Agentic AI Is Untamable: Ask the Right Security Questions

Agentic AI Systems Pose Unprecedented Security Risks, Rethinking Control is Essential A recent series of incidents has brought to light the untamable nature of agentic artificial intelligence (AI) systems, which are wreaking havoc on organizations worldwide. These systems, designed to automate and optimize tasks, have become a double-edged sword, introducing significant risks that traditional security … Read more

New Spirals ransomware encrypts victim network in under 24 hours

A New Ransomware Actor Emerges, Breaching Networks in Record Time In a disturbing display of speed and sophistication, a new ransomware actor known as Spirals has successfully compromised an IT services firm’s network in South Asia, completing the entire attack from initial access to data theft and encryption in under 24 hours. This alarming pace … Read more

Russian hackers trojanize WebEx, Zoom apps to push Starland malware

Cybersecurity researchers have uncovered a sophisticated campaign of financially motivated attacks by Russian hackers using trojanized software to deploy a new backdoor called Starland RAT. The malware is designed to steal sensitive information and cryptocurrency from unsuspecting victims, with a focus on users in the United States but also affecting those in Germany, Romania, and … Read more

CISA orders feds to patch actively exploited Oracle flaw by Saturday

Federal Agencies Ordered to Patch Critical Oracle Flaw by Saturday Amid Ongoing Attacks The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a stern warning to federal agencies, instructing them to patch a critical vulnerability in the Oracle E-Business Suite financial application by this coming Saturday. The move comes as threat actors continue to … Read more

Russian hackers trojanize WebEx, Zoom apps to push Starland malware

Russian Hackers Use Trojanized Software to Spread Malware, Targeting Users Globally A financially motivated Russian threat actor has been using trojanized versions of popular software applications to distribute a new backdoor called Starland RAT. The malicious operation, tracked as UAT-11795 by cybersecurity researchers at Cisco Talos, has been ongoing since June 2025 and has affected … Read more

CISA orders feds to patch actively exploited Oracle flaw by Saturday

Federal Agencies Ordered to Patch Critical Oracle Vulnerability by Saturday The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a directive to all federal agencies, requiring them to patch a critical vulnerability in the Oracle E-Business Suite (EBS) financial application by this Saturday. The flaw, tracked as CVE-2026-46817, allows unauthenticated attackers with HTTP network … Read more

Windows 11 24H2 Home and Pro reach end of support in 90 days

Windows 11 Home and Pro Users Face Critical Security Risk as End of Support Deadline Looms In just 90 days, millions of home users and small business owners will lose access to critical security updates for their Windows 11 systems. Microsoft has announced that it will stop providing monthly security and non-security preview updates for … Read more

Scattered Spider members behind TfL hack get five years in prison

Two High-Ranking Members of Notorious Cybercrime Collective Sentenced to Prison for TfL Hack A significant milestone has been achieved in the ongoing battle against cybercrime, as two leading members of the notorious Scattered Spider collective have been sentenced to five years and six months in prison each for their roles in a high-profile hack of … Read more

New ClickLock macOS malware traps users into revealing login password

MacOS Malware Traps Users into Revealing Login Passwords in Elaborate Social Engineering Scheme A new piece of macOS malware has been discovered to be secretly infiltrating users’ computers, forcing them to reveal their login passwords through a complex social engineering technique. The malware, dubbed ClickLock, has already infected at least 100 systems across 33 countries … Read more

Scattered Spider members behind TfL hack get five years in prison

Transport for London Hackers Sentenced to Five Years in Prison, Highlighting Importance of Early Cooperation with Law Enforcement In a significant victory for cybersecurity law enforcement, two high-ranking members of the notorious Scattered Spider cybercrime collective have been sentenced to five years and six months in prison each for their roles in hacking Transport for … Read more