Cybersecurity and other IT news aggregator
LATEST FEEDS
-
Rust Supply Chain Attack Linked to North Korean Hackers
Rust Supply Chain Attack Linked to North Korean Hackers 2026-08-21 at 12:23 By Ionut Arghire Hackers pushed a poisoned arrayref version that added a dependency to fetch a malicious payload from a remote server. The post Rust Supply Chain Attack Linked to North Korean Hackers appeared first on SecurityWeek. This article is an excerpt from…
-
5 AI Attack Patterns Organizations Can’t Ignore
5 AI Attack Patterns Organizations Can’t Ignore 2026-08-21 at 12:00 By AI is rapidly changing the modern threat landscape. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
Strategy Bitcoin treasury hits breakeven point as BTC price passes $77K
Strategy Bitcoin treasury hits breakeven point as BTC price passes $77K 2026-08-21 at 11:48 By Cointelegraph by William Suberg Bitcoin gains 20% in two days as Strategy sees its BTC treasury climb out of the red. This article is an excerpt from Cointelegraph.com News View Original Source
-
Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind
Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind 2026-08-21 at 11:41 By Eduard Kovacs Two industry surveys released this week by Kiteworks and CyberSheath paint a consistent picture of the defense industrial base. The post Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind appeared first on SecurityWeek. This article…
-
Microsoft Rolls Out 22 Fresh Security Patches
Microsoft Rolls Out 22 Fresh Security Patches 2026-08-21 at 11:12 By Ionut Arghire Most of the fixes resolve code execution, privilege escalation, and information disclosure vulnerabilities. The post Microsoft Rolls Out 22 Fresh Security Patches appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490)
Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490) 2026-08-21 at 10:55 By Sinisa Markovic Citrix has patched two vulnerabilities in NetScaler ADC and NetScaler Gateway, including a critical authentication bypass flaw tracked as CVE-2026-19490, and is urging customers to upgrade affected appliances as soon as possible. “We strongly recommend that customers review the…
-
Endpoint Blind Spots: The 5 Places Ransomware Hides Before It Detonates
Endpoint Blind Spots: The 5 Places Ransomware Hides Before It Detonates 2026-08-21 at 10:51 By Ashish Khaitan Ransomware rarely appears out of nowhere. Before encryption, extortion, or data theft begins, attackers often spend time establishing access, stealing credentials, moving laterally, and identifying valuable systems. These activities occur during the ransomware pre-execution phase, when malicious activity…
-
Bitcoin ETFs draw $608M as Ether ETFs see largest inflow since October
Bitcoin ETFs draw $608M as Ether ETFs see largest inflow since October 2026-08-21 at 10:50 By Cointelegraph by Yohan Yun Bitcoin ETF inflows pushed August’s total to a 2026 high of $2.07 billion as Bitcoin traded above $75,000 and Ether climbed to $2,357. This article is an excerpt from Cointelegraph.com News View Original Source
-
CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities
CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities 2026-08-21 at 10:25 By Ionut Arghire The Head Mare hacktivist group has been exploiting the bugs to deploy the PhantomCore malware. The post CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
GitLab 19.3 helps enterprises scale agentic development securely
GitLab 19.3 helps enterprises scale agentic development securely 2026-08-21 at 10:12 By Industry News GitLab has announced updates that give enterprises more control as they scale agentic software development. GitLab Dedicated customers, who already run their most sensitive software delivery workloads on GitLab, can now run GitLab Duo Agent Platform inside that same single tenant…
-
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure 2026-08-21 at 10:04 By A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr. The vulnerability in question is CVE-2026-19478 (CVSS score: 9.4), a case of code injection that allows an unauthenticated attacker to modify…
-
Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution
Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution 2026-08-21 at 09:06 By Microsoft on Thursday warned of a maximum-severity security flaw in Entra ID that it said has been exploited in the wild, but noted that no customer action is required. The vulnerability, tracked as CVE-2026-69836 (CVSS score: 10.0), is…
-
A $25 template helped scammers build hundreds of phantom bank domains
A $25 template helped scammers build hundreds of phantom bank domains 2026-08-21 at 08:00 By Sinisa Markovic A phrase on a suspicious website turned into an investigation of phantom banks built to support scams, according to new research from Allure Security. Molly DeQuattro, the company’s VP of Operations, was reviewing a domain that resembled the…
-
Nearly half of enterprises have no one leading PQC migration
