Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Some security researchers have observed an uptick in insider-assisted ransomware attacks, but malicious insiders pose other threats that cost companies millions.
Phishing actors are abusing the legitimate Faronics Deploy endpoint-management platform to gain remote administrative control over victim computers and install the ScreenConnect remote support software.
According to Dark Reading, CVE-2026-0768 in Langflow is under active exploitation, with adversaries increasingly targeting the platform this year. The critical flaw allows attackers to compromise unpatched systems.
A hacking operation dubbed Fire Ant "didn’t just compromise systems," according to researchers. "It compromised the trust layer those systems depend on." By hijacking Cisco routers, the attackers established a stealthy foothold within network infrastructure, using the devices as a platform to launch further attacks.
In one attack, threat actors stole an API key that ultimately led to the consumption of $600,000 in public AI model credits for the security nonprofit.
Aesto LLC, operating as Aesto Health, disclosed that a data breach discovered recently affects more than 9.5 million individuals.