131Articles
8Categories
2026-08-05Date
🚨 CISA KEV 1[−]
5 Aug KEVU.S. CISA adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalogU.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known …SECURITYAFFAIRS.COM
🐛 COMMON VULNERABILITIES AND EXPOSURES 7[−]
5 AugRuby on Rails critical bug puts every image upload under scrutinyA new critical vulnerability in the Ruby on Rails (“Rails”) web application framework, CVE-2026-66066 , could turn a seemingly innocuous image into a front door to your secrets. Disclosed July 30, the high severity CVE (scored 9.5 out of 10) poses a significant risk to enterprise…CSOONLINE.COM
5 Aug KEVCISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively ExploitedThe U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of vulnerabilities is as follows - CVE-2026-9198 (CVSS score: …THEHACKERNEWS.COM
5 AugCritical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode MarkupAn unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A public repository and crafted Org-mode markup are enough. The flaw is fixed in Gitea 1.2…THEHACKERNEWS.COM
5 AugCritical Paperclip bugs expose AI agent trust failuresSecurity researchers are warning against trust assumptions in AI security with newly detailed flaws affecting the open-source AI agent platform Paperclip that could be chained into remote code execution (RCE), data exposure, and developer-machine compromise. An Oasis Security res…CSOONLINE.COM
5 AugNew OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitchA memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with pre-built records for roughly 800 kernel builds. The vulnerability, tracked as CVE-20…THEHACKERNEWS.COM
5 AugOVSwrap: 13-Year-Old Linux Kernel Flaw Lets Local Users Become RootOVSwrap is a 13-year-old Linux kernel flaw that lets local users gain root privileges on most distributions using Open vSwitch. Security researcher Asim Manizada disclosed OVSwrap (CVE-2026-64531, CVSS score of 7.8), a local privilege escalation vulnerability in the Linux kernel&…SECURITYAFFAIRS.COM
5 AugPre-auth RCE in enterprise Java hits Bonita and OFBiz serversAn attacker sends a single web request to a Bonita server and lands inside an internal API that assumed nobody could reach it. The request arrives unauthenticated. From there the attacker runs code on the host. Bonita BPM handles loan approvals, insurance claims, and employee onb…HELPNETSECURITY.COM
⚠️ VULNERABILITY DISCLOSURE 41[−]
5 AugNational cyber director lays out White House plans to secure AI without writing new rulesThe Trump administration executive order on artificial intelligence tried to strike the balance between responsible use, security and mutual benefit, all with an eye toward not making it regulatory in nature, National Cyber Director Sean Cairncross said Tuesday. “Everyone is work…CYBERSCOOP.COM
5 AugRisky Bulletin: Hacker breaches Hungary's State TreasuryA hacker breached Hungary’s State Treasury, Russia will mandate 40 apps on all smartphones next year, hackers steal Liechtenstein’s business database, and an AI agent got real CVEs for hallucinated vulnerability reports.RISKY.BIZ
5 AugFuture AGI: Open-source platform for shipping self-improving AI agentsFuture AGI is an open-source platform for tracing, evaluating, simulating, and guardrailing LLM agents, licensed Apache 2.0 and self-hostable. Self-hosted instances register with Future AGI on first boot and send an instance ID, a version string, a deployment type, and the email …HELPNETSECURITY.COM
5 AugQuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows InstallerCybersecurity researchers have disclosed what has been described as a "long-standing supply chain attack" on QuickFox, a virtual private network (VPN) and network acceleration tool designed for overseas Chinese users. According to Fortinet FortiGuard Labs, the supply chain attack…THEHACKERNEWS.COM
5 AugRisky Business #847 -- Oops! Claude's accidental hacking spreeOn this week’s show Patrick Gray, and James Wilson are joined by bearded man of leisure Adam Boileau to discuss the week’s cybersecurity news, including: Accidental AI agent hacking sprees have the world’s media freaking out, but we think it’s all pretty funny The bugpocalypse is…RISKY.BIZ
5 AugAI threat report: Rogue agents, workflow attacksMalicious AI use and threats to AI systems are requiring cyber teams to double down on security fundamentals and rethink the future of their approaches to defense. Newly emerging AI-enabled attacks, proofs of concept, and in-the-wild techniques, as well as the latest AI vulnerabi…CSOONLINE.COM
5 AugCloudflare gives AI agents wallets with built-in spending controlsCloudflare’s Wallets will give AI agents running on its platform a human-readable wallet handle for paying APIs and online content within limits set by their creator. Handle reservations have opened, while the service will become available in the coming months. It will incl…HELPNETSECURITY.COM
