Cybersecurity and other IT news aggregator

LATEST FEEDS

  • The Odyssey piracy scams surface hours after its theatrical debut

    The Odyssey piracy scams surface hours after its theatrical debut 2026-07-20 at 21:59 By Sinisa Markovic Christopher Nolan’s The Odyssey had barely reached theaters before scammers began targeting people searching for pirated copies, according to Malwarebytes. Within hours of the film’s release, researchers found two separate scams running on cloned piracy sites: fake browser warnings…


  • China’s Moonshot AI pauses subscriptions for powerful Kimi K3 model due to surging demand

    China’s Moonshot AI pauses subscriptions for powerful Kimi K3 model due to surging demand 2026-07-20 at 21:02 By Thomas Barrabi The Beijing-based firm said Sunday it had experienced “unprecedented compute challenges” and would temporarily focus on ensuring it could serve its existing paid users. The large-language model was trained on 2.8 trillion parameters, making it…


  • Bitmine grows treasury to 5.78M ETH as Ether outpaces Bitcoin

    Bitmine grows treasury to 5.78M ETH as Ether outpaces Bitcoin 2026-07-20 at 20:50 By Cointelegraph by Nate Kostar The Ethereum treasury firm added 7,430 ETH over the past week, bringing its holdings to nearly 5% of the network’s circulating supply. This article is an excerpt from Cointelegraph.com News View Original Source


  • Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign

    Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign 2026-07-20 at 20:29 By A malware operator left its delivery server wide open, and Rapid7 pulled down the whole toolkit: 1,048 files spanning lure templates, filename-spoofing tests, execution experiments, droppers, builder notes, and two campaign chains. One was already live against Windows users in Mexico,…


  • Hut 8, IREN deals lift AI-focused Bitcoin mining stocks

    Hut 8, IREN deals lift AI-focused Bitcoin mining stocks 2026-07-20 at 20:27 By Cointelegraph by Sam Bourgi Bitcoin miners rallied as investors cheered multi-billion-dollar AI infrastructure contracts, underscoring the sector’s accelerating shift toward data centers and cloud computing. This article is an excerpt from Cointelegraph.com News View Original Source


  • HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel

    HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel 2026-07-20 at 20:20 By Sinisa Markovic Microsoft 365 calendars have become a hiding place for espionage malware, with commands and stolen files stashed inside appointments dated to the year 2050, researchers from Group-IB discovered. Targeted campaign tied to Iranian espionage activity The malware, which Group-IB…


  • Most American voters have favorable view of AI — despite media focus on controversies: poll

    Most American voters have favorable view of AI — despite media focus on controversies: poll 2026-07-20 at 20:04 By Thomas Barrabi In a national poll conducted by HarrisX, 56% of voters said they had a favorable view about AI, while 36% had an unfavorable view. 72% of respondents agreed that AI could help people spend…


  • Nigerian president signs order on approach to crypto regulation, taxes

    Nigerian president signs order on approach to crypto regulation, taxes 2026-07-20 at 19:59 By Cointelegraph by Turner Wright The West African country’s executive order established a virtual asset council and addressed the fragmentation of crypto regulation for oversight and enforcement. This article is an excerpt from Cointelegraph.com News View Original Source


  • Hugging Face Confirms Data Breach Caused by Autonomous AI Agent

    Hugging Face Confirms Data Breach Caused by Autonomous AI Agent 2026-07-20 at 19:16 By A host platform for AI models and datasets confirmed it had experienced a data breach.  This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Bitcoin price hits $65K wall as stocks battle ‘record’ institutional tech sell-off

    Bitcoin price hits $65K wall as stocks battle ‘record’ institutional tech sell-off 2026-07-20 at 19:07 By Cointelegraph by William Suberg Bitcoin faced troublesome resistance at $65,000 while traders still saw a potential BTC price breakout into a “bullish market structure.” This article is an excerpt from Cointelegraph.com News View Original Source


  • 3 Ways to Defend Against LOTL Attacks Now

    3 Ways to Defend Against LOTL Attacks Now 2026-07-20 at 18:53 By Shanleigh Reardon When trusted tools become part of the attack chain, the old protection techniques fall short. Here are three that work. This article is an excerpt from SECURITY.COM View Original Source


