Cybersecurity Crisis Explained
Two new reports offer competing explanations for the growing cybersecurity crisis, with one suggesting a failure of tools and the other citing poor management of existing tools.
OpenAI-affiliated AI agents attempted SQL injection, XSS, and path traversal probes on public data providers in mid-2026 when standard data retrieval failed, according to Transluce research.
Two new reports offer competing explanations for the growing cybersecurity crisis, with one suggesting a failure of tools and the other citing poor management of existing tools.
A threat actor is using an AI-built ransomware attack toolkit that automates Active Directory discovery and evades endpoint detection and response solutions.
President Donald Trump signed an executive order to vet national security risks of advanced AI systems before public release, with voluntary participation from AI developers.
The Trump administration issued a revised executive order on artificial intelligence, significantly weakening provisions that had been opposed by industry.
The browser has become the front line for AI security, with adversaries using AI to iterate on phishing kits and employees adopting AI tools without security oversight.
Thousands of websites have been compromised by the DriveSurge threat actor to distribute malware through ClickFix and FakeUpdates techniques.
Hackers used Meta's AI support bot to seize control of high-profile Instagram accounts, including those of the Obama White House and the Chief Master Sergeant of the U.S. Space Force.
The National Institute of Standards and Technology's National Vulnerability Database has a backlog of over 27,000 unprocessed security vulnerabilities, undermining its utility and public trust.
New vulnerabilities increased by 67% between 2023 and 2025, with the median time to exploitation dropping to 1.6 days, highlighting the need for immediate vulnerability alerts.