Cybersecurity and other IT news aggregator

LATEST FEEDS

  • In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street

    In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street 2026-08-07 at 17:26 By SecurityWeek News Noteworthy stories that might have slipped under the radar: ban on Chinese data center tech, QuickFox VPN supply chain attack, IEH Corporation mailbox breached via phishing. The post In Other News: AI Slop…


  • Beyond ‘Fake Updates’: From Application Store-Themed Phishing to Large-Scale Distribution of ScreenConnect

    Beyond ‘Fake Updates’: From Application Store-Themed Phishing to Large-Scale Distribution of ScreenConnect 2026-08-07 at 16:10 By King Orande and Cris Tomboc The LevelBlue OpsCTI Team recently identified a large-scale phishing campaign leveraging a new social engineering method to deploy unauthorized ConnectWise ScreenConnect clients. Rather than relying on conventional phishing pages, the campaign recreates convincing software…


  • New WordPress Pre-Auth XSS Could Lead to PHP Code Execution – Patch ASAP

    New WordPress Pre-Auth XSS Could Lead to PHP Code Execution – Patch ASAP 2026-08-07 at 15:56 By WordPress has fixed a pre-authentication reflected cross-site scripting (XSS) flaw in its login screen that affects every version of the content management system. pwn.ai demonstrated how the flaw can be chained into PHP code execution on the server…


  • 200 accounts compromised in Swiss government’s Microsoft SharePoint breach

    200 accounts compromised in Swiss government’s Microsoft SharePoint breach 2026-08-07 at 15:29 By Sinisa Markovic Hackers exploited vulnerabilities in Microsoft SharePoint servers belonging to Switzerland’s Federal Office of Information Technology, Systems and Telecommunication (BIT), compromising the login credentials of around 200 accounts. On July 28, BIT’s security specialists noticed unusual activity on the SharePoint servers.…


  • Growing Up The Hard Way

    Growing Up The Hard Way 2026-08-07 at 14:55 By Open Source had a great childhood. For two decades it got to be a kid. It ran around barefoot, gave everything away, trusted strangers, and never once thought about who was watching. It ran the kind of lemonade stand that took IOUs from anyone who wandered…


  • 18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers

    18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers 2026-08-07 at 14:10 By A use-after-free bug in Linux’s SCTP networking code can be turned into full root on a host, and Tencent researchers say they used it to escape a container and reach the machine underneath. The flaw has existed since…


  • Vishing Extortion Group UNC6671 Rebrands After Making Millions

    Vishing Extortion Group UNC6671 Rebrands After Making Millions 2026-08-07 at 14:06 By Ionut Arghire Initially calling itself BlackFile, the group has expanded operations to the Redact, Pink, Helix, and Falcon brands. The post Vishing Extortion Group UNC6671 Rebrands After Making Millions appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Tish James, Kathy Hochul’s pursuit of Kalshi raises questions about why they’re ignoring Polymarket

    Tish James, Kathy Hochul’s pursuit of Kalshi raises questions about why they’re ignoring Polymarket 2026-08-07 at 14:00 By Charles Gasparino Kalshi argues the suit is a death blow to its business. This article is an excerpt from Latest Technology News | New York Post View Original Source


  • Ransomware Threats in Europe H1 2026: A Deep Dive into Regional Attack Patterns and Dominant Threat Actors

    Ransomware Threats in Europe H1 2026: A Deep Dive into Regional Attack Patterns and Dominant Threat Actors 2026-08-07 at 13:58 By Mihir Bagwe Europe faced a ransomware onslaught in the first half of 2026 that sets a troubling precedent for the remainder of the year. According to Cyble Research and Intelligence Labs (CRIL), the region…


  • Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix

    Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix 2026-08-07 at 13:00 By Eduard Kovacs NMFTA research shows a Bendix EC80 brake controller safety recall also patched remote code execution and DoS vulnerabilities. The post Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix appeared first on SecurityWeek. This article is an excerpt…


  • I tested the new Samsung Galaxy Watch9: The health tracker’s most exciting features

    I tested the new Samsung Galaxy Watch9: The health tracker’s most exciting features 2026-08-07 at 12:59 By Carly Stern The new watch, on sale today, tracks fitness and sleep, measures antioxidants in the skin, and an even do a body composition scan. This article is an excerpt from Latest Technology News | New York Post…


