Hundreds of MCP Servers Expose AI Models to Abuse, RCE

The servers that connect AI with real-world data are occasionally wide-open channels for cyberattacks.

darkreading – ​Read More

Ransomware attack contributed to patient’s death, says Britain’s NHS

A cybercrime group’s attack against a London-based pathology service last year was one of the “contributing factors” in the death of a patient, U.K. officials said.

The Record from Recorded Future News – ​Read More

Enterprises must rethink IAM as AI agents outnumber humans 10 to 1


Identity is the essential control plane for agentic AI security, redefining enterprise defenses amid rising credential-based breaches.Read More

Security News | VentureBeat – ​Read More

French police reportedly arrest suspected BreachForums administrators

Several suspects tied to the cybercrime site BreachForums have been arrested in France, according to a local news report, including alleged administrators known as ShinyHunters and Intelbroker.

The Record from Recorded Future News – ​Read More

Thousands of SaaS Apps Could Still Be Susceptible to nOAuth

New research suggests more than 10,000 SaaS apps could remain vulnerable to a nOAuth variant despite the basic issue being disclosed in June 2023.

The post Thousands of SaaS Apps Could Still Be Susceptible to nOAuth appeared first on SecurityWeek.

SecurityWeek – ​Read More

Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data Exposure

Cybersecurity researchers have detailed two now-patched security flaws in SAP Graphical User Interface (GUI) for Windows and Java that, if successfully exploited, could have enabled attackers to access sensitive information under certain conditions.
The vulnerabilities, tracked as CVE-2025-0055 and CVE-2025-0056 (CVSS scores: 6.0), were patched by SAP as part of its monthly updates for January

The Hacker News – ​Read More

Glasgow City Council impacted by ‘cyber incident’

The Glasgow City Council announced that it was affected by an incident “disrupting a number of online services and which may have involved the theft of customer data.”

The Record from Recorded Future News – ​Read More

XOR Marks the Flaw in SAP GUI

The company has patched two vulnerabilities in its Graphical User Interface that would have allowed attackers to grab data from a user’s input history feature.

darkreading – ​Read More

Ring’s new generative AI feature is here to answer your ‘who’s there?’ or ‘what was that?’ questions

Called Video Descriptions, the AI feature generates detailed descriptions of what your Ring camera sees and delivers it in your notifications.

Latest stories for ZDNET in Security – ​Read More

Ring cameras and doorbells now use AI to provide specific descriptions of motion activity

Ring gets a new AI-powered feature that offers users specific text descriptions of current motion activity.

Security News | TechCrunch – ​Read More