Cursor 3.0 Goes Agent-First — The IDE That Manages AI Agents Instead of Files
Summary Cursor 3.0 has officially launched, representing the most significant overhaul of the AI-powered IDE since its inception. The update introduces a completely rebuilt interface centered around a new “Agents…
Adobe Patches Actively Exploited Acrobat Reader Zero-Day (CVE-2026-34621) — Update Now
Summary Adobe has released emergency security patches for a critical zero-day vulnerability in Acrobat Reader that has been actively exploited in the wild for months. Tracked as CVE-2026-34621, the flaw…
Device Code Phishing Attacks Surge 37x as EvilTokens Kit Goes Mainstream
Summary Security researchers are sounding the alarm on a massive surge in device code phishing attacks, with detected phishing pages increasing by a staggering 37.5x as of April 2026. The…
Australian Fintech youX Breach Exposes 444,000 Borrowers — Driver’s Licenses Reissued Nationwide
Summary A major data breach at Sydney-based financial technology firm youX has exposed the personal information of over 444,000 borrowers and 229,000 driver’s license numbers. The attacker gained unauthorized access…
Jones Day Breached by Silent Ransom Group — Client Data Leaked After $13M Ransom Refused
Summary Global law firm Jones Day has confirmed a cyberattack by the Silent Ransom Group (also known as Luna Moth / Chatty Spider), marking the firm’s second major cyber incident…
Meta Launches Muse Spark — Its First Closed AI Model From Superintelligence Labs
Summary Meta has officially launched Muse Spark, the inaugural AI model from its Meta Superintelligence Labs (MSL) division. Unlike Meta’s open-source Llama family, Muse Spark is a closed, proprietary model…
Iran-Backed Handala Group Wiped 80,000 Stryker Devices in Retaliatory Cyberattack — Surgical Delays Worldwide
Summary Medical technology giant Stryker has confirmed that a March 11, 2026 cyberattack attributed to the Iran-sponsored threat group Handala caused a global operational meltdown. The attackers exploited Stryker’s Microsoft…
Chrome 147 Patches 60 Vulnerabilities Including Two Critical WebML Flaws Worth $86K in Bounties
Summary Google has pushed Chrome 147 to the stable channel, patching a whopping 60 security vulnerabilities — including two critical flaws in Chrome’s Web Machine Learning (WebML) component that earned…
GPUBreach: Rowhammer-Style Attack on GDDR6 Memory Achieves Full System Takeover — Even With IOMMU Enabled
Summary Researchers at the University of Toronto have disclosed GPUBreach, a devastating new class of Rowhammer attack that targets GDDR6 memory on NVIDIA GPUs. By inducing bit-flips in GPU page…
Ivanti EPMM Zero-Days Actively Exploited — Attackers Hijacking Mobile Device Fleets
Two chained zero-day vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM) are being actively exploited in the wild, enabling attackers to achieve unauthenticated remote code execution on exposed Mobile Device Management…
