106Articles
8Categories
2026-08-03Date
🐛 COMMON VULNERABILITIES AND EXPOSURES 9[−]
3 AugRuby on Rails Patches Critical Active Storage Vulnerability Affecting Image ProcessingRuby on Rails fixed a critical vulnerability that could let unauthenticated attackers read files and achieve remote code execution. Ruby on Rails has patched CVE-2026-66066, a critical vulnerability (CVSS score of 9.5) that could allow unauthenticated attackers to read arbitrary …SECURITYAFFAIRS.COM
3 AugN-able Says Attackers Take Over N-central Servers After Initial Fix Proves IncompleteN-able said attackers exploited an authentication bypass in N-central to gain remote administrative access and reach the customer systems managed through those servers. Its first fix was incomplete. CVE-2026-18577 affects N-central builds prior to 2026.3.1.7. N-able shipped build…THEHACKERNEWS.COM
3 AugThermo Fisher Patches Flaw That Could Make DNA File Tampering Nearly UndetectableThermo Fisher Scientific has patched a flaw in select Applied Biosystems human identification software that could allow data files to be altered before analysis software loads them. The vendor's July 31 security bulletin says nearly undetectable changes to .fsa and .hid outputs c…THEHACKERNEWS.COM
3 AugKindaRails2Shell threatens Ruby on Rails apps (CVE-2026-66066)A critical security vulnerability (CVE-2026-66066) in Ruby on Rails (aka Rails), one of the most widely used frameworks for building websites and web apps, may allow attackers to read sensitive files off a server and, in some cases, take full control of it. Nicknamed “Kinda…HELPNETSECURITY.COM
3 Aug KEVN‑able Patches Vulnerability Exploited to Hack N-central ServersThe N‑central vulnerability CVE-2026-18577 has been exploited in the wild after threat actors found a patch bypass. The post N‑able Patches Vulnerability Exploited to Hack N-central Servers appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugAttackers exploit N-able N-central flaw to reach managed endpoints (CVE-2026-18577)Attackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) in N-able N-central, a remote monitoring and management (RMM) solution widely used by managed service providers, to gain access to managed endpoints. How the flaw was discovered “On July 31, 20…HELPNETSECURITY.COM
3 AugN-able warns of N-central auth bypass flaw exploited in attacksN-able is warning customers that hackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) affecting both hosted and on-premises N-central servers. [...]BLEEPINGCOMPUTER.COM
3 AugRapid7 Analysis: KindaRails2Shell (CVE-2026-66066)Overview On July 29, 2026, the Ruby on Rails project published a security advisory for CVE-2026-66066 , an arbitrary file read in Active Storage applications that use the Vips image processor with untrusted uploads. The affected Active Storage ranges are < 7.2.3.2 , >= 8.0,…RAPID7.COM
3 AugAttackers Exploit N-able Patch Bypass Flaw on RMM ServersOver the weekend, the vendor discovered another vector of authentication bypass CVE-2026-18577 that gives attackers administrator access.DARKREADING.COM
⚠️ VULNERABILITY DISCLOSURE 32[−]
3 AugAnthropic models hack three firms, Coldcard bug drains $88 million, Midnight Blizzard hijacks hotel Wi-FiClaude Escapes the Lab, EU AI Act Enforced, SVR Hotel Wi‑Fi Hijacks, and $88M Bitcoin Wallet Flaw David Shipley covers multiple cybersecurity headlines: Anthropic disclosed that three Claude models escaped misconfigured evaluation environments during Irregular-run CTFs, reached t…CYBERSECURITYTODAY.LIBSYN.COM
3 AugSkillSpector: NVIDIA’s open-source security scanner for AI agent skillsSkillSpector is an open-source scanner from NVIDIA that reads an agent skill and tells you whether to install it. Point it at a directory, a zip file, a single SKILL.md, or a Git URL, and it returns a list of findings, a risk score, and recommendations. The folder it reads runs w…HELPNETSECURITY.COM
3 AugHugging Face Diffusers Flaws Could Let Model Repositories Execute Arbitrary CodeThree high-severity security flaws have been disclosed in Hugging Face's Diffusers library that could allow crafted model repositories to stealthily execute arbitrary code on machines that load it, opening the artificial intelligence (AI) supply chain to security risk. "These vul…THEHACKERNEWS.COM
