The Exploit
Probe. Pry. Publish.
116 Results

OpenAI Says Its Own AI Models Autonomously Escaped a Test and Hacked Hugging Face

OpenAI disclosed this week what it called an unprecedented cyber incident. An autonomous agent, built on the newly released GPT 5.6 Sol and an unreleased more capable model, broke out of a controlled...

New Dysphoria Botnet Compromises More Than 200,000 Devices Worldwide

Security researchers have identified a rapidly expanding distributed denial of service (DDoS) botnet dubbed Dysphoria, which has compromised more than 200,000 internet connected devices worldwide....

SharePoint Zero-Day Sees Mass Exploitation in Wake of Record-Breaking Patch Tuesday

Microsoft's July 2026 Patch Tuesday release, published on July 14, set a new record for the largest security update in the company's history, addressing over 600 vulnerabilities across Windows,...

Ernst & Young Discloses Third Party Data Breach Affecting Client and Employee Information

Global professional services firm Ernst & Young (EY) disclosed a cybersecurity incident after attackers compromised a third party IT support platform used by the company, potentially exposing...

Microsoft Releases Largest Patch Tuesday in Company History, Fixing 570 Vulnerabilities

Microsoft released its July 2026 Patch Tuesday security updates, marking the largest vulnerability remediation effort in the company's history. The release addresses 570 vulnerabilities across...

CISA Warns of Active Exploitation of Microsoft SharePoint Remote Code Execution Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that threat actors are actively exploiting CVE-2026-45659, a high severity remote code execution vulnerability affecting on...

JADEPUFFER Becomes First Documented AI Driven Ransomware Operation

Security researchers disclosed what is believed to be the first documented ransomware operation conducted almost entirely by an autonomous AI agent, tracked as JADEPUFFER. According to the...

Mustang Panda Abuses Zoho WorkDrive to Evade Detection in Espionage Campaign

Researchers have uncovered new cyber espionage campaigns conducted by the China-aligned threat group Mustang Panda, targeting Indian government agencies and the hydropower sector. The attackers...

Critical Oracle E-Business Suite Flaw Targeted in Active Attacks

Researchers have confirmed active exploitation of CVE-2026-46817, a critical vulnerability affecting Oracle E-Business Suite's Oracle Payments File Transmission component. The flaw carries a CVSS...

Cisco Catalyst SD-WAN Zero-Day Exploited to Gain Root Access

Researchers have released new details on the exploitation of CVE-2026-20245, a high-severity vulnerability affecting Cisco Catalyst SD-WAN Manager that was actively exploited as a zero-day at least...

Microsoft Works to Patch New Defender Zero-Day “RoguePlanet”

Microsoft confirmed it is developing a security update for a newly disclosed zero-day vulnerability affecting Microsoft Defender, tracked as CVE-2026-50656 and publicly referred to as "RoguePlanet."...

FortiBleed Leak Exposes Credentials for More Than 73,000 Fortinet Devices

Security researchers have identified a large-scale credential harvesting campaign dubbed "FortiBleed," which exposed authentication data associated with approximately 73,900 Fortinet and FortiGate...

Microsoft Ships Largest Patch Tuesday on Record

Microsoft's June 2026 Patch Tuesday release set a new record as the largest security update inthe company's history, with fixes for approximately 200 vulnerabilities across Windows,...

VS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain Attacks

In recent weeks, supply chain attacks have become a growing concern, with multiple major repositories suffering from fake updates pushed by malicious actors to spread malware. In particular, recent...

Hackers abused Meta’s AI support bot to hijack major Instagram accounts

A recently disclosed security incident exposed significant weaknesses in AI-driven account recovery systems after attackers manipulated an automated support assistant to seize control of Instagram...

Why pure extortion is replacing traditional ransomware

The cybercriminal ecosystem is undergoing a strategic transition away from conventional ransomware operations toward pure extortion campaigns centered on data theft and disclosure threats. Rather...

Mythos proves potent in vulnerability discovery, less convincing elsewhere

Many claims have been made about the effectiveness of Anthropic’s Mythos AI model in the cybersecurity sector both by Anthropic itself and by third parties. Its ability to identify vulnerabilities in...

Google detects first AI-Generated zero-day exploit

A new discovery from the Google Threat Intelligence Group (GTIG) has confirmed a fear that many in the cybersecurity world have been concerned about since the rise of effective LLM-based AI coding...

