Security Week

Cybersecurity News, Insights & Analysis
  1. TRACE was developed by AMD, Intel, Microsoft, OPAQUE, and TII and contributed to the Linux Foundation.

    The post Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation appeared first on SecurityWeek.

  2. The company, previously known as ActiveFence, has raised a total of $280 million from investors.

    The post Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails appeared first on SecurityWeek.

  3. CVE-2026-61979 and CVE-2026-15981 are authentication bypass vulnerabilities affecting the MiniOrange SAML 2.0 SSO plugin.

    The post WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities appeared first on SecurityWeek.

  4. When Android users get a call from a non-contact, they will see more information about the caller, including their country.

    The post WhatsApp Adds Multiple Passkeys and Stronger 2SV in Account Security Update appeared first on SecurityWeek.

  5. Hands-on Cyber Attack Methods course returns to SecurityWeek’s ICS Cybersecurity Conference, October 6–8 at the W Nashville.

    The post Hands-On Cyber-Physical Systems Training Returns to ICS Cybersecurity Conference appeared first on SecurityWeek.

  6. Kaspersky researchers have linked the malware to the BadBox botnet, which has ensnared millions of devices.

    The post First Malware Built Specifically for Car Head Units Fuels Botnet appeared first on SecurityWeek.

  7. Silent patches can become exploit intelligence for attackers while leaving defenders without the context needed to prioritize risk.

    The post Silent Patches Don’t Stop Attackers – They Blind Defenders appeared first on SecurityWeek.

  8. AI infrastructure, including advanced semiconductors mostly made in Taiwan, has become a key point of competition between the U.S. and China.

    The post Taiwan Charges 9 Over Illegal AI Server Exports to China, Including Nvidia and Super Micro Staff appeared first on SecurityWeek.

  9. The vulnerability is tracked as CVE-2026-21962 and it has been widely exploited by threat actors against WebLogic servers.

    The post CISA Warns of Exploited Oracle WebLogic Vulnerability appeared first on SecurityWeek.

  10. A ReliaQuest employee fell victim to a phishing attack and the hackers gained access to a dashboard.

    The post ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited appeared first on SecurityWeek.