A new Windows botnet called x47.c uses xAI's Grok model to pick its next action and burns through victims' paid…
CenterPoint Energy confirmed a breach after a hacker said a poorly defended API let him pull millions of customer lines…
Attackers are bypassing JWT authentication in WSO2 middleware that banks, telcos, and governments rely on to broker API traffic.
The flaw, discovered by DEVCORE researchers, could have redirected Python downloads to malicious servers but was patched within 48 hours…
An AI-driven fuzzing pipeline uncovered over $500,000 in bug bounties from Google by exploiting access control failures across roughly 1,500…
Dashlane confirms attackers brute-forced 2FA tokens to download encrypted password vaults from fewer than 20 users, but encrypted data remains…
A critical API flaw on a bank's third party mortgage portal exposed data for all institutions on the platform, revealing…
CERT-In's new 12 hour patching mandate for internet facing systems aims to counter the rising threat of AI driven automated…