3 AugRapid7 Expands UK and Ireland Channel Presence Through Strategic Partnership with Exclusive NetworksRoss Baker is Senior Director, Northern Europe at Rapid7. As organizations across the United Kingdom and Ireland embrace AI, cloud technologies, and digital transformation in the name of enhancing customer experiences and accelerating business growth, the cybersecurity landscape …RAPID7.COM
3 AugStop depending on heroics and start operationalizing third-party riskIn cybersecurity, third-party risk management normally looks simple on paper: evaluate your vendor, learn the risk, report out on the gaps and weaknesses, transfer to the contract, and continue. Unfortunately, it seldom works that way in practice. In my roles as a CISO, I find my…CSOONLINE.COM
3 AugAI is making cybersecurity fundamentals more important than everWhen OpenAI disclosed that one of its models escaped a test environment and broke into Hugging Face’s systems on its own, headlines cast the incident as the start of a new era of AI-driven attacks. But the underlying cause of the incident was a familiar one: a misconfigured sandb…CSOONLINE.COM
3 AugColdcard Users Lose $89m After Bitcoin Wallet Is HackedA hacker has drained nearly $89m from Coldcard Bitcoin wallets after exploiting a legacy bugINFOSECURITY-MAGAZINE.COM
3 AugAppSec, Shopify-Style; State of Mobile Security; the News - Andrew Dunbar, Kern Smith - ESW #470Interview with Andrew Dunbar, CISO at Shopify After 13 years at Shopify, Andrew has some valuable insights to share on application security. In this episode, we discuss how AI has changed application security processes where bug bounty now fits in a post-Mythos, post-AI harness w…YOUTUBE.COM
3 Aug30 days with Claude Mythos Preview: How Tenable adapted our security program, and why yours is nextTenable spent 30 days running frontier AI models against our own code. It didn’t just find bugs — it proved they’re real, with reproducible exploits. That fundamentally changes code security from ranking potential code defects to a much higher signal focused on the findings that …TENABLE.COM
3 AugAlleged Żabka Breach Exposes Jira Data, Source Code, and API KeysAlleged Żabka data leak offered for €5,000 includes Jira data, GitLab repos, and secrets; researchers verified much of the sample. A brand-new forum account showed up on August 2, posted once, and asked five grand for what it claims is a full data dump from Żabka Polska. Żabka Po…SECURITYAFFAIRS.COM
3 AugThe OpenAI Hack Shows the Genie Is Out of the BottleThis essay originally appeared in Foreign Policy . Earlier this month, two of OpenAI’s models broke out of their containment sandbox and attacked another AI company. The story is kind of wild . OpenAI was running security tests on two of its models: GPT-5.6 Sol and an unrel…SCHNEIER.COM
3 AugChinese Threat Actor Uses Leaked DarkSword Kit to Deploy GHOSTBLADE on iOSAn unknown Chinese-threat actor has been observed running a campaign targeting Apple iOS devices by leveraging a publicly leaked version of the DarkSword exploit kit. Attack surface management platform Censys said it identified the threat actor running more than 100 web propertie…THEHACKERNEWS.COM
3 AugRecent SonicWall Vulnerabilities Exploited in Ransomware AttacksThe INC Ransomware gang has been targeting vulnerable SMA1000 appliances for root access and lateral movement. The post Recent SonicWall Vulnerabilities Exploited in Ransomware Attacks appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugCISA lays out new guidance for using open-source softwareThe US Cybersecurity and Infrastructure Security Agency (CISA) has published the Open Source Software: Security Principles and Practices guide, which provides federal agencies with recommendations for managing the security of open source software, contributing to OSS projects, an…HELPNETSECURITY.COM
