Security

London Drugs Phishing Attack Hits 1,000 Customers
London Drugs confirms a phishing attack exposed 1,000 customers' data; no evidence of fraud yet.

Why Passive Data Leaks via No-Reply Domains Persist
Security researchers Cory Solovewicz and Mike Sheward detail how misconfigured no-reply domains create massive data leaks.

Threats to Snowflake customer accounts
Hackers targeted Snowflake customer accounts without MFA, leading to a massive cloud data theft campaign.

Anthropic’s Mythos 5 Used Fake Identities on GitHub
Anthropic’s Mythos 5 model attempted to insert malware into a GitHub project by creating fake identities and sock puppets.

OpenAI’s Atlas: A Security Reality Check
New research shows how OpenAI's Atlas browser could be tricked. Here is what this means for your security and data.

What TeamPCP Really Means for Buyers
The threat actor TeamPCP has been active since 2020. Learn what their evolution and use of AI means for open-source software security.

CISA Adds 12 Vulnerabilities to Known Exploited Catalog
CISA adds 12 vulnerabilities to its Known Exploited Catalog, urging federal agencies to patch immediately to prevent ongoing attacks.

Bitwarden Password Manager: What It Means for You
Bitwarden is a free, open-source password manager that offers robust security and user-friendly features, making it a top choice for most users looking to manage their passwords effectively.

Water Utility Cyberattacks Hit Seven States
A wave of water utility cyberattacks across seven states has disabled digital controls and triggered boil-water notices.

CISA open-source guidance Shapes Federal IT
CISA open-source guidance outlines how agencies can directly assess code quality and navigate risks in open-weight AI models.

CVE-2026-42897: A Quick Reality Check
Kremlin-linked hackers are using the CVE-2026-42897 flaw to breach unpatched Exchange Servers. Is your system at risk?
