109Articles
9Categories
2026-08-18Date
🚨 CISA KEV 1[−]
18 Aug KEVU.S. CISA adds a Ray-Project Ray flaw to its Known Exploited Vulnerabilities catalogU.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a Ray-Project Ray vulnerability to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a Progress LoadMaster vulnerability, tracked as CVE-2025-62593 …SECURITYAFFAIRS.COM
🐛 COMMON VULNERABILITIES AND EXPOSURES 8[−]
18 AugCritical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public ProjectsGitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software that, under certain conditions, could allow an unauthenticated attacker to remotely modify or delete public projects and user data. T…THEHACKERNEWS.COM
18 AugGitLab Patches Critical Unauthenticated GraphQL VulnerabilityGitLab patched a critical GraphQL flaw that let unauthenticated attackers remotely modify or delete public projects on self-managed servers. GitLab pushed out an emergency patch this week to address a critical flaw, tracked as CVE-2026-19478 (CVSS score of 9.4), that could let an…SECURITYAFFAIRS.COM
18 Aug300,000 WordPress Sites Potentially Exposed to Hacking Due to Form Plugin FlawTracked as CVE-2026-15748, the arbitrary file upload bug allows unauthenticated attackers to upload executable files. The post 300,000 WordPress Sites Potentially Exposed to Hacking Due to Form Plugin Flaw appeared first on SecurityWeek .SECURITYWEEK.COM
18 AugCritical GitLab flaw allows attackers to modify or delete public projects (CVE-2026-19478)GitLab has released patches for two vulnerabilities, including a critical-severity code injection flaw that can be exploited without authentication. The vulnerabilities affect GitLab Community Edition (CE) and Enterprise Edition (EE) versions from 18.2 before 18.11.11, 19.0 befor…HELPNETSECURITY.COM
18 AugCVE-2026-24301 Microsoft Copilot Information Disclosure VulnerabilityImproper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.MSRC.MICROSOFT.COM
18 AugCVE-2026-47632 Azure Connected Machine Agent Elevation of Privilege VulnerabilityCorrected the affected product from **Azure Monitor Agent Metrics Extension** to **Azure Connected Machine Agent** and updated the Security Updates table. This is an informational change only.MSRC.MICROSOFT.COM
18 AugCritical GitLab flaw allows attackers to delete and modify public reposGitLab has fixed a critical vulnerability that could allow unauthenticated attackers to perform unauthorized modifications inside code repositories or to completely delete them with a single HTTP request. The patched releases also address a second high-risk cross-site request for…CSOONLINE.COM
18 AugCritical GitLab Zero-Click Flaw Poses Mitigation ChallengesA lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential exploitation of CVE-2026-19478.DARKREADING.COM
⚠️ VULNERABILITY DISCLOSURE 34[−]
18 AugSnowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command InjectionCybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository that it said could be exploited through a crafted GitHub issue to execute commands in a workflow co…THEHACKERNEWS.COM
18 AugOpenAI president’s blog pushing agentic AI most notable for what it did not sayOpenAI president Greg Brockman on Sunday warned enterprise CISOs that they need to more aggressively embrace agents if they want to survive upcoming cyberattacks. Brockman said in a blog post that it has become “increasingly clear” that company systems are hiding “significant fla…CSOONLINE.COM
18 AugCybersecurity jobs available right now: August 18, 2026CISO ADI Global Distribution | USA | Hybrid – View job details As a CISO, you will develop and lead ADI’s global security strategy to protect information assets, digital platforms, critical operations, and AI-enabled environments. Advise executives and the Board o…HELPNETSECURITY.COM
18 AugAttackers turn to AI for help identifying files worth stealingAI tools are being used by cyber attackers to write malicious code, build tools that harvest credentials, search compromised networks, identify valuable business information, manage technical infrastructure and generate commands during intrusions. Gambit Security researchers exam…HELPNETSECURITY.COM