Google revamps bug bounties: Android rewards rise, Chrome payouts drop

While bug bounties remain an essential component of cybersecurity for large software-driven enterprises like Google, shifts in the nature of security research have greatly reshaped the way bug...

Electric motorcycles and scooters face hacking risks to security and rider safety

In these days of technologically advanced and network-connected transportation devices, it has become increasingly common for vulnerabilities to exist in the systems of cars that can pose a security...

AI model Claude Opus turns bugs into exploits for just $2283

In recent weeks, there has been much concern over the impact of Anthropic’s latest AI model, Claude Mythos, and its ability to rapidly uncover previously unidentified vulnerabilities in code...

Nearly 4,000 US industrial devices exposed to Iranian cyberattacks

U.S. critical infrastructure operators are facing an active and ongoing cyber threat campaign attributed to Iranian state-aligned actors. Recent investigations indicate that thousands of...

The Trojan horse of cybercrime: Weaponizing SaaS notification pipelines

A new wave of cyberattacks has recently been detected by investigators exploiting existing infrastructure to deliver malicious content. This is not an unknown phenomenon, of course, but the new...

New Criminal Platform Leak Bazaar

Leak Bazaar is an emerging cybercriminal platform that represents a significant evolution in how stolen corporate data is monetized. First advertised in March 2026 on a Russian-speaking cybercrime...

AI in the SOC: What Could Go Wrong?

There has been growing pressure in both the public and private sectors to adopt AI-based tools in workflows, and the Security Operations Center (SOC) has been no exception. Enterprise security teams...

US Sanctioning Russian Broker for Buying Stolen Zero-Day Exploits.

The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) has imposed anctions on Matrix LLC (also known as Operation Zero), its owner Sergey Sergeyevich Zelenyuk, and several associated...

AI In the Middle: Turning Web-Based AI Services into C2 Proxies and The Future of AI Driven Attacks

Threat actors are already using AI to accelerate malware development, generate phishing content, automate scripting, and assist decision-making during intrusions. Researchers from Check Point...

CISA orders federal agencies to replace end-of-life edge devices

The United States Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Directive (BOD) 26-02, titled Mitigating Risk From End-of-Support Edge Devices, to address...

Old habits die hard: 2025’s most common passwords were as predictable as ever

Despite all the new forms of cyberattack, all the complex vulnerabilities, and all the elaborate social engineering techniques leveraged by threat actors, the perennial bugbear of the security...

How 2 Missing Characters Nearly Compromised AWS

A recently discovered vulnerability in the AWS CodeBuild service had the potential to affect the entire AWS management console and related cloud environments. Investigators identified this flaw,...

Scaling the fraud economy: Pig Butchering as a Service

Over the past decade, online fraud has undergone multiple significant structural transformations. What originally began as the acts of individual criminals has evolved into a large, industrialized...

Cyberattacks likely part of military operation in Venezuela

Experts studying the recent military operation in Venezuela resulting in the capture of President Nicolas Maduro have concluded that cyberattack operations may have been an important part of the...

Massive Rainbow Six Siege Breach

On December 27–28, 2025, Ubisoft’s popular online shooter TomClancy’s Rainbow Six Siege experienced a major security breach that disrupted game operations and exposed serious vulnerabilities in its...

Defending against the React2Shell vulnerability

Since its disclosure earlier this month, CVE-2025-55182, a vulnerability in React Server Components now commonly referred to as React2Shell, has become an extremely common attack vector. Multiple...

UK intelligence warns AI ‘prompt injection’ attacks might never go away

A recent blog post published by the UK’s National Cyber Security Centre (NCSC) has exhibited a more profound skepticism about AI security than many security researchers have publicly given credence...

Threat Actors Exploit Calendar Subscriptions for Phishing and Malware Delivery

For many people in the professional world, digital calendars are an essential time-management tool. In many cases, to properly synchronize, multiple people or organizations will share an external...

Active Spyware Campaigns Hijacking High-Value Signal and WhatsApp Users

Multiple malicious actors are actively using commercial spyware and remote access trojans (RATs) to target users of secure mobile messaging apps, most notably Signal and WhatsApp. Rather than...

Companies want more from their threat intelligence platforms

With each passing year, cyber threat actors become more sophisticated, more innovative in their attack techniques, and more determined to obtain their ill-gotten gains regardless of law enforcement....

Cyberattacks surge against IoT, mobile devices in critical infrastructure

Cloud security provider Zscaler has published its annual Mobile, IoT, and OT threat report, compiling findings from a year of monitoring these peripheral devices. Each year, mobile devices grow to...

