News
-
Git trust flaw hits AI coding agents
Manifold Security has disclosed a class of execution flaws across AI coding agents that can allow untrusted repository configuration to run commands before normal workspace trust controls.
-
OpenAI says Astra reaches critical cyber threshold
OpenAI now says Astra meets its highest published cybersecurity capability threshold, moving beyond its August assessment that it could not rule out the classification.
-
PaperCut attacks enter second wave
PaperCut says attacks against unpatched internet-facing NG/MF servers have entered a second wave, with more sophisticated post-compromise behaviour and confirmed customer incidents.
-
International operation disrupts Sality botnet
Authorities in Bulgaria, Hungary, Romania, and the US have joined private-sector partners in a coordinated operation to disrupt the long-running Sality malware network.
-
Model puts UK battery cyber loss at £10bn
Centrii modelling puts the five-year probability of a major UK battery-storage cyberattack at 92% under baseline assumptions, with potential losses of £2bn to £10bn.
-
BGP hijack poisoned Virtualizor update traffic
A routing hijack affecting Softaculous infrastructure redirected traffic to an attacker-controlled server, enabled fraudulent TLS certificates, and delivered a malicious Virtualizor update to some installations.
-
EU opens €96m cyber deployment call
A new €96 million Digital Europe funding round will support AI security tools, critical-sector testing, cable resilience, compliance capability, and cyber infrastructure across the EU.
-
CRA reporting platform nears September launch
ENISA has clarified how manufacturers will report exploited vulnerabilities and severe product-security incidents when Cyber Resilience Act reporting obligations begin on 11 September.
-
Langflow attacks target cloud and AI secrets
Attackers are exploiting a critical Langflow code-execution flaw and probing compromised environments for OpenAI keys, AWS credentials, and other sensitive secrets.
-
JFrog Artifactory flaw reportedly exploited in wild
A critical Artifactory authentication bypass is reportedly being exploited days after disclosure, creating a potentially serious route into self-managed software artefact infrastructure.










