CISA has put the Fortinet FortiOS vulnerability CVE-2025-68686 in its list of known exploited flaws after ongoing attacks. The flaw impacts Fortinet FortiOS, the system found in FortiGate firewalls and other Fortinet security tools. It is seen as a risk of sensitive data being shown to someone not allowed, linked …
Read More »Sam Altman Claims AI “singularity” has arrived, Where Systems Improve by Themselves
OpenAI’s CEO Sam Altman says that AI has reached a big milestone. The technology can now make itself better, leading to fast growth that might be hard to manage. Altman said the “singularity” is a big event that can bring great benefits to society, seeming to dismiss worries from critics about …
Read More »Shinyhunters claimed and set deadline to publish E&Y data
ShinyHunters has publicly claimed responsibility for the Ernst & Young (EY) data breach. The group posted a message on their dark web site. It says they will release all stolen data by July 31, 2026, unless EY talks to them before the mentioned date. EY shared details about the incident …
Read More »Microsoft, NVIDIA and CrowdStrike Initiate Alliance for Open-Source AI Security
Nvidia and over 30 tech firms started a group on Monday to create open-source AI tools for protecting against cyber threats. They are getting involved in the debate about the safety of free AI models. The Open Secure AI Alliance has members like Microsoft, IBM, Palantir, CrowdStrike, Cisco, Dell, and …
Read More »Google Search Results Reportedly Show Claude AI Shared Chats
Claude’s share links from Anthropic showed up in public search results. This raised new privacy worries for users who shared private talks. A Reddit post this weekend showed that many Claude AI chats could be found on Google. People searching for site:claude.ai/share could see talks about legal advice, engineering projects, …
Read More »Jailbreak works against AI Models GPT-5.6, Claude Opus 5, and Fable, Claims Researcher
A famous AI red team expert claimed developing a universal jailbreak that can work against top large language models, like the very secure GPT-5.6 Sol, Claude Opus 5, and Fable. In a public post on X, Pliny the Liberator described the technique as effective “on ALL models” and across every …
Read More »Researchers found security flaws in every script generated by ChatGPT, Copilot, and Gemini
A new study from Beacom College shows that all automation scripts produced by top AI models like ChatGPT, Microsoft Copilot, and Google Gemini have security flaws that can be exploited. Researchers wanted to check how safe AI-generated code is, without bias from the prompts. They used the same prompts for …
Read More »“PentestCode” AI Agent Automating Penetration Testing with 18 Tools
A new free tool is adding AI helpers into security work. PentestCode is a version of OpenCode made just for penetration testing. It uses security tools, checks the results, and makes smart choices all from a terminal, needing very little help from people. The main idea of the tool is …
Read More »How Hacker Compromise AWS Cloud Environment Using AI in 72 Hours
A major AWS attack shows how attackers with AI can connect known cloud strategies to go from first access to complete control in about 72 hours, not with new tools, but with very fast and organized actions. According to Sygnia’s investigation, the threat actor got access to an AWS account …
Read More »Mycelium Framework: First AI-as-a-Service Botnet
A new cybercrime ad is catching attention in the security world. It talks about a botnet that doesn’t just get into computers; it makes them rented AI tools for other criminals to use. The system named Mycelium is sold on a hidden website as a bundle for hacking into computers …
Read More »
InfoSecBulletin Cybersecurity for mankind