Poland probes MyDr healthcare software breach potentially affecting 19 million people
Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects
The flaw, tracked as CVE-2026-19478, has been rated Critical by GitLab and assigned a CVSS score of 9.4.
Released on
Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection
The issue was present in .github/workflows/jira_issue.yml, which ran when a
Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads
The vulnerability, tracked as CVE-2026-15748, is rated 9.8 out of 10.0 on the CVSS scoring system. It was discovered and reported by a security researcher who goes by the online alias “
Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic
Russian cybersecurity company Kaspersky said its ongoing monitoring of the threat activity cluster since December 2025 has led to the discovery of previously unreported components that expand the
Irregular Details How a Naming Error Let AI Models Attack a Real Company
The AI security testing firm has shared information on a recently disclosed incident involving Anthropic AI models.
The post Irregular Details How a Naming Error Let AI Models Attack a Real Company appeared first on SecurityWeek.
Conflicting Test Goals Pushed Claude Agents to Deploy Self-Replicating Malware
Anthropic has been conducting tests to identify issues in how AI agents interact with each other.
The post Conflicting Test Goals Pushed Claude Agents to Deploy Self-Replicating Malware appeared first on SecurityWeek.
40,000 Impacted by SafePal Data Breach
Hackers exploited a vulnerability in the order-tracking function of a plugin to access SafePal customer information.
The post 40,000 Impacted by SafePal Data Breach appeared first on SecurityWeek.
Recent macOS Screen Sharing Vulnerability Exploited in Attacks
Threat actors gained root access to the vulnerable systems and deployed a Monero miner.
The post Recent macOS Screen Sharing Vulnerability Exploited in Attacks appeared first on SecurityWeek.
Recent Comments