Cybersecurity and other IT news aggregator

LATEST FEEDS

  • Do the Coldcard attacks mean all hardware wallets are now insecure?

    Do the Coldcard attacks mean all hardware wallets are now insecure? 2026-08-05 at 16:30 By Cointelegraph by Christina Comben The Coldcard entropy flaw caused a crisis of confidence in hardware wallets. Here’s the details you need to know before you entrust Ledger, Trezor or Foundation with your Bitcoin. This article is an excerpt from Cointelegraph.com…


  • Galaxy reports $85M net loss amid Q2 crypto market slump

    Galaxy reports $85M net loss amid Q2 crypto market slump 2026-08-05 at 16:20 By Cointelegraph by Zoltan Vardai Galaxy Digital reported an $85 million net loss driven by falling digital asset prices and $8.7 billion in revenue that missed Wall Street estimates. This article is an excerpt from Cointelegraph.com News View Original Source


  • Tenable broadens AI visibility across major LLMs and AI tools

    Tenable broadens AI visibility across major LLMs and AI tools 2026-08-05 at 16:16 By Industry News Tenable has announced enhanced AI security capabilities within the Tenable One Exposure Management Platform. Tenable One AI Exposure now delivers expanded platform coverage with support for Google Gemini, extending its coverage across major LLMs: Google Gemini, Anthropic Claude, OpenAI…


  • Lumu launches live threat intelligence platform for real-time cyber defence

    Lumu launches live threat intelligence platform for real-time cyber defence 2026-08-05 at 16:15 By Industry News Lumu has announced the release of Lumu Threat Observatory as part of Maltiverse, its threat intelligence solution. Lumu Threat Observatory is Maltiverse’s live, personalized threat-intelligence experience, providing organizations with a complete, live view of the active threats targeting their…


  • ArmorCode enhances attack path analysis with new AI agents and Context Risk Graph

    ArmorCode enhances attack path analysis with new AI agents and Context Risk Graph 2026-08-05 at 16:07 By Industry News ArmorCode has announced a major expansion of its Agentic Control Plane. Four new Anya AI agents help security teams analyze cloud risks, assess vulnerability exploitability, identify mitigation strategies, and coordinate patch orchestration. It also unveiled new…


  • The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict

    The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict 2026-08-05 at 16:00 By Kevin Townsend CrowdStrike co-founder Dmitri Alperovitch discusses how cyber operations support kinetic warfare, signal coming conflicts, and reshape the global battlefield. The post The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict appeared first on SecurityWeek.…


  • Mastercard, Borderless test shared identity checks for stablecoin transfers

    Mastercard, Borderless test shared identity checks for stablecoin transfers 2026-08-05 at 16:00 By Cointelegraph by Zoltan Vardai Mastercard and Borderless are exploring ways to bring more trust into cross-border stablecoin transfers through the payment processing giant’s Crypto Credential framework. This article is an excerpt from Cointelegraph.com News View Original Source


  • Tuskira expands exposure management with Agentic Control Plane

    Tuskira expands exposure management with Agentic Control Plane 2026-08-05 at 15:54 By Industry News Tuskira has launched its Agentic Control Plane for Exposure Management, a new capability within the Tuskira platform that governs AI-discovered vulnerabilities from scan to verified closure. The capability extends Tuskira’s existing zero-day and exposure-response capabilities to frontier-model scanning. Tuskira applies enterprise…


  • New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts

    New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts 2026-08-05 at 15:48 By Eduard Kovacs Palo Alto Networks researchers have demonstrated attacks against Google’s synced passkey implementation. The post New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Circle Q2 revenue falls short of Wall Street estimates

    Circle Q2 revenue falls short of Wall Street estimates 2026-08-05 at 15:47 By Cointelegraph by Zoltan Vardai Stablecoin issuer Circle reported $701 million in Q2 revenue, missing Wall Street estimates of about $713 million. This article is an excerpt from Cointelegraph.com News View Original Source


  • New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch

    New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch 2026-08-05 at 15:47 By A memory corruption flaw in the Linux kernel’s Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with pre-built records for roughly 800 kernel…


  • Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk

    Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk 2026-08-05 at 15:47 By Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device codes that victims approve on Microsoft’s real authentication page. Once access and refresh tokens are issued, attackers may retain…


