-
31. Mapping AI-enabled cyber threats: Insights from the LLM ATT&CK Navigator (red.anthropic.com) ▲ -
32. Meta accuses NSO Group of defying spyware injunction, files contempt of court complaint (cyberscoop.com) ▲ -
33. 1,000 Data Breaches Later, the Disclosure Lag is Worse Than Ever (troyhunt.com) ▲ -
34. New IronWorm malware hits 36 packages in npm supply-chain attack (bleepingcomputer.com) ▲ -
35. Anthropic: Using LLMs to secure source code (claude.com) ▲ -
36. Anthropic Defending Code Reference Harness (github.com) ▲ -
37. NSA using Anthropic’s Mythos for cyber attacks (ft.com) ▲ -
38. CISA warns of cyberattacks targeting fuel tank monitoring systems (bleepingcomputer.com) ▲ -
39. Banned Russian Submunitions Found After Mali's Military Announces Airstrikes (bellingcat.com) ▲ -
40. Hackers Used Meta’s AI Support Bot to Seize Instagram Accounts (krebsonsecurity.com) ▲ -
41. Another bug hunter leaks Microsoft exploits in defiance of company’s handling of vulnerability disclosures (theregister.com) ▲ -
42. Malicious npm releases detected across @redhat-cloud-services/ scope (github.com) ▲ -
43. Netherlands blocks US takeover of vital digital supplier (politico.eu) ▲ -
44. Extortion crews are visiting law firms pretending to be tech support, FBI warns (theregister.com) ▲ -
45. Malware dev tries to steal Claude users' secrets, writes npm slop, leaks own GitHub private token (theregister.com) ▲ -
46. Lone attacker published 14 malicious npm packages mimicking popular OpenSearch, Elasticsearch libraries (theregister.com) ▲ -
47. Hackers are now using ChatGPT share links to deliver malware (neowin.net) ▲ -
48. Federal audit reveals NIST’s NVD is plagued by poor planning and duplication (cyberscoop.com) ▲ -
49. No fix yet for critical RCE bug in open-source Git service Gogs - exploit module is out (theregister.com) ▲ -
50. Disgruntled 0-day hunter 'humiliated' by Microsoft pledges 'bone shattering drop' as Redmond calls cops (theregister.com) ▲ -
51. Microsoft tests the 15-character limit of Windows Server admins' patience (theregister.com) ▲ -
52. Carnival confirms ShinyHunters cruised off with 6M customer records after April breach (theregister.com) ▲ -
53. UK spy chief labels AI ‘unstoppable force’ with offensive, defensive ramifications for cyberspace (cyberscoop.com) ▲ -
54. Charter Communications confirms data breach with 40mn records (techradar.com) ▲ -
55. Perfect randomness realized for the first time (phys.org) ▲ -
56. Microsoft SharePoint Has a New RCE Flaw (securityaffairs.com) ▲ -
57. Bosses blinded by confidence about shadow AI use by workers (theregister.com) ▲ -
58. CrowdStrike, Google shatter Glassworm botnet (theregister.com) ▲ -
59. BadHost vulnerability bypasses authentication on AI infrastructure (risky.biz) ▲ -
60. Northern Mariana Islands government email accounts hit by cyberattack (dysruptionhub.com) ▲