Tag: data
-
The Rising Cost of Trusted Access
IBM 2026 Cost of a Data Breach Report The cost of a data breach continues to climb. According to the IBM Cost of a Data Breach Report 2026, the global average reached a record $4.99 million, up 12% from the previous year. In the United States, the average cost rose to $11.5 million, more than……
-
Ukraine to give Britain access to battlefield data to train AI
Ukraine will give Britain access to a vast trove of battlefield data collected during the war with Russia, allowing U.K. companies and researchers to use it to train and test artificial intelligence systems. First seen on therecord.media Jump to article: therecord.media/ukraine-uk-ai-drone-data
-
Grok fooled into stealing user chat, location data, and more
Researchers found that prompt injection attacks can hide malicious instructions in encrypted text to get them past AI guardrails. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/grok-fooled-into-stealing-user-chat-location-data-and-more/
-
Grok fooled into stealing user chat, location data, and more
Researchers found that prompt injection attacks can hide malicious instructions in encrypted text to get them past AI guardrails. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/grok-fooled-into-stealing-user-chat-location-data-and-more/
-
Vektorisierung und Abliteration als KI-Risiken
Die Zahl der Kompromittierungsversuche auf öffentlich zugängliche KI-Modelle und eigenentwickelte LLMs nimmt zu. Laut den Ergebnissen des aktuellen Cost of a Data-Breach-Reports von IBM stieg die Zahl der KI-gestützten Angriffe im Vergleich zum Vorjahr um 56 Prozent. Die finanziellen Folgen waren nicht unerheblich. KI-gestützte Angriffe verursachten pro Sicherheitsvorfall durchschnittlich 1 Million US-Dollar an Kosten, da Angreifer…
-
The County Prosecutors Who Became ICE Informants
Tags: dataIllinois prosecutors shared defendants’ personal data with federal immigration agents without criminal warrants, public disclosure, or legislative oversight. First seen on wired.com Jump to article: www.wired.com/story/the-county-prosecutors-who-became-ice-informants/
-
GTA 6 leak hunt could expose data belonging to thousands of Discord users
Take-Two is demanding IP addresses, phone numbers, device IDs, and other data as it tries to identify whoever leaked GTA 6 footage. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/gta-6-leak-hunt-could-expose-data-belonging-to-thousands-of-discord-users/
-
Ledger Fixes Ethereum App Flaw as Disclosure Timeline Is Disputed
Ledger CTO Charles Guillemet said on Aug. 23, 2026, that the company had fixed a clear-signing flaw in its Ethereum app two weeks before security firm TestMachine publicly disclosed the issue. As of Aug. 24, there were no independently verified reports of funds stolen through the specific vulnerability. First seen on thecyberexpress.com Jump to article:…
-
What Is MCP in Software Development and Why Does It Matter
What MCP is in software development, how it connects AI models to tools and data, and why it matters for building scalable AI-powered applications. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/what-is-mcp-in-software-development-and-why-does-it-matter/
-
Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data
Tags: access, cve, cybersecurity, data, exploit, flaw, infrastructure, kev, network, oracle, vulnerabilityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a maximum-severity security flaw impacting Oracle HTTP Server and Oracle WebLogic Server to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.The vulnerability, tracked as CVE-2026-21962 (CVSS score: 10.0), allows an unauthenticated attacker with network access via HTTP to First seen on…
-
Fake GTA 6 Demo Sites Spread Vidar Stealer to Hijack Authenticated Browser Sessions
Cybercriminals are capitalizing on renewed interest in Grand Theft Auto VI by pushing fake Rockstar Games pages that advertise a non-existent GTA 6 demo but instead deliver the Vidar information stealer. The campaign targets browser credentials, session cookies, and other profile data that can let attackers access accounts even after victims change their passwords. The…
-
Hackers Exploit Critical Oracle HTTP Server Flaw to Access and Modify Sensitive Data
Tags: access, cisa, cve, cyber, cybersecurity, data, exploit, flaw, hacker, infrastructure, kev, oracle, vulnerabilityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability in Oracle HTTP Server to its Known Exploited Vulnerabilities (KEV) Catalog after confirming evidence of active exploitation in the wild. The vulnerability, tracked as CVE-2026-21962, affects both Oracle HTTP Server and the Oracle WebLogic Server Proxy Plug-in. CISA classified this issue as…
-
Hackers Exploit Critical Oracle HTTP Server Flaw to Access and Modify Sensitive Data
Tags: access, cisa, cve, cyber, cybersecurity, data, exploit, flaw, hacker, infrastructure, kev, oracle, vulnerabilityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability in Oracle HTTP Server to its Known Exploited Vulnerabilities (KEV) Catalog after confirming evidence of active exploitation in the wild. The vulnerability, tracked as CVE-2026-21962, affects both Oracle HTTP Server and the Oracle WebLogic Server Proxy Plug-in. CISA classified this issue as…
