Dark Reading Articles

Updated 1 min ago · 50 articles from Dark Reading

Dark Reading Sep 1, 8:13 PM

AI Model Evaluator METR Hit by Credential Theft, Probing

In one attack, threat actors stole an API key that ultimately led to the consumption of $600,000 in public AI model credits for the security nonprofit.

Dark Reading Sep 1, 1:56 PM

ClickFix Campaign Compromises 31 Orgs, Abuses Polygon Blockchain

The campaign uses EtherHiding to dynamically update its command-and-control server, abusing the blockchain as an attacker-controlled address book.

Dark Reading Aug 31, 9:08 PM

Anthropic Users Hit by Infostealer Attacks, Session Thefts

A threat actor used a variety of infostealers to collect session information and access Claude accounts belonging to an unknown number of users.

Dark Reading Aug 31, 8:25 PM

'TerminalFix' Campaign Weaponizes PowerShell for Enterprise Attacks

The ClickFix-style campaign features a sophisticated, multistage attack chain that includes reverse tunnels into victim organizations' networks.

Dark Reading Aug 31, 8:09 PM

The Guardrails Debate: Security Researcher Changes His Mind

While guardrails are critical, as evidenced by recent high-profile incidents, defenders need help staying ahead of attackers who do not play by the rules.

Dark Reading Aug 31, 5:34 PM

AI Model Rules Are Not Security Controls

OpenAI's Hugging Face attack postmortem shows agents don't care about rules — they need strong controls.

Ad
Dark Reading Aug 28, 8:19 PM

Hundreds of OpenAI Agents Invaded Hugging Face Servers

The Hugging Face incident was bigger and worse than previously thought, with approximately 700 agents collaborating on a sophisticated, multistage attack.

Dark Reading Aug 28, 6:25 PM

Offensive Security Investments Surge as AI Threats Increase

Omdia's Theresa Lanowitz talks with the Dark Reading News Desk about the potential — and risks — of using agentic AI for penetration testing, red teaming, an...

Dark Reading Aug 28, 2:00 PM

You Need Cyber Deception for OT

The frustrating reality after an OT cyberattack: no data, no trail, and no history.

Dark Reading Aug 28, 1:30 PM

Defining an AI Kill Switch Is Hard, but Necessary

Proposed legislation could mandate that companies be able to "throttle, suspend, or shut ... down" AI agents, but how and when to do that remain open questions.

Dark Reading Aug 28, 1:00 PM

The Vulnpocalypse Is Repricing the Bug Bounty Economy

The surge in AI-powered vulnerability reports is driving down bug bounty prices, and that could spell trouble for independent researchers.

Dark Reading Aug 27, 7:31 PM

Chinese Routers Sold Worldwide Contain Backdoors

An untold number of ZBT routers sold around the world as white-label products come with several implants built by the manufacturer.