3 AugZero Networks targets AI agent security gaps with network-level ‘Least Agency’ controlsWhile AI security today is largely focused on restricting what an agent can do, Zero Networks says it has built a failsafe. The company says it can block a compromise midway by adding a network layer protection. On Monday, the company announced the launch of “Least Agency Enforce…CSOONLINE.COM
3 AugKR: Seoul lawmaker criticizes 5,000-won compensation for 4.62 million-person data breachThe Herald Business reports: Seoul Facilities Corp. has drawn criticism over its plan to offer 5,000 won [$3.50 USD] per affected user in response to a personal data breach involving about 4.62 million people, with questions mounting over whether the compensation is adequate. Seo…DATABREACHES.NET
3 AugUK: Details of 100,000 police staff leaked on the dark web after hackBill Curtis reports: The full names and contact details for more than 100,000 police officers and staff have been leaked on the dark web after a hack, The Times can reveal. As part of a major security breach, hackers compromised data belonging to the Ministry of Defence (MoD), th…DATABREACHES.NET
3 AugCyberattack hits Liechtenstein, with 31,000 records stolenDPA reports: The tiny principality of Liechtenstein has fallen victim to a major cyberattack in which the data of 31,000 people were stolen, the government said on Sunday. The country, which lies between Switzerland and Austria, has a population of around 41,000. The government s…DATABREACHES.NET
3 AugPNLD Confirms Data Breach Affecting UK Police and Justice StaffUK police legal database breach exposed officers’ names and work emails, increasing phishing risks. NCA is investigating. The Police National Legal Database (PNLD), the legal reference system used by all 43 Home Office police forces in England and Wales, confirmed that a da…SECURITYAFFAIRS.COM
3 AugChina-Linked Threat Actors Weaponize New Vulnerabilities in Under a DayChinese actors exploited the critical React2Shell exploit inside a day, while 88% of exploited vulnerabilities in H1 2026 were compromised within 48 hours of disclosureINFOSECURITY-MAGAZINE.COM
3 AugInside the Underground Business of BTMOB RATFlare researchers analyzed thousands of underground posts to examine how the BTMOB Android malware operation evolved into a fragmented ecosystem of resellers, source-code vendors, custom versions, and competing sales channels. [...]BLEEPINGCOMPUTER.COM
3 AugChina-based hacker employs DeepSeek in autonomous threat campaignResearchers said the hacker also attempted to test Western AI tools, but ultimately was forced to revert to manual operations to succeed. CYBERSECURITYDIVE.COM
3 AugMetasploit Pro 5.1 ReleasedToday marks the release of Metasploit Pro 5.1 - building upon the foundation laid in 5.0, adding new evasion primitives for HTTP Meterpreter payloads, support for tracking service hierarchies, a deeper and more interactive Network Topology view, and continuing our commitment to a…RAPID7.COM
3 AugINC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 FlawsThe INC Ransomware operation has emerged as the "dominant threat actor" exploiting the recently disclosed security flaws in SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances. In a report published over the weekend, Resecurity said it observed the INC Ransomware acce…THEHACKERNEWS.COM
3 AugChinese Actor Weaponizes DeepSeek AI Agent to Attack Security FirmResearchers intercepted and investigated the model, which was attempting to compromise more than 1,200 hosts for proxyjacking to launch further attacks.DARKREADING.COM
3 AugAI Runs the Hack: Chinese Actor Automates Cyberattacks With DeepSeekUnit 42 uncovered an AI-driven Chinese hacking campaign where DeepSeek autonomously scanned targets, selected exploits, and launched attacks. Researchers at Palo Alto’s Unit 42 got a front-row seat to something they’d only theorized about before: an AI system running …SECURITYAFFAIRS.COM
3 AugMore on the OpenAI Agent’s Attack on Hugging FaceHugging Face has published a detailed timeline of the attack. From the summary: The agent was running an internal OpenAI cyber-capability evaluation based on the ExploitGym benchmark, which tasks an AI agent with finding and exploiting software vulnerabilities. OpenAI ran this on…SCHNEIER.COM