Cybercriminals Exploit RMM Tools to Infiltrate Shipping and Logistics Networks

It is well known by now that cybercrime can have real world consequences leading to financial losses, but those losses usually come in the form of stolen data rather than more concrete theft....

DDoS, data theft, and malware are storming the gaming industry

Video games may seem of small importance to the business world at large, but the industry is growing and it can have an outsize effect on business affairs, particularly when it comes to security. The...

OpenAI Disrupts Russian, North Korean, and Chinese Hackers Misusing ChatGPT for Cyberattacks.

OpenAI has now disrupted and reported over 40 networks that violated usage policies ranging from covert influence operations to scams and malicious cyber activity and provided a set of case studies...

Gemini Trifecta Highlights Dangers of Indirect Prompt Injection

New discoveries from network defenders have once again highlighted the ways in which everyday AI agents can be leveraged by threat actors to not just become attack targets, but active threat...

AI made crypto scams far more dangerous

2025 has been one of the worst years to be a cryptocurrency investor as far as security is concerned. The first half of 2025 saw more than 3 billion USD worth of crypto assets appropriated by threat...

Fifteen Ransomware Gangs “Retire,” Future Unclear

Scattered Spider, one of the most notorious ransomware groups of the present era, surprised the cybercrime community this week with the announcement that it was shutting down its operations. In an...

Stealthy attack serves poisoned web pages only to AI agents

AI agents have been a frequent subject of discussion on these pages. Many users are delighted at the prospect of an AI assistant to automate work for them, heedless of the potential security dangers....

First AI-Powered Ransomware Created Using OpenAI’s gpt-oss:20b Model

A novel ransomware prototype called PromptLock, first reported publicly in late August 2025 can be described as the first known AI-powered ransomware, although the strain is a proof-of-concept rather...

Chinese Hackers Silk Typhoon Escalate Cloud and Telecom Espionage

In the last year, cybersecurity researchers have called significant attention to the cyberespionage group tracked as Silk Typhoon, also known as Murky Panda and as HAFNIUM. The group has achieved...

For $40, you can buy stolen police and government email accounts

One of the key tools that helps users distinguish between genuine messages and phishing attacks, especially through email, is the ability to distinguish between real government accounts and malicious...

Exploring the Top Cyber Threats Facing Agentic AI Systems

For better or worse, Agentic AI systems, meaning programs that utilize large language models to interpret natural language instructions and perform automated tasks, have steadily increased their...

Foreign adversaries are trying to weaponize open-source software, report finds

Open-source software is the backbone of the digital ecosystem. Benevolent programmers who develop valuable tools and then share those tools with others are some of the most valuable contributors to...

Flaw in Gemini CLI AI coding assistant allowed stealthy code execution

Tools based on large language models, colloquially termed AI, have become an important part of the workflow of many individuals and enterprises in the tech sector. One such area where enthusiasts...

Firmware Vulnerabilities Continue to Plague Supply Chain

Firmware is the foundation of nearly all activity performed on computers, whether locally or over the cloud. If the firmware computers use presents security flaws, then any security precautions taken...

Google Gemini flaw hijacks email summaries for phishing

Google Gemini for Workspace is an automation tool that allows Google's Gemini LLM to interact directly with various workplace tasks, including user inboxes. Because Gemini is a Google product being...

Sixfold surge of ClickFix attacks threatens corporate defenses

The ClickFix attack tactic represents something of an anomaly among social engineering methods. To some extent or another, all social engineering tactics depend on user ignorance, but perhaps none...

SquareX: Browser AI Agents Are The Weakest Link

It is a truism among security personnel that the weakest link in any cybersecurity strategy is always the human element. However, a report from browser cybersecurity firm SquareX has put forward the...

US Homeland Security warns of escalating Iranian cyberattack risks

This past week, tensions between the United States and Iran have escalated into full scale conflict as the United States and Israel conducted air strikes against Iran's nuclear testing facilities. As...

CISA Issues Comprehensive Guide to Safeguard Network Edge Devices

At Blackwired, we have repeatedly stressed the dangers faced by network edge devices, including routers, firewalls, VPN gateways, IoT devices, internet-facing servers, and industrial operational...

Hacktivist Groups Transition to Ransomware-as-a-Service Operations

In cybersecurity, we tend to classify threat actors along strict boundaries. One such boundary is that between politically motivated hacktivists and financially motivated cybercriminals. In...

