Cybersecurity and other IT news aggregator
LATEST FEEDS
-
Bitcoin lows pierce $63K as Asia chip-stock crash spreads to Wall Street
Bitcoin lows pierce $63K as Asia chip-stock crash spreads to Wall Street 2026-07-28 at 19:27 By Cointelegraph by William Suberg Bitcoin and crypto dropped as contagion from a major Asia stock-market correction spreads to the US at the Wall Street open. This article is an excerpt from Cointelegraph.com News View Original Source
-
Kraken opens Jersey Mike’s IPO to retail investors through tokenized shares and direct allocations
Kraken opens Jersey Mike’s IPO to retail investors through tokenized shares and direct allocations 2026-07-28 at 19:20 By Cointelegraph by Nate Kostar Eligible US users can request IPO allocations, while customers in more than 110 countries gain access to tokenized Jersey Mike’s shares backed 1:1 by the underlying stock. This article is an excerpt from…
-
Hugging Face breach reignites open-weights debate, raises liability questions
Hugging Face breach reignites open-weights debate, raises liability questions 2026-07-28 at 18:55 By Zeljka Zorz The first publicly documented cyberattack run end-to-end by an autonomous AI was an OpenAI benchmark test that escaped its sandbox and breached Hugging Face. In an incident post-mortem compiled with the input from Hugging Face and several hundred members of…
-
Core Scientific revenue doubles in Q2 as AI colocation expansion accelerates
Core Scientific revenue doubles in Q2 as AI colocation expansion accelerates 2026-07-28 at 18:47 By Cointelegraph by Sam Bourgi Core Scientific reported strong second-quarter revenue growth as AI colocation became its largest business, though a non-cash accounting charge resulted in a $1.15 billion net loss. This article is an excerpt from Cointelegraph.com News View Original…
-
24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login
24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login 2026-07-28 at 18:41 By Cybersecurity researchers have sounded an alert after finding more than 36,000 Baseboard Management Controller (BMC) management interfaces exposing Intelligent Platform Management Interface (IPMI) protocol to the public internet. Of the 36,872 internet-exposed server-management interfaces running IPMI, 24,650 have been found to disclose…
-
Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process 2026-07-28 at 18:01 By A new Mirai-derived botnet called Tengu can use a compromised Linux device’s hardware watchdog to trigger a reboot when defenders kill its main process. If that happens, Tengu’s other persistence mechanisms get another chance to relaunch it. Nozomi Networks Labs…
-
Cyera Acquiring Oasis Security in $1 Billion Deal
Cyera Acquiring Oasis Security in $1 Billion Deal 2026-07-28 at 17:55 By Eduard Kovacs Oasis Security recently raised $120 million in Series B funding for its agentic access management platform. The post Cyera Acquiring Oasis Security in $1 Billion Deal appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Security Leaders Weigh in on Open Secure AI Alliance
Security Leaders Weigh in on Open Secure AI Alliance 2026-07-28 at 17:47 By Recently, a number of organizations announced the establishment of an open secure AI alliance. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root
Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root 2026-07-28 at 17:29 By OpenWrt has shipped version 24.10.8 to close a critical DHCPv6 stack overflow and a wider set of remotely triggerable flaws in network services enabled by default. The critical issue, tracked as CVE-2026-53921 and rated 9.8 on CVSS 3.1 in…
-
Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe
Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe 2026-07-28 at 17:19 By Eduard Kovacs Apple announced that dozens of vulnerabilities have been patched in each of its operating systems. The post Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View…
-
Day in the Life of DFIR Leader: Bringing Order to Cyber Chaos
Day in the Life of DFIR Leader: Bringing Order to Cyber Chaos 2026-07-28 at 17:00 By Devon Ackerman Most cyber investigations don’t begin at the beginning. Rather, they begin at the end, after systems are locked, data is exposed, and operations have already been disrupted. The outcome is visible, but the cause is not. From…
-
JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach
JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach 2026-07-28 at 16:33 By JFrog has confirmed that OpenAI models exploited a zero-day in self-hosted Artifactory while trying to reach the open internet from a sealed evaluation environment. Artifactory is JFrog’s software repository manager. OpenAI says the models then escalated privileges and moved laterally…
-
BlackCloak extends deepfake protection to the executive’s trusted circle
BlackCloak extends deepfake protection to the executive’s trusted circle 2026-07-28 at 16:15 By Industry News Deepfakes have made one of our oldest assumptions unreliable: that you can trust a familiar face or voice. While the industry focuses mainly on building “in-line detection tools” that try to spot the fake, BlackCloak, the leader in Digital Executive…
