Tag: cyber
-
Earth Berberoka-Linked Hackers Target Brazil With Linux Malware and SEO Poisoning
A Chinese-speaking cybercrime cluster linked to the Earth Berberoka threat actor has compromised Brazilian government and educational web servers to conduct large-scale SEO poisoning and online-gambling fraud. The operation has been active since mid-2025 and represents a notable shift in Brazil’s threat landscape. Rather than deploying the country’s more familiar banking malware, the attackers are…
-
GitSpawn Flaw Enables Arbitrary Code Execution in Claude Code, Codex, Cursor and Grok
A newly disclosed vulnerability class, named GitSpawn, reveals a serious weakness in AI coding agents that automatically execute Git commands to understand a developer’s project better. Researchers at Manifold Security discovered that several tools, including Claude Code, OpenAI Codex, Cursor, Grok Build, Goose, Hermes Agent, and Qwen Code, might inadvertently run commands controlled by an…
-
Claude AI Can Now Control macOS and Windows Computers to Click, Type and Open Apps
Anthropic has enhanced Claude’s desktop automation capabilities, enabling the AI assistant to operate directly on macOS and Windows computers through Claude Cowork and Claude Code. When this feature is enabled, Claude can navigate a visible screen, click controls, type text, launch applications, open files, and work within browser-based or local tools if no dedicated connector…
-
Google Unveils Gemini 3.8 Flash Cyber for Autonomous Vulnerability Discovery and Automated Patching
Google has introduced Gemini 3.8 Flash Cyber, a specialized AI model focused on cybersecurity. This model is designed to autonomously identify software vulnerabilities, generate code fixes, and validate patches before deployment. Access to this model is restricted to vetted defenders through Google’s new Fairwind Program, which aims to provide advanced cyber capabilities to government agencies,…
-
OpenMatter Network Expands Platform with New Capabilities for Secure AI, Computing and Data Collaboration
Melbourne, Florida, September 2nd, 2026, CyberNewswire Less than three months after its commercial launch, OpenMatter Network today announced a significant expansion of the platform with new capabilities that make it easier for enterprises, developers and researchers to build, deploy and collaborate using sensitive data and AI while maintaining cryptographic control over how information is accessed,…
-
Google Launches Fairwind Program for Gemini 3.8 Flash Cyber Access
Google launched a new program Wednesday that gives select organizations access to a more capable version of Gemini designed to find and patch software vulnerabilities. The Fairwind Program combines Google’s new Gemini 3.8 Flash Cyber model with CodeMender, its AI agent for vulnerability remediation. Google said Fairwind initially includes government agencies, Google Cloud customers and..…
-
Google Launches Fairwind Program for Gemini 3.8 Flash Cyber Access
Google launched a new program Wednesday that gives select organizations access to a more capable version of Gemini designed to find and patch software vulnerabilities. The Fairwind Program combines Google’s new Gemini 3.8 Flash Cyber model with CodeMender, its AI agent for vulnerability remediation. Google said Fairwind initially includes government agencies, Google Cloud customers and..…
-
Google Launches Fairwind Program for Gemini 3.8 Flash Cyber Access
Google launched a new program Wednesday that gives select organizations access to a more capable version of Gemini designed to find and patch software vulnerabilities. The Fairwind Program combines Google’s new Gemini 3.8 Flash Cyber model with CodeMender, its AI agent for vulnerability remediation. Google said Fairwind initially includes government agencies, Google Cloud customers and..…
-
Google Launches Fairwind Program for Gemini 3.8 Flash Cyber Access
Google launched a new program Wednesday that gives select organizations access to a more capable version of Gemini designed to find and patch software vulnerabilities. The Fairwind Program combines Google’s new Gemini 3.8 Flash Cyber model with CodeMender, its AI agent for vulnerability remediation. Google said Fairwind initially includes government agencies, Google Cloud customers and..…
-
Google Launches Fairwind Program for Gemini 3.8 Flash Cyber Access
