ThreatsDay: AI-Powered Hacking, 370 Chrome Flaws, SonicWall Attacks, DNS Hijacking + 22 More Stories

As hackers increasingly turn to artificial intelligence (AI) to discover and exploit software vulnerabilities, organizations must adapt their defenses to stay ahead of this emerging threat. The latest development in AI-powered hacking involves sophisticated models that can identify previously unknown weaknesses in complex software systems, rendering traditional patching methods ineffective. One of the most significant … Read more

SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT

A sophisticated cyberattack, dubbed SilverFox, has compromised a major Japanese manufacturer’s network using a novel combination of attack techniques. The attackers exploited a three-stage “Bring Your Own Vulnerability” (BYOVD) chain and deployed the notorious ValleyRAT malware to gain unauthorized access to sensitive data. At the center of the attack is an AI-powered vulnerability discovery tool, … Read more

Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts

A series of compromised Korean websites is serving up malware-laced downloads that install backdoors on unsuspecting users’ computers, all thanks to a vulnerability in a popular software tool called AnySign4PC. The hacking campaign, which appears to be ongoing, has already caught the attention of cybersecurity experts who warn that anyone visiting these hacked sites risks … Read more

The Network Has Become the Control Plane for AI Security

As we continue to rely on artificial intelligence (AI) to aid us in detecting and preventing cyber threats, a growing concern is emerging: the potential for sophisticated attacks launched by AI models themselves. In recent years, researchers have been exploring ways to harness the power of AI to identify vulnerabilities in software code. However, this … Read more

Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents

Microsoft’s AI-powered writing tool, Copilot for Word, has been found to be copying hidden prompts into newly created documents, sparking concerns about data confidentiality and potential exploitation of sensitive information. The issue arises from a flaw in Copilot’s training data, which allows it to embed hidden prompts or templates within the generated content. These prompts … Read more

Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database

A Critical Azure Cosmos DB Flaw Exposes Platform-Wide Key, Threatening Access to Any Database A severe security vulnerability has been discovered in Microsoft’s Azure Cosmos DB, a popular cloud-based NoSQL database service. The flaw allows unauthorized access to any database on the platform, potentially putting millions of users and organizations at risk. A single, exposed … Read more

Patch-Resistant ‘RufRoot’ Flaw Can Unleash Malicious AI Agent Swarms

As of yesterday, a critical vulnerability in the open-source AI agent platform Ruflo has left enterprise AI deployments at risk of malicious activities. The flaw, tracked as CVE-2026-59726, allows attackers to access the platform without logging in and conduct various malicious actions from within the orchestration framework. Researchers at Noma Security’s Noma Labs discovered the … Read more

When AppSec Scanners Become a Supply Chain Attack Vector

Security scanners embedded in software development pipelines are designed to identify vulnerabilities and harden code. However, they can also become a gateway for attackers if not properly secured themselves. A recent investigation by security researchers at ZeroPath has uncovered a worrying trend where specialized application security scanning tools can be compromised to serve as a … Read more

Hugging Face Hack Lessons for Cyber Defenders

A sophisticated cyberattack on AI firm Hugging Face has left cybersecurity experts scrambling for answers. The incident, which began with a blog post from Hugging Face detailing a sustained attack, has since been revealed to be an internal test gone wrong by OpenAI. At its core, this story is about the intersection of artificial intelligence … Read more

SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT

A Japanese manufacturer has been targeted by a sophisticated cyberattack that leverages a rare and complex technique called Bring Your Own Vulnerability Disclosure (BYOVD). Dubbed “SilverFox,” this campaign employs a three-stage attack chain involving a 3-Driver BYOVD exploit, followed by the deployment of the ValleyRAT malware. The incident highlights the growing threat landscape and underscores … Read more