18 AugGoogle’s open-source HEIR lets AI work with data it can’t seeGoogle’s researchers and engineers developed the Homomorphic Encryption Intermediate Representation (HEIR) compiler project, an open-source compiler toolchain and development platform for homomorphic encryption. It can convert pre-trained AI models designed to operate on unencryp…HELPNETSECURITY.COM
18 AugDozens of WebKit Vulnerabilities Patched With Fresh macOS, iOS Security UpdatesThe bugs could be exploited to crash Safari, corrupt memory, leak sensitive data, escape the sandbox, and exfiltrate data. The post Dozens of WebKit Vulnerabilities Patched With Fresh macOS, iOS Security Updates appeared first on SecurityWeek .SECURITYWEEK.COM
18 Aug KEVCISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCEThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical flaw impacting Ray to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. Ray is an open-source, Python-native distributed computing framework design…THEHACKERNEWS.COM
18 AugNew Mirai-Based Evooo1Bot Botnet Targets Linux DevicesEvooo1Bot is a Mirai-based Linux botnet that hijacks routers and IoT devices for DDoS attacks, credential theft and criminal proxy services. Fortinet’s FortiGuard Labs disclosed Evooo1Bot in mid-August, a previously undocumented Linux botnet that’s been active since J…SECURITYAFFAIRS.COM
18 AugWhat you say during a cyber breach can — and will — be used against youThe first 24 hours after a cyber incident are messy. Teams are moving fast, and a lot gets said on Slack or email that can come back later. People are scrambling to contain the issue, figure out what happened and keep things moving. In the process, they create a record that doesn…CSOONLINE.COM
18 AugAI can find zero-days but still can’t reliably write secure codeIn recent months, LLMs have gone from flooding open-source projects and bug bounty programs with questionable security reports that wasted developers’ time, to routinely finding zero-day flaws that humans and traditional security audit tools had missed for years — a rapid evoluti…CSOONLINE.COM
18 AugGitLab Patches Critical Code Injection VulnerabilityThe security defect allows unauthenticated attackers to modify or delete user data and public projects. The post GitLab Patches Critical Code Injection Vulnerability appeared first on SecurityWeek .SECURITYWEEK.COM
18 AugSafePal Hardware Wallet Maker Says Flaw Exposed Data of Nearly 40,000 CustomersSafePal has disclosed that an authorization flaw in an order-tracking plug-in exposed the names, email addresses, shipping addresses, phone numbers, and purchase details of approximately 39,798 customers. The hardware wallet maker said all affected customers were notified individ…THEHACKERNEWS.COM
18 AugAugmenting Threat Intel Analysis with Agents - ASW #396All sorts of cybersecurity disciplines are adopting agents to help humans save time and automate routine activities. Sai Kiran Uppu describes his work on creating a platform for agents to analyze external threat intel, examine internal systems, and present triage decisions to ope…YOUTUBE.COM
18 Aug KEVCISA: Windows Task Host flaw now exploited by ransomware gangsThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are also exploiting a high-severity Windows Task Host vulnerability that was flagged as actively exploited in April. [...]BLEEPINGCOMPUTER.COM
18 Aug16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto WalletsCybersecurity researchers have flagged a new typosquatting campaign targeting RubyGems users with a Windows-based information stealer. OpenSourceMalware, which discovered the activity on August 15, 2026, is tracking the threat under the moniker StubMaker. The complete list of pac…THEHACKERNEWS.COM
18 AugOne Attacker Has Scraped Both Salesforce and ServiceNow Portals Since 2025A single piece of infrastructure has been pulling records out of Salesforce and ServiceNow customer portals across multiple industries for more than a year, according to research published this week by agent security platform Reco. The activity, which Reco has named the City Foru…THEHACKERNEWS.COM