-
Bugcrowd introduces Savant Pathseeker for agentic penetration testing with exploit validation
Bugcrowd introduces Savant Pathseeker for agentic penetration testing with exploit validation 2026-07-28 at 16:14 By Industry News Bugcrowd unveils Savant Pathseeker, the first solution in its Agentic Offensive Testing line. Savant Pathseeker gives security teams the speed and scale to test every external web application and API continuously, not just the assets that make it…
-
PayPal expands stablecoin push as crypto assets factor into Q2 results
PayPal expands stablecoin push as crypto assets factor into Q2 results 2026-07-28 at 16:11 By Cointelegraph by Helen Partz PayPal highlighted growth of stablecoins and AI-driven payment tools in Q2 while reporting $8.68 billion in revenue and an $81 million crypto-related earnings adjustment. This article is an excerpt from Cointelegraph.com News View Original Source
-
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays 2026-07-28 at 16:10 By The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attributed to a fresh set of attacks targeting entities across the Middle East, Africa, and South Asia. The intrusions…
-
Prescient Security adds attack surface management to Cait, broadens AI-assisted pentesting
Prescient Security adds attack surface management to Cait, broadens AI-assisted pentesting 2026-07-28 at 16:10 By Industry News Prescient Security has announced a series of capability expansions to Cait (Cacilian AI), its continuous AI-assisted penetration testing service. The updates which will roll out through summer 2026 add attack surface management (ASM), new asset testing types and…
-
OT Security Startup Frenos Raises $1.52 Million
OT Security Startup Frenos Raises $1.52 Million 2026-07-28 at 16:05 By Ionut Arghire The company will use the fresh investment to grow its customer success and AI R&D teams. The post OT Security Startup Frenos Raises $1.52 Million appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Cyberhaven launches Flow to secure data across human and AI workflows
Cyberhaven launches Flow to secure data across human and AI workflows 2026-07-28 at 16:03 By Industry News Cyberhaven has introduced Cyberhaven Flow, an AI-native data security platform built to protect data across human and AI workflows. Flow connects lineage, identity, and behavior to protect data as it is created, copied, fragmented, and shared, marking a…
-
Ethereum, Solana led crypto hack losses in H1 2026: Blockaid
Ethereum, Solana led crypto hack losses in H1 2026: Blockaid 2026-07-28 at 16:00 By Cointelegraph by Helen Partz Blockaid found Ethereum remained the hardest-hit blockchain in H1 2026, while Solana replaced Arbitrum as the network with the second-highest losses, driven largely by key compromises. This article is an excerpt from Cointelegraph.com News View Original Source
-
Intel 471 expands Verity471 with AI agent and MCP support for threat intelligence
Intel 471 expands Verity471 with AI agent and MCP support for threat intelligence 2026-07-28 at 15:55 By Industry News Intel 471 has announced two new AI capabilities in the Verity471 platform, MCP471 and Agent471. As attackers use AI to lower the barrier to scale, security teams must use their own AI capabilities to make intelligence…
-
SpecterOps brings AWS attack path management and AI to hybrid identity security
SpecterOps brings AWS attack path management and AI to hybrid identity security 2026-07-28 at 15:48 By Industry News SpecterOps has announced new capabilities built to give defenders a dynamic understanding of how adversaries traverse their hybrid environment and the ability to proactively eliminate pathways before they can be abused. BloodHound Enterprise adds support for Amazon…
-
Team Cymru unveils Pure Signal Command for AI-powered threat intelligence and incident response
Team Cymru unveils Pure Signal Command for AI-powered threat intelligence and incident response 2026-07-28 at 15:36 By Industry News Team Cymru has announced Pure Signal Command, the connected operating environment for analysts, security teams, applications, and AI agents to access and act on Team Cymru’s internet infrastructure intelligence. Command unlocks Team Cymru’s globally observed threat…
-
Exposed BMCs hand out password hashes before login
Exposed BMCs hand out password hashes before login 2026-07-28 at 15:00 By Sinisa Markovic An attacker who reaches UDP port 623 on a server’s baseboard management controller can ask it for a password hash and receive one before logging in. The exchange is part of the IPMI 2.0 handshake, built on an authentication protocol introduced…
-
Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model
Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model 2026-07-28 at 14:11 By Eduard Kovacs The company claims MAI-Cyber-1-Flash tops Anthropic’s Mythos and OpenAI’s GPT-5.6 Sol in CyberGym testing. The post Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
