Cyber Security
Cybersecurity
Cybercriminals Exploit Google Ads in a Deceptive Tax Document Malvertising Campaign
Mitchell Langley
March 25, 2026
A new malvertising campaign abuses Google Ads, targeting U.S. users searching tax-related documents to serve malware-laden installers.
Cybersecurity
Dutch Ministry of Finance Hit by Cyberattack as Data Breach Investigation Continues
Mitchell Langley
March 25, 2026
A cyberattack breached some systems of the Dutch Ministry of Finance, uncovering a data breach affecting certain employees.
Cybersecurity
Open Source Projects Face a Rising Tide of Malware Infections
Gabby Lee
March 25, 2026
Growing malware infection due to open source project vulnerabilities.
Cybersecurity
Major Announcements from RSAC 2026: What Day 1 Revealed
Andrew Doyle
March 25, 2026
A detailed rundown of key cybersecurity innovations revealed on the first day of RSAC 2026.
Cybersecurity
QualDerm Partners Data Breach Hits Over 3.1 Million People
Gabby Lee
March 25, 2026
December 2025 breach at QualDerm Partners exposes personal and health data of over 3.1 million individuals.
News
Cryptocurrency Threats via Phishing Campaign Targeting French-Speaking Corporations
Andrew Doyle
March 25, 2026
French-speaking companies face phishing scams hiding crypto miners and data thieves in fake resumes.
Cybersecurity
Microsoft Fixes Gmail and Yahoo Synchronization Issues for Classic Outlook Users
Mitchell Langley
March 25, 2026
Microsoft addresses issues affecting Gmail and Yahoo email synchronization for classic Outlook users.
Cybersecurity
Gartner Publishes Its First Market Guide for Guardian Agents
Gabby Lee
March 25, 2026
Gartner's first Market Guide for Guardian Agents, released on February 25, 2026, outlines expectations for this nascent field.
News
TeamPCP Strikes Again, This Time Targeting the Python Package litellm
Andrew Doyle
March 25, 2026
Malicious versions of Python package litellm contain a credential harvester and persistent backdoor planted by the threat actor TeamPCP.
Cybersecurity
Software Supply Chains Are the New Frontline for Cyber Risk
Gabby Lee
March 19, 2026
Explore how perimeter security isn't enough to protect against threats in software supply chains.
Cybersecurity
Sam Altman’s Eyeball-Scanning Orb Takes on a New Role in AI Integration
Gabby Lee
March 18, 2026
Sam Altman integrates agentic AI with his eyeball-scanning orb, enhancing its applications in cryptography and bot identification.
Cybersecurity
Companies House Confirmed a Vulnerability That Put Millions of Business Records at Risk
Andrew Doyle
March 18, 2026
UK Companies House vulnerability exposed millions of firm details, potentially allowing unauthorized access and record alteration.
Cybersecurity
New Threat Vector Exploits DNS Queries for Data Exfiltration in AI Environments
Mitchell Langley
March 18, 2026
Researchers expose a method leveraging DNS queries for data exfiltration from AI code execution environments.
Cybersecurity
EU Council Sanctions Three Entities and Two Individuals for Cyberattacks on Critical Infrastructure
Mitchell Langley
March 18, 2026
The EU Council has sanctioned three entities and two individuals involved in cyberattacks on critical infrastructure within the region.
Cybersecurity
Identity-Based Access Control for AI Agents Is Now a Security Necessity
Gabby Lee
March 18, 2026
How identity-based access control for AI agents helps safeguard against misuse and data exposure.
Application Security
Hidden Commands in Font Rendering Are Being Used to Manipulate AI Assistants Through Webpages
Andrew Doyle
March 18, 2026
A font-rendering vulnerability manipulates AI assistants by concealing malicious web commands in innocent HTML.
Cybersecurity
Surf AI Raises $57 Million for Its Agentic Security Operations Platform
Gabby Lee
March 18, 2026
Surf AI secures $57M in funding for its security operations platform.
News
LeakNet Ransomware Adopts ClickFix to Trick Users Into Compromising Themselves
Andrew Doyle
March 18, 2026
LeakNet ransomware integrates ClickFix for access, shifting from traditional entry strategies.
Cybersecurity
RondoDox Botnet Ramps Up Attacks, Hitting 15,000 Daily Exploitation Attempts
Mitchell Langley
March 18, 2026
The RondoDox botnet targets 174 vulnerabilities, increasing activity to 15,000 exploitation attempts daily.
Cybersecurity
Tech and Retail Giants Sign Global Pact to Combat Online Scams and Fraud
Gabby Lee
March 18, 2026
Major tech and retail organizations have banded together to address online scams and fraud, establishing a first-of-its-kind industry accord designed ...
Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Andrew Doyle
September 11, 2026
Cybersecurity
ShinyHunters Claims Breach of Florida DMV DAVID Database
Mitchell Langley
September 9, 2026
Application Security
GoldFactory and Mantax Otax Target Indonesian Android Bank Users
Andrew Doyle
September 11, 2026
CVE Vulnerability Alerts
Aurora Ransomware Operators Use Cursor AI to Execute Network Attacks
Andrew Doyle
September 2, 2026
TOP CYBERSECURITY HEADLINES
Application Security
UNC3569 Exploits Sogou Input Method to Deploy GRAYRABBIT Backdoor
Application Security
Attackers Use BYOD Weaknesses to Access M365 via Graph API
This Week’s Security Spotlight
Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Andrew Doyle
September 11, 2026
Cybersecurity
LG Accused of Privacy Violations Over Smart TV Data Collection
Mitchell Langley
September 9, 2026
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Mitchell Langley
September 8, 2026
Application Security
Judge Rules Pentagon Actions Against Anthropic Unlawful
Gabby Lee
September 1, 2026
Trending
Daily Briefing Newsletter
Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.
Featured Videos
Podcasts
Cyber Security News
- All
- Application Security
- Blog
- CVE Vulnerability Alerts
- Cybersecurity
- Cybersecurity Newsletter
- Data Security
- Endpoint Security
- Identity and Access Management
- Information Security
- Network Security
- News
- Phishing
- Podcasts
- Product Reviews
- Ransomware
- Ransomware Victims
- Resources
- Security Spotlight
- Sponsored
- Threat Actors
- Threat Actors
- Threat Detection Tools
Major Announcements from RSAC 2026: What Day 1 Revealed
March 25, 2026
A detailed rundown of key cybersecurity innovations revealed on the first day of RSAC 2026.
QualDerm Partners Data Breach Hits Over 3.1 Million People
March 25, 2026
December 2025 breach at QualDerm Partners exposes personal and health data of over 3.1 million individuals.
Cryptocurrency Threats via Phishing Campaign Targeting French-Speaking Corporations
March 25, 2026
French-speaking companies face phishing scams hiding crypto miners and data thieves in fake resumes.
Microsoft Fixes Gmail and Yahoo Synchronization Issues for Classic Outlook Users
March 25, 2026
Microsoft addresses issues affecting Gmail and Yahoo email synchronization for classic Outlook users.
Gartner Publishes Its First Market Guide for Guardian Agents
March 25, 2026
Gartner's first Market Guide for Guardian Agents, released on February 25, 2026, outlines expectations for this nascent field.
TeamPCP Strikes Again, This Time Targeting the Python Package litellm
March 25, 2026
Malicious versions of Python package litellm contain a credential harvester and persistent backdoor planted by the threat actor TeamPCP.
Software Supply Chains Are the New Frontline for Cyber Risk
March 19, 2026
Explore how perimeter security isn't enough to protect against threats in software supply chains.
Sam Altman’s Eyeball-Scanning Orb Takes on a New Role in AI Integration
March 18, 2026
Sam Altman integrates agentic AI with his eyeball-scanning orb, enhancing its applications in cryptography and bot identification.
Companies House Confirmed a Vulnerability That Put Millions of Business Records at Risk
March 18, 2026
UK Companies House vulnerability exposed millions of firm details, potentially allowing unauthorized access and record alteration.
New Threat Vector Exploits DNS Queries for Data Exfiltration in AI Environments
March 18, 2026
Researchers expose a method leveraging DNS queries for data exfiltration from AI code execution environments.
EU Council Sanctions Three Entities and Two Individuals for Cyberattacks on Critical Infrastructure
March 18, 2026
The EU Council has sanctioned three entities and two individuals involved in cyberattacks on critical infrastructure within the region.
Identity-Based Access Control for AI Agents Is Now a Security Necessity
March 18, 2026
How identity-based access control for AI agents helps safeguard against misuse and data exposure.
Hidden Commands in Font Rendering Are Being Used to Manipulate AI Assistants Through Webpages
March 18, 2026
A font-rendering vulnerability manipulates AI assistants by concealing malicious web commands in innocent HTML.
Surf AI Raises $57 Million for Its Agentic Security Operations Platform
March 18, 2026
Surf AI secures $57M in funding for its security operations platform.
LeakNet Ransomware Adopts ClickFix to Trick Users Into Compromising Themselves
March 18, 2026
LeakNet ransomware integrates ClickFix for access, shifting from traditional entry strategies.
RondoDox Botnet Ramps Up Attacks, Hitting 15,000 Daily Exploitation Attempts
March 18, 2026
The RondoDox botnet targets 174 vulnerabilities, increasing activity to 15,000 exploitation attempts daily.
Tech and Retail Giants Sign Global Pact to Combat Online Scams and Fraud
March 18, 2026
Major tech and retail organizations have banded together to address online scams and fraud, establishing a first-of-its-kind industry accord designed ...
Tech Giants Invest $12.5 Million in Open Source Software Security
March 18, 2026
Major tech firms contribute $12.5 million to enhance open source software security.
Ongoing Python Package Attack Uses Stolen GitHub Tokens
March 17, 2026
Attack leverages stolen GitHub tokens to introduce malware into numerous Python repositories.
Stryker’s Internal Microsoft Environment Was Breached Last Week
March 17, 2026
Stryker's internal Microsoft environment breach led to the remote wiping of tens of thousands of employee devices last week.





































