cybersec

#TitleDate
1New Gitea RCE Lets Repository Writers Plant a Git Hook to Run Shell CommandsJul 29, 9:10 am
2Public PoC Released for Exploited Check Point SmartConsole Authentication BypassJul 29, 9:10 am
3Flying Eagle Android RAT Traces Found on 170 Servers as Source Code CirculatesJul 29, 8:10 am
4Apple Patches Everything (July 2026), (Wed, Jul 29th)Jul 29, 8:10 am
5OpenAI Agent Used Exposed Credentials Across Four Services During Hugging Face BreachJul 29, 7:10 am
6Two Compromised joyfill npm Packages Run RAT When Imported Into Node.jsJul 29, 5:10 am
7ISC Stormcast For Wednesday, July 29th, 2026 https://isc.sans.edu/podcastdetail/10028, (Wed, Jul 29th)Jul 29, 2:10 am
8CubePilot drone software dev hit by DNS hijacking to intercept trafficJul 28, 10:10 pm
9OpenAI models used Artifactory zero-days to escape to the internetJul 28, 9:10 pm
10Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES AttackJul 28, 8:10 pm
11CISA shares advice on isolating vital systems during cyberattacksJul 28, 7:10 pm
12vBulletin fixes critical pre-auth RCE flaw with public exploitJul 28, 6:10 pm
1324,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before LoginJul 28, 4:10 pm
14Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its ProcessJul 28, 4:10 pm
15Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as RootJul 28, 2:10 pm
16JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face BreachJul 28, 2:10 pm
17Is Your SSO Protected Against Modern Credential Attacks?Jul 28, 2:10 pm
18Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert RelaysJul 28, 1:10 pm
19Over 24,000 exposed server BMCs leak password hash via decades-old flawJul 28, 1:10 pm
20Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the CostJul 28, 10:10 am
21Data breach at medical billing firm MCBS affects 1.26 million peopleJul 28, 10:10 am
22Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root ExploitJul 28, 9:10 am
23Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging InJul 28, 9:10 am
24AutoIT Payload Injector , (Tue, Jul 28th)Jul 28, 8:10 am
25Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the CostJul 28, 7:10 am
26Attackers Exploit Arista VeloCloud Orchestrator Command Injection FlawJul 28, 6:10 am
27ISC Stormcast For Tuesday, July 28th, 2026 https://isc.sans.edu/podcastdetail/10026, (Tue, Jul 28th)Jul 28, 2:10 am
28Hackers target US firms in FastJson RCE zero-day attacksJul 28, 12:10 am
29Arista patches VeloCloud Orchestrator zero-day exploited in attacksJul 27, 11:10 pm
30New Certighost PoC exploit lets attackers hijack Windows domainsJul 27, 9:10 pm
31New Dysphoria DDoS botnet spreads to 200k devices worldwideJul 27, 9:10 pm
32NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA FrameworkJul 27, 8:10 pm
33Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid DisruptionJul 27, 6:10 pm
34Apple sued over fake App Store crypto wallet app stealing $1.8M in BitcoinJul 27, 6:10 pm
35Public Exploit Released for Patched vBulletin Pre-Auth Code Execution FlawJul 27, 4:10 pm
36Ernst & Young data breach claimed by ShinyHunters extortion gangJul 27, 4:10 pm
37Coca-Cola confirms data theft in Fairlife ransomware attackJul 27, 4:10 pm
38⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and MoreJul 27, 3:10 pm
39Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams UpdateJul 27, 2:10 pm
40n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n ProcessJul 27, 2:10 pm
41Shadow AI agents are multiplying. Here's how to find and secure them.Jul 27, 2:10 pm
42Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows MalwareJul 27, 12:10 pm
43Java Spring Boot "heapdump" scans, (Mon, Jul 27th)Jul 27, 10:10 am
44GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package AdoptionJul 27, 9:10 am
45TELESHIM Abuses Telegram for C2 in Attacks Against Middle East GovernmentsJul 27, 9:10 am
46ISC Stormcast For Monday, July 27th, 2026 https://isc.sans.edu/podcastdetail/10024, (Mon, Jul 27th)Jul 27, 2:10 am
47GitHub, PyPI add time-based defenses against supply chain attacksJul 26, 8:10 pm
48Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th)Jul 26, 4:11 pm
49GitHub, PyPI add time-absed defenses against supply chain attacksJul 26, 3:10 pm
50Steam forum ClickFix attacks infect gamers with XMRig cryptominersJul 25, 11:10 pm
51Malvertising Sends Malware in Pieces, Then Makes the Browser Build the ExecutableJul 25, 8:10 pm
52Malicious sites use JavaScript to build malware in browser memoryJul 25, 4:10 pm
53ShinyHunters data leaks fuel $2,000 sextortion email scamJul 25, 3:10 pm
54Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched AvailableJul 25, 2:10 pm
55DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate PayoutsJul 25, 12:10 pm
56Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCEJul 25, 12:10 pm
57CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account HijackingJul 25, 12:10 pm
58OpenAI confirms ChatGPT is down worldwideJul 25, 10:10 am
59Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitJul 25, 9:10 am
60OnTrac notifies customers of data breach after network hackJul 24, 8:10 pm
61Hermes AI agent used to automate attack on Thai Finance MinistryJul 24, 7:10 pm
62Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accountsJul 24, 6:10 pm
63BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware DeliveryJul 24, 5:10 pm
64Microsoft blames massive Microsoft 365 outage on maintenance bugJul 24, 4:10 pm
65Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain ControllerJul 24, 3:10 pm
66Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI AttackJul 24, 2:10 pm
67Chick-fil-A data breach affects more than 13,000 customersJul 24, 2:10 pm
68Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's ServersJul 24, 1:10 pm
69ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing LinkJul 24, 1:10 pm
70Europol flags 4,340 URLs for removal in 'The Com' crackdownJul 24, 1:10 pm
71Man gets six years for hacking 750 women's Snapchat accountsJul 24, 12:10 pm
72Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can DoJul 24, 12:10 pm
73Golden Chickens Resurfaces With Four New Malware Families and Modular ImplantsJul 24, 11:10 am
74Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance MinistryJul 24, 11:10 am
75Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers SayJul 24, 9:10 am
76NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private ChatsJul 24, 9:10 am
77Clop ransomware targets Windchill, FlexPLM in data theft attacksJul 24, 8:10 am
78Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 AttacksJul 24, 7:10 am
79ISC Stormcast For Friday, July 24th, 2026 https://isc.sans.edu/podcastdetail/10022, (Fri, Jul 24th)Jul 24, 2:10 am
80New Dolphin X malware uses AI to rank high-value targetsJul 23, 10:10 pm
81Australian energy provider Origin says data breach exposes client dataJul 23, 9:10 pm
82Fake Claude app promoted by Bing ads pushes SectopRAT malwareJul 23, 8:10 pm
83Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA CodesJul 23, 7:10 pm
84ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More StoriesJul 23, 5:10 pm
85Hackers abuse Notepad++ plugins to stealthily install malwareJul 23, 5:10 pm
86Russian hackers exploit Zimbra zero-click flaw for email theftJul 23, 5:10 pm
87Microsoft 365 outage affects Teams, SharePoint and other servicesJul 23, 4:10 pm
88China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare AttacksJul 23, 3:10 pm
89Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and EdgeJul 23, 3:10 pm
90Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac FilesJul 23, 3:10 pm
91When the "Autonomous Attacker" Is Your Own AI Model, (Thu, Jul 23rd)Jul 23, 2:10 pm
92FedRAMP Rev5 Is Ending: What the 20x Transition Really RequiresJul 23, 2:10 pm
93EU fines Google $1 billion for search, app store antitrust violationsJul 23, 1:10 pm
94Google Adds Selfie Video Recovery for Users Locked Out of Their AccountsJul 23, 12:10 pm
95Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM ServersJul 23, 12:10 pm
