Cybersecurity News and Headlines

AI Raises the Bar on Vulnerability Awareness and Secure-by-Design Software
NewsMay 19, 2026

AI Raises the Bar on Vulnerability Awareness and Secure-by-Design Software

AI-powered vulnerability scanners such as Claude Mythos and OpenAI’s GPT 5.5‑Cyber now enable firms to instantly locate and remediate software bugs. ENISA’s chief highlighted that under the EU Cyber Resilience Act, which takes full effect on 11 December 2027, security by design is...

By Infosecurity Magazine
Agentic AI Accelerates Software Builds and Mobile App Attacks
NewsMay 19, 2026

Agentic AI Accelerates Software Builds and Mobile App Attacks

Digital.ai’s 2026 Application Security Threat Report reveals that 87% of customer‑facing mobile apps were attacked in 2026, up from 55% in 2022. The surge mirrors the rapid adoption of agentic AI, which lets low‑skill threat actors automate code inspection, exploit...

By Infosecurity Magazine
Everpure’s Immutable Snapshots Provide Accelerated Malware Attack Recovery
NewsMay 19, 2026

Everpure’s Immutable Snapshots Provide Accelerated Malware Attack Recovery

Everpure introduced in‑array immutable snapshots paired with its AI‑driven 1touch context engine, promising ransomware recovery in minutes instead of weeks. The Everpure Data Cloud guarantees data can be rolled back to the last known clean state, with a Human‑in‑the‑Loop (HITL)...

By Blocks & Files
Assume Autonomy: Why Security Teams Need to Rethink Defence at Machine Speed
NewsMay 19, 2026

Assume Autonomy: Why Security Teams Need to Rethink Defence at Machine Speed

The article argues that the long‑standing belief that attackers and defenders operate at comparable speeds is obsolete. Advances in generative AI now let machines discover vulnerabilities and launch exploits with little human oversight, forcing a shift to an "Assume Autonomy"...

By ComputerWeekly – DevOps
Cloudflare Says Anthropic's Mythos Preview Finds Exploit Chains that Earlier Frontier Models Missed
NewsMay 19, 2026

Cloudflare Says Anthropic's Mythos Preview Finds Exploit Chains that Earlier Frontier Models Missed

Cloudflare evaluated Anthropic’s security‑focused AI model Mythos Preview across more than 50 of its own code repositories as part of Project Glasswing. The model can automatically chain small vulnerabilities into working exploit sequences, compile proof‑of‑concept code, and demonstrate real‑world exploitability....

By THE DECODER
Anthropic Denies EU Access to Claude Mythos, ChatGPT 5.5 Comes to Rescue
NewsMay 19, 2026

Anthropic Denies EU Access to Claude Mythos, ChatGPT 5.5 Comes to Rescue

Anthropic has refused EU requests for access to its Claude Mythos model, despite the model’s claim of uncovering thousands of high‑severity vulnerabilities. OpenAI stepped in, offering the EU its ChatGPT 5.5‑Cyber model, which the UK AI Security Institute says matches or exceeds...

By TechRepublic – Articles
Managed Security Firewalls: A Practical Guide to Stronger Threat Protection
NewsMay 19, 2026

Managed Security Firewalls: A Practical Guide to Stronger Threat Protection

Enterprises increasingly rely on firewalls, but static configurations quickly become outdated as networks evolve. Managed security firewall services add continuous rule review, 24/7 monitoring, rapid patching, and structured reporting, keeping defenses aligned with current traffic and threat landscapes. By offloading...

By Onrec
Global Banks Scramble After AI Tool Exposes Cyber Weaknesses
NewsMay 19, 2026

Global Banks Scramble After AI Tool Exposes Cyber Weaknesses

Banks in the United States, Europe and Japan are fast‑tracking cybersecurity upgrades after Anthropic’s Mythos AI tool exposed previously unknown vulnerabilities in core banking systems. The discovery has sparked urgent warnings from the European Central Bank, the International Monetary Fund...

