Author: Robert Timlick

  • Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication

    Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication

    Splunk has released security updates to address a critical security flaw in Splunk Enterprise that could be exploited to conduct unauthenticated file operations and even remote code execution.

    The vulnerability, tracked as CVE-2026-20253, is rated 9.8 on the CVSS scoring system.

    “In Splunk Enterprise versions below 10.2.4 and 10.0.7, an unauthenticated user could create or truncate arbitrary

  • U.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign Nationals

    U.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign Nationals

    Anthropic said on Friday it will “abruptly disable” its most advanced artificial intelligence (AI) models, Claude Fable 5 and Mythos 5, for all users after the U.S. government ordered it to suspend access to the models for foreign nationals, whether inside or outside the U.S., citing national security concerns.

    The AI company said it received an order at 5:21 p.m. ET, instructing it to suspend

  • 400+ Arch Linux AUR Packages Hijacked to Install Rust Credential Stealer

    400+ Arch Linux AUR Packages Hijacked to Install Rust Credential Stealer

    Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer on any machine that built them.

    The malware is a Rust binary built to harvest developer secrets. When it lands with root, it can also load an eBPF rootkit to hide itself. The AUR is Arch Linux’s community package collection, and it is separate

  • Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code

    Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code

    Cybersecurity researchers have described what they say is a new class of attack that can trick artificial intelligence (AI) coding agents into running arbitrary code on developer machines.

    Called Agentjacking by Tenet Security, the attack can be triggered by means of a fake error report crafted using Sentry, an open-source error-tracking and performance-monitoring platform.

    “The attack

  • Rethinking MDR as Attackers and Defenders Embrace AI

    Rethinking MDR as Attackers and Defenders Embrace AI

    For most of the past decade, managed detection and response was the answer to a real problem. Security teams couldn’t staff around the clock, couldn’t hire enough analysts, and needed someone else to handle the alert queue. MDR stepped in. It worked well enough. Until now.

    The threat landscape has changed faster than the MDR model can adapt. Attackers are using AI to move faster, generate more

  • LangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code Execution

    LangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code Execution

    Cybersecurity researchers have disclosed details of three now-patched security flaws impacting LangGraph, including a critical vulnerability chain that could result in remote code execution.

    LangGraph is an open-source framework created by LangChain to build complex, stateful, and multi-agent artificial intelligence (AI) agentic applications.

    “An SQL injection in LangGraph’s function could

  • Europol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware Gangs

    Europol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware Gangs

    Authorities in Europe have disrupted AudiA6, a cryptocurrency laundering service used by ransomware gangs and cybercriminal networks.

    Europol, in a statement issued Thursday, said the dismantling of AudiA6 cut off a “key financial pipeline used to wash hundreds of millions in illicit profits.” The service is estimated to have been used to launder more than €336 million (~$389 million) since the

  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities

    ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities

    The ShinyHunters extortion crew exploited an unpatched flaw in Oracle PeopleSoft to break into enterprise systems, steal data, and demand payment to keep it private. The campaign hit universities hardest.

    Google’s Mandiant attributes it to the group it tracks as UNC6240, and dates the activity between May 27 and June 9. Oracle did not publish its advisory until June 10, so the bug was a

  • New Attacks Trick OpenClaw AI Agent Into Running Code and Leaking Secrets

    New Attacks Trick OpenClaw AI Agent Into Running Code and Leaking Secrets

    Two security teams have shown, in separate research published this week, that OpenClaw, the popular self-hosted AI agent, can be driven to run attacker-controlled code or hand over sensitive data through ordinary-looking inputs.

    Imperva buried instructions inside shared contacts, vCards, and location pins that the agent executed without the victim ever seeing them. Varonis built a test agent on

  • The Gentlemen Ransomware Claims 478 Victims, Can Spread Like a Worm

    The Gentlemen Ransomware Claims 478 Victims, Can Spread Like a Worm

    A new analysis of The Gentlemen operation has revealed that the financially motivated threat group initially operated as an affiliate responsible for conducting double extortion attacks, while leveraging resources from various ransomware-as-a-service (RaaS) schemes like LockBit (aka Tenacious Mantis), Qilin (aka Pestilent Mantis), and Medusa (aka Venomous Mantis).

    According to a detailed report