>samit_hota

Security News

Breach & incident coverage

Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.

500 stories published

SN-2026-368HighOpen

GhostJacking Technique Exploits Identity Governance Gaps in AI Agents

New GhostJacking research demonstrates how security alerts and blocked events can be exploited to manipulate and hijack autonomous enterprise AI agents.

Aug 10, 2026
SN-2026-367InformationalOpen

OpenAI Restricts New GPT 5.6 Cyber Model to Vetted Security Partners

OpenAI launches GPT 5.6 Cyber with Daybreak Blue and Red capabilities, restricting access to approved cybersecurity vendors and consultancies.

Aug 10, 2026
SN-2026-366CriticalOpen

FBI and South Korea Warn of Gunra Ransomware Exploiting Fortinet Firewalls

FBI and South Korean police warn that Gunra ransomware is exploiting Fortinet firewalls (CVE-2024-55591, CVE-2025-24472) to breach critical infrastructure.

Aug 10, 2026
SN-2026-365InformationalOpen

Closing the Patch Gap: Moving from CVSS Checklists to Choke-Point Defense

Relying solely on CVSS scores leaves critical attack paths open. Defenders must embrace choke-point patching to protect high-value assets effectively.

Aug 10, 2026
SN-2026-364InformationalMitigated

OpenAI Restricts New GPT 5.6 Cyber Model to Vetted Security Partners

OpenAI releases GPT 5.6 Cyber for vulnerability research and incident response, offering Daybreak Blue and Red variants strictly to approved partners.

Aug 10, 2026
SN-2026-363InformationalResolved

Sherlock Holmes and the Timeless Mechanics of Social Engineering

Arthur Conan Doyle’s fictional detective demonstrated pretexting, OSINT, and human intelligence tactics that mirror modern social engineering attacks.

Aug 10, 2026
SN-2026-362InformationalOpen

Outdated Cybercrime Laws Put Good-Faith Security Researchers at Risk

A new five-point policy framework addresses how outdated global cybercrime laws create severe legal liability for good-faith security researchers.

Aug 10, 2026
SN-2026-361CriticalMitigated

SonicWall SMA1000 Flaws CVE-2026-15409, CVE-2026-15410 Used in Ransomware

CISA confirms active ransomware exploitation of SonicWall SMA1000 vulnerabilities CVE-2026-15409 and CVE-2026-15410. Immediate patching required.

Aug 10, 2026
SN-2026-360HighOpen

Sandworm Hackers Impersonate IT Recruiters to Target Ukrainian Admins

Russian GRU unit Sandworm is posing as IT recruiters on job sites, tricking Ukrainian system administrators into installing malicious SopraVPN software.

Aug 10, 2026
SN-2026-359HighOpen

'Ghostjacking' Attacks Poison Security Logs to Hijack Autonomous AI Agents

Tenet security researchers demonstrate Ghostjacking, abusing logs in Cloudflare, Datadog, and Sentry to trick AI agents into running arbitrary commands.

Aug 10, 2026
SN-2026-358CriticalOpen

Storm-1175 Exploits N-able N-central Flaw to Deploy StormEncryptor Ransomware

China-linked threat actor Storm-1175 is exploiting CVE-2026-18577 in N-able N-central RMM tools to deploy custom StormEncryptor ransomware.

Aug 10, 2026
SN-2026-357CriticalMitigated

Sandworm Hackers Pivot via Private APN to Sabotage Second Polish Energy Facility

Russian threat actor Sandworm leveraged a private cellular APN to pivot from a wind farm into a Polish combined heat and power plant's OT network.

Aug 10, 2026