Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

Hackers leaked names, email addresses, phone numbers, passwords, and financial information stolen from the two platforms. 

Acquisition follows January’s Chronosphere deal, deepening Palo Alto Networks’ push beyond core security into observability.

An attacker only needed to convince the targeted user to visit a malicious website to exfiltrate WhatsApp messages and contacts.

Identity confidence changes throughout every interaction and should be reassessed continuously as new risk signals emerge.

Analysis found 434 exploitable flaws in AI-generated apps, with denial-of-service, authorization and secrets exposure risks among the most common issues.

The startup will use the fresh investment to accelerate its go-to-market strategy and to expand its platform.

CVE-2026-50522 is being exploited by threat actors to steal machine keys and retain long-term access.

Using AI, the startup provides adaptive prevention through environment mapping, risk analysis, and automated policy enforcement.

Many of the vulnerabilities fixed with the July 2026 Critical Patch Update were likely discovered by AI.

The Anubis ransomware group claims to have stolen 1 TB of confidential data from the Coca-Cola subsidiary.

OpenAI says its AI models went rogue, as CISOS call the incident a watershed moment, warning that autonomous AI threat models have officially crossed into production reality.

New executive order calls for end-to-end visibility into defense supply chains, including software dependencies, foreign ownership and cyber-related supplier risks.

The open-weight Antares models are designed to pinpoint known vulnerabilities in codebases faster and at a fraction of the cost of larger AI models.

Oracle Oracle

Many of the vulnerabilities fixed with the July 2026 Critical Patch Update were likely discovered by AI.

Artificial Intelligence (AI) Artificial Intelligence (AI)

OpenAI says its AI models went rogue, as CISOS call the incident a watershed moment, warning that autonomous AI threat models have officially crossed into production reality.

AI model AI model

The open-weight Antares models are designed to pinpoint known vulnerabilities in codebases faster and at a fraction of the cost of larger AI models.

Top Cybersecurity Headlines

Hackers exfiltrated personal, financial, and health information from the company’s Oracle EBS instance in August 2025.

The ServiceNow AI platform vulnerability tracked as CVE-2026-6875 can be exploited for remote code execution.

The zero-days CVE-2026-15409 and CVE-2026-15410 were exploited by a threat actor tracked by Volexity as UTA0533.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this live webinar as we explore why exploitation is outpacing remediation, where risk is growing fastest, and what security leaders can do to close the gap before attackers take advantage.

Register

CodeSecCon bridges the gap between dev and security. Discover best practices for secure coding, innovative risk-reduction tools, and safe AI integration to cultivate a true DevSecOps culture. Safely secure your apps!

Register

Upcoming Cybersecurity Events

Cloud Security Summit 2026

SecurityWeek’s 2026 Cloud Security Summit will help organizations learn how to utilize tools, controls, and design models needed to properly secure cloud environments.
[July 15, 2026 | Virtual]

Read More
AI Risk Summit: Aug 11-12, 2026 (In-Person)

SecurityWeek’s AI Risk Summit is the leading conference where technology, security, and risk leaders converge with AI researchers, developers, and policy makers shaping the future of enterprise AI.
[August 11-12, 2026 | In-Person]

Learn More
CodeSecCon 2026

SecurityWeek’s CodeSecCon 2026 will bring together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.
[August 19, 2026 | Virtual]

Read More
Attack Surface Management Summit 2026

SecurityWeek’s 2026 Attack Surface Management Summit will evaluate how organizations can protect corporate assets and reduce their attack surface in a modern security program.
[September 16, 2026 | Virtual]

Read More

Vulnerabilities

Cybercrime

Symantec (Nasdaq: SYMC) today unveiled beta versions of the Norton 2011 AntiVirus and Norton 2011 Internet Security, available now as free download. With performance being a key objective in the latest releases, both products will include “System Insight 2.0” which alerts users when applications are significantly impacting their system resources.

Affinion Security Center, announced enhancements to its BreachShield service, aimed at preventing, detecting and resolving Identity Theft resulting from data breaches. The updates are focused on helping customers at risk for medical identity theft but available for all types of organizations that could experience a data breach.

Cyber warfare is a hot topic in the security industry, but what does this term actually mean? At what point does a cyber conflict become a cyber war? Are cyber threats, cyber attacks and cyber espionage acts of cyber war? Many of these questions need to be discussed – and that discussion is about to take place.

Updated Mac Forensic Suite Features Improved Performance, Enhanced User Interface, and Support for Snow Leopard MacForensicsLab Inc. announced the release of their computer forensic suite, MacForensicsLab 3.0. The new version adds new features along with enhanced stability and speed improvements.

When a new disease surfaces among humans or animals, the first thing we notice are the patterns of spread – not the structure of its DNA.  

As anticipated, Adobe has released security updates for Acrobat and Acrobat Reader Products. These updates are classified as critical as the vulnerabilities could cause the application to crash and could potentially allow an attacker to take control of the affected system.Adobe recommends users of Adobe Reader 9.3.1 and earlier versions for Windows, Macintosh and UNIX update to Adobe Reader 9.3.2. (For Adobe Reader users on Windows and Macintosh, who cannot update to Adobe Reader 9.3.2

DNS is the address book for the Internet. It’s the way for users, customers and partners to find your online presence and communicate and transact with it. Without DNS, the Web, e-mail, hosted applications, and virtually every mission-critical thing done online would become unusable.

We are barely four months into the year, and 2010 has already proved itself a dream for scammers and fraudsters around the world, filled with opportunity and prosperity. They have had many events working to their advantage, helping them prey on and exploit innocent victims.

On April 13th, Adobe plans to release updates for Acrobat Reader for Windows, Mac and UNIX to resolve critical security issues. The new update, Adobe says, will fix several vulnerabilities and include an improved version of the software that Adobe uses to deliver its updates, helping end-users stay up-to-date in a much more streamlined and automated way. For the latest information, visit the Adobe Product Security Incident Response Team blog at: http://blogs.adobe.com/psirt

Apple today announced the biggest software update yet for the iPhone. iPhone OS 4 will include over 100 new features for iPhone and iPod touch owners, including some much desired security features for the enterprise. Set to be released this summer for iPhone and iPod touch, the update will be available for the iPad in the fall. A version is currently available for developers.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

Analysis found 434 exploitable flaws in AI-generated apps, with denial-of-service, authorization and secrets exposure risks among the most common issues.

Cloud Security

Cloud Security

Attendees will be able to interact with leading solution providers and other end users facing similar challenges in securing a variety of cloud deployments.

ICS/OT

ICS/OT

Independently judged and sponsor-neutral, the new awards program honors the people, organizations, and technologies delivering proven impact in industrial cybersecurity; winners to be announced...

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.