Threats & Breaches

Ransomware, supply‑chain attacks, leaks, patches, and incident reports.

  • 27 Tracked terms
  • Last 30 days Feed window

What this topic collects on

An article joins this feed when it matches these terms. Each one is also a search of its own.

Latest in Threats & Breaches


hkcert.org > security-bulletin > wordpress-remote-code-execution-vulnerability_20260924

WordPress Remote Code Execution Vulnerability

38+ min ago   (59+ words) TYPE: Servers - Internet App Servers A vulnerability was identified in identified in WordPress. A remote attacker could exploit this vulnerability to trigger remote code execution on the targeted system. Before installation of the software, please visit the vendor web-site for…...


csoonline.com > article > 4225812 > check-point-hacked-the-security-software-protecting-your-network-has-become-a-prime-attack-target.html

Check Point hacked: The security software protecting your network has become a prime attack target

1+ hour, 5+ min ago   (1021+ words) A firewall is supposed to be the barrier between attackers and the enterprise network, but that barrier can itself become a threat actors’ tool. Check Point has revealed that attackers are actively exploiting two vulnerabilities in its Security Gateway and…...


shattered.io > closedquorum-malware-ai-vote-2026

CLOSEDQUORUM Malware Lets 4 AIs Vote on Attacks

3+ hour, 32+ min ago   (856+ words) Talos researcher Ryan Fetterman put it plainly: “CLOSEDQUORUM is, to our knowledge, the first publicly documented Windows implant to apply this model to tactical command and control (C2).” That’s a notable claim from a team that spends its days cataloging malware…...


windowslatest.com > 09/24/2026 > microsoft-tried-to-ban-microslop-and-six-months-later-it-has-given-up

Microsoft tried to ban "Microslop," and six months later it has given up

2+ hour, 24+ min ago   (845+ words) In March, Windows Latest was the first to notice that Microsoft’s official Copilot Discord server was blocking messages containing “Microslop.” Anyone who tried to post it got a moderation warning, and people quickly started testing variations like “Microsl0p” to slip past…...


gbhackers.com > cisco-talos-launches-cairn-tool-to-hunt-and-track-ai-integrated-malware

Cisco Talos Launches CAIRN Tool to Hunt and Track AI-Integrated Malware

19+ hour, 31+ min ago   (23+ words) gbhackers.com Cisco Talos Launches CAIRN Tool to Hunt and Track AI-Integrated Malware...


gncrypto.news > news > iphone-crypto-wallet-hid-code-routed-580k-to-attacker

iPhone Crypto Wallet App Hid Code Routing $580K to Attacker

2+ hour, 16+ min ago   (20+ words) Researchers: iPhone crypto wallet hid code that routed about $580K in tokens to one attacker address. Check approvals and limits....


news.bitcoin.com > security > iphone-crypto-app-hides-malicious-code-attacker-wallet-580k

iPhone Crypto App Hides Malicious Code as Attacker Wallet Nets $580K

5+ hour, 40+ min ago   (503+ words) An iPhone app promoted as a read-only crypto monitoring tool carried code capable of accessing other apps and sensitive wallet data, a new analysis found. A wallet identified as the attacker’s received nearly $580,000 in crypto. People who installed FomoPeek to…...


dev.to > coridev > one-extension-five-browsers-zero-malicious-code-the-agent-hijack-nobody-priced-in-54g8

One Extension, Five Browsers, Zero Malicious Code: The Agent Hijack Nobody Priced In

2+ hour, 39+ min ago   (327+ words) A single extension hit five different AI browser assistants and walked away with $20K in bounties from Anthropic, Google, Microsoft, and Perplexity. Not because it found five different bugs. Because it found one architectural blind spot that every vendor happened to…...


channelnewsasia.com > world > australia-openai-agent-breach-government-portal-6406411

Australia says OpenAI agent hacked into government website

6+ hour, 26+ min ago   (417+ words) The OpenAI agent gained unauthorised access to public and non-public files in what could be the first known instance of an AI agent hacking a government website. SYDNEY: Australia said on Wednesday (Sep 23) an OpenAI agent breached a government health…...


scworld.com > brief > ransomware-group-payload-weaponizes-microsoft-active-directory-for-disruption

Ransomware group PAYLOAD weaponizes Microsoft Active Directory for disruption

3+ hour, 50+ min ago   (246+ words) SC Media Ransomware group PAYLOAD weaponizes Microsoft Active Directory for disruption A new ransomware tactic has emerged where attackers exploit Microsoft Active Directory Group Policy to disrupt an organization's Windows computers without deploying traditional ransomware or encrypting files, according to…...