96New RefluXFS Linux flaw lets attackers gain root privilegesJul 23, 12:10 pm
97How Synthetic Identity Fraud is Coming for Machine IdentitiesJul 23, 12:10 pm
98Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL InstallsJul 23, 10:10 am
99Microsoft working to fix Exchange Online mailbox quarantine issueJul 23, 10:10 am
100New msaRAT malware uses Chrome, Edge browsers to route C2 trafficJul 23, 10:10 am
101Check Point warns of SmartConsole zero-day exploited in attacksJul 23, 9:10 am
102Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin AccessJul 23, 8:10 am
103ISC Stormcast For Thursday, July 23rd, 2026 https://isc.sans.edu/podcastdetail/10020, (Thu, Jul 23rd)Jul 23, 2:10 am
104Upbound says hack caused $13 million in fraudulent Acima leasesJul 22, 10:10 pm
105GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP TierJul 22, 9:10 pm
106South Korea discloses data breach impacting diplomats worldwideJul 22, 8:10 pm
107Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web DataJul 22, 7:10 pm
108Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop InstallsJul 22, 7:10 pm
109Rondo Meets Geoserver, (Wed, Jul 22nd)Jul 22, 6:10 pm
110Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattackJul 22, 5:10 pm
111How enterprise GenAI can amplify ransomware risk — and how to contain itJul 22, 4:10 pm
112New InfraTrust report reveals infrastructure flaws admins should patch firstJul 22, 3:10 pm
113The Fastest Path to AI Adoption Runs Through SecurityJul 22, 2:10 pm
114Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without AuthenticationJul 22, 2:10 pm
115Adobe Chrome extension flaw let sites access private WhatsApp chatsJul 22, 2:10 pm
116Stop renting storage space — this lifetime 2TB plan is yours for $59Jul 22, 12:10 pm
117Why Modern SOCs Need Multi-Layered DetectionsJul 22, 12:10 pm
118CISA orders urgent action on actively exploited Langflow RCE flawJul 22, 12:10 pm
119Microsoft to stop Exchange 2016 / 2019 security updates in OctoberJul 22, 11:10 am
120Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFAJul 22, 8:10 am
121Chick-fil-A discloses data breach after credential stuffing attacksJul 22, 7:10 am
122OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat BenchmarkJul 22, 6:10 am
123Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review AgentsJul 22, 6:10 am
124OpenAI says its AI models hacked Hugging Face during testingJul 22, 6:10 am
125Trojanized Newtonsoft.Json Fork Hides Game-Rigging Code in a Working LibraryJul 22, 6:10 am
126LG to Ban Residential Proxies from Smart TV AppsJul 22, 2:10 am
127ISC Stormcast For Wednesday, July 22nd, 2026 https://isc.sans.edu/podcastdetail/10018, (Wed, Jul 22nd)Jul 22, 2:10 am
128FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malwareJul 21, 11:10 pm
129Police dismantle Kratos phishing platform, arrest developerJul 21, 11:10 pm
130Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail LogsJul 21, 8:10 pm
131Critical SharePoint RCE flaw exploited to steal machine keysJul 21, 8:10 pm
132Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leakJul 21, 7:10 pm
133Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software VulnerabilitiesJul 21, 5:10 pm
134AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run CodeJul 21, 5:10 pm
135Critical wp2shell WordPress flaws exploited to install webshellsJul 21, 5:10 pm
136Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoCJul 21, 3:10 pm
137Zimbra Patches Critical SNMP Command Injection and Four XSS VulnerabilitiesJul 21, 2:10 pm
138Captive Portal Detection, (Tue, Jul 21st)Jul 21, 2:10 pm
139Closing the Identity Gaps in Critical Infrastructure SecurityJul 21, 2:10 pm
140Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial AccessJul 21, 2:10 pm
141New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an ExploitJul 21, 1:10 pm
142N-day is Becoming N-Hour. Patching Faster Won't Save You.Jul 21, 1:10 pm
143Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCsJul 21, 1:10 pm
144US seizes over 1,000 websites in FIFA World Cup piracy crackdownJul 21, 12:10 pm
