Bugs in Hugging Face Diffusers Bypass Custom Code Safeguard
Three CVEs in Hugging Face diffusers let a malicious model repo run code on any machine that loads it
20 articles
Three CVEs in Hugging Face diffusers let a malicious model repo run code on any machine that loads it
AI-assisted research uncovered Linux kernel use-after-free allowing root escalation
Analysis of real-life incident response cases by Cisco Talos warns that phishing remains a powerful method of initial compromise
Microsoft has launched a new agentic security system for cyber defenders as well as its first cyber-focused AI model
Coca Cola claims data was stolen from its Fairlife business after a recent ransomware attack
NVIDIA has launched a new Open Secure AI Alliance to build an “open defense stack for agents”
CREST’s new AI standards are optional add-on requirements for cybersecurity service providers wishing to demonstrate responsible AI usage
Impersonating well-known cryptocurrency and trading sites, SourTrade has developed a novel technique to drop infostealers to victims
Halcyon’s latest quarterly ransomware report showed that while ransomware attacks are declining, obfuscation techniques are getting harder to fight against
Researchers at ReliaQuest warned of widespread DNS poisoning attacks targeting the hospitality sector as part of a cyber espionage campaign
OpenAI’s chatbot tool ChatGPT ranked among the top 10 most impersonated brands in phishing attacks for the first time
Comparitech’s analysis of incidents in the first half of 2026 finds that the emergence of The Gentlemen ransomware has resulted in surge in attacks against h...
International agencies issue joint alert over state-backed campaign exploiting a critical vulnerability in the Zimbra Collaboration Suite
CoreView research finds that security leadership is concerned about AI Assistant exposing confidential data
US government agencies have warned that Iranian cyber actors are targeting US-based Siemens and Schneider industrial equipment
Sophos report warns that the rapid adoption of AI by businesses is leaving them vulnerable to a new source of cyber threats
Dolphin X is a new infostealer that uses AI to sort and rank victims, giving cybercriminals a faster way to identify lucrative targets
A new study of organizations which have fallen victim to ransomware suggests the rise of AI-tools being used by hackers is making life harder for defenders
New TrickBot variant hides C2 communication inside DNS queries, replacing decade-old HTTP pattern
Hugging Face recently disclosed a security breach.