  • IREN jumps 16% after raising AI cloud revenue target above $4B

    IREN jumps 16% after raising AI cloud revenue target above $4B 2026-07-20 at 18:20 By Cointelegraph by Nate Kostar The Bitcoin miner raised its year-end AI cloud revenue target to more than $4 billion after signing $2.8 billion in new contracts with AI developers. This article is an excerpt from Cointelegraph.com News View Original Source


  • Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software

    Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software 2026-07-20 at 17:54 By SecurityWeek News Neo raised money across seed and Series A funding rounds from Andreessen Horowitz, Bessemer Venture Partners, and others. The post Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software appeared first on…


  • Paidwork breach exposes sensitive data of 23 million user

    Paidwork breach exposes sensitive data of 23 million user 2026-07-20 at 17:52 By Sinisa Markovic Data belonging to more than 23 million users has been exposed following a breach at Paidwork, a platform that pays people for completing online microtasks. Paidwork markets itself as a way to earn money through simple tasks like watching ads,…


  • HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

    HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050 2026-07-20 at 17:33 By A newly discovered espionage implant has been using a hijacked Microsoft 365 calendar as its command channel, planting operator instructions and smuggling out stolen files as attachments on calendar events dated to the year 2050. Group-IB, which named…


  • ServiceNow pre-auth RCE exploited in the wild (CVE-2026-6875)

    ServiceNow pre-auth RCE exploited in the wild (CVE-2026-6875) 2026-07-20 at 17:32 By Zeljka Zorz Attackers have begun exploiting CVE-2026-6875, a critical pre-authentication vulnerability in the ServiceNow AI Platform, according to threat intelligence firm Defused. About the vulnerability ServiceNow AI is a Platform-as-a-Service that lets organizations build and automate digital workflows. CVE-2026-6875 is a code injection…


  • SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch

    SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch 2026-07-20 at 17:11 By Eduard Kovacs The zero-days CVE-2026-15409 and CVE-2026-15410 were exploited by a threat actor tracked by Volexity as UTA0533. The post SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch appeared first on SecurityWeek. This article is an excerpt…


  • Dina Atwell — Women in Security 2026

    Dina Atwell — Women in Security 2026 2026-07-20 at 17:06 By A career in the security industry isn’t something that Dina Atwell planned for, but as with many things with life, the profession found her. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Hannah Behnke — Women in Security 2026

    Hannah Behnke — Women in Security 2026 2026-07-20 at 17:06 By At the age of 18, Hannah Behnke took her first step into the security world in a classic way: she got a job as a “mall cop.” This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Mythos Didn’t Break Your Security Program. Your Exposure Window Could.

    Mythos Didn’t Break Your Security Program. Your Exposure Window Could. 2026-07-20 at 17:06 By The industry spent the initial months after Anthropic’s April 7 Mythos reveal focused on volume. How many new CVEs would Mythos add to an already overloaded pipeline? How quickly would the flood of AI-driven discovery overwhelm triage capabilities? How long would…


  • ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

    ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More 2026-07-20 at 16:32 By A single request should not be able to do this much. But this week, small inputs led to code execution, memory loss, stolen keys, and disabled security tools. The paths were often simple: exposed systems, weak checks,…


  • Peter Brandt predicts the exact day Bitcoin’s bear market will be over

    Peter Brandt predicts the exact day Bitcoin’s bear market will be over 2026-07-20 at 16:30 By Cointelegraph by Ciaran Lyons Renowned trading analyst Peter Brandt says investing in Bitcoin today, will pay off much better in two to three years than buying AI stocks at current prices. This article is an excerpt from Cointelegraph.com News…


  • Security’s 2026 Women in Security

    Security’s 2026 Women in Security 2026-07-20 at 16:30 By Recognized for their achievements and influence, this year’s honorees drive progress throughout their organizations. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Italy fines WINDTRE €1.7 million over security flaws behind two data breaches

    Italy fines WINDTRE €1.7 million over security flaws behind two data breaches 2026-07-20 at 16:19 By Sinisa Markovic Italy’s data protection authority, the Garante per la Protezione dei Dati Personali, fined WINDTRE €1.7 million over “serious data security shortcomings” that let hackers breach its systems twice and exfiltrate personal data belonging to more than 365,000…


  • LegacyHive: Nightmare-Eclipse’s Latest Zero-Day Drop with a Stripped PoC

    LegacyHive: Nightmare-Eclipse’s Latest Zero-Day Drop with a Stripped PoC 2026-07-20 at 15:35 By Pauline Bolaños Vexed researcher Nightmare-Eclipse (aka Chaotic Eclipse, Dead Eclipse, and MSNightmare) released his ninth unpatched Windows vulnerability called LegacyHive. This latest bug drop is a Local Privilege Escalation (LPE) vulnerability affecting Windows User Profile, a component responsible for loading and unloading…