New Browser Exploit Technique Undermines Phishing Detection

Investigators studying common internet browsers looking for security flaws have uncovered a new potential weapon in the arsenal of phishing-based threat actors that is especially dangerous because it...

Pushing passkeys forward: Microsoft’s latest updates for simpler, safer sign-ins

Passwords are the first line of defense against threat actors, and as the years have passed, it has become increasingly clear that they are a rather shoddy and failure-prone line of defense. Although...

Using Blob URLs to Bypass SEGs and Evade Analysis

Hackers often look for new ways to deliver their attacks, especially in the sector of phishing. Most conventional phishing pages are hosted on a server with an IP address somewhere, and once the...

Claude AI Exploited to Operate 100+ Fake Political Personas in Global Influence Campaign

AI agents are growing increasingly effective at operating within public digital space, and perhaps no one example demonstrates this as well as the Claude chatbot, created by the company Anthropic....

Ransomware groups test new business models to hit more victims, increase profits

The ransomware industry is currently in a state of severe flux. As law enforcement has taken a more proactive role in shutting ransomware operations down and security personnel have improved their...

Researchers claim breakthrough in fight against AI’s frustrating security hole

Since 2022, prompt injection, a vulnerability where malicious instructions override AI system behavior, has plagued large language models (LLMs). No reliable solution existed until Google DeepMind...

The Rise of Precision-Validated Credential Theft: A New Challenge for Defenders

A new evolution in the realm of phishing is taking the precision tactics of spear-phishing to new heights. Email-based phishing attacks generally have two major stumbling blocks that can reduce their...

How SSL Misconfigurations Impact Your Attack Surface

Secure Sockets Layer or (SSL) plays a critical role in configurations within organizational cybersecurity, these misconfigurations can amplify an external attack surface thus adding to an...

Deceptive Signatures: Advanced Techniques in BEC Attacks

Business Email Compromise (BEC) is one of the most common forms of cyberattack targeting the modern organization. At its most basic level, the technique is simply one of impersonation, attempting to...

Red Teaming for Generative AI: A Practical Approach to AI Security

Generative AI has provided great benefits to a number of industries, however, as we have discussed in previous commentaries, AI agents come with security risks. Threat actors can potentially induce...

Exploiting DeepSeek-R1: Breaking Down Chain of Thought Security

Since its debut in January, the large language model (colloquially referred to as an AI) DeepSeek-R1 has been a sensation, providing the same utility as OpenAI's o1 model at a fraction of the cost in...

Your item has sold! Avoiding scams targeting online sellers

When the subject of online security on online marketplaces comes up, it usually focused on risk towards buyers. However, sellers in these marketplaces are equally vulnerable to fraud schemes, not...

No, you’re not fired – but beware of job termination scams

In recent months, hiring scams involving fake job interviews have been in the public eye. In such scams, threat actors induce the target to download malicious programs under the pretext of giving...

Phishing evolves beyond email to become latest Android app threat

Phishing has always been a multifaceted threat, but in the public perception, phishing is usually tied up with email. The process, as stereotyped, is clear: a fraudster sends an email with a bogus...

Future of Cybersecurity: Will XDR Reshape SIEM & SOAR?

The cybersecurity realm is known as a constantly evolving paradigm with a future so vast it can be hard to predict where it will go. One of the most common apparatuses that companies use to interact...

The Evolving Role of AI in Data Protection

DataProtection Day is a time where many reflect on the evolving role of artificialintelligence and data protection. Oftentimes AI is seen as a potential riskwhen it comes to privacy, however, it's...

How Hackers Steal Your Password

Although now considered to be insufficient for reliable security, passwords have historically been of great importance. Even now, passwords are the foundation of the security strategies of many major...

Hunters International Dumps Ransomware, Goes Full-on Extortion

One of the most prolific ransomware-as-a-service (RaaS) groups of the past couple of years has renounced the ransomware label and says it will focus solely on data exfiltration and extortion going...

INTERPOL urges end to ‘Pig Butchering’ term, cites harm to online victims

INTERPOL is calling on the global cybersecurity community to stop using the term "pig butchering" when it comes to online fraud, as this language "dehumanizes and shames victims of such frauds,...

It’s time to stop thinking of threat groups as supervillains, experts say

There's something wrong with the way we think about threat actors. Speaking at the NCC Group's Security Summit in Cheltenham, England, this week, security experts took turns challenging the...