  • New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables

    New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables 2026-08-07 at 12:32 By Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, expose mapped ports, and exhaust NAT tables. Presented at Black Hat USA…


  • CleanSpark misses Wall Street revenue estimates as shares sink

    CleanSpark misses Wall Street revenue estimates as shares sink 2026-08-07 at 12:25 By Cointelegraph by Zoltan Vardai CleanSpark’s shares fell 5.5% on Thursday after the Bitcoin miner reported $138 million in quarterly revenue, narrowly missing Wall Street’s consensus estimate. This article is an excerpt from Cointelegraph.com News View Original Source


  • Black Hat USA 2026 – Summary of Vendor Announcements (Part 4)

    Black Hat USA 2026 – Summary of Vendor Announcements (Part 4) 2026-08-07 at 12:24 By SecurityWeek News Companies are showcasing their products and services this week at the 2026 edition of the Black Hat conference in Las Vegas. The post Black Hat USA 2026 – Summary of Vendor Announcements (Part 4) appeared first on SecurityWeek.…


  • Stripe-owned Bridge joins EU MiCA register after Luxembourg approval

    Stripe-owned Bridge joins EU MiCA register after Luxembourg approval 2026-08-07 at 12:14 By Cointelegraph by Helen Partz Stripe-owned Bridge has entered the EU MiCA register following Luxembourg approval, joining regulated providers under the bloc’s crypto framework. This article is an excerpt from Cointelegraph.com News View Original Source


  • Microsoft, Apple Release Fresh Security Updates

    Microsoft, Apple Release Fresh Security Updates 2026-08-07 at 12:09 By Ionut Arghire Microsoft fixed critical vulnerabilities across Azure, Entra, and SharePoint, while Apple patched a high-severity authentication bypass. The post Microsoft, Apple Release Fresh Security Updates appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • CLARITY Act delay gives Asian financial hubs an opening: First Digital CEO

    CLARITY Act delay gives Asian financial hubs an opening: First Digital CEO 2026-08-07 at 12:01 By Cointelegraph by Ezra Reguerra Industry figures warned that continued legislative limbo could slow institutional adoption, revive regulation by enforcement and push innovation offshore. This article is an excerpt from Cointelegraph.com News View Original Source


  • Stop, Drop, and Roll

    Stop, Drop, and Roll 2026-08-07 at 12:00 By Insights from national fire prevention standards for active shooter prevention. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • OpenAI drops ChatGPT text chat limits for free users, adds new safeguards for teens

    OpenAI drops ChatGPT text chat limits for free users, adds new safeguards for teens 2026-08-07 at 11:52 By Sinisa Markovic OpenAI has updated GPT-5.6 Sol, the model behind ChatGPT for Plus and Pro subscribers, and pushed a new model, GPT-5.6 Luna, out to everyone using the free tier. The company is also removing the rate…


  • Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access

    Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access 2026-08-07 at 11:52 By Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, disclose victim IP addresses and mapped ports, and exhaust NAT tables. Presented…


  • Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets

    Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets 2026-08-07 at 11:18 By A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic’s and Google’s own coding-agent repositories. On OpenAI’s, it was enough to hijack the next agent…


  • 3.8 Million Impacted by Unlimited Technology Systems Data Breach

    3.8 Million Impacted by Unlimited Technology Systems Data Breach 2026-08-07 at 10:22 By Ionut Arghire Hackers stole personal, medical, and health insurance information from a company’s data center. The post 3.8 Million Impacted by Unlimited Technology Systems Data Breach appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Keepit AI Truth Cloud protects the data behind enterprise AI

    Keepit AI Truth Cloud protects the data behind enterprise AI 2026-08-07 at 10:10 By Sinisa Markovic Keepit announced AI Truth Cloud, transforming backup from a compliance requirement into the strategically valuable data asset an organization can hold. As AI agents take on business-critical decisions, AI Truth Cloud positions Keepit as the sovereign source of truth…


  • Critical Vulnerabilities Patched With Chrome 151 Update

    Critical Vulnerabilities Patched With Chrome 151 Update 2026-08-07 at 09:56 By Ionut Arghire The browser refresh eliminates over two dozen memory safety bugs, including critical use-after-free flaws. The post Critical Vulnerabilities Patched With Chrome 151 Update appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign

    TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign 2026-08-07 at 09:50 By A new analysis has uncovered that the threat actor tracked as TeamPCP has been active on the cybercrime scene as far back as 2020, indicating the group has been compromising internet-facing infrastructure for years before training their…


  • August 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse?