3 AugWater you waiting for?Cyberattacks hit U.S. water systems. CISA tackles open source security. China’s surveillance machine is exposed. Hotel Wi-Fi gets riskier. Healthcare and police data spill online. Fake SQLite vulnerabilities fool security databases. Monday business briefing. Our guest is Tim Star…THECYBERWIRE.COM
3 AugBitcoin hardware wallet maker destroys some inventory after more than $88 million stolenThe company behind a popular hardware wallet for bitcoin owners was forced to destroy part of its inventory after thieves siphoned more than $88 million from customers through a firmware vulnerability.THERECORD.MEDIA
3 AugNew Tool Traces AI Videos Back to Their SourceResearchers dug into the root of the problem with the goal of promoting industry collaboration on improved protective measures.DARKREADING.COM
3 AugThe AI Act kicks into action, forces companies to be clear about AI chatbotsThe European Union (EU) has started enforcing key parts of the AI Act, with immediate, visible consequences for chatbots, deepfakes and other consumer‑facing AI.MALWAREBYTES.COM
📢 SECURITY ADVISORIES 4[−]
3 AugWelcoming the Nepalese Government to Have I Been PwnedPresently sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSite Today, we welcome the 47th government onboarded to Have I Been Pwned’s free gov service: Nepal. Their National Cyber Security Ce…TROYHUNT.COM
3 AugICE Collected Nearly 1 Million People’s DNA Last Year—Including Young ChildrenInternal documents show ICE's DNA collection has skyrocketed in the second Trump administration. Now hundreds of thousands of people never convicted of a crime are in an FBI criminal database forever.WIRED.COM
3 AugCISA warns of cyberattacks targeting PLCs in the water sector.Russian espionage group tied to hotel WiFi hijacking campaign. INC ransomware gang claims credit for Australian healthcare provider hack.THECYBERWIRE.COM
3 AugOT security coalition urges Congress, CISA to enact reforms amid water sector hacksIran-nexus hackers are suspected in a broad campaign targeting drinking and wastewater sites in at least seven U.S. states.CYBERSECURITYDIVE.COM
🔥 INCIDENT REPORTING 26[−]
3 AugWeekly Update 515Presently sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSite Apparently, Aussies are so obsessed with coffee that it's referred to as the coffee capital of the world down here (some bits, at …TROYHUNT.COM
3 AugRisky Bulletin: Anthropic models also did the hacky-hackyAnthropic models also did the hacky-hacks, Coldcard was hacked for $70 million in Bitcoin, npm adds publish-time malware scanning, and Russia is behind the recent hotel WiFi hacks.RISKY.BIZ
3 AugProduct showcase: Guardio Mobile Security turns breach alerts into a recovery planGuardio Mobile Security brings several protection features to iPhone and Android, allowing users to monitor exposed personal information, identify phishing attempts, and receive alerts about emerging threats from a single application. It is available on smartphones and tablets, w…HELPNETSECURITY.COM
3 AugCrowdStrike: AI is now both the weapon and the target in cyberattacksAI generates 2.5 signals for every human-triggered signal CrowdStrike has to assess. Meanwhile, attackers are using AI to weaponize vulnerabilities faster than companies can patch them. The post CrowdStrike: AI is now both the weapon and the target in cyberattacks appeared first …CYBERSCOOP.COM
3 AugUS Water Cyberattacks Extend Beyond Minnesota to at Least 6 Other StatesMichigan, South Dakota, and Georgia are reportedly on the list of states whose water systems have been targeted by Iran-linked hackers. The post US Water Cyberattacks Extend Beyond Minnesota to at Least 6 Other States appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugElastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM supportAttackers reaching for kernel access on a Windows machine bring a driver Microsoft already trusts. It is signed, it loads, and it carries a known flaw. That flaw gives them enough room to tamper with memory or disable the security software watching the host. Once an attacker hold…HELPNETSECURITY.COM