18 AugNew Malware turns Microsoft cloud into its control centerSecurity researchers are warning of a newly uncovered Python malware framework that routes much of its command-and-control (C2) activity through Microsoft services that defenders already expect to see. The Ontinue Cyber Defense Center discovered the implant while investigating an…CSOONLINE.COM
18 AugAI-powered vulnerability clearinghouse faces deep skepticism, major challengesThe U.S. government’s promises about the “Gold Eagle” coordination program are overblown, experts said, but the initiative could help organizations prioritize patching and mitigation.CYBERSECURITYDIVE.COM
18 AugGoogle’s $10,000 refund test shows why AI agents need zero trustGoogle’s open-source autonomous Customer Support & Returns Agent, built using the Agent Development Kit (ADK) and Gemini, demonstrates how developers can apply zero-trust security principles to AI agents that interact with sensitive systems and take real-world actions. The p…HELPNETSECURITY.COM
18 AugAI-Driven Vulnerability Surge Breaks the Traditional Patching ModelRapid7 warns that traditional patch cycles cannot keep pace with soaring vulnerability disclosures and faster exploitation, forcing defenders to prioritize exposure over severity scores. The post AI-Driven Vulnerability Surge Breaks the Traditional Patching Model appeared first o…SECURITYWEEK.COM
18 AugTWINLOOT Abuses SharePoint and Teams to Steal Credentials and Move Across NetworksCybersecurity researchers have disclosed details of a previously undocumented Python implant framework dubbed TWINLOOT. "TWINLOOT is a modular, PyArmor-hardened Python implant designed to operate its entire command-and-control infrastructure inside trusted Microsoft services," On…THEHACKERNEWS.COM
18 AugNETSCOUT expands Adaptive DDoS Protection with outbound attack mitigationNETSCOUT has announced an extension of its Adaptive DDoS Protection (ADP) solution enabling service providers to automatically detect and mitigate outbound DDoS attack traffic. By extending protection from the attack target towards its source, NETSCOUT helps operators prevent com…HELPNETSECURITY.COM
18 AugNew Report: AI threats are here. Why Q2 2026 signals the end of traditional patch cyclesYou can’t patch everything. So what do you fix first? Findings in Q2 2026 have changed traditional answers. The latest Quarterly Threat Landscape Report from Rapid7 Labs shows vulnerability disclosures still surging while attackers use automation and AI-assisted tooling to compre…RAPID7.COM
18 AugEnterprise Applications Carry 4.31x More Critical and High VulnerabilitiesEnterprise software creation has accelerated as vulnerability levels rise, Sonatype findsINFOSECURITY-MAGAZINE.COM
18 AugUniversity of Texas forced to take systems offline in San Antonio after cyberattackThe University of Texas at San Antonio, which serves 40,000 students across six campuses, said its IT team identified threat activity on its academic campus over the weekend and took some systems, including phones, offline in response.THERECORD.MEDIA
18 AugMicrosoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected AppsVaronis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other information available to the victim's Copilot session. The flaws, which the research…THEHACKERNEWS.COM
18 AugAttackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and SecretsTwo critical vulnerabilities impacting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, an open-source, web-based SCADA / HMI software built for operational technology (OT) and industrial automation, are witnessing malicious scanning and exploitation effort…THEHACKERNEWS.COM
18 AugYour LLM Might Find Missing LogsLLM agents can do more than generate security queries. They can analyze available data sources and point out potential gaps, including log sources that aren't currently being ingested. That can help security teams build a more complete picture of their infrastructure. But the mod…YOUTUBE.COM
