Tag: hacking
-
Anthropic AI Models Hacked 3 Real Companies
Setup Error Let Models Steal Data and Release Malware Online. Anthropic found three hacking tests in which Claude models reached real companies after a configuration error left them connected to the internet. One accessed customer data, another released malware that ran on 15 computers and a third scanned 9,000 systems. First seen on govinfosecurity.com Jump…
-
Anthropic says its AI accidentally hacked three companies during safety tests
Following OpenAI’s own incident, Anthropic reviewed its own evaluations and found three cases of Claude hacking external companies. First seen on cyberscoop.com Jump to article: cyberscoop.com/anthropic-claude-ai-hacks-real-companies/
-
Breach Roundup: OpenAI Models on a Hacking Tear
Also, Russian Hackers Exploit Outlook Flaw, Coca-Cola Restarts Fairlife Production. This week: Sam Altman on hacking, Russia exploited an Outlook web access flaw, Coca-Cola restarted Fairlife production, U.K. education department and Angola teleco breached, SonicWall credential stuffing, Telegram founder charged in Russia, hidden prompt turns Microsoft Copilot into an AI worm. First seen on govinfosecurity.com…
-
Hugging Face Incident Spurs Calls for European AI Autonomy
European Union Looks to Launch ‘AI Gigafactories’. OpenAI’s inadvertent agentic hacking of Hugging Face’s systems has startled some politicians in Europe, with Germany’s top tech minister saying it demonstrated the need for the rapid development of the European AI sector. The European Commission said it will build up to seven AI gigafactories. First seen on…
-
Cybercriminals Are Leveraging Autonomous AI Offensive Security Agents
Resecurity warns AI offensive agents are lowering hacking barriers, fueling an AI-driven race between attackers and defenders. Resecurity analyzed how autonomous offensive security agents such as T3MP3ST, Strix, CyberStrike, XBOW, PentAGI, PentestGPT, and Nebula lower the barriers to vulnerability identification and exploitation. The analysis also explores why AI is being repurposed for real attacks and…
-
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attributed to a fresh set of attacks targeting entities across the Middle East, Africa, and South Asia.The intrusions involve the use of a previously undocumented Windows backdoor called NightLedger and two custom WebSocket tunnelers,…
-
Reuters: OpenAI Agent Hacked Hugging Face for Days Before Being Detected
Reuters says OpenAI failed to detect its AI agent hacking Hugging Face for days, discovering the breach only after FBI involvement. Reuters reported that the OpenAI agent responsible for the Hugging Face breach operated undetected for over a week before OpenAI realized what had happened, long after the FBI had been alerted and Hugging Face…
-
UK court rejects Bahrain immunity claim in spyware case
The alleged hacking by officials in Bahrain “allowed access to and exfiltration of information on the computers, interception of communications conducted using the computers and use of the computers’ microphones and cameras to surveil the respondents,” according to the court opinion. First seen on therecord.media Jump to article: therecord.media/uk-court-rejects-bahrain-immunity-claim-spyware-case
-
Illinois man sentenced to over six years for hacking Snapchat accounts and distributing CSAM
Tags: hackingFirst seen on scworld.com Jump to article: www.scworld.com/brief/illinois-man-sentenced-to-over-six-years-for-hacking-snapchat-accounts-and-distributing-csam
-
When the Sandbox Won’t Hold: Lessons From Hugging Face
Experts Call for Hard Stops at Every New Privilege and Network Boundary. Barriers meant to stop artificial intelligence from escaping a sandboxed testing environment and not subject an unprepared third party to an onslaught of cyberattacks obviously failed, the world learned this month in the case of a hacking incident by OpenAI models against code…
-
Escape Artists: ‘Incorrigible’ AI Models Resist Rehabilitation
The hacking of Hugging Face by a rogue OpenAI agent is significant, but unsurprising, and preventing the next AI model escape will be difficult, at best. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/incorrigible-ai-models-resist-rehabilitation
-
Man gets six years for hacking 750 women’s Snapchat accounts
Tags: hackingAn Illinois man was sentenced on Tuesday to 76 months in prison and three years of supervised release for hacking the Snapchat accounts of over 750 women to steal nude photos. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/man-gets-six-years-for-hacking-750-womens-snapchat-accounts/
-
Russian hackers exploit Zimbra zero-click flaw for email theft
CISA is warning that the Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is targeting organizations using Zimbra Collaboration email servers by combining phishing attacks with the exploitation of a now-patched Zimbra vulnerability. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/russian-hackers-exploit-zimbra-zero-click-flaw-for-email-theft/
-
OpenAI’s AI >>goes rogue<< and hacks Hugging Face: what you need to know
You can’t have failed to hear the news headlines about “rogue” OpenAI models hacking into another AI organisation, Hugging Face. First seen on bitdefender.com Jump to article: www.bitdefender.com/en-us/blog/hotforsecurity/openais-hacks-hugging-face
-
A Sneaky Hacking Tool Targeting AI Infrastructure Is Lurking in Victims’ Blind Spots
A new type of malware can worm deep into AI coding systems to steal data and logins”, and can flip a “death switch” to destroy files and keep out real users. First seen on wired.com Jump to article: www.wired.com/story/a-sneaky-hacking-tool-targeting-ai-infrastructure-is-lurking-in-victims-blind-spots/
-
Ukraine warns fake CAPTCHAs are being used to make you hack yourself