By The Cyber Express
7-Eleven Confirms Hack After Appearing on ShinyHunters Leak List
NewsMay 19, 2026

7-Eleven Confirms Hack After Appearing on ShinyHunters Leak List

7‑Eleven confirmed that its internal systems were breached in early April 2026, exposing personal data from franchisee application files. The breach came to light after the ShinyHunters ransomware group listed the retailer in a recent “pay‑or‑leak” extortion campaign. 7‑Eleven has...

By The Cyber Express
MSPs and Resellers Positioned to Drive Shift to Remediation-First Exposure Management
NewsMay 19, 2026

MSPs and Resellers Positioned to Drive Shift to Remediation-First Exposure Management

Vulnerability management is no longer enough as attack surfaces expand. Exposure management, which surveys the entire attack surface and prioritizes exploitable risks, is gaining traction. A remediation‑first approach, powered by AI and automation, shifts focus from identification to immediate fixing....

By ITPro
"I Thought It Was a Steam Game"... Malicious Code Found Planted on Users' PCs
NewsMay 19, 2026

"I Thought It Was a Steam Game"... Malicious Code Found Planted on Users' PCs

A free indie title called "Beyond the Dark" was discovered on Steam to contain hidden malware. The game, released Dec 2024, used a malicious DLL to steal cryptocurrency wallets, harvest Roblox credentials, and install a backdoor for further payloads. YouTuber Eric...

By Inven Global
Thailand Has a Password Problem
NewsMay 19, 2026

Thailand Has a Password Problem

Thailand’s National Cyber Security Agency warned that weak and reused passwords remain a primary gateway for cyber‑attacks, citing a list of the “Top 20 Most Used Passwords” that includes simple strings like “123456” and “admin.” The agency highlighted that credential...

By Bangkok Post – Investment (subset within Business)
Together, Edera and Minimus Claim They Can Protect Your Software From AI Hackers
NewsMay 18, 2026

Together, Edera and Minimus Claim They Can Protect Your Software From AI Hackers

At the Open Source Summit North America, container security firms Edera and Minimus announced a partnership to deliver end‑to‑end protection for critical‑infrastructure workloads. The collaboration merges Minimus’s continuously patched, minimal container images with Edera’s hypervisor‑backed micro‑VM runtime that isolates each...

By Container Journal
Microsoft Exchange Zero-Day Under Attack, No Patch Available
NewsMay 18, 2026

Microsoft Exchange Zero-Day Under Attack, No Patch Available

Microsoft disclosed a critical zero‑day vulnerability (CVE‑2026‑42897) in Exchange Outlook Web Access that allows attackers to execute cross‑site scripting attacks and spoof emails. The flaw affects on‑premise Exchange Server 2016, 2019 and Subscription Edition, earning a Microsoft CVSS score of...

By Dark Reading
Microsoft May Security Patch Fails for some Due to Boot Partition Size Glitch
NewsMay 18, 2026

Microsoft May Security Patch Fails for some Due to Boot Partition Size Glitch

Microsoft’s May 2026 security update for Windows 11 can fail on devices with an EFI System Partition (ESP) of 10 MB or less, aborting at roughly 35‑36% during reboot. The failure leaves systems unpatched, exposing them to the dozens of security...

By CSO Online
How to Implement Shift-Left Security in Cloud-Native Applications?
NewsMay 18, 2026

How to Implement Shift-Left Security in Cloud-Native Applications?

Security teams still treat cloud‑native protection as an after‑the‑fact task, despite data breaches now averaging $4.35 million. 42% of organizations report longer mean‑time‑to‑remediate incidents, highlighting the urgency of early detection. Shift‑left security embeds vulnerability checks into IDEs, CI/CD pipelines, and infrastructure‑as‑code,...

