Cybersecurity Social Media and Updates

Hackers Seize AI Security Tools, Now Targeting Firewalls
SocialApr 23, 2026

Hackers Seize AI Security Tools, Now Targeting Firewalls

Adversaries hijacked AI security tools at 90+ organizations. The next wave has write access to the firewall https://t.co/khjZkpWhc0

By Chuck Brooks
Zero Day Clock Definitions Conflict; Which Is Accurate?
SocialApr 23, 2026

Zero Day Clock Definitions Conflict; Which Is Accurate?

@EppSecurity For the Zero Day Clock, these definitions appear different from each other and measure different things. If so, which is the correct definition? https://t.co/b8oY85mFiO

By Jeremiah Grossman
MacOS Malware Tricks Crypto Users with Fake Invites
SocialApr 23, 2026

MacOS Malware Tricks Crypto Users with Fake Invites

Is now a good time to switch to Windows OS for bit? 😅 Jokes aside. Stay safe folks. There is a macOS malware targeting the crypto & fintech community: > Uses fake meeting invites to trick users into running Terminal commands...

By Sumit Gupta
Anything in a Database Can Surface on a Marketplace
SocialApr 23, 2026

Anything in a Database Can Surface on a Marketplace

Folks I don't know what to tell you if you're shocked about the UK Biobank story other than if something (anything) is on a database there is a very much more than non-zero chance that it can end up on...

By Chris Stokel-Walker
AI‑enhanced Phishing Leads Q1 Initial‑access Attacks
SocialApr 23, 2026

AI‑enhanced Phishing Leads Q1 Initial‑access Attacks

Phishing — sometimes with AI’s help — topped initial-access methods in Q1, Cisco says | Cybersecurity Dive https://t.co/nJv4RA7sVV

By Chuck Brooks
Massive Wave of Security Patches Hits All Devices
SocialApr 23, 2026

Massive Wave of Security Patches Hits All Devices

Brace yourself for a flood of patches in all of your tech gadgets https://t.co/xXZthlRWg1 via @FastCompany #cybersecurity

By Tom Pick
AI Startup’s Data Practices Spark Legal Risk
SocialApr 23, 2026

AI Startup’s Data Practices Spark Legal Risk

A fast-growing AI startup is facing serious legal pressure. Mercor is being sued over alleged data collection and exposure practices, following a breach involving sensitive contractor information. It highlights a critical issue. In AI, data is the foundation, but how it is...

By Spiros Margaris
Half‑million UK Medical Records Listed for Sale After Breach
SocialApr 23, 2026

Half‑million UK Medical Records Listed for Sale After Breach

Medical data of 500,000 people in UK put up for sale after data breach - https://t.co/zBa4Kbu9u3 via @FT

By Ashraf Laidi
Cybersecurity Shifts to Executive Strategic Priority in AI Era
SocialApr 23, 2026

Cybersecurity Shifts to Executive Strategic Priority in AI Era

Anthropic’s Claude Mythos is reframing cybersecurity at the top level. The risk is no longer a technical issue to delegate, but a core business concern that requires executive attention. This is the wake-up call. In the AI era, cybersecurity becomes a strategic...

By Spiros Margaris
AI Threats Shift From Code to Persuasive Human Manipulation
SocialApr 23, 2026

AI Threats Shift From Code to Persuasive Human Manipulation

AI risks are expanding beyond code into behavior. Tests show some models can convincingly attempt scams, combining technical capability with increasingly persuasive social interaction. The concern is broader now. AI does not just exploit systems, it can influence people. https://t.co/X9fm7Sapan @wired @willknight

By Spiros Margaris
Replit Security Agent Delivers Impressive App Protection
SocialApr 23, 2026

Replit Security Agent Delivers Impressive App Protection

Replit Security Agent making the internet a better place one app review at a time.

By Amjad Masad
Victims of Account Takeovers Aren't Limited to Google Fi Users
SocialApr 23, 2026

Victims of Account Takeovers Aren't Limited to Google Fi Users

If anyone is keeping score, trying to figure out how the account take-overs are happening, and how people can protect themselves, here’s an important data point. Not *all* of the victims used GoogleFi: https://t.co/FOEySkuGfo

By Zooko Wilcox-O'Hearn
Hidden Sensitive Data Lurks in Unreviewed Documents
SocialApr 23, 2026

Hidden Sensitive Data Lurks in Unreviewed Documents

"When I look at unstructured documents, I focus on the risk that lives inside the content because sensitive details hide in places people never review." #DataSecurity https://t.co/PYomJYHDkY

By Isaac Sacolick
CISO's Extreme Insider‑threat Fix Forces Political Profanity
SocialApr 23, 2026

CISO's Extreme Insider‑threat Fix Forces Political Profanity

Incubating a new cybersecurity company for insider threat where the CISO presses a button and all employees are locked out of their laptops until they record themselves saying “Fuck King Jong Un”

By Rak Garg
Beware: Impostor Claims, No Crypto or Money Requests
SocialApr 22, 2026

Beware: Impostor Claims, No Crypto or Money Requests

WARNING: I will NEVER ever ever ask you to do anything with crypto. I will never ask you for money. Someone impersonating me is doing stuff like this. Don't fall for it.

