Cybersecurity and other IT news aggregator

LATEST FEEDS

  • Device Code Phishing: Turning a Convenience Feature Into an MFA Bypass

    Device Code Phishing: Turning a Convenience Feature Into an MFA Bypass 2026-07-22 at 22:34 By Device code phishing abuses a legitimate authentication feature designed for devices with limited input capabilities. This article breaks down how the technique works, examines a recent observed case, and outlines the layered security measures organizations can implement. This article is…


  • Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data

    Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data 2026-07-22 at 22:34 By Cybersecurity researchers have disclosed details of a now-patched vulnerability chain in the Adobe Acrobat Chrome extension that has over 314 million users, which, if exploited, could facilitate a silent hijack of a user’s WhatsApp data. The shortcoming has been codenamed…


  • Teen suing Mark Zuckerberg’s Meta over mental health harms drops his claims days before trial

    Teen suing Mark Zuckerberg’s Meta over mental health harms drops his claims days before trial 2026-07-22 at 22:05 By Reuters R.K.C., who started using social media when he was about 8, said he became addicted to it, losing sleep and suffering from depression and anxiety, according to court filings. This article is an excerpt from…


  • Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs

    Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs 2026-07-22 at 21:07 By Cybersecurity researchers have disclosed details of a new local privilege escalation (LPE) vulnerability in snap-confine that an unprivileged user can trigger to obtain root access and gain complete control of a target environment. The high-severity flaw, tracked as CVE-2026-8933…


  • Reddit, news outlets weigh cutting Google off as AI summaries kill traffic: report

    Reddit, news outlets weigh cutting Google off as AI summaries kill traffic: report 2026-07-22 at 20:45 By Thomas Barrabi USA Today, Politico, Reuters and The Economist are also reconsidering their ties to Google over its use of AI-generated “overviews” – which are placed at the top of search results instead of links to outside outlets…


  • BitGo, OTC Markets plan tokenized securities access for broker-dealers

    BitGo, OTC Markets plan tokenized securities access for broker-dealers 2026-07-22 at 20:43 By Cointelegraph by Sam Bourgi The proposed alliance would enable more than 150 broker-dealers to trade and settle digital asset securities through OTC Link ATS using BitGo’s custody infrastructure. This article is an excerpt from Cointelegraph.com News View Original Source


  • Chick-Fil-A Data Breach Exposes Customer Payment Data

    Chick-Fil-A Data Breach Exposes Customer Payment Data 2026-07-22 at 19:42 By Security leaders discuss the Chick-Fil-A breach. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Digital Chamber sues Illinois officials over new state 0.2% crypto tax

    Digital Chamber sues Illinois officials over new state 0.2% crypto tax 2026-07-22 at 19:28 By Cointelegraph by Turner Wright The group alleged that the tax signed into law in June “discriminates against people who transact in digital assets“ and should be blocked from implementation and enforcement. This article is an excerpt from Cointelegraph.com News View…


  • Trump tech official accuses China’s Moonshot AI of ‘large-scale’ plot to steal from Anthropic

    Trump tech official accuses China’s Moonshot AI of ‘large-scale’ plot to steal from Anthropic 2026-07-22 at 19:05 By Reuters Moonshot recently unveiled Kimi K3, a 2.8 trillion-parameter model that it said is the world’s largest open-weight AI system and delivers performance approaching Anthropic’s frontier Fable model. This article is an excerpt from Latest Technology News |…


  • Bitcoin price avoids major Iran jitters as S&P 500 ‘short squeeze’ on horizon

    Bitcoin price avoids major Iran jitters as S&P 500 ‘short squeeze’ on horizon 2026-07-22 at 18:55 By Cointelegraph by William Suberg Bitcoin and US stocks stayed strong in the face of US-Iran escalation as analysis predicted BTC price action outperforming equities later. This article is an excerpt from Cointelegraph.com News View Original Source


