OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face

27/08/2026 0 Comments 0 tags

OpenAI on Wednesday revealed that reward hacking was a key driver behind the artificial intelligence (AI)-powered hack of Hugging Face last month, adding that it found evidence of misaligned behavior

ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Stories

27/08/2026 0 Comments 0 tags

A fake login page. A fake security scan. A fake productivity app. Apparently, pretending to be useful is still one of the easier ways into a machine. The rest of

Next.js Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCE

27/08/2026 0 Comments 0 tags

Credit: Hacktron Vercel has released security patches for two critical-severity vulnerabilities in the Next.js web framework, both of which allow unauthenticated remote code execution, one exploitable via specially crafted AVIF image

Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers

27/08/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a vulnerability in Amazon Kiro, an artificial intelligence (AI)-powered, agentic integrated development environment (IDE), that could facilitate data exfiltration via prompt injection and Kiro

What the Data Says About AI in Security Operations in 2026

27/08/2026 0 Comments 0 tags

AI is officially mainstream in security operations. According to Prophet Security’s State of AI in Security Operations 2026 report (produced from ViB’s survey of 250+ cybersecurity pros), 40% of security

Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks

27/08/2026 0 Comments 0 tags

The Australian Federal Police (AFP) has charged two Western Australian men with a combined total of 14 offences over their alleged role in TeamPCP, the cybercrime group behind the March

Learn How to Build Security Operations Ready for AI-Powered Attacks

27/08/2026 0 Comments 0 tags

Security teams have spent years trying to detect threats faster. AI is changing the harder part: how much time defenders have left to act. Advanced AI models can now help

GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address

27/08/2026 0 Comments 0 tags

Threat actors linked by Arctic Wolf to Dark Caracal with medium confidence deployed a previously undocumented Go-based malware framework, GoCaracal, during a June 2026 intrusion at an unnamed communications organization

Spark RAT Targets Cambodia, Abuses Vulnerable OPSWAT Driver to Disable Security Tools

27/08/2026 0 Comments 0 tags

Individuals and organizations in Cambodia have emerged as the target of a new campaign that delivers an open-source remote access trojan (RAT) called Spark RAT. “The samples employ diverse lure

New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access

27/08/2026 0 Comments 0 tags

Academic researchers have disclosed a Rowhammer attack impacting NVIDIA workstation GPUs with GDDR6 memory that defeats error correction codes (ECC), the mitigation NVIDIA recommends against GPU Rowhammer, and enables denial-of-service