News
Data
Deals
Blog
Markets
Pwnsy
News
EN
CN
Main
Social
Enterprise
Research
AI Security
Offensive
Privacy
Vendors
Tools
BLEEPINGCOMPUTER
ChatGPT share links abused to host fake outage pages to deliver malware
1h
California AG sues 23andMe over 2023 breach exposing health data
1h
From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service Market
5h
MORE
···
CYBERSCOOP
Tennessee man linked to 764 accused of series of crimes against children dating back to 2022
1h
Federal audit reveals NIST’s NVD is plagued by poor planning and duplication
3h
House panel poised to hold hearing centered on AI impact on cyber
1d
MORE
···
DARK READING
Asia's Cyber Insurance Market Shows Signs of Life
5h
With Complex Cloud Integrations, Small Errors Lead to Major Compromises
6h
'The Com' Cyberattacks Support Violence & Sexploitation
7h
MORE
···
THE RECORD
Microsoft calls zero-day releases ‘never justifiable’ as researcher threatens to drop more
6h
Cruise giant Carnival confirms data breach affecting nearly 6 million people
1d
Canadian man gets 33 years for using social media to coerce US children into sending sexual content
1d
MORE
···
THE HACKER NEWS
New Russian-Linked GREYVIBE Targets Ukraine with AI-Powered Cyberattacks
8h
Malicious Sicoob NuGet Steals Banking Credentials as npm Packages Target Cloud Secrets
10h
Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential Stealer
1d
MORE
···
TLDR INFOSEC
Seedworm DLL Attack 🐛, Gitea Image Leak Bug 📦, Starlette ASGI Flaw 🤖
19h
Jailbroken Gemini Used For Hack 🤖, MyPillow Ransomware 🛏️, UK Visa Portal Leak 🛂
1d
600K Lithuanian Records Leaked 🇱🇹, KnowledgeDeliver 0-Day RCE 💥, Google Family Link Hijack 📱
2d
MORE
···
INFOSECURITY
Silent Ransom Group Uses In-Person IT Impersonation to Breach Systems
6h
Infosecurity Europe: CyCOS Project Expands to Support UK SMEs as CIISec Takes Over
9h
Chinese Hackers Exploit Iran War to Target Maritime and Energy Companies
10h
MORE
···
GRAHAM CLULEY
Police arrest man following hack of Ajax football club
11h
MyPillow listed on ransomware gang’s leak site, but denies it has been breached
1d
Smashing Security podcast #469: What your Oura ring won’t tell you
1d
MORE
···
HELP NET SECURITY
Humanix expands detection to identify live violations of security procedures
12h
Hottest cybersecurity open-source tools of the month: May 2026
1d
Hackers are knocking on office doors pretending to be IT staff
2d
MORE
···
INDICATOR
Briefing: YouTube stops hiding its AI labels
8h
Tips for images, geolocation, and visualization that I learned from 5 OSINT videos
1d
8 AI bots now write 50% of X’s Community Notes
3d
SECURITYWEEK
In Other News: Trump Mobile Data Breach, FIFA World Cup Phishing, CISA Responds to Supply Chain Attacks
3h
Charter Communications Data Breach Could Impact Nearly 5 Million
4h
MokN Raises $15 Million for Phish-Back Platform
5h
MORE
···
SOPHOS
Canvas attack aftermath: What risks come next?
1d
Encore Performance: Sophos ranked #1 Overall in Endpoint, EDR, XDR, MDR, and Firewall for the 2nd consecutive time in the G2 Summer 2026 Reports
1d
Sophos named a Leader in the 2026 Gartner® Magic Quadrant™ for Endpoint Protection for the 17th consecutive report
2d
SOCIAL
R/PRIVACY
Aptive Pest Control scheduled my for appointments I didn't make and wouldn't delete my data - what can I do? [NY]
3h
💬 3
▲ 5
Papers, Please: Online Age Checks Create a Pointless Privacy Risks— One of the world’s leading age verification providers(clients include Meta, OnlyFans, Sony PlayStation, and TikTok) collect and share highly sensitive personal data—including facial photos and device fingerprints—with third parties.
4h
💬 5
▲ 111
Inkjet Printer Tracking?
7h
💬 3
▲ 6
MORE
···
R/CYBERSECURITY
Zero Trust is Overrated? Navigating the Complexity
1h
💬 54
▲ 13
Warning on MAD20 Subscriptions: $500 Blind Auto-Renewals and Hostage Certifications
2h
💬 3
▲ 5
How Do You Handle the Massive Amount of Information in the CPTS Path?
2h
💬 4
▲ 6
MORE
···
R/MALWARE
Kali365 Activity Surges: Device Code Phishing Is Scaling Fast
2d
💬 1
▲ 7
Not a security person... got hit by an undocumented macOS stealer campaign, reverse engineered it, and tried to take the whole operation down.
3d
💬 18
▲ 45
R/HACKING
Do you think this is legit or has the website been compromised?
