Tag Directory / INFOSEC     showing 1–20 of 308   RSS



OpenAI launches Codex Security, an AI agent designed to detect vulnerabilities in software projects

Matthias Bastian / the-decoder - OpenAI's new Codex Security agent automatically hunts for vulnerabilities in code and has already found gaps in OpenSSH and Chromium.The article OpenAI launches Codex Security, an AI agent designed to detect vulnerabilities in software projects appeared f…

#ai #cybersecurity #automation #software #infosec #openai #genai #security #patching #developertools

Back to Top / Friday, March 6, 2026, 5:21 pm / permalink 20289 / 5 stories in 6 hrs


CISA warns of Apple flaws exploited in spyware, crypto-theft attacks

Sergiu Gatlan / bleepingcomputer - CISA ordered U.S. federal agencies to patch three iOS security flaws targeted in cyberespionage and crypto-theft attacks using the Coruna exploit kit. [...]

#cybersecurity #infosec #apple #google #iphone #ios #cybercrime #cisa #patching #crypto

Back to Top / Friday, March 6, 2026, 3:21 pm / permalink 20286 / 4 stories in 8 hrs


Google says 90 zero-days were exploited in attacks last year

Bill Toulas / bleepingcomputer - Google Threat Intelligence Group (GTIG) tracked 90 zero-day vulnerabilities actively exploited throughout 2025, almost half of them in enterprise software and appliances. [...]

#cybersecurity #software #enterprise #infosec #cloudsec #google #business #security #patching #updates

38 hrs / therecord


Back to Top / Thursday, March 5, 2026, 10:22 am / permalink 20198 / 6 stories in 37 hrs


Critical Cisco Catalyst SD-WAN Vulnerabilities Allow Attackers to Gain Root Access

AnuPriya / cyberpress - Cisco released critical patches on March 5, 2026, for multiple flaws in Catalyst SD-WAN Manager (formerly vManage). These bugs let attackers skip authentication, grab root privileges, and run commands. The advisory, first posted February 25, now warns of …

#cybersecurity #networking #enterprise #infosec #hack #cisco #patching #updates

Back to Top / Thursday, March 5, 2026, 7:21 am / permalink 20184 / 4 stories in 40 hrs


A Possible US Government iPhone-Hacking Toolkit Is Now in the Hands of Foreign Spies and Criminals

Andy Greenberg / wired - A highly sophisticated set of iPhone hijacking techniques has likely infected tens of thousands of phones or more. Clues suggest it was originally built for the US government.


Coruna's 23-exploit chains compromised tens of thousands


From spies to thieves: Coruna fuels espionage and crypto theft

2 days / techspot

3 days / appleinsider


Tracing Coruna: likely US‑government roots, contractor fingerprints

3 days / ycombinator


All Other Stories


Back to Top / Tuesday, March 3, 2026, 6:20 pm / permalink 20094 / 13 stories in 3 days


Android Security Update Fixes 129 Vulnerabilities, Including Actively Exploited Zero-Day

AnuPriya / cyberpress - Google released its March 2026 Android Security Bulletin, patching 129 vulnerabilities across the Android ecosystem. This update sets a record for the highest number of fixes in a single month. It splits into two patch levels: 2026-03-01 for core Android …

#cybersecurity #mobiletech #infosec #google #android #security #smartphone #qualcomm #patching #updates

Back to Top / Tuesday, March 3, 2026, 4:20 am / permalink 20040 / 3 stories in 3 days


Iran's cyberwar has begun

Jessica Lyons / theregister - 'Expect elevated activity for the foreseeable future' Iranian hackers have launched spying expeditions, digital probes, and distributed denial of service (DDoS) attacks in the wake of the US and Israel launching missile strikes over the weekend, and secur…


AI and phishing threats — weaponized agents, rising scams, deepfakes

3 days / techspot


Iran-linked cyber operations — espionage, DDoS, app propaganda


Maritime and infrastructure disruptions — GPS, AWS outages, internet cuts


OTHER — warnings, VPN workarounds, industry hires, communications advice


All Other Stories


Back to Top / Monday, March 2, 2026, 3:22 pm / permalink 20018 / 28 stories in 4 days


Please, please, please stop using passkeys for encrypting user data

Simon Willison / simonwillison - Please, please, please stop using passkeys for encrypting user dataBecause users lose their passkeys all the time, and may not understand that their data has been irreversibly encrypted using them and can no longer be recovered.Tim Cappalli:To the wider i…

#cybersecurity #dataprivacy #infosec #cloudsec #security #ux #technology #encryption