    August 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse? 2026-08-07 at 09:00 By Help Net Security July 2026 Patch Tuesday was record-setting in so many ways. The sheer volume of security patches for almost every product in the Microsoft portfolio was the highest ever and, of course, well over 600 CVEs…


  • What the first year of EU AI Act transparency enforcement could look like

    What the first year of EU AI Act transparency enforcement could look like 2026-08-07 at 08:30 By Mirko Zorz In this Help Net Security interview, Edwin Weijdema, Field CTO at Veeam, answers questions on Article 50 of the EU AI Act and what the first year of enforcement might bring. He explains why corrective orders…


  • US fuel gauge exposure fell by more than half in three months

    US fuel gauge exposure fell by more than half in three months 2026-08-07 at 08:00 By Anamarija Pogorelec Every month for the better part of a year, about 4,800 US internet addresses answered a query in the protocol that fuel tank gauges speak. In June the number was 2,354. The count fell across April, May,…


  • As AI Outpaces Regulation, Trust is at Risk

    As AI Outpaces Regulation, Trust is at Risk 2026-08-07 at 08:00 By AI will continue to outpace regulation. The question is not whether the gap exists, every CISO already knows it does. The question is who owns it. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source


  • MARA swings to Q2 loss as Bitcoin’s slump masks higher output

    MARA swings to Q2 loss as Bitcoin’s slump masks higher output 2026-08-07 at 06:48 By Cointelegraph by Felix Ng Bitcoin miner MARA posted its highest quarterly Bitcoin production in over a year, but was overshadowed by a 28% decline in the average price of Bitcoin. This article is an excerpt from Cointelegraph.com News View Original…


  • Bitget explores licensed crypto presence in Bhutan

    Bitget explores licensed crypto presence in Bhutan 2026-08-07 at 06:22 By Cointelegraph by Felix Ng Crypto exchange Bitget has signed an agreement with Gelephu Mindfulness City Authority to pursue a regulated local presence. This article is an excerpt from Cointelegraph.com News View Original Source


  • US Senate pushes CLARITY Act vote to September: Report

    US Senate pushes CLARITY Act vote to September: Report 2026-08-07 at 05:49 By Cointelegraph by Ezra Reguerra Senate Majority Leader John Thune reportedly confirmed that the chamber was “punting” the vote until September. This article is an excerpt from Cointelegraph.com News View Original Source


  • Crypto market maker Wintermute launches US broker-dealer

    Crypto market maker Wintermute launches US broker-dealer 2026-08-07 at 03:09 By Cointelegraph by Felix Ng Wintermute said the registration allows the firm to position itself for the growth of tokenized securities in the US. This article is an excerpt from Cointelegraph.com News View Original Source


  • Following primary loss, crypto PACs invest $1.5M in 3 US state races

    Following primary loss, crypto PACs invest $1.5M in 3 US state races 2026-08-07 at 00:11 By Cointelegraph by Turner Wright The Defend American Jobs and Protect Progress PACs reported spending more than $1.5 million on media for four House and Senate races ahead of Aug. 18 primary elections. This article is an excerpt from Cointelegraph.com…


  • Gavin Newsom dragged to court in self-driving truck battle that could change state forever

    Gavin Newsom dragged to court in self-driving truck battle that could change state forever 2026-08-06 at 22:26 By Titus Wu Gov. Gavin Newsom’s administration improperly rolled out regulations that pave the way for self-driving trucks on state roads, the union claimed. This article is an excerpt from Latest Technology News | New York Post View…


  • New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts

    New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts 2026-08-06 at 20:58 By Zapscape, a new Linux kernel vulnerability, could allow an attacker with kernel privileges inside an L1 guest virtual machine (VM) to escape KVM isolation and execute code on the host. The risk applies when nested virtualization is…


  • Photos: Black Hat USA 2026, part two

    Photos: Black Hat USA 2026, part two 2026-08-06 at 20:50 By Help Net Security Round two from Black Hat USA 2026. This set covers the parts of the show floor that did not make the first gallery. Scroll through below. Featured vendors: BlackCloak, Teleport, GitGuardian, Oak, Hexnode, Picus Security, Featured speaker: Kate Silverstein (Mozilla) discussing…


  • Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs

    Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs 2026-08-06 at 20:13 By Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS XE Software as part of a comprehensive internal security review. The security issues affect Cisco Catalyst SD-WAN Software, regardless of device…


