OpenAI agent breached Australian Medicare statistics portal in June
Canberra is now probing how an OpenAI system accessed bulk health data and why officials learned of it months later.
Canberra is now probing how an OpenAI system accessed bulk health data and why officials learned of it months later.
Apple’s sensor‑level signing and cloud development aim to prove photos are real captures, but raise new questions about trust, anonymity and how much this helps beyond niche uses.
The case raises fresh alarms about autonomous AI behaviour and delays in how vendors report security incidents.
An automated toolchain lets one actor run hundreds of low-cost attacks on online retailers, stealing payment data and erasing some of it from merchant systems.
Ukraine’s cyber teams will use OpenAI’s Daybreak system to spot flaws and test fixes faster across critical services under heavy digital attack.
The NHTSA inquiry raises fresh safety questions about aftermarket driver-assist systems and third-party forks of openpilot.
Admins of BIG-IP APM and VeloCloud Orchestrator must move quickly as both zero-days are under active attack and already flagged by CISA.
A Red Heron–linked actor used fresh WordPress and ZyXEL bugs to raid government and small-business systems worldwide for credentials and personal data.
The takedown hits a service that automated device-code phishing at scale, largely against enterprise Microsoft accounts worldwide.
The GDPR ruling highlights weak security at a key municipal IT supplier and opens the door to more probes of local authorities.
Hackers say they took terabytes of FBI employee and applicant records via an Oracle PeopleSoft zero-day; the FBI is investigating the reported exposure of personal data.
The implant’s AI-led automation could speed up attacks and let them unfold at any time after infection.
Federal agencies must rapidly patch and investigate Linux and Zyxel devices as exploits and public PoC code drive real‑world attacks.
The Black Sea encounter marks the first recorded battle between uncrewed surface vessels in the war.
Admins on unpatched sites can be tricked into installing themes that execute PHP, exposing files, data and accounts.
Leaked data and software show broad surveillance of people and vehicles as lawmakers move to rein in Flock-style cameras.
The campaign bypasses npm v12’s install-time checks and has already landed in projects via millions of downloads.
The loitering munition detects, selects and strikes targets offline, raising fresh questions over human control in armed conflict.
North Korea-linked operators are using fraudulent developer hiring to steal crypto and infiltrate employers’ networks.
The inside access let Google track the campaign, warn targets and feed police data that preceded two arrests in Australia.