News

Attackers impersonate popular AI brands to spread malware

Attackers impersonate popular AI brands to spread malware 2026-08-21 at 14:47 By Sinisa Markovic Attackers are impersonating popular AI brands like Perplexity, Claude, ChatGPT, and Copilot to spread information stealers, backdoors, malicious browser extensions, and other malware, according to Sophos. Overview of MDR cases with AI involvement (Source: Sophos) Sophos X-Ops reviewed 12 months of […]

Attackers impersonate popular AI brands to spread malware Read More »

Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490)

Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490) 2026-08-21 at 10:55 By Sinisa Markovic Citrix has patched two vulnerabilities in NetScaler ADC and NetScaler Gateway, including a critical authentication bypass flaw tracked as CVE-2026-19490, and is urging customers to upgrade affected appliances as soon as possible. “We strongly recommend that customers review the

Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490) Read More »

A $25 template helped scammers build hundreds of phantom bank domains

A $25 template helped scammers build hundreds of phantom bank domains 2026-08-21 at 08:00 By Sinisa Markovic A phrase on a suspicious website turned into an investigation of phantom banks built to support scams, according to new research from Allure Security. Molly DeQuattro, the company’s VP of Operations, was reviewing a domain that resembled the

A $25 template helped scammers build hundreds of phantom bank domains Read More »

Nearly half of enterprises have no one leading PQC migration

Nearly half of enterprises have no one leading PQC migration 2026-08-21 at 07:30 By Anamarija Pogorelec Enterprises believe they are prepared for the security challenges posed by quantum computing, but gaps in ownership, testing and visibility could complicate their transition to post-quantum cryptography (PQC), according to new research from Axiad. Who owns PQC migration? (Source:

Nearly half of enterprises have no one leading PQC migration Read More »

New infosec products of the week: August 21, 2026

New infosec products of the week: August 21, 2026 2026-08-21 at 07:00 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from F5 Networks, Intezer, Netscout, and Tufin. NETSCOUT expands Adaptive DDoS Protection with outbound attack mitigation NETSCOUT has announced an extension of its Adaptive DDoS Protection

New infosec products of the week: August 21, 2026 Read More »

AWS limits AI agents’ data access, even when manipulated

AWS limits AI agents’ data access, even when manipulated 2026-08-20 at 14:17 By Anamarija Pogorelec AWS has detailed an approach for propagating user authorization context through AI agents, allowing access controls to be enforced by infrastructure and downstream services rather than relying on the agent itself. Customers using Amazon Bedrock AgentCore can build AI agents

AWS limits AI agents’ data access, even when manipulated Read More »

Fake Gemini installer delivers Vidar infostealer via Google Colab lure

Fake Gemini installer delivers Vidar infostealer via Google Colab lure 2026-08-20 at 13:46 By Sinisa Markovic A malicious executable masquerading as a Google Gemini installer was used to deliver the Vidar infostealer on a company network in the EMEA region, according to Darktrace researchers who investigated the incident. “During the initial analysis, it was noted

Fake Gemini installer delivers Vidar infostealer via Google Colab lure Read More »

OpenAI previews privacy-focused system for detecting AI misuse

OpenAI previews privacy-focused system for detecting AI misuse 2026-08-20 at 12:09 By Anamarija Pogorelec OpenAI is previewing Private Safety Processing with early customers seeking greater certainty about how their data will be protected as AI systems become more capable. The system identifies patterns across related interactions while restricting OpenAI personnel from accessing the underlying content.

OpenAI previews privacy-focused system for detecting AI misuse Read More »

US agencies warn of AI-powered attacks on Siemens industrial controllers

US agencies warn of AI-powered attacks on Siemens industrial controllers 2026-08-20 at 12:07 By Sinisa Markovic Threat actors are using AI to write exploit scripts targeting internet-exposed Siemens S7 Series programmable logic controllers (PLCs) used across water, energy, manufacturing, and other critical infrastructure sectors, according to US federal agencies. PLCs are the small industrial computers

US agencies warn of AI-powered attacks on Siemens industrial controllers Read More »

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking 2026-08-19 at 18:40 By Serhii Melnyk and Timmy Lister Following GreenPlasma, YellowKey and MiniPlasma, RoguePlanet and GreatXML, and LegacyHive, the Nightmare-Eclipse disclosure actor has published ShieldBreak — its latest Windows proof of concept (PoC) released shortly after Microsoft’s August 2026 Patch Tuesday.