5 AugClaude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for ItselfAn agent running Anthropic's Claude Mythos 5 spent 34 hours trying to get a malware dropper merged into a real open-source project during a cyber evaluation by the UK's AI Security Institute. When a bystander publicly warned that the code was malicious, the agent denied it, force…THEHACKERNEWS.COM
5 AugWhy you need a reliable AI agent kill switchRecent high-profile rogue agent incidents involving OpenAI and Anthropic underscore the fact that organizations can’t put blind trust in their AI guardrails. Moreover, they must able to turn off agents quickly when they deviate from intended behavior — before they can do potentia…CSOONLINE.COM
5 AugAI is getting better at election facts, but voters shouldn’t rely on itAI chatbots are avoiding some of the obvious errors that plagued earlier models, but they still fall short giving voters the full picture compared to state and local sources. The post AI is getting better at election facts, but voters shouldn’t rely on it appeared first on CyberS…CYBERSCOOP.COM
5 AugYour orchestration framework choice is a security decision, not just an engineering oneComparisons of LangChain, CrewAI and AutoGen are easy to find — dozens of guides this year cover the same ground: developer experience, ecosystem maturity, how easy it is to wire up multi-agent workflows. None of them ask the question I actually care about: does the framework you…CSOONLINE.COM
5 AugCISA Warns of Exploited Langflow, N-central, and Tomcat VulnerabilitiesThe flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass. The post CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities appeared first on SecurityWeek .SECURITYWEEK.COM
5 Aug15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera trafficTP-Link prints the serial number of an Omada router on its packaging and on a label attached to the device. Those numbers run in sequence, and feeding a guessed one to the Omada cloud service returns the matching device’s MAC address and model. Serials beginning 22460J500 a…HELPNETSECURITY.COM
5 AugOne C2 kit. 30 customers. 2 governmentsI was mapping the command-and-control infrastructure behind a state-linked intrusion set when the query came back and effectively ended the exercise I thought I was running. The malware resolved its C2 address by reading a smart contract on a public blockchain. Public reporting d…CSOONLINE.COM
5 AugA few notes on AWS Nitro Enclaves: KMS integrationNitro Enclaves and Key Management Service (KMS) feel like a natural fit: since the KMS can verify attestation documents generated by the enclaves, developers can offload key management tasks from their applications to the AWS-managed service. But integrating an external service w…TRAILOFBITS.COM
5 AugAI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against OrganizationsIn one instance, an unsanctioned model attempted to inject malicious code into an open source repository. The post AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations appeared first on SecurityWeek .SECURITYWEEK.COM
5 AugLeaked n8n API Tokens Exposed Live Instances to Credential TheftGitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability. We scanned public GitHub comm…THEHACKERNEWS.COM
5 AugOpenAI, Anthropic AI agents resorted to deception in new cybersecurity incidentsOpenAI’s GPT-5.6 Sol and Anthropic’s Mythos 5 have been implicated in another series of AI security incidents after the models created fake online identities, targeted real people, and attempted to manipulate developers into approving malicious code during controlled cyber evalua…CSOONLINE.COM
5 AugCode review used to be the only way to catch these bugsAn automated system called NOVA read the source code of 3,915 open-source projects over two months and came back with 14,090 vulnerabilities, each one confirmed through the system’s validation pipeline. Vulnerability researchers at Palo Alto Networks’ Unit 42 built th…HELPNETSECURITY.COM
5 AugKali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise RiskKali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device codes that victims approve on Microsoft's real authentication page. Once access and refresh tokens are issued, attackers may…THEHACKERNEWS.COM
5 Aug KEVTenable Hexa AI: Automating exposure remediation with agentic routinesDiscover how Tenable Hexa AI closes the gap between exposure management and endpoint patching using intent-driven routines, smart guardrails, and human approval. Key takeaways The problem: A slow handoff between security workflows creates a days-long remediation gap.   The s…TENABLE.COM
5 AugOpen-source software’s archenemy TeamPCP goes back further than anyone thoughtOligo Security uncovered evidence of a long operational history, including multiple previous attacks it traced to the same attacker infrastructure and tools. The post Open-source software’s archenemy TeamPCP goes back further than anyone thought appeared first on CyberScoop .CYBERSCOOP.COM
