Microsoft Fixes 400 Flaws on August Patch Tuesday
Microsoft has issued another massive batch of security updates with 400 fixed in the August Patch Tuesday
Microsoft has issued another massive batch of security updates with 400 fixed in the August Patch Tuesday
Six npm packages queried an Ethereum wallet to locate C2 infrastructure
Cursor fixed a pre-trust code execution path in three days then closed the report as informative
Police and fire response has been impacted by the attack on Suisan City, while two other local authorities have been hit by cyber incidents in the past week also
Daybreak Blue removes some OpenAI-made guardrails while Daybreak Red grants the use of cyber-focused frontier AI models
Supply chain attack and data breach at Ceva Logistics appears to have a large blast radius
OpenAI is tightening restrictions on testing of its upcoming Astra model due to security concerns
Make UK reveals major cyber resilience gaps as 30% of UK manufacturers report recent cyber incidents
Atlassian fixed a flaw letting one crafted link make its Rovo AI assistant exfiltrate company data
Poisoned JSON feed let attackers backdoor WordPress sites without changing any plugin files
Tenet reported that half of Fortune 500 companies are vulnerable to the Ghostjacking technique, which involves tricking AI agents with fake reports
A macOS malware variant has been detected stealing crypto, passwords and more
TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange
Beacon has informed around 1500 customer charities that its CRM databases were accessed and likely exfiltrated by an unauthorized actor
BlackFile has rebranded as Redact after an alleged affiliate hijack, with Google linking the group to ongoing vishing and extortion campaigns
Finance, technology and healthcare sectors were particularly heavily targeted in July, according to Comparitech
Attackers used SQL injection to compile a post-exploitation toolkit inside an Oracle database
Oligo Security has linked TeamPCP to ShadowRay 2.0 and to cryptojacking infrastructure dating back to 2020
One of Meta’s AI models exploited a third-party security flaw during an evaluation, the latest in a series of similar incidents involving advanced AI systems
So-called “wrench attacks” have resulted in $30m in losses so far in 2026, says Chainalysis
A Canadian hacker has admitted involvement in the widespread compromise of 165 Snowflake customer accounts used to steal data and extort victims
The Open Secure AI Alliance has announced plans for the Shared AI Findings Exchange (SAFE)
77 counterfeit Open VSX extensions beaconed to one domain, 19 harvesting git and CI identity
3 Paperclip flaws exposed data & allowed unauthenticated command execution in two deployment modes
Prompt injection remains the most dangerous security threat to LLMs, according to OWASP’s latest Top 10 LLM Applications list
A new npm worm has compromised packages with over two billion monthly installs
Anthropic and OpenAI models attacked “real people and organizations” during AI Security Institute tests
Cybercriminals are using a fake Bank of America phishing campaign to trick users into downloading a malicious script that installs ScreenConnect, enabling remote access and persistence on compromised systems
WhatsApp scam abused the Linked devices feature to hijack accounts without stealing any passwords
Talos read attacker prompt logs and found guardrails fell to task splitting and ownership claims
Cloud and SaaS are now the preferred operating environments for threat actors, amid a continued shift to identity attacks
Interpol claims AI is driving a surge in cybercrime in Africa, with related losses doubling
The UK’s Police National Legal Database and Ask the Police service have been breached
Chinese actors exploited the critical React2Shell exploit inside a day, while 88% of exploited vulnerabilities in H1 2026 were compromised within 48 hours of disclosure
Russian actor Storm-2945 hijacked hotel captive portals to push fake updates and steal tokens
New HollowFrame loader hid Go code in a fake Python DLL after pre-staging Defender exclusions
Korean telco KT has been fined $39m for a year-long breach linked to femtocell compromise
A hacker has drained nearly $89m from Coldcard Bitcoin wallets after exploiting a legacy bug
A Chinese-speaking threat actor has been using DeepSeek’s AI models to orchestrate cyber-attacks targeting Asian organizations
AWS has linked North Korea to the axios campaign to other attacks on npm libraries
Anthropic has revealed that Claude AI models compromised third-party organizations
Cryptomining crew abandoned root to impersonate low-privileged Linux users and evade SOC alerts
AiTM phishing is now the top entry point into law firms, with identity behind 56% of threats