3 AugRussian State APT Linked to Recent Public Wi-Fi Gateway HackingMidnight Blizzard has been stealing Microsoft account credentials via compromised Wi-Fi networks at hospitality organizations. The post Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugPNLD Breach Exposes U.K. Police and Government Contact Details on Dark WebThe Police National Legal Database (PNLD) has confirmed that police, government and customer contact information was compromised and published on the dark web. The data included names, organisations and work email addresses belonging to police officers, police staff, criminal jus…THEHACKERNEWS.COM
3 AugKorea’s Largest Telco KT Fined $38m After Femtocell CampaignKorean telco KT has been fined $39m for a year-long breach linked to femtocell compromiseINFOSECURITY-MAGAZINE.COM
3 AugBrinks Home Discloses Data Breach as Hackers Leak FilesThe physical security firm says its alarm monitoring and system functionality have not been affected. The post Brinks Home Discloses Data Breach as Hackers Leak Files appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugFOMO in the SOC: Where AI Platforms like Claude Actually FitAI is moving incredibly fast, and every security leader is feeling the pressure to keep up. AI platforms like Claude, Codex and Cursor are already helping security teams write detections, investigate alerts, summarize incidents, and automate repetitive work. The conversation has …THEHACKERNEWS.COM
3 AugRiver Bank Says Hackers Deleted Data Stolen in Ransomware AttackThe bank holding company was hacked in June, but the investigation into the incident continues. The post River Bank Says Hackers Deleted Data Stolen in Ransomware Attack appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugBiotech giant Amgen says patient data stolen from third-party cloud systemsThe biotech giant Amgen informed regulators that patient information and proprietary company data were accessed through a breach of third-party cloud systems.THERECORD.MEDIA
3 Aug3rd August – Threat Intelligence ReportFor the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Minnesota IT Services has confirmed coordinated cyberattacks affecting more than 30 community water utilities across the state. The i…RESEARCH.CHECKPOINT.COM
3 AugChinese hacker used DeepSeek to launch autonomous cyberattacks on vulnerable serversA Chinese threat actor operating under the aliases “knaithe” and “KnYuan” used multiple LLMs to automate cyberattacks against internet-facing systems with limited human intervention. Researchers at Palo Alto Networks’ Unit 42 uncovered the operation …HELPNETSECURITY.COM
3 AugHorizon3.ai hits $2 billion valuation in $250 million funding roundHorizon3.ai has announced a $250 million Series E at a valuation of more than $2 billion, tripling its valuation from $650 million at Series D in just over a year. The oversubscribed round was co-led by existing investors NightDragon and NEA, with participation from seven new inv…HELPNETSECURITY.COM
3 AugAn analysis of incidents at Brazilian educational institutionsKaspersky expert provides statistics and details on several incident response cases at educational institutions in Brazil, as well as tips for schools and universities on how to stay safe.SECURELIST.COM
3 AugExfilSquad hackers leak info of over 100,000 UK police officers, staffA cyberattack on the U.K.'s Police National Legal Database (PNLD) has compromised contact data of more than 100,000 police officers and other criminal justice professionals. [...]BLEEPINGCOMPUTER.COM
3 AugRiver Bank obtained assurances from the attackers that the stolen data in the June attack was deletedRiver Bank says hackers deleted data stolen in its June ransomware attack, though the investigation into the incident is still ongoing. River Financial Corporation, the parent company of River Bank & Trust, says hackers deleted data stolen during a ransomware attack that hit …SECURITYAFFAIRS.COM