  • Odyssey-Themed Scams Appear Within Hours of Film’s Release

    Odyssey-Themed Scams Appear Within Hours of Film’s Release 2026-07-22 at 18:50 By The Odyssey by Christopher Nolan has been one of the most anticipated films of the summer, and not just by cinephiles — but by scammers, too.  This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts

    Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts 2026-07-22 at 18:02 By Eduard Kovacs Hackers leaked names, email addresses, phone numbers, passwords, and financial information stolen from the two platforms.  The post Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts appeared first on SecurityWeek. This article is an excerpt from SecurityWeek…


  • 55M Impacted by Suno Data Breach

    55M Impacted by Suno Data Breach 2026-07-22 at 18:00 By Suno, an AI music generation tool, was breached.  This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Palo Alto Networks to Acquire Observability Platform Provider Embrace

    Palo Alto Networks to Acquire Observability Platform Provider Embrace 2026-07-22 at 17:58 By SecurityWeek News Acquisition follows January’s Chronosphere deal, deepening Palo Alto Networks’ push beyond core security into observability. The post Palo Alto Networks to Acquire Observability Platform Provider Embrace appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • OpenAI: Our models breached Hugging Face during a cyber capability test

    OpenAI: Our models breached Hugging Face during a cyber capability test 2026-07-22 at 17:42 By Zeljka Zorz The recent Hugging Face breach was the work of several OpenAI models, the AI research company claimed in a blog post. The breach Late last week, the company behind Hugging Face, a platform that enables users to share…


  • Flaw in Adobe Extension With 300M Installs Enabled WhatsApp Data Theft

    Flaw in Adobe Extension With 300M Installs Enabled WhatsApp Data Theft 2026-07-22 at 17:22 By Eduard Kovacs An attacker only needed to convince the targeted user to visit a malicious website to exfiltrate WhatsApp messages and contacts. The post Flaw in Adobe Extension With 300M Installs Enabled WhatsApp Data Theft appeared first on SecurityWeek. This…


  • Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication

    Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication 2026-07-22 at 17:22 By A high-severity security flaw impacting open-source developer platform Windmill has come under active exploitation in the wild, per VulnCheck. The vulnerability in question is CVE-2026-29059 (CVSS score: 7.5), a case of unauthenticated path traversal impacting Windmill’s “get_log_file” endpoint (“/api/w/{workspace}/jobs_u/get_log_file/{filename}”). “The…


  • The Fastest Path to AI Adoption Runs Through Security

    The Fastest Path to AI Adoption Runs Through Security 2026-07-22 at 17:22 By Security leaders who build fast, visible paths to AI adoption are becoming the most valued partners in their organizations. AI governance done right gives security teams the visibility they need, employees the tools they want, and CISOs the strategic influence they have…


  • OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark

    OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark 2026-07-22 at 17:22 By OpenAI on Tuesday said a combination of its artificial intelligence (AI) models, including GPT-5.6 Sol and an “even more capable pre-release model,” was behind the security incident that targeted Hugging Face’s production infrastructure last week. The AI company…


  • OpenAI Presence connects AI agents to enterprise data with built-in guardrails

    OpenAI Presence connects AI agents to enterprise data with built-in guardrails 2026-07-22 at 17:01 By Sinisa Markovic OpenAI has introduced Presence, a product designed to help companies deploy AI agents that handle customer support and internal service requests across voice and chat. (Source: OpenAI) The company describes Presence as a deployment platform rather than a…


  • When Identity Verification Fails: Lessons from a Real-World SIM Swap and Near Account Takeover

    When Identity Verification Fails: Lessons from a Real-World SIM Swap and Near Account Takeover 2026-07-22 at 17:00 By Torsten George Identity confidence changes throughout every interaction and should be reassessed continuously as new risk signals emerge. The post When Identity Verification Fails: Lessons from a Real-World SIM Swap and Near Account Takeover appeared first on…