  • OpenSSL Silently Fixes ‘HollowByte’ DoS Vulnerability

    OpenSSL Silently Fixes ‘HollowByte’ DoS Vulnerability 2026-07-20 at 15:32 By Ionut Arghire Attackers could send waves of malicious payloads to trigger buffer pre-allocations that are not freed, exhausting server memory. The post OpenSSL Silently Fixes ‘HollowByte’ DoS Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine

    Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine 2026-07-20 at 15:13 By At least one Russian intelligence service is systematically hijacking internet-connected security cameras across Europe and Ukraine, using the feeds to watch military transport routes, weapons shipments bound for Kyiv, and the locations of Ukrainian troops. That…


  • New Index Tracks Material Breaches — And Refuses to Add Up the Losses

    New Index Tracks Material Breaches — And Refuses to Add Up the Losses 2026-07-20 at 14:46 By Eduard Kovacs Longtime cybersecurity executive Richard Bird built the resource for security experts, journalists, policymakers, and everyday citizens. The post New Index Tracks Material Breaches — And Refuses to Add Up the Losses appeared first on SecurityWeek. This…


  • Ernst & Young Data Breach Affects Personal, Financial Information

    Ernst & Young Data Breach Affects Personal, Financial Information 2026-07-20 at 14:27 By Ionut Arghire Hackers stole names, addresses, Social Security numbers, credit/debit card numbers, and other information from a third-party management platform. The post Ernst & Young Data Breach Affects Personal, Financial Information appeared first on SecurityWeek. This article is an excerpt from SecurityWeek…


  • Crypto institutions look beyond audits as trust signals falter: Hacken

    Crypto institutions look beyond audits as trust signals falter: Hacken 2026-07-20 at 14:00 By Cointelegraph by Ezra Reguerra Institutional due diligence is shifting toward continuous monitoring, signer controls and incident readiness after operational failures accounted for most crypto losses. This article is an excerpt from Cointelegraph.com News View Original Source


  • Capital B approves 10-for-1 reverse stock split to broaden investor base

    Capital B approves 10-for-1 reverse stock split to broaden investor base 2026-07-20 at 13:54 By Cointelegraph by Yohan Yun Europe’s second-biggest Bitcoin treasury company said the September reverse stock split should attract more institutional investors to the French company. This article is an excerpt from Cointelegraph.com News View Original Source


  • Hugging Face breached by autonomous AI agent

    Hugging Face breached by autonomous AI agent 2026-07-20 at 13:52 By Zeljka Zorz Hugging Face, the widely used platform for sharing open-source machine learning models and datasets, has disclosed a security breach it says was carried out by an autonomous AI agent system. How the attack unfolded In a blog post published Thursday (July 16),…


  • Russia’s parliament to hold final readings on crypto bill Tuesday

    Russia’s parliament to hold final readings on crypto bill Tuesday 2026-07-20 at 13:37 By Cointelegraph by Helen Partz Russia’s State Duma is set to consider the crypto regulation bill in second and third readings, with rules for investors and cross-border payments included. This article is an excerpt from Cointelegraph.com News View Original Source


  • New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction

    New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction 2026-07-20 at 13:23 By Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw, CVE-2026-14266, is a heap-based buffer overflow in how the archiver processes XZ chunked data, and Trend Micro’s Zero Day Initiative (ZDI)…


  • Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs

    Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs 2026-07-20 at 13:23 By A solo Russian-speaking threat actor known as “bandcampro” outsourced a chunk of their operations to Google’s open-source Gemini CLI artificial intelligence (AI) and commandeered a live botnet. The findings come from an analysis of 200 Gemini CLI…


  • World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

    World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent 2026-07-20 at 13:23 By In an ironic twist, open-source artificial intelligence (AI) platform Hugging Face revealed that it was the victim of a hack perpetrated by an autonomous AI agent system. The company said it detected and responded to the incident targeting its…


  • SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

    SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines 2026-07-20 at 13:23 By Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three malicious gems were published to RubyGems with the end goal of serving additional payloads. The rogue gems are listed below – git_credential_manager (versions…


  • Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

    Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution 2026-07-20 at 13:23 By F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap buffer overflow in the worker process with crafted HTTP requests. CVE-2026-42533 was patched on July 15 in nginx 1.30.4 (stable) and…


