The flaws can be exploited for remote code execution, authentication bypass, and device takeover.
Hi, what are you looking for?
The flaws can be exploited for remote code execution, authentication bypass, and device takeover.
The fixes resolve over 1,000 vulnerabilities across two dozen products, including over 460 remotely exploitable bugs.
The bugs could lead to code execution, privilege escalation, sandbox escape, and information disclosure.
The data breach was initially believed to affect roughly 350,000 people, but the HHS breach tracker shows a far bigger impact.
Join the live webinar as we explore if detection-first security operations can keep pace with AI, or if it’s time to rethink prevention as the strongest default.
With no formal training and no career plan, Waisman built a path from Argentina's early hacking scene to leading security at an AI-powered offensive security firm.
Rapid7 warns that traditional patch cycles cannot keep pace with soaring vulnerability disclosures and faster exploitation, forcing defenders to prioritize exposure over severity scores.
Xpander’s platform uses a universal agent harness that executes AI agents as portable workloads and securely renders interfaces on demand.
Fortinet will use Virtue AI technology to enhance its AI security portfolio, including for AI models, applications, and agentic systems.
Tracked as CVE-2026-15748, the arbitrary file upload bug allows unauthenticated attackers to upload executable files.
Hackers stole names, addresses, phone numbers, Social Security numbers, and financial information from a third-party platform.
The security defect allows unauthenticated attackers to modify or delete user data and public projects.
The bugs could be exploited to crash Safari, corrupt memory, leak sensitive data, escape the sandbox, and exfiltrate data.
Hackers used compromised credentials to access enterprise and personal tax-related data.
The AI security testing firm has shared information on a recently disclosed incident involving Anthropic AI models.
Anthropic has been conducting tests to identify issues in how AI agents interact with each other.
Hackers exploited a vulnerability in the order-tracking function of a plugin to access SafePal customer information.
Threat actors gained root access to the vulnerable systems and deployed a Monero miner.
The vulnerability tracked as CVE-2026-58231 can be exploited to execute arbitrary code and compromise internal components.
A threat actor is claiming the exfiltration of millions of records from McDonald’s, TCS, Vodafone, and other large organizations.