Uncategorized

Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker

Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker 2026-07-07 at 16:27 By U.S. prosecutors linked an alleged Scattered Spider hacker to a break-in at a luxury jewelry retailer using a persistent Windows device ID, according to a newly unsealed federal complaint. Microsoft records tied that ID first to the account […]

Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker Read More »

Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants

Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants 2026-07-07 at 16:27 By Cybersecurity researchers have disclosed details of a now-patched critical session isolation vulnerability in Writer, an enterprise generative artificial intelligence (AI) platform, that could result in cross-tenant compromise. The one-click vulnerability has been codenamed WriteOut by the Sand Security Research

Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants Read More »

Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities

Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities 2026-07-07 at 12:51 By A suspected China-aligned threat activity cluster has been observed exploiting Roundcube webmail software belonging to physics and engineering departments of U.S. and Canadian universities as part of a new campaign. The activity involves the exploitation of now-patched, critical security flaws in the open-source

Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities Read More »

CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware

CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware 2026-07-07 at 09:40 By Several versions of firmware released by Chinese network device manufacturer Tenda have been found to embed an undocumented authentication backdoor that enables administrative access to the devices’ web management interfaces, the CERT Coordination Center (CERT/CC) warned Monday. “An attacker can exploit

CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware Read More »

BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA

BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA 2026-07-07 at 08:16 By BeyondTrust has released updates to address two critical security flaws affecting Remote Support (RS) and Privileged Remote Access (PRA) products that, if successfully exploited, could allow unauthenticated attackers to take control of susceptible devices. The vulnerabilities are listed below –

BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA Read More »

Bitcoin bounces back after Trump calls himself ‘a big crypto guy’

Bitcoin bounces back after Trump calls himself ‘a big crypto guy’ 2026-07-07 at 05:56 By Taylor Herzlich Bitcoin bounced back Monday after President Trump called himself “a big crypto guy” and gave a positive, if noncommittal, answer when asked about the prospect of digital assets becoming part of his newly-launched Trump Accounts. This article is

Bitcoin bounces back after Trump calls himself ‘a big crypto guy’ Read More »

Microsoft lays off nearly 5K workers, most of them at Xbox:  ‘Our business today is not healthy’

Microsoft lays off nearly 5K workers, most of them at Xbox:  ‘Our business today is not healthy’ 2026-07-07 at 05:56 By Marc Vartabedian Microsoft is axing about 3,200 jobs across its Xbox video game business as the company moves to restructure the struggling division and pours resources into artificial intelligence.  The layoffs include 1,600 employees

Microsoft lays off nearly 5K workers, most of them at Xbox:  ‘Our business today is not healthy’ Read More »

Major crypto holder Strategy sells $216M of Bitcoin as it abandons Michael Saylor’s ‘never sell’ mantra

Major crypto holder Strategy sells $216M of Bitcoin as it abandons Michael Saylor’s ‘never sell’ mantra 2026-07-07 at 05:56 By Taylor Herzlich Crypto-treasury giant Strategy sold $216 million of Bitcoin last week – a sign that it is abandoning co-founder Michael Saylor’s “Never sell your Bitcoin” mantra as a slumping digital asset market hits its

Major crypto holder Strategy sells $216M of Bitcoin as it abandons Michael Saylor’s ‘never sell’ mantra Read More »

Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations

Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations 2026-07-07 at 00:06 By An Iranian hacking group affiliated with Iran’s Ministry of Intelligence and Security (MOIS) has been wielding a previously undocumented modular command-and-control (C2) framework dubbed Cavern (aka Cav3rn) targeting Israeli organizations. The activity, which has primarily singled out IT providers and

Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations Read More »

16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems

16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems 2026-07-06 at 21:51 By A use-after-free bug in Linux’s KVM hypervisor can be triggered from a guest virtual machine to corrupt the shadow-page state of the host kernel that runs it. Dubbed ‘Januscape’ and tracked as CVE-2026-53359, the flaw sits

16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems Read More »

Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure

Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure 2026-07-06 at 20:22 By Threat actors have been observed attempting to exploit a recently patched critical security flaw in Gitea Docker images, according to Sysdig. The vulnerability in question is CVE-2026-20896 (CVSS score: 9.8), a vulnerability that stems from the DevOps platform trusting the

Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure Read More »

⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and More

⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and More 2026-07-06 at 16:25 By A streaming box should not need a threat model. Neither should a username field, a demo repo, a reset flow, or a browser permission prompt. That is the irritating part this week: the risky pieces were

⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and More Read More »

Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRAT

Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRAT 2026-07-06 at 15:38 By A suspected China-nexus threat activity cluster has been observed targeting Indian taxpayers, tax professionals, and corporate finance teams to deliver a remote access trojan designed to steal sensitive data from compromised hosts. The multi-stage campaign, codenamed Operation DragonReturn by

Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRAT Read More »

How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from Bolt-On AI solutions

How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from Bolt-On AI solutions 2026-07-06 at 15:38 By Building a shortlist for an AI SOC evaluation can be tough. SIEM, SOAR, and pureplay AI SOC vendors are all saying the same thing. But behind the identical label sit very different products,

How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from Bolt-On AI solutions Read More »

New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions

New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions 2026-07-06 at 11:50 By Researchers at Shandong University have shown a fast new way to pull data off computers that are cut off from every network. The technique, called TrojPix, tweaks on-screen pixels in ways the eye cannot see, so that the video cable carrying them

New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions Read More »

New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS

New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS 2026-07-06 at 11:13 By Cybersecurity researchers have flagged a novel Java-based remote access trojan (RAT) called QuimaRAT that’s capable of targeting Windows, Linux, and macOS environments. According to LevelBlue, the cross-platform malware is advertised under a malware-as-a-service (MaaS) model, costing anywhere between $150

New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS Read More »

Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited Pages

Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited Pages 2026-07-06 at 10:27 By Researchers found a flaw in Opera GX, the gaming-focused version of the Opera browser, that let a malicious website silently install a browser add-on and use it to lift specific data from the pages a victim visits. In

Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited Pages Read More »

Scroll to Top