-
AnMed Confirms Data Theft, Warns Patients of Criminal Scams
Ransomware Gang Gentlemen Says It Stole 6TB of Sensitive Patient Info. Nonprofit health system AnMed has confirmed cybercriminals stole information in a July cyberattack that disrupted its IT environment and patient services for several weeks. The organization is also warning patients not to fall for potential fraud, payment and other scams by criminals. First seen…
-
Randall Munroe’s XKCD ‘Airport Meeting’
via the comic artistry and dry wit of Randall Munroe, creator of XKCD Permalink First seen on securityboulevard.com Jump to article: https://securityboulevard.com/2026/08/randall-munroes-xkcd-airport-meeting/
-
Map What Your Agent Can Reach Before It Deletes It FireTail Blog
Tags: access, ai, control, credentials, data, group, intelligence, jobs, leak, risk, threat, tool, vulnerabilityAug 24, 2026 – Ayush Sethi – What your workforce’s AI prompts reveal in aggregate Most AI security controls judge one prompt at a time. We built Topics to read the layer above them, where a workforce’s prompts add up into a pattern that no single message shows.Someone in your legal team pastes a contract…
-
What happens to your data when you die? (Lock and Code S07E17)
Tags: dataThis week on the Lock and Code podcast, we speak with Tamara Kneese about the many ways your data remains long after your die. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/what-happens-to-your-data-when-you-die-lock-and-code-s07e17/
-
Barracuda Networks Analysis Finds 20 Vulnerabilities on Average Per Web App
The average web application has 20 security vulnerabilities with nearly half (49%) involving information disclosures (25%) or potential brand impersonation (24%), according to a report published by Barracuda Networks. In comparison, client-side attack exposure accounts for 14% of the security flaws detected, while data exposure and privacy risks account for 10% of detected security flaws……
-
Hacker Leaks 1,033 Stripe Merchant API Keys and 688K Customer Records
A 33GB database linked to 669 Stripe merchants has appeared on PwnForums, containing customer data, live-mode API keys, invoices, and payment records worldwide. First seen on hackread.com Jump to article: hackread.com/hacker-leak-stripe-merchant-api-keys-customer-records/
-
Google Tests Built-In Opt-Out in Chrome for Data Sharing and Sales
Google is testing Global Privacy Control in Chrome Canary, letting users ask websites not to sell or share their data or use it for targeted advertising online. First seen on hackread.com Jump to article: hackread.com/google-tests-opt-out-chrome-data-sharing-sales/
-
US Charges 17 Iranian Hackers Over Theft of 31.5TB of Academic Data
US prosecutors charge 17 Iranians hackers over an alleged campaign that stole 31.5TB of research and targeted universities, companies and government agencies worldwide. First seen on hackread.com Jump to article: hackread.com/us-charges-iranian-hackers-theft-31b-academic-data/
-
South Korean startup platform breach exposes key management failures
A breach at South Korea’s government-backed startup platform exposed encrypted personal data after an encryption key was included in an API. Penta Security explains why encryption keys must be securely managed and kept separate from the data they protect. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/south-korean-startup-platform-breach-exposes-key-management-failures/
-
Gunra ransomware: what you need to know
The ransomware gang Gunra has been creating havoc – exploiting unpatched VPNs and firewalls to steal data, encrypt systems, and extort victims across healthcare, finance, manufacturing, and more. First seen on fortra.com Jump to article: www.fortra.com/blog/gunra-ransomware-what-you-need-know
-
Mimecast CEO on why AI risk starts with the user
Ranjan Singh talks up the security supplier’s focus on human risk management, the behavioural data he believes rivals can’t match, and why having a local datacentre is a condition of doing business in APAC First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366649561/Mimecast-CEO-on-why-AI-risk-starts-with-the-user
-
Slovakia Warns of Cyber Risks in Road Speed Cameras
Slovakia warns that vulnerable speed cameras could expose vehicle data, enable remote access and provide attackers with a foothold into public networks. Slovakia’s National Security Authority, NBÚ, recently issued a warning about several road speed cameras, calling them a significant cyber threat. The alert is not about someone deleting a speeding ticket. It is about…
-
TikTok Settles U.S. Child Privacy Case for $400 Million
TikTok will pay $400 million to settle U.S. claims that it violated child privacy laws by collecting data from users under 13. The U.S. Department of Justice announced that TikTok will pay $400 million to settle a 2024 lawsuit over children’s privacy. >>Today, the Department of Justice announced a $400 million settlement with TikTok, ByteDance,…