5 AugThe Fourth Battlefield: The Growing Role of Cyber Operations in Global ConflictCrowdStrike co-founder Dmitri Alperovitch discusses how cyber operations support kinetic warfare, signal coming conflicts, and reshape the global battlefield. The post The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict appeared first on SecurityWeek .SECURITYWEEK.COM
5 AugTuskira expands exposure management with Agentic Control PlaneTuskira has launched its Agentic Control Plane for Exposure Management, a new capability within the Tuskira platform that governs AI-discovered vulnerabilities from scan to verified closure. The capability extends Tuskira’s existing zero-day and exposure-response capabilities to …HELPNETSECURITY.COM
5 AugAI agent deception moves from theory to reality in UK cyber tests“During a routine cyber evaluation, AI agents took sustained, unsanctioned action directed at real people and organisations,” UK’s AI Security Institute (AISI) disclosed on Tuesday. The agents’ actions included an attempted supply-chain attack that saw them crea…HELPNETSECURITY.COM
5 AugArmorCode enhances attack path analysis with new AI agents and Context Risk GraphArmorCode has announced a major expansion of its Agentic Control Plane. Four new Anya AI agents help security teams analyze cloud risks, assess vulnerability exploitability, identify mitigation strategies, and coordinate patch orchestration. It also unveiled new Context Risk Grap…HELPNETSECURITY.COM
5 AugAU: Updoc patients notified of security breach where personal information may have been stolenEmma Kirk reports: Updoc patients have been notified their personal information may have been accessed in a security breach. The website is used for 24/7 telehealth services across Australia. Customers were advised there was a “brief period of unauthorised access to a third party…DATABREACHES.NET
5 Aug KEVCISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flawsThe U.S. Cybersecurity and Infrastructure Security Agency is giving federal agencies three days to mitigate vulnerabilities in IBM Langflow, N-central, and Apache Tomcat, all actively exploited. [...]BLEEPINGCOMPUTER.COM
5 AugPaperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent ImportsTwo security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is an open-source control plane for teams of artificial intelligence (AI) agents, and both paths rely on importing a malicious agent and starting it. A th…THEHACKERNEWS.COM
5 AugCOLDCARD security audit phishing attack installs remote access toolA phishing campaign is exploiting fears surrounding the recently disclosed COLDCARD wallet vulnerability and suspected $88.6 million Bitcoin theft to trick users into installing ScreenConnect remote access software. [...]BLEEPINGCOMPUTER.COM
5 AugFlaws in Google APK for Python Unlock Agent-to-Agent AttackGoogle has fixed the issues, which exploited a trust boundary between two AI agents with different privilege levels to trigger automation that could compromise the supply chain.DARKREADING.COM
5 AugHackers run khunt post-exploitation toolkit from Oracle databaseHackers exploited a SQL injection vulnerability to install a post-exploitation toolkit directly inside an Oracle database that was used to breach a corporate network. [...]BLEEPINGCOMPUTER.COM
5 AugHow a $50,000 Exploit Chain Turned Bixby Against Samsung PhonesThe chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications. The post How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones appeared first on SecurityWeek .SECURITYWEEK.COM
5 Aug KEVSAFE and sound.The White House lays out its AI strategy at Black Hat. Researchers spotlight rogue AI behavior. CISA warns of an actively exploited N-able flaw. TP-Link patches 15 Omada vulnerabilities. Apple fights the UK’s iCloud access order. The AI gray market expands. A Massachusetts health…THECYBERWIRE.COM
5 AugWhy security validation must follow the attack pathFor years organizations have strengthened their security posture by investing in specialized tools for applications, identities, endpoints, networks, and cloud infrastructure. Those investments remain essential, but the way attackers operate has changed dramatically. Today’s adve…CSOONLINE.COM
5 AugThe Real Goal: Strategic AutonomyThis discussion argues that a successful CISO advisor should enable security leaders to make independent, data-driven decisions that align with business objectives. That includes knowing when to take action—and when not to. Strategic autonomy shifts cybersecurity from a reactive …YOUTUBE.COM
5 AugSecurity validation should begin where attackers beginModern attacks increasingly begin with the web application. Customer portals, partner platforms, APIs, external business applications, and AI-powered services have become the front door to the enterprise. The systems organizations build to create value are now the same systems at…CSOONLINE.COM
