Cybersecurity and other IT news aggregator

LATEST FEEDS

  • Pavel Durov says Telegram to roll out native Gram crypto wallet

    Pavel Durov says Telegram to roll out native Gram crypto wallet 2026-07-21 at 21:20 By Cointelegraph by Nate Kostar Telegram founder Pavel Durov said the messaging platform will roll out a native non-custodial Gram wallet this summer, bringing self-custody crypto transactions to its more than 1 billion users. This article is an excerpt from Cointelegraph.com…


  • Trump Orders Defense Contractors to Map Software, Suppliers Across Critical Supply Chains

    Trump Orders Defense Contractors to Map Software, Suppliers Across Critical Supply Chains 2026-07-21 at 21:16 By SecurityWeek News New executive order calls for end-to-end visibility into defense supply chains, including software dependencies, foreign ownership and cyber-related supplier risks. The post Trump Orders Defense Contractors to Map Software, Suppliers Across Critical Supply Chains appeared first on…


  • Designers are producing ‘adversarial’ styles meant to scramble surveillance cameras

    Designers are producing ‘adversarial’ styles meant to scramble surveillance cameras 2026-07-21 at 21:04 By Faran Krentcil The future’s so invasive, you have to wear shades. This article is an excerpt from Latest Technology News | New York Post View Original Source


  • Crypto market breakout could accelerate as AI trade cools, analyst says

    Crypto market breakout could accelerate as AI trade cools, analyst says 2026-07-21 at 20:46 By Cointelegraph by Sam Bourgi Bitcoin topped $67,000 while crypto stocks rallied on optimism over US crypto legislation and signs investors may be rotating out of AI trades. This article is an excerpt from Cointelegraph.com News View Original Source


  • Cisco Launches Low-Cost AI Models for Source Code Security

    Cisco Launches Low-Cost AI Models for Source Code Security 2026-07-21 at 20:44 By Kevin Townsend The open-weight Antares models are designed to pinpoint known vulnerabilities in codebases faster and at a fraction of the cost of larger AI models. The post Cisco Launches Low-Cost AI Models for Source Code Security appeared first on SecurityWeek. This…


  • White House agrees to ethics provisions in market structure bill

    White House agrees to ethics provisions in market structure bill 2026-07-21 at 20:30 By Cointelegraph by Turner Wright The price of Bitcoin moved above $66,000 to reach a seven-week high on Tuesday as reports circulated of a deal with the White House to address ethics in the CLARITY Act. This article is an excerpt from…


  • Volume Is Not Risk: Making Sense of the “Vulnpocalypse”

    Volume Is Not Risk: Making Sense of the “Vulnpocalypse” 2026-07-21 at 20:30 By A briefing for security leaders on separating vulnerability disclosure volume from exploitable risk in 2026. This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source


  • AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code

    AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code 2026-07-21 at 20:30 By Hidden text on a web page was enough to make Kiro, AWS’s agentic coding IDE, rewrite its own configuration file and run an attacker’s code on a developer’s machine, with no approval step able to stop it.…


  • Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities

    Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities 2026-07-21 at 20:30 By Google’s DeepMind on Tuesday announced the release of Gemini 3.5 Flash Cyber, a specialized artificial intelligence (AI) model built atop 3.5 Flash that’s designed to discover, validate, and patch vulnerabilities quickly and efficiently. According to the tech giant,…


  • Chinese AI firms that rip off US models could face sanctions, Treasury Secretary Scott Bessent warns

    Chinese AI firms that rip off US models could face sanctions, Treasury Secretary Scott Bessent warns 2026-07-21 at 20:16 By Thomas Barrabi As The Post has reported, AI giants like Anthropic, OpenAI and Google have each raised alarms about China-based labs using unauthorized distillation – a technique where a more advanced model is used to…


  • China-based Moonshot AI seeks $50B valuation — and could go public this year: report

    China-based Moonshot AI seeks $50B valuation — and could go public this year: report 2026-07-21 at 19:44 By Thomas Barrabi The company – founded in 2023 by Carnegie Mellon-trained AI researcher Yang Zhilin – drew global attention with the launch of Kimi K3. The large-language model was trained on 2.8 trillion parameters, making it the…


  • Threat Hunting Without Context Creates Noise

    Threat Hunting Without Context Creates Noise 2026-07-21 at 19:41 By Threat hunting has become a cornerstone of modern cybersecurity programs. As organizations collect increasing volumes of telemetry across endpoints, cloud environments, identities, applications, and networks, hunting teams have unprecedented visibility into potential adversary activity. This article is an excerpt from LevelBlue Blog View Original Source


