Security Week

Cybersecurity News, Insights & Analysis
  1. The chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications.

    The post How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones  appeared first on SecurityWeek.

  2. Many companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas.

    The post Black Hat USA 2026 – Summary of Vendor Announcements (Part 3) appeared first on SecurityWeek.

  3. CrowdStrike co-founder Dmitri Alperovitch discusses how cyber operations support kinetic warfare, signal coming conflicts, and reshape the global battlefield.

    The post The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict appeared first on SecurityWeek.

  4. Palo Alto Networks researchers have demonstrated attacks against Google’s synced passkey implementation.

    The post New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts appeared first on SecurityWeek.

  5. Hackers stole personal information, medical records, and financial information from the organization’s server.

    The post 311,000 Impacted by Brown Health Medical Group-MA Data Breach appeared first on SecurityWeek.

  6. The guidelines are the work of the recently launched Open Secure AI Alliance, which now includes 120 organizations.

    The post Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data  appeared first on SecurityWeek.

  7. AI Security Institute reports Anthropic and OpenAI models going rogue against real people, organizations, and open source projects.

    The post AI Agents Targeted Real People and Projects During Cybersecurity Tests appeared first on SecurityWeek.

  8. The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass.

    The post CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities appeared first on SecurityWeek.

  9. The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials.

    The post Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack appeared first on SecurityWeek.

  10. Georgia has been confirmed as one of the attacked states after Clayton County reported a pump station disruption.

    The post Water Sector Cyberattacks Reportedly Hit at Least 12 States appeared first on SecurityWeek.