JetBrains fixes critical unauthenticated RCE in TeamCity On-Premises (CVE-2026-63077)
JetBrains fixes critical unauthenticated RCE in TeamCity On-Premises (CVE-2026-63077) 2026-07-28 at 14:04 By Zeljka Zorz JetBrains has fixed a critical vulnerability (CVE-2026-63077) affecting TeamCity On-Premises and is urging admins to upgrade self-hosted servers as soon as possible. “For those who are unable to do so, we have released a security patch plugin,” noted Daniel Gallo,…
-
VERITAS project could change the way scientists secure AI
VERITAS project could change the way scientists secure AI 2026-07-28 at 14:02 By Sinisa Markovic The AI models, datasets, and automated systems researchers depend on can be compromised in ways conventional cybersecurity tools aren’t designed to detect. A new project called VERITAS (VERified Infrastructure for Trustworthy AI in Science) aims to close that gap by…
-
Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker
Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker 2026-07-28 at 14:00 By Kevin Townsend Tal Kollander’s history divides neatly into two halves: first as an active hacker and then as the block that stops hacks. The post Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker appeared first on SecurityWeek.…
-
Act Security Emerges from Stealth to Fight the Patch Problem
Act Security Emerges from Stealth to Fight the Patch Problem 2026-07-28 at 14:00 By Kevin Townsend Act Security tackles the spiraling patch problem caused by AI’s ability to find new vulnerabilities in existing cloud environments. The post Act Security Emerges from Stealth to Fight the Patch Problem appeared first on SecurityWeek. This article is an…
-
Hush Security Raises $30 Million for AI Agent Governance
Hush Security Raises $30 Million for AI Agent Governance 2026-07-28 at 13:17 By Ionut Arghire The startup will invest in expanding engineering and sales teams, accelerating ecosystem support, and expanding corporate partnerships. The post Hush Security Raises $30 Million for AI Agent Governance appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View…
-
IMF warns Brazil’s stablecoin activity outpaces traditional capital flows
IMF warns Brazil’s stablecoin activity outpaces traditional capital flows 2026-07-28 at 13:09 By Cointelegraph by Helen Partz The IMF said Brazil’s stablecoin market has expanded rapidly since 2017, with cross-border crypto flows growing faster than traditional capital flows. This article is an excerpt from Cointelegraph.com News View Original Source
-
Ondo shifts from layer-1 blockchain plan to offchain execution network
Ondo shifts from layer-1 blockchain plan to offchain execution network 2026-07-28 at 13:07 By Cointelegraph by Bryan O’Shea The new system marks an apparent departure from the institution-focused layer-1 blockchain Ondo announced in 2025. This article is an excerpt from Cointelegraph.com News View Original Source
-
Grafana Assistant expands with AI agents for investigations, automation, and observability
Grafana Assistant expands with AI agents for investigations, automation, and observability 2026-07-28 at 13:06 By Industry News Grafana Labs has announced the general availability of six AI capabilities, extending Grafana Assistant into an agentic operations layer that detects, investigates, and remediates production issues. The releases include Grafana Assistant Investigations, Grafana Assistant Workspace, Grafana Assistant Automations,…
-
AWS to retire Shield Advanced L7 automatic mitigation on January 1, 2027
AWS to retire Shield Advanced L7 automatic mitigation on January 1, 2027 2026-07-28 at 12:23 By Anamarija Pogorelec AWS Shield Advanced, a managed service that protects applications from external threats, is adding the Anti-DDoS managed rule group, designed for application-layer (L7) DDoS protection, to eligible web access control lists (ACLs) in Count mode. The addition…
-
Lido upgrade aims to slash Ethereum’s validator count by one-third
Lido upgrade aims to slash Ethereum’s validator count by one-third 2026-07-28 at 12:14 By Cointelegraph by Helen Partz Lido launched Curated Module v2, an upgrade that could reduce Ethereum’s validator count by one-third by consolidating validators and introducing new operator rules. This article is an excerpt from Cointelegraph.com News View Original Source
-
Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In
Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In 2026-07-28 at 12:12 By JetBrains is urging customers of on-premise versions of TeamCity to update to the latest version following the discovery of a critical security issue that could result in arbitrary code execution. The vulnerability, assigned CVE-2026-63077 (CVSS score: 9.8), affects all…
-
Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit
Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit 2026-07-28 at 12:12 By STAR Labs has published a Linux kernel exploit that turns an ordinary local user into root on the CentOS Stream 9 build it targeted. The flaw, tracked as CVE-2026-53264 (CVSS score: 7.8), is a use-after-free race in the kernel’s network…