25min
💬 29
▲ 9
Do you guys take paper notes or digital ones during studying ?
3h
💬 15
▲ 6
How do people actually modify mobile games to increase their power?
12h
💬 17
▲ 6
MORE
···
R/REVERSEENGINEERING
Ghidra 12.1.1 has been released!
3h
💬 0
▲ 9
How 2004 RuneScape fit a multiplayer RPG into 56k dial-up
1d
💬 0
▲ 13
reverse engineering need for speed most wanted for modding sdk
1d
💬 5
▲ 35
MORE
···
R/INFOSECNEWS
Dutch Government just said no to an American firm buying the keys to their digital State
2d
💬 0
▲ 10
R/NETSEC
1,001 IPs, 64 countries, one operation: mapping a botnet by its back end · HoneyLabs blog
10h
💬 2
▲ 41
I evaluated 5 LLM agents on patching real-world CVEs. Here is what I found.
12h
💬 6
▲ 13
Fooling around with encrypted reasoning blobs
15h
💬 1
▲ 24
MORE
···
R/ASKNETSEC
How to prepare Incident Response Testing?
1d
💬 13
▲ 9
Secure base images that dont need an enterprise contract or a massive budget?
1d
💬 11
▲ 9
Has anyone replaced their VPN with ZTNA and was it worth it?
4d
💬 62
▲ 20
MORE
···
HACKER NEWS
💬
Rsync: Commits co-authored by Claude break –compare-dest in security update
12h
💬 0
▲ 7
💬
GitHub bans security researcher who posted zero-day Windows exploits
21h
💬 242
▲ 506
💬
Project Lightwell: Securing the open source supply chain
1d
💬 0
▲ 10
💬
CIFSwitch: A non-universal Linux local root vulnerability
1d
💬 0
▲ 6
💬
Microsoft's stance on zero day exploits is a dumpster fire of their own making
1d
💬 30
▲ 75
MORE
···
ENTERPRISE
ZDNET SECURITY
Amazon just dropped this 75-inch Hisense TV to under $850 - and I'd recommend it
1h
After using this Windows laptop for work and play, I'm wondering why I still need my PC tower
3h
Open-source security is a mess - IBM and Red Hat bet $5 billion and 20,000 engineers can fix it
3h
MORE
···
TECHCRUNCH SECURITY
Microsoft under fire for threatening security researcher with criminal investigation
2h
Final 24 hours to save up to $410 on your TechCrunch Disrupt 2026 ticket
5h
Hackers are trying to steal Signal users’ backups in new wave of widespread attacks
1d
MORE
···
NEXTGOV CYBER
Commercial location data is being used to target US servicemembers, lawmakers warn
2h
Iran’s hackers are coordinating more closely, Israel’s top cyberdefense official says
1d
State leaders renew call for cyber grant program’s renewal
2d
CSO ONLINE
DNS-AID will make AI agents easier to discover, says Linux Foundation
3h
Certifiably random: Swiss researchers claim perfect random number source
4h
Notepad++ vulnerabilities could enable arbitrary code execution on Windows systems
9h
MORE
···
FEDERAL NEWS CYBER
The same data that’s out there about you can also be used against you and now it is
2h
Agencies need to first move slow with their data to then move fast into AI
4h
‘Detect, understand, respond’ driving OMB, CISA’s latest cyber efforts
23h
MORE
···
THE REGISTER SECURITY
No fix yet for critical RCE bug in open-source Git service Gogs - exploit module is out
1h
23andMe inherits lawsuit over 'disturbing' DNA data breach
3h
Dutch cops wrest 17M devices from mystery botnet's clutches
6h
MORE
···
CYBERSECURITY DIVE
CISA urges security teams to check for software development compromises
4h
How CISOs can manage sovereign-cloud security risks
1d
IBM’s new $5B initiative will help enterprises rapidly patch open-source vulnerabilities
1d
MORE
···
RESEARCH
ARXIV SECURITY
Echoes within the Reasoning: Stealthy and Effective Watermarking via Chain of Thought
15h
Quantum-Enhanced Adversarial Robustness in Artificial Intelligence
15h
AIRGuard: Guarding Agent Actions with Runtime Authority Control
15h
MORE
···
SCHNEIER ON SECURITY
Chilling Effects
8h
FBI’s 2025 Internet Crime Report
2d
Identifying People Using Wi-Fi Routers
3d
MORE
···
SANS ISC
ISC Stormcast For Friday, May 29th, 2026 https://isc.sans.edu/podcastdetail/9950, (Fri, May 29th)
17h
Analysis of a Year of Files Uploaded to DShield Sensors, (Wed, May 27th)
23h
ISC Stormcast For Thursday, May 28th, 2026 https://isc.sans.edu/podcastdetail/9948, (Thu, May 28th)
1d
MORE
···
TROY HUNT
Welcoming the Bhutanese Government to Have I Been Pwned
3d
Weekly Update 505
5d
