Britain’s health service has warned staff that they could face jail time if found guilty of accessing patient data without a legitimate reason. Head of the NHS, Jim Mackey, said inappropriate access of medical records was “wholly unacceptable, a disgraceful… Read More "NHS Warns Staff Over Unauthorized Access to Patient Data"
New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation
Cybersecurity industry body CREST has added additional standards to accredit AI penetration testing services. Unveiled on July 28, the AI-Enabled Penetration Testing requirements are optional add-on requirements for cybersecurity service providers wishing to demonstrate responsible AI usage, both within their… Read More "New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation"
Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE
Ravie LakshmananAug 29, 2026Vulnerability / Web Security Multiple critical security flaws have been disclosed in WordPress plugins and themes, including WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP, that could lead to authentication bypass, account takeover, and arbitrary code execution.… Read More "Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE"
NVIDIA’s Open Security AI Alliance Is Missing Some Big Names
NVIDIA has assembled nearly 40 technology companies behind a new initiative to build open source security tools for AI, although the coalition launches without participation from several of the industry’s most influential AI developers. Announced on July 27, the Open… Read More "NVIDIA’s Open Security AI Alliance Is Missing Some Big Names"
Coca Cola Reveals Subsidiary Fairlife Suffered Data Breach
A dairy company owned by Coca-Cola Company suffered data theft as well as production outages following a July ransomware attack, the drinks giant has revealed. Coca-Cola said in a brief statement on July 27 that Chicago-based Fairlife had now “resumed… Read More "Coca Cola Reveals Subsidiary Fairlife Suffered Data Breach"
Microsoft Launches Flurry of AI Security Initiatives
You need agents to fight agents. At least that’s what David Weston, corporate VP for AI security at Microsoft told his audience during a Microsoft Security launch preview on July 27. During the event, the Redmond-based company announced a flurry… Read More "Microsoft Launches Flurry of AI Security Initiatives"
Phishing Dominates as Initial Entry Method for Cyber-Attacks
Phishing attacks were the dominant method of initial entry for cyber incidents that required remediation during the last quarter, analysis of attacks by the incident responders who were called in to deal with them has revealed. This as campaigns have… Read More "Phishing Dominates as Initial Entry Method for Cyber-Attacks"
CBP Workers Allegedly Used Government Databases to Spy on Exes, Crushes, and Colleagues
Internal records obtained by WIRED reveal how, for years, United States Customs and Border Protection employees and contractors were accused of abusing sensitive government databases for reasons that had nothing to do with their jobs. The records contain hundreds of… Read More "CBP Workers Allegedly Used Government Databases to Spy on Exes, Crushes, and Colleagues"
Hasbro Data Breach Exposed Employee Personal Information
Toy and game giant Hasbro is notifying employees that their personal information may have been compromised in a data breach. The notifications sent to affected individuals contain little detail, but they indicate that the exposed information, which varies by individual,… Read More "Hasbro Data Breach Exposed Employee Personal Information"
AI-Assisted Bug Hunt Uncovers Linux Kernel 0-Day in net/sched
A years-old Linux kernel flaw allowing local privilege escalation to root has been disclosed after AI-assisted research uncovered a race condition in net/sched. In new research published July 27, Lee Jia Jie of Singapore offensive security firm STAR Labs said… Read More "AI-Assisted Bug Hunt Uncovers Linux Kernel 0-Day in net/sched"