  • BIS warns stablecoins could weaken capital controls in emerging markets

    BIS warns stablecoins could weaken capital controls in emerging markets 2026-07-21 at 19:11 By Cointelegraph by Nate Kostar Researchers found dollar-backed stablecoins are less affected by capital controls than traditional bank deposits, raising new questions about monetary sovereignty in emerging markets. This article is an excerpt from Cointelegraph.com News View Original Source


  • MEXC adds Bittensor TAO staking for its global user base

    MEXC adds Bittensor TAO staking for its global user base 2026-07-21 at 18:53 By Cointelegraph by Sam Bourgi The integration with validator Yuma gives millions of MEXC users access to Bittensor, an AI-focused blockchain whose ecosystem now spans 128 specialized subnets. This article is an excerpt from Cointelegraph.com News View Original Source


  • Bitcoin nears seven-week high as stocks ignore Iran strikes, Trump 10% tariff plans

    Bitcoin nears seven-week high as stocks ignore Iran strikes, Trump 10% tariff plans 2026-07-21 at 18:14 By Cointelegraph by William Suberg Bitcoin and crypto joined US stocks in brushing off US-Iran war escalation and the threat of fresh trade tariffs before the end of the month. This article is an excerpt from Cointelegraph.com News View…


  • Healthcare Software Provider Craneware Announces Data Breach

    Healthcare Software Provider Craneware Announces Data Breach 2026-07-21 at 18:05 By A software provider for the healthcare sector revealed it experienced a data breach.  This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC

    Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC 2026-07-21 at 17:57 By A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per watchTowr. The vulnerability in question is CVE-2026-50522 (CVSS score: 9.8), a critical deserialization of untrusted data in…


  • Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities

    Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities 2026-07-21 at 17:47 By Zimbra has rolled out fixes to address multiple critical security issues, including a command injection flaw in the Simple Network Management Protocol (SNMP) monitoring component. As many as nine security vulnerabilities have been patched in Zimbra 10.1.20. Topping the list is…


  • AI agents tricked into recommending malicious GitHub repositories

    AI agents tricked into recommending malicious GitHub repositories 2026-07-21 at 17:27 By Sinisa Markovic Roughly 7,600 malicious GitHub repositories were uncovered, more than 800 of them posing as AI Skills or Model Context Protocol (MCP) servers, in a wave that peaked in April 2026, according to Island. The scale of the FakeGit operation (Source: Island)…


  • Teleport enhances Identity Security platform with new AI agent behavior controls

    Teleport enhances Identity Security platform with new AI agent behavior controls 2026-07-21 at 17:05 By Industry News Teleport has expanded its Identity Security platform with three new capabilities designed to ensure that agent behavior remains within defined boundaries: Beams Session Summaries, Agentic Classifiers, and Risk Scoring. They give enterprises a foundational harness for identifying and…


  • Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access

    Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access 2026-07-21 at 17:04 By Threat actors have been observed exploiting a now-patched high-severity Palo Alto Networks PAN-OS vulnerability as an entry point to deploy Qilin (aka Agenda) ransomware on victim environments. Arctic Wolf Labs said it investigated multiple intrusions in June 2026 that began with…


  • JadePuffer returns with ransomware built to target AI models and infrastructure

    JadePuffer returns with ransomware built to target AI models and infrastructure 2026-07-21 at 16:38 By Zeljka Zorz JadePuffer, the threat actor behind the recently documented extortion operation executed end-to-end by an AI agent, is now attempting to leverage ENCFORGE, novel ransomware created to target AI and machine learning (ML) infrastructure. The extortion contact embedded in…


  • CoinShares debuts Bitcoin mining ETF in Europe entrance

    CoinShares debuts Bitcoin mining ETF in Europe entrance 2026-07-21 at 16:34 By Cointelegraph by Yohan Yun The UCITS ETF, CoinShares’ first in Europe, began trading on Deutsche Börse Xetra, tracking a rules-based index of publicly listed BTC miners. This article is an excerpt from Cointelegraph.com News View Original Source


  • N-day is Becoming N-Hour. Patching Faster Won’t Save You.

    N-day is Becoming N-Hour. Patching Faster Won’t Save You. 2026-07-21 at 16:30 By Every patch is a confession. The moment a vendor ships a security fix, the diff between the old code and the new code tells anyone watching exactly what was broken and where. Turn that diff back into a working exploit, and you…


  • New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an Exploit

    New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an Exploit 2026-07-21 at 16:30 By A cloud tenant using nothing but ordinary GPU access can push a data center’s power draw up and down fast enough to threaten the grid it runs on, with no exploit and no break-in. That is the claim…


  • Druva brings backup, recovery and governance to AI workloads

    Druva brings backup, recovery and governance to AI workloads 2026-07-21 at 16:25 By Industry News Druva has announced Druva AI Resilience, a new approach that helps organizations recover, govern, and defend the systems, activity, and context behind AI-powered work. The launch introduces new and expanded capabilities for Microsoft Copilot, Claude Code, Druva Model Context Protocol…


