282 iOS AI Apps Leak API Keys and OpenAI Proxy Access in Network Traffic Study
Researchers at Wake Forest University tested 444 AI chatbot apps for iPhone and found that 282 of them (nearly two-thirds) exposed paid…
Researchers at Wake Forest University tested 444 AI chatbot apps for iPhone and found that 282 of them (nearly two-thirds) exposed paid…
Researchers from the CISPA Helmholtz Center for Information Security have uncovered six security flaws in Apple's AirDrop and Google/Samsung's Quick Share wireless…
Microsoft has discovered a malicious Chrome extension that posed as the AI search engine Perplexity and quietly logged what people searched for.…
Microsoft has removed 119 malicious extensions from the Edge Add-ons store that used steganography to hide malware in image and font files.…
The FBI and CISA have updated their March warning about Russian intelligence phishing Signal accounts, adding a new tactic where attackers coax…
A newly identified cyber attack campaign, tracked as StrikeShark by Kaspersky, is deploying a previously undocumented malware family called SharkLoader to deliver…
Microsoft has issued a warning about an active phishing campaign targeting hotels and hospitality organizations across Europe and Asia since April 2026.…
Google Threat Intelligence Group (GTIG) has attributed a previously undocumented .NET backdoor named STOCKSTAY to the Russian state-sponsored threat actor Turla. The…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog following reports…
The open-source JavaScript engine used in Google Chrome. Vulnerable to CVE-2026-11645.