OpenAI launches Codex Security, an AI agent designed to detect vulnerabilities in software projects
Matthias Bastian / the-decoder - OpenAI's new Codex Security agent automatically hunts for vulnerabilities in code and has already found gaps in OpenSSH and Chromium.The article OpenAI launches Codex Security, an AI agent designed to detect vulnerabilities in software projects appeared f…
Back to Top / Friday, March 6, 2026, 5:21 pm / permalink 20289 / 5 stories in 6 hrs
CISA warns of Apple flaws exploited in spyware, crypto-theft attacks
Sergiu Gatlan / bleepingcomputer - CISA ordered U.S. federal agencies to patch three iOS security flaws targeted in cyberespionage and crypto-theft attacks using the Coruna exploit kit. [...]
Back to Top / Friday, March 6, 2026, 3:21 pm / permalink 20286 / 4 stories in 8 hrs
Google says 90 zero-days were exploited in attacks last year
Bill Toulas / bleepingcomputer - Google Threat Intelligence Group (GTIG) tracked 90 zero-day vulnerabilities actively exploited throughout 2025, almost half of them in enterprise software and appliances. [...]
Back to Top / Thursday, March 5, 2026, 10:22 am / permalink 20198 / 6 stories in 37 hrs
Critical Cisco Catalyst SD-WAN Vulnerabilities Allow Attackers to Gain Root Access
AnuPriya / cyberpress - Cisco released critical patches on March 5, 2026, for multiple flaws in Catalyst SD-WAN Manager (formerly vManage). These bugs let attackers skip authentication, grab root privileges, and run commands. The advisory, first posted February 25, now warns of …
Back to Top / Thursday, March 5, 2026, 7:21 am / permalink 20184 / 4 stories in 40 hrs
A Possible US Government iPhone-Hacking Toolkit Is Now in the Hands of Foreign Spies and Criminals
Andy Greenberg / wired - A highly sophisticated set of iPhone hijacking techniques has likely infected tens of thousands of phones or more. Clues suggest it was originally built for the US government.
- Coruna's 23-exploit chains compromised tens of thousands (3)
- From spies to thieves: Coruna fuels espionage and crypto theft (3)
- Tracing Coruna: likely US‑government roots, contractor fingerprints (5)
- All Other Stories
Coruna's 23-exploit chains compromised tens of thousands
From spies to thieves: Coruna fuels espionage and crypto theft
Tracing Coruna: likely US‑government roots, contractor fingerprints
All Other Stories
Back to Top / Tuesday, March 3, 2026, 6:20 pm / permalink 20094 / 13 stories in 3 days
Android Security Update Fixes 129 Vulnerabilities, Including Actively Exploited Zero-Day
AnuPriya / cyberpress - Google released its March 2026 Android Security Bulletin, patching 129 vulnerabilities across the Android ecosystem. This update sets a record for the highest number of fixes in a single month. It splits into two patch levels: 2026-03-01 for core Android …
Back to Top / Tuesday, March 3, 2026, 4:20 am / permalink 20040 / 3 stories in 3 days
Iran's cyberwar has begun
Jessica Lyons / theregister - 'Expect elevated activity for the foreseeable future' Iranian hackers have launched spying expeditions, digital probes, and distributed denial of service (DDoS) attacks in the wake of the US and Israel launching missile strikes over the weekend, and secur…
- AI and phishing threats — weaponized agents, rising scams, deepfakes (8)
- Iran-linked cyber operations — espionage, DDoS, app propaganda (4)
- Maritime and infrastructure disruptions — GPS, AWS outages, internet cuts (4)
- OTHER — warnings, VPN workarounds, industry hires, communications advice (4)
- All Other Stories
AI and phishing threats — weaponized agents, rising scams, deepfakes
Iran-linked cyber operations — espionage, DDoS, app propaganda
Maritime and infrastructure disruptions — GPS, AWS outages, internet cuts
OTHER — warnings, VPN workarounds, industry hires, communications advice
All Other Stories
Back to Top / Monday, March 2, 2026, 3:22 pm / permalink 20018 / 28 stories in 4 days
Please, please, please stop using passkeys for encrypting user data
Simon Willison / simonwillison - Please, please, please stop using passkeys for encrypting user dataBecause users lose their passkeys all the time, and may not understand that their data has been irreversibly encrypted using them and can no longer be recovered.Tim Cappalli:To the wider i…
Back to Top / Saturday, February 28, 2026, 12:20 am / permalink 19914 / 2 stories in 6 days
CISA is getting a new acting director after less than a year
Stevie Bonifield / theverge - The US Cybersecurity and Infrastructure Security Agency (CISA), which is part of the Department of Homeland Security, is getting a new acting director, as reported by ABC, less than a year after Madhu Gottumukkala took charge of the agency as deputy direc…
Back to Top / Friday, February 27, 2026, 4:21 pm / permalink 19898 / 6 stories in 7 days
Apple's iPhone and iPad become first consumer devices to receive NATO security clearance
techspot - The clearance puts Apple in an exclusive position – no other consumer smartphone or tablet maker has ever reached the same security threshold under the alliance's information assurance standards.Read Entire Article
Back to Top / Friday, February 27, 2026, 7:21 am / permalink 19868 / 4 stories in 7 days
Researchers discover massive Wi-Fi vulnerability affecting multiple access points — AirSnitch lets attackers on the same network intercept data and launch machine-in-the-middle attacks
tomshardware - A team of researchers discovered that they can break cryptographic client isolation on a number of wireless routers by taking advantage of how Wi-Fi networks work.
