Uncategorized

Flying Eagle Android RAT Traces Found on 170 Servers as Source Code Circulates

Flying Eagle Android RAT Traces Found on 170 Servers as Source Code Circulates 2026-07-29 at 10:07 By Source code for the Flying Eagle Android remote access trojan (RAT) framework is circulating through criminal Telegram channels. Hunt.io and independent researcher NetAskari traced matching control panels and certificates to 170 internet servers. They linked the framework to […]

Flying Eagle Android RAT Traces Found on 170 Servers as Source Code Circulates Read More »

OpenAI Agent Used Exposed Credentials Across Four Services During Hugging Face Breach

OpenAI Agent Used Exposed Credentials Across Four Services During Hugging Face Breach 2026-07-29 at 09:45 By OpenAI on Tuesday revealed the rogue artificial intelligence (AI) agent that escaped its sealed evaluation environment and broke into Hugging Face’s production environment, and also hacked multiple third-party accounts and services as part of the attack. The latest disclosure

OpenAI Agent Used Exposed Credentials Across Four Services During Hugging Face Breach Read More »

Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js

Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js 2026-07-29 at 07:20 By Beta release versions of two npm packages in the @joyfill namespace have been compromised to deliver a remote access trojan (RAT) associated with the DEV#POPPER malware family. The list of affected packages is as follows – @joyfill/[email protected] @joyfill/[email protected] The two

Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js Read More »

Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack

Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack 2026-07-28 at 21:59 By Anthropic says Claude Mythos Preview helped derive an end-to-end key-recovery attack against HAWK-256 and a 200- to 800-fold speedup for an attack on seven-round AES-128. The HAWK attack exploits a previously unused symmetry in the lattice

Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack Read More »

24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login

24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login 2026-07-28 at 18:41 By Cybersecurity researchers have sounded an alert after finding more than 36,000 Baseboard Management Controller (BMC) management interfaces exposing Intelligent Platform Management Interface (IPMI) protocol to the public internet. Of the 36,872 internet-exposed server-management interfaces running IPMI, 24,650 have been found to disclose

24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login Read More »

Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process

Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process 2026-07-28 at 18:01 By A new Mirai-derived botnet called Tengu can use a compromised Linux device’s hardware watchdog to trigger a reboot when defenders kill its main process. If that happens, Tengu’s other persistence mechanisms get another chance to relaunch it. Nozomi Networks Labs

Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process Read More »

Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root

Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root 2026-07-28 at 17:29 By OpenWrt has shipped version 24.10.8 to close a critical DHCPv6 stack overflow and a wider set of remotely triggerable flaws in network services enabled by default. The critical issue, tracked as CVE-2026-53921 and rated 9.8 on CVSS 3.1 in

Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root Read More »

JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach

JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach 2026-07-28 at 16:33 By JFrog has confirmed that OpenAI models exploited a zero-day in self-hosted Artifactory while trying to reach the open internet from a sealed evaluation environment. Artifactory is JFrog’s software repository manager. OpenAI says the models then escalated privileges and moved laterally

JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach Read More »

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays 2026-07-28 at 16:10 By The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attributed to a fresh set of attacks targeting entities across the Middle East, Africa, and South Asia. The intrusions

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays Read More »

Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit

Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit 2026-07-28 at 12:12 By STAR Labs has published a Linux kernel exploit that turns an ordinary local user into root on the CentOS Stream 9 build it targeted. The flaw, tracked as CVE-2026-53264 (CVSS score: 7.8), is a use-after-free race in the kernel’s network

Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit Read More »

Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In

Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In 2026-07-28 at 12:12 By JetBrains is urging customers of on-premise versions of TeamCity to update to the latest version following the discovery of a critical security issue that could result in arbitrary code execution. The vulnerability, assigned CVE-2026-63077 (CVSS score: 9.8), affects all

Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In Read More »

Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost

Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost 2026-07-28 at 10:53 By Microsoft has launched its first cybersecurity-specific model inside MDASH, its multi-model vulnerability identification and remediation harness. The company says MDASH, using MAI-Cyber-1-Flash and GPT-5.4, scored 95.95% on CyberGym. It also claims the configuration costs 50% less than

Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost Read More »

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw 2026-07-28 at 09:21 By A maximum-severity security flaw impacting on-premises versions of Arista VeloCloud Orchestrator (VCO) has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-16812 (CVSS score: 10.0), is a case of operating system command injection that could pave the way for arbitrary

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw Read More »

Nvidia in talks to back $500B OpenAI data center — days after CEO Jensen Huang voiced support for controversial open-source AI used by China

Nvidia in talks to back $500B OpenAI data center — days after CEO Jensen Huang voiced support for controversial open-source AI used by China 2026-07-28 at 00:50 By Marc Vartabedian Nvidia’s backing of the data center project – which could cost $500 billion – would allow the SoftBank-owned developer to raise debt at more favorable

Nvidia in talks to back $500B OpenAI data center — days after CEO Jensen Huang voiced support for controversial open-source AI used by China Read More »

NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework

NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework 2026-07-27 at 23:09 By NVIDIA and 36 other organizations have formed the Open Secure AI Alliance to develop and share open technologies, techniques, and tools for securing software and artificial intelligence (AI) agents. The 37-member group spans cloud, security, enterprise software, and AI companies,

NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework Read More »

Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption

Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption 2026-07-27 at 20:16 By Dysphoria, an Internet of Things (IoT) botnet line tracked by CNCERT and XLab, has adopted blockchain-based name services and infected-device relays after a March law-enforcement operation against JackSkid infrastructure. The researchers say the design makes the botnet harder to

Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption Read More »

Scroll to Top