Nearly half of enterprises have no one leading PQC migration 2026-08-21 at 07:30 By Anamarija Pogorelec Enterprises believe they are prepared for the security challenges posed by quantum computing, but gaps in ownership, testing and visibility could complicate their transition to post-quantum cryptography (PQC), according to new research from Axiad. Who owns PQC migration? (Source:…
-
New infosec products of the week: August 21, 2026
New infosec products of the week: August 21, 2026 2026-08-21 at 07:00 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from F5 Networks, Intezer, Netscout, and Tufin. NETSCOUT expands Adaptive DDoS Protection with outbound attack mitigation NETSCOUT has announced an extension of its Adaptive DDoS Protection…
-
Army unit offering 4 bonus off days upon release of Grand Theft Auto VI to soldiers who reenlist
Army unit offering 4 bonus off days upon release of Grand Theft Auto VI to soldiers who reenlist 2026-08-21 at 01:06 By Associated Press Commanders of the 9th Brigade Engineer Battalion based at Fort Stewart, Georgia, believe free time to indulge in the latest entry in the Grand Theft Auto series. This article is an…
-
Bitcoin breaks above 200-day moving average for first time since November
Bitcoin breaks above 200-day moving average for first time since November 2026-08-21 at 00:03 By Cointelegraph by Sam Bourgi The BTC price reclaimed its 200-day moving average for the first time in nine months as its rally gained momentum after the US Treasury expanded its bond buybacks. This article is an excerpt from Cointelegraph.com News…
-
CFTC chair says agency will move forward on crypto regulation if CLARITY fails
CFTC chair says agency will move forward on crypto regulation if CLARITY fails 2026-08-20 at 23:56 By Cointelegraph by Turner Wright Michael Selig said at a meeting of the Innovation Advisory Committee that he had directed CFTC staff to explore developer protections and other crypto-related policies. This article is an excerpt from Cointelegraph.com News View…
-
Binance opens crypto trading to AI agents with user-set controls
Binance opens crypto trading to AI agents with user-set controls 2026-08-20 at 23:26 By Cointelegraph by Nate Kostar Binance’s Agent OS lets AI agents access market data, execute trades and make payments while giving users control over permissions and account access. This article is an excerpt from Cointelegraph.com News View Original Source
-
Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads
Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads 2026-08-20 at 23:22 By The Rust Project has deleted malicious versions of three widely used Rust crates from crates.io after a compromised maintainer account published releases that added a typosquatted dependency whose build script downloaded and executed a remote payload during compilation.…
-
Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts
Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts 2026-08-20 at 22:59 By Three distinct suspected Russian cyber espionage threat clusters have been observed leveraging legitimate authentication flows to single out individuals working in academia, aerospace and defense, governments, and think tanks across Europe, as well as academia and think tanks within…
-
ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More
ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More 2026-08-20 at 22:12 By A lot of this week’s trouble starts with something trusted doing exactly what it was allowed to do. Signed drivers get turned against defenses. Legitimate apps help malware blend in. A weak header check opens a path to…
-
New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data
New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data 2026-08-20 at 21:12 By Adversa AI has disclosed an attack technique that it says can cause xAI’s Grok chatbot to send a user’s name, approximate location, subscription tier, and the prompts from the ongoing conversation to an attacker-controlled server after the user…
-
US debt tops $40T stoking debate on what it means for Bitcoin
US debt tops $40T stoking debate on what it means for Bitcoin 2026-08-20 at 20:43 By Cointelegraph by Nate Kostar Analysts say the $40 trillion debt milestone could bolster Bitcoin’s long-term case, even as Treasury yields, dollar strength and liquidity remain key near-term drivers. This article is an excerpt from Cointelegraph.com News View Original Source
-
How Retailers Are Approaching Modernization
How Retailers Are Approaching Modernization 2026-08-20 at 20:00 By Modern difficulties are shaping how retail organizations approach modernization. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure
AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure 2026-08-20 at 19:59 By The U.S. government on Wednesday warned of an “active threat” targeting critical infrastructure organizations in the country using artificial intelligence (AI)-generated exploit scripts. The activity is targeting Siemens S7 SeriesProgrammable Logic Controllers (PLCs) to conduct reconnaissance and capability development using…
