🚨 CISA KEV 3[−]
4 Aug KEVCISA Adds Exploited N-able N-central Flaw to KEV After Customer CompromisesThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog following reports of active exploitation in the wild. The vulnerability, tracked as CVE-2…THEHACKERNEWS.COM
4 Aug KEVCVE-2026-18577: N-able N-central Authentication Bypass Exploited in the WildOverview On August 2, 2026, N-able published a security advisory for CVE-2026-18577 , an authentication bypass vulnerability affecting N-central that was discovered being exploited in-the-wild after an incomplete fix for an earlier authentication bypass issue, CVE-2026-18556 was …RAPID7.COM
4 Aug KEVU.S. CISA adds a N-able N-central flaw to its Known Exploited Vulnerabilities catalogU.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a N-able N-central flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a N-able N-central flaw, tracked as CVE-2026-18577 (CVSS score of 8.2),…SECURITYAFFAIRS.COM
🐛 COMMON VULNERABILITIES AND EXPOSURES 2[−]
4 AugNew cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database RootcPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege boundary between a cPanel account and the server's administrative database identity. It shipped in a targeted security release that closes two o…THEHACKERNEWS.COM
4 AugCVE-2026-58048: cPanel Bug Enables Full Database Administrator AccessA critical cPanel flaw (CVE-2026-58048) lets authenticated users execute SQL as root. Users should update to fixed versions immediately. If you run a shared hosting box, this one’s worth reading before your morning coffee gets cold. cPanel just patched a flaw, tracked as CV…SECURITYAFFAIRS.COM
⚠️ VULNERABILITY DISCLOSURE 42[−]
4 AugCybersecurity jobs available right now: August 4, 2026Application Security Engineer Arcadia | USA | Remote – View job details As an Application Security Engineer, you will lead the application vulnerability management process by prioritizing and driving remediation of security findings. You will integrate and automat…HELPNETSECURITY.COM
4 Aug178: UbiquitiNickolas Sharp worked for Ubiquiti, a company that makes networking equipment. He noticed that there were some security problems at work. He tried to point them out, but didn't feel like he was being listened to enough. What do you do when the company you work for isn't securing …DARKNETDIARIES.COM
4 AugEU begins enforcing AI Act, putting AI models under the microscopeEurope’s fight to regulate AI models moved from paper to practice on 2 August 2026, when the European Commission’s AI Office and national authorities began enforcing the AI Act. On the same date, new transparency rules took effect, requiring certain AI systems to tell…HELPNETSECURITY.COM
4 AugThe Minnesota attackers may hold a better backup of your plant than you doMore than 30 Minnesota community water systems were hit by coordinated cyber activity against their operational technology on July 26 and 27; several lost remote control or deliberately cut it while operators contained the intrusion. The reporting since — including CSO’s own news…CSOONLINE.COM
4 AugAttackers are crafting malicious AI instruction files to turn your agentic workflows into quiet criminal helpersAI agents are increasingly being deployed across the enterprise, a rapid adoption that has significantly broadened the organization’s attack surface, turning sharable AI agent resources and configuration files into backdoors, security experts warn. AI-assisted software developers…CSOONLINE.COM
4 AugHow companies could share cyber risks without exposing their secretsA cryptographic technique could let companies prove they're vulnerable to critical flaws without revealing the sensitive data that attackers could exploit. The post How companies could share cyber risks without exposing their secrets appeared first on CyberScoop .CYBERSCOOP.COM
4 AugDecades-Old BMC Vulnerability Exposes Thousands of Data Centers to AttacksOver 24,000 internet-accessible server-management interfaces disclose authentication hashes before login. The post Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugTanium expands autonomous security across AI, exposure management and SecOpsTanium has announced a series of new autonomous security capabilities across the Tanium Autonomous IT Platform. Spanning agentic AI, exposure management and security operations, the capabilities empower IT and security operators to stay ahead of an AI-accelerated threat landscape…HELPNETSECURITY.COM
4 AugSecure AI adoption starts with API best practicesYou don’t need to be a fortune teller to understand where enterprise IT is headed. McKinsey reported in November that 62% of global organizations were experimenting, piloting or scaling agentic AI projects. More recently, Gartner forecast that worldwide spending on AI will top $2…CSOONLINE.COM
4 AugRussian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malwareMidnight Blizzard, the Russian threat actor tied to the country’s foreign intelligence service, has spent months targeting users of public Wi-Fi networks at places like hotels and conference centers, according to new findings from Microsoft Threat Intelligence. Overview of …HELPNETSECURITY.COM
