OpenAI Expands “Trusted Access for Cyber” Program with GPT-5.4-Cyber — A Dedicated AI Model for Defenders
Summary OpenAI has announced a major expansion of its Trusted Access for Cyber (TAC) program, alongside the release of GPT-5.4-Cyber — a specialized variant of GPT-5.4 fine-tuned specifically for cybersecurity…
IBM Announces New Defenses Against “Agentic Attacks” as AI-Powered Cyber Threats Escalate
Summary IBM has announced a new suite of cybersecurity measures specifically designed to help enterprises defend against “agentic attacks” — cyberattacks planned and executed by autonomous AI agents rather than…
Critical nginx-ui Authentication Bypass Under Active Exploitation — CVE-2026-33032 (CVSS 9.8)
Summary A critical authentication bypass vulnerability in nginx-ui, a popular open-source web-based management interface for Nginx servers, is under active exploitation. Tracked as CVE-2026-33032 with a CVSS score of 9.8,…
Pro-Iranian Group Claims Devastating Cyberattack on LA Metro — Alleges 500TB Data Wiped, Rail Systems Accessed
Summary A pro-Iranian threat actor identifying itself as Ababil of Minab has claimed responsibility for a cyberattack against the Los Angeles County Metropolitan Transportation Authority (LACMTA). The group alleges it…
NVIDIA Launches Ising — The First Open-Source Quantum AI Models to Accelerate Useful Quantum Computing
Summary NVIDIA has released Ising, the world’s first family of open-source AI models designed specifically to accelerate the development of practical quantum computers. The Ising models target two critical bottlenecks…
Booking.com Data Breach Exposes Customer Booking Details — Phishing Risk Remains High
Summary Booking.com has disclosed a data breach in which unauthorized parties accessed customer booking details including names, email addresses, physical addresses, and phone numbers. While the company states that no…
Anthropic Launches “Project Glasswing” — Enlists Apple, Google, Microsoft, Amazon, and NVIDIA for Defensive AI Security
Summary Anthropic has unveiled Project Glasswing, a major defensive cybersecurity initiative partnering with Apple, Google, Microsoft, Amazon, and NVIDIA. The project leverages Anthropic’s unreleased AI model “Claude Mythos Preview” —…
Microsoft April 2026 Patch Tuesday Fixes 167 Flaws — SharePoint Zero-Day Actively Exploited
Summary Microsoft’s April 2026 Patch Tuesday is one of the largest on record, addressing a staggering 167 security vulnerabilities across Windows and related software. The most urgent fix targets CVE-2026-32201,…
Iranian Cyberattack Breaches U.S. Local Government via Fax Server — Part of Broader Critical Infrastructure Campaign
Summary An analysis published today by the Foundation for Defense of Democracies (FDD) details how an Iranian cyberattack compromised St. Joseph’s County, Indiana through the breach of a fax server.…
Brute-Force Attacks from Middle East Surge Massively in Q1 2026 — SonicWall and FortiGate Devices Hit Hardest
Summary A new report from Barracuda reveals a massive surge in brute-force authentication attacks during Q1 2026, with nearly 90% of the threat activity originating from Middle East IP addresses.…
