News

Android car head units infected with proxy botnet malware through built-in software updaters

Android car head units infected with proxy botnet malware through built-in software updaters 2026-08-24 at 12:51 By Sinisa Markovic A newly discovered Android malware, distributed through the built-in updaters in affected Android-based car head units, turns infected devices into ad-fraud tools and nodes in a proxy botnet, Kaspersky has found. According to the researchers, it’s […]

Android car head units infected with proxy botnet malware through built-in software updaters Read More »

Product showcase: AI Paper Trail shows the privacy cost of talking to AI

Product showcase: AI Paper Trail shows the privacy cost of talking to AI 2026-08-24 at 08:30 By Anamarija Pogorelec Proton’s AI Paper Trail is a free tool designed to make the information accumulated across AI conversations easier to see. It analyzes exported ChatGPT or Claude conversation data and produces a personal privacy report showing what […]

Product showcase: AI Paper Trail shows the privacy cost of talking to AI Read More »

Fake bank websites play dead to evade security scanners

Fake bank websites play dead to evade security scanners 2026-08-24 at 08:00 By Sinisa Markovic A phishing method, named Chameleon SEO Poisoning, that uses manipulated search results and cloaked fake banking websites to steal credentials while evading security scanners has been discovered by Fortra. The company’s threat intelligence unit, Fortra Intelligence and Research Experts (FIRE), […]

Fake bank websites play dead to evade security scanners Read More »

Ransomware attackers are zeroing in on mid-market companies

Ransomware attackers are zeroing in on mid-market companies 2026-08-24 at 07:30 By Anamarija Pogorelec Mid-sized companies accounted for 73% of publicly disclosed ransomware and data-extortion incidents with known revenue in North America and Europe between January 2023 and June 2026, according to Black Kite. The analysis covered 13,336 incidents with known revenue and defined mid-market […]

Ransomware attackers are zeroing in on mid-market companies Read More »

AWS makes it easier to spot firewall rules that have gone quiet

AWS makes it easier to spot firewall rules that have gone quiet 2026-08-24 at 07:00 By Anamarija Pogorelec AWS Network Firewall’s rule hit count capability gives security teams visibility into which stateful firewall rules are matching traffic, helping them identify unused or redundant rules and validate whether security controls are working as intended. The capability […]

AWS makes it easier to spot firewall rules that have gone quiet Read More »

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs 2026-08-23 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Windows 11’s strongest security defenses can be bypassed without a screwdriver Researchers from the University of Birmingham and Durham […]

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs Read More »

Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836)

Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836) 2026-08-21 at 15:20 By Sinisa Markovic Microsoft has patched a critical remote code execution vulnerability (CVE-2026-69836) in Entra ID, reportedly exploited in the wild. Entra ID is Microsoft’s cloud identity service, formerly Azure Active Directory, that verifies logins and controls access to Microsoft 365, Azure, […]

Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836) Read More »

Attackers impersonate popular AI brands to spread malware

Attackers impersonate popular AI brands to spread malware 2026-08-21 at 14:47 By Sinisa Markovic Attackers are impersonating popular AI brands like Perplexity, Claude, ChatGPT, and Copilot to spread information stealers, backdoors, malicious browser extensions, and other malware, according to Sophos. Overview of MDR cases with AI involvement (Source: Sophos) Sophos X-Ops reviewed 12 months of […]

Attackers impersonate popular AI brands to spread malware Read More »

Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490)

Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490) 2026-08-21 at 10:55 By Sinisa Markovic Citrix has patched two vulnerabilities in NetScaler ADC and NetScaler Gateway, including a critical authentication bypass flaw tracked as CVE-2026-19490, and is urging customers to upgrade affected appliances as soon as possible. “We strongly recommend that customers review the […]

Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490) Read More »

A $25 template helped scammers build hundreds of phantom bank domains

A $25 template helped scammers build hundreds of phantom bank domains 2026-08-21 at 08:00 By Sinisa Markovic A phrase on a suspicious website turned into an investigation of phantom banks built to support scams, according to new research from Allure Security. Molly DeQuattro, the company’s VP of Operations, was reviewing a domain that resembled the […]

A $25 template helped scammers build hundreds of phantom bank domains Read More »