5 AugCanadian Man Pleads Guilty to Hacking U.S. Cloud Storage Provider and Extorting Its Customers for MillionsConnor Riley Moucka, aka “Waifu” and “Judishe,” was scheduled to stand trial in January 2027. Today, he changed his “not guilty” plea to a guilty plea, and pleaded guilty to four counts of the multi-count indictment. Connor Riley Moucka, 26, of…DATABREACHES.NET
5 AugReport: Passkey security issues could allow account takeoverGiven the widespread enterprise adoption of passkeys to replace passwords, a Palo Alto Networks Unit 42 report disclosing ways attackers are getting around passkey protections is concerning, analysts say, but they stress that the demonstrated attacks can only happen after a succe…CSOONLINE.COM
5 AugCyberRisk TV Live Coverage from Black Hat 2026 - Day 1CyberRisk TV is broadcasting live from Black Hat 2026 in Las Vegas! Tune into our coverage featuring interviews with cybersecurity leaders, practitioners, researchers, and technology innovators from one of the industry’s most influential security events. Throughout the day, we’ll…YOUTUBE.COM
5 AugSN 1090: Black Hat - The Hidden Flaws in AI Security Nobody Saw ComingAt Black Hat Las Vegas, the Security Now crew digs into how AI is not just finding hidden software bugs but also fueling both groundbreaking innovation and alarming new exploits. When open models can launch surprise Bitcoin heists, who draws the line between forbidden knowledge a…TWIT.TV
📢 SECURITY ADVISORIES 6[−]
5 AugQuickFox VPN installers were trojanized with malware for a yearQuickFox VPN installed a persistent backdoor on selected Windows computers, focusing on systems belonging to developers, administrators, translators, and cryptocurrency users. The attack was uncovered by Fortinet’s FortiGuard Incident Response Team while investigating modified Qu…CYBERINSIDER.COM
5 AugWhite House walks tightrope on securing AI without stifling tech innovationNational Cyber Director Sean Cairncross said the administration wants to work collaboratively with the private sector.CYBERSECURITYDIVE.COM
5 AugCISA is prioritizing work with critical infrastructure as it begins to recover from cutsThe agency has been focused on helping secure systems at drinking and wastewater utilities in recent weeks.CYBERSECURITYDIVE.COM
5 AugRansom Cartel ransomware creator sentenced to 16 years in prisonMaksim Silnikau, the creator and administrator of the Ransom Cartel ransomware operation, was sentenced to 16 years in prison for his role in ransomware attacks against at least 18 companies worldwide. [...]BLEEPINGCOMPUTER.COM
🔥 INCIDENT REPORTING 22[−]
5 AugInside the North American Water Utility Hacking CrisisInside the North American Water Utility Hacking Crisis: Iran Links, PLC Tactics, Insurance Fallout, and Volunteer Fixes This special Cybersecurity Today episode examines the expanding wave of water utility intrusions across North America, including a WIRED-obtained memo linking a…CYBERSECURITYTODAY.LIBSYN.COM
5 AugWhat stops attackers wrecking industrial plants is knowing howEngineers at an Israeli food producer spent most of a week rebuilding a refrigeration system after an intruder switched the gas cooler and receiver valves to manual and pinned them open. Liquid CO2 flooded the compressors and destroyed them. The replacement units did not match th…HELPNETSECURITY.COM
5 AugFake Bank of America Phishing Scam Installs Remote Access MalwareCybercriminals are using a fake Bank of America phishing campaign to trick users into downloading a malicious script that installs ScreenConnect, enabling remote access and persistence on compromised systemsINFOSECURITY-MAGAZINE.COM
5 AugWater Sector Cyberattacks Reportedly Hit at Least 12 StatesGeorgia has been confirmed as one of the attacked states after Clayton County reported a pump station disruption. The post Water Sector Cyberattacks Reportedly Hit at Least 12 States appeared first on SecurityWeek .SECURITYWEEK.COM
5 AugAngola's Largest Telco Breached Hours Before IPOUnitel, Angola's dominant mobile operator, continues to recover from a cyberattack that caused outages the day of the government-owned telco's public offering.DARKREADING.COM
5 AugOver 400 NPM Packages Infected in ChainDrop Supply Chain AttackThe malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials. The post Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack appeared first on SecurityWeek .SECURITYWEEK.COM
5 AugChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly InstallsA new npm worm has compromised packages with over two billion monthly installsINFOSECURITY-MAGAZINE.COM
5 AugOpen VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer DataA cluster of 77 extensions on the Open VSX marketplace has been found to impersonate legitimate developer tools while transmitting information about the systems and development environments on which they were installed. The "evil twin" extensions were uploaded to the repository b…THEHACKERNEWS.COM
