Cybersecurity News
-
Encrypted Prompt-Injection Attack Raises Data Privacy Concerns for xAI’s Grok
Security researchers have demonstrated a prompt-injection technique that may allow a malicious web page to trick xAI’s Grok chatbot into exposing information from an active conversation. AI security company Adversa AI calls…
-
Apple Releases iPhone and Mac Security Updates to Fix Code Execution Flaw
Apple has released new security updates for iPhone, iPad and Mac devices, addressing a number of vulnerabilities including an image-processing flaw that could allow arbitrary code execution. iOS 26.6.1 and iPadOS 26.6.1,…
-
Shadow AI Is Creating a Growing Visibility Gap for Security Teams
Businesses are struggling to keep track of how artificial intelligence is being used across their organizations as AI tools and features spread through workplace software. According to Bitdefender’s 2026 Cybersecurity Assessment, 51.8%…
-
Microsoft Patches One-Click Copilot Flaw That Could Expose User Data
Microsoft has patched a vulnerability in Copilot that researchers say could have allowed attackers to access and leak sensitive user data after a victim clicked a specially crafted link. The flaw, dubbed…
-
Critical WordPress Forminator Plugin Vulnerability Puts Affects 600K+ Sites at Risk
Security researchers at Wordfence have disclosed a critical security vulnerability in Forminator Forms, a popular WordPress form-building plugin with more than 600,000 active installations. The flaw, tracked as CVE-2026-15748, received a CVSS…
-
SafePal Confirms Data Breach Affecting Over 39K Customers
Crypto wallet maker SafePal has disclosed a data breach tied to a flaw in its order-tracking system on its official blog and via a post on X. The company says wallets, seed…
-
Expired Domains Can Become Cybersecurity Risks After They’re Re-Registered
Expired domain names may look abandoned, but many are quickly registered again, and their history can make them surprisingly valuable. New research from Infoblox Threat Intelligence found that roughly 50,000 previously registered…
-
Security Researchers Show Why Protecting Browser Cookies May Not Be Enough
Modern browsers have introduced stronger protections designed to make stolen login cookies harder for attackers to use. But new research from SpecterOps demonstrates another potential problem: instead of stealing the cookie itself,…
-
Apple Explains Threat Notifications for Mercenary Spyware Attacks
Apple has updated its guidance on how it alerts users who may be targeted by highly sophisticated mercenary spyware. In a support document published August 13, 2026, Apple explained that its Threat…
