Trezor warns users of email provider breach, phishing attacks

Cryptocurrency hardware wallet maker Trezor is warning its customers of a phishing attack that’s exploiting a recent breach of its third-party email provider. The attackers are sending fake “critical security alert” emails claiming to inform users about a vulnerability in the microcontrollers used by Trezor cold storage wallets, but this is actually a ploy to … Read more

Microsoft fixes bug that wiped Windows desktop settings

Microsoft has just fixed a critical bug that was causing desktop settings to be lost or reset on some Windows devices. The issue, which affected Windows 11 systems running on versions 24H2 and 25H2, wiped out wallpaper and theme settings, leaving users with a blank black screen. What’s more alarming is that this bug also … Read more

Chipmaker Patch Tuesday: Nvidia, AMD, Arm Issue Security Advisories

Major Chipmakers Issue Critical Security Advisories to Patch Vulnerabilities in Popular Products The world’s leading chipmakers have published crucial security advisories this week, warning customers about vulnerabilities recently discovered in their products. AMD, Arm, and Nvidia have all issued fixes for critical flaws that could allow attackers to crash systems, steal sensitive information, or take … Read more

Android’s September 2026 Updates Patch 180 Vulnerabilities

Android’s September 2026 Security Patch Brings Relief for Millions of Users Google has released patches for a staggering 180 vulnerabilities in its Android operating system, marking one of the largest security updates in recent history. The patches, which are part of the September 2026 Android security updates, address critical and high-severity flaws that could have … Read more

AI Is Giving Lesser-Resourced Attackers Nation-State-Level Reach, Google Warns

As cyberattacks become increasingly sophisticated, a new threat has emerged that’s giving lesser-resourced attackers nation-state-level reach: Artificial Intelligence (AI). According to Google’s Threat Intelligence Group (GTIG), adversaries are leveraging AI to automate and scale their attacks, rendering traditional security measures ineffective. Google’s GTIG has been tracking the evolution of AI-assisted attacks, which started with relatively … Read more

HelmGuard Raises $7.3 Million for Agentic GRC and Security

HelmGuard Raises $7.3 Million to Revolutionize Risk Management with AI-Powered Platform Cybersecurity startup HelmGuard has secured a significant $7.3 million in seed funding, co-led by Infinity Ventures and Frontline, to further develop its innovative agentic governance, risk, and compliance (GRC) and security platform. Founded in 2024 by former Palantir executive John Daley and Jack Miller, … Read more

Identity-Based AI Attack Threatens Security of Enterprise Data

A New AI Attack Vector Exposes Enterprise Data to Threat Actors In a disturbing development that highlights a critical flaw in modern enterprise artificial intelligence (AI) pipelines, security researchers have identified a new type of attack flow that can bypass standard security controls and hijack an organization’s data. Dubbed “workflow identity hijacking,” this attack vector … Read more

AI Is Giving Lesser-Resourced Attackers Nation-State-Level Reach, Google Warns

Google’s Threat Intelligence Group has been sounding the alarm about a growing trend in cybersecurity threats: the increasing use of artificial intelligence (AI) by both nation-state actors and financially motivated attackers to automate and scale their attacks. This development is giving lesser-resourced groups unprecedented capabilities, making it essential for enterprises to be aware of this … Read more

HelmGuard Raises $7.3 Million for Agentic GRC and Security

HelmGuard, a UK-based startup founded in 2024 by former Palantir executive John Daley and Jack Miller, has secured $7.3 million in seed funding to further develop its agentic governance, risk, and compliance (GRC) and security platform. The investment round was co-led by Infinity Ventures and Frontline, with additional support from FinTech Collective, Stage 2 Capital, … Read more

Identity-Based AI Attack Threatens Security of Enterprise Data

A New AI Attack Vector Threatens Enterprise Data Security, Highlighting Authorization Flaws in Modern AI Pipelines Security researchers have identified a sophisticated artificial intelligence (AI) attack flow that can bypass standard security controls and hijack an organization’s sensitive data. Dubbed “workflow identity hijacking” by Noma Labs, the attackers exploit an authorization design flaw in modern … Read more