By Container Journal
Hancomwith Joins South Korea’s 2026 Zero Trust Pilot with SASE‑based Security Model
NewsMay 18, 2026

Hancomwith Joins South Korea’s 2026 Zero Trust Pilot with SASE‑based Security Model

Hancomwith, a Hancom Group subsidiary, has entered South Korea’s 2026 Zero Trust Adoption Pilot Project, proposing a Secure Access Service Edge (SASE)‑based zero‑trust architecture. The consortium—led by Amzin and joined by SK Broadband, Basestone and DST International—will test the model...

By Biometric Update
Interpol Leads Cybercrime Crackdown Across 13 Countries in Middle East, North Africa
NewsMay 18, 2026

Interpol Leads Cybercrime Crackdown Across 13 Countries in Middle East, North Africa

Interpol spearheaded Operation Ramz, a coordinated cybercrime crackdown across 13 Middle East and North Africa nations. The four‑month effort resulted in 201 arrests, the seizure of 53 servers and the identification of 382 suspects, disrupting phishing, malware and financial‑fraud services that...

By CyberScoop
Device Code Phishing Targets Microsoft 365 Users
NewsMay 18, 2026

Device Code Phishing Targets Microsoft 365 Users

Cybercriminals are leveraging device code phishing to hijack Microsoft 365 accounts by abusing legitimate OAuth 2.0 authentication flows. Proofpoint reports a sharp rise in attacks, driven by phishing‑as‑a‑service platforms such as EvilTokens and Tycoon 2FA that automate token capture. Attackers distribute malicious...

By eSecurity Planet
New Reaper Malware Uses Fake Microsoft Domain to Steal macOS Passwords
NewsMay 18, 2026

New Reaper Malware Uses Fake Microsoft Domain to Steal macOS Passwords

SentinelOne’s research team has uncovered a new macOS infostealer, dubbed Reaper, that masquerades as legitimate updates for apps like WeChat and Miro. The malware leverages a typo‑squatted domain (mlcrosoft.co.com) to deliver a malicious Script Editor link that runs hidden AppleScript...

By HackRead
123,000 Impacted by American Lending Center’s Year-Old Breach
NewsMay 18, 2026

123,000 Impacted by American Lending Center’s Year-Old Breach

The American Lending Center (ALC) disclosed a ransomware breach on April 28, 2026, though the intrusion was first detected on July 27, 2025. The attack compromised internal networks and accessed files that may contain personal identifying information, affecting more than...

By Security Magazine (Cybersecurity)
NYC Health + Hospitals Says Hackers Stole Medical Data and Fingerprints During Breach Affecting at Least 1.8 Million People
NewsMay 18, 2026

NYC Health + Hospitals Says Hackers Stole Medical Data and Fingerprints During Breach Affecting at Least 1.8 Million People

NYC Health + Hospitals disclosed a breach that exposed personal, medical and biometric data for at least 1.8 million patients. Hackers infiltrated the network through a third‑party vendor and remained undetected from November 2025 until February 2026, copying files that included health records,...

By TechCrunch (Cybersecurity)
Linux Kernel Flaw Opens Root-Only Files to Unprivileged Users
NewsMay 18, 2026

Linux Kernel Flaw Opens Root-Only Files to Unprivileged Users

Security researchers have identified CVE‑2026‑46333, a local Linux kernel flaw that allows unprivileged users to read files normally restricted to root, including SSH keys and password files. The vulnerability impacts multiple long‑term support kernel branches from 5.10 up through 7.0,...

By The Register
Versa Provides Cloud Security Posture Management for the VersaONE Universal SASE Platform
NewsMay 18, 2026

Versa Provides Cloud Security Posture Management for the VersaONE Universal SASE Platform

Versa announced the launch of Versa Cloud Security Posture Management (CSPM), extending its VersaONE Universal SASE platform to cover continuous cloud risk visibility, prioritization, and remediation. The solution scans multi‑cloud environments—including AWS, Azure, Google Cloud and Oracle Cloud—in real time,...

