Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Security flaws in agent infrastructure from AWS, Google, and Vercel allowed attackers to bypass AI model authorization checks and directly trigger tools without model execution. The vulnerabilities affected Amazon Bedrock AgentCore's InvokeHarness API (CVE-2026-18830), Google's Agent Development Kit for Python (CVE-2026-18236), and Vercel's AI SDK harness packages for Codex and OpenCode agents.
This article reports on a factory-shipped backdoor, named ENDLESSDOORS, found in over 20 Zbtlink router models. The implant, based on a tool called rctl, runs with root privileges and connects to a command-and-control server without any authentication, allowing attackers to execute commands or spawn a root shell.
This article reports on a factory-shipped backdoor, named ENDLESSDOORS, found in over 20 Zbtlink router models. The implant, based on a tool called rctl, runs with root privileges and connects to a command-and-control server without any authentication, allowing attackers to execute commands or spawn a root shell.
This article covers the sentencing of Maksim Silnikau, a Belarusian national, to 16 years in prison for operating the Ransom Cartel ransomware-as-a-service operation. Silnikau built the business around affiliates, providing locking software, stolen credentials, and a negotiation panel, while pushing payments through cryptocurrency mixers.
This article covers the sentencing of Maksim Silnikau, a Belarusian national, to 16 years in prison for operating the Ransom Cartel ransomware-as-a-service operation. Silnikau built the business around affiliates, providing locking software, stolen credentials, and a negotiation panel, while pushing payments through cryptocurrency mixers.
CISA has added a critical JetBrains TeamCity vulnerability, CVE-2026-63077, to its Known Exploited Vulnerabilities catalog due to active exploitation. The flaw allows unauthenticated remote code execution through the agent polling protocol.