  • Astelia extends reachability analysis with agentic AI for vulnerability management

    Astelia extends reachability analysis with agentic AI for vulnerability management 2026-07-22 at 16:46 By Industry News Astelia has added agentic capabilities to its reachability analysis platform as organizations face shrinking exploit windows and the growing challenge of managing vulnerabilities. At the core of the platform is Astelia’s reachability analysis, which determines whether a vulnerability can…


  • ThreatDown expands security visibility to AI tools and machine identities

    ThreatDown expands security visibility to AI tools and machine identities 2026-07-22 at 16:38 By Industry News ThreatDown has announced a synchronized expansion of its AI and identity security capabilities to protect organizations from emerging, unmanaged risks. The company launched AI visibility, giving security and managed service provider (MSP) teams a full inventory of the AI…


  • The digital euro: Surveillance money, or a better alternative to cash?

    The digital euro: Surveillance money, or a better alternative to cash? 2026-07-22 at 16:30 By Cointelegraph by Christina Comben Proponents of the digital euro say its a better alternative to cash that’s fully backed by the ECB. But critics argue it could provide the EU with too much power over its citizens. This article is…


  • Swimlane AI SOC automates security operations for MSSPs

    Swimlane AI SOC automates security operations for MSSPs 2026-07-22 at 16:29 By Industry News Swimlane has announced the launch of Swimlane AI SOC for MSSPs, which the company says is designed to empower managed security service providers through agentic AI automation rather than compete for their customers. Some AI SOC providers are moving into managed…


  • Franklin Templeton calls agentic AI next ‘killer’ use case for blockchain

    Franklin Templeton calls agentic AI next ‘killer’ use case for blockchain 2026-07-22 at 16:18 By Cointelegraph by Zoltan Vardai Franklin Templeton’s digital assets lead said that the autonomous AI agent economy will increase demand for blockchain protocols hosting machine-to-machine micropayments. This article is an excerpt from Cointelegraph.com News View Original Source


  • StrongestLayer Raises $4.1 Million in Seed Funding Extension

    StrongestLayer Raises $4.1 Million in Seed Funding Extension 2026-07-22 at 16:00 By Ionut Arghire The startup will use the fresh investment to accelerate its go-to-market strategy and to expand its platform. The post StrongestLayer Raises $4.1 Million in Seed Funding Extension appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Vibe-Coded Apps Riddled With Exploitable Security Flaws

    Vibe-Coded Apps Riddled With Exploitable Security Flaws 2026-07-22 at 16:00 By Kevin Townsend Analysis found 434 exploitable flaws in AI-generated apps, with denial-of-service, authorization and secrets exposure risks among the most common issues. The post Vibe-Coded Apps Riddled With Exploitable Security Flaws appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original…


  • Why Modern SOCs Need Multi-Layered Detections

    Why Modern SOCs Need Multi-Layered Detections 2026-07-22 at 15:21 By The cycle is over. For years, cybersecurity followed a familiar pattern: defenses improved, attackers adapted, and the back-and-forth continued. Today, AI-equipped attackers are simply outpacing defenses. Most intrusions now bypass endpoint and malware-based detection entirely. The CrowdStrike Global Threat Report estimates around 79% of attacks…


  • Bitcoin analysis eyes ‘serious volume’ after Binance sees 9K BTC daily outflow

    Bitcoin analysis eyes ‘serious volume’ after Binance sees 9K BTC daily outflow 2026-07-22 at 14:55 By Cointelegraph by William Suberg Binance set multimonth records for net BTC outflows on Tuesday, adding to an emerging trend of positive inflows to the US spot Bitcoin ETFs. This article is an excerpt from Cointelegraph.com News View Original Source