Nearly half of enterprises have no one leading PQC migration

Nearly half of enterprises have no one leading PQC migration 2026-08-21 at 07:30 By Anamarija Pogorelec Enterprises believe they are prepared for the security challenges posed by quantum computing, but gaps in ownership, testing and visibility could complicate their transition to post-quantum cryptography (PQC), according to new research from Axiad. Who owns PQC migration? (Source: […]

Nearly half of enterprises have no one leading PQC migration Read More »

New infosec products of the week: August 21, 2026

New infosec products of the week: August 21, 2026 2026-08-21 at 07:00 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from F5 Networks, Intezer, Netscout, and Tufin. NETSCOUT expands Adaptive DDoS Protection with outbound attack mitigation NETSCOUT has announced an extension of its Adaptive DDoS Protection […]

New infosec products of the week: August 21, 2026 Read More »

AWS limits AI agents’ data access, even when manipulated

AWS limits AI agents’ data access, even when manipulated 2026-08-20 at 14:17 By Anamarija Pogorelec AWS has detailed an approach for propagating user authorization context through AI agents, allowing access controls to be enforced by infrastructure and downstream services rather than relying on the agent itself. Customers using Amazon Bedrock AgentCore can build AI agents […]

AWS limits AI agents’ data access, even when manipulated Read More »

Fake Gemini installer delivers Vidar infostealer via Google Colab lure

Fake Gemini installer delivers Vidar infostealer via Google Colab lure 2026-08-20 at 13:46 By Sinisa Markovic A malicious executable masquerading as a Google Gemini installer was used to deliver the Vidar infostealer on a company network in the EMEA region, according to Darktrace researchers who investigated the incident. “During the initial analysis, it was noted […]

Fake Gemini installer delivers Vidar infostealer via Google Colab lure Read More »

OpenAI previews privacy-focused system for detecting AI misuse

OpenAI previews privacy-focused system for detecting AI misuse 2026-08-20 at 12:09 By Anamarija Pogorelec OpenAI is previewing Private Safety Processing with early customers seeking greater certainty about how their data will be protected as AI systems become more capable. The system identifies patterns across related interactions while restricting OpenAI personnel from accessing the underlying content. […]

OpenAI previews privacy-focused system for detecting AI misuse Read More »

US agencies warn of AI-powered attacks on Siemens industrial controllers

US agencies warn of AI-powered attacks on Siemens industrial controllers 2026-08-20 at 12:07 By Sinisa Markovic Threat actors are using AI to write exploit scripts targeting internet-exposed Siemens S7 Series programmable logic controllers (PLCs) used across water, energy, manufacturing, and other critical infrastructure sectors, according to US federal agencies. PLCs are the small industrial computers […]

US agencies warn of AI-powered attacks on Siemens industrial controllers Read More »

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking 2026-08-19 at 18:40 By Serhii Melnyk and Timmy Lister Following GreenPlasma, YellowKey and MiniPlasma, RoguePlanet and GreatXML, and LegacyHive, the Nightmare-Eclipse disclosure actor has published ShieldBreak — its latest Windows proof of concept (PoC) released shortly after Microsoft’s August 2026 Patch Tuesday. […]

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking Read More »

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise 2026-08-19 at 17:00 By Security leaders are rethinking what they expect from Managed Detection and Response (MDR) providers, prompting the market to enter a new phase of maturity. Organizations are looking beyond containment metrics and response times, evaluating providers based on their […]

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise Read More »

Medusa ransomware gang has hit over 500 organizations, CISA warns

Medusa ransomware gang has hit over 500 organizations, CISA warns 2026-08-19 at 13:18 By Sinisa Markovic Medusa ransomware has breached more than 500 organizations since it first appeared in June 2021, the FBI, CISA, and the Department of Health and Human Services (HHS) said in an updated joint advisory. The update builds on an advisory […]

Medusa ransomware gang has hit over 500 organizations, CISA warns Read More »

Google’s AI security agents found 100+ critical software vulnerabilities in just two days

Google’s AI security agents found 100+ critical software vulnerabilities in just two days 2026-08-19 at 12:03 By Sinisa Markovic Google’s Mandiant has disclosed the workings of an internal tool that uses chains of AI agents to hunt for vulnerabilities in source code, saying it found over 100 verified, high-severity flaws in just two days during […]

Google’s AI security agents found 100+ critical software vulnerabilities in just two days Read More »

Scroll to Top