Financial firms face ‘vulnerability bottlenecks’ from frontier AI

The Financial Conduct Authority warns that frontier AI models are finding security vulnerabilities faster than firms can patch them Read more »

Chaotic Eclipse Releases Crowdstrike Falcon ZeroDay FalconFlank

Chaotic Eclipse released FalconFlank, a PoC exploit for a Crowdstrike Falcon ZeroDay Elevation of Privileges Vulnerability Security researcher Chaotic Eclipse, also known as INFINITE NIGHTMARE, MSNightmare and Nightmare-Eclipse, released a... Read more »

2,000 Leaked Documents Reveal How Russia Turns Engineering Students Into GRU Cyber Operators

2,000 leaked files expose Bauman University’s hidden Department No. 4, which trained GRU-linked hackers and propagandists linked to APT28 and Sandworm. Leaked Documents Expose Bauman University’s Hidden Department That... Read more »

Threat Actors Don’t Want Better Attacks. They Want Repeatable Ones

The most common way into a company last year was to ask. A web page tells the visitor to prove they are not a robot. While they read the... Read more »

OpenAI Astra Brings Autonomous Zero-Day Exploitation to AI

OpenAI says Astra can autonomously find zero-days and build exploits, marking its first model to reach the “Critical” cyber risk level. Astra is now officially OpenAI’s highest-risk cybersecurity model.... Read more »

Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity

Threat actors are exploiting two critical flaws impacting Langflow and Ruby on Rails, according to new findings from VulnCheck. The vulnerabilities in question are listed below – CVE-2026-0768 (CVSS... Read more »

Lords considers government emergency AI kill switch

 An amendment to the UK’s Cyber Security and Resilience Bill will give the government powers to switch off AI systems or data centres in an emergency Read more »

When the intern has admin rights: GDPR in the agentic age

The Security Think Tank explores the intersection of GDPR and artificial intelligence, considering how data protection standards in the UK and Europe are changing in this new paradigm. Read more »

UK airport hackers leak stolen customer data

The cyber gang that attacked Manchester Airports Group has leaked data on 8.7 million travellers after its victim refused to pay a ransom. Read more »

SonicWall Patches Two New Actively Exploited Zero-Days in SMA 1000 VPNs

SonicWall patched two zero-days in SMA 1000 VPNs, including a CVSS 10 pre-auth SSRF flaw, after confirming active exploitation. SonicWall has released security updates for two vulnerabilities in its... Read more »
Subscribe to our Newsletter