Legal AI solutions provider LexisNexis shut down Diligence, Newsdesk, and Metabase API data services following a cyber attack on a managed third-party vendor.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
In what is being called the first cyber attack of its type, autonomous AI agents were used to map a score of Taiwan government systems and crack 85 accounts. While there has been no formal attribution as of yet, evidence points strongly to an overseas origin and likely to hackers based in China.
A cyber attack hit the northern California city of Suisun, forcing authorities to declare a state of emergency and shut down public services for at least a week.
A massive supply chain attack on LiteLLM open-source AI gateway has exposed the authentication secrets of over 2,500 organizations and more than 434,000 CI/CD pipelines.
Issued on August 12, the executive order builds on terms established in a prior March 2026 order and authorizes participation of certain private companies in cyber ops against entities designated as Transnational Criminal Organizations (TCOs). In general the list of TCOs is limited to major international cartels and known terrorist organizations.
The Clop ransomware gang compromised 50+ organizations through the Windchill and FlexPLM critical vulnerability CVE-2026-12569 and stole sensitive data, including blueprints.
A data breach affecting health information technology company MyDr has affected half of the Polish population after hackers compromised its entire IT infrastructure.
Researchers with Varonis have disclosed a flaw they call "CoSnitch" that allowed Microsoft Copilot to be tricked into giving up private information while being pressed to explain the technical reasons for not being able to execute a particular prompt.
A hacker is selling multiple employee databases belonging to several Fortune 500 companies, including Tata Consultancy Services, General Electric, and McDonald's.
OpenAI is promising enhanced security safeguards and a pause on development for a period of "reinforcement" after internal findings indicate its upcoming model Astra has crossed "critical cybersecurity capability" thresholds.










