News

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking 2026-08-19 at 18:40 By Serhii Melnyk and Timmy Lister Following GreenPlasma, YellowKey and MiniPlasma, RoguePlanet and GreatXML, and LegacyHive, the Nightmare-Eclipse disclosure actor has published ShieldBreak — its latest Windows proof of concept (PoC) released shortly after Microsoft’s August 2026 Patch Tuesday. […]

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking Read More »

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise 2026-08-19 at 17:00 By Security leaders are rethinking what they expect from Managed Detection and Response (MDR) providers, prompting the market to enter a new phase of maturity. Organizations are looking beyond containment metrics and response times, evaluating providers based on their […]

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise Read More »

Medusa ransomware gang has hit over 500 organizations, CISA warns

Medusa ransomware gang has hit over 500 organizations, CISA warns 2026-08-19 at 13:18 By Sinisa Markovic Medusa ransomware has breached more than 500 organizations since it first appeared in June 2021, the FBI, CISA, and the Department of Health and Human Services (HHS) said in an updated joint advisory. The update builds on an advisory […]

Medusa ransomware gang has hit over 500 organizations, CISA warns Read More »

Google’s AI security agents found 100+ critical software vulnerabilities in just two days

Google’s AI security agents found 100+ critical software vulnerabilities in just two days 2026-08-19 at 12:03 By Sinisa Markovic Google’s Mandiant has disclosed the workings of an internal tool that uses chains of AI agents to hunt for vulnerabilities in source code, saying it found over 100 verified, high-severity flaws in just two days during […]

Google’s AI security agents found 100+ critical software vulnerabilities in just two days Read More »

OpenAI puts major frontier AI training run on hold over cyber risks

OpenAI puts major frontier AI training run on hold over cyber risks 2026-08-19 at 11:48 By Anamarija Pogorelec OpenAI temporarily paused reinforcement learning (RL) training on its latest models intended for deployment for two weeks while it hardened and red-teamed research environments and expanded monitoring. “Our largest planned frontier RL run remains on hold while […]

OpenAI puts major frontier AI training run on hold over cyber risks Read More »

Cyberattack forces UT San Antonio to delay start of fall semester

Cyberattack forces UT San Antonio to delay start of fall semester 2026-08-19 at 10:29 By Sinisa Markovic The University of Texas at San Antonio pushed back the start of its fall semester by three days after a cyberattack targeted its academic network over the weekend. Classes that were due to begin on Wednesday, August 19 […]

Cyberattack forces UT San Antonio to delay start of fall semester Read More »

Banks look for fraud signals in customer behavior

Banks look for fraud signals in customer behavior 2026-08-19 at 07:30 By Anamarija Pogorelec Banks are dealing with more fraud in which customers authorize payments after being manipulated by criminals. ThreatMark’s Fraud Readiness Benchmark 2026 describes a banking environment where social engineering, reimbursement requirements and growing case volumes are changing fraud operations. Social engineering moves […]

Banks look for fraud signals in customer behavior Read More »

ChatGPT’s new feature could give infostealers a map of your Mac activity

ChatGPT’s new feature could give infostealers a map of your Mac activity 2026-08-19 at 07:00 By Sinisa Markovic OpenAI’s new Computer History feature turns recent Mac computer activity into memories ChatGPT and Codex can use, and it’s raising questions about privacy and security along the way. Computer History (Source: OpenAI) What Computer History does Computer […]

ChatGPT’s new feature could give infostealers a map of your Mac activity Read More »

Download: 2026 Credential Risk Report

Download: 2026 Credential Risk Report 2026-08-18 at 15:03 By Help Net Security 85% of cybersecurity professionals consider compromised credentials a primary attack path, yet only 19% continuously monitor active credentials and automatically remediate exposure. The 2026 Credential Risk Report examines where credential security programs fall short and what it takes to move toward Continuous Credential […]

Download: 2026 Credential Risk Report Read More »

Google’s $10,000 refund test shows why AI agents need zero trust

Google’s $10,000 refund test shows why AI agents need zero trust 2026-08-18 at 14:49 By Anamarija Pogorelec Google’s open-source autonomous Customer Support & Returns Agent, built using the Agent Development Kit (ADK) and Gemini, demonstrates how developers can apply zero-trust security principles to AI agents that interact with sensitive systems and take real-world actions. The […]

Google’s $10,000 refund test shows why AI agents need zero trust Read More »

Critical GitLab flaw allows attackers to modify or delete public projects (CVE-2026-19478)

Critical GitLab flaw allows attackers to modify or delete public projects (CVE-2026-19478) 2026-08-18 at 14:38 By Sinisa Markovic GitLab has released patches for two vulnerabilities, including a critical-severity code injection flaw that can be exploited without authentication. The vulnerabilities affect GitLab Community Edition (CE) and Enterprise Edition (EE) versions from 18.2 before 18.11.11, 19.0 before […]

