Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection post, september 11, 2026september 15, 2026 Anthropic on Thursday revealed it disrupted a campaign mounted by a Russian state-sponsored threat actor that abused Claude for developing an AI-assisted workflow to get ahead of the detection curve. The operation has been attributed to a cyber espionage group it calls GTG-20006 (where “GTG” stands for Generative Threat Group),… Continue Reading
Hackers abused Claude to extract secrets from 1.8M Android apps post, september 11, 2026september 15, 2026 Anthropic says multiple threat groups, including the financially motivated and state-sponsored espionage groups linked to Russia and China, tried to abuse its Claude AI model for malicious purposes. The AI company says that between December 2025 and August 2026, it recorded various forms of artificial intelligence misuse, including for cyber… Continue Reading
Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6 post, september 10, 2026september 15, 2026 Anthropic on Wednesday disclosed a fourth incident in which its artificial intelligence (AI) model broke into real third-party systems, marking the latest in a growing list of cases that have raised concerns about the security risks posed by autonomous AI agents. The AI company said the incident dates back to… Continue Reading
Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours post, september 8, 2026september 9, 2026 Threat actors are continuing to leverage artificial intelligence (AI) to streamline their operations, with one financially motivated hacking group employing an autonomous, multi-agent attack framework to carry out a large-scale credential harvesting campaign within six hours. Google Threat Intelligence Group (GTIG) said it has observed attackers with diverse motivations targeting proprietary AI models… Continue Reading
CrowdStrike Launches Frontier Models for Cybersecurity, Created with NVIDIA post, september 1, 2026september 15, 2026 AUSTIN, Texas and Fal.Con 2026, Las Vegas – September 1, 2026 – CrowdStrike (NASDAQ: CRWD) today introduced CrowdStrike SafeMind, a family of purpose-built security models and harnesses from the CrowdStrike Cyber Superintelligence Lab. The SafeMind agentic system will operate natively in the CrowdStrike Falcon® platform. Trusted access for standalone models… Continue Reading
Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests post, september 1, 2026september 4, 2026 The Iranian Nimbus Manticore hacking group has been attributed to two previously undocumented malware families that highlight the continued evolution of its toolset and likely expand its targeting footprint to infect Linux and Apple macOS systems using cross-platform remote access trojans (RATs) developed using Node.js and JavaScript. Russian cybersecurity company Kaspersky is… Continue Reading
‘OMG, we kunnen chatten!’: onderzoek toont hoe AI aan het hacken sloeg post, augustus 28, 2026september 4, 2026 Bij de hack vorige maand waarbij een losgebroken AI-programma van het bedrijf OpenAI per ongeluk inbrak bij een ander AI-bedrijf waren ruim 1200 AI-agents betrokken. Dat blijkt uit onafhankelijk onderzoek van METR, een instituut dat onderzoek doet naar de risico’s van kunstmatige intelligentie. Bij de hack werd ingebroken bij het AI-platform Hugging… Continue Reading
FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations post, augustus 26, 2026september 4, 2026 The U.S. Department of Justice (DoJ) on Wednesday announced the disruption of two hacking platforms named QScan and QTRouter operated by Chinese threat actors to target critical infrastructure and other sensitive networks in the country. The activity has been attributed to a Chinese state-sponsored group known as QTFY, employed by Nanjing Xinjiuwei… Continue Reading
Microsoft Confirms Maximum-Severity Entra ID Vulnerability Exploited In Attacks post, augustus 21, 2026augustus 24, 2026 Microsoft has disclosed a maximum-severity security vulnerability in Microsoft Entra ID that was exploited in real-world attacks before the company completed a cloud-side fix, raising significant questions about the exposure of one of the most consequential identity platforms used by businesses, governments, and public-sector organizations worldwide. The vulnerability, tracked as… Continue Reading
US Agencies Warn of Active AI-Assisted Campaign Targeting Siemens S7 Industrial Controllers post, augustus 21, 2026augustus 24, 2026 US cybersecurity and intelligence agencies have issued an urgent warning about an active threat campaign targeting Siemens S7 programmable logic controllers used in manufacturing plants, energy facilities, water systems and other critical infrastructure. The joint advisory was issued by the US National Security Agency, Cybersecurity and Infrastructure Security Agency (CISA),… Continue Reading