News
Open AI confirms exposure in recent "Shai-Hulud" supply-chain attack
1+ hour, 55+ min ago (424+ words) Open AI says a recent software supply-chain attack tied to the "Mini Shai-Hulud" malware campaign impacted two employee devices and exposed limited internal credentials, prompting the company to rotate code-signing certificates for its desktop applications. The company said it found…...
Windows 11 and NVIDIA hacked on the first day of Pwn2 Own Berlin 2026
6+ hour, 40+ min ago (333+ words) Researchers earned more than half a million dollars on the opening day of Pwn2 Own Berlin 2026 after successfully demonstrating 24 previously unknown vulnerabilities across AI platforms, NVIDIA software, Windows 11, Linux systems, and developer tools. The first day of the hacking competition saw…...
Microsoft: Russian hackers evolved Kazuar malware into stealthy P2 P botnet
18+ hour, 52+ min ago (350+ words) Kazuar," a long-running malware platform linked to the Russian state-sponsored threat group Secret Blizzard, has evolved into a stealthy peer-to-peer botnet designed for persistent intelligence collection. Secret Blizzard, which the US Cybersecurity and Infrastructure Security Agency (CISA) attributes to Center…...
Russian official admits VPNs cannot be fully blocked without breaking the internet
1+ day, 1+ hour ago (421+ words) A senior Russian official has acknowledged that fully blocking or disabling VPN services in Russia is technically unfeasible, warning that such attempts could severely disrupt the country's internet infrastructure. The remarks mark one of the clearest public admissions from a…...
Whats App launches "Incognito Chat" for private AI conversations
1+ day, 15+ hour ago (512+ words) Meta has announced "Incognito Chat with Meta AI," a new private AI chat mode for Whats App and the Meta AI app. The feature is built on the firm's existing "Private Processing" infrastructure and is designed for sensitive AI interactions…...
Canvas owner reaches agreement with Shiny Hunters, says user data was deleted
2+ day, 21+ hour ago (465+ words) Instructure says it reached an agreement with the threat actors behind the recent cyberattack targeting its Canvas learning platform. The company stated that stolen data was returned and that the attackers provided "digital confirmation of data destruction." The attack was…...
FCC moves to impose "Know Your Customer" rules for Vo IP providers
3+ day, 17+ hour ago (509+ words) The Federal Communications Commission (FCC) has proposed stricter "Know Your Customer" (KYC) requirements for voice service providers as part of a broader effort to stop illegal robocalls before they enter US telecommunications networks. The proposal would require providers to perform…...
Google's new re CAPTCHA system restricts access to the open web
3+ day, 21+ hour ago (250+ words) Google's latest re CAPTCHA changes are drawing backlash from privacy advocates and developers of alternative mobile operating systems, who argue the system effectively locks users out of websites unless they use Google-approved devices and software. Multiple posts on X highlighted…...
Google says cybercriminals used AI to develop zero-day exploit
3+ day, 19+ hour ago (322+ words) Google Threat Intelligence Group (GTIG) says it has identified what it believes is the first known case of cybercriminals using artificial intelligence to help develop a zero-day exploit intended for mass exploitation. According to Google, the exploit targeted a popular…...
Instructure confirms Canvas user data exposed in cyberattack
4+ day, 41+ min ago (343+ words) Instructure has confirmed that attackers gained unauthorized access to parts of its environment and exploited a vulnerability tied to the company's Free for Teacher support ticket system. The company says Canvas is now fully operational and that core learning data,…...