BleepingComputer
The ToxicPanda Android banking malware has gained new capabilities that give it greater control over infected devices, according to an analysis by mobile security company Zimperium. The latest version...
23 Aug 20262 min read
Read article →SecurityWeek
Security researchers are tracking fresh activity involving three banking trojans—Manic, Grandoreiro and ToxicPanda 2.0—that demonstrate how financially motivated malware continues to evolve across mob...
23 Aug 20262 min read
Read article →The Register - Security
Artificial intelligence agents are emerging as both a powerful offensive tool and a new security challenge for organizations. Unlike conventional software, these systems can take actions across connec...
23 Aug 20262 min read
Read article →The Hacker News
ByteDance-owned TikTok has agreed to pay $400 million to settle a U.S. government lawsuit alleging that the platform violated federal child privacy requirements, the Department of Justice announced.Un...
22 Aug 20262 min read
Read article →Dark Reading
The Open Worldwide Application Security Project (OWASP) has introduced a security blueprint focused on the risks associated with AI “skills” and add-ons. The initiative is intended to bring greater co...
22 Aug 20262 min read
Read article →BleepingComputer
A supply-chain compromise affecting Android-based automotive head units has been used to install malware that turns vehicles’ internet connections into proxy infrastructure and supports online adverti...
22 Aug 20262 min read
Read article →SecurityWeek
Retired U.S. Army Gen. Paul Nakasone, who previously led the National Security Agency and U.S. Cyber Command, has established a private advisory business focused on cybersecurity, geopolitical risk an...
21 Aug 20262 min read
Read article →The Register - Security
US federal agencies have been told to update TrueConf Server after two vulnerabilities in the Russian-developed videoconferencing platform were added to the Cybersecurity and Infrastructure Security A...
21 Aug 20262 min read
Read article →The Hacker News
Security researchers have identified 14 npm package names, representing 15 published versions, that appear to provide calendar or streak-tracking functionality while concealing a Linux backdoor. The p...
21 Aug 20262 min read
Read article →Dark Reading
Municipal governments with limited technology budgets are being encouraged to seek help from cybersecurity professionals as they work to protect public services and sensitive information.City agencies...
20 Aug 20262 min read
Read article →BleepingComputer
An attacker compromised a Rust package maintainer account and used it to distribute malware through three widely used crates, according to analyses from StepSecurity, Wiz, SafeDep and Aikido. The affe...
20 Aug 20262 min read
Read article →NCSC (UK)
The UK’s National Cyber Security Centre (NCSC) is urging organisations to apply layered safeguards when deploying agentic artificial intelligence systems that can make decisions and perform actions wi...
20 Aug 20262 min read
Read article →