AI titans to tidy agent frontier with plugin prescription
Agent Plugins 1.0 defines a write-once-run-anywhere container for passing tools and skills across different agent platforms
Aggregated from vendor advisories, security research, and industry publications.
Agent Plugins 1.0 defines a write-once-run-anywhere container for passing tools and skills across different agent platforms
A cluster of nearly 800 malicious packages has been published to the npm registry as part of a new campaign designed to deliver cross-platform malware targeting Windows, Mac, and L…
ClickFix-style attacks are being used to deliver a Go-based malware capable of stealing cryptocurrency assets, as well as browser-stored passwords, Apple iCloud Keychain data, and …
Ethan Banks sits down with Eduard Dulharu live at AutoCon 5 to explore how agentic AI can be used to reduce Mean Time to Recovery (MTTR) for complex network environments. Eduard br…
A recent wave of cyber attacks targeting financial services, private equity, and professional services has been attributed to a data extortion group known as UNC6671. "UNC6671 con…
A study of more than 6,000 patches found that even working patches can introduce new bugs, break something else, or are open to bypass.
What, you didn't think the top gangs were busy watching agents escape their sandboxes too, did you?
MAST Upgrade installation hit highest pressure ever achieved without the super-hot plasma destabilizing
Samsung Electronics has unveiled a trio of next-generation memory technologies aimed at overcoming the performance, power and capacity limitations facing artificial intelligence in…
Levi Strauss & Co. (Levi's) says that hackers used social engineering on three of its employees to gain access to and steal corporate data stored on their machines. [...]
As Europe swelters in a heatwave, residents probably don’t want to hear about ways to make their homes even hotter, but that’s what Polish property developer Citylink is talking ab…
Attackers turned admin access into a route downstream, while N-able tells N-central customers to patch – again
Cancer diagnostics breach spills personal and health info as extortion crew says healthcare giant ‘should’ve paid the ransom’
Noteworthy stories that might have slipped under the radar: ban on Chinese data center tech, QuickFox VPN supply chain attack, IEH Corporation mailbox breached via phishing. The po…
Timer interrupts reopen branch predictor poisoning window, with a working Zen 2 exploit to prove it
Gen's H1 2026 Threat Report examines two separate attack chains. One used compromised business inboxes and browser manipulation in a banking-malware campaign, while the other used …
Investigation into whether staff improperly accessed Minnie Merriman’s file after she was named for the first time this week
The North Carolina Ports Authority has confirmed that a cyberattack disrupted IT systems and slowed operations at Port of Wilmington, Port of Morehead City, and Charlotte Inland Po…
WordPress has fixed a pre-authentication reflected cross-site scripting (XSS) flaw in its login screen that affects every version of the content management system. pwn.ai demonstra…
Website support widget lasted 18 months before Redmond ended the conversation
Open Source had a great childhood. For two decades it got to be a kid. It ran around barefoot, gave everything away, trusted strangers, and never once thought about who was watchi…
Intruder gained access to engineering files and potentially export-controlled technical data
A use-after-free bug in Linux's SCTP networking code can be turned into full root on a host, and Tencent researchers say they used it to escape a container and reach the machine un…
As enterprises look for ways to cut the cost of running AI models in production, AMD is betting that not every AI workload will be best served by a power-hungry general-purpose GPU…
Initially calling itself BlackFile, the group has expanded operations to the Redact, Pink, Helix, and Falcon brands. The post Vishing Extortion Group UNC6671 Rebrands After Making …
Unlimited Technology Systems says names, Social Security numbers, diagnoses, and insurance details may have been swiped
Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniques to take control of M…
Through data brokers, ICE is buying the information you provided to open a credit card.
PortSwigger says HTTP Terminator, an artificial intelligence (AI)-assisted research system built by James Kettle, generated and proved new HTTP desynchronization techniques after e…
Humans will get the AI models they deserve