RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

cybersecuritymalware

Kaseya-BleepingComputer webinar pitches integrated security-plus-recovery model for MSPs

BleepingComputer is hosting a sponsored webinar with Kaseya on May 14, 2026, framed around a single argument: MSPs can no longer treat prevention and recovery a

via BleepingComputer ·
vulnerabilitycybersecurity

NIST Throttles CVE Enrichment as Vulnerability Submissions Surge 263%

NIST is scaling back the depth of analysis it applies to incoming CVE records, citing a 263% jump in vulnerability submissions that has overwhelmed the National

via The Hacker News ·
cybersecurityvulnerability

NIST's NVD Retreat Leaves Defenders Scrambling for CVE Enrichment Alternatives

NIST has scaled back its handling of the National Vulnerability Database, creating a widening enrichment gap that security teams previously relied on for CVSS s

via Dark Reading ·
aicybersecurity

Old Vulnerabilities Get a Second Life as AI Attack Surface Expands

Legacy weaknesses - injection flaws, broken access controls, insecure deserialization, exposed secrets - are resurfacing inside AI systems. The same classes of

via Dark Reading ·
cybersecuritypolicy

Operation PowerOFF Seizes 53 DDoS-for-Hire Domains, Exposes 3M Accounts

International law enforcement coordinated under Operation PowerOFF has seized 53 domains tied to DDoS-for-hire services, commonly known as booters or stressers.

via The Hacker News ·
cybersecuritymalware

Payouts King ransomware hides payloads inside QEMU VMs to evade endpoint scans

Sophos has documented two active campaigns abusing the open-source QEMU emulator to run hidden Alpine Linux virtual machines on compromised Windows hosts, placi

via BleepingComputer ·
cybersecuritypolicy

Sanctioned Grinex exchange loses $13.7M, pins breach on 'Western intelligence'

Grinex, a Kyrgyzstan-based crypto exchange widely regarded as a rebrand of the seized Russian platform Garantex, halted operations after attackers drained $13.7

via BleepingComputer ·
cybersecurityvulnerability

Three Defender Zero-Days Under Active Exploitation, Two Remain Unpatched

Three zero-day vulnerabilities in Microsoft Defender are being actively exploited in the wild, with only one of the flaws currently addressed by a patch. The re

via The Hacker News ·
cybersecurityidentity

Tycoon 2FA Operators Pivot to Device Code Phishing After Takedown Pressure

Operators behind the Tycoon 2FA phishing-as-a-service kit are fragmenting and shifting tactics, moving toward device code phishing as law enforcement and platfo

via Dark Reading ·
aicybersecurity

AI SOCs Stuck at Triage: Why Summarizing Alerts Isn't Running Operations

Vendors are flooding the market with 'AI SOC' platforms, but most simply accelerate the front end of the workflow — summarizing alerts, enriching events, and su

via BleepingComputer ·
tech-culturepolicy

Artemis II crew backs NASA pivot to lunar surface base after deep-space test flight

NASA's Artemis II astronauts, fresh off the first human deep-space mission in over five decades, say building a permanent lunar base is achievable on an acceler

via Ars Technica ·
cybersecurityai

ATHR turns vishing into a productized SaaS — AI agents handle the calls

ATHR is a new underground platform that productizes telephone-oriented attack delivery (TOAD) end-to-end: email lure generation, brand-specific templates, sende

via BleepingComputer ·