FortiGuard Labs detailed a PureLogs campaign using JavaScript, PowerShell and process hollowing
Tag: Labs
AI, Data Breaches, Global Security News
Grafana Labs Says Code Breach Stemmed from TanStack Attack
Grafana Labs has confirmed a recent data breach was caused by the TanStack supply chain attack
AI, Data Breaches, Global Security News
Grafana GitHub Breach Exposes Source Code via TanStack npm Attack
Grafana Labs, on May 19, 2026, said an investigation into its recent breach found no evidence of customer production systems or operations being compromised. It said the scope of the incident is limited to the Grafana Labs GitHub environment, which includes public and private source code along with internal GitHub repositories. “After the initial assessment,…
Data Breaches, Global Security News
Grafana says stolen GitHub token let hackers steal codebase
Grafana Labs disclosed that hackers have downloaded its source code after breaching its GitHub environment using a stolen access token. […]
Data Breaches, Global Security News
Attackers accessed, downloaded code from Grafana Labs’ GitHub
A threat actor has managed to access Grafana Labs’ GitHub environment and download the company’s codebase, the open-source observability and data visualization firm announced on Sunday. The breach is significant given Grafana Labs’ widespread use across enterprise engineering and DevOps teams worldwide. Grafana Labs is best known for its open-source dashboard and visualization platform, but…
AI, china, Global Security News
FamousSparrow Targeted Oil and Gas Industry via MS Exchange Server Exploit
Bitdefender Labs reveals how the China-linked FamousSparrow hacking group targeted an Azerbaijani energy firm using ProxyNotShell, Deed RAT,…
AI, Global Security News, Network Security
Researchers open-source a Wi-Fi cyber range for security training
Wireless security training programs lean heavily on generic network labs, with Wi-Fi appearing as a checkbox alongside Bluetooth, Zigbee, and cellular. Hands-on environments dedicated to IEEE 802.11 are uncommon, even as Wi-Fi remains the default on-ramp to corporate networks and a recurring entry point for attackers. A new paper from researchers at the Norwegian University…
AI, Global Security News
Blend Autopilot MCP brings AI agent orchestration to lending platforms
Blend Labs has announced the launch of Autopilot MCP, a server built on the Model Context Protocol, an emerging open standard for AI agent connectivity, that gives authorized agents secure, programmatic access to the Blend platform. For lenders and partners, Autopilot MCP introduces a new category of capability: the ability to build and deploy AI…
Compliance, Global Security News
Modulus Labs Improves Global Payment Infrastructure Uptime with Datadog’s Centralized Monitoring and Security
Modulus Labs, Asia’s most versatile payment infrastructure for high-volume merchants and PayFacs, strengthens compliance, security, and uptime with centralized observability across PCI DSS–compliant cloud infrastructure
AI, Exploits, Global Security News
Attackers Exploit DVR Command Injection Flaw to Deploy Mirai-Based Botnet
FortiGuard Labs has identified a Mirai-based Nexcorium campaign actively exploiting CVE-2024-3721 in TBK DVR devices
AI, Global Security News
As Agentic AI Adoption Accelerates, Rubrik Warns of Growing Security Gaps
GUEST RESEARCH: New research from Rubrik Zero Labs highlights a critical lack of identity governance as organisations race to adopt autonomous systems they cannot fully observe or restore.
Global Security News
13.5M Device Botnet Drives 2 Tbps DDoS Attacks on FinTech, Qrator Finds
A new Qrator Labs report reveals that the largest DDoS botnet has grown to 13.5 million devices, and…
AI, Global Security News
Meta’s Muse Spark takes AI a step closer to personal superintelligence
Meta Superintelligence Labs has introduced Muse Spark, a natively multimodal reasoning model with support for tool use, visual chain of thought, and multi-agent orchestration. The release includes a Contemplating mode, which is rolling out gradually and orchestrates multiple agents that reason in parallel. Prompt: Can you turn this into a sudoku game that I can…
AI, Global Security News
Meta Announces New AI Model
New model was competitive with leadings labs’ offerings on benchmark tests, the company has said.