4 AugIndusface SwyftComply AI enables autonomous virtual patching for AI-discovered flawsIndusface has announced SwyftComply AI, an autonomous vulnerability remediation solution that virtually patches vulnerabilities surfaced by AI-assisted pentesting. Artificial intelligence has changed the economics of application security. AI-powered security agents now uncover ex…HELPNETSECURITY.COM
4 AugThe top cybersecurity product announcements from Black Hat 2026Black Hat 2026 is shaping up to be another AI-heavy conference, but this year’s announcements suggest the industry is moving beyond simply adding copilots to existing products. Vendors are increasingly packaging AI into operational workflows, while pairing automation with governa…CSOONLINE.COM
4 AugGoogle ADK flaws reveal what happens when AI agents trust the wrong messageSecurity flaws in automated workflows in the GitHub repository for Google’s Agent Development Kit for Python could allow public-facing AI agents to trigger more privileged automation, opening one path to manipulate pull-request reviews and another to expose credentials, according…CSOONLINE.COM
4 AugHow legitimate cloud platforms enable phishers to bypass MFAWe cover a cloud-based AitM attack scenario leveraging service workers and Ultraviolet, and provide detailed phishing hosting statistics across platforms like Cloudflare Workers, Vercel, Netlify, GitHub Pages, and IPFS.SECURELIST.COM
4 AugCritical Azure Cosmos DB flaw threatened cross-tenant database takeoverA critical vulnerability in Microsoft Azure’s Cosmos DB database service could have enabled attackers to escape the platform’s Gremlin query sandbox, execute code on shared infrastructure, and ultimately gain access to any customer’s database, including data stores used by Micros…CSOONLINE.COM
4 AugAlmost Half of Malware Samples Communicate Direct to IPNearly half of C2 malware bypasses DNS by connecting directly to IP addresses. Zero trust IP enforcement secures networks against these threats. The post Almost Half of Malware Samples Communicate Direct to IP appeared first on Unit 42 .UNIT42.PALOALTONETWORKS.COM
4 AugRapidFort Runtime brings continuous CVE monitoring and tamper detectionRapidFort has launched RapidFort Runtime, a real-time security solution that extends RapidFort’s SSCS capabilities into live production environments. The offerings provide end-to-end continuous threat elimination, from curated, independently malware-scanned open-source soft…HELPNETSECURITY.COM
4 AugRepublican attorneys general urge OpenAI to preserve records on Hugging Face breachMiranda Nazzaro reports: More than a dozen Republican attorneys general are calling on OpenAI to preserve records on its models’ recent breach of another company, suggesting the AI firm may have violated state or federal laws in the incident. In a letter sent Monday to OpenAI CEO…DATABREACHES.NET
4 AugSwiss federal IT office hit by cyberattackSwissInfo.ch reports: Following a cyberattack on the SharePoint servers operated by the Federal Office of Information Technology, Systems and Telecommunication (FOITT), access via the internet has been blocked for people outside the federal administration. Around 200 accounts wer…DATABREACHES.NET
4 AugBotnet Hunting for Vulnerabilities in Diagnostic Tools, (Tue, Aug 4th)This morning, I noticed specific sources "hunting" for vulnerabilities in URLs that I haven&#;x26;#;39;t noticed before. All of these URLs appear to be associated with diagnostic tools:
ISC.SANS.EDU
4 AugAI Missed the Real FixDuring vulnerability patching tests, the AI models correctly focused on the vulnerable source code but repeatedly ignored runtime inputs that were also part of the official security fix. In one example, validating paths loaded from a local .env file was necessary to fully resolve…YOUTUBE.COM
4 AugThe Frontier AI Vulnerability Burst: Industrializing Autonomous Zero-Day Discovery in Open-Source SoftwareFrontier AI is reshaping vulnerability discovery. Learn how our NOVA system found 14,000+ unknown vulnerabilities across the open-source software supply chain. The post The Frontier AI Vulnerability Burst: Industrializing Autonomous Zero-Day Discovery in Open-Source Software appe…UNIT42.PALOALTONETWORKS.COM
4 AugServiceNow organizes autonomous security around six solution areasServiceNow has announced an acceleration of its Autonomous Security vision with six unified solutions that help deliver prevention-first, AI-native cyber defense across unified exposure management, continuous vulnerability detection, cyber-physical security, identity and access s…HELPNETSECURITY.COM
4 AugSnyk unveils continuous AI pentesting and agent red teamingSnyk has announced the general availability of Evo Continuous Offensive Security (COS), enabling security teams to continuously test applications with autonomous, AI-powered pentesting and AI agent red teaming while providing validated proof of what attackers could actually explo…HELPNETSECURITY.COM
4 AugFake Adobe and Zoom Updates Install ScreenConnect for Persistent Remote AccessCybersecurity researchers have disclosed details of an active, multi-wave campaign that employs social engineering lures themed around Adobe and Zoom software updates, business document reviews, and system maintenance utilities to stealthily deploy Remote Monitoring and Managemen…THEHACKERNEWS.COM
