OpenAI targets small utilities with $1 billion cyber defense initiative
In a keynote speech during a summit at OpenAI’s headquarters attended by 300 enterprise security leaders and CISOs from Fortune 1000 companies, OpenAI President Greg Brockman announced Daybreak for Frontline Defenders, a new global initiative to help frontline defenders use frontier cyber AI to protect essential services in the United States and around the world.…
The initiative entails a $1 billion global commitment to expand subsid…
Daybreak is a defensive model that involves frontier models; the Codex…
In announcing the initiative, Brockman said he asked an off-the-shelf …
Large Enterprises Targeted in Fake Merger & Acquisition Scams
Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers.
What We Missed: Did ShinyHunters 'Breach' ReliaQuest?
In this video conversation, Dark Reading editors discuss some of the news they didn't get a chance to cover, from the latest antics of ShinyHunters to new research about the prevalence (or lack thereof) of AI-generated malware.
AI 'Machine Speed' Cuts 2-Week Attack Down to 10 Hours
The incident demonstrates how frontier AI agents can dramatically compress an attack timeline and coordinate a large-scale breach, according to researchers.
Decade-old PostgreSQL flaw turns backup account into a backdoor
A critical vulnerability in PostgreSQL had remained hidden for more than a decade, potentially turning a routine backup account into a path to full database and server compromise.…
The issue, dubbed PostGREShell by Cyera Research, exists in the databa…
“The flaw lets a low-privilege “backup” account load and execute arbit…
“That foothold escalates to full PostgreSQL superuser with persistent …
Counterfeit installers turn routine software downloads into enterprise breaches
Microsoft has warned that attackers are breaching enterprise systems via counterfeit download sites impersonating software including Microsoft Edge, Kaspersky and Razer, delivering trojanized installers for persistent access.…
“Once executed, the malicious installers deploy malware that establish…
The campaign, tracked by Microsoft Defender Experts, has impacted orga…
The attackers are using a network of spoofed websites mimicking legiti…
AI agents help compress ransomware intrusion to under 10 hours, raising stakes for CISOs
A ransomware attacker used AI agents to move through an enterprise network in less than 10 hours, according to Palo Alto Networks researchers, who estimated that similar work could have taken human operators about two weeks.…
The incident involved more than 50 techniques mapped to the MITRE ATT&…
The techniques themselves were largely familiar.
The notable difference, according to Unit 42, was the use of AI agents…
SonicWall reports two major security holes under active exploit
SonicWall on Monday reported two major security holes in its Secure Mobile Access 1000 series appliances, both of which it said are being actively exploited, and published patches for each.…
Consultants called the holes, one of which permits remote attacks that…
In its security alert, SonicWall described the first hole, tracked as …
A remote unauthenticated attacker could potentially exploit this vulne…
Threat Gang 'Springs' Vishing Attacks on Microsoft Teams Users
The "Spring Ring" operation aims to compromise users of the collaboration suite to remotely access their sessions, spread malware, and even take over infrastructure.
Anthropic introduces zero-retention AI safety monitoring for enterprises
Anthropic is introducing a new framework aimed at helping enterprises monitor AI misuse without ceding control over sensitive data, as organizations struggle to balance security visibility with strict compliance requirements.…
The company announced a new solution called Enterprise Frontier Safegu…
Under the approach, activity data used for monitoring will be stored i…
The feature will be rolled out in phases later this fall and will be o…
Exploited JFrog Artifactory bug puts software supply chain on alert
A critical authentication bypass in JFrog Artifactory is now being exploited in the wild, with attackers observed generating administrator tokens and probing the software supply-chain platform’s sensitive data.…
The flaw, tracked as CVE-2026-82329, was disclosed by JFrog on August …
By September 1, watchTowr said its Attacker Eye honeypot was already s…
The activity included attackers minting administrator tokens and enume…
Comcast has added motion detection as a feature to its wireless routers: The feature sends push notifications to users when motion is detected near a connected device, such as a TV or printer.…
It has different settings for when people are home, asleep, or away.
The Xfinity app also lets users see live motion activity and a feed of…
Comcast acknowledges that the system has some limitations.
How China industrialized the infrastructure behind state hacking
Last week, the US Justice Department and FBI announced court-authorized seizures of domains hard-coded into two complementary hacking platforms known as “QScan” and “QTRouter,” used by Chinese state-sponsored hackers to target US critical infrastructure and other sensitive networks.…
A People’s Republic of China (PRC) state-sponsored group known as “QTF…
Among the targets of QTFY are the National Aeronautics and Space Admin…
The law enforcement agencies said QTFY offers computer hacking service…
Anthropic makes changes to stop AI agents running amok again
Learning from the OpenAI-Hugging Face fiasco, as well as from recent revelations about its own model, Anthropic is revamping its security and alignment practices.…
The company has established controls that flag when a model attempts t…
” Anthropic conceded that three recent security incidents involving Cl…
” Recent events “stressed that the urgency of improving our cybersecur…