  • Dem-backed ‘Project 2029’ wants a tech clampdown that looks like Europe’s — and risks war with Silicon Valley

    Dem-backed ‘Project 2029’ wants a tech clampdown that looks like Europe’s — and risks war with Silicon Valley 2026-07-20 at 13:00 By Thomas Barrabi The liberal backers of “Project 2029” want the next Democratic presidential candidates to pursue a major crackdown that includes a social media ban for kids under age 16, limits on the…


  • Hugging Face Hacked in Autonomous AI Attack

    Hugging Face Hacked in Autonomous AI Attack 2026-07-20 at 12:36 By Ionut Arghire Targeting production infrastructure, the attack compromised internal datasets and service credentials. The post Hugging Face Hacked in Autonomous AI Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Bitcoin ETF inflows extend to second week, but recovery lacks momentum

    Bitcoin ETF inflows extend to second week, but recovery lacks momentum 2026-07-20 at 12:33 By Cointelegraph by Helen Partz US spot Bitcoin ETFs extended their inflow streak to two weeks with $75.7 million in net inflows, but analysts said demand remains insufficient to fuel a sustained uptrend. This article is an excerpt from Cointelegraph.com News…


  • Dr. Jazma Mekelle Parker — Women in Security 2026

    Dr. Jazma Mekelle Parker — Women in Security 2026 2026-07-20 at 12:00 By Dr. Jazma Mekelle Parker began her security career as a contract background investigator for the U.S. Office of Personnel Management (OPM). This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • The Windows 10 hangover is becoming a security problem

    The Windows 10 hangover is becoming a security problem 2026-07-20 at 11:37 By Anamarija Pogorelec Windows 11 now runs on 78.8% of Windows devices after Microsoft ended support for Windows 10 on 14 October 2025, according to Lansweeper. Windows 10 still accounts for 16.9% of devices and no longer receives security updates, leaving newly discovered…


  • Chrome 150 Update Patches Severe Memory Safety Bugs

    Chrome 150 Update Patches Severe Memory Safety Bugs 2026-07-20 at 11:12 By Ionut Arghire The fresh security update resolves six critical and high-severity use-after-free vulnerabilities. The post Chrome 150 Update Patches Severe Memory Safety Bugs appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • South Korea eyes September launch for second phase of CBDC pilot: Report

    South Korea eyes September launch for second phase of CBDC pilot: Report 2026-07-20 at 10:18 By Cointelegraph by Yohan Yun The Bank of Korea’s CBDC pilot will add two regional banks, new payment features and tests of government subsidy payments using tokenized bank deposits This article is an excerpt from Cointelegraph.com News View Original Source


  • Meet Dusseldorf, Microsoft’s open-source out-of-band security platform

    Meet Dusseldorf, Microsoft’s open-source out-of-band security platform 2026-07-20 at 09:00 By Anamarija Pogorelec Out-of-band vulnerabilities surface when an application quietly reaches out to an external system during an attack, and capturing that traffic calls for infrastructure that many researchers assemble on their own. A new open-source project from Microsoft supplies that infrastructure in a package…


  • More alerts are making your team slower, and an outcome-based SOC fixes that

    More alerts are making your team slower, and an outcome-based SOC fixes that 2026-07-20 at 08:30 By Help Net Security In this Help Net Security video, Thom Langford, EMEA CTO, Rapid7, explains why piling on more security alerts makes a SOC slower to respond. Attackers log in with stolen credentials and use trusted tools like…


  • World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

    World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent 2026-07-20 at 08:27 By In an ironic twist, open-source artificial intelligence (AI) platform Hugging Face revealed that it was the victim of a hack perpetrated by an autonomous AI agent system. The company said it detected and responded to the incident targeting its…


  • WP2Shell WordPress Vulnerabilities Exploited in the Wild

    WP2Shell WordPress Vulnerabilities Exploited in the Wild 2026-07-20 at 08:21 By Eduard Kovacs Exploitation of the new WordPress vulnerabilities tracked as CVE-2026-60137 and CVE-2026-63030 started soon after disclosure. The post WP2Shell WordPress Vulnerabilities Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

    SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines 2026-07-20 at 08:15 By Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three malicious gems were published to RubyGems with the end goal of serving additional payloads. The rogue gems are listed below – git_credential_manager (versions…


Browse older archives

Scroll to Top