5 AugPrompt Injection Remains Biggest LLM Risk, Despite Limited IncidentsPrompt injection remains the most dangerous security threat to LLMs, according to OWASP’s latest Top 10 LLM Applications listINFOSECURITY-MAGAZINE.COM
5 Aug311,000 Impacted by Brown Health Medical Group-MA Data BreachHackers stole personal information, medical records, and financial information from the organization’s server. The post 311,000 Impacted by Brown Health Medical Group-MA Data Breach appeared first on SecurityWeek .SECURITYWEEK.COM
5 AugCybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident DataThe guidelines are the work of the recently launched Open Secure AI Alliance, which now includes 120 organizations. The post Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data appeared first on SecurityWeek .SECURITYWEEK.COM
5 AugCyberattacks on water systems expand to 12 states as South Dakota, Georgia announce incidentsWater utilities in at least 12 states have reported cyberattacks on their operational technology, as the scope of a campaign allegedly linked to Iranian hackers continues to grow.THERECORD.MEDIA
5 AugDutch retailer De Bijenkorf warns customer data may be exposed after cyber incidentAmsterdam-based luxury goods chain De Bijenkorf is the latest retailer to announce a cyber incident involving a third-party logistics provider.THERECORD.MEDIA
5 AugBrown Health Medical Group-MA Data Breach Exposes Information of 311,000 IndividualsBrown Health Medical Group-MA breach exposed personal, medical, and financial data of over 311,000 individuals after hackers accessed its servers. Brown Health Medical Group-MA data breach exposed personal, medical, and financial data of over 311,000 individuals after hackers acc…SECURITYAFFAIRS.COM
5 AugDon't Revoke That Token Yet: Inside the keyv/cacheable npm Worm, (Wed, Aug 5th)When you learn that a compromised package executed on one of your build hosts, muscle memory takes over: revoke the npm token, rotate the GitHub PAT, cycle the cloud keys. That reflex has been correct in almost every supply-chain incident I have worked. In the keyv / cacheable co…ISC.SANS.EDU
5 AugTom Cotton prods Treasury for tax code tweaks to modernize OTThe Senate Intel Committee chair wrote to Treasury Secretary Scott Bessent about changes to spur investment in aging technology to better guard against cyberattacks. The post Tom Cotton prods Treasury for tax code tweaks to modernize OT appeared first on CyberScoop .FEDSCOOP.COM
5 AugWestern government leaders call for a focus on infrastructure resilience, not AI hypeU.S. and allied officials said companies should start preparing now for a cyberattack that changes how they provide essential services.CYBERSECURITYDIVE.COM
5 AugCanadian man pleads guilty to Snowflake hacks that led to 165 breachesA 26-year-old from Ontario faces as many as 32 years in prison after pleading guilty to fraud, identity theft and conspiracy charges related to the 2024 hacks of cloud platform Snowflake.THERECORD.MEDIA
5 AugCSS: The Hidden Threat Lurking in Your InboxCSS was once just about design. Now researchers warn it's powerful enough to exfiltrate data from webmail — and some vendors aren't prepared.DARKREADING.COM
5 AugSnowflake hacker pleads guilty, faces up to 32 years in prisonConnor Moucka obtained almost $500,000 for playing a key role in one of the most widespread and damaging cyberattack sprees on record. The post Snowflake hacker pleads guilty, faces up to 32 years in prison appeared first on CyberScoop .CYBERSCOOP.COM
5 AugA Security Pro Hacked North Korean Hackers. He Found They’d Breached Hundreds of Networks WorldwideFor nearly two years, researcher Vangelis Stykas has maintained access to North Korean hackers’ servers. His work shows they pulled off intrusions in a shocking number of systems across the globe.WIRED.COM
5 AugInter-Con Security - 276,114 breached accountsIn June 2026, Inter-Con Security was targeted in a ShinyHunters “pay or leak” extortion campaign . The group subsequently published data it alleged was taken from the company, including 276k unique email addresses along with names, physical addresses, job titles and phone numbers…HAVEIBEENPWNED.COM
🕵️ THREAT INTELLIGENCE 22[−]
5 AugISC Stormcast For Wednesday, August 5th, 2026 https://isc.sans.edu/podcastdetail/10038, (Wed, Aug 5th)(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.ISC.SANS.EDU
5 AugYour enterprise AI footprint is about three times bigger than your model listOrganizations are building AI systems that combine models, agents and external tools instead of relying on standalone AI, according to Snyk’s latest State of Agentic AI Adoption report. The study analyzed 3,044 enterprise environments and 1.39 million code repositories to e…HELPNETSECURITY.COM
5 AugProduct showcase: Material unifies Google Workspace email, file & OAuth defenseHere’s an uncomfortable truth: the attack that gets you won’t look like an attack. It’ll look like a normal login, a normal file share, a normal permission request you clicked past without reading. You don’t have a phishing problem, a DLP problem, or an OA…HELPNETSECURITY.COM
