Latest stories — Page 60

Adobe ColdFusion flaw now under attack, Canada's cyber agency warns
A critical bug in Adobe's web platform is being exploited days after patches shipped. Roughly 800 servers sit exposed online.

North Korean Hackers Poisoned Over 100 Open Source Packages to Spy on Developers
A campaign called PolinRider has quietly corrupted legitimate software building blocks used by developers worldwide, planting tools that steal data and leave a hidden door open for attackers.

A Working Attack Script Is Now Public for the Linux 'Bad Epoll' Root Access Flaw
A proof-of-concept, meaning a ready-made demonstration script that shows exactly how to exploit a flaw, has been released for a serious Linux vulnerability. That raises the urgency for every organisation running Linux servers to patch now.

Fake Indian tax portal used to plant spyware on finance teams' computers
A suspected Chinese hacking group is posing as India's Income Tax Department to slip a remote-control virus onto the machines of accountants and corporate finance staff.

Buying an AI SOC in 2026? Here's How to Tell the Real Thing From a Chatbot in a Trench Coat
Vendors are all shouting the same three letters. The products behind them are wildly different, and the wrong pick will cost you a year.

An AI Agent Broke Into a Server, Taught Itself to Adapt, and Left a Ransom Note
Security firm Sysdig says it has documented the first fully autonomous AI-driven ransomware attack, where a program called JadePuffer broke into a database, encrypted thousands of records, and demanded Bitcoin payment without a human criminal directing any step.

Hackers Are Hiding Instructions Inside Websites to Make AI Assistants Send Crypto Payments
Two newly discovered attack campaigns show how criminals can secretly hijack AI browsing agents by planting hidden commands in ordinary-looking web pages.

When the Learning Platform Goes Dark, There Is No Backup Plan
A finals-week breach of a major university software platform in 2026 left students locked out of coursework and grade books. Higher education has proved twice it will pay ransoms. That changes everything.

The Cybersecurity Skills Gap Is Real. But We're Measuring the Wrong Thing.
Companies keep buying courses and certifications. Breaches keep happening anyway. The problem is not a shortage of trained people. It is a shortage of people who have actually practised under fire.

TrojPix: Academic Research Shows Air-Gapped PCs Can Leak Data Through Screen Pixels
Researchers at Shandong University describe a covert channel that turns a monitor cable into a radio transmitter, but the technique still needs malware on the target first.

QuimaRAT: A New Rent-a-Malware Kit That Hits Windows, Mac and Linux
Researchers at LevelBlue say the Java-based remote access tool is being sold as a subscription, starting at $150 a month, and works across all three major desktop systems.

Opera GX Bug Let Any Website Silently Install a Data-Stealing Add-On
Researchers rebuilt a signed-in user's Gmail address from one page visit. Opera has patched the flaw.

Seven Cyber Risk Assessment Mistakes That Give Security Leaders False Confidence
Experts say many organisations tick boxes, skip awkward corners of their networks, and confuse passing an audit with being secure. Here is what actually goes wrong.

Researchers Show AI Coding Agent 'Skills' Can Hide Malware From Every Scanner Tested
A Hong Kong team's packing trick beat static scanners more than 90% of the time. Their own runtime checker caught most of it.

Nigel Farage's Undeclared Gifts from Convicted Crypto Entrepreneur
Reform UK's Robert Jenrick states that Nigel Farage accepted gifts from George Cottrell, a convicted fraudster, without declaring them.

Farage Ally With US Fraud Conviction Gave Undeclared Support, Reports Say
A Sunday Times investigation claims Reform UK leader Nigel Farage accepted staffing, security help, and use of a London property from George Cottrell — a friend convicted of wire fraud in 2017 — without registering it with Parliament. Reform says no rules were broken.

Tasmania Becomes Last Australian State to Outlaw Non-Consensual Sharing of Intimate Images
After years of victims being turned away by police with no clear law to apply, Tasmania's government has announced it will criminalise the sharing — or threatening to share — intimate images without consent, including AI-generated fakes.

Australia Raises Alarm Over AI Scribes Listening In on Doctor Visits
Federal health officials are warning that AI tools recording patient conversations in GP clinics may pose serious privacy risks — and regulators are now weighing whether new rules are needed.

Flipper Zero firmware goes into maintenance mode as company hands the wheel to volunteers
The pocket-sized hacking gadget's maker is shrinking its firmware team and letting the community vote on what gets built next.

AI-Powered Street Cameras Are Quietly Building a National Surveillance Grid — And Some Cities Are Walking Away
Cameras made by Flock Safety scan licence plates and flag vehicles automatically. Critics say the resulting data is a federal immigration agency's dream. A growing number of communities are cancelling their contracts.

US Lifts Export Controls on Anthropic's Fable AI After Two-Week Freeze
The Commerce Department cleared Anthropic's most powerful AI model for international customers following a government review triggered by fears the system could be used to assist serious cyberattacks.