Cybersecurity and other IT news aggregator
LATEST FEEDS
-
Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix
Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix 2026-08-07 at 13:00 By Eduard Kovacs NMFTA research shows a Bendix EC80 brake controller safety recall also patched remote code execution and DoS vulnerabilities. The post Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix appeared first on SecurityWeek. This article is an excerpt…
-
I tested the new Samsung Galaxy Watch9: The health tracker’s most exciting features
I tested the new Samsung Galaxy Watch9: The health tracker’s most exciting features 2026-08-07 at 12:59 By Carly Stern The new watch, on sale today, tracks fitness and sleep, measures antioxidants in the skin, and an even do a body composition scan. This article is an excerpt from Latest Technology News | New York Post…
-
New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables
New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables 2026-08-07 at 12:32 By Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, expose mapped ports, and exhaust NAT tables. Presented at Black Hat USA…
-
CleanSpark misses Wall Street revenue estimates as shares sink
CleanSpark misses Wall Street revenue estimates as shares sink 2026-08-07 at 12:25 By Cointelegraph by Zoltan Vardai CleanSpark’s shares fell 5.5% on Thursday after the Bitcoin miner reported $138 million in quarterly revenue, narrowly missing Wall Street’s consensus estimate. This article is an excerpt from Cointelegraph.com News View Original Source
-
Black Hat USA 2026 – Summary of Vendor Announcements (Part 4)
Black Hat USA 2026 – Summary of Vendor Announcements (Part 4) 2026-08-07 at 12:24 By SecurityWeek News Companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas. The post Black Hat USA 2026 – Summary of Vendor Announcements (Part 4) appeared first on SecurityWeek.…
-
Stripe-owned Bridge joins EU MiCA register after Luxembourg approval
Stripe-owned Bridge joins EU MiCA register after Luxembourg approval 2026-08-07 at 12:14 By Cointelegraph by Helen Partz Stripe-owned Bridge has entered the EU MiCA register following Luxembourg approval, joining regulated providers under the bloc’s crypto framework. This article is an excerpt from Cointelegraph.com News View Original Source
-
Microsoft, Apple Release Fresh Security Updates
Microsoft, Apple Release Fresh Security Updates 2026-08-07 at 12:09 By Ionut Arghire Microsoft fixed critical vulnerabilities across Azure, Entra, and SharePoint, while Apple patched a high-severity authentication bypass. The post Microsoft, Apple Release Fresh Security Updates appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
CLARITY Act delay gives Asian financial hubs an opening: First Digital CEO
CLARITY Act delay gives Asian financial hubs an opening: First Digital CEO 2026-08-07 at 12:01 By Cointelegraph by Ezra Reguerra Industry figures warned that continued legislative limbo could slow institutional adoption, revive regulation by enforcement and push innovation offshore. This article is an excerpt from Cointelegraph.com News View Original Source
-
Stop, Drop, and Roll
Stop, Drop, and Roll 2026-08-07 at 12:00 By Insights from national fire prevention standards for active shooter prevention. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
OpenAI drops ChatGPT text chat limits for free users, adds new safeguards for teens
OpenAI drops ChatGPT text chat limits for free users, adds new safeguards for teens 2026-08-07 at 11:52 By Sinisa Markovic OpenAI has updated GPT-5.6 Sol, the model behind ChatGPT for Plus and Pro subscribers, and pushed a new model, GPT-5.6 Luna, out to everyone using the free tier. The company is also removing the rate…
-
Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access
Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access 2026-08-07 at 11:52 By Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, disclose victim IP addresses and mapped ports, and exhaust NAT tables. Presented…
-
Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets
Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets 2026-08-07 at 11:18 By A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic’s and Google’s own coding-agent repositories. On OpenAI’s, it was enough to hijack the next agent…
-
3.8 Million Impacted by Unlimited Technology Systems Data Breach
3.8 Million Impacted by Unlimited Technology Systems Data Breach 2026-08-07 at 10:22 By Ionut Arghire Hackers stole personal, medical, and health insurance information from a company’s data center. The post 3.8 Million Impacted by Unlimited Technology Systems Data Breach appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Keepit AI Truth Cloud protects the data behind enterprise AI
Keepit AI Truth Cloud protects the data behind enterprise AI 2026-08-07 at 10:10 By Sinisa Markovic Keepit announced AI Truth Cloud, transforming backup from a compliance requirement into the strategically valuable data asset an organization can hold. As AI agents take on business-critical decisions, AI Truth Cloud positions Keepit as the sovereign source of truth…
-
Critical Vulnerabilities Patched With Chrome 151 Update
Critical Vulnerabilities Patched With Chrome 151 Update 2026-08-07 at 09:56 By Ionut Arghire The browser refresh eliminates over two dozen memory safety bugs, including critical use-after-free flaws. The post Critical Vulnerabilities Patched With Chrome 151 Update appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign
TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign 2026-08-07 at 09:50 By A new analysis has uncovered that the threat actor tracked as TeamPCP has been active on the cybercrime scene as far back as 2020, indicating the group has been compromising internet-facing infrastructure for years before training their…
-
August 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse?