4 AugXCSSET malware returns in macOS attacks that hijack ChromeA new version of the XCSSET macOS malware can hijack Google Chrome, intercept browser activity, and turn the browser into a fileless command channel. The campaign has been spreading through infected Xcode projects since April 2026, targeting software developers and users of the a…CYBERINSIDER.COM
4 AugEFF warns SCREEN Act could force VPN users to surrender their anonymityA proposed US age-verification law named SCREEN Act could force VPN users to surrender identifying information before accessing lawful online content, according to the Electronic Frontier Foundation (EFF). The digital rights group says the SCREEN Act’s broad scope would weaken on…CYBERINSIDER.COM
4 AugVaronis Agent IBAC keeps AI agents within their intended boundariesAI agents need broad access to be useful, but traditional access controls cannot determine whether an action aligns with a user's intent. Varonis explains how Agent IBAC detects intent drift and enforces real-time guardrails to keep agents within their intended boundaries. [...]BLEEPINGCOMPUTER.COM
4 AugAI developers targeted via trojanized GitHub repositoriesCybercriminals are cloning popular GitHub repositories for AI tools and developer resources to distribute an infostealer, according to Netskope Threat Labs. (Source: Netskope) Netskope came across the campaign while tracking a Windows-based MaaS infostealer, first reported in Apr…HELPNETSECURITY.COM
4 AugINC Ransomware is Calling Victims – Pressure Tactics Post SonicWall Zero-Day ExploitINC Ransomware exploits SonicWall SMA 1000 flaws, using calls and emails to pressure victims during extortion campaigns targeting global organizations. Resecurity disclosed that INC Ransomware has emerged as the dominant threat actor exploiting the recently disclosed SonicWall Se…SECURITYAFFAIRS.COM
4 AugProlific ransomware group behind SonicWall zero-day attacksINC ransomware wasn’t the first group to exploit the zero-days, but it’s been the most assertive and effective in chaining both vulnerabilities to steal and encrypt data for extortion. The post Prolific ransomware group behind SonicWall zero-day attacks appeared first on CyberSco…CYBERSCOOP.COM
4 AugAI widely used to exploit critical flaws, disrupt supply chainsA report confirms the growing use of AI across a broad spectrum of threat groups.CYBERSECURITYDIVE.COM
4 AugSage Water Resources says Utah saltwater disposal controller intrusion bypassed pump safeguardsDysruption reports on a critical infrastructure attack in Utah that could have caused more damage than some other recent attacks: Sage Water Resources said workers stopped malicious changes to an automated controller at its oilfield wastewater disposal site near Duchesne, Utah, b…DATABREACHES.NET
4 AugFlorida Man Sentenced for Conspiracy to Commit Wire FraudStolen wallets are still a thing. From the U.S. Attorney’s Office, Eastern District of Kentucky: July 31, 2026 LEXINGTON, Ky. – An Orlando, Fl., man, Ivory Joe Pruitt, 61, was sentenced on Friday to 63 months imprisonment by U.S. District Judge Robert Wier for conspiracy to…DATABREACHES.NET
4 AugHackers steal over $130 million by exploiting bug in offline hardware walletsA security vulnerability in the cryptocurrency hardware wallet Coldcard is allowing hackers to drain the crypto from victims’ wallets. The total losses amount to more than $130 million, according to blockchain monitoring firms.TECHCRUNCH.COM
4 Aug KEVAirlock Digital Unveils Agentic AI Control & Governance to Extend Preventative Endpoint SecurityAirlock Digital , a leader in preventative endpoint security, today announced Agentic AI Control & Governance at Black Hat USA 2026 . The new capabilities build on application control by providing command- and session-level visibility into trusted AI agent behavior, centraliz…CSOONLINE.COM
4 AugBritain’s next war won’t be an away game: Q&A with former head of Defence IntelligenceAs Chief of Defence Intelligence, General Sir Jim Hockenhull decided to declassify and publish what London knew of Russia’s plans to invade Ukraine, down to a map of the routes its forces would take.THERECORD.MEDIA
4 AugNPM? Not my problem.New Shai-Hulud campaign compromises popular npm packages. Easterly says small municipalities shouldn’t have to fend for themselves. Chinese threat groups accelerate exploits. Samsung bans smart TV apps with residential proxies. Hackers breach a Liechtenstein banking database. Swi…THECYBERWIRE.COM
4 AugSharePoint Flaws Used to Hack Switzerland’s Federal IT AgencySwiss Federal IT Agency FOITT says attackers exploited SharePoint flaws to compromise about 200 accounts. Servers are being rebuilt as investigations continue. Switzerland’s Federal Office for Information Technology and Communications, known as BIT or FOITT, disclosed that …SECURITYAFFAIRS.COM
4 AugAISI, OpenAI report more ‘unsanctioned’ model hacksFollowing similar reports by OpenAI and Anthropic, the UK’s top AI testing lab and a private cybersecurity tester say their models exploited parts of the open internet. The post AISI, OpenAI report more ‘unsanctioned’ model hacks appeared first on CyberScoop .CYBERSCOOP.COM
4 AugTP-Link patches Omada ZTP flaws allowing hackers to breach networksTP-Link has patched 15 vulnerabilities in the zero-touch provisioning (ZTP) mechanism of its Omada network devices that could be chained with previously disclosed flaws to achieve remote code execution (RCE). [...]BLEEPINGCOMPUTER.COM
