Advertisement
Cyber

AI in Cyber

AI-powered threats, defense, vulnerabilities and the future of InfoSec.

5 sources · 48 stories
Cyber
Chrome CVE made me go digging and I found a container image in prod that hasn't been updated since 2023
So this new Chrome zero-day got me paranoid about our headless browser containers. Started auditing and found a PDF gene
r/netsec·5h ago·1 min read·22
Cyber
RoguePilot Flaw in GitHub Codespaces Enabled Copilot to Leak GITHUB_TOKEN
The Hacker News·8h ago
Cyber
AI Agent Threat Intel (Feb 2026 month to date): Tool chain escalation displaces instruction override as #1 technique, agent-targeting attacks hit 26.4% - 91K production interactions
Monthly threat intelligence from production AI agent deployments. 91,284 interactions, 47 deployments, 35,711 threats, d
r/netsec·10h ago·1 min read·0
Cyber
ROP the ROM: Exploiting a Stack Buffer Overflow on STM32H5 in Multiple Ways
r/netsec·10h ago·2
Cyber
Goodbye innerHTML, Hello setHTML: Stronger XSS Protection in Firefox 148 – Mozilla Hacks - the Web developer blog
r/netsec·12h ago·31
Cyber
UAC-0050 Targets European Financial Institution With Spoofed Domain and RMS Malware
The Hacker News·13h ago
Cyber
Using Passkeys for more than just Auth
r/netsec·14h ago·45
Advertisement
Cyber
Lazarus Group Uses Medusa Ransomware in Middle East and U.S. Healthcare Attacks
The Hacker News·15h ago
Cyber
UnsolicitedBooker Targets Central Asian Telecoms With LuciDoor and MarsSnake Backdoors
The Hacker News·17h ago
Cyber
AI 7/10
Anthropic Says Chinese AI Firms Used 16 Million Claude Queries to Copy Model
The Hacker News·21h ago
Cyber
APT28 Targeted European Entities Using Webhook-Based Macro Malware
The Hacker News·1d ago
Cyber
Another exposed Supabase DB strikes: 20k+ attendees and FULL write access
r/netsec·1d ago·65
Cyber
Wormable XMRig Campaign Uses BYOVD Exploit and Time-Based Logic Bomb
The Hacker News·1d ago
Cyber
⚡ Weekly Recap: Double-Tap Skimmers, PromptSpy AI, 30Tbps DDoS, Docker Malware & More
The Hacker News·1d ago
Advertisement
Cyber
Have you tried turning it off and on again? On bricking OT devices (part 2)
r/netsec·1d ago·24
Crypto
Malicious npm Packages Harvest Crypto Keys, CI Secrets, and API Tokens
The Hacker News·1d ago
Cyber
MuddyWater Targets MENA Organizations with GhostFetch, CHAR, and HTTP_VIP
The Hacker News·1d ago
Cyber
Malicious Chrome extension targeting Apple App Store Connect developers through fake ASO service - full analysis
Discovered a malicious Chrome extension (mimplmibgdodhkjnclacjofjbgmhogce) on its first day of deployment while testing
r/netsec·2d ago·1 min read·17
Cyber
How a single typo led to RCE in Firefox
r/netsec·2d ago·152
Cyber
AI-Assisted Threat Actor Compromises 600+ FortiGate Devices in 55 Countries
The Hacker News·3d ago
Cyber
AI 10/10
Anthropic Launches Claude Code Security for AI-Powered Vulnerability Scanning
The Hacker News·3d ago
Advertisement
Cyber
‘Starkiller’ Phishing Service Proxies Real Login Pages, MFA
Most phishing websites are little more than static copies of login pages for popular online destinations, and they are o
Krebs on Security·4d ago·1 min read
Cyber
Your Samsung Weather App Is a Fingerprint: How saved locations create a persistent cross-session tracking identifier
I analyzed 9,211 weather API requests from 42 Samsung devices over five days and found that the pre-installed Samsung We
r/netsec·4d ago·1 min read·125
Cyber
In Memoriam: Jason Snitker, a.k.a. Parmaster. RIP Legend
Rest easy, Par. The wire remembers.
r/netsec·4d ago·1 min read·88
Cyber
Discovery & Analysis of CVE-2025-29969
r/netsec·4d ago·6
Cyber
[CVE-2026-0714] TPM-sniffing LUKS Keys on an Embedded Device
r/netsec·5d ago·42
Cyber
Compromising Cline's Production Releases just by Prompting an Issue Triager
r/netsec·5d ago·26
Cyber
CRESCENTHARVEST: Iranian protestors and dissidents targeted in cyberespionage campaign
r/netsec·6d ago·35
Advertisement
Cyber
Log Poisoning in OpenClaw
r/netsec·7d ago·47
Cyber
Prompt Injection Standardization: Text Techniques vs Intent
r/netsec·7d ago·35
Cyber
Almost Impossible: Java Deserialization Through Broken Crypto in OpenText Directory Services
r/netsec·8d ago·75
Cyber
When Audits Fail Part 2: From Pre-Auth SSRF to RCE in TRUfusion Enterprise
r/netsec·8d ago·5
Cyber
nono - kernel-enforced capability sandbox for AI agents
Sharing a tool I've been building to address the permissions problem with AI agents that often have unfettered shell acc
r/netsec·8d ago·1 min read·32
Cyber
[Analysis] Massive Active GitHub Malware Campaign | Hundreds of Malicious Repositories Identified
I've spent the last several hours investigating what I initially thought was a single malicious fork of a macOS app. It
r/netsec·8d ago·1 min read·97
Cyber
sandboxec: A lightweight command sandbox for Linux, secure-by-default, built on Landlock.
you can actually run agents safely without breaking your machine using linux kernel-native security module (LSM), so no
r/netsec·8d ago·1 min read·19
Advertisement
Cyber
Patch Tuesday, February 2026 Edition
Microsoft today released updates to fix more than 50 security holes in its Windows operating systems and other software,
Krebs on Security·14d ago·1 min read
Cyber
Please Don’t Feed the Scattered Lapsus ShinyHunters
Read More »]]>
Krebs on Security·22d ago·1 min read
Cyber
Who Operates the Badbox 2.0 Botnet?
The cybercriminals in control of Kimwolf — a disruptive botnet that has infected more than 2 million devices &#821
Krebs on Security·29d ago·1 min read
Cyber
Kimwolf Botnet Lurking in Corporate, Govt. Networks
A new Internet-of-Things (IoT) botnet called Kimwolf has spread to more than 2 million devices, forcing infected systems
Krebs on Security·35d ago·1 min read
Cyber
Patch Tuesday, January 2026 Edition
Microsoft today issued patches to plug at least 113 security holes in its various Windows operating systems and supporte
Krebs on Security·42d ago·1 min read
Cyber
Who Benefited from the Aisuru and Kimwolf Botnets?
Our first story of 2026 revealed how a destructive new botnet called Kimwolf has infected more than two million devices
Krebs on Security·47d ago·1 min read
Cyber
The Kimwolf Botnet is Stalking Your Local Network
The story you are reading is a series of scoops nestled inside a far more urgent Internet-wide security advisory. The vu
Krebs on Security·53d ago·1 min read
Advertisement
WokPost Weekly
Top AI stories across 20 topics, every Sunday.
Sponsored