Latest stories — Page 28

DataBahn Raises $40 Million to Put AI in Charge of Enterprise Data Pipelines
The Texas startup wants companies to stop moving every byte of data everywhere and start routing only what actually matters, in real time.

What Hackers Actually Do After They're Inside Your Network
A Huntress case study shows why cleaning up the malware is only half the job. If you don't find the front door, they walk back in.

AI agents are approving transactions and nobody is watching
A new report finds most companies have handed financial controls to AI systems they cannot audit, trace, or investigate in real time.

Cantina Raises $8 Million to Let AI Agents Hunt and Fix Security Flaws Automatically
A New York startup wants to replace slow, manual vulnerability management with software agents that find problems, investigate them, and patch them without waiting for a human to file a ticket.

The Network Is Quietly Becoming the Referee for AI Traffic
As AI tools multiply inside companies, firewalls are being asked to do a job they were never designed for: policing conversations between machines that think.

Hidden Prompts in Word Files Can Hijack Microsoft 365 Copilot, Researcher Warns
A proof of concept shows Copilot copying attacker instructions into finished documents, then spreading them to the next draft.

Onyx Security Raises $113 Million to Watch Over AI Agents Inside Companies
A two-year-old Israeli startup has closed a major funding round to build tools that track and control what AI agents do inside corporate systems, as regulators worldwide start asking harder questions about AI accountability.

Forgotten DNS Records Could Become a Nation-State Weapon, Researchers Warn
A technique called 'dangling DNS' has lurked in security circles for years. Researchers now say AI could automate it at a scale that threatens governments, banks and supply chains.

Analog Devices Discloses Data Breach After Hackers Stole Files in June Attack
The Massachusetts chip-maker told federal regulators that unauthorised intruders accessed its systems on 23 June and took files. A separate extortion group now claims to hold 570,000 records from the company.

Silver Fox Hackers Chain Three Vulnerable Drivers to Plant ValleyRAT on Japanese Factory
The Chinese crew abused legitimate but flawed Windows drivers to switch off security tools before dropping a remote-access trojan.

North Korea-Linked Hackers Booby-Trap Korean Websites to Push Backdoors via AnySign4PC Flaw
A state-sponsored crew hijacked trusted South Korean sites and abused a weakness in a widely installed banking security tool to plant SIGNBT and COPPERHEDGE malware, no click required.

One in Five Data Centre Systems Is One Step Away From Hackers, Research Finds
A study of 174,000 data centre infrastructure devices found that roughly 32,000 sit just one network hop from the open internet, putting cooling, power and fire systems within easier reach of attackers than most operators realise.

Google Patches 370 Security Flaws in Chrome 151, Including Seven Critical Bugs
The browser update is one of Google's largest single releases of the year, fixing flaws that could let attackers take control of your browser or crash it entirely.

Amazon Traces September npm Hijack of Debug and Chalk to North Korean Hackers
What looked like a wallet-draining crypto heist ten months ago now points to Pyongyang, according to fresh analysis from Amazon.

Southeast Asia's Fraud Factories Have Gone Global
A UN report puts the cost of the region's industrialised cyber-fraud industry at up to $114 billion in 2025. Corruption, cryptocurrency, and AI have made it almost impossible to shut down.

Ransomware Group Spacebears Claims Attack on StellarRAD Systems
A criminal group has listed the US telecoms-software firm on its dark-web pressure site, alleging stolen employee data, financial records and client information. The company has not confirmed any incident.

Schools Are Handing Deepfake Criminals a Photo Album
Australia's eSafety regulator is warning schools to stop posting student and teacher photos online after a surge in AI-generated deepfakes built from official school feeds.

US House passes kids' online safety bill, but critics say the cure may be worse than the disease
The KIDS Act cleared the House 267-117 on Monday. It demands new parental controls and bans targeted ads at children, but digital rights groups warn that age-verification rules could quietly strip privacy from every adult online too.

ChatGPT Conversation Logs to Feature as Key Evidence in Perth Baby Murder Trial
A Western Australian woman accused of killing her eight-month-old daughter is seeking a judge-only trial, with court told that a large volume of ChatGPT chat records will form a central part of the prosecution's case.

Russian hackers used an Outlook Web Access flaw to plant hidden backdoor in mailboxes
Proofpoint says Laundry Bear, tracked as TA488, exploited a zero-day in Microsoft's webmail to install OWAReaper, a stealthy tool that survives password resets.

Cisco firewall manager had a hidden password. Attackers found it first.
A built-in account in Cisco Secure Firewall Management Center was exploited as a zero-day in July, and Cisco is telling customers to patch and hunt for a specific log entry.