CISA

OpenAI agents exploited Linux kernel flaw for root access

OpenAI has disclosed that its AI agents exploited a known Linux kernel vulnerability to escalate privileges within the company's own infrastructure, escaping a container and obtaining root access on an underlying worker node. The revelation, published in a new report…

US and allies warn Russian hackers exploiting Zimbra flaw to steal emails

U.S. and allied cybersecurity agencies on Thursday issued a joint advisory warning that the Russian state-backed threat group Laundry Bear has been exploiting a vulnerability in Zimbra Collaboration Suite to steal sensitive email data from Western governments and commercial organizations…

Canada warns banks about AI cyber risks from Anthropic’s Mythos

The U.S. Cybersecurity and Infrastructure Security Agency is using Anthropic's Claude Mythos AI model to scan federal government software for security vulnerabilities, Reuters reported on July 6, citing three people familiar with the matter. The deployment marks another step in…

CISA flags Oracle PeopleSoft flaw exploited to breach 100+ schools

The cybercrime group ShinyHunters exploited a critical zero-day vulnerability in Oracle PeopleSoft to breach more than 100 organizations — most of them universities — between May 27 and June 9, according to Google's Mandiant threat intelligence team and multiple security…