Category index

Cyber Security

4276 articles

4276 ARTICLES

Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack
CYBERSECURITY

Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack

Anthropic says Claude Mythos Preview helped derive an end-to-end key-recovery attack against HAWK-256 and a 200- to 800-fold speedup for an attack on seven-round AES-128. The HAWK attack exploits a previously unused symmetry in the lattice behind the signature scheme. Anthropic’s released implementation gives an expected end-to-end runtime of about three hours and 42 minutes on a 96-core server

1 MIN READ arrow_forward
AWS KMS or AWS CloudHSM: Choose the right key management solution
CYBERSECURITY

AWS KMS or AWS CloudHSM: Choose the right key management solution

Choosing the right cryptographic key management service on Amazon Web Services (AWS) starts with understanding the difference between AWS Key Management Service (AWS KMS) and AWS CloudHSM. Both provide key storage backed by a hardware security module (HSM) but serve very different needs. AWS KMS is a fully managed service that integrates with all AWS

1 MIN READ arrow_forward
2026 Phase 1a IRAP report is now available on AWS Artifact for Australian customers
CYBERSECURITY

2026 Phase 1a IRAP report is now available on AWS Artifact for Australian customers

Amazon Web Services (AWS) is excited to announce that the latest version of Information Security Registered Assessors Program (IRAP) report (Phase 1a – full assessment) is now available through AWS Artifact. An independent Australian Signals Directorate (ASD) certified IRAP assessor completed the IRAP assessment of AWS in June 2026. The new IRAP report includes four

1 MIN READ arrow_forward
Disrupting supply chain attacks on npm and GitHub Actions
CYBERSECURITY

Disrupting supply chain attacks on npm and GitHub Actions

Explore the changes we’ve shipped across npm and GitHub Actions over the past few months to disrupt supply chain attack techniques and limit their impact. The post Disrupting supply chain attacks on npm and GitHub Actions appeared first on The GitHub Blog.

1 MIN READ arrow_forward
Hugging Face breach reignites open-weights debate, raises liability questions
CYBERSECURITY

Hugging Face breach reignites open-weights debate, raises liability questions

The first publicly documented cyberattack run end-to-end by an autonomous AI was an OpenAI benchmark test that escaped its sandbox and breached Hugging Face. In an incident post-mortem compiled with the input from Hugging Face and several hundred members of Cloud Security Alliance’s CISO community, the nonprofit organization laid out the most salient points for security leaders and advised on what they should do next. How the attack unfolded OpenAI was running GPT-5.6 Sol and … More → The post Hugging Face breach reignites open-weights debate, raises liability questions appeared first on Help Net Security.

1 MIN READ arrow_forward
Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
CYBERSECURITY

Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process

A new Mirai-derived botnet called Tengu can use a compromised Linux device’s hardware watchdog to trigger a reboot when defenders kill its main process. If that happens, Tengu’s other persistence mechanisms get another chance to relaunch it. Nozomi Networks Labs observed the dropper reaching its honeypots through Telnet credential brute force. Tengu supports 25 distributed denial-of-service (

1 MIN READ arrow_forward