Security news

Latest security news

Tue, 8 Sept 2026

  1. Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours

    Threat actors are continuing to leverage artificial intelligence (AI) to streamline their operations, with one financially motivated hacking group employing an autonomous, multi-agent attack framework to carry out a large-scale credential harvesting campaign within six hours. Google Threat Intelligence Group (GTIG) said it has observed attackers with diverse motivations targeting proprietary AI

    The Hacker NewsGoogle
  2. Adobe fixes critical Magento zero-day exploited to backdoor servers

    Adobe has released an emergency fix for CVE-2026-75650, an actively exploited max-severity zero-day vulnerability dubbed StyleSmuggler, that impacts multiple versions of Magento and Adobe Commerce.

    CriticalUsed in attacksBleepingComputerAdobe
  3. BigBear phishing crew nets thousands of Microsoft 365 credentials

    Researchers got inside the crooks' admin panel and found 5,137 stolen records tied to 461 organizations

    The RegisterMicrosoft
  4. The Shared Clipboard Inside the Sandbox: Cross-Account Data Leakage in ChatGPT

    Research by: Alexey Bukhteyev Key Takeaways Introduction Over the past several years, AI assistants have moved far beyond text generation. Modern systems can execute code, install additional dependencies, analyze user files, and access data through connected services. These capabilities significantly increase the practical value of LLMs, but they also change the security model: protecting user

    Check Point Research
  5. Grindr Settles UK Data Privacy Claims for £26m

    Grindr settled UK claims over alleged unlawful processing of sensitive user data

    Infosecurity Magazine
  6. Grindr settles HIV status data-sharing lawsuit for $35 million

    Grindr has settled a UK lawsuit alleging that it shared sensitive user data, including HIV status, with advertising companies.

    Malwarebytes Labs
  7. Webinar: The forgotten Google Workspace access that can lead to a breach

    Third-party applications connected to Google Workspace can retain access long after their original purpose is forgotten. This webinar examines how overly permissive integrations contribute to breaches and which security controls can help fast-growing companies reduce their exposure.

    BleepingComputerGoogle
  8. AI Coding Tools Now a Prime Target for Threat Actors, Google Warns

    Google warned that the rapid integration of AI-assisted coding tools has significantly expanded software supply chain risks

    Infosecurity MagazineGoogle
  9. Extortion crews have their eyes on high-value AI data, Google warns

    Companies 'don't want their IP exposed, so they're willing to pay'

    The RegisterGoogle
  10. Cybercriminals Hack Brazilian Government Servers to Host Phishing Sites

    A Chinese-language group is compromising government and education sites to create a reverse-proxy network with gambling-themed sites.

    Dark Reading

About this news

1,434
Stories
65
Added in the last 24 hours
11
Critical in the last 7 days
4
Reported by several outlets