Ukraine’s computer emergency response team, CERT-UA, has warned that the Kremlin-backed Sandworm hacking group is leveraging fake CAPTCHA checks on compromised websites that persuade users to run malicious code. First seen on bitdefender.com Jump to article: www.bitdefender.com/en-us/blog/hotforsecurity/ukraine-fake-captchas-hack-yourself
-
A Device Hidden in Cars Across the US Leaves Them Vulnerable to Hacking and Paralysis. Patch It Now
Dealerships installed alarms in millions of vehicles”, and left them in even if the buyer didn’t want them. Now researchers warn they can be hacked to unlock, track, and disable cars. First seen on wired.com Jump to article: www.wired.com/story/a-device-hidden-in-cars-across-the-us-leaves-them-vulnerable-to-hacking-and-paralysis-patch-it-now/
-
Researchers Uncover North Korean ‘ClickFake’ Campaign Targeting Web3 Pros
In a new campaign, North Korean hacking group Famous Chollima targeted crypto professionals through ClickFix lures to deliver Windows and macOS trojans First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/north-korean-clickfake-campaign/
-
UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware
Russian state-sponsored threat actors have been observed leveraging the infamous ClickFix strategy to trick Ukrainian targets into infecting their own machines with data-stealing malware.According to the Computer Emergency Response Team of Ukraine (CERT-UA), the activity has been attributed to UAC-0145, a sub-cluster within Sandworm, an advanced hacking unit affiliated with GRU, Russia’s First seen on…
-
Your Period Tracker Is (Probably) Spying on You
Plus: Russian cyberspies turn to infrastructure hacking, DHS repeatedly fails to realize it’d been hacked, a breach exposes an AI music generator’s scraping ways, and more. First seen on wired.com Jump to article: www.wired.com/story/security-news-this-week-your-period-tracker-is-probably-spying-on-you/
-
Prompt Injection Attacks Are Thwarting AI Hacking Agents
“Context bombing” tricks malicious AI agents into shutting down before they can do harm. First seen on wired.com Jump to article: www.wired.com/story/prompt-injection-attacks-are-thwarting-ai-hacking-agents/
-
Trump Revives Debunked Election Hacking Claims
Courts, Audits and Federal Agencies Found No Evidence 2020 Votes Were Altered. U.S. President Donald Trump used a primetime address Thursday night to allege that China carried out a sweeping compromise of American voter data and to revive doubts about the 2020 election, while stopping short of claiming any votes were changed. First seen on…
-
Trump May Revive Debunked Election Hacking Claims
Courts, Audits and Federal Agencies Found No Evidence 2020 Votes Were Altered. U.S. President Donald Trump is expected to revive claims that the 2020 election was hacked in a primetime address, but federal agencies, courts and statewide audits have repeatedly found no evidence votes were altered – while the architecture of U.S. voting systems makes…
-
2 Young Hackers Jailed for Disrupting London Underground
Police Say Arrests ‘Effectively Halted’ Scattered Spider Cybercrime Collective. Two leaders of the Scattered Spider hacking group received 66-month jail sentences in Britain’s biggest cybercrime prosecution to date, after they disrupted London’s transport authority, causing $39 million in losses and recovery costs. How to deter young hackers remains an ongoing challenge. First seen on govinfosecurity.com…
-
Hacker missbraucht Googles Gemini CLI zur Botnetz-Steuerung
Ein russischsprachiger Cyberkrimineller hat Googles KI-Tool Gemini CLI als autonomen Hacking-Agenten zur Steuerung eines Botnetzes missbraucht. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/hacker-missbraucht-gemini
-
UK cops say arrest of two young hackers disrupted the operations of an infamous hacking group
Owen Flowers and Thalha Jubair, two members of the prolific Scattered Spider hacking group, pleaded guilty and were sentenced to five years and six months in jail for hacking London’s metropolitan transit system. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/16/uk-cops-say-arrest-of-two-young-hackers-disrupted-the-operations-of-an-infamous-hacking-group/
-
Scattered Spider members jailed over Transport for London hack that cost £29 million
Two members of the notorious >>Scattered Spider<< hacking collective have been sentenced to five years and six months in prison each for a cyberattack on Transport … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/16/ransport-for-london-cyberattack-prison-time/
-
Scattered Spider members behind TfL hack get five years in prison
Two leading members of the Scattered Spider cybercrime collective were sentenced to five years and six months in prison each for hacking Transport for London (TfL) in 2024. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/scattered-spider-members-behind-transport-for-london-hack-get-five-years-in-prison/
-
New tutorials on underground hacking forums have roughly doubled
Underground hacking forums are producing more original tutorials again, with growing attention on financial fraud, particularly the theft and fraudulent use of payment card … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/14/underground-hacking-forums-tutorials-research/
-
UK and EU impose sanctions on hacking groups linked to Kremlin
Tags: attack, credentials, group, hacker, hacking, infrastructure, intelligence, router, russia, theft, vulnerabilityHackers linked to Russian intelligence behind attack on Poland’s energy infrastructure, theft of credentials and using vulnerable routers to attack critical national infrastructure First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366645662/UK-and-EU-impose-sanctions-on-hacking-groups-linked-to-Kremlin