18 AugCISOs Break Their Silence in 'Declassified' DocuseriesMillion-dollar heists, divorce, and career-ending burnout are all stories told in the latest docuseries revealing a behind-the-scenes look at the cybersecurity community.DARKREADING.COM
18 AugImplement custom authentication for tools integration using request Lambda interceptor in AgentCore GatewayWhen deploying AI agents with Amazon Bedrock AgentCore, organizations benefit from built-in modern support for OAuth 2.0, AWS Identity and Access Management (IAM), and API key authentication through Amazon Bedrock AgentCore Gateway. However, some enterprise environments still use…AWS.AMAZON.COM
18 AugFake it till you exfiltrate it.A fake consultancy fronts an alleged Chinese spy campaign. Meta heads to court over claims it hooked young users. Researchers crack the mystery behind the French EncroChat hack. CISA warns ransomware gangs are exploiting a Windows flaw. Meet C2Looper, a new Rust-based backdoor. A…THECYBERWIRE.COM
18 AugClop Claims Data Theft From More Than 40 CompaniesTiffany Wang reports: A prolific Russian-speaking extortion group known for supply-chain attacks claimed to have stolen data from more than 40 firms including heavyweight corporations such as oil giant Shell and manufacturer General Electric. The group, Clop, is the main suspect …DATABREACHES.NET
18 AugMedusa ransomware tallies hundreds of new victims, says updated advisory on group’s tacticsTim Starks reports: The ransomware-as-a-service group Medusa has adopted fresh tactics to gain access and added hundreds of victims in a little more than a year, according to an updated U.S. government advisory published Tuesday. The gang is relying on access brokers,compensating…DATABREACHES.NET
18 AugOracle August 2026 Critical Security Patch Update Addresses 925 CVEsOracle addresses 925 CVEs in its August 2026 Critical Security Patch Update with 943 patches, including 154 critical updates. Key Takeaways The August 2026 Critical Security Patch Update (CSPU) contains fixes for 925 unique CVEs in 943 security updates 154 issues (16.3% of all pa…TENABLE.COM
📢 SECURITY ADVISORIES 8[−]
18 AugUK Legal Regulator Raises AI Misuse ConcernsSolicitors Regulation Authority sounds the alarm over AI hallucinations and data leaksINFOSECURITY-MAGAZINE.COM
18 AugBerlin cuts two state ministries off government network after security breachThe affected ministries — one responsible for urban development, construction and housing, and the other for mobility, transport, climate protection and the environment — have been isolated from government networks since Friday as a precaution.THERECORD.MEDIA
18 AugMedusa ransomware tallies hundreds of new victims, says updated advisory on group’s tacticsThe updated warning from the FBI, CISA and HHS draws on a year’s worth of investigations to detail how the group gains initial access and what it does afterward. The post Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics appeared first on…CYBERSCOOP.COM
18 AugMore than 200 victims of Medusa ransomware identified over the last year, CISA saysThe Cybersecurity and Infrastructure Security Agency (CISA) and FBI updated an advisory on the group initially released in March 2025 — writing that as of April 2026, Medusa actors have hit more than 500 victims. CISA previously said 300 victims, many of which are in critical inf…THERECORD.MEDIA
🔥 INCIDENT REPORTING 14[−]
18 AugWeekly Update 517: Cyber RansomsPresently sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSite The current ransomware situation is a bit of a kludge (deep breath): a lot of ransomware (which often doesn't even involve "w…TROYHUNT.COM
18 AugHeights Finance Data Breach Impacts at Least 1.2 Million IndividualsHackers stole names, addresses, phone numbers, Social Security numbers, and financial information from a third-party platform. The post Heights Finance Data Breach Impacts at Least 1.2 Million Individuals appeared first on SecurityWeek .SECURITYWEEK.COM
18 AugOpenAI tightens defenses after AI agents breach research environmentFollowing the OpenAI-Hugging Face incident, in which an agentic collective autonomously penetrated OpenAI’s research infrastructure and another company’s production infrastructure by chaining together multiple weaknesses, OpenAI began strengthening its safety requirements. The we…HELPNETSECURITY.COM
