Risk
-
U.S. orders Anthropic to suspend foreign access to Fable 5 and Mythos 5 models
The U.S. government ordered Anthropic to suspend foreign access to its Fable 5 and Mythos 5 AI models, citing national security concerns. Anthropic disabled the models and disputed the need for the broad export controls.
-
Kyushu Electric says missing drive exposed data of 10.9 million customers
Kyushu Electric Power said a missing backup drive may have exposed customer data tied to up to 10.9 million accounts after staff found a server room cabinet unlocked and the device gone on May 26.
-
The Gentlemen ransomware linked to 478 claimed victims, new analysis says
A new analysis says The Gentlemen ransomware has claimed 478 victims since March 2025 and shifted in July to an independent model after using resources from other ransomware services.
-
Authorities dismantle AudiA6 crypto laundering service linked to ransomware proceeds
Authorities have dismantled the AudiA6 crypto laundering service, which investigators say moved more than $380 million for ransomware actors and other cybercriminals. The case led to arrests in Georgia and seizures across 11 countries.
-
South Korea fines Coupang record $409 million over data breach
South Korea’s privacy regulator fined Coupang a record 624.6 billion won, about $409 million, after a breach exposed data linked to more than 37 million customers and drew findings of weak security controls.
-
GitHub to disable npm install scripts by default in version 12
GitHub said npm version 12 will disable install scripts by default next month to curb supply chain abuse. The change will also restrict Git and remote dependencies unless users explicitly allow them.
-
China-linked JDY botnet grows to more than 1,500 devices, researchers say
Researchers say the China-linked JDY botnet has grown to more than 1,500 compromised SOHO and IoT devices and is being used to scan exposed services and collect reconnaissance data for follow-on targeting.
-
Unpatched Langflow flaw under active exploitation, researchers say
An unpatched Langflow flaw tracked as CVE-2026-5027 is being actively exploited, researchers say. The bug can allow arbitrary file writes, and about 7,000 instances are exposed online.