  • Exploitarium: Inside the Archive Behind the Mass 0-Day Drop

    Exploitarium: Inside the Archive Behind the Mass 0-Day Drop 2026-07-21 at 16:23 By Serhii Melnyk Coordinated vulnerability disclosures operate on a straightforward premise: the affected vendor is notified first, given a defined window to remediate, and public disclosure follows. This article is an excerpt from LevelBlue SpiderLabs Blog View Original Source


  • Robinhood-backed DEX Arcus expands with tokenized assets, perps

    Robinhood-backed DEX Arcus expands with tokenized assets, perps 2026-07-21 at 16:16 By Cointelegraph by Helen Partz Arcus, built by the dYdX team, adds tokenized stocks and perpetual futures on Robinhood Chain as platforms compete to bring traditional assets onchain. This article is an excerpt from Cointelegraph.com News View Original Source


  • Cisco’s open-weight Antares models make vulnerability localization cheaper

    Cisco’s open-weight Antares models make vulnerability localization cheaper 2026-07-21 at 16:01 By Mirko Zorz A security analyst opens an unfamiliar repository, pulls up a vulnerability advisory, and starts hunting for the file where the weakness lives. The naming conventions belong to someone else. Evidence sits in scattered corners of a codebase that runs to thousands…


  • 79% of Ransomware Attacks Start with Compromised Identities

    79% of Ransomware Attacks Start with Compromised Identities 2026-07-21 at 16:00 By The most common method used to enact ransomware is the abuse of compromised credentials.  This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Empirical Security Raises $25 Million in Series A Funding

    Empirical Security Raises $25 Million in Series A Funding 2026-07-21 at 15:47 By Ionut Arghire The startup will use the investment to accelerate the development of its threat prediction and discovery products. The post Empirical Security Raises $25 Million in Series A Funding appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View…


  • SecurityWeek Launches Critical Impact Awards to Recognize Excellence in Industrial Cybersecurity

    SecurityWeek Launches Critical Impact Awards to Recognize Excellence in Industrial Cybersecurity 2026-07-21 at 15:30 By SecurityWeek News Independently judged and sponsor-neutral, the new awards program honors the people, organizations, and technologies delivering proven impact in industrial cybersecurity; winners to be announced live at the 2026 ICS Cybersecurity Conference in Nashville The post SecurityWeek Launches Critical…


  • Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCs

    Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCs 2026-07-21 at 14:58 By An Android app that can draw over other windows and write to shared storage can slip instructions to the AI agent driving that phone, in text no human eye will ever see. Two more steps, and the…


  • New HollowGraph Malware Abuses Microsoft 365 Calendar for C&C Communication

    New HollowGraph Malware Abuses Microsoft 365 Calendar for C&C Communication 2026-07-21 at 14:55 By Ionut Arghire Part of a larger toolkit, HollowGraph uses a compromised 365 account’s calendar as a two-way dead-drop. The post New HollowGraph Malware Abuses Microsoft 365 Calendar for C&C Communication appeared first on SecurityWeek. This article is an excerpt from SecurityWeek…


  • CISO Conversations: Andreas Gaetje – From Economics to CISO at Körber AG

    CISO Conversations: Andreas Gaetje – From Economics to CISO at Körber AG 2026-07-21 at 14:30 By Kevin Townsend Gaetje’s story shows that you don’t need to be a ‘deep bit-crawler’ to become a Chief Information Security Officer. The post CISO Conversations: Andreas Gaetje – From Economics to CISO at Körber AG appeared first on SecurityWeek.…


  • Shufti simplifies cross-border compliance with the Glocal Platform

    Shufti simplifies cross-border compliance with the Glocal Platform 2026-07-21 at 14:06 By Industry News Shufti has launched the Shufti Glocal Platform, a compliance lifecycle management solution designed to help organizations manage identity verification, fraud prevention, risk assessment, and regulatory compliance through a single platform across every industry, every region, and every use case. For decades,…


  • SonicWall SMA zero-days were exploited weeks before disclosure

    SonicWall SMA zero-days were exploited weeks before disclosure 2026-07-21 at 13:35 By Zeljka Zorz Two recently disclosed SonicWall SMA 1000 vulnerabilities – CVE-2026-15409 and CVE-2026-15410 – were exploited in zero-day attacks for weeks, allowing threat actors to install custom malware on vulnerable VPN appliances, Volexity researchers revealed. The intrusions began as early as June 22,…