By Matthew Berman
Auto-Protect: 24/7 Security Engineer for Your Apps
SocialApr 22, 2026

Auto-Protect: 24/7 Security Engineer for Your Apps

Sometime apps you made that are secure might suddenly become vulnerable when there is an exploit in one of its dependencies. Typically you need engineers on payroll to monitor and handle this. We just automated that with Auto-Protect. It’s like your security...

By Amjad Masad
ChatGPT Image 2.0 Empowers Low‑Skill Scammers
SocialApr 22, 2026

ChatGPT Image 2.0 Empowers Low‑Skill Scammers

Criminals who aren't good at photoshop and want to scam quickly are rejoicing everywhere thanks to ChatGPT Image 2.0.

By Rachel Tobac
Telegram Accounts Vulnerable Despite Two-Step Verification
SocialApr 22, 2026

Telegram Accounts Vulnerable Despite Two-Step Verification

In this thread (https://t.co/YYT4uVq3ZR) you can see step by step how I took over a Telegram account, even though it had an added “Two-Step Verification” password, using only 1. Knowing its phone number, and 2. Being able to read its...

By Zooko Wilcox-O'Hearn
Security Must Accelerate to Match AI Pace
SocialApr 22, 2026

Security Must Accelerate to Match AI Pace

.@wiz_io co-founder Yinon Costica takes stage at #GoogleCloudNext 2026 to explain different layers of security. AI has changed the game he implied. Security needs to move at the speed of AI, he added. https://t.co/z7uIwJbngP

By Sarbjeet Johal
Continuous Identity Exposure Monitoring Stops Credential‑Based Breaches
SocialApr 22, 2026

Continuous Identity Exposure Monitoring Stops Credential‑Based Breaches

Most security programs are sleeping on Identity Exposure Management, and hackers are cashing in. The fastest path into an environment is almost always a leaked credential or a stolen session cookie sitting in an infostealer log. MFA doesn't help when...

By Jason Haddix
Google's MCP Unifies All Cloud Services for Agents
SocialApr 22, 2026

Google's MCP Unifies All Cloud Services for Agents

May not seem sexy but I love love love Google going all in on MCP. Even dummies like me can create amazing apps that leverage MCP. All GCP and Workspace services are now exposed via MCP. Developers can address GKE,...

By Patrick Moorhead
Real Hacker Reveals AI's Threats and Countermeasures
SocialApr 22, 2026

Real Hacker Reveals AI's Threats and Countermeasures

Talking with a real hacker will freak you out. Thanks @theonejvo for freaking me out about how AI could be used to attack everything in our modern society. And what we can do about it. https://t.co/0znpRiZ0tz

By Robert Scoble
Relativity’s Algebra Hides Century‑Old Positive Cosmological Constant
SocialApr 22, 2026

Relativity’s Algebra Hides Century‑Old Positive Cosmological Constant

What's cooler than finding a 27-year-old bug in OpenBSD? Finding a positive cosmological constant hiding for over a century in the algebra of relativity🌌 No new physics or math needed🧮 Possibly the most elegant novel result we'll see, but even more interesting ones...

By Emad Mostaque
Discord Group Hacks Anthropic Model by Guessing URL
SocialApr 22, 2026

Discord Group Hacks Anthropic Model by Guessing URL

Bloomberg reports a certain group got access to Mythos by guessing the URL for the new model. Guessing? Really? From Google: The unauthorized group is a private Discord channel of AI enthusiasts who specialize in tracking and testing unreleased large language models...

