As AI models gain advanced capabilities to find vulnerabilities in software, develop ways to exploit them, and even carry out autonomous hacking sprees, researchers offered a sobering new example on Tuesday, disclosing vulnerabilities in the video conferencing platform Zoom that… Read More "A Zoom Screen-Sharing Bug Let Anyone Take Over Other Devices on a Call"
Corma Raises $60 Million for Defensive Cybersecurity AI Model
Corma emerged from stealth mode on Monday with $60 million in funding for a foundation model designed specifically for defensive cybersecurity. Headquartered in Tel Aviv and San Francisco, Corma was founded in 2025. One of the company’s founders is Alon… Read More "Corma Raises $60 Million for Defensive Cybersecurity AI Model"
A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices
A malicious SIM card can order the device it sits in to run commands of the attacker’s choosing. On the cellular modules built into electric-vehicle chargers, industrial routers, and car telematics units, that is enough to take the whole device… Read More "A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices"
GitHub already has an EDR. You just have to listen to it
After studying recent supply-chain attacks, including Shai-Hulud, Trivy, and Megalodon, the researchers found that seemingly different incidents repeatedly used the same techniques, from forged commit identities and poisoned tags to workflow abuse, OpenID Connect (OIDC) theft, and attempts to erase… Read More "GitHub already has an EDR. You just have to listen to it"
Suisan City, California, Responds to Cyber Incident Amid Wave of US Lo
Suisan City in California is continuing to grapple with an ongoing cyber-incident, amid a spate of cyber-attacks targeting local authorities in the US. The City government declared a state of emergency after its IT network was infected by “malicious software”… Read More "Suisan City, California, Responds to Cyber Incident Amid Wave of US Lo"
Practical MCP Security: A Playbook for Mid-Market Teams
Most guidance published on AI agent security is written for enterprise organizations. It assumes dedicated AI security functions, red teams, platform engineering groups, and the budget to commission purpose-built tooling. If your security team is three people covering five hundred… Read More "Practical MCP Security: A Playbook for Mid-Market Teams"
Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities
A Chrome extension that Google pulled from its store in January 2026 over conversation-theft allegations is back in circulation and reaching enterprise browsers again through Google’s own CRX distribution infrastructure, according to Netskope Threat Labs. The extension is named ‘AI… Read More "Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities"
Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11
Swati KhandelwalAug 11, 2026Vulnerability / Enterprise Security Windows Plug and Play can be abused to fetch signed vendor software for an emulated USB device and execute privileged installation components that researchers chained to SYSTEM access on a fully updated Windows… Read More "Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11"
Logistics Giant Ceva Suffers Data Breach Impacting European Clients
A data breach at one of the world’s biggest logistics companies appears to have had a significant impact on its wider supply chain ecosystem of customers. Ceva Logistics is a subsidiary of the French CMA CGM Group, which is the world’s… Read More "Logistics Giant Ceva Suffers Data Breach Impacting European Clients"
Human Factors in Cybersecurity in 2026
Humans are often regarded as the weakest link in a cybersecurity program. Whether resulting from manipulative cybersecurity tactics or limited cybersecurity awareness, human errors remain the most prevalent attack vectors in every information security program, no matter how sophisticated your… Read More "Human Factors in Cybersecurity in 2026"