Back to Top / Thursday, February 26, 2026, 2:21 pm / permalink 19824 / 3 stories in 8 days
iPhone and iPad Are First Consumer Devices Cleared for NATO Classified Data
Juli Clover / macrumors - The iPhone and iPad can be used with NATO restricted level classified information after meeting NATO's information assurance requirements, Apple said today. No special software or settings are required.Apple's devices are the first and only consumer mobil…
- Approval scope: Apple devices cleared to carry NATO restricted data (11)
- German vetting: BSI testing confirmed devices meet NATO requirements (2)
- All Other Stories
Approval scope: Apple devices cleared to carry NATO restricted data
German vetting: BSI testing confirmed devices meet NATO requirements
All Other Stories
Back to Top / Thursday, February 26, 2026, 1:21 pm / permalink 19817 / 14 stories in 8 days
ThreatAware Raises $25M to Scale Cybersecurity with AI
Ekemini / ventureburn - ThreatAware has raised a total of $25 million in funding from One Peak, an investment firm that specializes in growth equity investments in high-growth software businesses. The funding serves asThe post ThreatAware Raises $25M to Scale Cybersecurity with …
Back to Top / Thursday, February 26, 2026, 11:21 am / permalink 19808 / 3 stories in 8 days
Cisco SD-WAN Zero-Day Under Active Exploitation Grants Attackers Root-Level Control
AnuPriya / cyberpress - Cisco has disclosed a critical zero-day vulnerability in its Catalyst SD-WAN Controller (formerly vSmart) and Catalyst SD-WAN Manager (formerly vManage), actively exploited by sophisticated threat actors since at least 2023 to bypass authentication and se…
Back to Top / Thursday, February 26, 2026, 6:21 am / permalink 19779 / 6 stories in 8 days
Google catches Beijing spies using Sheets to spread espionage across 4 continents
Jessica Lyons / theregister - UNC2814 historically targets governments and telcos A China-linked crew found a unique formula for attacking telcos and government orgs across the Americas, Asia, and Africa in its latest round of intrusions. Google's threat intelligence, along with unnam…
Back to Top / Wednesday, February 25, 2026, 3:21 pm / permalink 19746 / 4 stories in 9 days
Secfix raises $12M to cut compliance work 90% for European SMBs
Abhinaya Prabhu / techfundingnews - Munich-based Secfix has closed an oversubscribed $12 million Series A led by Alstin Capital, with participation from Bayern…
Back to Top / Wednesday, February 25, 2026, 1:20 am / permalink 19707 / 4 stories in 9 days
CarGurus data breach affects 12.5 million accounts
Kirsten Korosec / techcrunch - Automotive marketplace CarGurus was the target of a data breach in which the names, email addresses, phone numbers, and physical addresses of millions of customers were stolen.
Back to Top / Tuesday, February 24, 2026, 7:21 pm / permalink 19701 / 3 stories in 10 days
Wisconsin Reveals Conduent Breach Affected 25 Million Americans
PYMNTS / pymnts - A data breach at Conduent Business Services, an operator of back-end systems for state governments, has affected more than 25 million people across the country, according to data breach information posted this month by the Wisconsin Department of Agricult…
Back to Top / Tuesday, February 24, 2026, 2:21 pm / permalink 19679 / 3 stories in 10 days
Anthropic released Claude Code Security as research preview
Erin / testingcatalog - What's new? Anthropic introduced Claude Code Security for security teams and maintainers to spot code gaps; it uses Claude Opus 4.6 with layered checks and patch proposals;
- Developer ecosystem — Claude expands into tools: compilers, IDEs, PowerPoint (7)
- Market reaction — Traders dump cybersecurity stocks after Anthropic demo (4)
- Pentagon friction — Defense confronts Anthropic over safeguards and military use (2)
- Security risks — Vulnerability scanning raises misuse and real-world exploit concerns (2)
Developer ecosystem — Claude expands into tools: compilers, IDEs, PowerPoint
Market reaction — Traders dump cybersecurity stocks after Anthropic demo
Pentagon friction — Defense confronts Anthropic over safeguards and military use
Security risks — Vulnerability scanning raises misuse and real-world exploit concerns
Back to Top / Saturday, February 21, 2026, 5:20 pm / permalink 19538 / 15 stories in 13 days
PayPal Discloses Data Breach That Exposed User Info For 6 Months
msmash / slashdot - PayPal is notifying customers of a data breach after a software error in a loan application exposed their sensitive personal information, including Social Security numbers, for nearly 6 months last year. From a report: The incident affected the PayPal Wor…
Back to Top / Friday, February 20, 2026, 1:20 pm / permalink 19476 / 5 stories in 14 days