By Teri Radichel
AI-Powered Attacks Foreshadow Automated, Scalable Cyber Threats
SocialApr 22, 2026

AI-Powered Attacks Foreshadow Automated, Scalable Cyber Threats

Early AI-driven cyberattacks show systems can find vulnerabilities with little human input. Still rare, but signaling more automated, scalable threats. As AI advances, organizations must prioritize speed, visibility & resilience. https://t.co/rCsmckczrM

By Cristina Dolan
Full Access to Vulnerable Tool, Not AI, Caused Vercel Breach
SocialApr 22, 2026

Full Access to Vulnerable Tool, Not AI, Caused Vercel Breach

Vercel April 2026 security incident | Vercel Knowledge Base ~ The problem here was not “AI” but giving complete access to a tool that had a vulnerability. 🤖🔒 https://t.co/WkOPF7pzkU

By Teri Radichel
Frontier AI Models Risk Degrading, Exposing Enterprises to Breaches
SocialApr 22, 2026

Frontier AI Models Risk Degrading, Exposing Enterprises to Breaches

Article I'm quoted in on Forbes on the recent Claude model degrading. Note, I am not anti-Anthropic in anyway. I loved Opus 4.6 when it first came out. I almost bought a I <3 Claude t-shirt (kinda joking there). My...

By Dave Kennedy
Kelp DAO Hack Highlights Crypto Risks, Stalls Wall Street Tokenization
SocialApr 22, 2026

Kelp DAO Hack Highlights Crypto Risks, Stalls Wall Street Tokenization

UPDATE: Jefferies says the Kelp DAO exploit exposed major crypto infrastructure risks and could slow Wall Street’s blockchain and tokenization plans as firms reassess security Source: Coindesk https://t.co/c83AN6cwbW

By Wendy O
Japan Finance Minister Meets Banks on Claude Mythos Cyber Threat
SocialApr 22, 2026

Japan Finance Minister Meets Banks on Claude Mythos Cyber Threat

JUST IN: Japan's finance minister is holding talks with major banks to tackle cybersecurity threats from Claude Mythos.

By David Gokhshtein
China Cyber‑spies Western Defense Firms, Dutch Intel Warns
SocialApr 22, 2026

China Cyber‑spies Western Defense Firms, Dutch Intel Warns

China’s Cyberspying Targets Western Defense Industry, Dutch Intel Chief Says—Military intelligence report warns China poses a growing threat, alongside Russia @kimmackrael @DanMichaelsWSJ https://t.co/cu728ldZmp https://t.co/cu728ldZmp

By Jonathan Cheng
AI Agent Rush Ignites Security Gaps and Data Risks
SocialApr 22, 2026

AI Agent Rush Ignites Security Gaps and Data Risks

Rapid adoption of AI agents without proper safeguards is leading to exposed systems, data risks, and increased opportunities for attackers to exploit access controls. https://t.co/HE5t3QmHqC

By TechRadar
Mozilla Fixes 271 Firefox Bugs Using Anthropic Mythos
SocialApr 21, 2026

Mozilla Fixes 271 Firefox Bugs Using Anthropic Mythos

Mozilla scanned the Firefox codebase with Anthropic Mythos has fixed 271 vulnerabilities identified during this initial evaluation. https://blog.mozilla.org/en/privacy-security/ai-security-zero-day-vulnerabilities/

By Sung Kim
Tight Controls Needed to Prevent Mythos Abuse
SocialApr 21, 2026

Tight Controls Needed to Prevent Mythos Abuse

A lab leak on their hands here. We don't want adversaries using Mythos to expedite the drop of 0days and other malicious AI-powered attacks. Without tight controls, we're may sadly see Mythos used for evil before we get to see everything...

By Rachel Tobac
AI-Driven Pushpaganda Tricks Users with Malicious Notifications
SocialApr 21, 2026

AI-Driven Pushpaganda Tricks Users with Malicious Notifications

Pushpaganda uses AI-generated content and deceptive tactics to trick users into enabling notifications that deliver scams and evade traditional security defenses. https://t.co/x8sjalWKPR

By TechRadar
AI-Driven Research Will Shrink Attackers' Zero‑Day Arsenal
SocialApr 21, 2026

AI-Driven Research Will Shrink Attackers' Zero‑Day Arsenal

Sunlight seen through the storm. Mozilla security researchers say that after this wave of AI-augmented vuln discovery and exploitation, we'll reach a new equilibrium in which there are *fewer* vulns being used by attackers. “The zero-days are numbered”—https://t.co/MM5SNBJsjD

By Zooko Wilcox-O'Hearn
Shielded Labs Boosts Zcash Security for Users
SocialApr 21, 2026

Shielded Labs Boosts Zcash Security for Users

We at Shielded Labs have been working hard alongside others to urgently defend users and strengthen Zcash's security (https://t.co/GEDJVifGlc) …

By Zooko Wilcox-O'Hearn
Iran Blames US for Coordinated Network Shutdowns
SocialApr 21, 2026

Iran Blames US for Coordinated Network Shutdowns

Iranian media is reporting that networking infrastructure suffered coordinated shutdowns, and blames the US. https://t.co/Gil1Z55HhM

By TechRadar
UWB Chips Stop Key‑fob Spoofing, Secure Cars
SocialApr 21, 2026

UWB Chips Stop Key‑fob Spoofing, Secure Cars

Car thieves don't just pick locks to break in. They've also found ways to spoof your key fob's "unlock" signal. No glass broken, no button pressed. But new UWB car security chips fight back with new tech that's tougher to...

