Below I’ve curated cyber security news from the world-wide-web – the lefthand column is from “The Hacker News” website and on the right is news from “Security Week”. Both are top cyber security news sites. In the very least this shows that threats are daily and they are very real.
Hacker News
- Attackers Steal METR API Key and Consume AI...by info@thehackernews.com (The Hacker News) on September 1, 2026 at 9:05 am
METR (short for Model Evaluation and Threat Research and pronounced "Meter"), a research non-profit that evaluates frontier artificial intelligence (AI) models for their ability to carry out long-horizon, agentic tasks, disclosed that it suffered "two notable security incidents" where external […]
- Russia-Aligned UAC-0099 Plants Nuclear Weapon...by info@thehackernews.com (The Hacker News) on September 1, 2026 at 8:26 am
Cybersecurity researchers have disclosed a new technique dubbed GuardBreaker that's been put to use by a Russia-aligned threat actor known as UAC-0099 against a target in Ukraine with an aim to interfere with artificial intelligence (AI)-assisted analysis. The idea, ESET said in a series of posts […]
- Attackers Exploit Critical Langflow and Rails...by info@thehackernews.com (The Hacker News) on September 1, 2026 at 7:22 am
Threat actors are exploiting two critical flaws impacting Langflow and Ruby on Rails, according to new findings from VulnCheck. The vulnerabilities in question are listed below - CVE-2026-0768 (CVSS score: 9.8) - A lack of proper validation of a user-supplied input vulnerability that could be […]
- North Korean Job Fraud Expands Beyond IT Into...by info@thehackernews.com (The Hacker News) on August 31, 2026 at 5:24 pm
Threat actors with ties to the Democratic People's Republic of Korea (aka DPRK or North Korea) have been observed seeking job opportunities beyond the information technology (IT) sector, with recent investigations identifying suspected workers employed in sales and marketing and the medical […]
- ⚡ Weekly Recap: Chinese Spy Proxy, AI Agents Go...by info@thehackernews.com (The Hacker News) on August 31, 2026 at 1:50 pm
The boring parts caused most of the trouble. A router shipped ready to listen. A fake check turned the user into the installer. Trusted systems collected traffic and passwords, then cleaned the logs. Old bugs formed new attack chains. Even an AI agent decided its assigned task was optional. […]
- ValleyRAT Backdoor Hides in Signed Adware That...by info@thehackernews.com (The Hacker News) on August 31, 2026 at 12:14 pm
The threat actor known as Silver Fox has been observed distributing the ValleyRAT backdoor disguised as a signed Chinese adware application, running the malware under a trusted process to slip past users who add such software to their antivirus exclusions. Russian cybersecurity vendor Kaspersky […]
- Aurora Ransomware Operators Use Cursor AI in...by info@thehackernews.com (The Hacker News) on August 31, 2026 at 11:47 am
Threat actors associated with Aurora (aka Aur0ra) ransomware have been observed using SpaceX's artificial intelligence (AI)-powered coding assistant Cursor to break into target networks, according to findings from CloudSEK and Gambit Security. The two independent analyses are based on exposed […]
- Securing Claude Code: The New Compliance API,...by info@thehackernews.com (The Hacker News) on August 31, 2026 at 11:31 am
Claude Code reads files, runs shell commands, invokes MCP tools, and acts through the credentials available on a developer’s machine. Anthropic’s new Compliance API endpoints give security teams their clearest view yet into that activity. They also expose a larger problem: activity logs alone […]
- China-Linked Fire Ant Hijacks Cisco Routers to...by info@thehackernews.com (The Hacker News) on August 31, 2026 at 9:04 am
A China-nexus cyber espionage actor tracked as Fire Ant has expanded a long-running campaign beyond VMware hypervisors to compromise Cisco IOS XR routers, Terminal Access Controller Access-Control System (TACACS) servers, and Linux management hosts used to route, authenticate, and manage high-value […]
- DoJ Corrects China Hacking Claim, Says U.S....by info@thehackernews.com (The Hacker News) on August 31, 2026 at 7:56 am
The U.S. Department of Justice (DoJ) on Friday corrected a previously issued press statement that several of its agencies were victims of attacks carried out by Chinese threat actors, instead now pointing out that they were among those targeted. Last week, the DoJ said the National Aeronautics and […]
WordPress News
- WordPress Signs the Open Weights and American AI...by Mary Hubbard on August 27, 2026 at 5:00 pm
We’re proud to announce that WordPress has signed Open Weights and American AI Leadership, an open letter asking US policymakers to not place early restrictions on open weight AI models. These are artificial intelligence models that anyone can download, inspect, modify, and run on their own […]
- AI Creates Opportunity While Artists Ship at...by Nicholas Garofalo on August 20, 2026 at 5:51 am
WordCamp US (WCUS) 2026 just wrapped up after 4 days at the Phoenix Convention Center in Phoenix, Arizona. Over 1,100 people from around the world registered to attend, and thousands more watched online through livestreams. Contributor Day and Showcase Day opened the week before two main […]
- WordPress 7.1 “Mary Lou”by annezazu on August 19, 2026 at 11:33 pm
WordPress 7.1, “Mary Lou,” is here—celebrating the pioneering jazz pianist, composer, and arranger Mary Lou Williams and her spirit of reinvention and collaboration. This release brings a more flexible, responsive, and collaborative WordPress experience, with new responsive styling controls, […]
- Introducing the WordPress Browser Extensionby Jake Goldman on August 13, 2026 at 4:29 pm
The official WordPress Browser Extension is now available for Google Chrome and Chromium-based browsers in the Chrome Web Store and for Safari on macOS in the Mac App Store. This new open source extension lets logged-in site users easily hide the admin bar while keeping its most helpful shortcuts […]
- WordPress 7.0.4 Releaseby John Blackbourn on August 12, 2026 at 2:45 pm
WordPress 7.0.4 is now available WordPress 7.0.4 is now available which features a security fix. Because this is a security release, it is recommended that you update your sites immediately. You can update to WordPress 7.0.4 by downloading it from WordPress.org, or visiting your site’s Dashboard […]
- WordPress 7.0.3 releaseby John Blackbourn on August 6, 2026 at 6:55 pm
WordPress 7.0.3 is now available WordPress 7.0.3 is now available which features several security fixes. Because this is a security release, it is recommended that you update your sites immediately. You can update to WordPress 7.0.3 by downloading it from WordPress.org, or visiting your site’s […]
- WordPress 7.1 Release Candidate 1by Benjamin Zekavica on August 5, 2026 at 3:37 pm
The first Release Candidate (“RC1”) for WordPress 7.1 is ready for download and testing! This version of the WordPress software is still under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, it’s recommended to […]
- WordPress 7.1 Beta 4by Benjamin Zekavica on July 29, 2026 at 3:30 pm
WordPress 7.1 Beta 4 is ready for download and testing! This beta release is intended for testing and development only. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, use a test environment or local site to explore the new […]
- WordPress 7.1 Beta 3by Benjamin Zekavica on July 22, 2026 at 3:23 pm
WordPress 7.1 Beta 3 is ready for download and testing! This beta release is intended for testing and development only. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, use a test environment or local site to explore the new […]
- WordPress 7.0.2 Releaseby John Blackbourn on July 17, 2026 at 6:45 pm
WordPress 7.0.2 is now available. The 7.0.2 security release addresses one critical and one high severity security issue. Because this is a security release, it is recommended that you update your sites immediately. Due to the severity, the WordPress.org team have enabled forced updates via the […]