Action1 report finds sysadmins overestimated their use of AI in predictions made two years ago
Check Point researchers detail phishing attack as an example of attackers dropping fake Microsoft login pages in favor of abusing Microsoft’s legitimate authentication infrastructure
The new version of Chrome, 151, comes with 370 vulnerability patches, including for seven critical flaws
The UK’s National Cyber Security Centre wants network device makers to improve forensic observability
LogoKit now builds per-victim phishing pages using live screenshots of the target's real website
TA488 returned with OWA half-click exploit deploying OWAReaper implant that survived re-imaging
IBM Cost of a Data Breach Report warns that the global average cost of a data breach has reached a record high of $4.99m – and AI-backed attacks have played a role
For now, the use of AI benefits vulnerability research more than vulnerability exploitation, a VulnCheck researcher said
AI is dramatically reducing the barriers to entry for scam phone farm operators, Human Security warns
The National Cyber Security Centre has released a detailed framework to assist with incident response and recovery
Three CVEs in Hugging Face diffusers let a malicious model repo run code on any machine that loads it
AI-assisted research uncovered Linux kernel use-after-free allowing root escalation
Analysis of real-life incident response cases by Cisco Talos warns that phishing remains a powerful method of initial compromise
Microsoft has launched a new agentic security system for cyber defenders as well as its first cyber-focused AI model
Coca Cola claims data was stolen from its Fairlife business after a recent ransomware attack
NVIDIA has launched a new Open Secure AI Alliance to build an “open defense stack for agents”
CREST’s new AI standards are optional add-on requirements for cybersecurity service providers wishing to demonstrate responsible AI usage
Impersonating well-known cryptocurrency and trading sites, SourTrade has developed a novel technique to drop infostealers to victims
Halcyon’s latest quarterly ransomware report showed that while ransomware attacks are declining, obfuscation techniques are getting harder to fight against
Researchers at ReliaQuest warned of widespread DNS poisoning attacks targeting the hospitality sector as part of a cyber espionage campaign
OpenAI’s chatbot tool ChatGPT ranked among the top 10 most impersonated brands in phishing attacks for the first time
Comparitech’s analysis of incidents in the first half of 2026 finds that the emergence of The Gentlemen ransomware has resulted in surge in attacks against higher education
International agencies issue joint alert over state-backed campaign exploiting a critical vulnerability in the Zimbra Collaboration Suite
CoreView research finds that security leadership is concerned about AI Assistant exposing confidential data
US government agencies have warned that Iranian cyber actors are targeting US-based Siemens and Schneider industrial equipment
Sophos report warns that the rapid adoption of AI by businesses is leaving them vulnerable to a new source of cyber threats
Dolphin X is a new infostealer that uses AI to sort and rank victims, giving cybercriminals a faster way to identify lucrative targets
A new study of organizations which have fallen victim to ransomware suggests the rise of AI-tools being used by hackers is making life harder for defenders
New TrickBot variant hides C2 communication inside DNS queries, replacing decade-old HTTP pattern
Hugging Face recently disclosed a security breach. OpenAI has now said that it was its AI models which broke containment and hacked Hugging Face themselves
New Ubuntu snap-confine race condition lets local users escalate to root on default installs
CodeMender actively builds and runs exploits in customer-managed sandboxes to verify if vulnerabilities are truly exploitable
Russian-speaking actor Trim built a commercial offensive AI pentest tool on jailbroken Claude models
Analysis by Black Kite warns that ransomware ecosystem is becoming bigger and more fragmented
FBI warned of deepfake videos of IC3 leadership directing users to spoofed complaint sites
Craneware, a provider of financial software for US healthcare organizations, has disclosed a cyber incident involving unauthorized access and data theft
In a new campaign, North Korean hacking group Famous Chollima targeted crypto professionals through ClickFix lures to deliver Windows and macOS trojans
Cruciferra crypter used process ghosting and 90 custom ciphers to hide payloads for multiple actors
JadePuffer follow-up campaign deployed ENCFORGE locker built to destroy AI model artifacts
A researcher who discovered a critical vulnerability in WordPress has used OpenAI’s latest model to develop an exploit chain