-
Coca-Cola confirms hackers stole data in Fairlife ransomware attack
Coca-Cola confirms hackers stole data in Fairlife ransomware attack 2026-07-28 at 12:01 By Sinisa Markovic Coca-Cola has confirmed that the ransomware attack on its dairy subsidiary Fairlife involved the theft of company data, weeks after the incident temporarily halted production at its US facilities. Fairlife is a Coca-Cola-owned dairy brand that makes ultra-filtered milk and…
-
The Hidden Power of Advisory Boards
The Hidden Power of Advisory Boards 2026-07-28 at 12:00 By Security leaders discuss the importance of advisory boards in the industry. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
Google Adopts New Threat Actor Naming System
Google Adopts New Threat Actor Naming System 2026-07-28 at 11:42 By Ionut Arghire The new two-word naming convention uses a memorable term utilized in public reporting and a cluster-categorization word. The post Google Adopts New Threat Actor Naming System appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost
Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost 2026-07-28 at 10:53 By Microsoft has launched its first cybersecurity-specific model inside MDASH, its multi-model vulnerability identification and remediation harness. The company says MDASH, using MAI-Cyber-1-Flash and GPT-5.4, scored 95.95% on CyberGym. It also claims the configuration costs 50% less than…
-
Apple faces lawsuit over alleged $1.8M Bitcoin wallet app losses
Apple faces lawsuit over alleged $1.8M Bitcoin wallet app losses 2026-07-28 at 10:40 By Cointelegraph by Helen Partz Three users allege a fake Sparrow Wallet app on Apple’s App Store drained their Bitcoin holdings, with losses totaling more than $1.8 million. This article is an excerpt from Cointelegraph.com News View Original Source
-
Unpatched Fastjson Vulnerability Exploited in Attacks
Unpatched Fastjson Vulnerability Exploited in Attacks 2026-07-28 at 10:27 By Ionut Arghire The critical remote code execution bug can be exploited without authentication, under the library’s stock default configurations. The post Unpatched Fastjson Vulnerability Exploited in Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day
Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day 2026-07-28 at 09:40 By Ionut Arghire Impacting on-premises deployments, the OS command injection allows attackers to access privileged internal functionality. The post Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw
Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw 2026-07-28 at 09:21 By A maximum-severity security flaw impacting on-premises versions of Arista VeloCloud Orchestrator (VCO) has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-16812 (CVSS score: 10.0), is a case of operating system command injection that could pave the way for arbitrary…
-
Binance co-founder CZ backs crypto license passporting across ASEAN
Binance co-founder CZ backs crypto license passporting across ASEAN 2026-07-28 at 09:00 By Cointelegraph by Ezra Reguerra Binance co-founder CZ backed crypto license passporting across ASEAN to simplify approvals, reduce compliance costs and encourage competition. This article is an excerpt from Cointelegraph.com News View Original Source
-
Shadow AI incident response begins with logs that may already be gone
Shadow AI incident response begins with logs that may already be gone 2026-07-28 at 09:00 By Mirko Zorz In this Help Net Security interview, Brandy Wityak, VP of Complex Matters at LevelBlue, explains what happens in the hours after a shadow AI incident. She describes how quickly logs roll over, why firewall records of outbound…
-
AI took more than junior developer jobs and the bill comes later
AI took more than junior developer jobs and the bill comes later 2026-07-28 at 08:30 By Sinisa Markovic A ticket comes in for a small bug fix. Hand it to the junior on your team and you wait a day, review something that half works, and sit down to explain what went wrong. Describe it…
-
Origin Energy Data Breach Affects 900,000 Australians
Origin Energy Data Breach Affects 900,000 Australians 2026-07-28 at 08:01 By Eduard Kovacs The hacker claimed to have stolen the information of 2 million Origin Energy customers after breaching its systems. The post Origin Energy Data Breach Affects 900,000 Australians appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Download: The High-Performance Team Playbook
Download: The High-Performance Team Playbook 2026-07-28 at 08:00 By Help Net Security Get practical insight from teams who’ve built, scaled and handed over engineering functions at enterprise level. Most engineering teams don’t fail because of bad engineers. They fail because performance is assumed. This playbook shows how high-performance teams are built intentionally across people, structure,…
Browse older archives
- July 2026
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023