An Exchange security vulnerability allows emails to be sent from arbitrary sender addresses when hybrid configurations with third-party mail servers are used.
Anthropic offers Fable 5, a Mythos variant with safety filters for public use, while Project Glasswing participants gain access to less restricted Claude Mythos 5, accompanied by new federal rules controlling frontier AI models.
Anthropic publicly releases the more powerful Claude variant Fable 5, but automatically routes potentially dangerous cybersecurity requests to a weaker model.
A developer deliberately placed sabotage code in jqwik 1.10.0 to manipulate AI agents into deleting code, revealing a new security vulnerability in the open-source software supply chain.
Microsoft restored some GitHub repos after 73 open-source projects were compromised with information-stealer malware, while keeping others offline as the security investigation continues.
Deutsche Telekom and Palo Alto Networks jointly operate a security platform on European infrastructure with local key management to combine cyber defense and data sovereignty.
Cybercriminals compromised an account on Tchap and stole data from over 73,000 accounts and 650,000 messages; the attacker cited social engineering, exposed LDAP credentials, and missing token validation during file downloads as causes.
The planned BSIG amendment mandates executive leadership training in NIS2 requirements and establishes cybersecurity governance as a legally binding management responsibility.