5 AugBank of America impersonators weaponize ScreenConnect, then make it hard to removeA phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and then making it difficult to uninstall it. Different traps for Mac and Windows users By claiming the recipient must take spec…HELPNETSECURITY.COM
5 AugVulnerabilities in Car Anti-Theft DeviceThis is disturbing: …a team of security researchers at UC San Diego, who found that a model of aftermarket car alarm known as the KARR Security System, installed in more than 2 million vehicles across the US by their estimate, can let any hacker within Bluetooth range send …SCHNEIER.COM
5 AugSay Easy, Do Hard - Performance Through People - Greg Hoffman - BSW #459This week, we air our thirteenth pre-recorded segment called “Say Easy, Do Hard”. Inspired by my co-host, Jason Albuquerque, we discuss “Performance Through People”. Greg Hoffman joined us a few weeks back to discuss his new book. This week, we dig into his five disciplines of Pe…YOUTUBE.COM
5 AugApple WebKit privacy leaks impact Tor, Psylo, and iCloud Private RelayResearchers have discovered three WebKit features that can bypass application-level proxy settings on iOS and macOS, potentially exposing users' real IP addresses or DNS servers. The leaks affect proxy-based browsers, including iOS Tor browsers and Psylo, as well as Apple’s iClou…CYBERINSIDER.COM
5 AugSamsung bans smart TV apps that turn user connections into proxiesSamsung is banning smart TV apps that can route strangers’ web traffic through users’ home internet connections after researchers found residential proxy software embedded in games available through its app store. One affected Pac-Man title had even been promoted in Samsung’s “Ed…CYBERINSIDER.COM
5 AugNew Attack Methods Enable Malware to Hijack Passkey-Protected AccountsPalo Alto Networks researchers have demonstrated attacks against Google’s synced passkey implementation. The post New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts appeared first on SecurityWeek .SECURITYWEEK.COM
5 AugLumu launches live threat intelligence platform for real-time cyber defenceLumu has announced the release of Lumu Threat Observatory as part of Maltiverse, its threat intelligence solution. Lumu Threat Observatory is Maltiverse’s live, personalized threat-intelligence experience, providing organizations with a complete, live view of the active thr…HELPNETSECURITY.COM
5 AugINTERPOL flags AI as the new engine of African cybercrimeAfrica’s growing digital economy is exposing governments, businesses and internet users to a rising wave of cybercrime. The continent recorded more than 1.1 billion mobile subscriptions and over $1.1 trillion in digital transactions in 2025, while more than 570 million peop…HELPNETSECURITY.COM
5 AugTenable broadens AI visibility across major LLMs and AI toolsTenable has announced enhanced AI security capabilities within the Tenable One Exposure Management Platform. Tenable One AI Exposure now delivers expanded platform coverage with support for Google Gemini, extending its coverage across major LLMs: Google Gemini, Anthropic Claude, …HELPNETSECURITY.COM
5 AugImmigration Policy: The Backdoor to Transnational RepressionCitizen Lab researchers write that restrictive immigration policies are incompatible with attempts to counter transnational repression. The post Immigration Policy: The Backdoor to Transnational Repression appeared first on The Citizen Lab .CITIZENLAB.CA
5 AugLeadership Starts When You Stop CodingOne of the core disciplines of Performance Through People is adopting a leadership-first mindset. Instead of measuring success by your own technical output, effective leaders focus on creating the conditions for their teams to succeed. Many first-time managers struggle because th…YOUTUBE.COM
5 AugBlack Hat USA 2026 – Summary of Vendor Announcements (Part 3)Many companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas. The post Black Hat USA 2026 – Summary of Vendor Announcements (Part 3) appeared first on SecurityWeek .SECURITYWEEK.COM
5 AugTop product launches at Black Hat USA 2026Black Hat USA 2026 is underway in Las Vegas, and vendors are using the moment to unveil what they hope will define the next year of defense. Here are the announcements drawing the most attention on the ground, and why they matter for teams weighing new budgets. BlackCloak extends…HELPNETSECURITY.COM
5 AugStellar Cyber’s Auto-Triage AI matches human analysts 99.7% of the timeStellar Cyber, the full-cycle AI-native security operations platform company, today released results from an independent study of 124 days of customer trials of its Agentic Auto Triage capability. The independent study based on customer trials evaluated 138,475 real security aler…HELPNETSECURITY.COM
5 Aug​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report. The post ​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP) appeared first o…MICROSOFT.COM
