Involvement in cybercrime is no longer a peripheral issue but has emerged as a significant social movement among young people. While the average age at arrest for general crimes in the United States is 37, the average age at arrest for cyber-related offenses drops significantly to 19. In the United Kingdom, the National Crime Agency (NCA) reports the average age is even lower, at just 17 years old. This shift is evidenced by high-profile incidents, such as the 2025 attack on Marks and Spencer
All Articles (3171)
Some believe that the promise and pitfalls of artificial intelligence are beginning to emerge quickly. One recent mixed-case consequence of relying on AI resulted in dissention. This happened after a researcher was involved with an interesting initiative to try and get several AI companies in talking to each other and agree on ways to cooperate; all this with the goal of possibly benefiting both the AI industry and overall society. Below is an opinion piece regarding Anthropic’s Claude reply
Cyber risk intelligence provider KYND has issued a warning that insurers could be unknowingly accumulating "silent AI" exposure across their portfolios. Businesses are currently adopting artificial intelligence technologies at a pace that far exceeds their disclosures to underwriters. This lack of visibility means that AI-related risks are often excluded from assessment during the initial underwriting process. In its latest white paper, "The The Wild West of AI," KYND argues that while the in
A group of 26 current and former Meta employees has filed legal proceedings against the social media corporation, alleging that the company deployed an artificial intelligence system to identify and select workers for redundancy during a 10% workforce reduction. The lawsuit raises significant questions regarding the appropriate use of AI in employment decisions and potential discrimination in automated selection processes. The employees contend that Meta's AI system made determinations about t
AgentBaiting is a term that has been recently coined by Island researchers in the midst of uncovering a substantial FakeGit campaign. It describes a technique that involves targeting AI coding assistants or other autonomous software agents instead of targeting developers directly.
With the integration of AI assistants in the world of software development, coding agents are often tasked with locating libraries, plugins, or Model Context Protocol (MCP) servers that provide specific functionality
Last Sunday afternoon, while the rest of the world’s eyes were glued to the World Cup final, an AI model resolved a problem that had tortured mathematicians since 1939. By the time Kevin Buzzard woke up in London the next morning, the result had been verified. By lunch, it was all his peers at the Imperial College London’s pure mathematics department could talk about; at the time of writing, Anthropic employee Levant Alpöge’s post announcing the result has drawn more than 20 million views on X
An email that appears to contain a shipping document, payment request, or business proposal can infect a Windows computer, even if one of its main components has a .ttf extension.
FortiGuard Labs has named the operation “TTF Trap” after finding widespread phishing activity that uses disguised font files and low-detection Lua loaders. The campaigns have been active since late March 2026, although researchers traced early versions of the loader to October 2025. Fortinet rates the threat as High
When a completely autonomous AI agent launched a massive cyberattack against the major artificial intelligence platform Hugging Face, the company’s security team quickly discovered that their defense tools were fundamentally broken. According to a recent report from Fortune, the open-source hub was forced to utilize Chinese technology to analyze the unprecedented breach after leading United States models refused to process the malicious data. A statement from Hugging Face confirmed that the 10
A hacker recently claimed to have exfiltrated tens of gigabytes of internal development data allegedly belonging to global professional services firm Accenture. The incident became public when a threat actor on the PwnForums forum boasted of compromising the company and stealing 35 gigabytes of data. According to the hacker, the stolen information includes Azure access keys, tokens, configuration files, RSA and SSH keys, and internal source code. As proof of possession, the actor posted a scr
Below is a NATO critique of the current maritime ports held or controlled by China. Of note is NATO identifying the seriousness of the cyber vulnerabilities in these ports. The paragraph titled: The Digital Port, saying “The most critical component of a modern port may not be the quay or the crane. It could be the terminal’s operating system.”