  • Zilliqa Ledger app vulnerability lets attackers recover signer’s private keys

    Zilliqa Ledger app vulnerability lets attackers recover signer’s private keys 2026-07-22 at 14:49 By Cointelegraph by Zoltan Vardai A security vulnerability in the Zilliqa Ledger app is enabling attackers to reconstruct private keys using publicly available onchain data. This article is an excerpt from Cointelegraph.com News View Original Source


  • Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522)

    Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522) 2026-07-22 at 14:47 By Zeljka Zorz Attackers are exploiting a critical SharePoint remote code execution (RCE) vulnerability (CVE-2026-50522) to extract the servers’ IIS machine keys. “WatchTowr is observing active exploitation of CVE-2026-50522 against on-premise Microsoft SharePoint deployments following the release of public exploit code,…


  • US seeks forfeiture of $25M in crypto tied to romance, investment scams

    US seeks forfeiture of $25M in crypto tied to romance, investment scams 2026-07-22 at 14:32 By Cointelegraph by Ezra Reguerra US prosecutors are seeking more than $25 million in cryptocurrency allegedly connected to international fraud and laundering networks. This article is an excerpt from Cointelegraph.com News View Original Source


  • Fourth SharePoint Vulnerability Exploited in Past Month’s Wave of Attacks

    Fourth SharePoint Vulnerability Exploited in Past Month’s Wave of Attacks 2026-07-22 at 14:29 By Eduard Kovacs CVE-2026-50522 is being exploited by threat actors to steal machine keys and retain long-term access. The post Fourth SharePoint Vulnerability Exploited in Past Month’s Wave of Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View…


  • Glow exits stealth with $180 million to secure the AI-enabled endpoint

    Glow exits stealth with $180 million to secure the AI-enabled endpoint 2026-07-22 at 14:11 By Industry News Glow has emerged from stealth with $180 million in funding at a $1.2 billion valuation to advance a prevention-first approach to endpoint security. The funding round was led by Sequoia, Cyberstarts, Greenoaks, and Redpoint Ventures, with participation from…


  • Talos brings institutional trading tools to Kalshi prediction markets

    Talos brings institutional trading tools to Kalshi prediction markets 2026-07-22 at 14:00 By Cointelegraph by Nate Kostar The integration provides institutional clients with access to Kalshi’s event contracts and crypto perpetuals via Talos’ existing trading infrastructure. This article is an excerpt from Cointelegraph.com News View Original Source


  • US seizes over 1,000 domains used for illegal World Cup 2026 streams

    US seizes over 1,000 domains used for illegal World Cup 2026 streams 2026-07-22 at 13:51 By Sinisa Markovic The US Department of Justice has seized more than 1,000 internet domains that streamed FIFA World Cup 2026 matches without a license. The domain seizure notice (Source: US Department of Justice) The seizures came in three waves…


  • South Korea crypto volumes shrink as retail investors shift to stocks

    South Korea crypto volumes shrink as retail investors shift to stocks 2026-07-22 at 13:47 By Cointelegraph by Ezra Reguerra Trading activity on South Korea’s five major crypto exchanges fell sharply as the KOSPI surged, signaling a shift in retail investors toward equities. This article is an excerpt from Cointelegraph.com News View Original Source


  • Lookout identifies exploitable vulnerabilities in mobile apps

    Lookout identifies exploitable vulnerabilities in mobile apps 2026-07-22 at 13:32 By Industry News Lookout has announced the launch of the Lookout Mobile Software Exposure Center (MSEC). Integrated natively into the Lookout Mobile Endpoint Security platform, MSEC enables organizations to continuously detect, validate, prioritize, and remediate exploitable vulnerabilities across their mobile software ecosystem. The advancement of…


  • Foundry asks Bitcoin miners to vote on BIP-110 support

    Foundry asks Bitcoin miners to vote on BIP-110 support 2026-07-22 at 13:29 By Cointelegraph by Zoltan Vardai Foundry USA asked its mining customers to signal their support for BIP-110, an actively debated proposal seeking to shrink the amount of data that can be stored in a Bitcoin transaction. This article is an excerpt from Cointelegraph.com…


