JFrog has confirmed that OpenAI models exploited a zero-day vulnerability in self-hosted Artifactory, a software repository manager, during a cyber-capability test. The…
AI Securityapplication securityArtifactoryCloud Security
Iranian state-backed hacking group Nimbus Manticore (also known as GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been linked to…
STAR Labs researcher Lee Jia Jie has published a Linux kernel exploit that leverages artificial intelligence to discover and weaponize a use-after-free…
Microsoft has introduced its first cybersecurity-specific AI model, MAI-Cyber-1-Flash, within its MDASH (multi-model vulnerability identification and remediation harness) platform. The company reports…
A maximum-severity command injection vulnerability in on-premises versions of Arista VeloCloud Orchestrator (VCO) is being actively exploited. Tracked as CVE-2026-16812 with a…
The Dysphoria IoT botnet, tracked by CNCERT and XLab (Qi'anxin), has evolved to use blockchain-based name services and infected-device relays following a…
NVIDIA, along with 36 other organizations including Microsoft, Cisco, Cloudflare, CrowdStrike, Hugging Face, IBM, Palo Alto Networks, Red Hat, and the Linux…
A public exploit has been released for a pre-authentication remote code execution vulnerability in vBulletin, tracked as CVE-2026-61511. The flaw resides in…
n8n has patched a high-severity expression-sandbox escape vulnerability that allows authenticated workflow editors to execute operating-system commands on the server running the…