access ai android api apple attack authentication backdoor breach browser business ceo china cisa cisco ciso cloud compliance control credentials crypto cve cyber cyberattack cybercrime cybersecurity data data-breach defense detection email exploit finance flaw framework fraud google governance government group hacker hacking healthcare identity infrastructure intelligence Internet jobs law leak linux malicious malware microsoft monitoring network open-source password phishing privacy ransomware remote-code-execution resilience risk russia scam service software strategy supply-chain technology theft threat tool unclassified update usa vulnerability windows zero-day
-
15 TP-Link Bugs Expose Risks in Zero-Trust Provisioning
Researchers are calling attention to the risks inherent in automated network device provisioning, using a world-leading device manufacturer as a case study. First seen on darkreading.com Jump to article: www.darkreading.com/endpoint-security/15-tp-link-bugs-risks-zero-trust-provisioning also interesting: CimTrak Zscaler: Making ComplyConnect a Reality for the DoD Preventing DNS filtering bypass by Encrypted DNS (DoT, DoH, DoQ) Beyond silos: How DDI-AI…
-
Hackers run khunt post-exploitation toolkit from Oracle database
Hackers exploited a SQL injection vulnerability to install a post-exploitation toolkit directly inside an Oracle database that was used to breach a corporate network. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-run-khunt-post-exploitation-toolkit-from-oracle-database/ also interesting: Top 7 zero-day exploitation trends of 2024 Top 12 ways hackers broke into your systems in 2024 Cybersecurity Snapshot: CISA’s Best…
-
Tom Cotton prods Treasury for tax code tweaks to modernize OT
Tags: technologyThe Senate Intel Committee chair wrote to Treasury Secretary Scott Bessent about changes to spur investment in aging technology to better guard against cyberattacks. First seen on fedscoop.com Jump to article: fedscoop.com/treasury-tax-code-ot-cyberattacks-tom-cotton-letter/ also interesting: ISMG Editors: Opening Day Overview of RSA Conference 2024 CIOs face obstacles when scaling generative AI Maritime cybersecurity is the iceberg…
-
The Most Dangerous AI Hacking Techniques Still Have Humans in the Loop
Security researcher James Kettle tried to push the limit of AI’s hacking abilities”, and discovered how effective it can be when combined with human expertise. First seen on wired.com Jump to article: www.wired.com/story/the-most-dangerous-ai-hacking-techniques-still-have-human-input/ also interesting: 20 Million+ Cutout.Pro User Records Leaked On Hacking Forums Hacktivists Dump Disney Slack Data Online Over AI Projects Review: Redefining…
-
Focus on infrastructure resilience, not AI hype, Western government leaders warn
U.S. and allied officials said companies should start preparing now for a cyberattack that changes how they provide essential services. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/ai-cybersecurity-resilience-black-hat-government-panel/827137/ also interesting: Biden’s final push: Using AI to bolster cybersecurity standards Cybersecurity Snapshot: SANS Recommends Six Controls To Secure AI Systems, While NCSC Warns About Outdated API…
-
OctLurk and SilkLurk Windows Backdoors Target Governments in 6 Countries
Kaspersky links OctLurk and SilkLurk to cyberespionage attacks stealing passwords, emails and files from government systems in six countries since January 2025. First seen on hackread.com Jump to article: hackread.com/octlurk-silklurk-backdoors-target-6-countries/ also interesting: Top 7 zero-day exploitation trends of 2024 Russian APT RomCom combines Firefox and Windows zero-day flaws in drive-by exploit The most notorious and…
-
The OpenAI and Anthropic Incidents Mark a Turning Point for AI Governance
Incidents at OpenAI, Anthropic, Replit, and PocketOS show AI is acting inside production systems. See why governance now has to start at the database. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/the-openai-and-anthropic-incidents-mark-a-turning-point-for-ai-governance/ also interesting: French AI Action Summit, What Can We Expect? Cybersecurity Snapshot: Top Advice for Detecting and Preventing AI Attacks, and for Securing…
-
BSidesSF 2026 Building An Open Source Security Project With 1M+ Installations
Tags: open-sourcePresenters: Fletcher Heisler, Marcelo Elizeche Landó Our thanks to Security BSides San Francisco for publishing their Creators, Authors and Presenter’s outstanding BSidesSF 2026 content on the Organizations’ YouTube Channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/bsidessf-2026-building-an-open-source-security-project-with-1m-installations/ also interesting: The Open Source AI : Understanding the New Standard Realm: Open-source adversary emulation framework Critical…