By Database Trends & Applications (DBTA)
Government Backed Hackers Abuse Cloudflare in Malaysian Espionage Campaign
NewsMay 18, 2026

Government Backed Hackers Abuse Cloudflare in Malaysian Espionage Campaign

Oasis Security uncovered a multi‑year espionage campaign tied to the Malaysian government that uses hidden command‑and‑control servers cloaked behind Cloudflare’s CDN and storage services. The operators rotate and repurpose infrastructure to stay invisible, while malicious payloads and phishing pages are...

By HackRead
Bug Bounty Businesses Bombarded with AI Slop
NewsMay 18, 2026

Bug Bounty Businesses Bombarded with AI Slop

Bug bounty platforms are being flooded with low‑quality AI‑generated vulnerability reports, prompting some companies to pause or suspend their programs. Bugcrowd saw report volume quadruple in three weeks, while Curl and Nextcloud halted their bounties due to the “AI slop.”...

By Ars Technica – Security
Coding Agent Horror Stories: The Security Crisis Threatening Developer Infrastructure
NewsMay 18, 2026

Coding Agent Horror Stories: The Security Crisis Threatening Developer Infrastructure

AI coding agents now power roughly 60% of developer tasks, accelerating feature delivery but also exposing critical security gaps. Documented incidents from late 2024 to early 2026 show agents unintentionally wiping files, deleting production environments, and leaking credentials. The root...

By Docker – Blog
How to Reduce Phishing Exposure Before It Turns Into Business Disruption
NewsMay 18, 2026

How to Reduce Phishing Exposure Before It Turns Into Business Disruption

Phishing attacks now bypass traditional filters, exposing credentials, SaaS apps, and cloud platforms before security teams can react. Early detection using interactive sandboxes uncovers the full attack chain in seconds, providing concrete evidence for rapid response. Enriching sandbox findings with...

By The Hacker News
Millions Impacted Across Several US Healthcare Data Breaches
NewsMay 18, 2026

Millions Impacted Across Several US Healthcare Data Breaches

Several U.S. healthcare providers disclosed massive data breaches that together affect millions of patients. The New York City Health and Hospitals Corporation reported a breach compromising 1.8 million records, while Erie Family Health Centers, Florida Physician Specialists, Coastal Carolina Health Care,...

By SecurityWeek
Continuous Detection, Continuous Response: Mate Security Redefines the Modern SOC
NewsMay 18, 2026

Continuous Detection, Continuous Response: Mate Security Redefines the Modern SOC

Mate Security unveiled its Continuous Detection, Continuous Response (CD/CR) model, which fuses detection and investigation into a single, self‑reinforcing loop. At the core is a Security Context Graph that aggregates real‑time organizational data from distributed sources, eliminating the need for...

By HackRead
Gamaredon Deploys GammaDrop, GammaLoad in Phishing Campaigns
NewsMay 18, 2026

Gamaredon Deploys GammaDrop, GammaLoad in Phishing Campaigns

Gamaredon, the Russian‑linked espionage group targeting Ukraine, has intensified its phishing campaign by leveraging the WinRAR directory‑traversal flaw CVE‑2025‑8088. The group distributes RAR (and now ARJ) archives that embed a VBScript downloader called GammaDrop, which drops a second‑stage HTA payload...

By GBHackers On Security
Ensure Code Integrity for AWS Lambda Functions with Automated Code Signing Using Terraform
NewsMay 18, 2026

Ensure Code Integrity for AWS Lambda Functions with Automated Code Signing Using Terraform

The article walks through building an automated AWS Lambda code‑signing pipeline using Terraform. It leverages AWS Signer with the SHA384‑ECDSA algorithm, stores source and signed packages in a versioned S3 bucket, and enforces signature validation at runtime. The solution also...

By AWS DevOps Blog
Hospital Cyber Attacks Are Increasingly Hitting Patient Care
NewsMay 18, 2026

Hospital Cyber Attacks Are Increasingly Hitting Patient Care

European hospitals are facing a dramatic shift in cyber risk, with 82 % rating the threat as extreme and 74 % expecting a major incident this year. Attackers now target authentication, clinical workflows and digital patient‑care pathways, turning cybersecurity into a direct...

