The "Spring Ring" operation targets users of the collaboration suite to remotely access their sessions, spread malware, and ...
Threat actors exploited commodity vulnerabilities to gain initial access, resulting in stolen reactor databases, personnel ...
Security researchers see more insider-assisted ransomware attacks, but malicious insiders pose other costly threats beyond ...
The attacks on CVE-2026-0768 are the latest threats against the low-code AI development platform, which adversaries are ...
In one attack, threat actors stole an API key that ultimately led to the consumption of $600,000 in public AI model credits ...
CVE-2026-82329 is an authentication bypass flaw in JFrog's repository manager that enables bad actors to gain admin level ...
While guardrails are critical, as evidenced by recent high-profile incidents, defenders need help staying ahead of attackers ...
The campaign uses EtherHiding to dynamically update its command-and-control server, using the blockchain as an ...
OpenAI's Hugging Face attack postmortem shows agents don't care about rules — they need strong controls.
The ClickFix-style campaign features a sophisticated, multistage attack chain that includes reverse tunnels into victim ...
A threat actor used a variety of infostealers to collect session information and access Claude accounts belonging to an ...
Omdia's Theresa Lanowitz talks with the Dark Reading News Desk about the potential — and risks — of using agentic AI for ...