4 AugOpenAI, Anthropic AI agents targeted real people and systems in cyber testsOpenAI and Anthropic have confirmed that their AI models were involved in separate, newly disclosed third-party cybersecurity testing incidents that resulted in a real website being breached and social engineering attacks against people outside the intended testing boundaries. [.…BLEEPINGCOMPUTER.COM
📋 SECURITY BULLETINS 1[−]
4 AugWhy Secure Updates Get DelayedSecurity vulnerabilities are often resolved in newer software releases, yet many enterprises continue running older versions long after fixes become available. In this discussion, the question isn't whether an update exists—it's why organizations delay adopting it. Upgrading soft…YOUTUBE.COM
📢 SECURITY ADVISORIES 15[−]
4 AugFake IRS letters direct crypto holders to bogus compliance portalScammers are sending physical letters to cryptocurrency holders that copy the look of official IRS notices. The letters tell recipients they must enroll in something called a Digital Asset Compliance Portal before a deadline, or risk penalties. “If you receive a letter claiming t…HELPNETSECURITY.COM
4 AugDigital executive protection is a strategic imperative for CEOsIn this interview with Help Net Security, Brian Hill, Field CISO, Client Advisory for BlackCloak, explains how attackers reach companies through the personal lives of executives. He describes a case where a draft report sat in an executive’s personal email with no multifact…HELPNETSECURITY.COM
4 AugFake IRS letters target cryptocurrency holdersDo you hold cryptocurrency? Have you received a letter telling you that you must register with a so-called "Digital Asset Compliance Portal"? If so, it's time to hit the brakes, because it sounds like someone is trying to scam you. Read more in my article on the Hot for Security …BITDEFENDER.COM
4 AugSenate set to debate package of bills on privacy, AI and kids safetyHeadlined by the Kids Online Safety Act, a key committee will look to clear major legislation governing how minors interact with the internet. The post Senate set to debate package of bills on privacy, AI and kids safety appeared first on CyberScoop .CYBERSCOOP.COM
4 AugSpring 2026 PCI DSS and PCI 3DS compliance packages for AWS now availableAmazon Web Services (AWS) is pleased to announce the successful completion of our Payment Card Industry (PCI) Data Security Standard (DSS) and Three Domain Secure (3DS) certifications. As part of this renewal, we have expanded the scope to include three additional AWS services an…AWS.AMAZON.COM
4 AugDem senators criticize Trump administration decisionmaking on AI security risksThe five senators said the administration has alternated between being too passive and overstepping, and China stands to benefit as a result. The post Dem senators criticize Trump administration decisionmaking on AI security risks appeared first on CyberScoop .CYBERSCOOP.COM
🔥 INCIDENT REPORTING 17[−]
4 Aug31,000 Records Compromised in Breach of Liechtenstein Companies and Foundations RegisterCyberattack exposed data of 31,000 people in Liechtenstein’s beneficial ownership register for companies and foundations. A cyberattack compromised data belonging to about 31,000 people in Liechtenstein’s register of beneficial owners linked to companies, foundations,…SECURITYAFFAIRS.COM
4 AugUK’s Police National Legal Database Reveals Data BreachThe UK’s Police National Legal Database and Ask the Police service have been breachedINFOSECURITY-MAGAZINE.COM
4 Aug150,000 Impacted by Madera Community Hospital Data BreachAn extortion group stole personal, financial, and medical information from the hospital’s network. The post 150,000 Impacted by Madera Community Hospital Data Breach appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugAI makes costly spearphishing attacks easier, cyber insurer saysDive Brief: Ransomware extortion caused roughly three-quarters of business losses in the first half of 2026, the cyber insurance firm Resilience said in a recent report. At the same time, ransomware accounted for less than 6% of the incidents for which Resilience customers submit…CYBERSECURITYDIVE.COM
4 AugSwiss IT agency hacked, 200 accounts compromised, SharePoint vulns suspectedThe Federal Office for Information Technology and Communications (BIT) said specialists detected anomalies in on-premises Microsoft servers. The Swiss agency could not confirm exactly how the hackers got in.THERECORD.MEDIA
4 AugLawmakers spring to save ID theft services for OPM breach victims, with expiration loomingSen. Mark Warner, D-Va., and Del. Eleanor Holmes Norton, D-D.C., hope to make the services permanent before they end next month. The post Lawmakers spring to save ID theft services for OPM breach victims, with expiration looming appeared first on CyberScoop .CYBERSCOOP.COM
4 AugNew Shai-Hulud campaign compromises popular npm packages.Samsung bans smart TV apps with residential proxy code. Liechtenstein discloses breach of its Register of Beneficial Owners.THECYBERWIRE.COM
4 AugTech industry alliance proposes AI agent safety reporting programThe information-sharing exchange is designed to widely share lessons learned from agentic AI security incidents.CYBERSECURITYDIVE.COM
