PentesterFlow is a new open-source AI tool for command lines. It is made for penetration testers and bug bounty hunters. It helps automate the work from finding problems to reporting them, while still allowing analysts to oversee the process. Most AI security tools have fake findings, weak context memory, and …
Read More »Anthropic Unveils Claude Security Plugin for Code Flaw Scanning
Anthropic launched the Claude Security plugin in beta. This tool uses AI to find serious security flaws in Claude Code. Developers can use it to spot issues before they release their work. The tool allows teams to check recent changes or whole repositories from the terminal, using the same Claude …
Read More »India to built Mythos-like AI model “Sarvam AI” and “BharatGen” assigned
India is speeding up its work to make homegrown AI models for cybersecurity. These models will help protect important digital systems and lessens the need for foreign AI tools. The Ministry of Electronics and Information Technology (MeitY) has asked top Indian AI projects, Sarvam AI and BharatGen, to develop strong …
Read More »“Bad Epoll” 0-Day Vulnerability Allows Root Access on Linux Servers, Android Devices
A new Linux flaw called “Bad Epoll” (CVE-2026-46242) lets regular users get root access on Linux servers, desktops, and Android devices. They can do this by taking advantage of a race condition and a use-after-free (UAF) in the epoll system of the kernel. Bad Epoll is a UAF vulnerability in …
Read More »Singapore major data centres, cloud providers could incur fine up to $1m
Major data center and cloud service providers might have to pay a fine of up to $1 million or up to 10 percent of their yearly revenue in Singapore, whichever is more, if they do not follow cybersecurity, business continuity, and incident reporting rules in new proposed laws. The Digital …
Read More »Nepal Unveils First “Hall of Fame” for Ethical Hackers
Nepal has started a ‘Hall of Fame’ program to honor cybersecurity researchers who safely report security flaws in government digital systems. This is the first government-supported recognition for these researchers in Nepal. The project started with Devs.Nepal, a new online platform created by the Office of the Prime Minister and …
Read More »Azure CLI Password Spray Impacts 78 Microsoft Accounts in 81M+ Attempts
Cybersecurity researchers have warned of a “massive, ongoing, automated password spray attack” aimed at Microsoft’s Azure command-line interface (CLI), compromising dozens of accounts in the process. According to Huntress, the activity comes from an IPv6 address range (2a0a:d683::/32) managed by the internet provider LSHIY LLC (AS32167). “Between June 12 and …
Read More »Linux Unveils New Open Source Security Project “Akrites” For (OSS) Ecosystem
The Linux Foundation said on Thursday that they are starting a new project to fix flaws in open source software (OSS) more effectively. Akrites sets up a shared Security Incident Response Team (SIRT) to work together on finding, fixing, and sharing OSS security problems. If it sounds familiar, it should. Less …
Read More »Anthropic Confirms US Infrastructure Redeployment of Claude Mythos 5
Anthropic said that Claude Mythos 5, its strongest AI security model, will be sent back to some U.S. orgs that manage and protect important systems. This comes after a government review that started on June 12, 2026. The model showed a unique skill to find software problems on its own, …
Read More »Hackers Target Cloudflare-Hosted AWS Domains to Steal Console Logins
A complex phishing attack targets AWS console users by misusing Cloudflare-hosted websites to steal login details. Each domain had a nearly identical copy of the AWS login page. It used a server-driven process that switched to email, SMS, or authenticator-app MFA challenges, allowing for real-time collection of second factors. The phishing …
Read More »
InfoSecBulletin Cybersecurity for mankind