5 AugFrom open lures to cloaked gates: How a macOS ClickFix campaign learned to hideA macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change makes malicious infrastructure harder to detect while giving defenders new hunting opportunities. The post From open lures to cloaked ga…MICROSOFT.COM
5 AugAI Made Perfect Cheating EasyThis conversation argues that AI hasn't created academic cheating—it has dramatically increased how effective and difficult to detect it can be. One observation is the sharp rise in perfect scores on standardized tests compared to previous years. If AI-assisted cheating becomes w…YOUTUBE.COM
5 AugOpenAI warns autonomous hacks are ‘watershed moment for computer security’Company employees said their industry should rethink how it balances capabilities and safeguards.CYBERSECURITYDIVE.COM
5 AugSmashing Security podcast #479: How a fake police officer nearly stole Graham’s cryptocurrencyGraham gets a phone call from the police. Well, someone who sounds convincingly like the police. There's just one small problem: what they really want is the 24-word seed key to Graham's cryptocurrency wallet. Meanwhile, if you've stayed in a hotel recently, the free Wi-Fi you co…GRAHAMCLULEY.COM
🌐 CYBER THREAT LANDSCAPE 4[−]
5 AugWriting for People with a Remote in Their Hand, with Jake Milstein of Contrast SecurityJake Milstein ran newsrooms at CBS, NBC, Fox, and ABC affiliates for 25 years. He has five Emmys and strong feelings about the phrase "in today's evolving threat landscape." It turns out 25 years of writing for people with a remote in their hand is excellent training for cybersec…THECYBERWIRE.COM
5 AugGoogle’s synchronized passkeys can be stolen in ‘Pass‑ta‑key’ attacksOver time, passkeys are supposed to replace passwords. But what happens when malware steals the master key?MALWAREBYTES.COM
5 AugTrojanized npm Packages Decode C2 IP From Ethereum Recipient AddressesCybersecurity researchers have flagged an evolution of the EtherHiding blockchain-based command-and-control (C2) technique that conceals the C2 server IP address inside a made-up destination address of a completely empty Ethereum transfer. The new dead drop resolver approach, obs…THEHACKERNEWS.COM
5 AugGoogle Blogger locks hundreds of blogs in malware false positiveGoogle has locked hundreds of Blogger websites after a false positive claimed they violated its "Malware and Similar Malicious Content" policy, with some sites deleted from the platform. [...]BLEEPINGCOMPUTER.COM
📡 INFOSEC NEWS 28[−]
5 AugWeekly Threat Bulletin – August 5th, 2026These are the top threats you should know about this week.F5.COM
5 AugSMOKE#SCREEN Campaign Abuses ScreenConnect to Give Attackers Remote Control AccessSMOKE#SCREEN uses fake Zoom updates to install ScreenConnect RMM, giving attackers persistent remote access while bypassing defenses. Securonix Threat Research has been tracking an active multi-wave campaign they’ve named SMOKE#SCREEN, in which unknown attackers use rotatin…SECURITYAFFAIRS.COM
5 AugFrontier Models Engage in Unsanctioned Behavior During TestingAnthropic and OpenAI models attacked “real people and organizations” during AI Security Institute testsINFOSECURITY-MAGAZINE.COM
5 AugJunk Cleaner clears the clutter from your AndroidThe easiest way to reclaim storage on your phone. Free up space without hunting through folders or risking your important files.MALWAREBYTES.COM
5 AugHow the Canadian Centre for Cyber Security used frontier AI to accelerate detection engineeringDiscover how CSE's Frontier AI Lab is exploring the ways artificial intelligence can strengthen cyber defence, beginning with detection engineering.CYBER.GC.CA
5 AugAnthropic AI agent faked identities, phished real developers in UK government hacking testAn artificial intelligence agent built by Anthropic independently planted malicious code in a real software project and sent phishing emails to developers during a U.K. government security evaluation, according to Britain’s AI Security Institute.THERECORD.MEDIA
5 AugVeeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant BugHashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and Django. The three most serious: An unauthenticated flaw in Veeam's console that hands over a managed agent's credentials, rated 9.…THEHACKERNEWS.COM
5 AugPaperclip AI Flaws Let Unauthenticated Attackers Run Commands3 Paperclip flaws exposed data & allowed unauthenticated command execution in two deployment modesINFOSECURITY-MAGAZINE.COM
5 AugHow AI-powered phishing killed blocklists for goodAI is helping attackers create disposable phishing infrastructure and rapidly evolving toolkits that blocklists cannot track fast enough. Push Security explains why browser-level, technique-based detection offers a more durable defense than relying on domains, signatures, and oth…BLEEPINGCOMPUTER.COM
