SecurityTicks

New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch

New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch 2026-08-05 at 15:47 By A memory corruption flaw in the Linux kernel’s Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with pre-built records for roughly 800 kernel […]

New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch Read More »

Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk

Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk 2026-08-05 at 15:47 By Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device codes that victims approve on Microsoft’s real authentication page. Once access and refresh tokens are issued, attackers may retain

Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk Read More »

INTERPOL flags AI as the new engine of African cybercrime

INTERPOL flags AI as the new engine of African cybercrime 2026-08-05 at 15:24 By Anamarija Pogorelec Africa’s growing digital economy is exposing governments, businesses and internet users to a rising wave of cybercrime. The continent recorded more than 1.1 billion mobile subscriptions and over $1.1 trillion in digital transactions in 2025, while more than 570

INTERPOL flags AI as the new engine of African cybercrime Read More »

AI agent deception moves from theory to reality in UK cyber tests

AI agent deception moves from theory to reality in UK cyber tests 2026-08-05 at 15:05 By Zeljka Zorz “During a routine cyber evaluation, AI agents took sustained, unsanctioned action directed at real people and organisations,” UK’s AI Security Institute (AISI) disclosed on Tuesday. The agents’ actions included an attempted supply-chain attack that saw them create

AI agent deception moves from theory to reality in UK cyber tests Read More »

Binance sues RedotPay over alleged $473 million user losses: Report

Binance sues RedotPay over alleged $473 million user losses: Report 2026-08-05 at 15:01 By Cointelegraph by Helen Partz Binance-linked companies sued RedotPay, accusing it of diverting more than 470,000 Binance Card users under a commercial deal and seeking nearly $473 million in damages. This article is an excerpt from Cointelegraph.com News View Original Source

Binance sues RedotPay over alleged $473 million user losses: Report Read More »

Open VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data

Open VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data 2026-08-05 at 14:52 By A cluster of 77 extensions on the Open VSX marketplace has been found to impersonate legitimate developer tools while transmitting information about the systems and development environments on which they were installed. The “evil twin” extensions were uploaded to the

Open VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data Read More »

311,000 Impacted by Brown Health Medical Group-MA Data Breach

311,000 Impacted by Brown Health Medical Group-MA Data Breach 2026-08-05 at 14:35 By Ionut Arghire Hackers stole personal information, medical records, and financial information from the organization’s server. The post 311,000 Impacted by Brown Health Medical Group-MA Data Breach appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

311,000 Impacted by Brown Health Medical Group-MA Data Breach Read More »

Code review used to be the only way to catch these bugs

Code review used to be the only way to catch these bugs 2026-08-05 at 14:30 By Mirko Zorz An automated system called NOVA read the source code of 3,915 open-source projects over two months and came back with 14,090 vulnerabilities, each one confirmed through the system’s validation pipeline. Vulnerability researchers at Palo Alto Networks’ Unit

Code review used to be the only way to catch these bugs Read More »

Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data 

Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data  2026-08-05 at 14:11 By Eduard Kovacs The guidelines are the work of the recently launched Open Secure AI Alliance, which now includes 120 organizations. The post Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data  appeared first on SecurityWeek. This article is an excerpt

Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data  Read More »

Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup

Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup 2026-08-05 at 14:04 By An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A public repository and crafted Org-mode markup are enough. The

Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup Read More »

Bitcoin ETFs log inflows as cold wallet hack reignites custody debate

Bitcoin ETFs log inflows as cold wallet hack reignites custody debate 2026-08-05 at 13:43 By Cointelegraph by Helen Partz US spot Bitcoin ETFs drew $382 million in two-day inflows, with Galaxy’s Bitcoin ETF returning to gains as the Coldcard incident renewed custody concerns. This article is an excerpt from Cointelegraph.com News View Original Source

Bitcoin ETFs log inflows as cold wallet hack reignites custody debate Read More »

S&P gives BlackRock tokenized reserve fund top stability rating

S&P gives BlackRock tokenized reserve fund top stability rating 2026-08-05 at 13:40 By Cointelegraph by Zoltan Vardai The rating recognizes the fund’s ability to maintain a stable net asset value, while S&P separately reaffirmed USDT among the lowest-rated stablecoins under its existing assessment framework. This article is an excerpt from Cointelegraph.com News View Original Source

S&P gives BlackRock tokenized reserve fund top stability rating Read More »

Leaked n8n API Tokens Exposed Live Instances to Credential Theft

Leaked n8n API Tokens Exposed Live Instances to Credential Theft 2026-08-05 at 13:35 By GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability. We scanned public GitHub commits for exposed

Leaked n8n API Tokens Exposed Live Instances to Credential Theft Read More »

AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations

AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations 2026-08-05 at 13:33 By Ionut Arghire In one instance, an unsanctioned model attempted to inject malicious code into an open source repository. The post AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations appeared first on SecurityWeek. This article is

AI Security Institute Reports Anthropic and OpenAI Models Going Rogue Against Organizations Read More »

Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself

Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself 2026-08-05 at 12:54 By An agent running Anthropic’s Claude Mythos 5 spent 34 hours trying to get a malware dropper merged into a real open-source project during a cyber evaluation by the UK’s AI Security Institute. When a bystander

Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself Read More »

CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited

CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited 2026-08-05 at 12:54 By The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of vulnerabilities is as follows – CVE-2026-9198 (CVSS

CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited Read More »

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities 2026-08-05 at 12:44 By Ionut Arghire The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass. The post CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities Read More »

15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic

15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic 2026-08-05 at 12:35 By Mirko Zorz TP-Link prints the serial number of an Omada router on its packaging and on a label attached to the device. Those numbers run in sequence, and feeding a guessed one to the Omada cloud service returns the

15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic Read More »

Bitcoin price-metric basket sees longest capitulation since FTX blow-up: Glassnode

Bitcoin price-metric basket sees longest capitulation since FTX blow-up: Glassnode 2026-08-05 at 12:34 By Cointelegraph by William Suberg Glassnode confirmed that its aggregate BTC price cycle tool was in its coldest phase since the collapse of FTX in late 2022. This article is an excerpt from Cointelegraph.com News View Original Source

Bitcoin price-metric basket sees longest capitulation since FTX blow-up: Glassnode Read More »

BlackRock brings tokenized money market funds to Europe via JPMorgan

BlackRock brings tokenized money market funds to Europe via JPMorgan 2026-08-05 at 12:24 By Cointelegraph by Ezra Reguerra JPMorgan’s Kinexys platform will tokenize select BlackRock money market fund shares denominated in pounds, euros and US dollars. This article is an excerpt from Cointelegraph.com News View Original Source

BlackRock brings tokenized money market funds to Europe via JPMorgan Read More »

Scroll to Top