Latest security news
- Zero-Click Vulnerabilities in Salesforce Agentforce Expose Wider AI Agent Risk
- CISA Unveils Election Security Plan Ahead of 2026 Midterms
- Threat detection dashboards are masking security coverage gaps
- RemControl Banking Trojan Gives Attackers Remote Control of Android Devices
- MacSync info-stealing malware hides malicious commands in an iCloud calendar
- Researchers Identify AliExpress Phishing Domains Before Registration
- Fake payroll desktop apps hand attackers a route to company paychecks
- Stop watching what AI agents say and start watching what they do
- Half of threat hunters say bad data is their biggest problem
- Your incident count is missing a few incidents
- Emerging Ransomware Gang Uses Backup Destruction Threats to Pressure Victims
- CISA Charts New "Quality Era" for Global CVE Program
- UK Government Shifts to Service-Led Cyber Governance After Stinging Audit
- OpenAI Agent Hacks Australian Medicare Portal
- Over 75% of Organizations Experience Microsoft 365 Governance Issues
- Data Overtakes Skills as Top Threat Hunting Challenge, SANS Study Finds
- Hundreds of Leaked GitHub App Keys Still Authenticate
- Windows Botnet x47.c Offers AI API Draining, 18 Attack Methods
- Ransomware Attacks Reach Record High for 2026
- ShinyHunters Claims FBI Hack Via PeopleSoft Zero Day
- EU Auditors Warn Information-Sharing Gaps Are Hindering Cyber Incident Response
The ‘SalesBleed’ set of weaknesses in Salesforce’s Agentforce agents exposed CRM data to attackers via prompt injection and DNS exfiltration
(C) Do-Know.com (http://do-know.com/). Do not copy without permission from info at do-know.com.