  • Bitcoin price gains to $66.3K as range breakout attempt sparks one-month high

    Bitcoin price gains to $66.3K as range breakout attempt sparks one-month high 2026-07-21 at 13:26 By Cointelegraph by William Suberg Bitcoin beat out local resistance to pass $66,000 amid predictions of as much as 6% BTC price upside if momentum continued. This article is an excerpt from Cointelegraph.com News View Original Source


  • Fake FBI agents target people who already got scammed

    Fake FBI agents target people who already got scammed 2026-07-21 at 13:21 By Sinisa Markovic Scammers are impersonating FBI personnel who supposedly handle Internet Crime Complaint Center (IC3) complaints, using that disguise to deceive and revictimize people who already lost money once. The IC3 published the update on July 20, 2026, building on an earlier…


  • Meta Paid $78,000 Bounty for Vulnerability Exposing Customer Support Data

    Meta Paid $78,000 Bounty for Vulnerability Exposing Customer Support Data 2026-07-21 at 13:19 By Eduard Kovacs A security researcher discovered a broken access control vulnerability in Meta’s support infrastructure. The post Meta Paid $78,000 Bounty for Vulnerability Exposing Customer Support Data appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Clover Health Investments Discloses Data Breach

    Clover Health Investments Discloses Data Breach 2026-07-21 at 12:36 By Ionut Arghire Using social engineering, hackers compromised employee accounts with access to personal and health information. The post Clover Health Investments Discloses Data Breach appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • AWS wants GuardDuty to automate the first steps of threat investigations

    AWS wants GuardDuty to automate the first steps of threat investigations 2026-07-21 at 12:14 By Anamarija Pogorelec Amazon GuardDuty investigation agent is now in public preview. The feature provides AI-powered investigations of GuardDuty findings, AWS accounts and AWS organizations, helping security teams reduce investigation time. During the public preview, the investigation agent is available at…


  • Estée Lauder discloses data breach tied to Oracle EBS vulnerability

    Estée Lauder discloses data breach tied to Oracle EBS vulnerability 2026-07-21 at 12:01 By Sinisa Markovic Cosmetics company Estée Lauder disclosed a data breach tied to a vulnerability in Oracle E-Business Suite (EBS) used for the company’s human resources operations. Estée Lauder is one of the largest beauty companies in the world, known for its…


  • Eye on the Sky: SkySafe Named 2026 Golden Eagle Award Winner

    Eye on the Sky: SkySafe Named 2026 Golden Eagle Award Winner 2026-07-21 at 12:00 By This year Security Magazine partnered with The National Center for Spectator Sports Safety and Security (NCS4) to present the Golden Eagle Award to SkySafe as the 2026 Golden Eagle Award winner for its case study submission, “University of Illinois Sets…


  • WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning

    WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning 2026-07-21 at 11:59 By Attackers have begun to exploit two critical vulnerabilities in WordPress that, when combined together, enable unauthenticated remote code execution (RCE) and complete compromise of vulnerable websites. The two security flaws, tracked as CVE-2026-63030 and CVE-2026-60137, have been codenamed wp2shell. “By the…


  • UK parliamentary group probes banking barriers for crypto firms

    UK parliamentary group probes banking barriers for crypto firms 2026-07-21 at 11:51 By Cointelegraph by Ezra Reguerra A UK parliamentary group launched an inquiry into banking restrictions on crypto firms and consumers, including their impact on investment and competition. This article is an excerpt from Cointelegraph.com News View Original Source


  • Exploitation of ServiceNow Vulnerability Seen Days After Disclosure

    Exploitation of ServiceNow Vulnerability Seen Days After Disclosure 2026-07-21 at 11:41 By Eduard Kovacs The ServiceNow AI platform vulnerability tracked as CVE-2026-6875 can be exploited for remote code execution. The post Exploitation of ServiceNow Vulnerability Seen Days After Disclosure appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Open-source maintainers still work underfunded as sponsorship crosses $100 million

    Open-source maintainers still work underfunded as sponsorship crosses $100 million 2026-07-21 at 11:37 By Anamarija Pogorelec A maintainer patches a library late at night that ships inside thousands of products, and no invoice follows. Sebastián Ramírez and Caleb Porzio spent years in that position. Ramírez, known as tiangolo, builds tools that other Python projects depend…


  • Zimbra Update Patches Critical Vulnerabilities

    Zimbra Update Patches Critical Vulnerabilities 2026-07-21 at 11:20 By Ionut Arghire The latest Zimbra refresh resolves command injection, XSS, restriction bypass, and SSRF security defects. The post Zimbra Update Patches Critical Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack

    New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack 2026-07-21 at 10:34 By Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, the AI-agent-driven operator it first documented earlier this month. The same operator has now been spotted deploying ENCFORGE, a new compiled Go ransomware designed to…


Browse older archives

Scroll to Top