  • Box expands enterprise AI governance with new agent security featuresox

    Box expands enterprise AI governance with new agent security featuresox 2026-07-22 at 13:21 By Industry News Box has announced new security capabilities designed to give organizations greater control over AI agents working with enterprise content. With new agent guardrails, third-party agent activity oversight, prompt injection detection, agent classification-based access policies, and more, customers will be…


  • Arista adds AI-driven zero trust to VeloCloud SD-WAN

    Arista adds AI-driven zero trust to VeloCloud SD-WAN 2026-07-22 at 13:07 By Industry News Arista Networks has announced the launch of its new AI-driven Edge Threat Management (ETM) for VeloCloud SD-WAN, delivering integrated zero trust security for enterprise branch offices. Customers can leverage this integration to simplify the branch, collapsing multiple disparate boxes into a…


  • 4 Application Control Updates That Help Teams Move Faster

    4 Application Control Updates That Help Teams Move Faster 2026-07-22 at 13:00 By Larry Howarth Support for more devices, privileged access, simplified sign-ins, and keeping Linux environments current—all without loosening security This article is an excerpt from SECURITY.COM View Original Source


  • Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation

    Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation 2026-07-22 at 13:00 By Ionut Arghire Using AI, the startup provides adaptive prevention through environment mapping, risk analysis, and automated policy enforcement. The post Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation appeared first on SecurityWeek. This article is…


  • Oracle Patches Over 1,400 Vulnerabilities With Quarterly Security Updates

    Oracle Patches Over 1,400 Vulnerabilities With Quarterly Security Updates 2026-07-22 at 12:33 By Eduard Kovacs Many of the vulnerabilities fixed with the July 2026 Critical Patch Update were likely discovered by AI. The post Oracle Patches Over 1,400 Vulnerabilities With Quarterly Security Updates appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View…


  • Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA

    Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA 2026-07-22 at 11:39 By German and US law enforcement have taken down the core infrastructure of Kratos, described by German investigators as one of the world’s most widely used criminal phishing kits, and Indonesian authorities arrested the man they say developed…


  • Ransomware Group Threatening to Leak Data Stolen From Coca-Cola’s Fairlife

    Ransomware Group Threatening to Leak Data Stolen From Coca-Cola’s Fairlife 2026-07-22 at 11:32 By Eduard Kovacs The Anubis ransomware group claims to have stolen 1 TB of confidential data from the Coca-Cola subsidiary. The post Ransomware Group Threatening to Leak Data Stolen From Coca-Cola’s Fairlife appeared first on SecurityWeek. This article is an excerpt from…


  • Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter

    Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter 2026-07-22 at 11:21 By Anamarija Pogorelec Google’s Gemini 3.5 Flash Cyber model finds, validates, and patches vulnerabilities before they can be exploited while helping mitigate broader misuse. It is part of a limited-access pilot program that will soon be available to governments and trusted partners through…


  • Police dismantle Kratos phishing platform behind 15,000 monthly campaigns

    Police dismantle Kratos phishing platform behind 15,000 monthly campaigns 2026-07-22 at 11:02 By Sinisa Markovic German and US law enforcement have dismantled the infrastructure behind Kratos, a notorious phishing-as-a-service (PhaaS) platform. Its alleged developer and administrator was arrested in Indonesia by local police. Seizure banner (Source: BKA) The takedown was led by the Frankfurt public…


  • Bitcoin ETFs extend inflow streak to six days with $203M added

    Bitcoin ETFs extend inflow streak to six days with $203M added 2026-07-22 at 10:57 By Cointelegraph by Helen Partz US spot Bitcoin ETFs extended their inflow streak to six sessions, bringing in about $930 million while remaining down $4.84 billion on a net basis year to date. This article is an excerpt from Cointelegraph.com News…


Browse older archives

Scroll to Top