The Cybersecurity and Infrastructure Security Agency (CISA) has added another Linux kernel vulnerability, CVE-2026-31431, also known as Copy Fail, to the Known Exploited Vulnerabilities (KEVs). Inclusion in the list implies active real-world attacks and increases the priority of patches. This particular vulnerability, which has been affecting almost all major Linux distributions since 2017, involves transferring resources incorrectly between security domains and allows local users to escalate privileges to root access. Experts emphasize the danger associated with this vulnerability, especially because of its reliability, undetectability, and cross-environment nature. Threat actors can abuse this vulnerability to tamper with memory data without any traces on the disk. Microsoft researchers…
Kirsten Doyle
Anthropic Mythos platform has sparked a new round of debate over a classic cybersecurity question – except at an entirely new level: What will happen as the systems used to discover and exploit vulnerabilities gain the ability to do so at the speed of machines? In conjunction with projects such as Project Glasswing, the idea is straightforward: create an advantage for the defenders against AI-enabled threats. But just how durable is that advantage? To explore what Mythos means for the future of cybersecurity, we asked a panel of industry experts to weigh in. Their responses are not surface-level optimism or scepticism;…
Unsanctioned users have allegedly accessed Anthropic’s controversial Claude Mythos Preview AI frontier model although the company has limited the businesses that can use it. The group, who have yet to be named, had apparently made many attempts to access Mythos since it debuted earlier this month. They finally gained access via a third-party vendor. The users who accessed Mythos on the day it was announced are members of a Discord group known for searching for information about unreleased AI models. According to the Bloomberg report, the group, using knowledge it had about a format Anthropic had used for other models, “made an educated guess about [Mythos’] online location.” One of the group told the news agency they were “interested in playing around with new…
Cloud development platform Vercel has confirmed a security incident involving unauthorized access to parts of its internal systems, following a breach disclosed in April 2026. In an official security bulletin, the company stated: “We’ve identified a security incident that involved unauthorized access to certain internal Vercel systems.” Vercel added that it is “actively investigating” the incident, has engaged incident response experts, and notified law enforcement as part of its response. Limited impact, ongoing investigation The company said the attack has impacted a limited subset of its users, and services continue to operate without any disruption. Even though a lot of information is still pending, preliminary findings reveal that this security breach took place beyond the confines of Vercel’s network. The attacks are…
Entries have opened for the Real Cyber Awards 2026 and Conference, a UK-based cybersecurity event designed to recognise the organisations and individuals working to keep businesses secure. Positioned as a platform to highlight “the real work happening in cybersecurity today,” the awards are free to enter, with shortlisted nominees receiving two complimentary tickets to attend the event. The ceremony and conference will take place on 30 October 2026 at The Milner Hotel, located next to York train station. The event is hosted by Consultants Like Us (CLU), a Yorkshire-based firm focused on improving data security practices. Gary Hibberd, from CLU, said: “Our desire…
In 2025, pro-Russian threat actors attempted to disrupt a Combined Heat and Power (CHP) facility in western Sweden. A failed attack on dual-purpose critical infrastructure serving both electricity generation and district heating networks. The Minister for Civil Defence of Sweden, Carl-Oskar Bohlin, revealed in a news conference that the cyber-attack had been conducted in the spring of 2025 and the perpetrators were acting on behalf of Russian intelligence services. An activist group loyal to Russia attempted an attack against a company in Sweden, but the attack failed, Bohlin added, pointing out that the security functions embedded within the system thwarted the threat. Swedish security agencies investigated the matter,…
OpenAI will be expanding its cybersecurity efforts by increasing the number of verified defenders served by its Trusted Access for Cyber (TAC) program into the thousands, with hundreds more security teams to follow. This move aims to address the challenge of defenders and attackers increasingly using AI, accelerating the pace and complexity of cyber threats. At the heart of the release is the launch of the GPT-5.4-Cyber, a variation of the existing model that has been tailored explicitly for use in defensive cybersecurity contexts. The model is designed to be ‘cyber-permissive’ in that it allows conducting vulnerability assessments and performing binary reverse…
Cybersecurity provider Huntress has identified a major security threat. What appeared to be an unassuming potentially unwanted program (PUP) has transformed into a threat that can disable antivirus systems and put thousands of endpoints at risk. As mentioned in a recent blog, the cyberattack involves the signing of an application via Dragon Boss Solutions, which researchers term adware. The software uses an apparently legitimate update service to download and run a malicious payload that has been quietly disarming antivirus tools on endpoints around the world, including universities, government agencies, power utilities, hospitals, and Fortune 500 companies. This malware was first spotted in March when some unusual events associated…
Hims & Hers, a telehealth company, has disclosed a data breach involving its third-party customer support ticketing system after hackers gained access between 4 and 7 February 2026. In a letter to customers, it warned of a data security incident that might have exposed their personal information. On 5 February, the company said it became aware of suspicious activity affecting its third-party customer service platform. “We promptly took steps to secure our customer service platform and initiated an investigation into the nature and scope of the potential security incident.” It added that certain tickets sent to its customer service team were accessed or acquired without authorization. “In response, we undertook a comprehensive review of the affected service tickets to determine what…
The European Commission has confirmed a cyberattack affecting its Europa.eu web platform, with initial reports indicating that the attackers accessed the data from the cloud infrastructure provided by AWS. The incident was detected on 24 March, with the commission stating that the attack was contained while the investigation is still underway. Actors affiliated with the ShinyHunters group have claimed responsibility, stating that they accessed over 350 gigabytes of data from the commission’s databases and internal documents. The Commission stated that the group accessed some of its data but did not verify the full extent. It said those affected are being notified. In a statement, the Commission said its internal systems were not affected by the…