August 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse? 2026-08-07 at 09:00 By Help Net Security July 2026 Patch Tuesday was record-setting in so many ways. The sheer volume of security patches for almost every product in the Microsoft portfolio was the highest ever and, of course, well over 600 CVEs…
-
What the first year of EU AI Act transparency enforcement could look like
What the first year of EU AI Act transparency enforcement could look like 2026-08-07 at 08:30 By Mirko Zorz In this Help Net Security interview, Edwin Weijdema, Field CTO at Veeam, answers questions on Article 50 of the EU AI Act and what the first year of enforcement might bring. He explains why corrective orders…
-
US fuel gauge exposure fell by more than half in three months
US fuel gauge exposure fell by more than half in three months 2026-08-07 at 08:00 By Anamarija Pogorelec Every month for the better part of a year, about 4,800 US internet addresses answered a query in the protocol that fuel tank gauges speak. In June the number was 2,354. The count fell across April, May,…
-
As AI Outpaces Regulation, Trust is at Risk
As AI Outpaces Regulation, Trust is at Risk 2026-08-07 at 08:00 By AI will continue to outpace regulation. The question is not whether the gap exists, every CISO already knows it does. The question is who owns it. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
MARA swings to Q2 loss as Bitcoin’s slump masks higher output
MARA swings to Q2 loss as Bitcoin’s slump masks higher output 2026-08-07 at 06:48 By Cointelegraph by Felix Ng Bitcoin miner MARA posted its highest quarterly Bitcoin production in over a year, but was overshadowed by a 28% decline in the average price of Bitcoin. This article is an excerpt from Cointelegraph.com News View Original…
-
Bitget explores licensed crypto presence in Bhutan
Bitget explores licensed crypto presence in Bhutan 2026-08-07 at 06:22 By Cointelegraph by Felix Ng Crypto exchange Bitget has signed an agreement with Gelephu Mindfulness City Authority to pursue a regulated local presence. This article is an excerpt from Cointelegraph.com News View Original Source
-
US Senate pushes CLARITY Act vote to September: Report
US Senate pushes CLARITY Act vote to September: Report 2026-08-07 at 05:49 By Cointelegraph by Ezra Reguerra Senate Majority Leader John Thune reportedly confirmed that the chamber was “punting” the vote until September. This article is an excerpt from Cointelegraph.com News View Original Source
-
Crypto market maker Wintermute launches US broker-dealer
Crypto market maker Wintermute launches US broker-dealer 2026-08-07 at 03:09 By Cointelegraph by Felix Ng Wintermute said the registration allows the firm to position itself for the growth of tokenized securities in the US. This article is an excerpt from Cointelegraph.com News View Original Source
-
Following primary loss, crypto PACs invest $1.5M in 3 US state races
Following primary loss, crypto PACs invest $1.5M in 3 US state races 2026-08-07 at 00:11 By Cointelegraph by Turner Wright The Defend American Jobs and Protect Progress PACs reported spending more than $1.5 million on media for four House and Senate races ahead of Aug. 18 primary elections. This article is an excerpt from Cointelegraph.com…
-
Gavin Newsom dragged to court in self-driving truck battle that could change state forever
Gavin Newsom dragged to court in self-driving truck battle that could change state forever 2026-08-06 at 22:26 By Titus Wu Gov. Gavin Newsom’s administration improperly rolled out regulations that pave the way for self-driving trucks on state roads, the union claimed. This article is an excerpt from Latest Technology News | New York Post View…
-
New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts
New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts 2026-08-06 at 20:58 By Zapscape, a new Linux kernel vulnerability, could allow an attacker with kernel privileges inside an L1 guest virtual machine (VM) to escape KVM isolation and execute code on the host. The risk applies when nested virtualization is…
-
Photos: Black Hat USA 2026, part two
Photos: Black Hat USA 2026, part two 2026-08-06 at 20:50 By Help Net Security Round two from Black Hat USA 2026. This set covers the parts of the show floor that did not make the first gallery. Scroll through below. Featured vendors: BlackCloak, Teleport, GitGuardian, Oak, Hexnode, Picus Security, Featured speaker: Kate Silverstein (Mozilla) discussing…
