News
Google finds state-sponsored hackers use AI at 'all stages' of attack cycle
26+ min ago (438+ words) A new report from Google found evidence that state-sponsored hacking groups have leveraged AI tool Gemini at nearly every stage of the cyber attack cycle. The research underscores how AI tools have matured in their cyber offensive capabilities, even as…...
Proofpoint acquires Acuvity to tackle the security risks of agentic AI
2+ hour, 47+ min ago (258+ words) Proofpoint announced Thursday it has acquired Acuvity, an AI security startup, as the cybersecurity company moves to address security risks stemming from widespread corporate adoption of agentic AI. Financial terms of the deal were not disclosed, but Ryan Kalember, Proofpoint's…...
CISA to host industry feedback sessions on cyber incident reporting regulation
4+ hour, 41+ min ago (365+ words) The Cybersecurity and Infrastructure Security Agency will hold sector-by-sector town halls in the coming weeks to get feedback on a stalled regulation requiring critical infrastructure owners and operators to report when they suffer major cyberattacks. The meeting dates, set to…...
0APT ransomware group rises swiftly with bluster, along with genuine threat of attack
23+ hour, 22+ min ago (804+ words) Ransomware groups crop up like weeds, angling for striking positions in a crowded field rife with turnover, infighting and unbridled competition. Yet, they rarely emerge, as 0APT did late last month, claiming roughly 200 victims out of the gate. Researchers have thus…...
Your AI doctor doesn't have to follow the same privacy rules as your real one
1+ day, 2+ hour ago (959+ words) AI apps are making their way into healthcare. It's not clear that rigorous data security or privacy practices will be part of the package. OpenAI, Anthropic and Google have all rolled out AI-powered health offerings from over the past year....
After major Poland energy grid cyberattack, CISA issues warning to U.S. audience
2+ day, 5+ hour ago (285+ words) A recent attempt at a destructive cyberattack on Poland's power grid has prompted the Cybersecurity and Infrastructure Security Agency to publish a warning for U.S. critical infrastructure owners and operators. CISA said its warning was meant to "amplify" that Polish report....
Microsoft Patch Tuesday matches last year’s zero-day high with six actively exploited vulnerabilities
2+ day, 6+ hour ago (472+ words) Microsoft's latest security update is littered with zero-day vulnerabilities, actively exploited defects that account for more than 10% of the total CVEs the vendor addressed in this month's Patch Tuesday update. The vendor addressed 59 vulnerabilities affecting its various products for business…...
Critics warn America’s 'move fast' AI strategy could cost it the global market
3+ day, 2+ hour ago (727+ words) The Trump administration has made U.S. dominance in artificial intelligence a national priority, but some critics say a light-touch approach to regulating security and safety in U.S. models is making it harder to promote adoption in other countries. White House officials have…...
Fallout from latest Ivanti zero-days spreads to nearly 100 victims
3+ day, 4+ hour ago (520+ words) Ivanti customers, including major government agencies, face mounting pressure as attackers expand their scope of targets to exploit a pair of vulnerabilities the vendor disclosed last week after in-the-wild attacks already occurred." The attacks were publicly disclosed as researchers and…...
AI security's ‘Great Wall’ problem
3+ day, 10+ hour ago (637+ words) The Great Wall of China was built to slow northern raiders and prevent steppe armies from riding straight into the empire's heart. Yet in 1644, its most impregnable fortress fell without a siege. At Shanhai Pass, where the wall meets the…...