145Critical Palo Alto VPN bug now exploited by Qilin ransomware gangJul 21, 11:10 am
146WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass ScanningJul 21, 9:10 am
147Microsoft shares manual fix for WSUS sync delays and timeoutsJul 21, 9:10 am
148Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code ExecutionJul 21, 8:10 am
149New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE AttackJul 21, 8:10 am
150Windows LegacyHive zero-day flaw gets free, unofficial patchesJul 21, 8:10 am
151ISC Stormcast For Tuesday, July 21st, 2026 https://isc.sans.edu/podcastdetail/10016, (Tue, Jul 21st)Jul 21, 2:10 am
152Hackers steal $23.7 million in crypto from Ostium in off-chain attackJul 20, 11:10 pm
153SonicWall SMA1000 flaws exploited as zero-days to push custom malwareJul 20, 11:10 pm
154Estée Lauder discloses data breach via Oracle E-Business flawJul 20, 11:10 pm
155Cursor, Codex, Gemini CLI, Antigravity hit by sandbox escapesJul 20, 10:10 pm
156JadePuffer agentic attacks now target AI model data with ransomwareJul 20, 9:10 pm
157FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader MalwareJul 20, 8:10 pm
158WordPress Exploitation Underway (CVE-2026-63030), (Mon, Jul 20th)Jul 20, 7:10 pm
159Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware CampaignJul 20, 6:10 pm
160New HollowGraph malware uses Microsoft Graph for stealthy C2 commsJul 20, 6:10 pm
161HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050Jul 20, 3:10 pm
162⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and MoreJul 20, 2:10 pm
163An AI SOC Evaluation Guide for Security LeadersJul 20, 2:10 pm
164Mythos Didn't Break Your Security Program. Your Exposure Window Could.Jul 20, 1:10 pm
165Hugging Face warns an autonomous AI agent hacked its networkJul 20, 1:10 pm
166Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and UkraineJul 20, 1:10 pm
167Hugging Face discloses breach linked to autonomous AI agentJul 20, 12:10 pm
168Microsoft confirms Windows Server Update Services sync delaysJul 20, 11:10 am
169Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCsJul 20, 10:10 am
170New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During ExtractionJul 20, 10:10 am
171Critical ServiceNow code execution flaw now exploited in attacksJul 20, 10:10 am
172Windows KB5121767 OOB update fixes shutdowns on some Dell PCsJul 20, 10:10 am
173SleeperGem Uses Three Malicious RubyGems Packages to Target Developer MachinesJul 20, 6:10 am
174World's Largest AI Model Repository Hugging Face Breached by Autonomous AI AgentJul 20, 6:10 am
175ISC Stormcast For Monday, July 20th, 2026 https://isc.sans.edu/podcastdetail/10014, (Mon, Jul 20th)Jul 20, 2:10 am
176Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code ExecutionJul 19, 10:10 pm
177SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root AccessJul 19, 3:10 pm
178UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih MalwareJul 19, 3:10 pm
179Hackers abuse ViPNet software to target Russian govt agenciesJul 19, 3:10 pm
180Scans for Hikvision Intelligent Security API, (Sun, Jul 19th)Jul 19, 3:10 pm
181Update now: 7-Zip fixes RCE flaw exploitable with malicious archivesJul 18, 8:10 pm
182WordPress Core "wp2shell" RCE flaws get public exploits, patch nowJul 18, 6:10 pm
183Microsoft warns of surge in ACR Stealer attacks on customersJul 18, 3:10 pm
184The Future of Age Verification: Your Face Never Leaves Your DeviceJul 18, 2:10 pm
185Abbott probes two cyber incidents amid extortion claimsJul 18, 12:10 am
186New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run CodeJul 17, 10:10 pm
187OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS RequestsJul 17, 9:10 pm
188Abbott Laboratories probes two cyber incidents amid extortion claimsJul 17, 9:10 pm
189Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RATJul 17, 8:10 pm
190GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate TheftJul 17, 6:10 pm
191New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes TokensJul 17, 6:10 pm
192HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payloadJul 17, 6:10 pm
193Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag ImagesJul 17, 4:10 pm
194Ernst & Young discloses data breach after support system hackJul 17, 3:10 pm
195Inside the Search for "Clean" Residential Proxies for CardingJul 17, 2:10 pm
196Armenia Detains Russian Tourist on U.S. Warrant for REvil Hacker, Lawyers Say Wrong ManJul 17, 12:10 pm
197The Race to Field Military Autonomy Is On, Can Trusted Information Infrastructure Keep Pace?Jul 17, 12:10 pm
198E.U. Orders Google to Open Android Mic, Camera and Screen to Rival AI AssistantsJul 17, 12:10 pm
199New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for EspionageJul 17, 11:10 am
200ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 FilesJul 17, 11:10 am
201New Windows LegacyHive zero-day gives hackers admin privilegesJul 17, 11:10 am
202Windows Server 2022 reach end of mainstream support in 90 daysJul 17, 10:10 am
203US charges two over laundering $43 million from investment fraudJul 17, 9:10 am
204CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEVJul 17, 8:10 am
205CISA urges immediate action on actively exploited Fortinet flawsJul 17, 7:10 am
206ISC Stormcast For Friday, July 17th, 2026 https://isc.sans.edu/podcastdetail/10012, (Fri, Jul 17th)Jul 17, 2:10 am
207New ClickLock macOS malware traps users into revealing login passwordJul 16, 10:10 pm
208Coca-Cola says Fairlife ransomware attack halts US dairy productionJul 16, 9:10 pm
209Claude Chrome extension flaw lets malicious extensions trigger AI actionsJul 16, 8:10 pm
210Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL HackJul 16, 7:10 pm
211New OkoBot framework deploys 20 payloads to steal data, cryptoJul 16, 7:10 pm
212ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More StoriesJul 16, 4:10 pm
213n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another IssuerJul 16, 3:10 pm
214New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their PasswordJul 16, 2:10 pm
215New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run CommandsJul 16, 2:10 pm
21623andMe to pay $18 million in new genetics data breach settlementJul 16, 2:10 pm
217AI Agents Broke the Security Playbook. Here's What Replaces It.Jul 16, 2:10 pm
218Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM BackdoorJul 16, 1:10 pm
219New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker CommandsJul 16, 1:10 pm
22020+ Hijacked Government Websites Became
an Attack ChannelJul 16, 1:10 pm
221Scattered Spider members behind TfL hack get five years in prisonJul 16, 1:10 pm
222Windows 11 24H2 Home and Pro reach end of support in 90 daysJul 16, 12:10 pm
223Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-WideJul 16, 11:10 am
224AI Can Find Bugs, But Human Knowledge Still Proves ThemJul 16, 11:10 am
225Russian hackers trojanize WebEx, Zoom apps to push Starland malwareJul 16, 11:10 am
226CISA orders feds to patch actively exploited Oracle flaw by SaturdayJul 16, 11:10 am
227New Spirals ransomware encrypts victim network in under 24 hoursJul 16, 10:10 am
228Zoom Patches Critical Windows Flaw That Could Enable Account TakeoverJul 16, 9:10 am
229OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 SolJul 16, 9:10 am
230ISC Stormcast For Thursday, July 16th, 2026 https://isc.sans.edu/podcastdetail/10010, (Thu, Jul 16th)Jul 16, 3:10 am
231Dutch police bust investment fraud ring stealing over €100 millionJul 15, 10:10 pm
232Zoom warns of critical account takeover vulnerabilityJul 15, 9:10 pm
233Google Gemini CLI abused as a hacking agent, malware botnet operatorJul 15, 7:10 pm
234TuxBot v3 Evolution Shows Signs of LLM-Assisted IoT Botnet DevelopmentJul 15, 7:10 pm
235AsyncAPI npm packages infected with credential-stealing malwareJul 15, 6:10 pm
236OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor AppsJul 15, 5:10 pm
237​ ​AsyncAPI npm packages infected with credential-stealing malwareJul 15, 4:10 pm
238Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security FlawsJul 15, 2:10 pm
239We built a vulnerability vending machine: AI tokens in, zero-days outJul 15, 2:10 pm
240New Webinar: Closing the Approval Gap in AI-Era Ad TechJul 15, 1:10 pm
241Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch TuesdayJul 15, 1:10 pm
242SASE Has An AI Blind Spot. Inspecting Packets Is No Longer Enough.Jul 15, 1:10 pm
243Compromised AsyncAPI npm Packages Deliver Multi-Stage Botnet MalwareJul 15, 11:11 am
244CISA warns admins to patch actively exploited SharePoint flawsJul 15, 11:11 am
245Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code ExecutionJul 15, 11:10 am
246Microsoft: Some Dell PCs shut down after recent Windows updatesJul 15, 9:10 am
247US charges alleged operators of Russian bulletproof hosting serviceJul 15, 8:10 am
248Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin CommandsJul 15, 7:10 am
249Recent DShield SIEM Update, (Tue, Jul 14th)Jul 15, 2:10 am
250ISC Stormcast For Wednesday, July 15th, 2026 https://isc.sans.edu/podcastdetail/10008, (Wed, Jul 15th)Jul 15, 2:10 am
251SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch nowJul 14, 10:10 pm
252Spanish Police take down €140 million cyber fraud ring, arrest fourJul 14, 9:10 pm
253Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active AttackJul 14, 9:10 pm
254Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail ReadsJul 14, 8:10 pm
255SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify DataJul 14, 8:10 pm
256Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Here , (Tue, Jul 14th)Jul 14, 8:10 pm
257Nearly 300 GitHub repos pose as legit software to push malwareJul 14, 8:10 pm
258Microsoft Patches a Record 570 Security FlawsJul 14, 8:10 pm
259Microsoft releases Windows 10 KB5099539 extended security updateJul 14, 7:10 pm
260LabubaRAT Masquerades as NVIDIA Software to Control Windows HostsJul 14, 6:10 pm
261Windows 11 KB5101650 & KB5099414 cumulative updates releasedJul 14, 6:10 pm
262Microsoft July 2026 Patch Tuesday fixes massive 570 flaws, 3 zero-daysJul 14, 6:10 pm
263LastPass, Bitwarden users targeted with fake security alertsJul 14, 4:10 pm
264Progress confirms ShareFile zero-day flaw behind Storage Zone shutdownJul 14, 4:10 pm
265RabbitMQ Flaws Could Leak OAuth Secrets and Expose Cross-Tenant Queue MetadataJul 14, 3:10 pm
266OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra CredentialsJul 14, 2:10 pm
267How Pentera Turns AI Security Workflows into Validation EnginesJul 14, 2:10 pm
268Study of 85 Crypto Wallet Extensions Finds Address Leaks and Cross-Site Tracking RisksJul 14, 2:10 pm
26911 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure BootJul 14, 2:10 pm
270You Don't Have to Run an Exploit to Know If You're VulnerableJul 14, 2:10 pm
271New phishing kits target Microsoft 365 accounts, evade MFAJul 14, 1:10 pm
272Microsoft Entra ID gets passkeys default authentication starting SeptemberJul 14, 1:10 pm
273SAP warns of critical flaws in NetWeaver and Commerce CloudJul 14, 12:10 pm
274Grok Build Uploaded Entire Git Repositories to xAI Storage, Not Just Files It ReadJul 14, 11:10 am
275Microsoft starts testing cleaner Windows Search without adsJul 14, 11:10 am
276Grok Build Uploads Entire Git Repositories to xAI Storage, Not Just Files It ReadsJul 14, 10:10 am
277US sanctions VPN, malware providers for enabling ransomware attacksJul 14, 10:10 am
278Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters ActivityJul 14, 9:10 am
279148 npm Packages Disguised as Student Proxies Turned Browsers Into a DDoS BotnetJul 14, 9:10 am
280U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware SupportJul 14, 9:10 am
281Microsoft Maps Year-Long ShinyHunters-Linked Salesforce Data Theft Across Three PathsJul 14, 7:10 am
282ISC Stormcast For Tuesday, July 14th, 2026 https://isc.sans.edu/podcastdetail/10006, (Tue, Jul 14th)Jul 14, 3:10 am
283Japan's largest taxi operator shuts systems after cyberattackJul 13, 9:10 pm
