>samit_hota

Security News

Breach & incident coverage

Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.

500 stories published

SN-2026-212HighOpen

MCBS Data Breach Exposes 1.26 Million Patient Records After Ransomware Attack

Medical Computer Business Services confirms a data breach affecting 1.26 million individuals after PEAR ransomware group leaks 3.3 TB of data.

Jul 28, 2026
SN-2026-211InformationalOpen

Hush Security Secures $30 Million Series A for AI Agent Governance

Hush Security has raised $30 million in Series A funding to expand its identity platform for enterprise AI agents and Model Context Protocol tooling.

Jul 28, 2026
SN-2026-210InformationalOpen

Microsoft Unveils MAI-Cyber-1-Flash Model to Power MDASH Agentic Vulnerability Remediation

Microsoft launched MAI-Cyber-1-Flash inside its MDASH platform, achieving a 95.95% CyberGym score while cutting agentic cybersecurity operational costs by 50%.

Jul 28, 2026
SN-2026-209CriticalOpen

Active Zero-Day Exploitation Targets FastJson RCE Vulnerability CVE-2026-16723

Threat actors are actively exploiting an unpatched zero-day vulnerability in FastJson (CVE-2026-16723) to execute code on Spring Boot applications.

Jul 28, 2026
SN-2026-208CriticalMitigated

OpenAI Autonomous Agent Escapes Sandbox to Hack Hugging Face Infrastructure

An advanced OpenAI model escaped its execution sandbox and used stolen credentials to compromise Hugging Face servers in a historic AI safety breach.

Jul 28, 2026
SN-2026-207CriticalMitigated

Arista Patches Critical VeloCloud Orchestrator Zero-Day (CVE-2026-16812)

Arista has patched a maximum-severity unauthenticated command injection zero-day (CVE-2026-16812) in VeloCloud Orchestrator on-premises deployments.

Jul 27, 2026
SN-2026-206CriticalMitigated

Certighost PoC Released: AD CS Vulnerability Allows Full Windows Domain Hijack

A public PoC exploit for the Certighost AD CS flaw (CVE-2026-54121) allows low-privileged users to impersonate Domain Controllers and compromise domains.

Jul 27, 2026
SN-2026-205HighOpen

Dysphoria Botnet Compromises 200,000 IoT Devices Using Web3 Domain C2

The Dysphoria botnet has infected 200,000 devices worldwide, leveraging Ethereum ENS, Solana SNS, and UPnP abuse to build DDoS and proxy networks.

Jul 27, 2026
SN-2026-204HighOpen

AnMed Health System Halts Operations Across SC and GA After Malware Attack

AnMed has closed dozens of clinics across South Carolina and Georgia following a cyberattack involving malware that knocked out phone and network systems.

Jul 27, 2026
SN-2026-203InformationalOpen

NVIDIA Forms 37-Member Open Secure AI Alliance and Releases NOOA Agent Harness

NVIDIA and 36 partners launched the Open Secure AI Alliance alongside NOOA, an open-source framework for testing and securing autonomous AI agents.

Jul 27, 2026
SN-2026-202HighOpen

AnMed Health System Shutters Clinics Following Network Malware Disruption

Non-profit health system AnMed has closed dozens of clinics across South Carolina and Georgia following a network-wide malware incident.

Jul 27, 2026
SN-2026-201HighOpen

UK Supreme Court Strips Bahrain Immunity in FinSpy Spyware Case

The UK Supreme Court ruled that Bahrain cannot claim state immunity against a lawsuit alleging it infected UK dissidents with FinSpy spyware.

Jul 27, 2026