GitHub Automatically Holds Suspicious Actions Runs, but Repository Owners Must Approve Them

GitHub’s new Actions safeguard pauses potentially malicious workflow runs before execution, leaving repository owners to decide who can approve them and what checks must come first. The post GitHub... Read more »

Hugging Face Deepfake Tests Raise New Risks for AI Procurement

Researchers found that seven of nine tested Hugging Face image-editing tools produced sexualized alterations, highlighting gaps in model oversight, provenance, and enterprise vendor controls. The post Hugging Face Deepfake... Read more »

Analog Devices Discloses Data Breach After Unauthorized System Access

Chipmaker Analog Devices disclosed a data breach after detecting unauthorized access to systems on June 23. The investigation is ongoing. Semiconductor giant Analog Devices (ADI) disclosed a data breach... Read more »

Amazon pins multiple open source compromises on North Korea

Amazon threat researchers found one threat actor behind four distinct open source compromises, including the March 2026 incident affecting the axios NPN library. Read more »

Annual search for UK’s unsung cyber heroes kicks off

The organisers of the annual Security Serious Unsung Heroes Awards call for nominations for this year’s edition Read more »

Police monitored phone data of BBC security editor Brian Rowan to identify confidential sources

Northern Ireland police monitored phone communications of former BBC security editor Brian Rowan after he wrote about a police and MI5 agent in Northern Ireland Read more »

FCC Restricts New Foreign Robots and Inverters Over Security Risks

The FCC added foreign robots and power inverters to its Covered List, while allowing security updates for existing authorized devices until 2029. The FCC just widened its Covered List... Read more »

U.S. CISA adds a Cisco Secure Firewall Management Center (FMC) flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a Cisco Secure Firewall Management Center (FMC) flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency... Read more »

eSIM Plus and Nicegram Share Belarus-Linked Codebase, Analysis Finds

Analysis found eSIM Plus and Nicegram share a Belarus-linked codebase, while eSIM Plus routes data and calls through Russian services. Two popular apps available in EU app stores, Nicegram,... Read more »

The Security Interviews: Bronwyn Boyle, Cybermindz

Cyber security can be a stressful career and this is becoming a growing concern for organisations. So what can be done to alleviate the pressure? Read more »
Subscribe to our Newsletter