Reliable cybersecurity news and in-depth resources, written by industry experts. DMs open for tips ✉️
A malicious Twitch chat message could be turned into native code execution on a streamer’s Windows PC through a OBS Studio flaw.
3 zero-day flaws in ViewSonic’s vCast can be chained to view smartboard screens, install malicious Android apps, and take control of devices.
Threat actors impersonating the Italian SEND digital notification service target iPhone users with a multi-stage Coruna iOS exploit chain.
Meta is expanding its Private Processing infrastructure to AI glasses, allowing cloud-based AI analyze personal context.
Opera is rolling out an update to its free VPN that can automatically activate when the browser detects a public or unsecured Wi-Fi network.
An OpenAI research agent gained unauthorized access to an Australian government Medicare statistics portal in June 2026.
Discord is rolling out new age checks that will classify most users without requiring them to upload a government ID or take a selfie.
A threat actor is using autonomous AI agents to compromise online retailers at a reported average cost of roughly $25 per target.
OpenAI’s advertising system can link activity on third-party advertiser websites to a user’s ChatGPT identity through a cross-site cookie.
The ShinyHunters cybercrime group claims it breached FBI systems after discovering and exploiting a zero-day flaw in Oracle PeopleSoft.
A chain of flaws in ZTE’s SmartLife platform lets attackers take over user accounts by resetting passwords without a verification code.
A PAYLOAD ransomware incident weaponized Microsoft Active Directory Group Policy to disrupt a firms computers without encrypting files.
A threat actor exploited WordPress flaws to breach dozens of organizations worldwide, including 18,000 records from a government agency.
Ireland has fined Google €403 million after finding violations of multiple GDPR requirements while processing users’ location data.
WordPress has patched Click2Shell, that could allow an attacker to silently install a theme and execute PHP code on the targeted website.
Spain ordered internet providers to block Archive.today and six mirror domains under the country’s intellectual-property enforcement system.
Google's Gemini AI hacked three real companies during a cybersecurity test after gaining unintended internet access, according to a new report.
INTERPOL used artificial intelligence and facial recognition technology to identify 126 suspected foreign terrorists from 100,000 images.
Helpfeel has disclosed a major data breach affecting its Gyazo image-sharing service, exposing millions of user records and image metadata.