A commercial port is not a military base. Yet, in a European security crisis, it can become almost as important. Tanks, ammunition, fuel, spare parts
Almost every facet of our digital environment is transforming as artificial intelligence advances. It is enhancing government services, updating business, accelerating scientific research, changing healthcare, and generating new economic opportunities. AI is also drastically altering the landscape of cyber threats. It has developed into one of the most potent offensive and defensive tools in cybersecurity. In the end, cybersecurity is all about resilience. Technology is important, but resili
Artificial Intelligence is now fundamentally integrated into the planning and execution of cyber-attacks. Europol’s 2026 threat assessment report identifies the combination of automation and AI as a defining feature of modern criminal ecosystems. AI vulnerabilities and AI-enabled fraud are becoming primary concerns for global organizations. Phishing demonstrates this transition clearly. AI-generated messages are increasingly personalized and context-aware, accurately mirroring internal corpo
The National Cyber Security Center (NCSC), alongside the FBI, NSA, and sixteen other international partners, has issued a joint advisory for critical national infrastructure (CNI) sectors. The guidance urges organizations to improve defenses against Russian intelligence services, specifically FSB Center 16. This actor is actively scanning for vulnerable routers, exploiting well-known Cisco device flaws, weak SNMP passwords, and legacy protocols.[1]
In an expert comment, Ian Robinson, Chief Pro
In conflict zones and in regions that have seen prior warfare, small plastic objects shaped like maple seeds can remain active for years, hidden in grass, snow, or soil. These PFM-1 antipersonnel landmines, often called butterfly mines, are scatterable devices designed for wide-area dispersal rather than precise placement. Their plastic construction and surface or near-surface positioning makes them especially difficult for conventional demining tools to locate.
Antipersonnel landmines are smal
Fairlife has temporarily stopped producing its milk in the United States after a cyber attack, the company said. A portion of Fairlife's systems were accessed by an unauthorized third party in a "ransomware event," parent company Coca-Cola said in a statement on 16 July.[1]
The milk brand said it notified law enforcement and is continuing to investigate the incident, but has suspended production in the United States. Fairlife also said its product quality and safety have not been affected. "T
A regional court in Munich has determined that Google bears legal responsibility for statements produced by its artificial intelligence within search results. This follows a legal case in which the AI generated false allegations against two publishers based in Munich. This unprecedented decision serves as a significant signal across the globe; the judiciary is reminding the platform of its duties in shaping the modern information environment. Google has launched an appeal against the verdict.
Two young men have been sentenced to five years and six months in prison each for the cyber-attack against Transport for London (TfL) after the judge found their actions were motivated in part by “selfish bravado” rather than purely financial gain.
Owen Flowers, 18, and Thalha Jubair, 20, were charged with committing unauthorized acts against TfL under the UK’s Computer Misuse Act (CMA). On 22 June 2026, they pleaded guilty to carrying out the attack in what was only the second criminal prosecu
Telegram’s widely used t.me short-link domain stopped resolving worldwide after the .me registry placed the domain under serverHold, cutting off browser access to links for profiles, channels, groups, bots, and individual posts. The outage does not appear to affect Telegram’s messaging service itself. Users who are already signed in can continue using the app, while links beginning with t.me fail because the domain is not resolving through the Domain Name System, or DNS.
WHOIS records reviewed
In our connected world, people rely on cryptographic libraries to keep messages, transactions, and identities safe from prying eyes and to ensure that the messages can be trusted. When a library carries the label of formal verification, many assume that a computer has exhaustively confirmed every detail of its behavior. A close examination of several widely adopted libraries shows that this assumption often rests on a less complete foundation than the label suggests.[1]
Formal verification app
Yesterday, Microsoft released software updates to plug at least 570 security holes in its Windows operating systems and other software, almost triple the number of vulnerabilities the software giant fixed in its record-smashing Patch Tuesday release last month. Microsoft attributed the burgeoning patch counts to vulnerability discoveries aided by artificial intelligence.[1]
Nearly 60 of the bugs quashed in July’s Patch Tuesday earned a “critical” severity rating, meaning miscreants or malware c