August 2026

CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps

CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps 2026-08-06 at 14:49 By Coinspect has identified CryptoJS.lib.WordArray.random() as the weak random number generator behind the Ill Bloom wallet drains. Introduced in the JavaScript cryptography library 12 years ago, the function supplied weak entropy that affected wallet apps used to generate recovery […]

CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps Read More »

Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses

Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses 2026-08-06 at 14:33 By Cybersecurity researchers have disclosed a security issue with Apple’s iCloud Private Relay tool that can expose a user’s real IP address. Introduced with iOS 15, iCloud Private Relay employs a dual-hop architecture to ensure users’ privacy by routing their […]

Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses Read More »

AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory

AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory 2026-08-06 at 14:30 By A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It abuses a standard feature built into almost every major AI assistant: pre-filled deep links. We observed production […]

AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory Read More »

Critical Paperclip Flaw Allowed Admin Access, Code Execution

Critical Paperclip Flaw Allowed Admin Access, Code Execution 2026-08-06 at 14:09 By Ionut Arghire An attacker could self-register, sign in for board-level API access, and import a new company for code execution. The post Critical Paperclip Flaw Allowed Admin Access, Code Execution appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

Critical Paperclip Flaw Allowed Admin Access, Code Execution Read More »

Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison

Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison 2026-08-06 at 12:30 By Ionut Arghire Maksim Silnikau was the creator and administrator of the ransomware group and involved in Angler EK’s distribution. The post Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison Read More »

Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access

Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access 2026-08-06 at 12:19 By Attackers broke into an organization’s Oracle database through a SQL injection flaw in a public-facing web application, then installed a post-exploitation toolkit without writing an executable to disk. They fed Java source code to the database, let Oracle […]

Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access Read More »

Block raises 2026 outlook on strong quarter, says AI touches nearly all code

Block raises 2026 outlook on strong quarter, says AI touches nearly all code 2026-08-06 at 04:33 By Cointelegraph by Felix Ng Cash App and Square drove better-than-expected results, while the company said it expanded its use of AI across software engineering. This article is an excerpt from Cointelegraph.com News View Original Source

Block raises 2026 outlook on strong quarter, says AI touches nearly all code Read More »

Bitcoin Red Team reports 5K findings in sweeping security audit

Bitcoin Red Team reports 5K findings in sweeping security audit 2026-08-06 at 04:09 By Cointelegraph by Felix Ng “There’s a lot of chaos right now in the ecosystem. We absolutely understand that many people are being bombarded with security issues right now,” said Bitcoin developer Calle. This article is an excerpt from Cointelegraph.com News View […]

Bitcoin Red Team reports 5K findings in sweeping security audit Read More »

Google’s Jeff Dean — chief scientist for 27 years — leaving during AI leadership overhaul for startup

Google’s Jeff Dean — chief scientist for 27 years — leaving during AI leadership overhaul for startup 2026-08-06 at 03:07 By Taylor Herzlich Google’s current chief scientist is leaving to start his own AI startup, Discovery Loop, with three other company veterans, according to a company blog post. This article is an excerpt from Latest […]

Google’s Jeff Dean — chief scientist for 27 years — leaving during AI leadership overhaul for startup Read More »

Bloodbath at Visa as top execs making mega bucks get canned from California offices

Bloodbath at Visa as top execs making mega bucks get canned from California offices 2026-08-06 at 00:27 By Titus Wu Payment processing giant brutally cut 2,600 jobs, sparing no one — not even top executives. This article is an excerpt from Latest Technology News | New York Post View Original Source

Bloodbath at Visa as top execs making mega bucks get canned from California offices Read More »

Senator Warren questions US AI chip policy after Trump crypto investment: Report

Senator Warren questions US AI chip policy after Trump crypto investment: Report 2026-08-06 at 00:15 By Cointelegraph by Turner Wright The lawmaker reportedly sent a letter to the Commerce Secretary demanding answers about the administration’s treatment of the UAE following investments in the Trump family’s crypto company. This article is an excerpt from Cointelegraph.com News […]

Senator Warren questions US AI chip policy after Trump crypto investment: Report Read More »

Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt

Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt 2026-08-05 at 23:27 By Cybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging platforms. One such service, Poison Claude, claims to offer access to Anthropic’s large language models […]

Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt Read More »

Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports

Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports 2026-08-05 at 23:27 By Two security flaws in Paperclip could let attackers execute commands on a network server or a developer’s computer. Paperclip is an open-source control plane for teams of artificial intelligence (AI) agents, and both paths rely on importing a malicious […]

Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports Read More »

How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones 

How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones  2026-08-05 at 22:40 By Eduard Kovacs The chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications. The post How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones  Read More »

Senator Lummis still pushing for CLARITY vote before August recess

Senator Lummis still pushing for CLARITY vote before August recess 2026-08-05 at 22:18 By Cointelegraph by Turner Wright US lawmakers have only a few days to hold a vote on a crypto market structure bill before a recess begins that could push consideration into the 2026 election season or beyond. This article is an excerpt […]

Senator Lummis still pushing for CLARITY vote before August recess Read More »

Pre-auth RCE in enterprise Java hits Bonita and OFBiz servers

Pre-auth RCE in enterprise Java hits Bonita and OFBiz servers 2026-08-05 at 21:45 By Mirko Zorz An attacker sends a single web request to a Bonita server and lands inside an internal API that assumed nobody could reach it. The request arrives unauthenticated. From there the attacker runs code on the host. Bonita BPM handles […]

Pre-auth RCE in enterprise Java hits Bonita and OFBiz servers Read More »

Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures

Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures 2026-08-05 at 21:44 By A macOS ClickFix operation spanning more than 250 front-end domains now fingerprints visitors before deciding whether to show them a malware lure, a change Microsoft Threat Intelligence tracked on infrastructure it had been watching for weeks. The server-side gate […]

Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures Read More »

OpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemes

OpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemes 2026-08-05 at 21:33 By OpenAI said it disrupted a Cambodia-based scam operation that used its generative artificial intelligence (AI) chatbot ChatGPT to facilitate a wide range of investment, romance, gambling, and law enforcement impersonation schemes. To that end, it banned a coordinated network of […]

OpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemes Read More »

Scroll to Top