SecurityWeek
ThreatLocker Raises $190 Million in Series F Funding
The company was previously valued at $1.6 billion, and the latest raise has significantly increased that valuation.
The post ThreatLocker Raises $190 Million in Series F Funding appeared first on SecurityWeek.
Critical VM Escape Vulnerability Patched in VMware ESXi
A total of five vulnerabilities have been patched in VMware ESXi, vCenter, Workstation, and Fusion.
The post Critical VM Escape Vulnerability Patched in VMware ESXi appeared first on SecurityWeek.
US, Australia Release OT Isolation Guidance for Critical Infrastructure
The guidance details steps organizations can take to isolate vital OT and supporting systems, and operate in isolation for an extended period.
The post US, Australia Release OT Isolation Guidance for Critical Infrastructure appeared first on SecurityWeek.
OpenAI’s Rogue AI Ventured Beyond Hugging Face
Hugging Face has published an anatomy of the attack and OpenAI has shared additional information from its investigation.
The post OpenAI’s Rogue AI Ventured Beyond Hugging Face appeared first on SecurityWeek.
Spur Raises $200 Million for IP Intelligence Platform
The IP intelligence company will use the fresh investment to accelerate and scale its operations.
The post Spur Raises $200 Million for IP Intelligence Platform appeared first on SecurityWeek.
JFrog Zero-Days Exploited in OpenAI-Hugging Face Hack
The OpenAI models targeted services beyond Hugging Face as they attempted to solve the tasks they were given.
The post JFrog Zero-Days Exploited in OpenAI-Hugging Face Hack appeared first on SecurityWeek.
Dozens of Minnesota Water Utilities Targeted in Coordinated OT Attacks
State and federal agencies respond after intrusions disrupt automated controls at municipal water and wastewater utilities.
The post Dozens of Minnesota Water Utilities Targeted in Coordinated OT Attacks appeared first on SecurityWeek.
ShinyHunters Claims Ernst & Young Hack
Ernst & Young previously confirmed that personal and financial information was stolen from a third-party management platform.
The post ShinyHunters Claims Ernst & Young Hack appeared first on SecurityWeek.
Cyera Acquiring Oasis Security in $1 Billion Deal
Oasis Security recently raised $120 million in Series B funding for its agentic access management platform.
The post Cyera Acquiring Oasis Security in $1 Billion Deal appeared first on SecurityWeek.
Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe
Apple announced that dozens of vulnerabilities have been patched in each of its operating systems.
The post Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe appeared first on SecurityWeek.
OT Security Startup Frenos Raises $1.52 Million
The company will use the fresh investment to grow its customer success and AI R&D teams.
The post OT Security Startup Frenos Raises $1.52 Million appeared first on SecurityWeek.
Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model
The company claims MAI-Cyber-1-Flash tops Anthropic’s Mythos and OpenAI’s GPT-5.6 Sol in CyberGym testing.
The post Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model appeared first on SecurityWeek.
Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker
Tal Kollander’s history divides neatly into two halves: first as an active hacker and then as the block that stops hacks.
The post Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker appeared first on SecurityWeek.
Act Security Emerges from Stealth to Fight the Patch Problem
Act Security tackles the spiraling patch problem caused by AI’s ability to find new vulnerabilities in existing cloud environments.
The post Act Security Emerges from Stealth to Fight the Patch Problem appeared first on SecurityWeek.
Hush Security Raises $30 Million for AI Agent Governance
The startup will invest in expanding engineering and sales teams, accelerating ecosystem support, and expanding corporate partnerships.
The post Hush Security Raises $30 Million for AI Agent Governance appeared first on SecurityWeek.
Google Adopts New Threat Actor Naming System
The new two-word naming convention uses a memorable term utilized in public reporting and a cluster-categorization word.
The post Google Adopts New Threat Actor Naming System appeared first on SecurityWeek.
Unpatched Fastjson Vulnerability Exploited in Attacks
The critical remote code execution bug can be exploited without authentication, under the library’s stock default configurations.
The post Unpatched Fastjson Vulnerability Exploited in Attacks appeared first on SecurityWeek.
Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day
Impacting on-premises deployments, the OS command injection allows attackers to access privileged internal functionality.
The post Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day appeared first on SecurityWeek.
Origin Energy Data Breach Affects 900,000 Australians
The hacker claimed to have stolen the information of 2 million Origin Energy customers after breaching its systems.
The post Origin Energy Data Breach Affects 900,000 Australians appeared first on SecurityWeek.
For Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup
Decades after it appeared in “The Terminator,” Skynet looks more like a forecast of the cyber incident in which a rogue AI system hacked into another AI company on its own.
The post For Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup appeared first on SecurityWeek.
