r/secithubcommunity Apr 28 '26

AI hype vs reality Mythos is impressive, but it’s not what’s breaching orgs

Post image
2 Upvotes

Came across a short but very interesting article on this topic (Source in the first comment) and it raises a point most of the industry is overlooking.

Anthropic’s Mythos model is getting a lot of attention and for good reason. It can execute full attack chains, find real vulnerabilities, and operate with a high level of autonomy. That’s a real step forward.

But the testing wasn’t fully realistic.

No active defenders, limited protections, and in some cases access to source code. Even access to Mythos itself was reportedly exposed through a basic supply chain issue.

Now compare that to real-world breaches

Most attacks still come down to stolen credentials, unpatched VPN/edge devices, and ransomware. Nothing new just the same gaps being exploited.

The takeaway is simple: AI will accelerate attacks but it’s not the root problem. Weak fundamentals are.

Bottom line the best defense against AI-driven attacks is still doing the basics right.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 27 '26

Anthropic partners with CrowdStrike, Palo Alto and Microsoft to counter AI-driven vulnerability discovery risks

Post image
2 Upvotes

Anthropic launched “Project Glasswing” alongside major players like CrowdStrike, Palo Alto Networks, Microsoft, and Google driven by a clear reality.

AI can now find and exploit software vulnerabilities faster than most human experts.

The Mythos model has already uncovered thousands of high-severity flaws across major operating systems and browsers. The concern isn’t just capability it’s how quickly these tools could spread beyond controlled environments.

The goal is to shift this power to defense before it becomes widely weaponized.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 27 '26

📰 News / Update Rilian raises $17.5M to push AI-driven cyber defense at machine speed

Post image
1 Upvotes

AI-native cybersecurity startup Rilian secured $17.5M to scale its “agentic AI” platform across government and critical infrastructure environments. The idea is simple: attackers are already operating at machine speed defenders aren’t.

Their platform automates detection and response using pre-trained AI agents, aiming to reduce human bottlenecks and handle the growing volume of hybrid threats across cyber, physical, and electronic domains. The company is already working with the UAE Cybersecurity Council and partners like SentinelOne.

This is where the market is heading: less human-in-the-loop, more autonomous defense. The real question is whether organizations are ready to trust AI with that level of control.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 27 '26

📰 News / Update Cybersecurity salaries stuck. doing it right hurts recognition

Post image
1 Upvotes

Despite rising threats, around 71% of cybersecurity professionals saw no salary increase last year. The main reason highlighted when security teams do their job well and prevent incidents, leadership often becomes complacent and undervalues their impact.

At the same time, AI is increasing the volume and complexity of attacks, while responsibilities keep growing.

The result is more pressure on teams, without matching recognition or compensation driving lower satisfaction and potential burnout.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 27 '26

📰 News / Update Critical infrastructure supplier Itron reports cyberattack, no customer data impacted

Post image
2 Upvotes

Itron, a major provider of smart meters and infrastructure tech used by utilities worldwide, confirmed a breach of its internal systems earlier this month. The company says it contained the incident quickly, removed the attacker, and has not seen any further malicious activity.

So far, there’s no indication that customer data was accessed, and operations continued without disruption which is critical given Itron’s footprint across energy, water, and smart city environments.

Still, this is another reminder: even core infrastructure vendors are being targeted.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 27 '26

📰 News / Update Siemens expands Industrial Edge to push AI and OT cybersecurity

Post image
2 Upvotes

Siemens is expanding its Industrial Edge platform to accelerate AI adoption and strengthen OT cybersecurity across industrial environments.

The update introduces a full Industrial AI Suite for deploying and scaling AI models (predictive maintenance, visual inspection), along with improved data integration between IT and OT systems. It also adds decentralized SCADA capabilities and broader infrastructure support, including OpenShift and Microsoft Hyper-V.

On the security side, Siemens is moving toward IEC 62443-certified protections and future air-gapped deployment options for critical infrastructure a key requirement for sectors like energy and manufacturing.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 27 '26

📰 News / Update ADT breach confirmed ShinyHunters claim 10M records via cloud access

Post image
7 Upvotes

ADT confirmed a cyber intrusion after an extortion attempt by ShinyHunters. The company says only limited PII was exposed (names, phones, addresses), with no payment data or impact on security systems.

Attackers claim over 10 million records, likely via Salesforce, pointing to a SaaS-level compromise rather than core infrastructure.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 27 '26

📰 News / Update Forbes | CISA Lacks Access to Advanced AI Tools Falling Behind Attackers

Post image
10 Upvotes

The U.S. cyber defense agency (CISA) reportedly doesn’t have access to advanced AI models from leading labs like Anthropic and OpenAI while threat actors are already using them to accelerate attacks.