-
Metasploit Opens Its Exploit Engine to LLMs via New MCP Integration
If there was any reason to patch your systems, this would be it: The release of Metasploit 6.5, which brings the penetration testing framework into the AI age. Now, script kiddies and sophisticated foreign operatives don’t even have to cut and paste their code to break into your systems. They can just ask Metasploit to..…
-
Stairwell Launches Backstory to Map Malware Blast Radius Beyond the First Alert
Stairwell has launched Backstory, an agentic investigation platform designed to trace related malware variants, identify affected systems and map an incident’s full blast radius. The platform was announced July 29 as Stairwell prepared to showcase it at Black Hat USA 2026. Backstory is built to answer what happened, where an incident spread and what needs..…
-
Trustmi Launches AI Investigation Agent for Collaborative Payment Fraud Reviews
Trustmi has launched an AI Investigation Agent that connects security, finance and business teams during investigations of suspected payment fraud. The agent is part of an expanded portfolio of specialized AI agents that Trustmi said is built for business-to-business fraud detection. The company announced the product ahead of a Black Hat 2026 showcase, where it..…
-
OpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemes
OpenAI said it disrupted a Cambodia-based scam operation that used its generative artificial intelligence (AI) chatbot ChatGPT to facilitate a wide range of investment, romance, gambling, and law enforcement impersonation schemes.To that end, it banned a coordinated network of ChatGPT accounts likely originating from Southeast Asia and operating from the city of Poipet, a region…
-
Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures
A macOS ClickFix operation spanning more than 250 front-end domains now fingerprints visitors before deciding whether to show them a malware lure, a change Microsoft Threat Intelligence tracked on infrastructure it had been watching for weeks.The server-side gate hides the malicious page from crawlers and sandboxes while presenting selected Mac users with a fake software…
-
Flaws in Google APK for Python Unlock AgentAgent Attack
Google has fixed the issues, which exploited a trust boundary between two AI agents with different privilege levels to trigger automation that could compromise the supply chain. First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/flaws-google-apk-python-agent-to-agent-attack also interesting: Cybersecurity Snapshot: Industrial Systems in Crosshairs of Russian Hackers, FBI Warns, as MITRE Updates List of Top Hardware…
-
CrowdStrike Warns AI Adoption Is Creating ‘Underdefended’ Attack Surfaces
CrowdStrike warns that AI adoption, rapid vulnerability exploitation, cloud attacks, and malicious npm packages are creating new enterprise security risks. The post CrowdStrike Warns AI Adoption Is Creating ‘Underdefended’ Attack Surfaces appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-crowdstrike-ai-underdefended-attack-surfaces/ also interesting: 7 biggest cybersecurity stories of 2024 Threat intelligence platform buyer’s…
-
OpenAI’s GPT-5.6 Tests Show Prompt-Injection Gains and Agent Risks
OpenAI’s latest GPT-5.6 safety results show low failure rates for direct prompt injection but higher success rates when attacks arrive through tools and external content. The post OpenAI’s GPT-5.6 Tests Show Prompt-Injection Gains and Agent Risks appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-gpt-5-6-prompt-injection/ also interesting: Misconfigured MCP servers expose AI…
-
OnePlus Nord 6 Gets Six Years of Security Updates, Four Android Upgrades
The OnePlus Nord 6 will receive six years of security updates but only four generations of Android upgrades. Here’s how that split could affect app compatibility, device management, and long-term purchasing decisions. The post OnePlus Nord 6 Gets Six Years of Security Updates, Four Android Upgrades appeared first on TechRepublic. First seen on techrepublic.com Jump…
-
WhatsApp Users Say They’re Being Locked Out of Accounts by Mistake
Tags: accessSeveral WhatsApp users say they were wrongly suspended after automated moderation errors, raising concerns about appeals, access, and false positives. The post WhatsApp Users Say They’re Being Locked Out of Accounts by Mistake appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-whatsapp-account-wrongful-suspensions/ also interesting: KeyTrap attack: Internet access disrupted with one DNS…
-
Apple Seeks Injunction as OpenAI Blames Tech Giant for Security Lapses