18 AugHeights Finance data breach: What customers need to knowLeaked personal and financial data of around 750,000 US citizens, including SSNs and bank details, could put victims at risk of identity theft and phishing.MALWAREBYTES.COM
18 AugThree-quarters of Ransomware Attacks Target Mid-Market FirmsBlack Kite finds mid-market is the sweet spot for ransomware as manufacturers are most likely to be hitINFOSECURITY-MAGAZINE.COM
18 AugCyber Incident Disrupts Student Services at UT San AntonioUT San Antonio has taken IT systems offline following a cyber incident, disrupting student registration and tuition payments days before term is due to resumeINFOSECURITY-MAGAZINE.COM
18 AugDownload: 2026 Credential Risk Report85% of cybersecurity professionals consider compromised credentials a primary attack path, yet only 19% continuously monitor active credentials and automatically remediate exposure. The 2026 Credential Risk Report examines where credential security programs fall short and what it…HELPNETSECURITY.COM
18 AugGitHub suffers eight-hour outage affecting Actions, APIs, and CopilotGitHub suffered a widespread outage on August 17 that disrupted core services including its API, Actions, Pull Requests, Issues, Pages, Webhooks, and Copilot, with some repository downloads experiencing error rates of around 50%. The incident began at 1:40 p.m. UTC when GitHub sa…CYBERINSIDER.COM
18 Aug'Ransom Busters': Ransomware Actor Poses as Incident-Recovery ServiceA ransomware affiliate appears to be sidling up to victims with offers of aid, masking its true intention of diverting ransom payments.DARKREADING.COM
18 AugThousands of Hacked WordPress Sites, One Operation: Unmasking StopAndProtectResearch by: Jaromír Hořejší (@JaromirHorejsi) Key points Introduction We first noticed a ransomware family called StopAndProtect in the middle of May 2026. Further analysis of the infrastructure reveals that the infection chain starts with a ClickFix social-engineering technique…RESEARCH.CHECKPOINT.COM
18 AugClop created custom web shell for Windchill data theft attacksA custom Java web shell likely linked to the Clop ransomware gang was designed specifically for PTC Windchill and FlexPLM servers, with built-in features to decrypt credentials, enumerate file repositories, and steal files. [...]BLEEPINGCOMPUTER.COM
18 AugRansom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000A ransomware affiliate calling itself Ransom Busters has been spotted proactively sending emails to victim organizations and claims to delete stolen data from ransomware groups' servers in exchange for a fee ranging from $20,000 to $60,000. "In these messages, the third-party off…THEHACKERNEWS.COM
18 AugOpenAI institutes new safeguards after Hugging Face breachThe new safeguards include more detailed monitoring of models during the development process, as well as greater emphasis on alignment and security during the post-training process.TECHCRUNCH.COM
18 AugHackers Expose Data of 1.2 Million Heights Finance CustomersA Heights Finance breach exposed personal and financial data of over 1.2 million people after hackers compromised a third-party cloud platform. Heights Finance is a U.S. consumer finance company that provides personal loans and related lending services, mainly to customers who ma…SECURITYAFFAIRS.COM
🕵️ THREAT INTELLIGENCE 17[−]
18 AugISC Stormcast For Tuesday, August 18th, 2026 https://isc.sans.edu/podcastdetail/10056, (Tue, Aug 18th)(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.ISC.SANS.EDU
18 AugA hollowed out data layer is making CISOs fly blind into AI attacksThe security industry is currently transitioning to an era where both offense and defense are AI-led, and every SOC operates at machine speed. However, what most CISOs have not yet reckoned with is that the AI defenders they are about to deploy will inherit a data foundation that…HELPNETSECURITY.COM
