Ryanair adds Google to its dual-cloud flight plan
Gemini gets to juggle crews, forecasts, and maintenance while AWS keeps its seat
Aggregated from vendor advisories, security research, and industry publications.
Gemini gets to juggle crews, forecasts, and maintenance while AWS keeps its seat
A previously unseen Android near field communication (NFC) relay malware family dubbed WindRelay is being deployed in conjunction with a known remote access trojan (RAT) called Spy…
WhatsApp has begun rolling out a new optional "Scam Alert" feature, which uses a local machine learning model to warn users when scammers are targeting them. [...]
Companies are used to thinking about attackers as outsiders trying to break in. North Korean IT workers flip that model. They apply for jobs, pass interviews, receive legitimate c…
The Israeli company has nearly $2 billion in total assets under management since 2014. The post Venture Firm Team8 Secures Additional $365 Million appeared first on SecurityWeek.
CRM provider confirms customer database was copied and probably downloaded in readable form
This essay was written with Nathan E. Sanders, and originally appeared in Tech Policy Press. AI represents the first time we humans can do cognitive work outside of our bodies at s…
The vulnerabilities could allow attackers to log in with random usernames and passwords or impersonate any FortiGate appliance. The post Fortinet Patches Authentication Flaws in Fo…
Bot training switch is on by default, because apparently asking first wasn't going to work
Researchers discovered hackers-for-hire performing cyber espionage and financially motivated heists from the same Web panel.
Contracts may require a $1 million bond, which will be forfeited if a company fails to comply with operational requirements. The post White House Mobilizes Security Firms for Opera…
Operating system indigestion pops up over chicken sandwich ad
Tracked as CVE-2026–59310, the directory traversal bug allows remote attackers to execute arbitrary code. The post Critical VMware vCenter Vulnerability in Attackers’ Crosshairs ap…
Dropped on Patch Tuesday, the exploit allows any user to spawn a shell with System privileges. The post Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’ appeared firs…
The trust framework underlying Belgium's electronic ID system was fully compromised by severe vulnerabilities in a key browser extension, showcasing bigger problems with extensions…
Developer spotted hostname and credential string lurking in autocomplete
CEO says buyers are moving fast and shuffling budgets to replace old boxen
Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerability in question is C…
Plans to build models instead because it thinks selling tokens will prove more lucrative in the long term
Attackers could extract data, even working from inside a guest VM
ChatGPT Ads, I wish I knew how to quit you
An ongoing data theft campaign uses custom tools to steal data exposed to anonymous users through Salesforce Experience Cloud and ServiceNow customer portals. [...]
And it'll jump through every financial hoop it can to get there
A new Android NFC relay malware called WindRelay is being used alongside the SpyNote remote administration tool (RAT) to steal live card data and send it to attackers in real time.…
Some say the world will end in fire, some say an agentic swarm
Think your bugs are a pain to track? WAL-Reset took six months of hunting and development of a new logging tool to identify
The "City-Forum" campaign has been active since at least March 2025 and has targeted organizations across multiple sectors with custom tooling.
Attempts to exploit a critical vulnerability (CVE-2026-71362) in Adobe's Commerce and Magento e-commerce platforms have been detected, potentially allowing attackers to hijack cust…
Same stateful trick, now with your own infrastructure
Eight years on, we're still paying to hide the future glimpsed during speculative execution