OpenAI’s New Astra AI Can Discover Zero-Day Security Flaws and Build Exploits

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI says its upcoming Astra model has reached the company’s Critical cybersecurity capability threshold, meaning it can independently discover unknown vulnerabilities and develop working exploits against hardened systems when given …

Anthropic Launches Claude Fable and Mythos 5.1 for Advanced Coding and Research

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Anthropic has rolled out two new frontier AI models, Claude Fable 5.1 and Claude Mythos 5.1, positioning them as the most capable systems yet for software development, enterprise knowledge work, …

OWASP Launches OASIS AI Initiative to Fix Open Source Vulnerabilities at Scale

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OWASP has launched the Open Automated Security Initiative for Software (OASIS), a global community effort designed to close the gap between finding vulnerabilities in open source code and actually fixing …

Attackers Abuse Trusted Cloud Services to Hide Phishing Attacks Against Financial Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly weaponizing trusted cloud platforms such as Microsoft Azure, Google Firebase, Google Cloud Storage, Amazon Web Services, and Cloudflare to host phishing infrastructure aimed squarely at the financial …

Five Hackers Plead Guilty to ATM Jackpotting Attacks Using Malware to Dispense Cash

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Five Venezuelan nationals have pleaded guilty in a U.S. federal case involving attempted ATM jackpotting attacks. This criminal technique uses malware to force cash machines to dispense money without legitimate …

Hackers Actively Exploiting Critical Langflow RCE and Rails Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Two critical vulnerabilities affecting Langflow and Ruby on Rails deployments are being actively exploited, with attackers quickly moving from public disclosure to reconnaissance, secret harvesting, and potential remote code execution, …

Hackers Pose as Recruiters and Send Fake Coding Tests to Infect Software Developers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are posing as recruiters to turn routine job interviews into malware traps for software developers. Their latest campaign delivers two cross-platform remote access tools, NodeRabbit and PollCat, through coding …

Hackers Weaponize Microsoft Teams Help Desk Calls for Malware and Network Lateral Movement

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers are turning Microsoft Teams help desk calls into an entry point for malware and network compromise. A campaign tracked as Spring Ring used external accounts that resembled internal IT …

Boston Scientific Cyberattack Disrupts Medical Device Manufacturing and Global Operations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Boston Scientific is investigating a cybersecurity incident that disrupted parts of its global operations, affecting manufacturing, order processing, and product shipments. The company said the incident was detected on August …