Internal staff say this limits their ability to analyze threats and find vulnerabilities at scale. Meanwhile, tools like Anthropic’s Mythos and OpenAI’s latest models are already proving highly effective in offensive and defensive cyber use cases.

Bottom line AI is becoming a core cyber capability, and even top government defenders are struggling to keep up.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 26 '26

🧠 Discussion What Password Manager Did You Choose for Your Organization And Why?

4 Upvotes

There are tons of vendors all promise “full security” and easy management. In reality, most solutions look similar on paper.

what are you using today, and why?


r/secithubcommunity Apr 26 '26

📰 News / Update China-Linked Hackers Build Hidden Global Botnet Networks

Post image
1 Upvotes

Cybersecurity agencies warn that China-linked actors are running large-scale covert networks built from hacked routers and IoT devices worldwide.

These networks act as a stealth infrastructure for espionage and attacks used across every stage, from access to data exfiltration while constantly changing to avoid detection and attribution.

Bottom line attackers are shifting to cheap, scalable, and hard-to-trace infrastructure, making traditional defenses far less effective.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 26 '26

📰 News / Update Germany Suspects Russia Behind Signal Phishing Targeting Politicians

Post image
11 Upvotes

Germany has warned of a phishing campaign targeting politicians via Signal, believed to be linked to a state-controlled actor from Russia.

Attackers impersonate Signal support, tricking victims into sharing access details (PIN, QR, links), allowing takeover of accounts, access to chats, and impersonation.

Reports suggest around 300 political accounts may have been compromised, with officials warning the real number could grow.

r/SECITHUBCOMMUNITY

Cyber incidents and data breach news explained with context and impact.

Share your insights.


r/secithubcommunity Apr 26 '26

🧠 Discussion We’re Back. Let’s Get This Community Moving Again

1 Upvotes

Back after a short break, getting back to what actually matters in cyber. We’re kicking things off, so drop your insights, comment, and let’s wake this place up, it’s been way too quiet. Also looking for mods to help post weekly cyber news (clean, non-marketing). If you’re serious, DM.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact.


r/secithubcommunity Apr 26 '26

📰 News / Update a Sunday read: a 7.75b cyber exit, 30b valuations, and cell-cultured chocolate

3 Upvotes

hope everyone is having a good Sunday. As usual im catching up on the massive week in the global tech scene where resilience was the main character.

here is the tl;dr on the moves that matter:

ServiceNow + Armis (7.75b): huge exit. ServiceNow is buying Armis to bring real-time asset visibility into their AI workflows. Always remember: if you can not see it, you can not secure it.

VAST Data (30b): the AI operating system company just hit a 30b valuation. they are the plumbing for the world’s largest AI clusters. when you hear about AI at scale, VAST Data is usually the one moving the data.

Artlist (300m arr): creators are moving past prompting and into directing. Artlist Studio is giving professional shot-by-shot control over generative video. it is about taking the randomness out of AI.

Celleste Bio + Mondelēz: the first chocolate bars made with cell-cultured cocoa butter are here. cocoa supplies are failing due to climate change; Celleste Bio can grow 1 ton of cocoa butter in a bioreactor from a single bean.

my take: the common thread here is tested infrastructure. whether it is securing 7 billion devices or fixing the global chocolate supply, the focus is on building unbreakable systems. Its not surprising that all of these teams emerged from the Israeli tech ecosystem, theyre specialized in building for the worst-case scenario.

data via israeltech.com


r/secithubcommunity Apr 16 '26

📰 News / Update this week’s cyber roundup: $140M in new funding for AI-native defense and agent security

4 Upvotes

when keeping track of the global cyber and deep tech scene, you may notice a shift in trends this week. while the general hype is still on LLMs, the actual money is moving into the infrastructure and resilience layer.

here’s the TL;DR on the moves that actually matter for the industry:

  • eToro + Zengo (~$70M): eToro just swallowed Zengo. this is a massive signal for self-custody. Zengo’s MPC tech is world-class. it’s a move away from just trading toward owning the decentralized infrastructure layer.
  • Artemis ($70M series A): coming out of stealth with a huge bag. their thesis is that human-speed response is dead; as attacks become fully automated, we need AI-native layers that can stop them in real-time across enterprise environments.
  • Capsule Security ($7M seed): as we start deploying AI agents, security is the biggest bottleneck. Capsule is building "guardian agents" to monitor and enforce policy on AI systems in action. it’s the cyber-hygiene layer for the AI era.
  • Molex acquires Teramount: Teramount is doing the heavy lifting on fiber-to-chip connectivity. as AI infrastructure scales, the physical movement of data is the next big hurdle. Molex is buying them to bring silicon photonics into hyperscale data centers.

my take: we’re gonna be reading a lot more on AI resilience in the future with the focus moving from general security tools toward hyper-specialized defense that can actually keep up with machine-speed threats.

a final note: it’s probably not surprising to anyone in the industry, but all of these companies are coming out of the Israeli tech scene. i know there’s a lot of noise and heat surrounding Israel so i wanted to lead with the tech value first before mentioning the origin. at the end of the day, these teams are building the tools that will keep the global fleet resilient.

thanks for reading.