Critical GitLab flaw allows attackers to modify or delete public projects (CVE-2026-19478) Read More »

OpenAI tightens defenses after AI agents breach research environment

OpenAI tightens defenses after AI agents breach research environment 2026-08-18 at 12:41 By Anamarija Pogorelec Following the OpenAI-Hugging Face incident, in which an agentic collective autonomously penetrated OpenAI’s research infrastructure and another company’s production infrastructure by chaining together multiple weaknesses, OpenAI began strengthening its safety requirements. The weaknesses included previously unknown vulnerabilities and credentials leaked […]

OpenAI tightens defenses after AI agents breach research environment Read More »

France’s tax authority admits hackers made off with data on 678,000 individuals

France’s tax authority admits hackers made off with data on 678,000 individuals 2026-08-17 at 17:20 By Sinisa Markovic France’s tax authority has disclosed a data breach after an attacker accessed the General Directorate of Public Finances (DGFiP) systems, saying the intrusion exposed data on 678,000 individuals and professionals. The incident came to light after an […]

France’s tax authority admits hackers made off with data on 678,000 individuals Read More »

Attackers exploit patched macOS Screen Sharing flaw to deploy cryptominer

Attackers exploit patched macOS Screen Sharing flaw to deploy cryptominer 2026-08-17 at 15:23 By Sinisa Markovic A recently patched security flaw in Apple macOS is being actively exploited by hackers to bypass authentication, gain root access, and install a cryptominer, the Netherlands’ National Cyber Security Centre (NCSC) warns. The vulnerability, tracked as CVE-2026-65400, , let […]

Attackers exploit patched macOS Screen Sharing flaw to deploy cryptominer Read More »

SafePal breach affects 39,798 customers, data allegedly for sale

SafePal breach affects 39,798 customers, data allegedly for sale 2026-08-17 at 13:29 By Sinisa Markovic Cryptocurrency wallet maker SafePal disclosed a data breach that exposed order information for 39,798 customers, including names, email addresses, shipping addresses, phone numbers and purchase details. The company traced the exposure to an authorization flaw in a plug-in used for […]

SafePal breach affects 39,798 customers, data allegedly for sale Read More »

Police bust cybercrime ring accused of stealing €30 million in four-day spree

Police bust cybercrime ring accused of stealing €30 million in four-day spree 2026-08-17 at 11:08 By Sinisa Markovic German and Brazilian police dismantled an international bank fraud ring blamed for a €30 million cyberattack on a German financial institution, arresting four people in Brazil and pursuing three more suspects in Spain and Bulgaria. Brazilian police […]

Police bust cybercrime ring accused of stealing €30 million in four-day spree Read More »

Windows 11’s strongest security defenses can be bypassed without a screwdriver

Windows 11’s strongest security defenses can be bypassed without a screwdriver 2026-08-17 at 08:30 By Sinisa Markovic Researchers from the University of Birmingham and Durham University have found a way to knock down some of the toughest protections in Windows 11 without physically opening or modifying the target machine. The attack assumes the attacker has […]

Windows 11’s strongest security defenses can be bypassed without a screwdriver Read More »

Hazmat: Open-source containment for AI agents

Hazmat: Open-source containment for AI agents 2026-08-17 at 08:00 By Anamarija Pogorelec Hazmat is an open-source tool that runs AI coding agents inside a separate account on your own machine. It wraps the harnesses people use: Claude Code, Codex, OpenCode, Cursor Agent, and several more, plus any script you write yourself. An agent launched the […]

Hazmat: Open-source containment for AI agents Read More »

Product showcase: ScamNet looks for warning signs in suspicious calls and shady links

Product showcase: ScamNet looks for warning signs in suspicious calls and shady links 2026-08-17 at 07:30 By Anamarija Pogorelec ScamNet: Anti-Scam Suite is a consumer security app from Synaptrex Technologies that helps users detect and block scams involving phone calls, text messages, websites, and other suspicious content. The app is available for iPhone, iPad, and […]

Product showcase: ScamNet looks for warning signs in suspicious calls and shady links Read More »

When companies get specific about AI, revenue growth looks different

When companies get specific about AI, revenue growth looks different 2026-08-17 at 07:00 By Anamarija Pogorelec Companies that provide specific evidence of how they use AI tend to record stronger revenue growth. Researchers at Carnegie Mellon University and Larridin examined a study universe of 564 companies across 12 industry sectors. Individual analyses used smaller samples […]

When companies get specific about AI, revenue growth looks different Read More »

Scroll to Top