4 AugMassive ChainDrop npm supply-chain attack infects hundreds of packagesSelf-propagating malware named 'ChainDrop' has compromised more than 1,300 packages with a combined 2 billion monthly downloads on the Node Package Manager (npm) registry. [...]BLEEPINGCOMPUTER.COM
4 AugPolish convenience store chain Żabka hacked through third-party accountReports said intruders appeared to gain access to the Jira environment and other sensitive data of the Żabka retail chain. The company confirmed an intrusion occurred in late July.THERECORD.MEDIA
4 AugIran Cyberattacks Against Minnesota Water SystemsAttribution is preliminary , and so far it seems no real damage. And it seems like this is a campaign that has targeted at least seven states . And, because this is where the US is right now, Trump doesn’t believe it’s Iran and that Minnesota…I guess…hacke…SCHNEIER.COM
4 AugNew XCSSET variant targets macOS devs via compromised Xcode projectsA new version of the XCSSET malware is targeting thousands of macOS users through compromised Xcode projects and GitHub repositories. [...]BLEEPINGCOMPUTER.COM
4 AugSmoke#Screen RMM Takeover Gambit Exposes Threat Actor PlaybookThe attacks use diverse social engineering lures and rotating payloads to deliver ScreenConnect for persistent remote access to compromised networks.DARKREADING.COM
4 Aug128 Seconds to disruption: Microsoft Defender stops ransomware at QNETMicrosoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist or spread. The post 128 Seconds to disruption: Microsoft Defender stops ransomware at QNET appeared first on Microsoft Security Blo…MICROSOFT.COM
4 AugChainDrop credential stealing worm infects over 400 npm packagesA self-propagating worm-like attack is hitting the npm registry, having infected 444 packages from more than a dozen publishers so far. The impact is massive, with the packages affected amounting to more than 2 billion monthly downloads combined. The attack began with the comprom…CSOONLINE.COM
4 AugRansomware Changed Its First TargetThis discussion highlights a shift in ransomware tactics. Rather than relying primarily on phishing or endpoint compromises, attackers are increasingly targeting weaknesses in network infrastructure to gain trusted access. Compromising infrastructure can give attackers a stronger…YOUTUBE.COM
4 AugChainDrop supply chain compromise: Anatomy of a self-propagating wormA credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates. This analysis details the attack chain, affected environments, and practical guidance for detection, hunting, and remedia…MICROSOFT.COM
🕵️ THREAT INTELLIGENCE 33[−]
4 AugISC Stormcast For Tuesday, August 4th, 2026 https://isc.sans.edu/podcastdetail/10036, (Tue, Aug 4th)(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.ISC.SANS.EDU
4 AugNew York Awards $9 Million to Strengthen Cybersecurity at 153 Water SystemsThe grants will help local governments assess and improve cyber defenses amid a multistate campaign targeting water and wastewater infrastructure. The post New York Awards $9 Million to Strengthen Cybersecurity at 153 Water Systems appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugClass is in session—for cybercriminals.Welcome in! You’ve entered, Only Malware in the Building. Join us each month to sip tea and solve mysteries about today’s most interesting threats. Your host is Selena Larson, Proofpoint intelligence analyst and host of their po…THECYBERWIRE.COM
4 AugAnalysts got 19 minutes back every hour in Stellar Cyber’s agentic auto triage trialsAn analyst opening a queue on Monday morning will spend most of it on tickets that amount to nothing. Stellar Cyber’s Agentic Auto Triage closed 8,047 of those tickets on its own during customer trials, filing them as confident false positives. That covers 64% of every verd…HELPNETSECURITY.COM
4 AugMicrosoft Bug Bounty Program: $20 Million Paid to 500 ResearchersThe biggest single reward paid out by Microsoft between July 1, 2025, and June 30, 2026, was $200,000. The post Microsoft Bug Bounty Program: $20 Million Paid to 500 Researchers appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugOWASP’s subtractive security project measures the attack paths you erasedAn attacker who talks a user into opening an attachment gets whatever that machine still permits: a service account with rights across the domain, an outbound route to anywhere, a scripting engine sitting there for the taking. Christopher Frenz wants those capabilities deleted be…HELPNETSECURITY.COM
4 AugTor launches Snowflake Android app to help users bypass censorshipThe Tor Project has announced Snowflake Volunteer, a new Android app that lets users donate a portion of their internet bandwidth to help people bypass online censorship. The app is intended to expand the pool of volunteer-run Snowflake proxies while giving users control over bat…CYBERINSIDER.COM
4 AugMicrosoft shortens NuGet API key lifetime to improve supply chain securityMicrosoft is reducing the lifetime of new NuGet.org API keys from 365 days to 30 days starting August 17, 2026, to improve the security of NuGet, its package repository for .NET developers. API keys created before August 17 will remain valid until November 1, after which develope…HELPNETSECURITY.COM
4 AugPrompting for Patches That Fix Vulns Without Adding New Ones - Keith Hoodlet - ASW #394There's already an increase in volume of security flaws found by LLMs. And orgs are already turning to LLMs to write code. So, what happens when orgs lean on LLMs to create patches for those security flaws? Keith Hoodlet gives an exclusive early look at his team's recent research…YOUTUBE.COM