-
UC Berkeley professor who criticized student math abilities admits to using AI to help write viral op-ed
UC Berkeley professor who criticized student math abilities admits to using AI to help write viral op-ed 2026-08-20 at 19:31 By Titus Wu She said huge portions of her students are failing to keep up with college calculus and she’s forced to teach middle-school algebra and fractions to students. This article is an excerpt from…
-
Bitcoin miners pour billions into AI as capex outpaces revenue 15-to-1
Bitcoin miners pour billions into AI as capex outpaces revenue 15-to-1 2026-08-20 at 19:12 By Cointelegraph by Sam Bourgi Nine public miners generated $341 million from AI and HPC operations in the first half of 2026 after spending more than $5 billion on capital assets. This article is an excerpt from Cointelegraph.com News View Original…
-
OpenAI confirms ChatGPT Outage
OpenAI confirms ChatGPT Outage 2026-08-20 at 18:55 By On August 19, OpenAI confirmed a ChatGPT outage affecting users worldwide. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
Most Americans say the Trump family’s crypto investments are not ‘appropriate’: Poll
Most Americans say the Trump family’s crypto investments are not ‘appropriate’: Poll 2026-08-20 at 18:53 By Cointelegraph by Turner Wright A new poll showed 63% of 1,166 Americans varied sharply along partisan lines, with a majority of Republicans saying it was appropriate for Trump and his family to invest in crypto. This article is an…
-
9M Images Exposed by Facial Recognition Platform
9M Images Exposed by Facial Recognition Platform 2026-08-20 at 18:00 By 450.2 gigabytes of data were exposed in a public database with no password protection or encryption. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
Hackers Target Zimbra Servers in Active Exploitation Campaign
Hackers Target Zimbra Servers in Active Exploitation Campaign 2026-08-20 at 17:50 By Eduard Kovacs Exploitation of the Zimbra Collaboration vulnerability CVE-2026-73570 has been observed by Poland’s CERT Polska. The post Hackers Target Zimbra Servers in Active Exploitation Campaign appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Surveillance – Everything You Wanted to Know, But Were Afraid to Ask
Surveillance – Everything You Wanted to Know, But Were Afraid to Ask 2026-08-20 at 17:30 By Kevin Townsend We all know they’re watching us. But we don’t know who they are, nor why nor how they are doing it. The post Surveillance – Everything You Wanted to Know, But Were Afraid to Ask appeared first…
-
Why Business Leaders Need a New Response Model to AI-Enabled Incidents
Why Business Leaders Need a New Response Model to AI-Enabled Incidents 2026-08-20 at 17:00 By Brandy Wityak Originally published by Cybersecurity Insider. This article is an excerpt from LevelBlue Blog View Original Source
-
Isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for Potential RCE
Isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for Potential RCE 2026-08-20 at 16:48 By Cybersecurity researchers have disclosed a critical security flaw in isolated-vm, a popular open-source sandbox with more than 2,900 stars and 190 forks on GitHub, that could allow attackers to escape the confines of the isolated environment. The vulnerability (“GHSA-864f-rcv7-6rh4”), which…
-
Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers
Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers 2026-08-20 at 16:35 By Citrix has released updates to address two security flaws impacting NetScaler ADC and NetScaler Gateway deployments, including a critical-severity authentication bypass vulnerability. According to the cloud computing and virtualization technology company, the issues affect customer-managed NetScaler ADC and NetScaler…
-
MiCA cracks down on USDT in Europe… but no one else cares
MiCA cracks down on USDT in Europe… but no one else cares 2026-08-20 at 16:30 By Cointelegraph by Christina Comben USDT is disappearing from regulated European platforms, but there is little sign that it has resulted in weakening global demand for Tether. This article is an excerpt from Cointelegraph.com News View Original Source
-
Attackers Exploit Zimbra SNMP Flaw for Unauthenticated Remote Code Execution
Attackers Exploit Zimbra SNMP Flaw for Unauthenticated Remote Code Execution 2026-08-20 at 16:24 By A now-patched security flaw impacting Zimbra Collaboration (ZCS) has come under active exploitation in the wild, according to the Polish Computer Emergency Response Team (CERT Polska). The vulnerability in question is CVE-2026-73570 (CVSS score: 8.9), which refers to a case of…
-
Bitdeer signs $400M AI cloud computing deal for Malaysia facility
