Uncategorized

Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft’s Servers

Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft’s Servers 2026-07-24 at 14:45 By A crafted SVG submitted to Bing’s image search ran commands as NT AUTHORITYSYSTEM on Microsoft’s production image-processing workers, and as root on the Linux machines in the same fleet. XBOW’s testing got the same result on workers across […]

Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft’s Servers Read More »

Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do

Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do 2026-07-24 at 14:30 By AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally, control. But what we’ve collectively discovered is that enforcing least privilege for AI agents is harder than we ever imagined. This is

Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do Read More »

Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry

Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry 2026-07-24 at 13:15 By Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before running risky commands, and pointed it at Thailand’s Ministry of Finance, which runs the country’s treasury and tax collection.

Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry Read More »

Golden Chickens Resurfaces With Four New Malware Families and Modular Implants

Golden Chickens Resurfaces With Four New Malware Families and Modular Implants 2026-07-24 at 13:09 By The threat actors behind the Golden Chickens malware-as-a-service (MaaS) ecosystem have resurfaced with four new malware families, indicating that the operators are showing no signs of stopping despite extensive public disclosures into their inner workings. The malware families in question

Golden Chickens Resurfaces With Four New Malware Families and Modular Implants Read More »

NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats

NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats 2026-07-24 at 10:41 By Eight security flaws in NodeBB went public on Wednesday, along with the code to exploit them. Aikido Security rates all eight as high severity and says its AI pentest agents found them in a six-hour review of the forum software’s

NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats Read More »

Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say

Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say 2026-07-24 at 09:58 By Redis shipped seven security releases on July 23 after researchers published authenticated RCE PoCs for stock Redis 6.2.22, 7.4.9, 8.6.4, and 8.8.0. All four chains require RESTORE. The Streams chains also need EVAL and XGROUP; the 8.8.0 chain needs

Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say Read More »

Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks

Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks 2026-07-24 at 09:50 By The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that involves the use of a malicious program that’s dressed up as a Notepad++ plugin to compromise Windows systems. The activity has been attributed by the agency to a

Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks Read More »

Meta’s Mark Zuckerberg pushes back against AI doomerism with optimistic new campaign: ‘Call us dreamers’

Meta’s Mark Zuckerberg pushes back against AI doomerism with optimistic new campaign: ‘Call us dreamers’ 2026-07-24 at 03:07 By Taylor Herzlich A Facebook video posted from Zuckerberg’s account took aim at narratives that portray artificial intelligence as a danger to society. This article is an excerpt from Latest Technology News | New York Post View

Meta’s Mark Zuckerberg pushes back against AI doomerism with optimistic new campaign: ‘Call us dreamers’ Read More »

Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes

Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes 2026-07-23 at 21:36 By A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra’s webmail client. The payload goes after the last 90 days of email, the organization’s entire email directory, the password saved in the browser

Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes Read More »

ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories

ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories 2026-07-23 at 20:22 By Most of this week’s trouble came dressed as something useful. A package stole data. A fake extension opened remote access. A safety app became spyware. An image gave hidden orders to an AI agent. Other threats hid in

ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories Read More »

ChatGPT kept Florida pastor from seeking emergency care before near-fatal medical crisis, lawsuit alleges

ChatGPT kept Florida pastor from seeking emergency care before near-fatal medical crisis, lawsuit alleges 2026-07-23 at 19:43 By Ariel Zilber The complaint, filed Tuesday in San Francisco Superior Court by Scott Winters, alleges ChatGPT-4o spent months acting as an unlicensed physician. This article is an excerpt from Latest Technology News | New York Post View

ChatGPT kept Florida pastor from seeking emergency care before near-fatal medical crisis, lawsuit alleges Read More »

Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge

Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge 2026-07-23 at 19:42 By The Chaos ransomware group ran its command-and-control through the victim’s own browser. Cisco Talos on Thursday detailed msaRAT, the Rust implant behind it, found on a compromised Windows machine ahead of the encryptor. The implant never opens an

Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge Read More »

Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files

Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files 2026-07-23 at 19:42 By Cybersecurity researchers have uncovered a sandbox escape vulnerability in Anthropic’s Claude Cowork that makes it possible to break out of the confines of a Linux virtual machine (VM) within which the agent runs to read or write

Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files Read More »

China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks

China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks 2026-07-23 at 19:42 By An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx. The cluster has targeted government, healthcare, and education organizations across Asia and Latin America with a previously undocumented Windows loader called TriBack Loader. Group-IB found

China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks Read More »

Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts

Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts 2026-07-23 at 15:11 By Google on Thursday announced a new way for users to sign-in to their accounts by letting them take a selfie video. The selfie for sign-in, per the tech giant, is another option on top of existing recovery methods to

Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts Read More »

How Synthetic Identity Fraud is Coming for Machine Identities

How Synthetic Identity Fraud is Coming for Machine Identities 2026-07-23 at 14:45 By Most people understand identity theft as an attacker stealing a real person’s sensitive information and impersonating them. Synthetic identity fraud is much harder to catch. Instead of stealing a real identity, the attacker manufactures a new one, frankensteining together several real data

How Synthetic Identity Fraud is Coming for Machine Identities Read More »

Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers

Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers 2026-07-23 at 14:28 By Cybersecurity researchers have shed light on a large-scale campaign that has turned compromised GitHub repositories into distributed attack infrastructure designed to target cPanel and WebHost Manager (WHM) instances. The activity involves malicious Packagist development versions spanning 10 packages associated with

Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers Read More »

Scroll to Top