Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs

Cybersecurity researchers have been racing against time to keep pace with an onslaught of software vulnerabilities, and the latest example comes from Apple’s latest round of patches for iOS, macOS, and Safari. In one fell swoop, the tech giant has addressed over 30 critical bugs across its platforms, including a handful of particularly noteworthy vulnerabilities … Read more

Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-Auth

A Critical Flaw in Progress Kemp LoadMaster Could Allow Attackers to Run Root Commands Without Authentication A severe vulnerability has been discovered in the Progress Kemp LoadMaster, a widely-used application delivery controller (ADC) and load balancer. The flaw, identified as CVE-2023-3784, enables attackers to run root commands on affected systems without the need for authentication. … Read more

New BioShocking Attack Tricks AI Browsers Into Leaking User Credentials

A New Wave of Biometric Phishing Threatens to Compromise User Credentials Across Multiple Platforms In a disturbing revelation, researchers have uncovered a novel attack technique known as BioShocking that exploits AI-powered browsers to extract sensitive user credentials. This cunning tactic has been identified on various popular platforms, including mobile and desktop applications, putting millions of … Read more

AirDrop and Quick Share Flaws Let Nearby Attackers Trigger Crashes and Bypass Checks

Cybersecurity researchers have uncovered critical vulnerabilities in Apple’s AirDrop and Quick Share features, which allow attackers to trigger crashes on nearby devices and bypass essential security checks. The flaws, discovered by a team of experts from the University of California, Berkeley, expose millions of users to potential attacks. AirDrop and Quick Share are designed for … Read more

Researchers Demo New Claude Code Attack Using Harmless-Looking Repositories to Hijack Developer Machines

Researchers have uncovered a novel attack vector that exploits vulnerabilities in AI-powered code analysis tools like Claude Code. The technique, dubbed “Claude Code Attack,” allows threat actors to hijack developer machines by hiding malicious instructions within normal-looking repositories. The attack relies on an error thrown during installation and manipulates the AI agent into spawning a … Read more

New Controller Flaws Expose Highway Signs and Billboards to Remote Hacking

A Critical Vulnerability Affects Highway Signs and Billboards, Exposing Them to Remote Hacking Attacks Highway signs and billboards around the world are potentially vulnerable to hacking attacks due to critical vulnerabilities in some Daktronics controllers. The cybersecurity researcher who discovered these flaws has warned that hackers could exploit them to tamper with what is displayed … Read more

Quantifind Raises $200 Million for AI-Native Risk Intelligence

A $200 Million Boost for AI-Powered Financial Crime Detection Quantifind, a California-based company specializing in artificial intelligence (AI)-native risk intelligence, has secured a whopping $200 million in growth funding. This latest investment brings the company’s total raised to nearly $320 million, solidifying its position as a leader in the burgeoning field of AI-powered financial crime … Read more

Oracle E-Business Suite Flaw CVE-2026-46817 Actively Exploited in the Wild

A critical vulnerability in Oracle E-Business Suite, identified as CVE-2026-46817, is being actively exploited in the wild, putting thousands of businesses at risk. This flaw allows attackers to execute arbitrary code on affected systems, potentially leading to data theft, financial loss, and reputational damage. The issue lies in a weakness in the way Oracle E-Business … Read more