Hackers abused Claude to extract secrets from 1.8M Android apps post, september 11, 2026september 15, 2026 Anthropic says multiple threat groups, including the financially motivated and state-sponsored espionage groups linked to Russia and China, tried to abuse its Claude AI model for malicious purposes. The AI company says that between December 2025 and August 2026, it recorded various forms of artificial intelligence misuse, including for cyber… Continue Reading
Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6 post, september 10, 2026september 15, 2026 Anthropic on Wednesday disclosed a fourth incident in which its artificial intelligence (AI) model broke into real third-party systems, marking the latest in a growing list of cases that have raised concerns about the security risks posed by autonomous AI agents. The AI company said the incident dates back to… Continue Reading
220 million traveler records exposed in Vietnam-linked APIS leak post, september 8, 2026september 9, 2026 An Advance Passenger Information System (APIS) database holding more than 220 million passenger and crew records, including passport numbers and flight details, was accessible online through a chain of security misconfigurations. The system appears linked to a Vietnamese organization, according to the researchers who discovered it. Advance Passenger Information Systems… Continue Reading
Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours post, september 8, 2026september 9, 2026 Threat actors are continuing to leverage artificial intelligence (AI) to streamline their operations, with one financially motivated hacking group employing an autonomous, multi-agent attack framework to carry out a large-scale credential harvesting campaign within six hours. Google Threat Intelligence Group (GTIG) said it has observed attackers with diverse motivations targeting proprietary AI models… Continue Reading
Critical Citrix NetScaler auth bypass now leveraged in attacks post, september 4, 2026september 9, 2026 Attackers have begun targeting a critical-severity Citrix NetScaler flaw in the wild, according to vulnerability intelligence company Previdian. Tracked as CVE-2026-19490, this security flaw can allow unprivileged threat actors to bypass authentication remotely when the NetScaler appliance is configured as an AAA virtual server or as a Gateway (SSL VPN, ICA… Continue Reading
CrowdStrike Launches Frontier Models for Cybersecurity, Created with NVIDIA post, september 1, 2026september 15, 2026 AUSTIN, Texas and Fal.Con 2026, Las Vegas – September 1, 2026 – CrowdStrike (NASDAQ: CRWD) today introduced CrowdStrike SafeMind, a family of purpose-built security models and harnesses from the CrowdStrike Cyber Superintelligence Lab. The SafeMind agentic system will operate natively in the CrowdStrike Falcon® platform. Trusted access for standalone models… Continue Reading
Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests post, september 1, 2026september 4, 2026 The Iranian Nimbus Manticore hacking group has been attributed to two previously undocumented malware families that highlight the continued evolution of its toolset and likely expand its targeting footprint to infect Linux and Apple macOS systems using cross-platform remote access trojans (RATs) developed using Node.js and JavaScript. Russian cybersecurity company Kaspersky is… Continue Reading
Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis post, september 1, 2026september 4, 2026 Cybersecurity researchers have disclosed a new technique dubbed GuardBreaker that’s been put to use by a Russia-aligned threat actor known as UAC-0099 against a target in Ukraine with an aim to interfere with artificial intelligence (AI)-assisted analysis. The idea, ESET said in a series of posts on X, is to deliberately trip a large language model’s… Continue Reading
‘OMG, we kunnen chatten!’: onderzoek toont hoe AI aan het hacken sloeg post, augustus 28, 2026september 4, 2026 Bij de hack vorige maand waarbij een losgebroken AI-programma van het bedrijf OpenAI per ongeluk inbrak bij een ander AI-bedrijf waren ruim 1200 AI-agents betrokken. Dat blijkt uit onafhankelijk onderzoek van METR, een instituut dat onderzoek doet naar de risico’s van kunstmatige intelligentie. Bij de hack werd ingebroken bij het AI-platform Hugging… Continue Reading
McKesson discloses breach after ShinyHunters claims patient data theft post, augustus 28, 2026september 4, 2026 Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and data theft, with the ShinyHunters extortion group claiming it stole 284 million patient data records. McKesson is a major U.S. healthcare company and pharmaceutical distributor that provides medicines, medical supplies, technology, and… Continue Reading