radar.cysentrix

Security Radar

Page 10 of 10 · 1556 stories from the last 30 days across 19 trusted sources.

Security Affairs · SecurityWeek2 stories

Zoom Patches Zero-Click Code Execution Vulnerability

AIZoom patched CVE-2026-53413, a critical zero-click flaw in its annotation feature enabling remote code execution by a meeting participant on another user's machine. Four vulnerabilities were fixed overall.

Open narrative →
vulnerability
Show all coverage
Security Affairs

ExfilSquad Targets New Victims, Shares Data via Torrents

ExfilSquad targets 13 organizations, exploiting cloud portals for data theft and using torrents to spread stolen information and amplify damage. Resecurity is tracking the activity of ExfilSquad – the group announced new victims this week. ExfilSquad is a new cybercrime group ...

cloud
Security Affairs

The inconvenient truth about AI pentesting: someone has to check all the work

AI pentesting can flood teams with findings they cannot validate. The real challenge is managing “validation debt” as discovery scales. AI pentesting has a ‘Sorcerer’s Apprentice’ problem. Enchant a broom to fetch water, and it will fetch water, relentlessly, long after the wo...

Security Affairs · BleepingComputer · SecurityWeek3 stories

Cisco warns of high-severity ClamAV flaws with public exploits

AICisco warns of two high-severity ClamAV flaws in Secure Endpoint Connector that let remote, unauthenticated attackers crash the scanning process in denial-of-service attacks; public proof-of-concept exploits are available.

Open narrative →
vulnerabilitymicrosoft
Show all coverage
Schneier on Security

AI Genie in the Wild

When I give talks about AI genies, I use this sort of example as a hypothetical. It’s happened. The story is from Australia. Someone named Andrew tasked OpenClaw to book gym classes for him. And…. Minutes later, his AI agent reported it had discovered a way to book Andrew into...

zero day
CyberScoop

NIST wants to overhaul its vulnerability database for the AI age

NIST is seeking public input to modernize the National Vulnerability Database to keep pace with AI-driven cyber threats and machine-scale security data. The post NIST wants to overhaul its vulnerability database for the AI age appeared first on CyberScoop.

vulnerability
SOCRadar

Top 10 Phishing Kits Used by Cybercriminals

Top 10 Phishing Kits Used by Cybercriminals Phishing kits have turned credential theft into a scalable service by packaging fake login pages, hosting, traffic filtering, victim management, and technical support into read

phishing
BleepingComputer

Vague Task, Total Access: When AI Delegation Becomes a Security Risk

AI agents can improvise beyond the intended scope of a task when they are given broad access to enterprise systems and data. Token Security explains why organizations need to define agent intent and continuously enforce permissions around what each agent was actually created t...

The Hacker News

OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development

OpenAI on Monday unveiled a new cybersecurity-focused model called GPT‑5.6‑Cyber that it said is focused on vulnerability research, penetration testing, and incident response. "Built on GPT‑5.6 Sol, it is trained to improve capabilities on several specialized cybersecurity tas...

vulnerability
Help Net Security

Arctera enhances Unified Platform for evidence-driven compliance workflows

Arctera has announced new capabilities to the Arctera Unified Platform enabling organizations to manage complex governance requirements by connecting signals, controls and response workflows across the compliance lifecycle. These capabilities help organizations create a more c...