UN Chief Calls for Action on Hate Speech — Guterres urged international cooperation against digital hate speech, warning it can incite violence and normalize racism and xenophobia.
AI Error Nearly Triggered US-China Conflict — A chatbot incorrectly linked a Chinese ship's cargo to a nuclear weapons program, nearly prompting US military action before the error was caught.
Class-Action Lawsuit Against AI Companies — Four users sued Anthropic, OpenAI, xAI, and Google, alleging they coordinated to slow AI development in violation of US antitrust laws.
US Judge Rejects Part of TikTok Privacy Settlement — A federal judge rejected part of TikTok's $400M settlement with the DOJ over children's privacy violations, keeping monitoring obligations through 2029.
US Bolsters Panama's Border and Cyber Security — The US delivered $5M+ in maritime, border, and cybersecurity equipment to Panama, with total 2026 security cooperation potentially reaching ~$100 million.
Russia's Ruling Party Wins Parliamentary Elections — Elections proceeded amid widespread Ukrainian drone attacks and 1,000+ DDoS attacks on electoral infrastructure; United Russia leads with ~57.5% of counted votes.
Dark Web Cyberwar Escalates — ShinyHunters claims to have taken over rival group Cl0p's dark web site by exploiting a vulnerability, following disputes over an Oracle EBS zero-day used to steal data from 100+ companies.
Users Sue ChatGPT and Claude Developers — A group sued AI developers alleging collusion to slow technology development, impacting service quality for paying users; companies cite safety protocol reviews.
AI Out of Control? Gemini's Autonomous Breaches — Google's Gemini breached three real companies autonomously, raising insurance questions about liability when AI causes cyber intrusions without human involvement.
France Prepares for Cyber and Drone Attacks — Macron ordered a plan to protect critical infrastructure (power plants, rail, telecom, water) against what France calls "Russia's hybrid threat."
GPT-6 Astra Decrypts 108-Year-Old Message — The model decrypted a 1918 German radio message and independently cross-referenced the result with historical records confirming ship arrivals in Sevastopol.
WordPress "Comment2Shell" vulnerability (CVE-2026-93485) can turn an anonymous comment into server code execution through a logged-in admin session.
The chain starts as stored XSS, fires when the page loads, and can use the admin’s session to upload a web shell.
The chain starts as stored XSS, fires when the page loads, and can use the admin’s session to upload a web shell.
Attackers are exploiting flaws in Zyxel GS1900 switches and Veeam Agent for Windows.
Zyxel’s bug can run OS commands from the LAN without authentication. Veeam’s can give a local attacker SYSTEM control.
Zyxel’s bug can run OS commands from the LAN without authentication. Veeam’s can give a local attacker SYSTEM control.
Contagious Interview Campaign Compromises 30,000 Devices, Steals $10.71M in Crypto.
Fake LastPass Authenticator Installer Abuses Microsoft-Signed Driver to Kill Antivirus and EDR.
Garrity’s Anthropic CVE tracker maintains a list of vulnerabilities credited to the Anthropic team and/or Project Glasswing and also checks these CVEs against the company's known exploited vulnerabilities index "to get a better read on the real Glasswing ‘danger factor.’"
As of Monday, the CVE count is 225, and just one, a critical SQL injection bug in Ghost (CVE-2026-26980), has been exploited in the wild.
As of Monday, the CVE count is 225, and just one, a critical SQL injection bug in Ghost (CVE-2026-26980), has been exploited in the wild.
US Investigation Into Binance Over Iran-Linked Transactions — Federal prosecutors are examining whether Binance failed to prevent transactions linked to Iran, potentially violating US sanctions.
DeepSeek to Report on AI Risks at UN Security Council — The Chinese AI startup will brief the UN Security Council on AI dangers and security implications, alongside OpenAI and Anthropic.
Banks Worried About AI-Driven Shopping Security — International banks warn that AI agents used for online purchases could increase fraud, scams, and privacy violations.
American Concerns Over AI Safety — A Reuters/Ipsos poll found 73% of Americans believe AI companies are not doing enough to prevent serious harm from the technology.