4 AugJoinable Labs unveils Joinable Security for threat intelligence and AI-driven responseJoinable Labs launched Joinable Security, the first domain on the Joinable platform, with two products: Joinable Threat Map, a free utility that lets the security community map, analyze, and share evolving adversary behavior, and Joinable Runbooks, an enterprise platform that tur…HELPNETSECURITY.COM
4 AugSecuronix enhances Unified Defense SIEM with AI agent detection and lower data costsSecuronix has announced expanded cybersecurity cost reduction, expanded Threat Analytics for Microsoft Sentinel, and new Governed AI Agent Detection and Response capabilities. The additions extend the Securonix Unified Defense SIEM platform to help enterprises and managed securit…HELPNETSECURITY.COM
4 AugUptime Kuma 2.5.0 waits two weeks before trusting a new npm packageUptime Kuma checks whether a website, a Docker container, a DNS record, or a Steam game server is still answering, and pushes a message to Telegram, Slack, or email when one stops. The self-hosted monitoring tool is MIT licensed, runs in a container or on Node.js, and has 89,800 …HELPNETSECURITY.COM
4 AugLegit Security VibeGuard 2.0 brings endpoint security and real-time guardrails to AI coding agentsLegit Security has unveiled VibeGuard 2.0, bringing a new endpoint security capability that seamlessly discovers and integrates with coding agents, secures them and delivers a frictionless developer experience. Launched in Q4 2025, Legit VibeGuard was the solution designed to sec…HELPNETSECURITY.COM
4 AugSome Claude Chats Are Searchable on GoogleAnd it’s personal information (alternate link ): The exposed data includes an AI-powered therapy app that someone appears to have vibe-coded, notes on meetings, and a dashboard someone made apparently to analyze medical billing data. Exposed chats reportedly include private…SCHNEIER.COM
4 AugGemini Agent-to-Agent Attack Method Exposed Secrets, Enabled Pull Request TamperingA crafted prompt to a low-privilege Google ADK agent could be used to pass a malicious hand-off comment to a privileged agent. The post Gemini Agent-to-Agent Attack Method Exposed Secrets, Enabled Pull Request Tampering appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugESET introduces new AI capabilities for autonomous agent securityESET is expanding its AI capabilities across threat detection, investigations, threat protection, and security operations, delivering added value to customers through built-in innovations rather than separate add-on solutions. “AI is a new class of actor inside the company – read…HELPNETSECURITY.COM
4 AugCloud and SaaS Environments Now Top Targets for AttackersCloud and SaaS are now the preferred operating environments for threat actors, amid a continued shift to identity attacksINFOSECURITY-MAGAZINE.COM
4 AugTP-Link Omada ZTP Vulnerabilities Chain Into Full Network TakeoverForescout researchers have found 15 new vulnerabilities in the TP-Link Omada networking ecosystem. The post TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugWhen Vibe Hacking Turns AI into the Junior Hacker Every Adversary Always WantedThe cybersecurity industry has spent decades assuming that offensive capability scales with technical expertise. That assumption is starting to break. Security teams have long estimated risk by ranking attacker sophistication. Nation-state actors sat at one end. Organized crimina…THEHACKERNEWS.COM
4 Aug“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AITalos has collected prompt logs from threat actor endpoints running various applications, such as Claude Code, CodeX, Cursor, or Gemini. This blog is an analysis of the ways we've seen bad actors leveraging cloud-based AI.TALOSINTELLIGENCE.COM
4 AugApple challenges new UK demand to access encrypted iCloud dataApple has filed a new legal challenge against the UK government over an order requiring access to encrypted cloud backups belonging to British users. The complaint follows the government’s decision last year to withdraw a broader demand that could have affected customers in both …CYBERINSIDER.COM
4 AugObsidian Security Raises $85 Million at $1.1 Billion ValuationObsidian Security has developed a platform for governing AI agents across third-party applications. The post Obsidian Security Raises $85 Million at $1.1 Billion Valuation appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugWeaponized Email AI Assistants Could Help Attackers Hijack AccountsResearchers demonstrate how attackers could abuse built-in email chatbots to evade detection, impersonate trusted employees, compromise executive accounts, and facilitate financial fraud. The post Weaponized Email AI Assistants Could Help Attackers Hijack Accounts appeared first …SECURITYWEEK.COM
4 AugZenity Raises $125 Million in Series C FundingThe AI security company will invest in product innovation, global expansion, and customer experience. The post Zenity Raises $125 Million in Series C Funding appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugSevii APS Module preempts attacks with autonomous cyber defensSevii has announced a major expansion of the Sevii Autonomous Defense & Remediation (ADR) platform with the general availability of an Autonomous Preemptive Security (APS) module. The new module complements ADRs autonomous defense against threats, extending the platform to c…HELPNETSECURITY.COM