Researchers have linked HollowGraph malware to the Cavern framework after discovering its use of Microsoft 365 calendars and Microsoft Graph APIs as a stealthy C2 channel
Two chiefs of UK policing agencies said the Transport for London prosecution demonstrates the need for Cybercrime Risk Orders
Government organizations are targeted by attackers who know agencies cannot afford disruption to public services
23andMe has agreed to an $18m settlement with 42 US attorneys general over its 2023 data breach, including enhanced data protection requirements
US government agencies have until July 19 to patch two critical Fortinet vulnerabilities
Analysis of ransomware incidents by ReliaQuest indicates a shift in the ransomware landscape
Global phishing campaign disguised a Lua loader as a font file to deploy RATs and infostealers
New ClickLock macOS stealer locked victims out of their own system until they surrendered a password
Cybersecurity researchers tested Open AI GPT 5.5’s offensive cyber capabilities – and the results showed how effective a frontier LLM can be for hackers
The perpetrators of the 2024 TfL cyber-attack have been jailed for five and a half years each after pleading guilty to Computer Misuse Act offences
SANS Institute says governance programs are still nascent even as AI failures and threats grow
The White House announced Gold Eagle to help accelerate the discovery, prioritization and patching of flaws found by AI
Six-month phishing campaign used seasonal eCard lures to plant legitimate RMM tools on victims
Eleven forgotten Microsoft-signed UEFI shims can bypass Secure Boot on almost any machine
Research of incidents by Sophos finds that phishing, brute force attacks and other identity-based threats have surpassed software vulnerabilities as means of delivering ransomware
Progress has restored access to its ShareFile Storage Zones Controller after a four-day suspension triggered by a credible external security threat
Microsoft released fixes for a record 570 CVEs in its July Patch Tuesday update, as experts warn AI is dramatically accelerating vulnerability discovery and increasing patch volumes
The UK government is warning of the potential impact of catastrophic cyber-attacks
The US Department of Defense announced the immediate suspension of the CMMC Phase II requirements until further review
Researchers at Jamf Threat Labs detail CrashStealer, which steals passwords, cryptocurrency wallets and more
Supermarket giant Lidl has revealed details of a supplier breach impacting customer data
Five UK residents have been charged in relation to supplying Russian Coms fraud devices and apps
Misconfigured server exposed three phishing operators running Evilginx forks to bypass MFA
Chinese and Indian spies converged on the same Balochistan police force, SentinelLabs found
New research reveals cyber-attackers can spoof OAuth Client IDs in Microsoft Entra ID, creating a stealthy path into cloud environments
Progress Software, the provider of the popular file-sharing and data storage solutions, has urged customers to shut down the server hosting their Storage Zone Controller
Cybersecurity agencies from 12 countries have warned that Russian state-backed hackers are actively targeting vulnerable routers using weak SNMP credentials
An Armenian man has pleaded guilty to his role in the infamous Ryuk ransomware operation
Australian Cyber Security Centre warns CMS users of mass scanning and exploitation campaign
CISA reveals how it responded after sensitive AWS GovCloud credentials and internal data were exposed in a public GitHub repository
A new multi-purpose backdoor allows cyber threat actors to conduct both quiet espionage activity and destructive wiping operations
Researchers at the AI Now Institute developed a proof-of-concept exploit showing common AI tools used for security could backfire
GodDamn ransomware uses remote desktop application to secretly move around networks and drop the malicious PoisonX kernel driver
Microsoft has said the volume of Windows security updates is set to grow as it uses AI to find new bugs
NHS tells staff they could face prison for “inappropriate” access to patients’ medical records
Huntress found a threat actor using vibe-coded PowerShell to map an Active Directory network
Survey of cybersecurity leaders by MetaCompliance finds that many feel boards are uninterested in ever-evolving cyber risks
Operation First Light 2026, coordinated by Interpol and funded by the Chinese government, has led to 5,811 arrests
Wiz discovered GhostApproval, a symlink flaw in six major AI coding assistants that bypasses approval
Over 70 cybersecurity organizations have signed the CREST AI Charter detailing responsible use of AI for security
