Summer of Clearinghouses

The Summer of Clearinghouses has brought an unexpected threat to software security, as artificial intelligence (AI) models have begun uncovering hidden vulnerabilities at an unprecedented rate. These AI-powered clearinghouses are rapidly identifying previously unknown weaknesses in widely used software applications, leaving organizations scrambling to patch and protect themselves. Behind the scenes, these AI-driven vulnerability discovery … Read more

‘GodDamn’ Ransomware Uses BYOVD to Smite US Companies

A Highly Malicious Ransomware Operation Exploits Signed Driver to Wreak Havoc on US Companies A new wave of ransomware attacks is sweeping across American organizations, courtesy of a group known as Hyadina. This four-year-old ransomware-as-a-service (RaaS) operation has been rebranding itself with new lockers, including the latest iteration, “GodDamn.” What’s particularly concerning about this threat … Read more

AssuranceAmerica data breach exposes records of 6.9 million drivers

A staggering data breach has hit American insurance company AssuranceAmerica, exposing the sensitive information of nearly 7 million drivers. The breach, which was discovered on March 17, allowed attackers to gain access to a wide range of customer data, including names, contact details, and driver’s license numbers. AssuranceAmerica operates through a network of over 9,500 … Read more

Police arrests 5,800 suspects in global anti-fraud crackdown

Global Anti-Fraud Crackdown Yields Record Number of Arrests and Asset Seizures Law enforcement agencies have launched a massive joint operation to combat social engineering fraud, resulting in the arrest of 5,811 suspects worldwide and the seizure of $293 million in illicit assets. Dubbed “Operation First Light 2026,” this global effort involved 97 countries and targeted … Read more

Meta’s New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images

Meta’s latest AI-powered image tool, designed for creative professionals and businesses, has raised concerns about user privacy and data exploitation. The company’s new offering allows users to generate high-quality images using their public Instagram photos as inputs. However, this feature has sparked controversy, with many questioning the potential misuse of personal data. The tool in … Read more

Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges

Cybersecurity researchers have sounded the alarm on a critical vulnerability affecting Microsoft’s Windows Defender Advanced Threat Protection (ATP) feature, dubbed RoguePlanet Defender. This flaw, discovered and responsibly disclosed by the security firm SentinelOne, can grant malicious actors SYSTEM-level privileges on compromised systems, essentially giving them unfettered access to sensitive data and resources. The vulnerability, assigned … Read more

AssuranceAmerica data breach exposes records of 6.9 million drivers

A massive data breach has hit AssuranceAmerica, a US-based insurance company, exposing the sensitive information of nearly 7 million drivers. The incident occurred earlier this year when attackers gained access to the company’s systems, compromising a wide range of customer data. AssuranceAmerica operates through a network of over 9,500 independent agents and provides auto, renters, … Read more

Fake 7-Zip Installers Turn Devices Into Residential Proxy Nodes

A sophisticated malware campaign is using fake 7-Zip installers to turn unsuspecting devices into residential proxy nodes, highlighting the ongoing cat-and-mouse game between cybercriminals and security experts. The attackers are taking advantage of a legitimate software’s reputation to gain trust, making it increasingly difficult for users to distinguish between genuine and malicious downloads. The malware … Read more

GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding Agents

A Critical Flaw in Popular AI Coding Agents Puts Developers at Risk of Malicious Code Execution Cybersecurity researchers have uncovered a vulnerability in several popular artificial intelligence (AI) coding agents, which could allow malicious repositories to execute code on developers’ systems. The issue lies in the way these tools interact with Git repositories, specifically through … Read more

Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running It

As it turns out, some of the most advanced artificial intelligence (AI) systems designed to detect and prevent malware have been found to be vulnerable to manipulation themselves. Researchers have discovered that certain AI-powered agents can be tricked into running malicious code, effectively turning their protective capabilities against them. These AI models, built using machine … Read more