Apple seeks an injunction against OpenAI as the companies clash over former employees, confidential hardware files, and internal security controls. The post Apple Seeks Injunction as OpenAI Blames Tech Giant for Security Lapses appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-apple-openai-trade-secrets-injunction/ also interesting: AI Hardware, App Store Shifts, and Security Scares…
-
Apple Challenges UK Demand For Access To Encrypted iCloud Data
Apple is challenging a UK order reportedly requiring access to encrypted iCloud data, reviving a wider dispute over privacy, security, and lawful access. The post Apple Challenges UK Demand For Access To Encrypted iCloud Data appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-apple-challenges-uk-encrypted-icloud-order-emea/ also interesting: Privacy Roundup: Week 1 of Year…
-
Apple briefly removes Telegram from App Store over reported CSAM violation
Tags: appleApple briefly removed Telegram from the App Store over reported CSAM, highlighting moderation failures and the distribution power held by app-store operators. The post Apple briefly removes Telegram from App Store over reported CSAM violation appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-apple-briefly-removes-telegram-csam/ also interesting: Oracle warns that macOS 14.4 update…
-
Pre-auth RCE in enterprise Java hits Bonita and OFBiz servers
An attacker sends a single web request to a Bonita server and lands inside an internal API that assumed nobody could reach it. The request arrives unauthenticated. From there … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/05/pre-auth-rce-java-bonita-ofbiz-cve-2026-31986/ also interesting: Top 12 ways hackers broke into your systems in 2024 Critical flaw in Marimo Python…
-
Beacon CRM, Widely Used by Charities, Suffers Data Breach
English National Ballet is Among the Confirmed Victims Notifying Supporters. Cloud-based customer relationship management software provider Beacon CRM said it’s suffered a security breach that likely led to the theft of customer data. Over 1,000 charities use the software, and English National Ballet and the Centre for Sustainable Energy report they’ve been affected. First seen…
-
Impacket for Pentester: reg
Overview The Windows registry is a hierarchical database that governs application behaviour, user profiles, service configurations, security policies, and system startup. For penetration testers, remote First seen on hackingarticles.in Jump to article: www.hackingarticles.in/impacket-for-pentester-reg/ also interesting: Microsoft fixes 159 vulnerabilities in first Patch Tuesday of 2025 Privacy Roundup: Week 7 of Year 2025 New family of…
-
Cobalt Launches Autonomous Pentest for Continuous Application Testing
Cobalt is launching Cobalt Autonomous Pentest, a service designed to bring continuous offensive security testing to an organization’s full application portfolio. The product debuts at Black Hat USA 2026 and is scheduled for general availability in August. The offering combines AI-driven testing with direction from Cobalt penetration testers. Its model-agnostic engine handles chain prediction, prioritization..…
-
Assail Updates Ares With New Harness and AI Model for Autonomous Red Teaming
Assail has introduced Ares v2, a redesigned version of its autonomous offensive security platform, with a new interface, purpose-built model and rebuilt agentic harness. The company is tying the update to its Black Hat 2026 program, where founder and CEO Alissa Knight is scheduled to discuss how organizations should evaluate offensive AI systems. The new..…
-
Command Zero Adds Living Investigations to Its Security Operations Platform
Tags: usaCommand Zero is adding Throughline, a “living investigation” capability that connects related alerts into one evolving case and revisits its verdict as new evidence arrives. The company previewed the capability ahead of Black Hat USA 2026. When a new alert matches an existing case, Throughline joins it to the investigation, reopens the case if necessary,..…
-
Realm Security Debuts Detection Integrity and Unmetered Data Haven Search
Realm Security is introducing two capabilities ahead of Black Hat USA 2026: Detection Integrity and search inside its Data Haven retention layer. The company said the tools are intended to help security teams reduce SIEM data volume without losing visibility into the detections that depend on that data. Detection Integrity reads the detections running in..…
-
Miggo Adds DefenseDepth Mitigation to Close Patch Gaps in Minutes
Miggo Security has announced Defense-in-Depth Mitigation, a capability that coordinates protections at the network edge and inside an application while a permanent patch is being prepared. The release was issued from Black Hat USA and says Miggo is presenting the capability in Las Vegas during the event. The approach gives security teams multiple mitigation points..…