Cybersecurity researchers at ESET identify big rise in suspicious and malicious toolsets which put users at risk from cyber-attacks
Zimperium found RedWing, an Android spyware sold as a service via Telegram to target banking apps
Cisco Talos said China-linked APT UAT-7810 is growing its proxy relay network with new malware
Sygnia report details how agentic AI accelerated weeks-long attack to just 72 hours
Cyber threat actors are infecting victims with the Vidar stealer and the XMRig cryptocurrency miner in a new malicious campaign
The National Cyber Security Centre wants to work with AI partners to build a new “Cyber Shield” to defend the UK
A suspected Chinese threat cluster is exploiting Roundcube vulnerabilities to compromise university networks in the US and Canada and harvest user credentials
Group-IB analysis argued Scattered Spider is a decentralized collective of independent clusters
More than 60 organizations, including M&S, Microsoft UK and Vodafone, have signed the UK government's Cyber Resilience Pledge, a new initiative aimed at boosting cyber security and resilience across British businesses
Threat actors are exploiting an Adobe ColdFusion vulnerability which has a CVSS score of 10.0
Attacks also used a compromised chatbot in campaign to steal sensitive information from Business Users
Check Point researchers have identified a new cyber adversary targeting Israeli government and IT businesses, tracked as ‘Cavern Manticore’
Zscaler found sites hiding prompt-injection text to manipulate AI agents into crypto payments
Opera GX flaw let sites automatically install mods to steal data from other pages, now patched
IWF and NCA warn that growing numbers of images and videos are being manipulated into sexual abuse material
Researchers have revealed JadePuffer, the first agentic AI-powered ransomware campaign, highlighting how autonomous agents can automate cyber-attacks
The ransomware landscape is reconsolidating around major players, with Qilin emerging as the leading RaaS operation, researchers say
Researchers warn that collaboration could lead to “unprecedented” ransomware attacks, as FBI also issues warning
The NetNut proxy network and the ‘Popa’ botnet are known to have infected devices with variants of Mirai DDoS botnets
Infosecurity spoke with the researcher who dumped over 30 proof-of-concept exploits without disclosing the vulnerabilities first
Bitdefender researchers warned of curious ransomware campaign which has targeted businesses around the world
The NCSC has shared best practice advice from pen testers which could help improve system resilience
A teenager accused of hacking as part of Scattered Spider has been arrested
Securonix said the Veil#Drop campaign abuses Google Blogspot to deliver PureLog Stealer in memory
FortiGuard says the Brazilian banking trojan Ousaban is targeting Spain and Portugal via phishing
The new classifier in Fable 5 blocks the jailbreak technique that prompted the US export controls “in over 99% of cases”
Microsoft has brought forward its timelines for transitioning to post-quantum cryptography (PQC)
Aflac Japan has notified regulators that policy details and personal and banking information have been compromised
Nissan says employees' data was stolen via the Oracle PeopleSoft zero-day campaign
Attackers exploited a critical SimpleHelp RMM bug to deploy TaskWeaver and Djinn Stealer malware
ReliaQuest report warns of a surge in ClickFix social engineering attacks against Windows and macOS users
A wave of phishing emails sent to Booking.com partner accommodations in Japan in May led to blockchain-hosted malware
SonicWall records 264,000 events in first five months of 2026 as UK hospitals come under siege
Report Fraud data reveals that more than half of 323 UK ransomware victims last year were SMEs
OpenAI is previewing its GPT-5.6 Sol model to a vetted few at the US government's request
Group-IB says Millenium RAT, now rewritten in C++, has hit 62,289 devices in 160+ countries
An attacker has exploited a zero day in Oracle Peoplesoft to gain access to the IT systems of the NAIC, the standard-setting association for the US federal insurance system
Experts warn the Jaguar Land Rover breach bears hallmarks of Kremlin-backed hackers, citing novel ransomware, strategic timing and efforts to obscure attribution
The FBI claims Russian spies are targeting Signal backup keys
A China-linked threat group has been targeting critical infrastructure in Southeast Asia with a new custom backdoor called TinyRCT
The UK Cyber Monitoring Centre reviews the Canvas breach affecting 160 UK universities, highlighting data theft risks and financial impacts of cyber incidents
A high-severity flaw in Cisco Catalyst SD-WAN Manager disclosed in early June was exploited as early as March
