Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
U.S. cybersecurity agencies warn that threat actors are using AI-generated scripts to exploit Siemens S7 Series programmable logic controllers (PLCs) in U.S. critical infrastructure.
Microsoft has been named a Leader in the Frost Radar Cloud Workload Protection Platforms 2026 report, recognizing its approach to unifying cloud security across Azure and multi-cloud environments. Security teams are overwhelmed with findings but still struggle to answer which risks matter most, and the report highlights the need for context-aware prioritization that considers exploitability, asset criticality, and active threats.
Many teams now deploy AI agents that pull fromAmazon DynamoDBtables, document repositories, software as a service (SaaS) platforms, and internal knowledge bases to answer questions and automate workflows. A key risk in these deployments is that the agent has no awareness of who’s asking, so it might return data the user shouldn’t see.
A spear-phishing campaign by a China-nexus group linked to FamousSparrow provides insight into geopolitical, technical, and strategic global moves by the country's APTs.
The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations.
Following GreenPlasma, YellowKey and MiniPlasma, RoguePlanet and GreatXML , and LegacyHive , the Nightmare-Eclipse disclosure actor has published ShieldBreak — its latest Windows proof of concept (PoC) released shortly after Microsoft's August 2026 Patch Tuesday.