4 AugOligo Raises $60 Million for Runtime SecurityThe company will use the investment to accelerate product innovation and expand go-to-market operations. The post Oligo Raises $60 Million for Runtime Security appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugCISO Conversations: Russ Kirby – Passion Is the Antidote to BurnoutRuss Kirby, CISO at Ping Identity, shares how passion, courage, and “good enough” thinking shaped his path from HP to the C-suite—and what keeps him up at night. The post CISO Conversations: Russ Kirby – Passion Is the Antidote to Burnout appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugBlack Hat USA 2026 – Summary of Vendor Announcements (Part 2)Many companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas. The post Black Hat USA 2026 – Summary of Vendor Announcements (Part 2) appeared first on SecurityWeek .SECURITYWEEK.COM
4 AugRethinking AI Security: Why CASB and DLP Need an Interaction-Aware LayerBuild your strategy around answering these questions to ensure employees use AI productively while keeping sensitive data, IP, and agent behavior within the boundaries set for safe AI use. The post Rethinking AI Security: Why CASB and DLP Need an Interaction-Aware Layer appeared …SECURITYWEEK.COM
4 AugA Roadmap for Confronting the Chilling Effects of Censorship, Surveillance and New TechnologySenior research fellow Jon Penney spoke with Tech Policy Press about how rising surveillance is causing people to self-censor. The post A Roadmap for Confronting the Chilling Effects of Censorship, Surveillance and New Technology appeared first on The Citizen Lab .CITIZENLAB.CA
4 AugAdvance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOpsMicrosoft expands its Zero Trust for AI strategy to enhance security for AI and DevSecOps environments with new tools and guidance. The post Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps appeared first on Microsoft Security Blog .MICROSOFT.COM
4 AugRandomness, Grey, Deepseek, Sonicwall, Spice, CaptiveCrunch, eBay, and Aaran Leyland - SWN #604Randomness, 50 Shades of Grey, Deepseek, Sonicwall, Spice Weasels, CaptiveCrunch, eBay, Aaran Leyland, and More on the Security Weekly News. Visit https://www.securityweekly.com/swn for all the latest episodes! Show Notes: https://securityweekly.com/swn-604YOUTUBE.COM
4 AugMassive supply-chain attack compromises 440 packages under four hoursResearchers from multiple security firms observed a variant of Mini Shai-Hulud, self-replicating malware linked to TeamPCP, in all the affected packages. The post Massive supply-chain attack compromises 440 packages under four hours appeared first on CyberScoop .CYBERSCOOP.COM
🌐 CYBER THREAT LANDSCAPE 7[−]
4 Aug18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool UsersCybersecurity researchers have discovered a new set of malicious npm packages that target users of Alibaba developer tools with a cross-platform remote access trojan (RAT) as part of a sophisticated, targeted software supply chain attack targeting Chinese-speaking environments. O…THEHACKERNEWS.COM
4 AugDOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RATA new Russian loader-as-a-service (LaaS) codenamed DOUBLECUP has been using ClickFix lures as a way to stage malware-laced PNG images in victims' browser cache and ultimately deliver CountLoader and a previously undocumented remote access trojan called DeviceManager. "The first s…THEHACKERNEWS.COM
4 AugSmears, Fakes & Phantoms: Cold War Britain's Secret Propaganda DepartmentIn Cold War Britain, a secret propaganda department saw its list of targets and tactics widen. Personnel inside the Information Research Department went beyond forgeries, fakes, and plants, conducting bold impersonations to smear critics and stoke tensions among foes. The team, w…THECYBERWIRE.COM
4 Augkeyv and cacheable npm Package Hijacked in Supply Chain AttackWiz Research is actively investigating an ongoing software supply chain attack affecting multiple keyv/cacheable npm packages.WIZ.IO
4 AugGreatness PhaaS Adds Device Code Phishing to Bypass MFA and Steal TokensThe commercial phishing-as-a-service (PhaaS) toolkit known as Greatness has become the latest crimeware solution to add support for device code phishing, a rapidly growing cyber threat that abuses the legitimate OAuth 2.0 Device Authorization Grant to bypass Multi-Factor Authenti…THEHACKERNEWS.COM
4 AugApple battles it out again with the UK over encrypted iCloud accessApple is fighting another attempt by the UK's Home Office to get a backdoor providing access to encrypted iCloud data.MALWAREBYTES.COM
🎙️ PODCASTS 1[−]
4 AugBetween Two Nerds: Hackers vs the stateIn this edition of Between Two Nerds Tom Uren and The Grugq talk about whether hacker culture is inherently anti-authoritarian and how different states get their country’s hackers to work for the state. This episode is also available on YouTube.RISKY.BIZ
📡 INFOSEC NEWS 21[−]
4 AugWhatsApp account takeover scam asks you to “vote for my friend”Scammers are trying to take over WhatsApp accounts by sending messages asking people to vote for a friend in a fake online contest.MALWAREBYTES.COM