MICROSOFT SECURITY
Microsoft is named a Leader in the 2026 Gartner® Magic Quadrant™ for Endpoint Protection
3h
Typosquatted npm packages used to steal cloud and CI/CD secrets
16h
The Gentlemen ransomware: Dissecting a self-propagating Go encryptor
1d
MORE
···
AI SECURITY
SIMON WILLISON
Claude Opus 4.8: "a modest but tangible improvement"
19h
sqlite AGENTS.md
1d
I think Anthropic and OpenAI have found product-market fit
2d
MORE
···
XBOW
Autonomous Offensive Security Testing, Built for Enterprise Trust
1d
Autonomous Offensive Security at Scale: Modern Penetration Testing for Enterprises
2d
Exclusive CISO Dinner on AI Security Leadership
6d
ADVERSA AI
SymJack: the approval prompt is lying to you. A symlink-hijack RCE in six AI coding agents
3d
OFFENSIVE
SPECTEROPS
The Case for Practicing Response Before You Need It
1d
Don’t Jump the Turnstile: Lessons from the Field
1d
Spelunking through Splunk
2d
PRAETORIAN
When Encryption Isn’t Really Encryption
22h
Adversarial Oracles: LLM-Guided EDR Signature Reduction
1d
0XDF
HTB: MonitorsFour
6d
BLACK HILLS INFOSEC
Bad Habits: An ANTISOC Operation
2d
TRUSTEDSEC
PCI DSS, Telephone Payments, and the Problems With VoIP
3d
PRIVACY
CITIZEN LAB
Researchers Uncover Espionage in Mobile Networks
4h
Trump Wants to Tap Your Phone. Ottawa Might Let Him.
4d
EFF DEEPLINKS
Age Verification is a Privacy Nightmare
1d
More License Plate Reader Mission Creep: School Residency Verification, Background Checks, and Noise Complaints
2d
VENDORS
OX SECURITY
7 AI Security Testing Tools for LLMs, Agents, and AI Pipelines (2026)
7h
AI Security Testing: How to Validate LLMs, Agents, and AI Pipelines in Production
1d
Vibe Coding Security: Why 62% Of AI-Generated Code Ships With Vulnerabilities
2d
MORE
···
REVERSINGLABS
Forrester Names RL in Agentic Development Security Market
1d
5 lessons from vulnerability management's front lines
1d
Dependency attack takes down ed-tech platform at scale
2d
MORE
···
KASPERSKY SECURELIST
What’s in the container? Analyzing vulnerabilities, risks and protection with Kaspersky Container Security and the KIRA AI assistant
12h
Pirates in the crosshairs: how one cybercrime gang has been infecting book, movie, and TV show fans for years
1d
SENTINELONE
The Good, the Bad and the Ugly in Cybersecurity – Week 22
4h
RAPID7
Rapid7 Observed Exploitation of PAN-OS GlobalProtect Authentication Bypass Vulnerability (CVE-2026-0257)
2h
Experts on Experts: Why Compliance is becoming Continuous
1d
Authenticated RCE via Argument Injection in Gogs (NOT FIXED)
1d
MORE
···
CROWDSTRIKE
CrowdStrike Named a Leader in 2026 Gartner® Magic Quadrant™ for Endpoint Protection for Seventh Consecutive Time
14h
CrowdStrike Named a Leader in Identity Threat Detection and Response
3d
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
3d
UNIT 42
2026 World Cup: Discussing The World’s Biggest Game’s Attack Surface
1d
Out of the Crypt: The Evolving Cyber Extortion Economy
1d
DATADOG SECURITY LABS
From Exploit Code to Production Detection: Building a CVE-2026-31431 (Copy Fail) detection with Agents
1d
CISCO TALOS
Less panic patching, more precision
1d
DICOM, Pydicom, GDCM, and Orthanc: A technical tour of what really happens in the heap
1d
MediaArea heap-based buffer overflow vulnerabilities
2d
MORE
···
WELIVESECURITY
ESET APT Activity Report Q4 2025–Q1 2026
1d
What to consider before asking an AI chatbot for health advice
2d
BTMOB: A stealthy RAT burrowing deep into Android devices
3d
CHECK POINT RESEARCH
AI Threat Landscape Digest March-April 2026
3d
25th May – Threat Intelligence Report
4d
ELASTIC SECURITY
Detecting Tycoon 2FA AiTM attacks across Entra ID and Google Workspace
3d
TOOLS
EXPLOIT-DB
[remote] Microsoft - NTLMv2 Hash Capture
19h
[webapps] MikroORM 7.0.13 - SQL Injection
19h
[webapps] Prodigy Commerce 3.3.0 - Local File Inclusion
19h
MORE
···
FULL DISCLOSURE
Re: Dovecot Security Advisory OXDC-2026-0002
3d
SSRF in Anthropic mcp-server-fetch and Microsoft playwright-mcp — publicly disclosed via GitHub issues
3d
[SECURITY ADVISORY] CVE-2021-21735 - ZTE ZXHN H168N V3.5 Unauthenticated Admin Credential Leak
3d
MORE
···