  • ‘Nostradamus of AI’ Leopold Aschenbrenner makes new $400M bet after Situational Awareness fund’s near-collapse

    ‘Nostradamus of AI’ Leopold Aschenbrenner makes new $400M bet after Situational Awareness fund’s near-collapse 2026-08-06 at 19:56 By Thomas Barrabi Leopold Aschenbrenner, has made a new $400 million bet on a private company – just days after the near-implosion of his hedge fund, according to a report. This article is an excerpt from Latest Technology…


  • New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs

    New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs 2026-08-06 at 19:17 By An unprivileged Linux program can time a hardware interrupt to land in the gap between a processor sanitizing its branch predictor and the kernel using it, re-poisoning the predictor after the defense has run. MIT CSAIL researchers…


  • ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories

    ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories 2026-08-06 at 18:24 By Apparently, opening the thing is now enough. A repo can run before the first prompt, a package can hide among hundreds, and a harmless-looking PDF can finish the job. This week runs on cheap leverage: exposed servers, recycled…


  • Building Trust in AI Starts with Trustworthy Data

    Building Trust in AI Starts with Trustworthy Data 2026-08-06 at 18:00 By Enterprise AI is transitioning from the “does it work” phase to the “how can we adopt it safely” phase, creating an unprecedented and complex mix of opportunities and challenges for business leaders. This article is an excerpt from Subscribe to Security Magazine’s RSS…


  • Snowflake Hacker Pleads Guilty in US Court

    Snowflake Hacker Pleads Guilty in US Court 2026-08-06 at 17:56 By Eduard Kovacs Connor Riley Moucka was extradited to the United States in July 2025 after he was arrested in Canada.  The post Snowflake Hacker Pleads Guilty in US Court appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source


  • Novel-reading apps used users’ phones to generate fake ad traffic

    Novel-reading apps used users’ phones to generate fake ad traffic 2026-08-06 at 17:07 By Sinisa Markovic A new mobile ad fraud scheme, dubbed Papyrus, is using a cluster of novel-reading apps to generate hidden browser traffic, according to IAS Threat Lab. Sample novel-reading apps associated with Papyrus (Source: IAS Threat Lab) While a person taps…


  • The Detection Gap: MITRE ATT&CK T1053.005

    The Detection Gap: MITRE ATT&CK T1053.005 2026-08-06 at 17:00 By Kirk Hasty MITRE ATT&CK Walkthrough: T1053.005 (Scheduled Task/Job: Scheduled Task) This article is an excerpt from SECURITY.COM View Original Source


  • Day in the Life of a Cybersecurity Director: Turning Intelligence into Action

    Day in the Life of a Cybersecurity Director: Turning Intelligence into Action 2026-08-06 at 17:00 By Kenneth Ng When people hear the word cybersecurity, they often picture analysts racing to stop an attack in real time. Those roles are absolutely critical, but a lot of effective security happens long before an alert ever appears.  This…


  • Release the RAVEN: Exploiting the Cracks

    Release the RAVEN: Exploiting the Cracks 2026-08-06 at 17:00 By Karl Biron In Part 1, we went from a single open port to a complete map of the target. Version, topology, indices, secrets, credentials, privilege structure — all of it documented, all of it ready to be weaponized. Reconnaissance is finished. Now we find out…


  • Photos: Black Hat USA 2026

    Photos: Black Hat USA 2026 2026-08-06 at 16:30 By Help Net Security Photo gallery from the Business Hall at Black Hat USA 2026. Interesting booths, demo stages, crowded aisles, and the moments in between. The second gallery is here. Featured vendors: Stellar Cyber, Tines, Filigran, Delinea, Prophet AI, Air Security, Legion Security. Featured people: Kunal…


  • Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts

    Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts 2026-08-06 at 15:54 By Eduard Kovacs Zenity researchers reported the findings to Anthropic and OpenAI in late 2025 and early 2026, but they remain unpatched. The post Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts appeared first…


  • Three in four AI-generated vulnerability patches leave something broken

    Three in four AI-generated vulnerability patches leave something broken 2026-08-06 at 15:45 By Mirko Zorz Ask a frontier model to patch a real vulnerability and it will hand you something that looks like a fix. It reads like the patch a maintainer would write. When there is a test, it often passes. Roughly one time…


Browse older archives

Scroll to Top