Trellix has disclosed unauthorized access to a portion of its source code repository. However, it did not specify which portion of its source code was accessed, nor did it provide many further details about the incident. “Upon learning of this matter, we immediately began working with leading forensic experts to resolve it. We have also notified law enforcement,” the company said in a statement. Based on its investigation to date, Trellix added that is has found no evidence that its source code was released, its distribution process was affected, or that its source code has been exploited. “As part of our commitment to our broader security community, we intend to share further details as appropriate once our investigation is complete.” Ben Ronallo, Director of Security Operations at Black…
Kirsten Doyle
Security researcher Tom Jøran Sønstebyseter Rønning, posting as @L1v1ng0ffTh3L4N, has revealed that Microsoft Edge decrypts every saved password at startup and holds all of them in process memory, in cleartext, for the entire browser session. He says this includes passwords for sites the user is visiting as well as every credential the user’s ever saved. The passwords are held in memory from the moment Edge opens. The assumption behind the technical behaviour Uzair Gadit, Founder & CEO, of Secure.com, says: “What makes this Edge finding unusual is not just the technical behaviour, it is the assumption behind it. Users are told to follow best practices, use strong passwords and use a password manager, and they…
There are discussions in US cybersecurity circles to radically shorten the time given to government agencies to fix software vulnerabilities currently being exploited, especially amid concerns about the growing use of artificial intelligence-based attacks. According to a report by Reuters, there are talks of reducing the time frame from the current two or three weeks down to just three days, dramatically raising the pace of defensive operations across government systems. These conversations, initiated by CISA and the Office of the National Cyber Director, have been spurred by an increasing sense of unease regarding more advanced AI models like Anthropic Mythos and GPT-5.4-Cyber. These models are expected to significantly reduce the window during which any vulnerabilities can be detected and exploited, reducing attack times from…
The Cybersecurity and Infrastructure Security Agency (CISA) has added another Linux kernel vulnerability, CVE-2026-31431, also known as Copy Fail, to the Known Exploited Vulnerabilities (KEVs). Inclusion in the list implies active real-world attacks and increases the priority of patches. This particular vulnerability, which has been affecting almost all major Linux distributions since 2017, involves transferring resources incorrectly between security domains and allows local users to escalate privileges to root access. Experts emphasize the danger associated with this vulnerability, especially because of its reliability, undetectability, and cross-environment nature. Threat actors can abuse this vulnerability to tamper with memory data without any traces on the disk. Microsoft researchers…
Anthropic Mythos platform has sparked a new round of debate over a classic cybersecurity question – except at an entirely new level: What will happen as the systems used to discover and exploit vulnerabilities gain the ability to do so at the speed of machines? In conjunction with projects such as Project Glasswing, the idea is straightforward: create an advantage for the defenders against AI-enabled threats. But just how durable is that advantage? To explore what Mythos means for the future of cybersecurity, we asked a panel of industry experts to weigh in. Their responses are not surface-level optimism or scepticism;…
Unsanctioned users have allegedly accessed Anthropic’s controversial Claude Mythos Preview AI frontier model although the company has limited the businesses that can use it. The group, who have yet to be named, had apparently made many attempts to access Mythos since it debuted earlier this month. They finally gained access via a third-party vendor. The users who accessed Mythos on the day it was announced are members of a Discord group known for searching for information about unreleased AI models. According to the Bloomberg report, the group, using knowledge it had about a format Anthropic had used for other models, “made an educated guess about [Mythos’] online location.” One of the group told the news agency they were “interested in playing around with new…
Cloud development platform Vercel has confirmed a security incident involving unauthorized access to parts of its internal systems, following a breach disclosed in April 2026. In an official security bulletin, the company stated: “We’ve identified a security incident that involved unauthorized access to certain internal Vercel systems.” Vercel added that it is “actively investigating” the incident, has engaged incident response experts, and notified law enforcement as part of its response. Limited impact, ongoing investigation The company said the attack has impacted a limited subset of its users, and services continue to operate without any disruption. Even though a lot of information is still pending, preliminary findings reveal that this security breach took place beyond the confines of Vercel’s network. The attacks are…
Entries have opened for the Real Cyber Awards 2026 and Conference, a UK-based cybersecurity event designed to recognise the organisations and individuals working to keep businesses secure. Positioned as a platform to highlight “the real work happening in cybersecurity today,” the awards are free to enter, with shortlisted nominees receiving two complimentary tickets to attend the event. The ceremony and conference will take place on 30 October 2026 at The Milner Hotel, located next to York train station. The event is hosted by Consultants Like Us (CLU), a Yorkshire-based firm focused on improving data security practices. Gary Hibberd, from CLU, said: “Our desire…
In 2025, pro-Russian threat actors attempted to disrupt a Combined Heat and Power (CHP) facility in western Sweden. A failed attack on dual-purpose critical infrastructure serving both electricity generation and district heating networks. The Minister for Civil Defence of Sweden, Carl-Oskar Bohlin, revealed in a news conference that the cyber-attack had been conducted in the spring of 2025 and the perpetrators were acting on behalf of Russian intelligence services. An activist group loyal to Russia attempted an attack against a company in Sweden, but the attack failed, Bohlin added, pointing out that the security functions embedded within the system thwarted the threat. Swedish security agencies investigated the matter,…
OpenAI will be expanding its cybersecurity efforts by increasing the number of verified defenders served by its Trusted Access for Cyber (TAC) program into the thousands, with hundreds more security teams to follow. This move aims to address the challenge of defenders and attackers increasingly using AI, accelerating the pace and complexity of cyber threats. At the heart of the release is the launch of the GPT-5.4-Cyber, a variation of the existing model that has been tailored explicitly for use in defensive cybersecurity contexts. The model is designed to be ‘cyber-permissive’ in that it allows conducting vulnerability assessments and performing binary reverse…