284Hackers backdoor Jscrambler npm package with infostealer malwareJul 13, 8:10 pm
285New CrashStealer malware poses as Apple crash reporting toolJul 13, 7:10 pm
286Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector FoundJul 13, 6:10 pm
287CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper ChecksJul 13, 6:10 pm
288New MemGhost Attack Plants Persistent False Memories in AI Agents Through One EmailJul 13, 4:10 pm
289Lessons Learned from CISA’s Recent GitHub LeakJul 13, 4:10 pm
290⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and MoreJul 13, 4:10 pm
291CISA warns of actively exploited RCE flaws in Joomla extensionsJul 13, 4:10 pm
292Lidl discloses online shop breach after service provider hackJul 13, 3:10 pm
293Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session TheftJul 13, 2:10 pm
294UK charges suspects linked to Russian Coms call spoofing platformJul 13, 2:10 pm
295Breach at the Beach: Play the Ultimate Entra ID CTFJul 13, 2:10 pm
296Attacker Uses Suspected AI-Generated PowerShell Script to Map Active DirectoryJul 13, 1:10 pm
297Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst CopilotsJul 13, 1:10 pm
298Meta Files Patent for AI That Can Listen All Day and Track How You're FeelingJul 13, 1:10 pm
299EU sanctions Russian GRU military hackers over cyberattacksJul 13, 12:10 pm
300US and allies warn of Russian critical infrastructure attacksJul 13, 10:10 am
301Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365Jul 13, 9:10 am
302iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-DaysJul 13, 7:10 am
303Someone Is Scanning for Your MCP Servers and AI Assistant Credentials, (Mon, Jul 13th)Jul 13, 5:10 am
304ISC Stormcast For Monday, July 13th, 2026 https://isc.sans.edu/podcastdetail/10004, (Mon, Jul 13th)Jul 13, 2:10 am
305OpenAI temporarily relaxes GPT-5.6 Sol usage limitsJul 13, 1:10 am
306Claude Fable 5 stays free for paid users until July 19 as Anthropic buys more timeJul 12, 8:10 pm
307RedHook Android malware now uses Wireless ADB for shell accessJul 12, 3:10 pm
308Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage CampaignsJul 11, 7:10 pm
309Compromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During InstallJul 11, 7:10 pm
310Australia warns of global campaign targeting vulnerable CMS platformsJul 11, 3:10 pm
311Wireshark 4.6.7 Released, (Sat, Jul 11th)Jul 11, 10:10 am
312'Ghostcommit' hides prompt injection in images to fool AI agents, steal secretsJul 11, 9:10 am
313Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User SessionsJul 11, 8:10 am
314New U-Boot flaws could enable stealthy firmware attacksJul 10, 10:10 pm
315URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security ThreatJul 10, 7:10 pm
316Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at BootJul 10, 6:10 pm
317Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm PackagesJul 10, 6:10 pm
318Ryuk ransomware member pleads guilty in the US, faces 15 years in prisonJul 10, 6:10 pm
319Progress urges ShareFile admins to shut down servers over “credible” threatJul 10, 5:10 pm
320Police suspects Dutch hackers were involved in Odido breachJul 10, 5:10 pm
321Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be PatchedJul 10, 4:10 pm
322Money launderer accused of stealing seized crypto while in prisonJul 10, 4:10 pm
323Hackers exploit critical auth bypass in Gitea Docker imageJul 10, 4:10 pm
324Researcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw FlawsJul 10, 3:10 pm
325Attackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency WalletsJul 10, 2:10 pm
326New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 TrafficJul 10, 2:10 pm
327The Replicant in Your Directory: AI Agents and the Identity Security GapJul 10, 2:10 pm
328Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 AccessJul 10, 12:10 pm
329Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and TrackingJul 10, 12:10 pm
330Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress SitesJul 10, 12:10 pm
