29 critical threats detected in the last 24 hours. Active threat actors: Conti, Play. Immediate review of affected systems recommended.
Critical
Microsoft finally patches critical one-click Copilot vulnerability, almost eight months after learning of it
Critical GitLab Zero-Click Flaw Poses Mitigation Challenges
NVD CRITICAL: CVE-2026-60995 — Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion ...
NVD CRITICAL: CVE-2026-60990 — Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion ...
NVD CRITICAL: CVE-2026-60977 — Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware ...
NVD CRITICAL: CVE-2026-60971 — Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusio...
Microsoft finally patches critical one-click Copilot vulnerability, almost eight months after learning of it
Almost eight months after confirming a critical security vulnerability within the personal version of its AI assistant, Copilot, Microsoft on Tuesday issued a patch to close the hole, which relies on an LLM’s inability to distinguish the data in a query from an instruction. The CoSnitch hole was discovered by Varonis, and marked the third Copilot bug that Varonis has reported to Microsoft this yea
China-Linked Hacker Shows AI Capabilities in APAC Attack
In the first purported "near-autonomous" attack on a nation-state, a Chinese-language operator used a complex AI framework to target and compromise government agencies, likely in Taiwan.
Westpac to reshape software engineering with Amp Frontier Corporation
Westpac has contracted with San Franciscop-based Amp Frontier Corporation to build a suite of AI agents for software engineering tasks.
Stablecoins offer little cost or speed advantage for remittances - Banca d'Italia
Stablecoins show no systematic cost advantage over traditional remittance channels for cross-border payments, researchers at Banca d'Italia have found.
Mobile wallets gain traction in the UK
Cards continue to dominate UK payments but mobile wallets are increasingly popular, with nearly two thirds of the population registered with at least one provider, according to the latest industry data.
China-Linked APT Uses AI to Optimize Hand-Built Malware
<img src="https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/china-linked-apt-uses-ai-to-optimize-hand-built-malware-image_small-4-a-32597.jpg" align=right hspace=4><b>SilkParasite Deployed Against Central Asian Governments</b><br>Bitdefender said the China-linked SilkParasite espionage campaign deployed seven modular RATs against Central Asian governments, with coding artifacts indicating
CISA Weighs Outsourcing Its Cyber Software Buying
<img src="https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/cisa-weighs-outsourcing-its-cyber-software-buying-image_small-9-a-32595.jpg" align=right hspace=4><b>CISA Issues Sources Sought Notice Floating $600M a Year, $6B Over Contract Life</b><br>The U.S. Cybersecurity and Infrastructure Security Agency is surveying industry on whether a contractor could take over cybersecurity software b
Perplexity Builds Guardrails to Rein in Rogue AI Agents
<img src="https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/perplexity-builds-guardrails-to-rein-in-rogue-ai-agents-image_small-9-a-32596.jpg" align=right hspace=4><b>Open-Source Numbat Blocks Agent Actions That Violate Enterprise Security Policies</b><br>Perplexity designed its open-source tool Numbat tool to detect and block AI agents from stepping outside enterprise safety policies. The
FDA Weighing Possible Regs for GenAI Medical Devices
<img src="https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/fda-weighing-possible-regs-for-generative-ai-medical-devices-image_small-6-a-32593.jpg" align=right hspace=4><b>Agency Seeks Public Input on Risk-Based Oversight Approach Across Product Life Cycle</b><br>The U.S. Food and Drug Administration is seeking public feedback on the varying risks and other considerations involving generat
When AI Risk Becomes a Board Liability
<img src="https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/when-ai-risk-becomes-board-liability-image_small-9-a-32594.jpg" align=right hspace=4><b>CIOs Can Strengthen Oversight Through Reporting, Records and Insurance Reviews</b><br>AI failures can trigger financial, regulatory and reputational exposure that reaches the boardroom. Reed Smith partners Carolyn Rosenberg and Andy Moss explai
'Living Off the Plant' OT Attacks Pose Physical Safety Risk
<img src="https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/living-off-plant-ot-attacks-pose-physical-safety-risk-image_small-5-a-32591.jpg" align=right hspace=4><b>Beware Abuse of Native OT Functionality, Says Orange Cyberdefense's Ric Derbyshire</b><br>Attackers can employ "living off the plant" tactics to stealthily access and move laterally inside industrial networks, abusing native fu
Critical GitLab Zero-Click Flaw Poses Mitigation Challenges
A lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential exploitation of CVE-2026-19478.
NVD CRITICAL: CVE-2026-60995 — Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion ...
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via TLS to compromise Oracle Identity Manager Connector. While the vulnerability is in Oracle Identity Manager Connector, attacks may s
Live Activity
Threat Alerts
Real-time alerts for the threats that matter to you. Choose your severity levels and threat categories.