Cloud Sync Root RegistrationShieldBreak: Hunting Windows Defender Remediation Abuse and Cloud Files Hijacking Read More »

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise 2026-08-19 at 17:00 By Security leaders are rethinking what they expect from Managed Detection and Response (MDR) providers, prompting the market to enter a new phase of maturity. Organizations are looking beyond containment metrics and response times, evaluating providers based on their

LevelBlue Named a Major Player in the 2026 IDC MarketScape MDR/MXDR for Enterprise Read More »

Medusa ransomware gang has hit over 500 organizations, CISA warns

Medusa ransomware gang has hit over 500 organizations, CISA warns 2026-08-19 at 13:18 By Sinisa Markovic Medusa ransomware has breached more than 500 organizations since it first appeared in June 2021, the FBI, CISA, and the Department of Health and Human Services (HHS) said in an updated joint advisory. The update builds on an advisory

Medusa ransomware gang has hit over 500 organizations, CISA warns Read More »

Google’s AI security agents found 100+ critical software vulnerabilities in just two days

Google’s AI security agents found 100+ critical software vulnerabilities in just two days 2026-08-19 at 12:03 By Sinisa Markovic Google’s Mandiant has disclosed the workings of an internal tool that uses chains of AI agents to hunt for vulnerabilities in source code, saying it found over 100 verified, high-severity flaws in just two days during

Google’s AI security agents found 100+ critical software vulnerabilities in just two days Read More »

OpenAI puts major frontier AI training run on hold over cyber risks

OpenAI puts major frontier AI training run on hold over cyber risks 2026-08-19 at 11:48 By Anamarija Pogorelec OpenAI temporarily paused reinforcement learning (RL) training on its latest models intended for deployment for two weeks while it hardened and red-teamed research environments and expanded monitoring. “Our largest planned frontier RL run remains on hold while

OpenAI puts major frontier AI training run on hold over cyber risks Read More »

Cyberattack forces UT San Antonio to delay start of fall semester

Cyberattack forces UT San Antonio to delay start of fall semester 2026-08-19 at 10:29 By Sinisa Markovic The University of Texas at San Antonio pushed back the start of its fall semester by three days after a cyberattack targeted its academic network over the weekend. Classes that were due to begin on Wednesday, August 19

Cyberattack forces UT San Antonio to delay start of fall semester Read More »

Banks look for fraud signals in customer behavior

Banks look for fraud signals in customer behavior 2026-08-19 at 07:30 By Anamarija Pogorelec Banks are dealing with more fraud in which customers authorize payments after being manipulated by criminals. ThreatMark’s Fraud Readiness Benchmark 2026 describes a banking environment where social engineering, reimbursement requirements and growing case volumes are changing fraud operations. Social engineering moves

Banks look for fraud signals in customer behavior Read More »

ChatGPT’s new feature could give infostealers a map of your Mac activity

ChatGPT’s new feature could give infostealers a map of your Mac activity 2026-08-19 at 07:00 By Sinisa Markovic OpenAI’s new Computer History feature turns recent Mac computer activity into memories ChatGPT and Codex can use, and it’s raising questions about privacy and security along the way. Computer History (Source: OpenAI) What Computer History does Computer

ChatGPT’s new feature could give infostealers a map of your Mac activity Read More »

Download: 2026 Credential Risk Report

Download: 2026 Credential Risk Report 2026-08-18 at 15:03 By Help Net Security 85% of cybersecurity professionals consider compromised credentials a primary attack path, yet only 19% continuously monitor active credentials and automatically remediate exposure. The 2026 Credential Risk Report examines where credential security programs fall short and what it takes to move toward Continuous Credential

Download: 2026 Credential Risk Report Read More »

Google’s $10,000 refund test shows why AI agents need zero trust

Google’s $10,000 refund test shows why AI agents need zero trust 2026-08-18 at 14:49 By Anamarija Pogorelec Google’s open-source autonomous Customer Support & Returns Agent, built using the Agent Development Kit (ADK) and Gemini, demonstrates how developers can apply zero-trust security principles to AI agents that interact with sensitive systems and take real-world actions. The

Google’s $10,000 refund test shows why AI agents need zero trust Read More »

Critical GitLab flaw allows attackers to modify or delete public projects (CVE-2026-19478)

Critical GitLab flaw allows attackers to modify or delete public projects (CVE-2026-19478) 2026-08-18 at 14:38 By Sinisa Markovic GitLab has released patches for two vulnerabilities, including a critical-severity code injection flaw that can be exploited without authentication. The vulnerabilities affect GitLab Community Edition (CE) and Enterprise Edition (EE) versions from 18.2 before 18.11.11, 19.0 before

Critical GitLab flaw allows attackers to modify or delete public projects (CVE-2026-19478) Read More »

Scroll to Top