-
Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs
Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs 2026-08-06 at 20:13 By Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS XE Software as part of a comprehensive internal security review. The security issues affect Cisco Catalyst SD-WAN Software, regardless of device…
-
‘Nostradamus of AI’ Leopold Aschenbrenner makes new $400M bet after Situational Awareness fund’s near-collapse
‘Nostradamus of AI’ Leopold Aschenbrenner makes new $400M bet after Situational Awareness fund’s near-collapse 2026-08-06 at 19:56 By Thomas Barrabi Leopold Aschenbrenner, has made a new $400 million bet on a private company – just days after the near-implosion of his hedge fund, according to a report. This article is an excerpt from Latest Technology…
-
New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs
New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs 2026-08-06 at 19:17 By An unprivileged Linux program can time a hardware interrupt to land in the gap between a processor sanitizing its branch predictor and the kernel using it, re-poisoning the predictor after the defense has run. MIT CSAIL researchers…
-
ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories
ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories 2026-08-06 at 18:24 By Apparently, opening the thing is now enough. A repo can run before the first prompt, a package can hide among hundreds, and a harmless-looking PDF can finish the job. This week runs on cheap leverage: exposed servers, recycled…
-
Building Trust in AI Starts with Trustworthy Data
Building Trust in AI Starts with Trustworthy Data 2026-08-06 at 18:00 By Enterprise AI is transitioning from the “does it work” phase to the “how can we adopt it safely” phase, creating an unprecedented and complex mix of opportunities and challenges for business leaders. This article is an excerpt from Subscribe to Security Magazine’s RSS…
-
Snowflake Hacker Pleads Guilty in US Court
Snowflake Hacker Pleads Guilty in US Court 2026-08-06 at 17:56 By Eduard Kovacs Connor Riley Moucka was extradited to the United States in July 2025 after he was arrested in Canada. The post Snowflake Hacker Pleads Guilty in US Court appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Novel-reading apps used users’ phones to generate fake ad traffic
Novel-reading apps used users’ phones to generate fake ad traffic 2026-08-06 at 17:07 By Sinisa Markovic A new mobile ad fraud scheme, dubbed Papyrus, is using a cluster of novel-reading apps to generate hidden browser traffic, according to IAS Threat Lab. Sample novel-reading apps associated with Papyrus (Source: IAS Threat Lab) While a person taps…
-
The Detection Gap: MITRE ATT&CK T1053.005
The Detection Gap: MITRE ATT&CK T1053.005 2026-08-06 at 17:00 By Kirk Hasty MITRE ATT&CK Walkthrough: T1053.005 (Scheduled Task/Job: Scheduled Task) This article is an excerpt from SECURITY.COM View Original Source
-
Day in the Life of a Cybersecurity Director: Turning Intelligence into Action
Day in the Life of a Cybersecurity Director: Turning Intelligence into Action 2026-08-06 at 17:00 By Kenneth Ng When people hear the word cybersecurity, they often picture analysts racing to stop an attack in real time. Those roles are absolutely critical, but a lot of effective security happens long before an alert ever appears. This…
-
Release the RAVEN: Exploiting the Cracks
Release the RAVEN: Exploiting the Cracks 2026-08-06 at 17:00 By Karl Biron In Part 1, we went from a single open port to a complete map of the target. Version, topology, indices, secrets, credentials, privilege structure — all of it documented, all of it ready to be weaponized. Reconnaissance is finished. Now we find out…
-
Photos: Black Hat USA 2026
Photos: Black Hat USA 2026 2026-08-06 at 16:30 By Help Net Security Photo gallery from the Business Hall at Black Hat USA 2026. Interesting booths, demo stages, crowded aisles, and the moments in between. The second gallery is here. Featured vendors: Stellar Cyber, Tines, Filigran, Delinea, Prophet AI, Air Security, Legion Security. Featured people: Kunal…
-
Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts
Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts 2026-08-06 at 15:54 By Eduard Kovacs Zenity researchers reported the findings to Anthropic and OpenAI in late 2025 and early 2026, but they remain unpatched. The post Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts appeared first…
-
Three in four AI-generated vulnerability patches leave something broken
Three in four AI-generated vulnerability patches leave something broken 2026-08-06 at 15:45 By Mirko Zorz Ask a frontier model to patch a real vulnerability and it will hand you something that looks like a fix. It reads like the patch a maintainer would write. When there is a test, it often passes. Roughly one time…
-
Snowflake hacker pleads guilty, faces up to 32 years in prison
Snowflake hacker pleads guilty, faces up to 32 years in prison 2026-08-06 at 15:30 By Sinisa Markovic A Canadian man is facing decades in prison for hacking customer accounts at cloud storage provider Snowflake and stealing data from more than 165 organizations. Connor Riley Moucka, also known as “Waifu” and “Judische,” 26, of Kitchener, Ontario,…
-
Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities
Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities 2026-08-06 at 15:16 By Forescout found 22 internet-facing Rockwell Automation programmable logic controllers (PLCs) in cities hit by recent cyberattacks on US water utilities. Nineteen used the same mobile carrier network. Its August 3 scan counted 4,407 exposed Rockwell controllers worldwide, including 2,844…
-
Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway
Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway 2026-08-06 at 15:00 By SecurityWeek News (Video) In this podcast, we share insights from Edna Conway, a recognized leader in cybersecurity and supply chain resilience with over 40 years of experience in the field. The post Podcast: Compliance Won’t Save You: The…
-
CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps
CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps 2026-08-06 at 14:49 By Coinspect has identified CryptoJS.lib.WordArray.random() as the weak random number generator behind the Ill Bloom wallet drains. Introduced in the JavaScript cryptography library 12 years ago, the function supplied weak entropy that affected wallet apps used to generate recovery…
-
Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses
Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses 2026-08-06 at 14:33 By Cybersecurity researchers have disclosed a security issue with Apple’s iCloud Private Relay tool that can expose a user’s real IP address. Introduced with iOS 15, iCloud Private Relay employs a dual-hop architecture to ensure users’ privacy by routing their…
-
AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory
AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory 2026-08-06 at 14:30 By A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It abuses a standard feature built into almost every major AI assistant: pre-filled deep links. We observed production…
-
Critical Paperclip Flaw Allowed Admin Access, Code Execution
Critical Paperclip Flaw Allowed Admin Access, Code Execution 2026-08-06 at 14:09 By Ionut Arghire An attacker could self-register, sign in for board-level API access, and import a new company for code execution. The post Critical Paperclip Flaw Allowed Admin Access, Code Execution appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original…
-
Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison
Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison 2026-08-06 at 12:30 By Ionut Arghire Maksim Silnikau was the creator and administrator of the ransomware group and involved in Angler EK’s distribution. The post Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View…
-
Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access
Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access 2026-08-06 at 12:19 By Attackers broke into an organization’s Oracle database through a SQL injection flaw in a public-facing web application, then installed a post-exploitation toolkit without writing an executable to disk. They fed Java source code to the database, let Oracle…
Browse older archives
- August 2026
- July 2026
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023