7 days / ycombinator


Back to Top / Saturday, February 28, 2026, 12:20 am / permalink 19914 / 2 stories in 6 days


CISA is getting a new acting director after less than a year

Stevie Bonifield / theverge - The US Cybersecurity and Infrastructure Security Agency (CISA), which is part of the Department of Homeland Security, is getting a new acting director, as reported by ABC, less than a year after Madhu Gottumukkala took charge of the agency as deputy direc…

#cybersecurity #techpolicy #infosec #government #governance #DHS #us #cisa #patching #updates

Back to Top / Friday, February 27, 2026, 4:21 pm / permalink 19898 / 6 stories in 7 days


Apple's iPhone and iPad become first consumer devices to receive NATO security clearance

techspot - The clearance puts Apple in an exclusive position – no other consumer smartphone or tablet maker has ever reached the same security threshold under the alliance's information assurance standards.Read Entire Article

#cybersecurity #infosec #apple #defensetech #government #iphone #ios #security #ipad #encryption

7 days / bgr

7 days / techspot

7 days / digitaltrends


Back to Top / Friday, February 27, 2026, 7:21 am / permalink 19868 / 4 stories in 7 days


Researchers discover massive Wi-Fi vulnerability affecting multiple access points — AirSnitch lets attackers on the same network intercept data and launch machine-in-the-middle attacks

tomshardware - A team of researchers discovered that they can break cryptographic client isolation on a number of wireless routers by taking advantage of how Wi-Fi networks work.

#cybersecurity #networking #dataprivacy #infosec #wireless #security #hack #encryption #patching #research

8 days / tomshardware

8 days / ycombinator


Back to Top / Thursday, February 26, 2026, 2:21 pm / permalink 19824 / 3 stories in 8 days


iPhone and iPad Are First Consumer Devices Cleared for NATO Classified Data

Juli Clover / macrumors - The iPhone and iPad can be used with NATO restricted level classified information after meeting NATO's information assurance requirements, Apple said today. No special software or settings are required.Apple's devices are the first and only consumer mobil…


Approval scope: Apple devices cleared to carry NATO restricted data

8 days / iclarified

8 days / appleinsider

8 days / ycombinator


German vetting: BSI testing confirmed devices meet NATO requirements


All Other Stories


Back to Top / Thursday, February 26, 2026, 1:21 pm / permalink 19817 / 14 stories in 8 days


ThreatAware Raises $25M to Scale Cybersecurity with AI

Ekemini / ventureburn - ThreatAware has raised a total of $25 million in funding from One Peak, an investment firm that specializes in growth equity investments in high-growth software businesses. The funding serves asThe post ThreatAware Raises $25M to Scale Cybersecurity with …

#ai #startups #cybersecurity #ml #saas #enterprise #infosec #cloudsec #business

Back to Top / Thursday, February 26, 2026, 11:21 am / permalink 19808 / 3 stories in 8 days


Cisco SD-WAN Zero-Day Under Active Exploitation Grants Attackers Root-Level Control

AnuPriya / cyberpress - Cisco has disclosed a critical zero-day vulnerability in its Catalyst SD-WAN Controller (formerly vSmart) and Catalyst SD-WAN Manager (formerly vManage), actively exploited by sophisticated threat actors since at least 2023 to bypass authentication and se…

#cybersecurity #networking #enterprise #infosec #cloudsec #government #DHS #cisco #cisa #patching

Back to Top / Thursday, February 26, 2026, 6:21 am / permalink 19779 / 6 stories in 8 days


Google catches Beijing spies using Sheets to spread espionage across 4 continents

Jessica Lyons / theregister - UNC2814 historically targets governments and telcos A China-linked crew found a unique formula for attacking telcos and government orgs across the Americas, Asia, and Africa in its latest round of intrusions. Google's threat intelligence, along with unnam…

#cybersecurity #dataprivacy #infosec #cloudsec #china #google #government #cybercrime #supplychain #telecommunications

Back to Top / Wednesday, February 25, 2026, 3:21 pm / permalink 19746 / 4 stories in 9 days


Secfix raises $12M to cut compliance work 90% for European SMBs

Abhinaya Prabhu / techfundingnews - Munich-based Secfix has closed an oversubscribed $12 million Series A led by Alstin Capital, with participation from Bayern…

#vc #cybersecurity #saas #enterprise #infosec #cloudsec #business #security #europe #regulation

Back to Top / Wednesday, February 25, 2026, 1:20 am / permalink 19707 / 4 stories in 9 days


CarGurus data breach affects 12.5 million accounts

Kirsten Korosec / techcrunch - Automotive marketplace CarGurus was the target of a data breach in which the names, email addresses, phone numbers, and physical addresses of millions of customers were stolen.

