Uncategorized

New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables

New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables 2026-08-07 at 12:32 By Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, expose mapped ports, and exhaust NAT tables. Presented at Black Hat USA […]

New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables Read More »

Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access

Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access 2026-08-07 at 11:52 By Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, disclose victim IP addresses and mapped ports, and exhaust NAT tables. Presented

Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access Read More »

Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets

Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets 2026-08-07 at 11:18 By A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic’s and Google’s own coding-agent repositories. On OpenAI’s, it was enough to hijack the next agent

Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets Read More »

TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign

TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign 2026-08-07 at 09:50 By A new analysis has uncovered that the threat actor tracked as TeamPCP has been active on the cybercrime scene as far back as 2020, indicating the group has been compromising internet-facing infrastructure for years before training their

TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign Read More »

Gavin Newsom dragged to court in self-driving truck battle that could change state forever

Gavin Newsom dragged to court in self-driving truck battle that could change state forever 2026-08-06 at 22:26 By Titus Wu Gov. Gavin Newsom’s administration improperly rolled out regulations that pave the way for self-driving trucks on state roads, the union claimed. This article is an excerpt from Latest Technology News | New York Post View

Gavin Newsom dragged to court in self-driving truck battle that could change state forever Read More »

New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts

New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts 2026-08-06 at 20:58 By Zapscape, a new Linux kernel vulnerability, could allow an attacker with kernel privileges inside an L1 guest virtual machine (VM) to escape KVM isolation and execute code on the host. The risk applies when nested virtualization is

New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts Read More »

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs 2026-08-06 at 20:13 By Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS XE Software as part of a comprehensive internal security review. The security issues affect Cisco Catalyst SD-WAN Software, regardless of device

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs Read More »

‘Nostradamus of AI’ Leopold Aschenbrenner makes new $400M bet after Situational Awareness fund’s near-collapse

‘Nostradamus of AI’ Leopold Aschenbrenner makes new $400M bet after Situational Awareness fund’s near-collapse 2026-08-06 at 19:56 By Thomas Barrabi Leopold Aschenbrenner, has made a new $400 million bet on a private company – just days after the near-implosion of his hedge fund, according to a report. This article is an excerpt from Latest Technology

‘Nostradamus of AI’ Leopold Aschenbrenner makes new $400M bet after Situational Awareness fund’s near-collapse Read More »

New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs

New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs 2026-08-06 at 19:17 By An unprivileged Linux program can time a hardware interrupt to land in the gap between a processor sanitizing its branch predictor and the kernel using it, re-poisoning the predictor after the defense has run. MIT CSAIL researchers

New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs Read More »

ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories

ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories 2026-08-06 at 18:24 By Apparently, opening the thing is now enough. A repo can run before the first prompt, a package can hide among hundreds, and a harmless-looking PDF can finish the job. This week runs on cheap leverage: exposed servers, recycled

ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories Read More »

Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities

Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities 2026-08-06 at 15:16 By Forescout found 22 internet-facing Rockwell Automation programmable logic controllers (PLCs) in cities hit by recent cyberattacks on US water utilities. Nineteen used the same mobile carrier network. Its August 3 scan counted 4,407 exposed Rockwell controllers worldwide, including 2,844

Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities Read More »

CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps

CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps 2026-08-06 at 14:49 By Coinspect has identified CryptoJS.lib.WordArray.random() as the weak random number generator behind the Ill Bloom wallet drains. Introduced in the JavaScript cryptography library 12 years ago, the function supplied weak entropy that affected wallet apps used to generate recovery

CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps Read More »

Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses

Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses 2026-08-06 at 14:33 By Cybersecurity researchers have disclosed a security issue with Apple’s iCloud Private Relay tool that can expose a user’s real IP address. Introduced with iOS 15, iCloud Private Relay employs a dual-hop architecture to ensure users’ privacy by routing their

Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses Read More »

AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory

AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory 2026-08-06 at 14:30 By A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It abuses a standard feature built into almost every major AI assistant: pre-filled deep links. We observed production

AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory Read More »

Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access

Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access 2026-08-06 at 12:19 By Attackers broke into an organization’s Oracle database through a SQL injection flaw in a public-facing web application, then installed a post-exploitation toolkit without writing an executable to disk. They fed Java source code to the database, let Oracle

Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access Read More »

Scroll to Top