Digital Citizens Alliance report claims that millions of Americans may have unwittingly had IP connections used by cybercriminals
Cobalt study finds 20-percentage-point drop in number of organizations relying solely on AI automation for testing
New CISA guidance shows federal agencies how to use SASE to move from legacy TIC 2.0 to zero trust
macos-xpc-flaw-disable-edr-mdm-standard-user-xm-cyber
Analysis of ransomware incidents by researchers at Black Kite found that attacks have risen by over 50% in the last year, with supply chain attacks increasing
LayerX tricked AI browsers including ChatGPT Atlas and Comet into bypassing their guardrails
Operation Endgame seized around 50 domains and nearly 200 active IP-based servers associated with the infostealers
SentinelLabs found a North Korea-linked macOS backdoor using prompt injection on AI triage tools
Customers of the affected Japanese email services are “strongly advised” to change their email passwords
An NCC Group report warns state-backed hackers are attempting to hide activity by posing as ransomware groups and deploying commercially available malware
New ReliaQuest study reveals the six ways AI is practically being used in attacks today
Public Accounts Committee (PAC) warns that museums and galleries aren’t getting enough government support on cyber
JFrog found an npm package impersonating postcss-selector-parser to drop a multi-stage Windows RAT
OpenAI expanded Daybreak with a full GPT-5.5-Cyber release to help defenders patch software flaws
All US federal agencies will have to complete their post-quantum cryptography transition by 2031, according to a new Trump Executive Order
Cybercriminals launch fake GTA 6 pre-order sites offering early access for crypto payments
Two young British men have pleaded guilty to hacking Transport for London as part of a Scattered Spider plot
The Five Eyes Alliance has published a rare call to action for organizations facing AI threats
ESET details GentleKiller, the EDR-killer framework the Gentlemen ransomware gang gives affiliates
Apple BootROM exploit exposes unpatchable USB flaw on A12 and A13 devices
North Korean threat actor Sapphire Sleet has been linked to a supply chain attack targeting Mastra, according to Microsoft security researchers
At least four cybersecurity firms confirmed they have been affected by a breach of business intelligence platform Klue via Salesforce integration
The UK’s data protection regulator the information commissioner has resigned after his position became “untenable”
The NCSC has released guidance for Fortinet customers impacted by the FortiBleed threat campaign
Working with frontier AI models, this new platform aims to help discovering, prioritizing, validating and remediating code vulnerabilities
SocGholish malware has been removed from 15,000 sites associated with Evil Corp hackers
Half of cybersecurity leaders lack confidence in detecting threats on Slack, Teams and other non-email platforms, despite growing attacker focus
A Rust crypto clipper hides behind fake GitHub stars and AI-narrated YouTube videos
Hospital insider escapes criminal prosecution after attempting to sell royal’s medical records
Analysis of chatter on underground forums by Sophos finds that hackers fear AI could take work away from them
CloudSEK maps Operation Escaneo, a campaign hitting Latin American infrastructure via perimeter bugs
Richard Horne, the NCSC CEO, said three-quarters of cyber-attacks targeting UK critical infrastructure came from nation-state actors
Interpol claims cybercrime accounts for third of crime in over half of Asia and South Pacific countries
Nisos infiltrated a North Korean IT-worker fraud cell running on AI interviews and a US laptop farm
GitBait phishing kit abuses GitHub Pages and the SheetBest API to steal Mexican banking credentials
The rise of AI-assistants and applications in the enterprise has seen a 93% increase in employees attempting to upload sensitive data, bringing security challenges
Filigran survey at Infosecurity Europe 2026 reveals AI-powered attacks as the top concern, with false positives, alert fatigue and manual processes draining security teams
Ukraine has been added to the EU Cybersecurity Reserve, which provides incident response services against large-scale incidents
Aikido Security has discovered at least 15 IDE plugins on the JetBrains Marketplace
SANS Institute study finds few SOCs have built AI into defined workflows, despite widespread adoption
China-linked SprySOCKS backdoor gains stealthy Windows variants and 30-plus C2 commands
Rokarolla Android trojan steals banking logins and spies on victims while blocking fraud alerts
ISSA study finds most security professionals feel challenged by colleagues’ involvement in cyber
