Uncategorized

How Pentera Turns AI Security Workflows into Validation Engines

How Pentera Turns AI Security Workflows into Validation Engines 2026-07-14 at 14:30 By AI security agents are starting to influence real security decisions. They summarize findings, prioritize remediation, recommend next steps, and help teams move faster. But most still rely on fragmented risk signals: scanner output, severity scores, threat intelligence, configuration findings, and exposure data. […]

How Pentera Turns AI Security Workflows into Validation Engines Read More »

OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials

OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials 2026-07-14 at 14:21 By At least two distinct threat actors are weaponizing a novel evasion technique called OAuth client ID spoofing in cloud campaigns, while slipping past telemetry. The activity allows users to enumerate user accounts and validate stolen credentials in Microsoft Entra ID

OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials Read More »

Grok Build Uploads Entire Git Repositories to xAI Storage, Not Just Files It Reads

Grok Build Uploads Entire Git Repositories to xAI Storage, Not Just Files It Reads 2026-07-14 at 12:02 By xAI’s Grok Build coding CLI was uploading entire Git repositories, full commit history and all, to a Google Cloud Storage bucket run by xAI, not just the files a coding task needed. A researcher publishing as cereblab,

Grok Build Uploads Entire Git Repositories to xAI Storage, Not Just Files It Reads Read More »

U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware Support

U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware Support 2026-07-14 at 11:02 By The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) has designated two individuals and a VPN service provider for enabling ransomware actors’ and other cybercriminals’ malicious activities, including ransomware attacks against Americans. The VPN, named First VPN Service

U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware Support Read More »

148 npm Packages Disguised as Student Proxies Turned Browsers Into a DDoS Botnet

148 npm Packages Disguised as Student Proxies Turned Browsers Into a DDoS Botnet 2026-07-14 at 10:08 By A campaign of 148 npm packages disguised as student web proxies turned visitors’ browsers into a distributed denial-of-service botnet for roughly two weeks in May, according to new research from JFrog. The packages did not go after the developers

148 npm Packages Disguised as Student Proxies Turned Browsers Into a DDoS Botnet Read More »

Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters Activity

Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters Activity 2026-07-14 at 09:19 By Attackers whose methods line up with the data-extortion group ShinyHunters have spent the past year walking into corporate Salesforce environments without exploiting a single flaw in the platform. The way in has been the trust the organization had already extended,

Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters Activity Read More »

CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper Checks

CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper Checks 2026-07-13 at 20:36 By Cybersecurity researchers have flagged a new macOS information stealer called CrashStealer that’s capable of harvesting sensitive data from compromised systems. Unlike other information stealers that are built on AppleScript droppers or Objective-C-based wrappers, CrashStealer is implemented in native C++, according to

CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper Checks Read More »

Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found

Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found 2026-07-13 at 20:17 By Google and Microsoft have pulled ModHeader, a popular header-editing extension with roughly 1.6 million installs across Chrome and Edge, after researchers found a hidden browsing-history collector built into its official store version. The collector was dormant. An empty

Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found Read More »

⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and More

⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and More 2026-07-13 at 18:05 By Somewhere right now, a security tool is quietly finding bugs faster than any human can fix them. That’s supposed to be the good news. The catch is that the attackers have the same tools, pointed the other

⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and More Read More »

New MemGhost Attack Plants Persistent False Memories in AI Agents Through One Email

New MemGhost Attack Plants Persistent False Memories in AI Agents Through One Email 2026-07-13 at 16:49 By Give an AI assistant a memory and access to your inbox, and you hand an attacker a way to rewrite what it thinks it knows about you. A single email can trick that agent into saving a false

New MemGhost Attack Plants Persistent False Memories in AI Agents Through One Email Read More »

Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft

Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft 2026-07-13 at 16:42 By A new phishing-as-a-service (PhaaS) operation called Forg365 is using a combination of device code phishing, adversary-in-the-middle (AitM) tactics, antibot evasion, artificial intelligence (AI)-assisted lure creation, and post-compromise mailbox operations targeting Microsoft 365 accounts. Distributed via Telegram and costing $400

Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft Read More »

Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory

Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory 2026-07-13 at 15:37 By Cybersecurity researchers have flagged an intrusion in which an unknown threat actor leveraged a vibe-coded PowerShell script for Active Directory (AD) enumeration. “The script looked for the Domain Controller (DC) and mapped users, computers, and domains, before creating a directory and

Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory Read More »

Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst Copilots

Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst Copilots 2026-07-13 at 14:37 By A few days ago, I was sitting with the CISO of a Fortune 50 company, walking through how his security team was thinking about AI agents in the SOC. Smart team. Serious program. They had

Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst Copilots Read More »

Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365

Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365 2026-07-13 at 14:33 By An attacker running a live Microsoft 365 phishing operation left a Python web server listening on a public port with directory listing switched on. The command that did it: python3 -m http.server 8080, was still sitting in the readable .bash_history. From that one

Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365 Read More »

How China is ripping off cutting-edge AI from Anthropic, OpenAI — and threatening US national security

How China is ripping off cutting-edge AI from Anthropic, OpenAI — and threatening US national security 2026-07-13 at 13:00 By Thomas Barrabi Industry sources told The Post these distillation attacks are only getting more common and could help adversaries develop terrifying hacking or autonomous weapon capabilities – or even leapfrog ahead of US firms in

How China is ripping off cutting-edge AI from Anthropic, OpenAI — and threatening US national security Read More »

Scroll to Top