AI, Global Security News, malware, Network Security
Chaos malware expands from routers to Linux cloud servers
Chaos, Go-based malware first documented by Lumen’s Black Lotus Labs, has historically targeted routers and edge devices. A new variant observed in March 2026 shows the malware operating against misconfigured Linux cloud servers, a category of infrastructure the botnet had not previously prioritized. Darktrace’s malware research team documented the compromise through its CloudyPots program, a…
AI, Global Security News, malware
New ClickFix Attack Uses Node.js Malware via Tor to Steal Crypto
Netskope Threat Labs report a new ClickFix attack using fake CAPTCHAs to deploy Tor-backed NodeJS malware and drain crypto wallets on Windows.
AI, Global Security News, Network Security
AHEAD Brings NetBox Into Its Core Stack
NetBox Labs is partnering with AHEAD to tackle a problem most teams don’t pay much attention to until something breaks: infrastructure data. The partnership brings NetBox Labs’ platform into AHEAD’s core technology stack, where it will serve as the system of record behind network automation, cloud migration, and AI infrastructure efforts. This basically means that…
AI, Global Security News
North Korean Hackers Abuse GitHub to Spy on South Korean Firms
Researchers from FortiGuard Labs have uncovered a high-severity spying campaign targeting South Korean companies. Discover how North Korean…
Global Security News
Storm Infostealer Sold as Service, Targets Browsers, Wallets and Accounts
New research from Varonis Threat Labs reveals Storm infostealer, a malicious subscription service that bypasses Google Chrome encryption.…
AI, Global Security News, malware
TeamPCP Targets Telnyx Package in Latest PyPI Software Supply Chain Attack
Socket and Endor Labs discovered a new TeamPCP campaign leading to the delivery of credential-stealing malware
AI, APAC, Funding, Global Security News, Venture
Gimlet Labs Targets AI’s Inference Cost Problem
Gimlet Labs is going after a part of AI that isn’t exactly a household name, but shows up quickly in production. The word of the day is inference. Series A funding round by Menlo Ventures targets inference problems with AI deployment The startup raised $80 million in a Series A round led by Menlo Ventures,…
AI, Cybersecurity, Global Security News
Protos AI delivers agent-driven threat intelligence without vendor lock-in
Protos Labs has announced the launch of a freemium edition of Protos AI, a platform that deploys specialized AI agents augmenting cyber threat intelligence (CTI) analyst teams by executing structured investigations from planning to reporting. The new tier enables security teams to operationalize AI-driven investigations without committing to closed vendor ecosystems or overhauling existing security…
AI, Global Security News
Traefik Triple Gate gains parallel safety pipelines, failover routing, and AI runtime controls
Traefik Labs has announced new capabilities that extend Traefik Hub’s Triple Gate architecture (API Gateway, AI Gateway, and MCP Gateway) with deeper runtime governance across the full AI workflow, including a composable multi-vendor safety pipeline with parallel guard execution, multi-provider failover routing, token-level cost controls, graceful error handling for agent-aware enforcement, IBM Granite Guardian integration,…
AI, Global Security News
PleaseFix Flaw Lets Hackers Access 1Password Vault via Comet AI Browser
Researchers at Zenity Labs uncover PleaseFix flaws in Perplexity’s Comet browser. See how zero-click calendar invites allow AI agents to steal 1Password credentials and personal files.