By ITPro
The Gentlemen Ransomware Gang Hit by Internal Breach, Operations Exposed
NewsMay 18, 2026

The Gentlemen Ransomware Gang Hit by Internal Breach, Operations Exposed

The Gentlemen ransomware gang suffered an internal breach in May 2026, exposing its backend infrastructure, affiliate communications, and victim‑management tools. Check Point Research uncovered leaked chats, databases, and evidence of over 1,570 probable victims, far exceeding the gang’s public leak counts....

By HackRead
Cyber Attacks Cost UK Businesses £3.7bn in Litigation in 2025
NewsMay 18, 2026

Cyber Attacks Cost UK Businesses £3.7bn in Litigation in 2025

Research by Gallagher and the Centre for Economics and Business Research shows UK large enterprises faced $14.6 billion in total cyber‑attack costs in 2025. Shareholder litigation alone accounted for $4.6 billion, making it the second‑largest expense after $6.8 billion in direct trading disruption....

By UKTN – People
Paper Werewolf APT Spreads EchoGather RAT via Fake Adobe Installer
NewsMay 18, 2026

Paper Werewolf APT Spreads EchoGather RAT via Fake Adobe Installer

The Russian‑language threat group Paper Werewolf (aka GOFFEE) launched a new wave of attacks against Russian industrial, financial and transport firms in March‑April 2026. The campaign begins with a phishing PDF that auto‑downloads a fake Adobe Reader installer, which silently...

By GBHackers On Security
Hackers Abuse Cloudflare Storage to Exfiltrate Network Files
NewsMay 18, 2026

Hackers Abuse Cloudflare Storage to Exfiltrate Network Files

Researchers at Oasis Security uncovered a sophisticated cyber‑espionage campaign targeting multiple Malaysian organizations. The attackers leveraged an Azure virtual machine to run custom Python, Laravel, and C# tools that enumerated networks, accessed internal databases, and harvested Active Directory credentials. Data...

By GBHackers On Security
AI Coding Is Fueling a Secrets-Sprawl Crisis Few CISOs Are Containing
NewsMay 18, 2026

AI Coding Is Fueling a Secrets-Sprawl Crisis Few CISOs Are Containing

AI‑assisted "vibe coding" is accelerating secret sprawl, as illustrated by Moltbook’s launch on Jan. 28, 2026, which exposed 1.5 million API tokens, 35,000 email addresses and private agent messages due to a misconfigured Supabase database. Researchers at Wiz and independent analyst...

By CSO Online
Why the Best Security Investment a Board Can Make in 2026 Isn’t Another Tool
NewsMay 18, 2026

Why the Best Security Investment a Board Can Make in 2026 Isn’t Another Tool

Boardrooms repeatedly approve new security tools, yet gaps persist because organizations lack true visibility into their environments. The article argues that the most valuable security capability in 2026 is a unified view of assets, access rights, and activity, not another...

By CSO Online
Four Malicious Npm Packages Deliver Infostealers and Phantom Bot DDoS Malware
NewsMay 18, 2026

Four Malicious Npm Packages Deliver Infostealers and Phantom Bot DDoS Malware

Researchers identified four npm packages—chalk‑tempalte, @deadcode09284814/axios‑util, axois‑utils, and color‑style‑utils—containing malicious code that either steals credentials or deploys a Golang‑based Phantom Bot DDoS malware. One package clones the open‑source Shai‑Hulud worm, while another delivers a distributed denial‑of‑service bot capable of HTTP,...

By The Hacker News
Critical Marimo RCE Flaw Could Let Attackers Execute Malicious Code Remotely
NewsMay 18, 2026

Critical Marimo RCE Flaw Could Let Attackers Execute Malicious Code Remotely

A critical remote code execution flaw (CVE‑2026‑39987) has been discovered in the Marimo Python notebook framework. The vulnerability resides in the /terminal/ws WebSocket endpoint, which fails to enforce authentication and spawns a system‑level shell for any requester. All Marimo versions...

