Meta’s Muse AI Tool Lets Users Create Images Using Public Instagram Photos

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 Meta has launched Muse Image, its first image generation model built by Meta Superintelligence Labs, and the release has already triggered a privacy backlash because it lets users pull public Instagram photos into AI-generated visuals without notifying …

QR Codes Are the New Security Blindspots That Steal Your Card Details and Deliver Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A small pixelated square. You’ve scanned hundreds of them at coffee shops, parking meters, airport lounges, and restaurant tables. It feels instant. It feels safe. It feels routine. That’s exactly what cybercriminals are counting on. QR codes have become one …

GitHub Copilot Refuses Harmful Chat Prompts But Writes Them Inside Code Workflows

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 GitHub Copilot can refuse harmful prompts in chat while still generating the same harmful content inside code workflows when the request is decomposed across a multi-step IDE session. Researchers Abhishek Kumar and Carsten Maple from the Alan …

GoodPersonRAT Uses Fake LetsVPN Installer to Give Attackers Full Remote Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 A fake installer for a popular Chinese VPN service is quietly handing full remote control of infected computers to unknown attackers. The malicious file poses as a setup tool for LetsVPN, a tool many users in China …

Helix Data Extortion Group Uses Vishing and Device Code Phishing to Steal SharePoint Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 Helix has surfaced as a fast-moving data extortion group that targets Microsoft 365 users through phone scams and cloud-focused phishing instead of traditional malware drops. Attackers are after access first, then large volumes of corporate files, with …

Microsoft Released Patches for RoguePlanet Defender Zero-Day Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 Microsoft has released security updates to address a newly disclosed zero-day vulnerability in Microsoft Defender, publicly referred to as “RoguePlanet.” The flaw, tracked as CVE-2026-50656, affects the Microsoft Malware Protection Engine and could allow attackers to gain …

New GhostApproval Vulnerability Affects Amazon Q, Claude Code, Cursor, and Other AI Agents

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 A newly disclosed vulnerability pattern dubbed “GhostApproval” has exposed a critical security flaw in six of the most widely used AI coding assistants: Amazon Q Developer, Anthropic Claude Code, Augment, Cursor, Google Antigravity, and Windsurf, allowing malicious …

Palo Alto PAN-OS Vulnerability Allows Arbitrary Code Execution Through Malicious Network Traffic

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 Palo Alto Networks has disclosed a high-severity vulnerability in PAN-OS that could allow unauthenticated attackers to execute arbitrary code or trigger a denial-of-service (DoS) condition by sending specially crafted network traffic. Tracked as CVE-2026-0288, the flaw carries …

Accenture Confirms Data Breach – Hacker Claims Theft of Internal Source Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 IT services and consulting giant Accenture has confirmed it suffered a security breach after a threat actor claimed to have stolen 35 GB of source code and other sensitive data from the company. A threat actor operating …

Claude, Cursor, and Codex Trigger Endpoint Security Rules Used to Catch Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 AI coding agents such as Claude Code, Cursor, and OpenAI Codex are increasingly appearing in enterprise environments, and new telemetry shows they are unintentionally triggering security detections tied to credential access and living-off-the-land binaries (LOLBins). Recent analysis …