Security news
Latest security news
Wed, 12 Aug 2026
- Microsoft Fixes 400 Flaws on August Patch Tuesday
Microsoft has issued another massive batch of security updates with 400 fixed in the August Patch Tuesday
Infosecurity MagazineMicrosoft
Tue, 11 Aug 2026
- Microsoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-daysHacker NewsMicrosoft
Thu, 6 Aug 2026
- Apple’s bug bounty program is drowning in so much AI slop, it is in danger of missing serious exploits
Apple has imposed strict new submission limits on its bug bounty portal after finding itself overwhelmed by low-quality, AI generated vulnerability reports - many of which were found to be describing security flaws that simply didn't exist. Read more in my article on the Hot for Security blog.
Graham CluleyApple
Wed, 5 Aug 2026
- Paperclip AI Flaws Let Unauthenticated Attackers Run Commands
3 Paperclip flaws exposed data & allowed unauthenticated command execution in two deployment modes
Infosecurity Magazine
Fri, 31 Jul 2026
- AWS Blames North Korean Group for Axios and Other npm Supply Chain Attacks
AWS has linked North Korea to the axios campaign to other attacks on npm libraries
Infosecurity MagazineAWS
Thu, 30 Jul 2026
- Google Releases Patches for 370 Vulnerabilities in Chrome 151
The new version of Chrome, 151, comes with 370 vulnerability patches, including for seven critical flaws
Infosecurity MagazineGoogle, Chrome
Thu, 16 Jul 2026
- US Launches Gold Eagle to Coordinate AI-Driven Vulnerability Management
The White House announced Gold Eagle to help accelerate the discovery, prioritization and patching of flaws found by AI
Infosecurity Magazine
Tue, 14 Jul 2026
- Microsoft Patches a Record 570 Security Flaws
Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems and other software, almost triple the number of vulnerabilities the software giant fixed in its record-smashing Patch Tuesday release last month. Microsoft attributed the burgeoning patch counts to vulnerability discoveries aided by artificial intelligence.
Krebs on SecurityMicrosoft, Windows
Mon, 13 Jul 2026
- Lessons Learned from CISA’s Recent GitHub Leak
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials -- including AWS Govcloud keys -- in a public GitHub repository for almost six months before being notified by KrebsOnSecurity. Experts say the gaps identified in the agency's initial response provide important lessons that all security teams should absorb.
Krebs on SecurityAWS, GitHub
Fri, 10 Jul 2026
- CISA Details Incident Response to Exposed AWS GovCloud Keys
CISA reveals how it responded after sensitive AWS GovCloud credentials and internal data were exposed in a public GitHub repository
Infosecurity MagazineAWS, GitHub
About this news
- 1,259
- Stories
- 34
- Added in the last 24 hours
- 17
- Critical in the last 7 days
- 4
- Reported by several outlets