18 AugSynthesized builds Test Data Agent to validate AI agents with production-like dataSynthesized has announced its Test Data Agent, a new agentic infrastructure capability being developed to create and provision the realistic data, business context, and system states enterprises need to validate AI agents safely before production deployment. The Test Data Agent i…HELPNETSECURITY.COM
18 AugHacker claims millions of records stolen from corporate Azure tenantsA threat actor known as “TheHatman” claims to have obtained millions of employee records from the Azure environments of several Fortune 500 companies, including McDonald’s, Vodafone, Kyndryl, and Tata Consultancy Services (TCS), according to Hudson Rock. Over th…HELPNETSECURITY.COM
18 AugLLMs and Contextual IntegrityI have been thinking a lot about AI and integrity. Part of that is contextual integrity. I recently found two papers on the topic. “ CIMemories: A Compositional Benchmark for Contextual Integrity of Persistent Memory in LLMs “: Abstract: Large Language Models (LLMs) i…SCHNEIER.COM
18 AugXpander Raises $7.5 Million for AI Management and GovernanceXpander’s platform uses a universal agent harness that executes AI agents as portable workloads and securely renders interfaces on demand. The post Xpander Raises $7.5 Million for AI Management and Governance appeared first on SecurityWeek .SECURITYWEEK.COM
18 AugFortinet Acquires AI Security Company Virtue AIFortinet will use Virtue AI technology to enhance its AI security portfolio, including for AI models, applications, and agentic systems. The post Fortinet Acquires AI Security Company Virtue AI appeared first on SecurityWeek .SECURITYWEEK.COM
18 AugAI Shouldn’t Escalate Threats AloneAI agents can generate rules, query a data lake, hunt for evidence, and reach a conclusion about whether a threat is real. But the final escalation decision stays with a human. That human checkpoint helps catch false evidence and false alarms before an automated system turns an u…YOUTUBE.COM
18 AugWebinar Today: Rethinking Cyber Defense for AI-Speed AttacksJoin the live webinar as we explore if detection-first security operations can keep pace with AI, or if it’s time to rethink prevention as the strongest default. The post Webinar Today: Rethinking Cyber Defense for AI-Speed Attacks appeared first on SecurityWeek .SECURITYWEEK.COM
18 AugCISO Conversations: Nico Waisman – From Self-Taught Hacker to AI-Driven Offensive Security at XBOWWith no formal training and no career plan, Waisman built a path from Argentina's early hacking scene to leading security at an AI-powered offensive security firm. The post CISO Conversations: Nico Waisman – From Self-Taught Hacker to AI-Driven Offensive Security at XBOW appeared…SECURITYWEEK.COM
18 AugGitLab issues emergency patch for critical code-injection flawResearchers warn that unauthenticated attackers would be able to delete or modify publicly accessible projects.CYBERSECURITYDIVE.COM
18 AugHunting MacSync Stealer infrastructure through behavioral pivotsMacSync Stealer rapidly rotates domains to evade detection, but its behavior remains consistent. Learn how Microsoft uncovered 30+ related domains using durable hunting pivots. The post Hunting MacSync Stealer infrastructure through behavioral pivots appeared first on Microsoft S…MICROSOFT.COM
18 AugEight years later, federal authorities re-up charges against alleged Iranian hackers at Mabna InstituteThe superseding indictment adds defendants and allegations against the Iranian firm accused of a massive cybertheft campaign against foreign universities and others. The post Eight years later, federal authorities re-up charges against alleged Iranian hackers at Mabna Institute a…CYBERSCOOP.COM
18 AugOpenAI slows model development over concerns about cyber capabilitiesOpenAI has temporarily slowed the development and scaling of its frontier AI models after determining that its existing monitoring, alignment, and security measures needed to be strengthened as models become increasingly capable of conducting cybersecurity tasks. The company said…CYBERINSIDER.COM