4 AugDevice Code Phishing Up 1,500% in 2026; Vishing DoublesNewer social engineering techniques help attackers ignore entrenched security controls and limit the evidence they leave behind.DARKREADING.COM
4 AugAI Accounts for Over Half of Cybercrime in Africa, Says InterpolInterpol claims AI is driving a surge in cybercrime in Africa, with related losses doublingINFOSECURITY-MAGAZINE.COM
4 AugOnline backlash ends in Google rolling back Google Earth AI tool after a dayGoogle has walked back an AI feature that allowed users to generate artificial images inside Google Earth, after a predictable flurry of deepfakes.MALWAREBYTES.COM
4 AugGoogle Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged AgentGoogle deleted three AI agent workflows from its Agent Development Kit (ADK) Python repository. Pillar Security showed that a public GitHub issue could manipulate a triage agent into triggering a privileged code-fixing agent. The researchers said the public agent could be prompt-…THEHACKERNEWS.COM
4 AugTravelers targeted when logging into hotel Wi-Fi networksRussian cybercrime groups are running a campaign that abuses hospitality Wi-Fi to steal information from travelers worldwide.MALWAREBYTES.COM
4 AugAI Notetaker Lets Hackers Spy on Government, Corporate Video CallsA Google Firebase misconfiguration lets users of tl;dv, an AI meeting tool, query any other users' meeting information and potentially join calls.DARKREADING.COM
4 AugApple launches new legal challenge against UK over iCloud accessSeeking to protect users' iCloud accounts, Apple is reportedly mounting a new challenge to British legal demands for ways around the company's Advanced Data Protection feature.THERECORD.MEDIA
4 AugCybercriminals Bypass AI Safety Controls by Splitting Malicious Tasks Across Multiple SessionsTalos read attacker prompt logs and found guardrails fell to task splitting and ownership claimsINFOSECURITY-MAGAZINE.COM
4 AugKeyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code HooksA credential-stealing npm worm that first appeared in keyv@6.0.0 spread beyond the Keyv and Cacheable namespaces into hundreds of packages across multiple organizations on August 4, 2026. SafeDep verified 353 poisoned versions across 79 package names in the npm registry. Its moni…THEHACKERNEWS.COM
4 AugRussian businesses erase Durov-linked products after 'terrorist' designationThe designation, announced last week, came a day after Russia's Federal Security Service (FSB) charged Durov with aiding terrorist activity and said it would seek to place him on an international wanted list. The agency accused Telegram of failing to remove channels and bots alle…THERECORD.MEDIA
4 AugWhatsApp Scam Hijacks Accounts via Linked Devices FeatureWhatsApp scam abused the Linked devices feature to hijack accounts without stealing any passwordsINFOSECURITY-MAGAZINE.COM
4 AugWiz at Black Hat 2026: Driving AI Threat ReadinessAnnouncing new capabilities that help organizations prepare for the AI era by expanding visibility and accelerating response, so security teams can defend at machine speed.WIZ.IO
4 AugLandmark Deal Would Officially Add Laser Weapons to US Army ArsenalFacing a growing drone threat, the Pentagon is poised to sign a first-of-its-kind contract for “Enduring High Energy Lasers”—and make directed energy weapons an official part of the Army’s kit.WIRED.COM
4 AugBenchmarking the Agentic SOC: How we evaluate LLMs for security workflowsPublic leaderboards can't tell you which LLM to trust in your SOC, so Elastic built an evaluation framework that grades models on the work (tool calls, execution traces, blind judging) across Agent Builder, Attack Discovery, and automatic migration.ELASTIC.CO
4 Aug77 Open VSX extensions found harvesting developer info77 extensions on the Open VSX marketplace impersonated legitimate developer tools while transmitting information about the systems and development environments where they were installed. [...]BLEEPINGCOMPUTER.COM
4 AugNvidia doesn’t mess around: A week after open AI industry group formed, it’s already showing progressThe week-old Open Secure AI Alliance, spearheaded by Nvidia and grown to over 120 companies, already has proposals out for defending against AI agents.TECHCRUNCH.COM
4 AugAndroid app developers may be unwittingly sharing their users’ location data with advertisersNew findings by the Electronic Frontier Foundation aim to warn app developers that some of the third-party code they place in their apps may also collect their users' location data when they grant permission to the app.TECHCRUNCH.COM
4 AugOpenAI: Cambodian scam centers used ChatGPT to lure Indian nationals, conduct investment fraudA tip from WhatsApp led OpenAI to ban multiple accounts associated with investment scams and human trafficking operations based in Cambodian scam centers.THERECORD.MEDIA
4 AugPhishing service spoofs RingCentral to steal Microsoft 365 accountsThe Greatness phishing-as-a-service (PhaaS) platform has expanded from credential phishing to adversary-in-the-middle attacks and device-code phishing targeting Microsoft 365 accounts. [...]BLEEPINGCOMPUTER.COM
4 AugOK, Well, Rogue AI Agents Are Hacking AgainRogue AI agents from OpenAI and Anthropic have again been caught trying to disrupt servers and software—and leaving instructions for future bad behavior.WIRED.COM