  • INTERPOL flags AI as the new engine of African cybercrime

    INTERPOL flags AI as the new engine of African cybercrime 2026-08-05 at 15:24 By Anamarija Pogorelec Africa’s growing digital economy is exposing governments, businesses and internet users to a rising wave of cybercrime. The continent recorded more than 1.1 billion mobile subscriptions and over $1.1 trillion in digital transactions in 2025, while more than 570…


  • AI agent deception moves from theory to reality in UK cyber tests

    AI agent deception moves from theory to reality in UK cyber tests 2026-08-05 at 15:05 By Zeljka Zorz “During a routine cyber evaluation, AI agents took sustained, unsanctioned action directed at real people and organisations,” UK’s AI Security Institute (AISI) disclosed on Tuesday. The agents’ actions included an attempted supply-chain attack that saw them create…


  • Binance sues RedotPay over alleged $473 million user losses: Report

    Binance sues RedotPay over alleged $473 million user losses: Report 2026-08-05 at 15:01 By Cointelegraph by Helen Partz Binance-linked companies sued RedotPay, accusing it of diverting more than 470,000 Binance Card users under a commercial deal and seeking nearly $473 million in damages. This article is an excerpt from Cointelegraph.com News View Original Source


  • Open VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data

    Open VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data 2026-08-05 at 14:52 By A cluster of 77 extensions on the Open VSX marketplace has been found to impersonate legitimate developer tools while transmitting information about the systems and development environments on which they were installed. The “evil twin” extensions were uploaded to the…


  • 311,000 Impacted by Brown Health Medical Group-MA Data Breach

    311,000 Impacted by Brown Health Medical Group-MA Data Breach 2026-08-05 at 14:35 By Ionut Arghire Hackers stole personal information, medical records, and financial information from the organization’s server. The post 311,000 Impacted by Brown Health Medical Group-MA Data Breach appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Code review used to be the only way to catch these bugs

    Code review used to be the only way to catch these bugs 2026-08-05 at 14:30 By Mirko Zorz An automated system called NOVA read the source code of 3,915 open-source projects over two months and came back with 14,090 vulnerabilities, each one confirmed through the system’s validation pipeline. Vulnerability researchers at Palo Alto Networks’ Unit…


  • Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data 

    Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data  2026-08-05 at 14:11 By Eduard Kovacs The guidelines are the work of the recently launched Open Secure AI Alliance, which now includes 120 organizations. The post Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data  appeared first on SecurityWeek. This article is an excerpt…


  • Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup

    Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup 2026-08-05 at 14:04 By An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A public repository and crafted Org-mode markup are enough. The…


  • Bitcoin ETFs log inflows as cold wallet hack reignites custody debate

    Bitcoin ETFs log inflows as cold wallet hack reignites custody debate 2026-08-05 at 13:43 By Cointelegraph by Helen Partz US spot Bitcoin ETFs drew $382 million in two-day inflows, with Galaxy’s Bitcoin ETF returning to gains as the Coldcard incident renewed custody concerns. This article is an excerpt from Cointelegraph.com News View Original Source


  • S&P gives BlackRock tokenized reserve fund top stability rating

    S&P gives BlackRock tokenized reserve fund top stability rating 2026-08-05 at 13:40 By Cointelegraph by Zoltan Vardai The rating recognizes the fund’s ability to maintain a stable net asset value, while S&P separately reaffirmed USDT among the lowest-rated stablecoins under its existing assessment framework. This article is an excerpt from Cointelegraph.com News View Original Source


  • Leaked n8n API Tokens Exposed Live Instances to Credential Theft

    Leaked n8n API Tokens Exposed Live Instances to Credential Theft 2026-08-05 at 13:35 By GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability. We scanned public GitHub commits for exposed…


  • AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations

    AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations 2026-08-05 at 13:33 By Ionut Arghire In one instance, an unsanctioned model attempted to inject malicious code into an open source repository. The post AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations appeared first on SecurityWeek. This article is…


  • Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself

    Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself 2026-08-05 at 12:54 By An agent running Anthropic’s Claude Mythos 5 spent 34 hours trying to get a malware dropper merged into a real open-source project during a cyber evaluation by the UK’s AI Security Institute. When a bystander…


  • CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited

    CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited 2026-08-05 at 12:54 By The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of vulnerabilities is as follows – CVE-2026-9198 (CVSS…


  • CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities

    CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities 2026-08-05 at 12:44 By Ionut Arghire The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass. The post CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • 15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic

    15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic 2026-08-05 at 12:35 By Mirko Zorz TP-Link prints the serial number of an Omada router on its packaging and on a label attached to the device. Those numbers run in sequence, and feeding a guessed one to the Omada cloud service returns the…


  • Bitcoin price-metric basket sees longest capitulation since FTX blow-up: Glassnode

    Bitcoin price-metric basket sees longest capitulation since FTX blow-up: Glassnode 2026-08-05 at 12:34 By Cointelegraph by William Suberg Glassnode confirmed that its aggregate BTC price cycle tool was in its coldest phase since the collapse of FTX in late 2022. This article is an excerpt from Cointelegraph.com News View Original Source


  • BlackRock brings tokenized money market funds to Europe via JPMorgan

    BlackRock brings tokenized money market funds to Europe via JPMorgan 2026-08-05 at 12:24 By Cointelegraph by Ezra Reguerra JPMorgan’s Kinexys platform will tokenize select BlackRock money market fund shares denominated in pounds, euros and US dollars. This article is an excerpt from Cointelegraph.com News View Original Source


  • Proof of Play to shut down after blockchain gaming thesis falls short

    Proof of Play to shut down after blockchain gaming thesis falls short 2026-08-05 at 12:10 By Cointelegraph by Yohan Yun The a16z-backed studio will open-source Pirate Nation assets, while an independent foundation continues supporting the PIRATE token. This article is an excerpt from Cointelegraph.com News View Original Source


  • Majority of Organizations Lack Drone Mitigation Due to Legal Restrictions

    Majority of Organizations Lack Drone Mitigation Due to Legal Restrictions 2026-08-05 at 12:00 By Airports and other organizations lack counter-drone security plans. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Mobile Application Security Fails to Match Levels of AI Use

    Mobile Application Security Fails to Match Levels of AI Use 2026-08-05 at 12:00 By Organizations face mobile app security struggles.  This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack

    Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack 2026-08-05 at 11:56 By Ionut Arghire The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials. The post Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack appeared first on SecurityWeek. This article is an…


  • Bank of America impersonators weaponize ScreenConnect, then make it hard to remove

    Bank of America impersonators weaponize ScreenConnect, then make it hard to remove 2026-08-05 at 11:43 By Zeljka Zorz A phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and then making it difficult to uninstall it. Different traps for Mac and Windows users By…


  • Taiwan plans Travel Rule for domestic crypto transfers from October

    Taiwan plans Travel Rule for domestic crypto transfers from October 2026-08-05 at 11:21 By Cointelegraph by Ezra Reguerra Taiwan’s regulator plans to apply the Travel Rule to domestic VASP transfers from October before extending it to overseas platforms by the end of 2027. This article is an excerpt from Cointelegraph.com News View Original Source


  • Cloudflare gives AI agents wallets with built-in spending controls

    Cloudflare gives AI agents wallets with built-in spending controls 2026-08-05 at 10:54 By Anamarija Pogorelec Cloudflare’s Wallets will give AI agents running on its platform a human-readable wallet handle for paying APIs and online content within limits set by their creator. Handle reservations have opened, while the service will become available in the coming months.…


  • Missouri trio charged over alleged Bitcoin kidnapping plot

    Missouri trio charged over alleged Bitcoin kidnapping plot 2026-08-05 at 10:34 By Cointelegraph by Zoltan Vardai The defendants allegedly traveled from Missouri to Connecticut to kidnap a Bitcoin holder and force him to transfer cryptocurrency before abandoning the plan. This article is an excerpt from Cointelegraph.com News View Original Source


  • Water Sector Cyberattacks Reportedly Hit at Least 12 States

    Water Sector Cyberattacks Reportedly Hit at Least 12 States 2026-08-05 at 10:24 By Eduard Kovacs Georgia has been confirmed as one of the attacked states after Clayton County reported a pump station disruption. The post Water Sector Cyberattacks Reportedly Hit at Least 12 States appeared first on SecurityWeek. This article is an excerpt from SecurityWeek…