Google launched a new program Wednesday that gives select organizations access to a more capable version of Gemini designed to find and patch software vulnerabilities. The Fairwind Program combines Google’s new Gemini 3.8 Flash Cyber model with CodeMender, its AI agent for vulnerability remediation. Google said Fairwind initially includes government agencies, Google Cloud customers and..…
-
Google Launches Fairwind Program for Gemini 3.8 Flash Cyber Access
Google launched a new program Wednesday that gives select organizations access to a more capable version of Gemini designed to find and patch software vulnerabilities. The Fairwind Program combines Google’s new Gemini 3.8 Flash Cyber model with CodeMender, its AI agent for vulnerability remediation. Google said Fairwind initially includes government agencies, Google Cloud customers and..…
-
Leaked documents reveal Russian military cyber recruitment pipeline
First seen on scworld.com Jump to article: www.scworld.com/brief/leaked-documents-reveal-russian-military-cyber-recruitment-pipeline
-
CrowdStrike and NVIDIA Launch Dual-Use Cybersecurity AI
CrowdStrike SafeMind pairs offensive and defensive AI models in a closed loop designed to test attack paths and strengthen enterprise cyber defenses. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cybersecurity/news-crowdstrike-safemind-offensive-defensive-ai/
-
OpenAI Astra Brings Autonomous Zero-Day Exploitation to AI
OpenAI says Astra can autonomously find zero-days and build exploits, marking its first model to reach the “Critical” cyber risk level. Astra is now officially OpenAI’s highest-risk cybersecurity model. In August, OpenAI said it “couldn’t rule out” that its upcoming model had reached the highest cybersecurity risk level in its Preparedness Framework. In a new…
-
Lords considers government emergency AI kill switch
An amendment to the UK’s Cyber Security and Resilience Bill will give the government powers to switch off AI systems or data centres in an emergency First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650054/Lords-considers-government-emergency-AI-kill-switch
-
UK airport hackers leak stolen customer data
The cyber gang that attacked Manchester Airports Group has leaked data on 8.7 million travellers after its victim refused to pay a ransom. First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366649824/UK-airport-hackers-leak-stolen-customer-data
-
Global Public-Private Action Disrupts Russia-Linked Sality Botnet
US, European Law Enforcement, Cyber Firms Target Two-Decade-Old P2P Malware Network. U.S. and European authorities, CrowdStrike and Shadowserver disrupted the Russia-linked Sality botnet by exploiting its trusted-peer protocol to isolate roughly 15,000 infected machines and sever a malware network that had operated since 2003. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/global-public-private-action-disrupts-russia-linked-sality-botnet-a-32732
-
Podcast: North Korea’s $1.46 Billion Heist: Lazarus, Kimsuky, and Andariel Explained
Sep 2, 2026 Podcast: North Korea’s $1.46 Billion Heist: Lazarus, Kimsuky, and Andariel Explained Tova Dvorin (00:00) Welcome back to The Cyber Resilience Brief, a SafeBreach podcast. I’m your host, Tova Dvorin. Today, we’re diving into one of the most… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/podcast-north-koreas-1-46-billion-heist-lazarus-kimsuky-and-andariel-explained/
-
Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs
Google on Wednesday announced Gemini 3.8 Flash Cyber, which it described as its most capable cybersecurity model, and has made it available to a set of trusted defenders via a new initiative called the Fairwind Program.”The Fairwind Program gives high-priority defenders (like governments, healthcare providers, and telecommunications services) early access to advanced models that help…
-
Threat Intelligence: Definition, Benefits, and Use Cases
Security teams rarely struggle because they lack data. More often, the challenge is deciding which signals actually deserve attention. Modern security environments generate information about suspicious IP addresses, malicious domains, malware samples, phishing infrastructure, ransomware activity, attacker behavior, and thousands of other indicators. Without context, that volume can quickly become another source of noise. Threat…
-
CrowdStrike Fal.Con 2026: Biggest Statements From Nvidia CEO Huang, Intel CEO Tan And OpenAI President Brockman
