Security Week

Subscribe to Security Week feed Security Week
Cybersecurity News, Insights & Analysis
Updated: 6 min 15 sec ago

F5 Patches Over 50 Vulnerabilities

Thu, 05/14/2026 - 6:47am

The company’s latest quarterly advisory describes high and medium-severity issues in BIG-IP, BIG-IQ, and NGINX.

The post F5 Patches Over 50 Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Hackers Targeted PraisonAI Vulnerability Hours After Disclosure

Thu, 05/14/2026 - 5:45am

The first exploitation attempts were observed less than four hours after the authentication bypass was publicly disclosed.

The post Hackers Targeted PraisonAI Vulnerability Hours After Disclosure appeared first on SecurityWeek.

Categories: SecurityWeek

High-Severity Vulnerability Patched in VMware Fusion

Thu, 05/14/2026 - 4:42am

The patch was announced as Broadcom is attending the Pwn2Own hacking competition in Berlin this week.

The post High-Severity Vulnerability Patched in VMware Fusion appeared first on SecurityWeek.

Categories: SecurityWeek

Researcher Drops YellowKey, GreenPlasma Windows Zero-Days

Thu, 05/14/2026 - 3:27am

YellowKey is a BitLocker bypass that requires physical access. GreenPlasma enables elevation of privileges to System.

The post Researcher Drops YellowKey, GreenPlasma Windows Zero-Days appeared first on SecurityWeek.

Categories: SecurityWeek

Foxconn Confirms North American Factories Hit by Cyberattack

Wed, 05/13/2026 - 1:13pm

The Nitrogen ransomware group claims to have hacked the company’s systems, stealing 8TB of data, including confidential documents.

The post Foxconn Confirms North American Factories Hit by Cyberattack appeared first on SecurityWeek.

Categories: SecurityWeek

Microsoft, Palo Alto Networks Find Many Vulnerabilities by Using AI on Their Own Code

Wed, 05/13/2026 - 12:01pm

Microsoft’s MDASH discovered 16 of the Patch Tuesday vulnerabilities, and Palo Alto used Mythos to find dozens of flaws. 

The post Microsoft, Palo Alto Networks Find Many Vulnerabilities by Using AI on Their Own Code appeared first on SecurityWeek.

Categories: SecurityWeek

Sweet Security Launches Agentic AI Red Teaming to Counter ‘Mythos Moment’

Wed, 05/13/2026 - 10:50am

New “Sweet Attack” platform uses runtime intelligence and continuous agentic red teaming to identify exploitable attack chains human teams may miss.

The post Sweet Security Launches Agentic AI Red Teaming to Counter ‘Mythos Moment’ appeared first on SecurityWeek.

Categories: SecurityWeek

Webinar Today: ROI for Cyber-Physical Security Programs

Wed, 05/13/2026 - 9:30am

This webinar will help OT security teams and asset owners stop being cost centers and start being resilience drivers.

The post Webinar Today: ROI for Cyber-Physical Security Programs appeared first on SecurityWeek.

Categories: SecurityWeek

Government to Scrutinize Instructure Over Canvas Disruption, Data Breach

Wed, 05/13/2026 - 8:13am

The Committee on Homeland Security has requested to be briefed on the incident and Instructure’s remediation steps.

The post Government to Scrutinize Instructure Over Canvas Disruption, Data Breach appeared first on SecurityWeek.

Categories: SecurityWeek

716,000 Impacted by OpenLoop Health Data Breach

Wed, 05/13/2026 - 7:18am

The telehealth platform was hacked in January, and users’ personal information was exfiltrated from its systems.

The post 716,000 Impacted by OpenLoop Health Data Breach appeared first on SecurityWeek.

Categories: SecurityWeek

Microsoft Patches Critical Zero-Click Outlook Vulnerability Threatening Enterprises

Wed, 05/13/2026 - 6:33am

CVE-2026-40361 is similar to a vulnerability found a decade ago, BadWinmail, which at the time was dubbed an “enterprise killer”.

The post Microsoft Patches Critical Zero-Click Outlook Vulnerability Threatening Enterprises appeared first on SecurityWeek.

Categories: SecurityWeek

Fortinet, Ivanti Patch Critical Vulnerabilities

Wed, 05/13/2026 - 5:36am

Successful exploitation of these flaws could lead to arbitrary code execution and information disclosure.

The post Fortinet, Ivanti Patch Critical Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Chipmaker Patch Tuesday: Intel and AMD Patch 70 Vulnerabilities

Wed, 05/13/2026 - 4:37am

The two chip giants have published over two dozen advisories describing recently identified security defects.

The post Chipmaker Patch Tuesday: Intel and AMD Patch 70 Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Hundreds of Malicious Packages Force RubyGems to Suspend Registrations

Wed, 05/13/2026 - 3:30am

More than 500 packages were pushed during the attack, but the target appears to have been RubyGems itself rather than users.

The post Hundreds of Malicious Packages Force RubyGems to Suspend Registrations appeared first on SecurityWeek.

Categories: SecurityWeek

ICS Patch Tuesday: New Security Advisories From Siemens, Schneider, CISA

Wed, 05/13/2026 - 2:50am

Many ICS vendors have not released new advisories for the May 2026 Patch Tuesday.

The post ICS Patch Tuesday: New Security Advisories From Siemens, Schneider, CISA appeared first on SecurityWeek.

Categories: SecurityWeek

Microsoft Patches 137 Vulnerabilities

Tue, 05/12/2026 - 2:07pm

Fresh security updates resolve critical flaws in Azure, Windows, Dynamics 365, and the SSO Plugin for Jira & Confluence.

The post Microsoft Patches 137 Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Exaforce Raises $125 Million for Agentic SOC Platform

Tue, 05/12/2026 - 1:23pm

Exaforce has raised a total of $200 million and plans on using the latest investment for product development and international expansion. 

The post Exaforce Raises $125 Million for Agentic SOC Platform appeared first on SecurityWeek.

Categories: SecurityWeek

Adobe Patches 52 Vulnerabilities in 10 Products

Tue, 05/12/2026 - 12:47pm

While none of the flaws have been exploited in the wild, many of them could lead to arbitrary code execution.

The post Adobe Patches 52 Vulnerabilities in 10 Products appeared first on SecurityWeek.

Categories: SecurityWeek

White Circle Raises $11 Million for AI Control Platform

Tue, 05/12/2026 - 11:40am

The startup will invest in accelerating product development, hiring new talent, and expanding its customer base.

The post White Circle Raises $11 Million for AI Control Platform appeared first on SecurityWeek.

Categories: SecurityWeek

BWH Hotels Says Hackers Had Access to Reservation Data for 6 Months

Tue, 05/12/2026 - 10:30am

Threat actors obtained names and contact information for an unspecified number of BWH Hotels guests.

The post BWH Hotels Says Hackers Had Access to Reservation Data for 6 Months appeared first on SecurityWeek.

Categories: SecurityWeek

Pages