  • Cloudflare introduces wallets for AI agents, plans stablecoin payments

    Cloudflare introduces wallets for AI agents, plans stablecoin payments 2026-08-05 at 10:20 By Cointelegraph by Helen Partz Cloudflare introduced programmable Wallets for AI agents and said payment features using stablecoins will launch in a future update. This article is an excerpt from Cointelegraph.com News View Original Source


  • Building Public Trust in AI‑Enabled Security

    Building Public Trust in AI‑Enabled Security 2026-08-05 at 10:00 By Despite its widespread adoption in industrial and personal contexts, only 66% of people use AI, and only 46% trust it. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • AI credit bubble could fuel Bitcoin ‘crack-up boom’ past $1M: Hayes

    AI credit bubble could fuel Bitcoin ‘crack-up boom’ past $1M: Hayes 2026-08-05 at 09:27 By Cointelegraph by Ezra Reguerra Hayes likened the debt-fueled AI infrastructure boom to the 2008 credit bubble, but evidence suggests financial strain is uneven across Big Tech. This article is an excerpt from Cointelegraph.com News View Original Source


  • QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer

    QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer 2026-08-05 at 08:47 By Cybersecurity researchers have disclosed what has been described as a “long-standing supply chain attack” on QuickFox, a virtual private network (VPN) and network acceleration tool designed for overseas Chinese users. According to Fortinet FortiGuard Labs, the supply chain attack has…


  • Future AGI: Open-source platform for shipping self-improving AI agents

    Future AGI: Open-source platform for shipping self-improving AI agents 2026-08-05 at 08:30 By Anamarija Pogorelec Future AGI is an open-source platform for tracing, evaluating, simulating, and guardrailing LLM agents, licensed Apache 2.0 and self-hostable. Self-hosted instances register with Future AGI on first boot and send an instance ID, a version string, a deployment type, and…


  • Product showcase: Material unifies Google Workspace email, file & OAuth defense

    Product showcase: Material unifies Google Workspace email, file & OAuth defense 2026-08-05 at 08:00 By Help Net Security Here’s an uncomfortable truth: the attack that gets you won’t look like an attack. It’ll look like a normal login, a normal file share, a normal permission request you clicked past without reading. You don’t have a…


  • What stops attackers wrecking industrial plants is knowing how

    What stops attackers wrecking industrial plants is knowing how 2026-08-05 at 07:30 By Mirko Zorz Engineers at an Israeli food producer spent most of a week rebuilding a refrigeration system after an intruder switched the gas cooler and receiver valves to manual and pinned them open. Liquid CO2 flooded the compressors and destroyed them. The…


  • Your enterprise AI footprint is about three times bigger than your model list

    Your enterprise AI footprint is about three times bigger than your model list 2026-08-05 at 07:00 By Anamarija Pogorelec Organizations are building AI systems that combine models, agents and external tools instead of relying on standalone AI, according to Snyk’s latest State of Agentic AI Adoption report. The study analyzed 3,044 enterprise environments and 1.39…


  • Ethereum researchers want to rein in staking, critics say it could backfire

    Ethereum researchers want to rein in staking, critics say it could backfire 2026-08-05 at 05:30 By Cointelegraph by Felix Ng EIP-8363 is a newly published draft proposal that would cut net consensus-layer rewards as the Ethereum staking ratio heads toward 50%. This article is an excerpt from Cointelegraph.com News View Original Source


  • College students’ use of AI has surged — despite boos at graduation ceremonies

    College students’ use of AI has surged — despite boos at graduation ceremonies 2026-08-05 at 00:48 By mvartabediancap, Marc Vartabedian The share of business school students relying on artificial intelligence as a routine part of their academic experience has surged over the past few years, according to a new survey. This article is an excerpt…


  • Apple asks judge to slam breaks on OpenAI’s hardware ambitions, latest twist in high-stakes suit

    Apple asks judge to slam breaks on OpenAI’s hardware ambitions, latest twist in high-stakes suit 2026-08-05 at 00:16 By James Franey OpenAI said Apple now admits its outside lawyers emailed the wrong man after mixing up two Asian surnames and the company only came clean once OpenAI pointed out the blunder. This article is an…


Browse older archives

Scroll to Top