Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

Connor Riley Moucka was extradited to the United States in July 2025 after he was arrested in Canada. 

Zenity researchers reported the findings to Anthropic and OpenAI in late 2025 and early 2026, but they remain unpatched.

(Video) In this podcast, we share insights from Edna Conway, a recognized leader in cybersecurity and supply chain resilience with over 40 years of experience in the field.

An attacker could self-register, sign in for board-level API access, and import a new company for code execution.

The incident involved a testing environment set up by Irregular, similar to what Anthropic reported last week.

Maksim Silnikau was the creator and administrator of the ransomware group and involved in Angler EK’s distribution.

Patches were rolled out for two dozen vulnerabilities, including one with public proof-of-concept (PoC) code.

Tracked as CVE-2026-63077, the critical bug can be exploited without authentication for remote code execution.

The chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications.

Many companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas.

CrowdStrike co-founder Dmitri Alperovitch discusses how cyber operations support kinetic warfare, signal coming conflicts, and reshape the global battlefield.

Palo Alto Networks researchers have demonstrated attacks against Google’s synced passkey implementation.

Hackers stole personal information, medical records, and financial information from the organization’s server.

Meta AI Meta AI

The incident involved a testing environment set up by Irregular, similar to what Anthropic reported last week.

Jetbrains vulnerability Jetbrains vulnerability

Tracked as CVE-2026-63077, the critical bug can be exploited without authentication for remote code execution.

Samsung Vulnerability Samsung Vulnerability

The chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications.

Top Cybersecurity Headlines

CrowdStrike co-founder Dmitri Alperovitch discusses how cyber operations support kinetic warfare, signal coming conflicts, and reshape the global battlefield.

The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials.

Georgia has been confirmed as one of the attacked states after Clayton County reported a pump station disruption.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this live webinar as we explore if detection-first security operations can keep pace with AI, or if it’s time to rethink prevention as the strongest default.

Register

CodeSecCon bridges the gap between dev and security. Discover best practices for secure coding, innovative risk-reduction tools, and safe AI integration to cultivate a true DevSecOps culture. Safely secure your apps!

Register

Upcoming Cybersecurity Events

AI Risk Summit: Aug 11-12, 2026 (In-Person)

SecurityWeek’s AI Risk Summit is the leading conference where technology, security, and risk leaders converge with AI researchers, developers, and policy makers shaping the future of enterprise AI.
[August 11-12, 2026 | In-Person]

Learn More
CodeSecCon 2026

SecurityWeek’s CodeSecCon 2026 will bring together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.
[August 19, 2026 | Virtual]

Read More
Attack Surface Management Summit 2026

SecurityWeek’s 2026 Attack Surface Management Summit will evaluate how organizations can protect corporate assets and reduce their attack surface in a modern security program.
[September 16, 2026 | Virtual]

Read More
ICS Cybersecurity Conference 2026

SecurityWeek’s ICS Cybersecurity Conference celebrates its 25th anniversary in Nashville. Join the largest and longest-running event series focused on industrial cybersecurity.
[October 6-8, 2026 | In-Person]

Learn More

Vulnerabilities

Cybercrime

Visa (NYSE:V) has announce that it will acquire online electronic payment and risk management provider, CyberSource Corporation, (NASDAQ:CYBS) in an approximately $2.0 billion cash transaction valuing CyberSource shares at $26.00 per share.

Symantec (Nasdaq: SYMC) today unveiled beta versions of the Norton 2011 AntiVirus and Norton 2011 Internet Security, available now as free download. With performance being a key objective in the latest releases, both products will include “System Insight 2.0” which alerts users when applications are significantly impacting their system resources.

Affinion Security Center, announced enhancements to its BreachShield service, aimed at preventing, detecting and resolving Identity Theft resulting from data breaches. The updates are focused on helping customers at risk for medical identity theft but available for all types of organizations that could experience a data breach.

Cyber warfare is a hot topic in the security industry, but what does this term actually mean? At what point does a cyber conflict become a cyber war? Are cyber threats, cyber attacks and cyber espionage acts of cyber war? Many of these questions need to be discussed – and that discussion is about to take place.

Updated Mac Forensic Suite Features Improved Performance, Enhanced User Interface, and Support for Snow Leopard MacForensicsLab Inc. announced the release of their computer forensic suite, MacForensicsLab 3.0. The new version adds new features along with enhanced stability and speed improvements.

When a new disease surfaces among humans or animals, the first thing we notice are the patterns of spread – not the structure of its DNA.  

As anticipated, Adobe has released security updates for Acrobat and Acrobat Reader Products. These updates are classified as critical as the vulnerabilities could cause the application to crash and could potentially allow an attacker to take control of the affected system.Adobe recommends users of Adobe Reader 9.3.1 and earlier versions for Windows, Macintosh and UNIX update to Adobe Reader 9.3.2. (For Adobe Reader users on Windows and Macintosh, who cannot update to Adobe Reader 9.3.2

DNS is the address book for the Internet. It’s the way for users, customers and partners to find your online presence and communicate and transact with it. Without DNS, the Web, e-mail, hosted applications, and virtually every mission-critical thing done online would become unusable.

We are barely four months into the year, and 2010 has already proved itself a dream for scammers and fraudsters around the world, filled with opportunity and prosperity. They have had many events working to their advantage, helping them prey on and exploit innocent victims.

On April 13th, Adobe plans to release updates for Acrobat Reader for Windows, Mac and UNIX to resolve critical security issues. The new update, Adobe says, will fix several vulnerabilities and include an improved version of the software that Adobe uses to deliver its updates, helping end-users stay up-to-date in a much more streamlined and automated way. For the latest information, visit the Adobe Product Security Incident Response Team blog at: http://blogs.adobe.com/psirt

Apple today announced the biggest software update yet for the iPhone. iPhone OS 4 will include over 100 new features for iPhone and iPod touch owners, including some much desired security features for the enterprise. Set to be released this summer for iPhone and iPod touch, the update will be available for the iPad in the fall. A version is currently available for developers.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

Obsidian Security has developed a platform for governing AI agents across third-party applications.

Cloud Security

Artificial Intelligence

Build your strategy around answering these questions to ensure employees use AI productively while keeping sensitive data, IP, and agent behavior within the boundaries...

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.