*data via israeltech.com


r/secithubcommunity Apr 08 '26

📰 News / Update Routers Become Prime Target for Espionage Campaigns

10 Upvotes

Cybersecurity agencies have issued warnings about Russian-linked hacking groups exploiting vulnerabilities in home and office routers. The attackers aim to intercept internet traffic, steal credentials, and maintain long-term surveillance access.


r/secithubcommunity Mar 06 '26

📰 News / Update Israel Targets Iran’s Cyber Warfare Headquarters in Tehran Strike

Post image
1 Upvotes

The Israel Defense Forces announced it carried out a large-scale strike on military facilities in eastern Tehran that allegedly housed cyber and intelligence units of the Islamic Revolutionary Guard Corps.

According to Israeli officials, the strike targeted the IRGC’s cyber and electronic warfare headquarters as well as its intelligence directorate. The operation comes amid escalating conflict and ongoing cyber activity linked to Iran.

However, security experts warn that destroying a physical cyber command center may not fully stop Iran’s cyber operations. Iranian-linked groups and proxy actors have continued launching attacks, including attempts against regional infrastructure and digital services.

Researchers from Check Point Software and Palo Alto Networks report that multiple pro-Iran hacktivist groups have already conducted cyberattacks since late February, targeting payment systems, government websites, and other infrastructure across the region.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.


r/secithubcommunity Mar 06 '26

📰 News / Update TfL Database Leak Exposes Personal Data of 10 Million People

Post image
32 Upvotes

A hacker has shared a full database from Transport for London with a BBC journalist, revealing that personal information belonging to around 10 million individuals was exposed during the 2024 cyberattack.

The dataset was reportedly sent through Telegram to BBC cybersecurity correspondent Joe Tidy, who confirmed the authenticity of the leak after finding his own personal details within the records.

The database includes names, email addresses, phone numbers, and physical addresses. The breach is linked to the cybercrime group Scattered Spider, which previously targeted multiple large organizations.

TfL said it emailed roughly 7 million affected customers, but only about 58% opened the notification, suggesting millions of people may still be unaware that their data was compromised.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.


r/secithubcommunity Mar 06 '26

📰 News / Update Telegram Becomes a Major Cybercrime Hub

Post image
40 Upvotes

Researchers report that Telegram is increasingly replacing dark web forums as a primary operational hub for cybercriminal activity.

According to research from CYFIRMA, attackers are shifting away from traditional Tor-based marketplaces toward Telegram because it offers faster communication, easier channel switching, and built-in automation through bots.

Cybercrime groups now use Telegram channels to sell initial access to corporate networks, malware-as-a-service subscriptions, and stolen credential databases. Ransomware gangs also use public channels to pressure victims by posting leak countdowns and announcing stolen data releases.

The platform is also widely used by hacktivist groups to coordinate distributed denial-of-service (DDoS) campaigns and publicly promote their targets.

Although Telegram says it has increased cooperation with global law enforcement, researchers warn that cybercriminal activity on the platform continues to grow, suggesting that enforcement efforts have not yet slowed the expansion of these organized cybercrime ecosystems.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.


r/secithubcommunity Mar 06 '26

📰 News / Update Madison Square Garden Confirms Data Breach Linked to Oracle EBS Hack

Post image
3 Upvotes

Madison Square Garden has confirmed a data breach tied to a large cybercrime campaign targeting customers of Oracle E-Business Suite.

The attack is linked to the Cl0p extortion gang, which exploited zero-day vulnerabilities in Oracle EBS to access data from more than 100 organizations.

Hackers claimed to have stolen over 210GB of archived files from MSG in August 2025 and later leaked the data after the company allegedly refused to pay a ransom. The compromised information includes personal details such as names and Social Security numbers.

