SonicWall reports exploited SMA1000 zero-days and releases fixes
SecurityWeek reported that SonicWall urged SMA1000 customers to patch two zero-day vulnerabilities the vendor says have been exploited. CVE-2026-83548 is a pre-authentication SSRF flaw in the Appliance Work Place interface that ca...
Langflow flaw is being exploited to harvest cloud and AI credentials
Threat actors are exploiting CVE-2026-0768, an unauthenticated remote-code-execution flaw in Langflow's custom-component code validator, to steal credentials, tokens and keys, according to VulnCheck observations reported by Bleepi...
OpenAI says Astra reached its critical cyber-capability threshold
OpenAI says its forthcoming Astra model has reached the company's threshold for critical cyber capabilities, defined as independently finding and exploiting previously unknown vulnerabilities in real-world software. The company p...
CrowdStrike introduces SafeMind agentic cybersecurity system
CrowdStrike announced SafeMind, an agentic cybersecurity system that ships natively in its Falcon platform and uses NVIDIA Nemotron models alongside CrowdStrike's custom harnesses. NVIDIA said SafeMind was tested in an offensive-d...
OpenAI plans restricted launch of Astra cybersecurity model
OpenAI plans to launch Astra, a cybersecurity model whose most advanced capabilities will initially be limited to a select group of testers, Forbes Australia reported. The company said Astra can find unknown cybersecurity flaws an...
AWS makes Claude Fable 5.1 available through Bedrock
AWS said Claude Fable 5.1 is available today through Amazon Bedrock and Claude Platform on AWS, including US Geo and Global inference profiles. AWS describes the model as suited to coding, scientific research and enterprise workfl...