At Fal.Con 2026 Tuesday, Nvidia CEO Jensen Huang, Intel CEO Lip-Bu Tan and OpenAI President Greg Brockman joined CrowdStrike co-founder CEO George Kurtz to offer their predictions about emerging cyber risks from agentic AI”, and the need for defenders to rapidly adopt the same technology. First seen on crn.com Jump to article: www.crn.com/news/security/2026/crowdstrike-fal-con-2026-biggest-statements-from-nvidia-ceo-huang-intel-ceo-tan-and-openai-president-brockman
-
Firefox for iPhone Adds Built-In Ad Blocker to Block Third-Party Ads and Trackers
Mozilla has introduced a built-in ad blocker for Firefox on iOS, providing iPhone users with a native option to block many third-party advertisements and advertising-related trackers before they load in the browser. Announced on September 1, 2026, this feature aims to reduce intrusive browsing elements such as pop-ups, overlays, and display advertisements that take up…
-
255 Fake Accounts Used to Send Malicious Excel Files to 80,000 Freelancers
A Russian national has been extradited to the United States to face charges over an alleged phishing operation that used 255 fake accounts on a freelance employment platform to distribute malicious Microsoft Excel files to roughly 80,000 users. Federal prosecutors allege that Searzhudin Tamirlanovich Aktulaev, 40, orchestrated the campaign between June 2016 and November 2017,…
-
Singularity Rootkit Bypasses Elastic Defend eBPF Module Load Detection
Security researcher has disclosed a technique used by the Singularity Linux rootkit to evade Elastic Defend by suppressing module-load telemetry to avoid detection across multiple layers. This research highlights how trusted-process exclusions in endpoint eBPF monitoring can become significant targets for advanced kernel-level threats. According to the report, Elastic Defend has monitored Linux kernel module…
-
Claude AI Develops Working RCE Exploit Against WAGO PLC With Researcher Assistance
Researchers have demonstrated that Anthropic’s Claude AI can assist in porting a remote code execution exploit between vulnerable models of WAGO programmable logic controllers (PLCs). However, this process requires significant human guidance, lengthy analysis sessions, and more than $500 in API usage. The experiment focused on CVE-2021-31886, a pre-authentication buffer overflow flaw in the Nucleus…
-
Hackers Exploit LiteLLM Admin API Flaw to Turn Read-Only Access Into Full Server Takeover
Attackers are actively exploiting a critical authorization flaw in LiteLLM’s administrative API. This vulnerability allows low-privileged, read-only users to modify proxy configurations, expose sensitive secrets, and potentially gain full administrator control over affected servers. Researchers at Zenity Labs tracked approximately 3,900 requests targeting LiteLLM’s administration endpoints from February to June 2026, originating from 73 different…
-
Palo Alto Networks Acquires Console to Add Agentic AI Workflows to Cortex
Palo Alto Networks has acquired Console, an AI-native platform designed to enable agentic workflows across enterprise operations. This acquisition expands the autonomous capabilities of Palo Alto Networks’ Cortex security operations platform. Announced on September 1, 2026, the deal aims to help security teams investigate signals, prioritize tasks, and respond to operational issues at machine speed.…
-
How to Secure Enterprise AI: From Adoption to Incident Readiness
The debate about whether AI delivers business value is over. The challenge now is implementing it at scale and securely across every function while meeting board-level pressure to move fast. Organizations must focus on adopting AI at business speed without losing control of cyber risk. Download the full eBook here. The Business Reality In Sygnia’s…
-
The Gentlemen Ransomware Hackers Use TukTuk C2 to Steal Credentials and Disable EDR Security
Tags: breach, control, credentials, cyber, edr, framework, group, hacker, healthcare, ransomware, technologyThe Gentlemen ransomware operation has been linked to a previously undocumented, cross-platform command-and-control framework named TukTuk, alongside EDR-disabling tooling, DLL sideloading research, and datasets apparently stolen from technology and healthcare organizations. Analysis of a Finland-hosted server identified what researchers assess as the complete TukTuk development project, providing an unusually detailed view into the group’s post-compromise capabilities.…