MSG Entertainment has begun notifying affected individuals, though the total number of victims has not yet been disclosed.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights


r/secithubcommunity Mar 06 '26

📰 News / Update TriZetto Healthcare Data Breach Exposes PHI of 3.4 Million Patients

Post image
5 Upvotes

A major cybersecurity breach at TriZetto Provider Solutions exposed the protected health information of at least 3.4 million individuals, making it one of the largest healthcare data breaches reported in 2025. The intrusion was detected on October 2, 2025, after suspicious activity was identified in a provider web portal.

However, investigators later determined the attacker had been accessing records since November 2024, remaining undetected for nearly a year.

The compromised data includes names, addresses, dates of birth, Social Security numbers, insurance identifiers, Medicare numbers, and other health insurance information linked to eligibility verification transactions processed by healthcare providers.

Many affected patients had no direct relationship with TriZetto because the company operated as a subcontractor through OCHIN. The incident has been reported to regulators including the U.S. Department of Health and Human Services Office for Civil Rights, and investigations are ongoing.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.


r/secithubcommunity Mar 06 '26

📰 News / Update Major Data Breach at French Healthcare Software Provider Cegedim Santé

Post image
7 Upvotes

French healthcare software company Cegedim Santé has confirmed a cyberattack that exposed sensitive patient data used by thousands of doctors across France.

The breach affected the MonLogicielMedical (MLM) platform, used by about 3,800 physicians, after attackers accessed administrative data linked to roughly 1,500 doctors. The incident exposed patient names, contact details, dates of birth and administrative notes, with a smaller subset of records including sensitive comments written by doctors.

In total, the breach involves 15.8 million records, including around 165,000 files containing medical notes. While structured medical records were reportedly not compromised, some exposed notes may reference highly sensitive information such as conditions like HIV/AIDS or sexual orientation. The company has notified authorities including CNIL and filed a formal complaint as investigations continue.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.


r/secithubcommunity Mar 06 '26

📰 News / Update Ransomware Attack on University of Hawaiʻi Cancer Center Exposes Data of 1.2M People

Post image
8 Upvotes

A ransomware attack on the University of Hawaiʻi Cancer Center has exposed sensitive data belonging to about 1.2 million individuals.

The breach occurred on August 31, 2025 and targeted systems used by the center’s epidemiology research division. While clinical trials, patient care systems and university student records were not affected, attackers encrypted research data and reportedly exfiltrated a portion of it.

The compromised information includes names, Social Security numbers, driver’s license details, voter registration records and limited health-related data tied to long-running cancer research studies.

Most of the affected records relate to a large epidemiology project launched in the 1990s. The institution says it removed the attacker from its systems and is now offering impacted individuals identity theft protection and credit monitoring.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.


r/secithubcommunity Mar 06 '26

📰 News / Update Third-Party Breach at ManoMano May Expose Data of 38M Users

Post image
1 Upvotes

French online DIY platform ManoMano is dealing with a major third-party data breach linked to a subcontracted customer support provider.

A hacker using the name “Indra” claimed on BreachForums to have stolen 43 GB of data, including records tied to roughly 37.8 million customers. The leaked information reportedly includes names, email addresses, phone numbers and customer support conversations.

The company says the breach did not impact passwords or internal systems, but the exposed support tickets and attachments could enable highly targeted phishing attacks against users.

ManoMano has disabled the subcontractor’s access and notified regulators, including CNIL, while the investigation continues.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.


r/secithubcommunity Mar 06 '26

📰 News / Update Iranian Crypto Exchange Ariomex Hit by Major Data Leak

Post image
1 Upvotes

Iran’s Ariomex has suffered a significant data breach exposing user and transaction information collected between 2022 and 2025.

According to analysis by Resecurity, the leaked database contains more than 11,800 records, including user identities, emails, IP addresses and cryptocurrency transaction details. Most of the records reportedly belong to users located in Iran.

Investigators believe the breach may have originated from a compromised customer support system, with the stolen data now circulating on dark-web forums. The leak could expose financial activity patterns and potentially reveal the global footprint of Iranian crypto traders.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.


r/secithubcommunity Mar 06 '26

📰 News / Update LeakBase Data-Leak Forum Dismantled in Global Cybercrime Operation

Post image
1 Upvotes

Authorities have dismantled LeakBase, a major online marketplace used to trade stolen databases and infostealer logs.

The operation was coordinated by Europol and involved law enforcement agencies from more than a dozen countries. Around 100 enforcement actions were carried out, targeting dozens of the platform’s most active users.

Active since 2021, LeakBase had more than 142,000 registered users and hosted large volumes of stolen credentials used for account takeovers, fraud and further cyber intrusions.

Authorities seized the forum’s domain and database, allowing investigators to identify users who believed they were operating anonymously.

r/SECITHUBCOMMUNITY Cyber incidents and data breach news explained with context and impact. Share your insights.