 13 Years

A Swiss court has sentenced a 52-year-old Ukrainian developer to nearly 13 years in prison for developing ransomware that fueled the infamous Lockergoga, MegaCortex, and Nefilim operations. The court found that he crafted the malicious software, which cybercriminals used to extract millions in ransoms from businesses worldwide. Swiss authorities captured the developer after an extensive […]

Hackers Use AI Agents to Harvest 23,800 Keys

Hackers are leveraging autonomous AI agents to transform compromised cloud systems into efficient credential-harvesting platforms. A recent case revealed that a financially motivated hacker orchestrated a large-scale operation in under six hours, stealing thousands of third-party credentials. This showcases the increasing speed at which cloud breaches can develop into identity crises. The use of AI […]

Marimo RCE Steals AWS Keys in 8 Seconds

Hackers leveraged a critical vulnerability in the Marimo notebook platform, allowing them to steal AWS credentials and reach a bastion host in a mere eight seconds. This remote code execution flaw, identified as CVE-2026-39987, was exploited to breach systems running version 0.20.4 or earlier. Attackers targeted Marimo’s WebSocket endpoint, bypassing authentication to gain shell access. […]

China-Linked Hackers Hit NGOs With GRIMWEDGE

China-linked hackers hit NGOs by exploiting newly patched vulnerabilities in Google Chrome and Microsoft Windows, cybersecurity firm Volexity reports. The hackers, tracked under the label UTA0560, launched a spear-phishing campaign on September 1, 2026, targeting multiple non-governmental organizations. Utilizing a zero-day chain, the attackers delivered a JavaScript backdoor known as GRIMWEDGE, leveraging the recently patched […]

ENISA Warns Frontier AI Speeds Cyberattacks

Enisa warns that frontier AI is accelerating the pace of cyberattacks, compressing the timeline from vulnerability discovery to exploitation. The European Union’s cybersecurity agency reports that advanced AI is enabling attackers to identify and exploit vulnerabilities faster than ever. This development challenges traditional defenses, as the time from discovering a weakness to weaponizing it could […]

CL-CRI-1171 Uses YouTube Gaming to Spread RATs

Hackers abusing YouTube gaming channels and SEO poisoning have launched a concerning cyber campaign. The operation, identified as CL-CRI-1171, has strategically manipulated search engine results and leveraged YouTube to spread malware. This campaign deceives users by offering fake software tools and performance fixes, ultimately leading them to harmful downloads. Research conducted by Unit 42 revealed […]

Cylus Unveils Cylus.ai to Secure Rail Networks

Cylus unveils Cylus.ai to integrate advanced agentic intelligence into rail cybersecurity systems. This move aims to fortify the digital safety measures of rail networks globally. In conjunction with this launch, Cylus has appointed seasoned former transit leaders to its advisory board, bringing a wealth of experience and insight to guide strategy and implementation. These strategic […]

AI Agents Rewrite Their Own Code

AI agents rewrite code autonomously, sparking curiosity and concern in the cybersecurity community. These self-modifying agents adapt their instructions without human intervention, raising questions about their potential security implications. As technological advances push the boundaries of machine learning, experts warn of the unfolding risks associated with AI autonomy. Organizations deploying these AI systems face challenges […]

Spain’s Data Regulator Receives First AI Breach

Spain’s data regulator, the Spanish Data Protection Agency (AEPD), has received its first notification of a data breach linked to an AI agent. This incident reportedly involved an AI system powered by a well-known large language model, underscoring the growing risks associated with advanced artificial intelligence technologies. While specific details of the breach remain undisclosed, […]

TP‑Link Tapo Cameras Hit by Two Zero‑Day Flaws

TP-Link Tapo cameras, widely used in homes and small businesses, have been exposed to serious vulnerabilities. Researchers at OPSWAT discovered two zero-day flaws allowing attackers on the same network to bypass authentication or disrupt camera services. The vulnerabilities, identified as CVE-2026-15315 and CVE-2026-15316, were resolved with a firmware update released in August 2026. The first […]

Revolut Leak Traced to Compromised Italian Mailbox

Revolut confirms its systems remain intact following a data leak seemingly traced to a compromised Italian government account. Attackers allegedly exploited a legitimate Italian domain to impersonate law enforcement, accessing sensitive data of nearly 680 Revolut customers. This breach may originate from the Prefecture of Reggio Calabria’s compromised mailbox, used to pose as Italian Postal […]