Majority of global CISOs want to split roles as regulatory burdens grow

A growing number of CISOs are looking for their roles to be split up due to the mounting regulatory responsibilities of the position, according to new research from ISACA. The industry body's CISO...

Middle East Cybersecurity in 2024: From Zero-Day Exploits to Supply Chain Attacks

In 2024, organizations around the Middle East continued the arduous work of improving cyber resiliency while facing an increasingly hostile threat environment. Fueled by ongoing conflicts and...

Zero Trust Security: Why It’s Essential in Today’s Threat Landscape

Originally coined in 2010, the term zero trust has become a common phrase in security jargon, but the principle is much less commonly applied to its full meaning. Zero trust is more than a simple...

Seven Trends to Watch for in 2025

As we come into the new year, changes in technology and policy will affect how cybersecurity is handled. Security professionals and end users alike need to be aware of these coming changes, because...

New “DoubleClickjacking” Exploit Bypasses Clickjacking Protections on Major Websites

Clickjacking, also known as UI redressing, is a known social engineering technique. By tricking users into clicking on a seemingly innocuous UI element, such as a button, on an attacker-controlled...

Using CAPTCHA for Compromise: Hackers Flip the Script

CAPTCHA is an important anti-fraud tool that usually protects websites from bot-based attacks such as brute forces and password sprays. In this capacity, they are not only useful, but essential....

CISOs need to consider the personal risks associated with their role

One of the growing trends in cybersecurity enforcement in the past few years is for Chief Information Security Officers to be held personally liable for cybersecurity incidents, and to face...

The Shocking Speed of AWS Key Exploitation

It is not an uncommon phenomenon for developers working for major enterprises to inadvertently expose their AWS access keys, and it is not uncommon for threat actors to discover this and take...

Advanced Cyberthreats Targeting Holiday Shoppers

The holiday season is a boon time for e-commerce worldwide, with Black Friday and Cyber Monday driving sales on every major e-commerce platform, with further waves of traffic continuing up until the...

Chinese Air Fryers May Be Spying on Consumers, Which? Warns

IoT devices have become a known attack vector in recent years, largely due to the fact that they lack many of the security protections internet-facing devices are meant to have. However, even with...

The Hidden Risks in Telecom Networks and How to Safeguard Your Organization

Telecom network breaches have been big news for the past few weeks following the public disclosure of a high-profile breach of Verizon by threat actors alleged to be affiliated with China. The big...

A Look at the Social Engineering Element of Spear Phishing Attacks

In many ways, the job of the Chief Information Security Officer is divided between two radically different areas of expertise. On one hand, there are the daily technical responsibilities that go into...

SOC teams are frustrated with their security tools

Many security operations center (SOC) analysts struggle to do their jobs effectively, citing problems with the tools they use, alert fatigue, and the time they waste chasing after erroneous...

Safeguarding Healthcare Organizations from IoMT Risks

Whether it's a local clinical pharmacy, a hospital, or a health insurance company — all healthcare organizations are prime targets for cyber attacks. This is partly due to the sensitivity of the data...

Satellites found exposing unencrypted data

A research team has discovered that many satellite communications are not encrypted, potentially exposing sensitive data to interception. The findings highlight the need for improved security in the...

Scattered Spider snared financial orgs before targeting shops in Britain, America

The threat group known as Scattered Spider, which recently targeted retailers in the UK and US, had previously honed its skills attacking financial institutions and cryptocurrency exchanges.The group...

NIST proposes barring some of the most nonsensical password rules

The password is the foundation on which all computer security rests. In the decades since its introduction, there have been many debates over how to form the best password, how often to change it,...

AI jailbreaks: What they are and how they can be mitigated

Today's subject will be a little bit different from the usual discussions of security flaws. This is a security flaw, to be sure, but it works along different angles. Generative AI is a current...

Why GenAI fails at full SOC automation

The increasing prevalence of generative AI in the tech community has given certain individuals in the security community hopes of cutting down on the need for professionals to work long, overnight...

Breaking silos: The convergence of cybersecurity and fraud prevention

In many enterprises, cybersecurity and fraud protection are operated as separate teams. Cybersecurity is generally focused on the protection of information systems, whereas fraud prevention is...

PRESS

sufyan-9M4EYcOa1D0-unsplash

VIDEO

Copyright © All Right Reserved

Privacy Policy

Add Your Heading Text Here