Cybersecurity
Security news, vulnerabilities, privacy, threat intelligence, and practical protection guidance.

Microsoft’s 2026 Digital Defense Report
The 2026 Microsoft Digital Defense Report warns that attack timelines are now measured in hours, as AI-driven threats accelerate. AI is reshaping cybersecurity.

Malicious GitHub Actions Workflow Infects Thousands of Open Source
A GitHub Actions supply chain attack hit thousands of repositories, abusing workflows to spread malware as of October 10, 2026. Full incident analysis and.

FBI disrupts Chinese hacking tools used against US critical
The FBI disrupted Chinese hacking tools targeting US critical infrastructure, marking a major cybersecurity operation. This move highlights growing risks from.

Anthropic expands Cyber Verification Program to uncover critical
Anthropic’s expanded cyber verification program has uncovered 129,000 software flaws, including 33,000 critical, driving industry change in threat detection.

Anthropic expands AI cyber verification, uncovers 129,000
Anthropic’s expanded AI cyber verification program uncovered 129,000 software vulnerabilities since April 2026, including 33,000 rated critical or high.

Critical GitLab AI Gateway vulnerability threatens self-hosted servers
A critical GitLab AI Gateway vulnerability (CVE-2026-90970) allows remote code execution on self-hosted servers. All affected users must patch immediately.

FBI investigates major breach as hackers claim access to agent
The FBI is investigating after hackers claim they accessed sensitive data on thousands of agents and applicants. What is known about the 2026 breach…

OpenAI incident exposes urgent cybersecurity risks in enterprise AI
A major OpenAI incident has exposed urgent cybersecurity risks associated with enterprise AI deployments, raising new questions about controls and governance.

Critical Cisco ISE vulnerability exploited in wild: what to know now
Cisco ISE critical vulnerability exploited in the wild prompts urgent patching. Learn how attackers exploit CVE-2026-76460, and how organizations should respond.

Spain’s AEPD confirms first AI-powered data breach for regulatory
Spain’s AEPD confirms first AI-powered data breach with an autonomous agent, marking a watershed moment for EU data protection and global cybersecurity policy.

Spain’s AEPD logs first formally reported AI agent-driven data breach
Spain’s data authority confirmed the first AI agent-driven data breach notification—an incident marking a shift in cybersecurity and AI risk. Full details.

Italian regulator fines Character.AI $180K for privacy breaches
Italy’s privacy regulator fined Character.AI $180,500 for privacy violations, spotlighting GDPR compliance challenges for generative AI. Details inside.