5 AugResearchers report unauthorized AI behavior in cybersecurity exercises.Apple files new legal challenge against UK’s iCloud access mandate. Business news: Okta to acquire Permiso Security.THECYBERWIRE.COM
5 AugFake Open VSX Extensions Harvest Private Repo and CI Data77 counterfeit Open VSX extensions beaconed to one domain, 19 harvesting git and CI identityINFOSECURITY-MAGAZINE.COM
5 AugPoison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer PromptCybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging platforms. One such service, Poison Claude, claims to offer access to Anthropic's larg…THEHACKERNEWS.COM
5 AugPSA: Apple’s Private Relay can leak your real IP addressA bug in how Apple implements its Private Relay feature, which in theory masks users’ IP addresses from the sites they visit, can reveal users’ real IP addresses.TECHCRUNCH.COM
5 AugMeta Ran Ads That Contained AI-Generated Child Sexual Abuse ImageryMore than 50 offending image and video ads were published across Facebook, Instagram, Messenger, or Threads, according to Meta’s ad library data. Some ran as recently as this week.WIRED.COM
5 AugFrom 2 weeks to 2 minutes: Amazon Cognito launches Provisioned limits for self-service rate limit managementImagine preparing for your biggest sales event of the year, and you want to ensure your customer identity management service can handle the elevated traffic for carrying out application activities. For security teams, business leaders, and technologists managing identity infrastr…AWS.AMAZON.COM
5 AugDHS Is Hiring Bounty Hunters to Find and Photograph Deported People’s Homes AbroadHomeland Security told immigrants that leaving the US would wipe out fines it claims they owe. Now it wants private investigators to find them in their home countries and collect.WIRED.COM
5 AugHorizon3 raises $250 million in Series E funding.Spur secures $200 million in funding from Insight Partners. Okta has agreed to acquire identity security platform Permiso Security.THECYBERWIRE.COM
5 AugThe Most Dangerous AI Hacking Techniques Still Have Humans in the LoopSecurity researcher James Kettle tried to push the limit of AI’s hacking abilities—and discovered how effective it can be when combined with human expertise.WIRED.COM
5 Aug15 TP-Link Bugs Expose Risks in Zero-Trust ProvisioningResearchers are calling attention to the risks inherent in automated network device provisioning, using a world-leading device manufacturer as a case study.DARKREADING.COM
5 AugAWS partners with Anthropic and OpenAI to bring AWS Continuum into developer workflowsCustomers have access to models that are continuously getting better with each new generation bringing larger context windows, stronger reasoning, and lower token costs. Getting the strongest AI-powered security will come from tools that combine the most relevant models with deep…AWS.AMAZON.COM
5 AugChinese telcos maintain deep US presence despite Salt Typhoon links, House committee saysThree Chinese telecommunications giants continue to have footholds in the U.S. internet ecosystem despite their alleged role in previous Chinese hacking campaigns, a House committee report concluded.THERECORD.MEDIA
5 AugDHS Wants Protesters’ Signal Group ChatsA lawsuit accuses Homeland Security of violating protesters’ free-speech rights—but the agency is using it to try to get access to the plaintiffs’ encrypted communications.WIRED.COM
5 AugAI Deception Emerges in Cyber Tests as Agents Target Real People and SystemsAISI found AI agents taking unsanctioned online actions, including social engineering and code attacks, during controlled cyber tests. The UK’s AI Security Institute (AISI) has put something uncomfortable on the table: during cyber testing, frontier models didn’t just follow inst…SECURITYAFFAIRS.COM
5 AugCanadian pleads guilty to Snowflake cloud data-theft attacksA Canadian man pleaded guilty today to his role in accessing company accounts at cloud storage provider Snowflake and stealing data from at least 165 organizations in a scheme to extort millions of dollars from victims. [...]BLEEPINGCOMPUTER.COM
5 AugOpenAI’s Browser Could Be Hijacked to Spam Your WhatsApp ContactsResearchers at security firm Zenity found more than a dozen flaws in AI browsers—and managed to get OpenAI’s Atlas to make an unauthorized Amazon purchase.WIRED.COM
5 AugAI Sends Global Crime Syndicates Into Fraud NirvanaOrganized crime is convincingly scamming at scale, making billions thanks to AI-enabled voice cloning, deepfake real-time video overlays, LLM-driven persona management, and automated translation.DARKREADING.COM
5 AugAI Browsers Vulnerable to 'PleaseFix' Zero-Click Agent HijackingAttackers can take control of agents through malicious instructions hidden in content supplied to AI browsers, and there's no simple fix for the threat.DARKREADING.COM
5 AugNo Perfect Fix for AI Browser Prompt Injection FlawsAI browsers from top vendors remain vulnerable to prompt injection attacks despite multiple security guardrails, according to new research.DARKREADING.COM