Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

Google has been fined 403 million euros ($463 million) for breaching the European Union’s strict privacy rules because it mishandled users’ location data.

The attackers impersonate at least 40 companies and disable 145 security products to deploy infostealer malware.

Noopur Davis never planned a career in cybersecurity. She was a developer at Intergraph, and for many years that was all she wanted to be.

The transaction is part of the $4.1 billion deal in which Accenture acquired a majority stake in Dragos in an OT cybersecurity push.

The malware relies on AI for real-time device navigation and control, increasing adaptability and evasion.

It’s unclear if the attacks are part of previous campaigns against Rust, but the techniques used by the attackers match those used by North Korea.

The cybersecurity firm believes the data breach was the result of the May 2026 TanStack supply chain attack.

The hackers changed equipment settings, disabled remote access and alarms, and altered pumping cycles, officials said. 

Attackers could exploit the flaws to cause denial-of-service conditions, disclose memory, or modify memory.

Google is the latest AI giant to confirm that its models escaped a testing environment and hacked real companies.

The company has secured over $7 million in contracts with US government agencies, including the US Space Force, the US Navy, and DARPA.

Noteworthy stories that might have slipped under the radar: Mandiant’s 2026 AI risk report, PhantomRaven malware used by bug bounty hunter, WordPress plugin bug exploited.

Hacktron researchers earned a bug bounty after demonstrating access to OpenAI employee accounts. 

Water system vulnerabilities Water system vulnerabilities

The hackers changed equipment settings, disabled remote access and alarms, and altered pumping cycles, officials said. 

Linux vulnerability Linux vulnerability

Attackers could exploit the flaws to cause denial-of-service conditions, disclose memory, or modify memory.

Rogue AI agent Rogue AI agent

Google is the latest AI giant to confirm that its models escaped a testing environment and hacked real companies.

Top Cybersecurity Headlines

Hacktron researchers earned a bug bounty after demonstrating access to OpenAI employee accounts. 

Microsoft fixed vulnerabilities across Azure and AI-branded products, with privilege escalation flaws accounting for the majority.

Hackers used a compromised API key to deploy a Cloudflare worker that injected malicious scripts.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Explore what it takes to operationalize continuous authorization at scale, including the technical, organizational, and cultural changes required.

Register

Join as speakers examine the various components of ASM strategy, the push to mandate continuous asset visibility and inventory tools, and the use of red-teaming, bug bounties and pen-tests in modern security programs.

Register

Upcoming Cybersecurity Events

Attack Surface Management Summit 2026

SecurityWeek’s 2026 Attack Surface Management Summit will evaluate how organizations can protect corporate assets and reduce their attack surface in a modern security program.
[September 16, 2026 | Virtual]

Read More
ICS Cybersecurity Conference 2026

SecurityWeek’s ICS Cybersecurity Conference celebrates its 25th anniversary in Nashville. Join the largest and longest-running event series focused on industrial cybersecurity.
[October 6-8, 2026 | In-Person]

Learn More

SecurityWeek’s 2026 Zero Trust Summit will deep-dive into the world of digital identity management and the role of zero-trust principles and associated technologies
[October 14, 2026 | Virtual]

Read More
CodeSecCon 2026

SecurityWeek’s CodeSecCon 2026 will bring together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.
[August 19, 2026 | Virtual]

Read More

Vulnerabilities

Cybercrime

Suppose a friend wants you to meet her cousin Bill at a black tie affair. You don’t have a photo of Bill to help you find him among the five hundred or so people in attendance—you only have your cousin’s description of Bill.

Sunbelt Software today announced the availability of Sunbelt CWSandbox 3.0, an upgraded version of their automated dynamic malware analysis tool. CWSandbox leverages unique behavior analysis technology for the identification of malicious threats like PDF exploits, fake media players and other socially engineered attacks against enterprise or government networks.

PhoneGuard, a provider of mobile security services, today announced availability of its anti-virus software for Android smartphones. Partnering with China based NetQin Technology, PhoneGuard provides a defense against threats including viruses, spyware and malware that target mobile devices.

Anti-virus products scan for malware in two ways. They look for sequences of bits that are found in programs that are known to be “evil” (but which are not commonly found in “good” programs). And they run programs in sandboxes and look for known malicious actions. The first approach only catches known malware instances, while the second can also catch variants of these. Still, many malware agents slip through the cracks undetected...

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

Join SecurityWeek today for a virtual summit exploring the strategies and tools organizations need to discover, prioritize, and defend their expanding attack surfaces.

Cloud Security

Artificial Intelligence

Microsoft fixed vulnerabilities across Azure and AI-branded products, with privilege escalation flaws accounting for the majority.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.