Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Microsoft Security discusses the growing threat of AI-assisted executive impersonation and invoice fraud attacks. These attacks use generative AI to create highly convincing phishing emails and fake communications from company leaders.
This article from Microsoft Security discusses the rise of AI-themed cyberattacks that impersonate popular AI platforms like ChatGPT and Copilot. While the tactics are familiar, such as phishing and malvertising, the attackers exploit the high trust and curiosity surrounding AI brands.
This BleepingComputer article reports that an AI-powered campaign exploited PaperCut print management flaws to hack 395 organizations. The attackers used hundreds of AI agents to automate the exploitation process, making it highly sophisticated and scalable.
This Malwarebytes article describes the BlueMoon exploit kit that chains Chrome and Windows vulnerabilities, used by four espionage groups. Attacks start with phishing emails leading to malicious pages that exploit patched Chrome flaws and a Windows privilege escalation vulnerability.
This BleepingComputer article warns that Cisco FMC flaws (CVE-2026-20079) are being actively exploited by both ransomware gangs and state-sponsored hackers. The authentication bypass vulnerability grants full administrative control, enabling attackers to compromise networks.
This Gen Digital research article details the GRAYRABBIT backdoor vulnerability in Sogou Input Method that allowed a one-click compromise when users clicked a crafted link. The UNC3569 threat group actively exploited the flaw before it was fixed after responsible disclosure to Tencent.