Command and control traffic exploited a Teams visitor token to make malicious activity look legitimate to defenders
Athena is a new an industry coalition to fix the vulnerabilities frontier AI models find before attackers can exploit them
The FBI claims couriers are being used to circumvent bank transfers in crypto investment schemes
Tampered OptinMonster and sister plugins plant hidden backdoors on 1.2 million WordPress sites
How the Anubis ransomware group stole and leaked an Italian Adriatic port authority's data
Access to two Anthropic large language models, Mythos 5 and Fable 5, has effectively been banned to any non-US nationals by the Trump administration
Government departments find hundreds of vulnerabilities after testing frontier models
The Office of the Maine Attorney General has suspended its breach reporting portal
Domain of dark web money laundering platform AudiA6 seized and suspects arrested in joint operation by the FBI, Europol and others
NPM, part of GitHub, announced a new version of the npm package manager with several security improvements, including disabling install scripts
As the FIFA World Cup 2026 kicks off, a new Darktrace report warns that sports teams and bodies are a major target for cyber criminals
New CISA directive tells federal agencies to patch by real-world risk, not CVSS severity scores
Fake AI guides hide a multi-stage chain that drops AsyncRAT, with signs of AI-assisted coding
Organizations are aware of the challenges that new technologies like AI bring: but cybersecurity staff struggle to make time for the required training during working hours
New revelations by Group-IB expose the full scale of the decade-old SniperDz phishing operation
Extortion-only attacks are increasing as data theft drives most ransomware claims, with many organizations unable to stop stolen data from being exposed
Tenet Security researchers reveal how new “agentjacking” attacks could trick coding agents into executing arbitrary code
Threat actors push fake free-software tutorials on TikTok and Instagram to spread Vidar stealer
MaaS trojan SilabRAT uses HVNC and browser cloning to hijack sessions and steal crypto
Menlo Security research warns that as enterprise applications become increasingly browser based, traditional cybersecurity tools leave them vulnerable to cyber threats
Anthropic unveils Claude Mythos 5 and Fable 5, a restricted-access frontier AI model and guardrailed version for everyone to use
Nearly 26% of identity crime victims faced multiple incidents in the past year, as ITRC warns of a growing "multi-layered crisis"
Microsoft has patched 200 vulnerabilities including three zero-days
Checkmarx report warns that business pressure is among the reason security leaders let security compliance slip
Most dev teams use AI coding assistants but only 30% have full governance in place
Critical phpBB authentication bypass lets attackers hijack any account with one request
The flaw, CVE-2026-11645, can allow a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page
Check Point says a critical vulnerability in its Remote Access VPN and Mobile Access solutions has been exploited by Qilin
Speaking at Infosecurity Europe, Ashish Shrestha, former CISO at Jaguar Land Rover revealed why he wanted over 30,000 employees to change their passwords in the immediate aftermath of the incident
Meta’s WhatsApp demands contempt ruling after users report NSO Group-linked phishing
North Korean actor UNK_DeadDrop targeted developers with fake coding tasks to steal crypto
OpenAI brings Lockdown Mode and Active Sessions to ChatGPT to curb prompt injection data theft
At Infosecurity Europe 2026, OWASP’s Ariel Fogel warned that prompt injection remains an “unresolved problem” within generative AI architecture
The Department of Science, Innovation and Technology details how a combination of hands-on human advice and technology systems keeps government agencies safe
Meta confirms an AI tool vulnerability led to unauthorized access to Instagram accounts after a failure in email verification during password reset
Lloyds Banking Group shared its approach for securing agentic AI workflows, with a mix of hands on experimentation and cross functional governance
The OWASP agentic AI security framework helps organizations assess governance maturity vs adoption and adjust governance as needed
Ox Security field CTO, Boaz Barzel, makes the case for vibe security to tackle AI agent coding risks
A perfect storm of legacy devices, hyper connectivity and human fatigue is bad news for the healthcare sector, warns Cyber Salus
Critical Everest Forms Pro RCE flaw exploited to create rogue WordPress admin accounts
Newly named Chinese-speaking actor TA4922 expands from East Asia into Europe and Africa