Bitdeer signs $400M AI cloud computing deal for Malaysia facility 2026-08-20 at 16:18 By Cointelegraph by Zoltan Vardai Bitdeer expects revenue from the five-year agreement to begin in early 2027 as it builds toward 350 megawatts of AI cloud capacity by 2028. This article is an excerpt from Cointelegraph.com News View Original Source
-
Threat Actor Hacks 14,000 IP Cameras in Ukraine and Russia
Threat Actor Hacks 14,000 IP Cameras in Ukraine and Russia 2026-08-20 at 16:16 By Ionut Arghire Operation CameraSwarm targeted Dahua cameras across multiple countries, focusing on Russian and CIS telecom netblocks. The post Threat Actor Hacks 14,000 IP Cameras in Ukraine and Russia appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View…
-
Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities
Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities 2026-08-20 at 15:24 By Ionut Arghire The flaws could be exploited to execute arbitrary code, access sensitive information, and elevate privileges. The post Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
MLflow Vulnerability Exploited for Cloud Credential Theft
MLflow Vulnerability Exploited for Cloud Credential Theft 2026-08-20 at 15:05 By Ionut Arghire The critical-severity flaw allows attackers to send HTTP requests to internal endpoints and extract sensitive information. The post MLflow Vulnerability Exploited for Cloud Credential Theft appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Zombie Card Attack Can Revive Expired Visa Cards for Contactless Payments
Zombie Card Attack Can Revive Expired Visa Cards for Contactless Payments 2026-08-20 at 15:01 By Researchers at the University of Massachusetts Amherst have demonstrated an attack that revives expired Visa contactless credit cards for real in-store purchases by rewriting the expiration date a point-of-sale (POS) terminal reads over near-field communication (NFC), without breaking any of…
-
Why “Shady AI” is Security’s Next Big Governance Problem
Why “Shady AI” is Security’s Next Big Governance Problem 2026-08-20 at 14:45 By In March 2026, an internal AI agent at Meta triggered a “Sev 1” incident after sensitive company and user data was exposed to employees who weren’t authorized to access it. The incident began when a Meta employee posted a technical question on…
-
Corero brings cloud-based AI threat analysis to SmartWall ONE
Corero brings cloud-based AI threat analysis to SmartWall ONE 2026-08-20 at 14:22 By Industry News Corero Network Security has announced AI-Augmented Cloud-Assist for SmartWall ONE, extending its automated DDoS protection with cloud-delivered AI analysis, threat intelligence, and policy optimization. As cybercriminals increasingly leverage AI to develop and evolve attack campaigns, defenders must respond with equal…
-
AWS limits AI agents’ data access, even when manipulated
AWS limits AI agents’ data access, even when manipulated 2026-08-20 at 14:17 By Anamarija Pogorelec AWS has detailed an approach for propagating user authorization context through AI agents, allowing access controls to be enforced by infrastructure and downstream services rather than relying on the agent itself. Customers using Amazon Bedrock AgentCore can build AI agents…
-
Fake Gemini installer delivers Vidar infostealer via Google Colab lure
Fake Gemini installer delivers Vidar infostealer via Google Colab lure 2026-08-20 at 13:46 By Sinisa Markovic A malicious executable masquerading as a Google Gemini installer was used to deliver the Vidar infostealer on a company network in the EMEA region, according to Darktrace researchers who investigated the incident. “During the initial analysis, it was noted…
-
Apple News, Google promote outlets that endorse Dem presidential candidates — while shutting out Republicans: study
Apple News, Google promote outlets that endorse Dem presidential candidates — while shutting out Republicans: study 2026-08-20 at 13:00 By Thomas Barrabi The most-promoted news outlets on Apple News and Google News haven’t endorsed a Republican in the last 10 presidential elections — the latest sign of alleged anti-conservative bias, according to a new analysis.…
-
What Happens When Two Iconic Brands Unite?
What Happens When Two Iconic Brands Unite? 2026-08-20 at 13:00 By Monica White Symantec® CBX is the perfect marriage of Symantec and Carbon Black® technologies into a unified XDR platform This article is an excerpt from SECURITY.COM View Original Source
-
OpenAI previews privacy-focused system for detecting AI misuse
OpenAI previews privacy-focused system for detecting AI misuse 2026-08-20 at 12:09 By Anamarija Pogorelec OpenAI is previewing Private Safety Processing with early customers seeking greater certainty about how their data will be protected as AI systems become more capable. The system identifies patterns across related interactions while restricting OpenAI personnel from accessing the underlying content.…
Browse older archives
- August 2026
- July 2026
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023