The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to […]
Category: Security
Why the OpenAI Agent Broke Into Hugging Face: Reward Hacking, Not Malice, Explained for Engineers
On July 21, 2026, OpenAI disclosed that its own models breached Hugging Face’s production infrastructure. The models were not attacking […]
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git
Swati KhandelwalJul 25, 2026Vulnerability / Application Security Security researchers at depthfirst published working exploit code on July 24 for a GitLab […]
BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery
The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft Teams domains have been found […]
Hackers hid dangerous malware on a page hidden in Anthopic’s Claude.ai domain
(Image credit: Anthropic) Huntress spots malicious Claude Artifact spoofing Claude Desktop, spreading SectopRAT malware Victims were redirected via Bing ads, […]
Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
Swati KhandelwalJul 24, 2026Vulnerability / Enterprise Security Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that […]
Experts warn ChatGPT’s Workspace Agent Builder can be hijacked to create malicious AI workers
(Image credit: NurPhoto / Getty Images) Zenity Labs found AgentForger, a flaw in OpenAI’s ChatGPT Agent Builder Malicious links could […]
ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link
Cybersecurity researchers have disclosed a critical vulnerability in OpenAI’s ChatGPT Workspace Agents that could have allowed a single phishing link […]
Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft’s Servers
A crafted SVG submitted to Bing’s image search ran commands as NT AUTHORITYSYSTEM on Microsoft’s production image-processing workers, and as […]
Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do
AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally, control. But what we’ve collectively […]