AI, Exploits, Global Security News
The vulnerability that turns your AI agent against you
Zenity Labs disclosed PleaseFix, a family of critical vulnerabilities affecting agentic browsers, including Perplexity Comet, that allow attackers to hijack AI agents, access local files, and steal credentials within authenticated user sessions. The vulnerabilities can be triggered through malicious content embedded in routine workflows, enabling unauthorized actions without user awareness. The disclosure includes PerplexedBrowser, a…
AI, Global Security News
Arkose Device ID uses AI to recognize devices across changing fingerprints
Arkose Labs has announced the latest release of Arkose Device ID, a solution within the new Arkose Titan platform. It layers AI-driven similarity analysis on top of exact-match identification, enabling recognition of the same device across evolving fingerprints while maintaining the accuracy enterprises require. Arkose Device ID delivers persistent device recognition that remains intact even…
Global Security News
Startup Making AI Chips More Power-Efficient Raises $500 Million
Ayar Labs, which is replacing the copper wiring in semiconductors with fiber optics, is valued at $3.8 billion in the deal.
AI, Global Security News
Hackers Use 1Campaign to Hide Malicious Ads From Google Reviewers
Varonis Threat Labs reveals 1Campaign, a platform used to trick Google Ads and hide phishing pages. Learn how this cloaking tool targets real users while evading security.
Global Security News
How Technology is Transforming Online Learning and Education in 2026
Education has never stood still. From chalkboards to textbooks, from computer labs to smartphones, every generation has witnessed a shift in how knowledge is delivered and consumed. But what is happening in 2026 goes far beyond incremental change.
AI, Cybersecurity, Global Security News, Network Security
Nozomi Networks Labs Report Finds Healthcare Services the Most Targeted Industry in Australia
The latest Nozomi Networks Labs OT & IoT Security Report released today finds healthcare services was the most targeted industry in Australia, followed by manufacturing. During the second half of last year, threat actors increased their usage of generative AI in their activity, attacks against companies in English-speaking countries are increasing in scale and have…
AI, Global Security News
Researchers Reveal Six New OpenClaw Vulnerabilities
Endor Labs has published details of six new vulnerabilities in popular AI assistant OpenClaw
AI, Global Security News
This Viral AI Project Went From Side Hustle to Coveted Prize in Three Months
After a fierce competition between the biggest AI labs, OpenAI hired the creator of the viral OpenClaw personal AI assistant platform.
Global Security News, Risk Management
Rapid7 Announces 2026 APJ Partner of the Year Award Winners
COMPANY ANNOUNCEMENT: Australian partners Orro, Triskele Labs, Cythera, DGplex and crtl:cyber recognised for their excellence
AI, Global Security News, malware
Helpful Skills or Hidden Payloads? Bitdefender Labs Dives Deep into the OpenClaw Malicious Skill Trap
New research from Bitdefender Labs has uncovered extensive and active abuse within the rapidly growing OpenClaw AI skills ecosystem, revealing how seemingly helpful automation tools are being weaponised to deliver malware, steal credentials, and compromise both consumer and corporate environments.
AI, Global Security News, malware
Helpful Skills or Hidden Payloads? Bitdefender Labs Dives Deep into the OpenClaw Malicious Skill Trap
New research from Bitdefender Labs has uncovered extensive and active abuse within the rapidly growing OpenClaw AI skills ecosystem, revealing how seemingly helpful automation tools are being weaponised to deliver malware, steal credentials, and compromise both consumer and corporate environments.
AI, Global Security News, malware
Helpful Skills or Hidden Payloads? Bitdefender Labs Dives Deep into the OpenClaw Malicious Skill Trap
New research from Bitdefender Labs has uncovered extensive and active abuse within the rapidly growing OpenClaw AI skills ecosystem, revealing how seemingly helpful automation tools are being weaponised to deliver malware, steal credentials, and compromise both consumer and corporate environments.
AI, Artificial Intelligence, Cybersecurity, Global Security News, Security
17% of 3rd-Party Add-Ons for OpenClaw Used in Crypto Theft and macOS Malware
Bitdefender Labs reveals that 17% of OpenClaw AI skills analyzed in February 2026 are malicious. With over 160,000…