3 AugWho’s legally to blame for Anthropic and OpenAI’s autonomous AI hacks? It’s complicatedOpenAI and Anthropic admitted that their unreleased AI models escaped their sandboxes and hacked several companies in unprecedented cyberattacks. Who is legally to blame? Should prosecutors charge the two AI frontier labs? Can victims sue them? We spoke to lawyers who specialize …TECHCRUNCH.COM
3 Aug[Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidentsRegister for an exclusive, unrecorded 30-minute webinar to review the most high-impact incidents Talos IR faced in Q2.TALOSINTELLIGENCE.COM
3 AugHackers steal 31,000 records identifying people behind Liechtenstein companies, foundationsA cyberattack compromised tens of thousands of records related to companies, foundations and trusts in Liechtenstein, prompting the government to to form a “crisis unit” to address the breach.THERECORD.MEDIA
3 AugCyberattack Hits Liechtenstein’s Register of People Behind Companies and FoundationsThe list of people behind companies, foundations and trusteeships is part of efforts to combat money laundering and terror financing. The post Cyberattack Hits Liechtenstein’s Register of People Behind Companies and Foundations appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugAnthropic: AI Attacks Result of Security Gaps, Not Model IssuesLast month's incidents in which Claude breached real-world systems derived from over-permissioning, especially with Internet access.DARKREADING.COM
3 AugNew Pass-ta-key attacks let malware hijack Google-synced passkeysSecurity researchers have discovered three attacks that allow malware on already-compromised Windows devices to abuse Google Password Manager's synced passkeys to take over accounts, bypass user verification, and extract passkey private keys. [...]BLEEPINGCOMPUTER.COM
3 AugHotel Wi-Fi attacks use custom malware to breach Microsoft 365 accountsMicrosoft has linked a global campaign targeting hospitality Wi-Fi networks to the Russian threat actor Midnight Blizzard, also known as APT29. [...]BLEEPINGCOMPUTER.COM
🕵️ THREAT INTELLIGENCE 21[−]
3 AugISC Stormcast For Monday, August 3rd, 2026 https://isc.sans.edu/podcastdetail/10034, (Mon, Aug 3rd)(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.ISC.SANS.EDU
3 AugBuying TikTok followers can expose users to scams and account theftBuying TikTok followers, likes, or views could do more than inflate engagement metrics. According to Malwarebytes, many services selling social media growth operate through deceptive practices that can expose customers to scams, stolen accounts, and financial loss. The market for…HELPNETSECURITY.COM
3 AugAI cut phishing from hours to seconds, which is where DMARC and BIMI come inIn this Help Net Security video, Mike Boyle, VP of Business Units at GMO GlobalSign, and Rahul Powar, CEO and founder of Red Sift, unpack the evolution of email security and why it matters for business trust. With a combined 45+ years worth of experience in tech, they dissect ema…HELPNETSECURITY.COM
3 AugMapping the malware blast radius a single alert won’t show youIn this interview with Help Net Security, Mike Wiacek, founder and CTO of Stairwell, explains Backstory, an AI agent that takes a single alert and works outward to map how far a malware campaign spread. He walks through the research behind the claim that each published sample hid…HELPNETSECURITY.COM
3 AugOpenAI reveals how criminals used ChatGPT to run scamsOpenAI banned a coordinated network of ChatGPT accounts that likely originated in Cambodia’s Preah Sihanouk province, a region reports have linked to online scam compounds and human trafficking operations. The network used the company’s models to create and manage fak…HELPNETSECURITY.COM
3 AugPass the Passkey: A Novel Attack Surface in Passwordless AuthenticationExplore how passkey implementation gaps undermine security when relying parties fail to validate the User Verified flag, reducing MFA to a single factor. The post Pass the Passkey: A Novel Attack Surface in Passwordless Authentication appeared first on Unit 42 .UNIT42.PALOALTONETWORKS.COM
3 AugItaly fines telecom giant TIM $11 million for privacy violationsItaly's data protection authority has fined telecommunications giant TIM €9.516 million ($11 million) after finding widespread privacy and telemarketing violations involving unlawfully obtained customer consent, inadequate oversight of third-party sales partners, and failures to …CYBERINSIDER.COM
