Latest security news
- Toolkit Hidden Inside Oracle Database Evades Endpoint Tools
- TeamPCP Traced Back to 2020 Cryptojacking Operation
- Novel-reading apps used users’ phones to generate fake ad traffic
- Meta Joins OpenAI and Anthropic in Reporting AI Exploit Incident
- Photos: Black Hat USA 2026
- Three in four AI-generated vulnerability patches leave something broken
- Snowflake hacker pleads guilty, faces up to 32 years in prison
- Violent Physical Crypto Thefts Surge to $30m in Losses
- Discounted Claude access bought on the gray market may expose every prompt you send
- Critical Cisco IMC bug gives attackers root, PoC is out (CVE-2026-20200)
- Canadian Hacker Pleads Guilty Over Snowflake Extortion Campaign
- Microsoft extends zero trust deeper into enterprise AI
- NVIDIA Group Proposes SAFE Initiative for Agentic Threat Intel Sharing
- Photos: Black Hat USA 2026 Arsenal
- OWASP 2026 LLM Top 10: “The model will be fooled”
- Browser security is where software, data, and AI meet
- Fake Open VSX Extensions Harvest Private Repo and CI Data
- Paperclip AI Flaws Let Unauthenticated Attackers Run Commands
- Prompt Injection Remains Biggest LLM Risk, Despite Limited Incidents
- ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs
- Frontier Models Engage in Unsanctioned Behavior During Testing
- Fake Bank of America Phishing Scam Installs Remote Access Malware
- WhatsApp Scam Hijacks Accounts via Linked Devices Feature
- Cybercriminals Bypass AI Safety Controls by Splitting Malicious Tasks Across Multiple Sessions
- Cloud and SaaS Environments Now Top Targets for Attackers
Attackers used SQL injection to compile a post-exploitation toolkit inside an Oracle database
(C) Do-Know.com (http://do-know.com/). Do not copy without permission from info at do-know.com.