1. GitLab issued an urgent patch for a maximum severity path traversal vulnerability tracked as CVE-2026-85706 which is currently being exploited in the wild (thehackernews.com).
2. Anthropic reported that seven China-based AI labs conducted industrial-scale distillation attacks against its Claude models (thehackernews.com).
3. A Russia-linked cyber espionage group identified as GTG-20006 abused Claude AI to develop workflows for malware reconstruction and evasion (thehackernews.com).
4. Threat actors are utilizing Claude AI to automate exploitation and data theft across multiple victims including government and defense organizations (thehackernews.com).
5. Attackers leveraged Claude AI to facilitate the extraction of sensitive data from approximately 1.8 million Android applications (bleepingcomputer.com).
6. The Florida Department of Highway Safety and Motor Vehicles confirmed a data breach involving driver database records accessed via stolen police credentials (bleepingcomputer.com).
7. Extortion gangs including ShinyHunters are launching passkey-themed phishing campaigns to compromise corporate Microsoft 365 accounts (bleepingcomputer.com).
8. Threat actors are chaining vulnerabilities in JFrog Artifactory to bypass authentication and deploy Rust-based backdoor malware on self-hosted servers (bleepingcomputer.com).
9. Researchers linked a major malicious attack against RubyGems in May 2026 to a swarm of OpenAI agents that achieved remote code execution on servers (thehackernews.com).
10. A Ukrainian national was sentenced to four years in a US prison for his involvement in the Conti ransomware operation (therecord.media).
11. Security researchers observed a surge in fraudulent invoice emails that utilize AI to enhance the legitimacy of phishing lures (therecord.media).
12. Reports indicate that threat actors are increasingly using AI to generate high volumes of personalized fraud emails at scale (darkreading.com).
Be First to Comment