3 AugSimbian adds AI threat hunting agent to expand autonomous SecOps platformSimbian has released its autonomous AI Threat Hunt Agent, that investigates potential threats and identifies malicious activity across enterprise environments. The Threat Hunt Agent represents the third pillar of Simbian’s AI-driven security suite. These three Agents elimin…HELPNETSECURITY.COM
3 AugMicrosoft links hotel Wi-Fi hacks to Russian Midnight Blizzard hackersMicrosoft has attributed an ongoing campaign targeting travelers on hotel and other hospitality Wi-Fi networks to a subgroup of the Russian state-sponsored hacking group Midnight Blizzard, warning that the attacks go beyond credential theft to also deploy malware on victims' devi…CYBERINSIDER.COM
3 AugQodana 2026.2 adds post-quantum crypto checks for JVM codeQodana 2026.2 shipped with new security inspections, published benchmark results, post-quantum cryptography checks, and coverage reporting that no longer has to be pointed at the reports. The security work sits in the .NET linter and runs by default. Qodana tracks untrusted data …HELPNETSECURITY.COM
3 AugRussian hackers hijack hotel Wi-Fi networks to spy on travelers, Microsoft saysRussian state-sponsored hackers have been compromising hotel Wi-Fi networks around the world to steal travelers' login credentials and infect devices with espionage malware, Microsoft said.THERECORD.MEDIA
3 AugHorizon3 Raises $250 Million to Fund Continuing GrowthVenture financing has become an essential factor in growing new business in today’s fast moving economy. Horizon3’s latest funding explains how and why. The post Horizon3 Raises $250 Million to Fund Continuing Growth appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugHow volunteer cyber experts are helping protect rural water systemsA first-in-the-nation program is seeing promising results as it charts a path for supporting the U.S.’s most vulnerable infrastructure.CYBERSECURITYDIVE.COM
3 AugMimecast introduces AI agent governance and managed threat responseMimecast has unveiled Agent Risk Center, a beta capability for discovering, monitoring, and governing AI agents, alongside Managed Threat Response, a redesigned 24/7 service that combines AI-assisted triage with analyst-confirmed remediation. According to Mimecast’s analysis, 98%…HELPNETSECURITY.COM
3 AugSentinelOne expands security operations automation with governed AISentinelOne has today announced governed, closed-loop response across the Singularity Platform, delivering trustworthy automation for security operations. Purple AI and Singularity Hyperautomation now autonomously investigate alerts, reach verdicts, and execute responses. Securit…HELPNETSECURITY.COM
3 AugWhy Shopify Doesn't Build Around One AIShopify routes AI requests through a single LLM proxy rather than integrating every application directly with an individual AI provider. That common layer supports multiple models and makes it easier to evaluate and replace them as new options become available. AI models are evol…YOUTUBE.COM
3 AugMidnight Blizzard Targets Travelers via Captive PortalsRussian actor Storm-2945 hijacked hotel captive portals to push fake updates and steal tokensINFOSECURITY-MAGAZINE.COM
3 AugBlack Hat USA 2026 – Summary of Vendor Announcements (Part 1)Many companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas. The post Black Hat USA 2026 – Summary of Vendor Announcements (Part 1) appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugVisa to Acquire Fraud Intelligence Firm BioCatch for $2.4 BillionThe payments giant says BioCatch’s behavioral and device intelligence will help financial institutions combat account takeovers, scams and other forms of digital fraud. The post Visa to Acquire Fraud Intelligence Firm BioCatch for $2.4 Billion appeared first on SecurityWeek .SECURITYWEEK.COM
