Claude AI Agents Close 186 Deals in Anthropic’s Marketplace Experiment

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

April 25, 2026 Anthropic’s “Project Deal” has demonstrated that AI agents can autonomously negotiate and close real-world transactions, but the experiment also surfaced a quiet, troubling asymmetry: not all AI representations are created equal. In December 2025, Anthropic transformed its …

GPT‑5.5 Bio Bug Bounty to Strengthen Advanced AI Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has announced a new Bio Bug Bounty program for GPT-5.5 as part of its efforts to improve safety controls for advanced AI systems and to address misuse in biology. The initiative invites qualified researchers to test whether GPT-5.5 can …

Hackers Can Abuse Entra Agent ID Administrator Role to Hijack Service Principals

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical scope overreach vulnerability was recently identified in the Microsoft Entra Agent Identity Platform. The newly introduced Agent ID Administrator role allowed accounts to hijack arbitrary service principals and escalate privileges across the entire tenant. Microsoft has fully patched …

ADT Confirms Data Breach Following ShinyHunters Data Leak Claim

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Home security giant ADT Inc. has confirmed a data breach after the notorious threat group ShinyHunters claimed to have stolen over 10 million records and issued a ransom ultimatum — “Pay or Leak.” ADT, headquartered in Boca Raton, Florida, disclosed …

Hackers Exploiting Cisco Firepower Devices’ Using n-day Vulnerabilities to Gain Unauthorized Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

State-sponsored threat actors are actively targeting Cisco Firepower devices by chaining known vulnerabilities to deploy a highly customized backdoor. Cisco Talos recently discovered that the espionage-focused threat group UAT-4356 is exploiting two n-day vulnerabilities, tracked as CVE-2025-20333 and CVE-2025-20362, to …

Claude Desktop Reportedly Adds Browser Access Bridge to Multiple Chromium-Based Browsers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent technical audit by privacy researcher Alexander Hanff has revealed that Anthropic’s Claude Desktop application for macOS silently installs a Native Messaging bridge into the directories of several Chromium-based browsers. This undocumented behavior occurs without user consent, raising significant …

Hackers Use Fake CAPTCHA Pages to Trigger Costly International SMS Fraud

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Most internet users are familiar with CAPTCHA tests, simple challenges like selecting traffic lights or typing distorted letters to confirm they are human. But cybercriminals have found a way to weaponize this process. Hackers are now building fake CAPTCHA pages …

Hackers Use Pastebin-Hosted PowerShell Script to Steal Telegram Sessions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered a purpose-built PowerShell script hosted on Pastebin that is designed to silently steal Telegram session data from both desktop and web-based clients. The script is disguised as a routine Windows system update, making it easy for …

Void Dokkaebi Hackers Use Fake Job Interviews to Spread Malware via Code Repositories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A North Korea-linked hacking group known as Void Dokkaebi, also tracked as Famous Chollima, is running a campaign that tricks software developers into installing malware through fake job interviews. The group lures developers into cloning infected code repositories as part …

Xiongmai IP Camera Vulnerability Let Attackers Bypass Authentication and have Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security cameras are designed to keep commercial facilities safe. However, a newly disclosed critical vulnerability in Hangzhou Xiongmai Technology’s XM530 IP Cameras is putting networks at risk. Tracked under the alert code ICSA-26-113-05 and officially designated as CVE-2025-65856, this flaw …