News
As Mythos fixes Mozilla flaws, unauthorized access spells disaster
3+ hour, 48+ min ago (285+ words) Firefox has received the Claude Mythos Preview treatment, leading to fixes for 271 vulnerabilities. As the Mozilla team describes a sense of "vertigo" when faces with these previously undiscovered flaws, a report suggests an unauthorized group has gained access to the…...
Arctic Wolf introduces Decipio for rapid detection of credential theft
1+ hour, 54+ min ago (269+ words) Arctic Wolf is introducing a new security tool that addresses a well-known problem in cybersecurity: the early detection of credential theft. With Decipio, the company aims to help security teams identify attackers the moment they become active within a network,…...
Lovable under fire over data breach
1+ day, 1+ hour ago (310+ words) AI development platform Lovable is under fire following reports of a vulnerability that allowed users to access others" sensitive data." A security researcher claims that the issue enabled viewing source code, login credentials, and chat history from other projects using…...
Emergency Update for Windows Server Following Reboot Issues
1+ day, 20+ hour ago (128+ words) Microsoft has released emergency updates for multiple versions of Windows Server. This follows issues caused by the April 2026 Patch Tuesday security updates. "The Windows Server 2025 OOB update (KB5091157) addresses both the installation failure issue and the domain controller restart issue," according…...
Commvault launches AI tools for secure agentic AI era
1+ week, 1+ day ago (232+ words) Commvault announces three new AI features for Commvault Cloud: Data Activate, AI Protect, and AI Studio. The tools help securely activate data for AI applications, manage AI agents, and automate recovery workflows. Data Activate enables organizations to classify and curate…...
Aikido Endpoint offers developers additional protection against supply chain attacks
1+ day, 23+ hour ago (256+ words) Aikido Security is launching Aikido Endpoint, a lightweight agent designed to protect developers" endpoints against supply chain attacks. The tool is intended to block high-risk packages, IDE extensions, browser plugins, and AI tools before installation. Developers are prime targets for…...
Cisco Sovereign Critical Infrastructure now available in Europe
1+ day, 23+ hour ago (158+ words) Cisco is today rolling out Sovereign Critical Infrastructure (SCI) across the entire EMEA region. The offering includes core product lines for networking, security, compute, and Splunk, fully managed in air-gapped on-premises environments. This involves a new licensing model for existing…...
Dutch ecommerce site Bol. com investigates claims of a data breach
2+ day, 3+ hour ago (246+ words) Techzine Global A report from Dark Web Informer has raised questions about a possible data breach at Bol. com. On the platform X, the organization reports that a dataset containing approximately 400, 000 customer records was allegedly offered for sale via a…...
Vercel hit by attack via compromised AI tool
2+ day, 3+ hour ago (330+ words) Vercel has announced that attackers gained access to internal systems. The attack began at Context. ai, an AI tool used by a Vercel employee. Through that entry point, the attackers took over that employee's Google Workspace account and were thus…...
AI agents on Git Hub leak API keys via prompt injection
6+ day, 2+ min ago (190+ words) Three popular AI agents on Git Hub Actions are vulnerable to so-called "Comment and Control" attacks. These are Claude Code Security Review, Google Gemini CLI Action, and Git Hub Copilot Agent. Through PR titles, issue bodies, and comments, attackers steal…...