3 AugWhen AI Writes Production CodeAI coding tools are making it possible to build software much faster, even for people with limited technical experience. As deadlines tighten, AI-generated code is increasingly finding its way into production applications—not just internal prototypes. That speed comes with new se…YOUTUBE.COM
3 AugPublic interest coalition urges Congress to investigate OpenAI, Hugging Face hackThe post Public interest coalition urges Congress to investigate OpenAI, Hugging Face hack appeared first on CyberScoop .FEDSCOOP.COM
🌐 CYBER THREAT LANDSCAPE 5[−]
3 AugA week in security (July 27 &#8211; August 2)A list of topics we covered in the week of July 27 to August 2 of 2026MALWAREBYTES.COM
3 AugGoogle Password Manager Attacks Could Let Malware Hijack Passkey-Protected AccountsMalware running as an ordinary user on a Windows machine can sign into a victim's passkey-protected accounts without a fingerprint, a PIN, or anything at all appearing on the victim's screen. Unit 42 detailed three attack paths against Chrome's Google Password Manager cloud authe…THEHACKERNEWS.COM
3 AugApple challenges UK government’s latest demand for iCloud backdoor: reportApple has appealed a new legal demand by the U.K. government, which critics say could threaten the privacy rights of users all over the world.TECHCRUNCH.COM
3 AugNew DOUBLECUP ClickFix service hides malware in browser cache imagesA new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims' browsers, ultimately delivering CountLoader to Windows and macOS devices and a new remote access trojan named DeviceManager to Windows systems. [...]BLEEPINGCOMPUTER.COM
3 AugFake Roblox Xeno script launcher pushes infostealer, RAT malwareFake Xeno Executor installers are infecting unsuspecting Roblox players with malware that provides remote access and steals sensitive information. [...]BLEEPINGCOMPUTER.COM
📰 CYBERSECURITY BRIEFINGS 1[−]
3 Aug⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS HijacksThis week kept coming back to permission. A model crossed a boundary. A wallet trusted bad randomness. Webmail kept an intruder around. Public systems, package feeds, hotel networks, and login flows all gave away more than intended. Some of it was clever. Most of it was just acce…THEHACKERNEWS.COM
📡 INFOSEC NEWS 8[−]
3 AugSponsored: The intrusion signals hiding in plain sightIn this sponsored interview James Wilson chats with Permiso CTO Ian Ahl about detecting ShinyHunters-style attackers as they move through cloud and SaaS environments. Ian explains how ordinary-looking events such as a password reset, a new MFA device, unusual searches and a first…RISKY.BIZ
3 AugHollowFrame Loader Uses Fake Python DLL to Evade DefenderNew HollowFrame loader hid Go code in a fake Python DLL after pre-staging Defender exclusionsINFOSECURITY-MAGAZINE.COM
3 AugHorizon3 hits $2 billion valuation with $250M Series E as AI threats escalateCybersecurity startup Horizon3 raised $250 million at a $2 billion valuation as companies want continuous, AI-powered security validation instead of annual pentesting.TECHCRUNCH.COM
3 AugSamsung bans smart TV apps that share users’ internet connections with strangersNew security research offers a rare view inside residential proxy networks, which rely on apps that share a person's internet connection with someone else.TECHCRUNCH.COM
3 AugIs There Really a Fix for CISO Fatigue?Accountability without any real authority is driving CISO burnout, and organizations need to take notice.DARKREADING.COM
3 AugIntroducing the Wiz Sensor for Developer Workstations to Protect Endpoints in the AI EraAs AI expands who builds software, the developer workstation is becoming a new security perimeter. AI and third-party software increasingly operate with access to your most sensitive credentials and cloud environments.WIZ.IO
3 Aug&#8220;Adult TikTok&#8221; searches lead to scamsThat "free" adult TikTok site could leave you with spam, unwanted apps, or fake verification fees.MALWAREBYTES.COM
3 AugCalifornians can tell data brokers to DROP their informationCalifornia has launched the Delete Request and Opt‑out Platform (DROP), a state‑run portal that lets residents send deletion and opt‑out requests to all registered data brokers.MALWAREBYTES.COM