Hugging Face Breached by Autonomous AI Agent in First-of-Its-Kind Attack
Hugging Face, the world's largest open-source AI model repository, disclosed a security breach perpetrated by an autonomous AI agent system. The attack…
Hugging Face, the world's largest open-source AI model repository, disclosed a security breach perpetrated by an autonomous AI agent system. The attack…
F5 has patched a critical heap buffer overflow vulnerability in NGINX, tracked as CVE-2026-42533, which can crash worker processes and may allow…
A new Go-based botnet named NadMesh has been discovered actively hunting exposed AI services to steal cloud credentials and Kubernetes tokens. First…
A security researcher publishing under the handle tokay0 has disclosed an unpatched vulnerability in SharkNinja's Shark robot vacuum cleaners that could allow…
For years, routing traffic through cloud proxies was sufficient for enterprise security. However, the shift to browser-based work, SaaS applications, and generative…
Qualys is a leading provider of cloud-based security and compliance solutions, including vulnerability management, policy compliance, and web application scanning. They discovered…
SAP has released its July 2026 security updates, addressing multiple vulnerabilities including a critical out-of-bounds write flaw in SAP NetWeaver Application Server…
Microsoft Entra ID is a cloud-based identity and access management service. The article describes a blind spot in its sign-in telemetry that…
Proofpoint has uncovered a novel evasion technique called OAuth client ID spoofing, exploited by at least two threat actors to validate stolen…