CVE: Claude Chrome Extension Flaw
A flaw in the Claude Chrome extension allows malicious extensions to trigger predefined AI actions, potentially abusing access to connected services like Gmail and Salesforce.
A 26-year-old Illinois man was sentenced to 76 months in prison for hacking into over 750 women's Snapchat accounts to steal nude photos.
A flaw in the Claude Chrome extension allows malicious extensions to trigger predefined AI actions, potentially abusing access to connected services like Gmail and Salesforce.
Attackers are exploiting two zero-day vulnerabilities, CVE-2026-15409 and CVE-2026-15410, in SonicWall SMA1000 appliances, with the goal of ransomware attacks.
Microsoft releases Windows 10 KB5099539 extended security update, fixing 570 vulnerabilities, including two exploited and one publicly disclosed zero-day flaws.
Democratic senators pressed Jay Clayton, President Trump's pick for director of national intelligence, on election security and integrity, but left unsatisfied with his answers.
A Russian-speaking threat actor used Google's Gemini CLI AI tool to operate a small-scale botnet and deploy malware, with the AI agent responding to prompts and proposing operational improvements.
Cyberstalkers are exploiting Google Chrome's sync feature to spy on device owners' browsing history and gain access to stored passwords, according to researchers at Certo Software.
New research shows that a
Researchers at Bitdefender demonstrate three attack techniques using Windows' bind links to evade endpoint detection and response products, highlighting a security problem that relies heavily on paths.
AI-generated code poses significant security risks, with 45% of code produced by AI tools being insecure, according to Veracode's 2025 GenAI Code Security report.