18 AugSecrets, Red Agent, GitHub, evoooo1bot, DecryptAds, Copilot, Aaran Leyland, and More - SWN #608The Secret Word is Meow, Red Agent, GitHub, evoooo1bot, Hatman, DecryptAds, Copilot, Aaran Leyland, and More on the Security Weekly News. Visit https://www.securityweekly.com/swn for all the latest episodes! Show Notes: https://securityweekly.com/swn-608YOUTUBE.COM
18 AugDOJ charges 17 people in Iran-backed hacking campaign against USOfficials allege an IRGC-linked organization was behind a coordinated effort to steal research from American universities, companies and government agencies.CYBERSECURITYDIVE.COM
18 AugCopilot Was Tricked Into Leaking PasswordsResearchers demonstrated a technique that manipulated Microsoft Copilot into accessing sensitive information, including passwords and credentials stored in a user's inbox. The technique used undocumented parameters and prompt injection, with a webhook allowing information to be s…YOUTUBE.COM
🌐 CYBER THREAT LANDSCAPE 3[−]
18 AugSilent 'TwinLoot' Cyber Threat Operates Entirely From Microsoft's CloudThe Python-based malware framework takes living-off-the-land tactics to a new heights of stealth, with a modular implant that steals credentials and achieves persistence.DARKREADING.COM
18 AugUS states sue Meta over claims that it deliberately addicts young users.Researchers reverse-engineer French malware used to hack EncroChat. An unprecedented number of Apple users received spyware alerts last week.THECYBERWIRE.COM
18 AugSecurity Hub Extended adds Supply Chain Security as its tenth categorySince February, we’ve grown AWS Security Hub Extended from 14 curated partners across 9 categories to 23 partners across 10. At Black Hat this month, 14 of those partners were at the Amazon Web Services (AWS) booth demoing live. Four of those partners delivered theater talks and …AWS.AMAZON.COM
🎙️ PODCASTS 2[−]
18 AugBetween Two Nerds: The eye of SauronIn this edition of Between Two Nerds Tom Uren and The Grugq discuss The Offense Death Cycle, a paper looking at how to take advantage of a defender’s ability to control a network to discover intruders. This episode is also available on YouTube.RISKY.BIZ
18 AugZero Trust Wasn't Built for AI Agents with Ev Kontsevoy from TeleportEv Kontsevoy, CEO of Teleport, joins Dave Bittner on the CyberWire Daily podcast for a sponsored Industry Voices recorded at Black Hat USA 2026. He discusses why traditional Zero Trust principles need to evolve for autonomous AI agents, how agents can operate within their permiss…THECYBERWIRE.COMHTTPS:
📡 INFOSEC NEWS 22[−]
18 AugMicrosoft starts removing WMIC tool used by cybercriminalsMicrosoft announced that it removed the Windows Management Instrumentation Command-line (WMIC) tool from Windows 11 24H2 and 25H2, as well as from Windows 11 beta builds released this week. [...]BLEEPINGCOMPUTER.COM
18 AugThe Cop Who Took On FlockAfter Noel Pichardo called out his city's embrace of Flock surveillance cameras, he was subjected to five internal affairs investigations in less than two years.WIRED.COM
18 AugMicrosoft confirms outage affecting search in Microsoft 365 appsMicrosoft says some users are experiencing issues searching in Microsoft 365 apps, including Outlook on the web, Outlook desktop, SharePoint Online, and OneDrive. [...]BLEEPINGCOMPUTER.COM
18 AugWhat It Takes to Run the CIA's Southeast Asia DepartmentYou might find Meredith Cavan playing music in an Irish pub. But long before her first album dropped, she clocked more than 20 years at the CIA. One of her jobs there was Southeast Asia Department chief, where she oversaw covert action, intelligence operations, and analysis acros…THECYBERWIRE.COM
18 AugCan AI Coexist With Privacy? Proton’s Andy Yen Says It Will Have ToProton’s CEO is a champion of encryption for everyone. So why is he going all in on un-encryptable AI?WIRED.COM
18 AugBe careful what you put in “anyone with the link” Google DocsAs one developer found out when his Google Doc containing company passwords showed up in Google search results.MALWAREBYTES.COM
18 AugMicrosoft tests faster Windows File Explorer, new context menuMicrosoft has started testing a faster File Explorer and a less cluttered and more customizable context menu in Windows 11 preview builds rolling out to Insiders this week. [...]BLEEPINGCOMPUTER.COM