By IEEE Spectrum Threads
Seiko Hasn't Confirmed Breach; Data Not on Dark Web
SocialApr 21, 2026

Seiko Hasn't Confirmed Breach; Data Not on Dark Web

Seiko has not yet confirmed the incident and the data has not surfaced on the dark web. https://t.co/QqdC9km6on

By TechRadar
Network‑layer Containment Stops Ransomware Before CAD Fails
SocialApr 21, 2026

Network‑layer Containment Stops Ransomware Before CAD Fails

Ransomware doesn’t announce itself. By the time CAD drops, the spread has already started. Containment at the network layer is what keeps dispatch online. @T_Priority Partner https://t.co/qHmY69QqfA

By Glen Gilmore
Second Coding Vibe: Security Prediction App Nears Functional
SocialApr 21, 2026

Second Coding Vibe: Security Prediction App Nears Functional

So my 2nd vibe coding experience is about building an app to do security prediction validation. My v0.3 kinda works (but has annoying issues, obviously). (1/n)

By Dr. Anton Chuvakin
Open‑source CrabTrap Secures AI Agents with Policy‑Based Proxy
SocialApr 21, 2026

Open‑source CrabTrap Secures AI Agents with Policy‑Based Proxy

Brex just open-sourced CrabTrap. A transparent HTTP proxy that sits between your AI agent and every external API it calls. Okta, but for agents. AI agents in production are getting real credentials now. API keys. OAuth tokens. Database access. Write privileges to...

By Simon Taylor
DeFi Security: Beyond Audits, Chasing Endless Dependencies
SocialApr 21, 2026

DeFi Security: Beyond Audits, Chasing Endless Dependencies

☠️ "You can have a million audits, but now it's about the dependencies on oracles and bridges and collateral and multisig configurations and operational security practices. It feels like you're just playing whac-a-mole." -- @TuongvyLe12 on all the DeFi hacks https://t.co/PvhRjgnJGF

By Laura Shin
Europe Sets Privacy Benchmark with GDPR and AI Act
SocialApr 21, 2026

Europe Sets Privacy Benchmark with GDPR and AI Act

Embedding privacy across the AI lifecycle: from principles to practice “Europe has emerged as a regulatory benchmark through the combined effect of the General Data Protection Regulation (GDPR) and the EU Artificial Intelligence Act (AI Act).” https://t.co/SNayMvW7Ii @KPMG #AIGovernance

By Glen Gilmore
Hiring at AI Speed: Artemis Secures Talent in 48 Hours
SocialApr 21, 2026

Hiring at AI Speed: Artemis Secures Talent in 48 Hours

Shachar Hirshberg and Dan Shiebler make offers to new hires within 48 hours of their first conversation. They’re building an AI-native security company, Artemis Security, that battles threats that move at machine speed (which, for AI-driven attacks, is often in seconds)....

By Josh Kopelman
Align ESG KPIs with Zero‑Trust for Sustainable Security
SocialApr 21, 2026

Align ESG KPIs with Zero‑Trust for Sustainable Security

IT must balance sustainability and security: extending device lifecycles reduces e-waste but increases risk. Embed cybersecurity into ESG by aligning KPIs with sustainability goals and adopting zero-trust. https://t.co/mc3bHs11Ob

By Cristina Dolan
Qualcomm Snapdragon BootROM Flaw Enables Modem Takeover
SocialApr 21, 2026

Qualcomm Snapdragon BootROM Flaw Enables Modem Takeover

We’ve discovered a vulnerability in the BootROM of Qualcomm Snapdragon chips (MSM/MDM family) – used in popular smartphones, cars, and IoT devices: attackers can use its Emergency Download Mode to take control of the modem module (physical access required) Advisory: https://t.co/hkZ3VjGfMC Our...

By Eugene Kaspersky
Beware: IT Impersonators Using Teams to Steal Data
SocialApr 21, 2026

Beware: IT Impersonators Using Teams to Steal Data

Crooks are impersonating IT and reaching out via Teams, only to be granted access and steal data. https://t.co/KRcz5txxyo

By TechRadar
20 New Security Enhancements Boost Internet Protection
SocialApr 21, 2026

20 New Security Enhancements Boost Internet Protection

I’m so encouraged by the way our team and industry peers have shown up to protect the internet. We’ve now shipped over 20 product improvements across Dashboard and CLI to help your security posture. Easier to set up MFA, audit your Environment...

By Guillermo Rauch