By GBHackers On Security
Microsoft Confirms Windows 11 Security Update Install Issues
NewsMay 18, 2026

Microsoft Confirms Windows 11 Security Update Install Issues

Microsoft confirmed that the May 2026 Windows 11 cumulative update (KB5089549) fails to install on devices with limited free space on the EFI System Partition, triggering 0x800f0922 errors and automatic rollback. The issue surfaces when the ESP has 10 MB or less, causing...

By BleepingComputer
OtterCookie Malware Steals Dev Secrets, SSH Keys, Cloud Credentials, and Tokens
NewsMay 18, 2026

OtterCookie Malware Steals Dev Secrets, SSH Keys, Cloud Credentials, and Tokens

OtterCookie is a newly identified Node.js‑based remote‑access trojan that leverages persistent Socket.IO connections to monitor infected workstations in real time. Unlike earlier malware such as BeaverTail, it captures live developer activity—including clipboard data, keystrokes, screenshots, SSH keys, cloud credentials, and...

By GBHackers On Security
Exploit Available for New DirtyDecrypt Linux Root Escalation Flaw
NewsMay 18, 2026

Exploit Available for New DirtyDecrypt Linux Root Escalation Flaw

A new Linux kernel local‑privilege‑escalation flaw dubbed DirtyDecrypt (also known as DirtyCBC) has a publicly released proof‑of‑concept exploit. The bug stems from a missing copy‑on‑write guard in the rxgk_decrypt_skb function of the rxgk module and was patched in the mainline...

By BleepingComputer
The AI Backdoor Your Security Stack Is Not Built to See
NewsMay 18, 2026

The AI Backdoor Your Security Stack Is Not Built to See

Enterprises have built LLM defenses around detecting malicious tokens, but new research from Microsoft and the Institute of Science Tokyo uncovers MetaBackdoor—a length‑based trigger that evades content filters. By poisoning a model with as few as 90 examples, attackers can...

By Help Net Security
Shadow AI Is Growing in Silence While Enterprise Security Falls Behind
NewsMay 18, 2026

Shadow AI Is Growing in Silence While Enterprise Security Falls Behind

Shadow AI is proliferating as enterprises rush to adopt generative AI, outpacing existing governance frameworks. A World Economic Forum survey shows 87% of organizations view AI‑related vulnerabilities as the fastest‑growing cyber risk, and 75% of CISOs have discovered unsanctioned GenAI...

By The Cyber Express
AI Shrinks Vulnerability Exploitation Window to Hours
NewsMay 18, 2026

AI Shrinks Vulnerability Exploitation Window to Hours

Synack’s 2026 State of Vulnerabilities Report finds AI is compressing the gap between vulnerability disclosure and exploitation to a matter of hours. Mean time to remediation fell 47% in 2025, dropping from 63 to 38 days, while high‑severity findings rose...

By Help Net Security
AI Security Risks: 7 Threats and How to Manage Them
NewsMay 18, 2026

AI Security Risks: 7 Threats and How to Manage Them

Enterprise AI adoption is outpacing security controls, exposing organizations to seven major risks. Shadow AI, data leaks, credential theft, insecure code, prompt injection, unvetted AI apps, and deepfake fraud each create new attack vectors. The article outlines practical mitigations, emphasizing...

By Zapier – Blog
Linus Torvalds: AI-Detected Bug Reports Make Kernel Security List 'Almost Entirely Unmanageable'
NewsMay 18, 2026

Linus Torvalds: AI-Detected Bug Reports Make Kernel Security List 'Almost Entirely Unmanageable'

Linus Torvalds announced a new Linux release candidate and warned that AI‑generated bug reports are overwhelming the kernel security mailing list. He said the flood creates massive duplication because many researchers submit the same findings on the same day. New...

By Slashdot