18 AugAnnouncing the 2026 Wiz Partner Alliance Award WinnersRecognizing the partners, integrators, and visionaries driving cloud security transformation, AI risk management, and SOC modernization across AMER, EMEA, and ANZ.WIZ.IO
18 AugAI "Mind Viruses" Can Spread Between Agents Through Persistent Prompt FilesSecurity researchers at Anthropic and Switzerland's EPFL have demonstrated that self-propagating payloads can spread from one artificial intelligence (AI) agent to the next through the editable system prompt files that autonomous agent harnesses use to carry state between session…THEHACKERNEWS.COM
18 AugHackers target Ukrainian agency managing assets seized from sanctioned RussiansThe agency said the latest attack came amid preparations to select a manager for seized corporate rights in IDS Ukraine, one of the country’s largest producers of bottled mineral water and beverages.THERECORD.MEDIA
18 AugMeta Ran Ads for an App That Promised to Nudify Female PoliticiansOne advertisement featured a pornographic video with a deepfake closely resembling a prominent US politician. Apple removed the app from the App Store after an inquiry from WIRED.WIRED.COM
18 AugNASA Ground Control Software Flaw Enables Unauthenticated CommandsCritical AIT-GUI flaws expose spacecraft commands and scripts to unauthenticated attackersINFOSECURITY-MAGAZINE.COM
18 AugYour Controls Block Known Attacks. What About the Behavior?Security controls can block a familiar attack method while missing quieter ways to achieve the same objective. Picus Security's Blue Report 2026 shows how prevention rates can vary dramatically by technique and why behavioral testing is needed to uncover those gaps. [...]BLEEPINGCOMPUTER.COM
18 AugBluesky says its recent outage was caused by another DDoS attackThis is the latest large-scale DDoS attack to hit the social networking site this year.TECHCRUNCH.COM
18 AugApple fixes another image-processing flaw that could allow code executionApple has released updates fixing 27 vulnerabilities in iOS, iPadOS, and macOS Tahoe, including a potentially serious image-processing flaw.MALWAREBYTES.COM
18 AugWiz AI Agent Finds Critical Snowflake GitHub Repo Flaw Advanced Security MissedThe security flaw in Snowflake’s GitHub Actions workflow had been missed by a GitHub Advanced Security scan, said a Wiz researcherINFOSECURITY-MAGAZINE.COM
18 AugComcast adds motion sensing to millions of its newer routers, with a privacy catchA new feature added to Comcast's newest routers can detect if there is motion is inside your home without needing traditional motion sensors.TECHCRUNCH.COM
18 AugHow to Spot and Stop Rogue Device JoinsInstead of leaving behind recognizable fingerprints from public tooling, adversaries can now generate realistic device names that blend naturally into enterprise environments. This blog explores how that changes Entra ID detection and what are the behavioral signals that still ex…WIZ.IO
18 AugProject noRecognition: Teaching AI to Fool Surveillance CamerasResearchers tested 31 million patterns to disrupt surveillance AI, with promising results but significant gaps between simulation and real-world use. The Kansas City-based cybersecurity researcher Bill Swearingen spent the past year doing something that sounds almost too simple t…SECURITYAFFAIRS.COM
18 AugOpenAI Overhauls Safety Protocols After Its AI Agents Went RogueThe ChatGPT maker says its upcoming Astra model may have reached “critical” cyber capabilities, prompting it to halt a significant number of training runs while it tightens internal safeguards.WIRED.COM
18 AugComcast turns your Xfinity WiFi into a home motion detectorComcast is promoting WiFi-based motion detection as a part of its new Xfinity Shield home protection platform, allowing routers and wireless devices to detect people moving through a home without cameras or motion sensors. [...]BLEEPINGCOMPUTER.COM
18 Aug'CoSnitch' Attack Tricked Copilot into Mapping Out ArchitectureResearchers discovered a "meta-hacking" technique that can manipulate the AI service into revealing its own security weaknesses.DARKREADING.COM