#cybersecurity #dataprivacy #infosec #cars #business #cybercrime #hack #automotive

10 days / pymnts / PYMNTS


Back to Top / Tuesday, February 24, 2026, 7:21 pm / permalink 19701 / 3 stories in 10 days


Wisconsin Reveals Conduent Breach Affected 25 Million Americans

PYMNTS / pymnts - A data breach at Conduent Business Services, an operator of back-end systems for state governments, has affected more than 25 million people across the country, according to data breach information posted this month by the Wisconsin Department of Agricult…

#cybersecurity #dataprivacy #techpolicy #infosec #cloudsec #government #business #cybercrime #us

10 days / pymnts / PYMNTS


Back to Top / Tuesday, February 24, 2026, 2:21 pm / permalink 19679 / 3 stories in 10 days


Anthropic released Claude Code Security as research preview

Erin / testingcatalog - What's new? Anthropic introduced Claude Code Security for security teams and maintainers to spot code gaps; it uses Claude Opus 4.6 with layered checks and patch proposals;


Developer ecosystem — Claude expands into tools: compilers, IDEs, PowerPoint

13 days / ycombinator

13 days / ycombinator


Market reaction — Traders dump cybersecurity stocks after Anthropic demo

12 days / pymnts / PYMNTS


Pentagon friction — Defense confronts Anthropic over safeguards and military use


Security risks — Vulnerability scanning raises misuse and real-world exploit concerns

11 days / tomshardware


Back to Top / Saturday, February 21, 2026, 5:20 pm / permalink 19538 / 15 stories in 13 days


PayPal Discloses Data Breach That Exposed User Info For 6 Months

msmash / slashdot - PayPal is notifying customers of a data breach after a software error in a loan application exposed their sensitive personal information, including Social Security numbers, for nearly 6 months last year. From a report: The incident affected the PayPal Wor…

#cybersecurity #fintech #dataprivacy #infosec #payments #hack #patching #paypal

Back to Top / Friday, February 20, 2026, 1:20 pm / permalink 19476 / 5 stories in 14 days


Back to Top


INFOSEC Heatmap


90 days, weeks are vertical, left is older; hover for info, click to see that day's coverage.



More Top Stories...


U.S. prepares strict export controls on AI accelerators, curbing foreign sales

U.S. authorities are drafting new export rules requiring government approval for certain AI accelerators before overseas sales, aiming to limit adversaries’ access to advanced chips. The Commerce Department confirmed a tough approach that stops short of prior proposals but signals significant restrictions, forcing vendors and customers to navigate fresh geopolitical red tape. More...


Oracle and OpenAI scrap Texas data-center expansion; Meta eyes the spare capacity

Oracle and OpenAI have abandoned plans to expand a flagship Texas data center, leaving substantial compute capacity up for grabs. Nvidia reportedly brokered interest from Meta to take the unused slots as OpenAI downscales that particular buildout, a move that rattled markets and highlights shifting demand for large-scale on-prem AI infrastructure. More...


SoftBank seeks massive $40B loan to back OpenAI investment, courting big risk

SoftBank is reportedly seeking up to a $40 billion loan to finance its planned stake in OpenAI, an audacious use of leverage to double down on the AI boom. The move would be one of the largest single‑company financing gambits in recent memory, raising questions about balance‑sheet strain versus potential upside. More...


Pentagon labels Anthropic a supply‑chain risk; company vows legal fight

The Pentagon has designated Anthropic and its products as a “supply‑chain risk,” prompting the company to announce a court challenge. Experts warn the move could chill collaboration and talent flows into AI, while Anthropic insists it will contest the determination to protect its operations and customers. More...


Google releases Workspace CLI enabling AI agents to access Gmail, Drive, Calendar

Google has shipped an open-source Workspace CLI that gives AI agents like OpenClaw programmatic access to Gmail, Drive, Calendar and other Workspace services via a built-in MCP server. The tool standardizes agent integration, making it easier — and slightly creepier — for automated assistants to act on users’ behalf across core productivity apps. More...



NorthFeed Inc.

Disclaimer: The information provided on this website is intended for general informational purposes only. While we strive for accuracy, we do not guarantee the completeness or reliability of the content. Users are encouraged to verify all details independently. We accept no liability for errors, omissions, or any decisions made based on this information.