darkreading
Please support the site operations by clicking ads.
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
1 month hence
[Virtual Event] Building a Secure AI Strategy for the Enterprise
2 days 11 hours hence
Chinese Hackers Impersonate US Officials for AI Cyber Espionage
12 hours 5 minutes ago
An emerging threat group known as TA419 established seemingly legitimate professional relationships with AI policy experts working for US think tanks, universities, and legal organizations.
Elizabeth Montalbano
Need for Speed: AI-Driven Attacks Are Changing Security Strategies
14 hours 58 minutes ago
AI-powered attacks are fast, relentless, and automated. How security teams can keep up is top of mind, according to the latest Dark Reading reader poll.
Rob Wright
RemoteThreat Bets Security Teams Need to Test What Happens After Defenses Fail
3 days 7 hours ago
The offensive cyber operations startup looks to evolve red teaming beyond traditional methods to simulate attackers' increasingly advanced capabilities.
Arielle Waldman
Kiteworks & Citrix Incidents Show Challenges of Zero-Day Response
3 days 11 hours ago
One company told customers to power down its data-protection platform during a nine-hour window, while the other remained mum on reported attacks prior to releasing a patch for its product.
Robert Lemos
SWIFT Banking & Government Middleware Enables RCE
3 days 11 hours ago
Patch middleware vulnerabilities now to avoid hardware-based MFA exploits in ultra-sensitive environments.
Nate Nelson
Is Your Organization Ready for 2027's AI Accountability Era?
3 days 11 hours ago
Organizations may face an artificial intelligence (AI) reckoning over the next year. Omdia and Gartner weigh in on how to tackle the governance, security, and value challenges ahead.
Arielle Waldman
Is It Fair to Blame 'Rogue' AI for Security Failures?
3 days 12 hours ago
"Rogue AI" terminology anthropomorphizes LLMs and shifts risk responsibility from vendors. Defenders should treat agents as untrusted, nondeterministic software systems, not sentient beings with malicious intent.
Alexander Culafi
Vulnerability Backlogs Are an Ownership Problem
3 days 13 hours ago
Organizations don't need better vulnerability scanners; they need to know who owns their assets and has the authority and capacity to actually fix them.
Nishant Sharma
Malicious Linux Implants Mimic Asian Mail Security Products
3 days 14 hours ago
A trio of newly discovered backdoors walk and quack like legitimate edge solutions, so it's hard to tell they're not.
Nate Nelson
Alleged KillSec Ransomware Mastermind a 16-Year-Old
4 days 6 hours ago
Law enforcement from multiple countries collaborated to disrupt a cybercrime operation that has claimed some 500 victims worldwide in the past two years.
Jai Vijayan
Warlock Ransomware Hits Large Spanish, Portuguese Orgs
4 days 14 hours ago
A year-old Chinese threat actor looks like a cybercrime gang, acts like a state-associated APT, and attacks organizations in unexpected places.
Nate Nelson
Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure
5 days 6 hours ago
In yet another ClickFix-style campaign, threat actors abuse legitimate domains from OpenAI and Google to fool unsuspecting users.
Alexander Culafi
Trump, Tech Giants Strike Voluntary AI Safety Accord
5 days 7 hours ago
The new White House Accord on so-called "Super Intelligence" calls on companies to implement greater controls and oversight over AI safety.
Jai Vijayan
As AI Reshapes the SOC Career Ladder, Satisfaction Rises for 91%, but Entry Gets Harder for Nearly Half
5 days 9 hours ago
New Swimlane research underscores a paradox: While AI detection and response is essential to giving defenders an edge, one in four security pros say AI limits their skill development.
Russia's Star Blizzard Ditches ClickFix to Widen Phishing Net
5 days 12 hours ago
The APT actor is using a new tactic, dubbed "RedFlick," against Ukrainian-linked targets such as NGOs, think tanks, and journalists to deploy its CosmicPulse backdoor.
Elizabeth Montalbano
South Africa Seeks Help After Cyberattack Targets Air Traffic Control
5 days 20 hours ago
As aviation infrastructure suffers more cyberattacks, air traffic systems are the latest target, with a ransomware toolkit installed on at least one operational network.
Robert Lemos
Apple Zero-Day Vulnerability Weaponized in Targeted Attacks
6 days 6 hours ago
Attackers are exploiting CVE-2026-86950, an out-of-bounds write flaw, in an extremely sophisticated fashion, according to Apple.
Jai Vijayan
Checked
9 hours 53 minutes ago
Public RSS feed
darkreading feed