Threat actors exploited commodity vulnerabilities to gain initial access, resulting in stolen reactor databases, personnel ...
Security researchers see more insider-assisted ransomware attacks, but malicious insiders pose other costly threats beyond ...
CVE-2026-82329 is an authentication bypass flaw in JFrog's repository manager that enables bad actors to gain admin level ...
In one attack, threat actors stole an API key that ultimately led to the consumption of $600,000 in public AI model credits ...
The attacks on CVE-2026-0768 are the latest threats against the low-code AI development platform, which adversaries are ...
The campaign uses EtherHiding to dynamically update its command-and-control server, using the blockchain as an ...
OpenAI's Hugging Face attack postmortem shows agents don't care about rules — they need strong controls.
While guardrails are critical, as evidenced by recent high-profile incidents, defenders need help staying ahead of attackers ...
A threat actor used a variety of infostealers to collect session information and access Claude accounts belonging to an ...
The ClickFix-style campaign features a sophisticated, multistage attack chain that includes reverse tunnels into victim ...
James Kettle of PortSwigger talks with the Dark Reading News Desk about his AI-powered open source tool, which found new HTTP ...
Omdia's Theresa Lanowitz talks with the Dark Reading News Desk about the potential — and risks — of using agentic AI for ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results