On April 7, 2026, Anthropic announced Project Glasswing, which would provide select organizations with early access to their new Claude Mythos Preview ...
A proof-of-concept exploit for "Certighost," a Windows Active Directory Certificate Services vulnerability, has been released ...
Anthropic's Opus 5 nearly matches Mythos 5 at finding software vulnerabilities, but lags far behind on developing exploits.
Russian hackers exploit CVE-2026-42897 in OWA to deploy OWAReaper, a browser implant that persists through credential ...
A Chinese-speaking threat actor has been using DeepSeek’s AI models to orchestrate cyber-attacks targeting Asian organizations ...
The latest Google Chrome update fixes 4 new non-exploited critical memory vulnerabilities. Here’s what they are and why the increasing volume of updates is a good thing.
Attackers are exploiting two WordPress flaws as wp2shell, chaining them for unauthenticated RCE and deploying web shells and ...
VulnCheck says fewer than 2% of AI-assisted vulnerability discoveries have been weaponized, casting doubt on claims frontier ...
A critical vulnerability in the vBulletin forum software allows unauthenticated attackers to execute arbitrary PHP code ...
Nvidia Inception startup Nday launches Valadin, an automated fixed-cost exploit validation engine designed to cut ...
Contrast CVE Shield operates inside the running application, where it detects, monitors and prevents exploitation of known ...
A public proof-of-concept for the vBulletin RCE vulnerability CVE-2026-61511 is now live. Here's how the eval() injection ...