-
Cycode Opens Early Access to Agentic Workflows for Application Security
Cycode is making Agentic Workflows available in early access, giving AI agents the ability to detect, prioritize and fix application-development risks as they appear. The company is demonstrating the capability at Black Hat USA 2026 in Las Vegas. Agentic Workflows operate across the application development lifecycle. Security teams define the triggers, actions and confidence thresholds,..…
-
XM Cyber Releases Open-Source Tools for Hunting macOS and Oracle Cloud Exposures
XM Cyber has announced new open-source exposure-hunting tools for macOS endpoints and Oracle Cloud Infrastructure. The release, issued from Black Hat USA and DEF CON, says the tools are intended to help security teams uncover and validate complex attack paths. The macOS tool examines weaknesses that can allow an attacker to move from an initial..…
-
7AI Launches Federated SIEM and Build Tools Ahead of Black Hat USA 2026
7AI has launched 7AI Federated SIEM and 7AI Build, two capabilities designed to give security teams a distributed foundation for AI-assisted operations. The company said both will be showcased at Black Hat USA 2026. 7AI Federated SIEM connects to security data across existing SIEMs, data lakes and cloud platforms. It lets teams query, investigate and..…
-
Mini Shai-Hulud npm Attack: More Than 2,200 Components Impacted
Tags: access, ai, attack, breach, cloud, container, control, credentials, data, data-breach, github, guide, infection, intelligence, kubernetes, malicious, malware, microsoft, open-source, risk, sbom, service, software, threat, update<div cla TL;DR A new wave of the Shai-Hulud malicious package campaign emerged on npm, with 2,225 software component versions impacted. The malware executes through a malicious preinstall hook, steals npm, GitHub, cloud, Kubernetes, Vault, CI/CD, and other credentials, then uses stolen publishing access to compromise additional packages. Organizations that installed an affected version should…
-
BlackCloak Expands Impersonation Protection to Executives’ Trusted Circles
BlackCloak is expanding its Impersonation Protection service with a “circle of trust” feature designed to help executives verify communications from the people closest to them. The company announced the capability ahead of Black Hat USA 2026 in Las Vegas. Impersonation Protection lets members authenticate phone calls, video meetings, emails, WhatsApp and Slack messages, texts, and..…
-
COLDCARD security audit phishing attack installs remote access tool
A phishing campaign is exploiting fears surrounding the recently disclosed COLDCARD wallet vulnerability and suspected $88.6 million Bitcoin theft to trick users into installing ScreenConnect remote access software. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/coldcard-security-audit-phishing-attack-installs-remote-access-tool/ also interesting: Google Cloud Security Threat Horizons Report #11 Is Out! Password managers under increasing threat as infostealers triple…
-
DHS Is Hiring Bounty Hunters to Find and Photograph Deported People’s Homes Abroad
Tags: jobsHomeland Security told immigrants that leaving the US would wipe out fines it claims they owe. Now it wants private investigators to find them in their home countries and collect. First seen on wired.com Jump to article: www.wired.com/story/dhs-is-hiring-bounty-hunters-to-find-and-photograph-deported-peoples-homes-abroad/ also interesting: Senate confirms national cyber director pick Sean Cairncross Continuous Identity Assurance Is Now Security Infrastructure…
-
Chi Onwurah pushes to curb digital twins of real people
The chair of the science, technology and innovation committee says digital twins of people should be covered by data protection law First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366647583/Chi-Onwurah-pushes-to-curb-digital-twins-of-real-people also interesting: Thales Named a Leader in the Data Security Posture Management Market TDL 008 – Defending the Frontline: Ransomware, AI, and Real-World Lessons Implementing NIS2,…
-
Brown Health Medical Group-MA Data Breach Exposes Information of 311,000 Individuals
Brown Health Medical Group-MA breach exposed personal, medical, and financial data of over 311,000 individuals after hackers accessed its servers. Brown Health Medical Group-MA data breach exposed personal, medical, and financial data of over 311,000 individuals after hackers accessed its servers. The healthcare group identified a data security breach involving a legacy file server on…
-
Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain
Cybersecurity researchers have flagged an evolution of the EtherHiding blockchain-based command-and-control (C2) technique that conceals the C2 server IP address inside a made-up destination address of a completely empty Ethereum transfer.The new dead drop resolver approach, observed in two trojanized npm packages “bianira-ui” and “fluid-type-ui,” has been codenamed NullReceiver by First seen on thehackernews.com Jump…
-
Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports
Two security flaws in Paperclip could let attackers execute commands on a network server or a developer’s computer. Paperclip is an open-source control plane for teams of artificial intelligence (AI) agents, and both paths rely on importing a malicious agent and starting it.A third flaw could expose sensitive data and control-plane details through application programming…
-
Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt
Cybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging platforms.One such service, Poison Claude, claims to offer access to Anthropic’s large language models (LLMs), including Opus 4.8, Opus 4.7, Opus 4.6, and Sonnet 4.6.”Advertisements for Poison Claude First seen on thehackernews.com…
-
Salt Security Launches Industry-First AWS WAF Managed Ruleset for AI Agents and API Protection
Salt Security has unveiled what it says is the industry’s first AWS WAF managed ruleset designed specifically to protect both APIs and AI agents, extending native AWS Web Application Firewall (WAF) capabilities to address emerging threats driven by agentic AI. Announced at Black Hat USA 2026, the new Salt Managed Rules for AWS WAF are…
-
Meta Ran Ads That Contained AI-Generated Child Sexual Abuse Imagery
Tags: aiMore than 50 offending image and video ads were published across Facebook, Instagram, Messenger, or Threads, according to Meta’s ad library data. Some ran as recently as this week. First seen on wired.com Jump to article: www.wired.com/story/meta-ran-ads-that-contained-ai-generated-child-sexual-abuse-imagery/ also interesting: HBF Mönchengladbach: KI-gestützte Radarüberwachung von Personen im Test Qualys erweitert seine TruRisk-Plattform mit Qualys TotalAI AI-Powered…
-
U.S. CISA adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: The first issue added to the catalog, tracked as CVE-2026-9198, is a critical issue in IBM…
-
5 Best AI Detection Response Platforms for 2026
Compare AI detection response platforms for 2026, including Dash, Lakera, Operant AI, HiddenLayer and Prisma AIRS, for runtime threat protection and response. First seen on hackread.com Jump to article: hackread.com/best-ai-detection-response-platforms-2026/ also interesting: Expel, CrowdStrike, Red Canary Dominate Forrester MDR Ranks 250 Episodes of Cloud Security Podcast by Google: From Confidential Computing to AI-Ready SOC The…
-
PSA: Apple’s Private Relay can leak your real IP address
A bug in how Apple implements its Private Relay feature, which in theory masks users’ IP addresses from the sites they visit, can reveal users’ real IP addresses. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/05/psa-apples-private-relay-can-leak-your-real-ip-address/ also interesting: New GoFetch Vulnerability in Apple’s M Chips Allows Secret Keys Leak on Compromised Computers Apple chips can…
-
US-Börsenaufsicht SEC kaufte eine Milliarde Fluggastdaten
Tags: unclassifiedDie US-amerikanische Börsenaufsichtsbehörde SEC kaufte eine weltweite Flugdatenbank mit unzähligen Details ein. Die Frage ist aber: warum? First seen on tarnkappe.info Jump to article: tarnkappe.info/artikel/it-sicherheit/datenschutz/us-boersenaufsicht-sec-kaufte-eine-milliarde-fluggastdaten-332148.html also interesting: Security-Insider Podcast Folge 85 – Können wir unseren Computerchips vertrauen? HR expert says biz leaders scared RTO mandates lead to staff attrition Fakeshops ködern Opfer mit niedrigen Heizöl-…
-
CISA is prioritizing work with critical infrastructure as it begins to recover from cuts
The agency has been focused on helping secure systems at drinking and wastewater utilities in recent weeks. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/cisa-critical-infrastructure-job-cuts/827094/ also interesting: U.S. CISA adds Microsoft Windows, Apache HugeGraph-Server, Oracle JDeveloper, Oracle WebLogic Server, and Microsoft SQL Server bugs to its Known Exploited Vulnerabilities catalog CISA Adds Array Networks’ CVE-2023-28461…
-
Fake Open VSX Extensions Harvest Private Repo and CI Data
77 counterfeit Open VSX extensions beaconed to one domain, 19 harvesting git and CI identity First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/open-vsx-evil-twin-extensions-git/ also interesting: LoginRadius Releases 2024 Consumer Identity Report, Highlights the Shifting Trends in Consumer Preferences The age of infostealers is here. Is your financial service secure? Defending digital identity from computer-using agents…