331From 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at ScaleJul 10, 12:10 pm
332Zimbra urges customers to patch critical web client XSS flawJul 10, 12:10 pm
333Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 ServersJul 10, 12:10 pm
334Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat AttacksJul 10, 10:10 am
335Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency WalletsJul 10, 10:10 am
336"Comment stuffing" in an HTML phishing attachment as a mechanism for evading AI-based detection?, (Fri, Jul 10th)Jul 10, 10:10 am
337Former ransomware negotiator gets 4 years for BlackCat attacksJul 10, 9:10 am
338ISC Stormcast For Friday, July 10th, 2026 https://isc.sans.edu/podcastdetail/10002, (Fri, Jul 10th)Jul 10, 2:10 am
339OpenMandriva Linux says contributor tried to sabotage the projectJul 9, 11:10 pm
340Injective SDK on npm infected with cryptocurrency wallet stealerJul 9, 8:10 pm
341New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and SpywareJul 9, 7:10 pm
342Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate OrgsJul 9, 7:10 pm
343ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More StoriesJul 9, 5:10 pm
344npm 12 Disables Install Scripts by Default to Reduce Supply Chain RiskJul 9, 5:10 pm
345Microsoft expects more Windows security updates from AI-discovered flawsJul 9, 5:10 pm
346New Helix vishing group emerges in SharePoint data theft attacksJul 9, 5:10 pm
347The Hidden Security Risks of Reduced Summer IT CoverageJul 9, 3:10 pm
348New Forg365 phishing platform uses AI to target Microsoft 365 accountsJul 9, 3:10 pm
349AI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps UpJul 9, 1:10 pm
350GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint DefensesJul 9, 12:10 pm
351Summer of ClearinghousesJul 9, 12:10 pm
352Microsoft to retire the OWA Light client in Exchange ServerJul 9, 11:10 am
353Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM PrivilegesJul 9, 10:10 am
354Police arrests 5,800 suspects in global anti-fraud crackdownJul 9, 10:10 am
355Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI ImagesJul 9, 8:10 am
356AssuranceAmerica data breach exposes records of 6.9 million driversJul 9, 8:10 am
357Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running ItJul 9, 6:10 am
358Microsoft patches RoguePlanet Defender zero-day vulnerabilityJul 9, 6:10 am
359Fake 7-Zip Installers Turn Devices Into Residential Proxy NodesJul 9, 5:10 am
360GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding AgentsJul 9, 5:10 am
361_HELP_ME_ESCAPE_FROM_BELARUS_PLEASE_ [Guest Diary], (Tue, Jul 7th)Jul 9, 2:10 am
362ISC Stormcast For Thursday, July 9th, 2026 https://isc.sans.edu/podcastdetail/10000, (Thu, Jul 9th)Jul 9, 2:10 am
363Mount Royal University confirms breach as hackers claim attackJul 8, 10:10 pm
364Fake Paysafe, Skrill SDKs on NPM and PyPi steal credentialsJul 8, 8:10 pm
365Hackers exploit Roundcube flaw to spy on academic researchersJul 8, 7:10 pm
366AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch AttackersJul 8, 6:10 pm
367New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet MalwareJul 8, 5:10 pm
368Entra passkey enrollment vishing targets Microsoft 365 usersJul 8, 5:10 pm
369Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OSJul 8, 3:10 pm
370SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking UsersJul 8, 2:10 pm
371New Ghost Phishing Wave Is Breaking Traditional Email SecurityJul 8, 2:10 pm
3723 Ways AI Powers Service Desk Attacks and How to Prevent ThemJul 8, 2:10 pm
373Felons, Fraudsters Flog Offensive Cybersecurity StartupJul 8, 1:10 pm
374GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in CodeJul 8, 12:10 pm
375Telco giant KDDI says data breach affects over 12 million peopleJul 8, 12:10 pm
376The Verification Step Is the New ATO Battleground in 2026Jul 8, 12:10 pm
377GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking SignaturesJul 8, 12:10 pm
378DuckDuckGo browser now blocks YouTube video adsJul 8, 12:10 pm
379China-Linked UAT-7810 Expands ORB Network With New LONGLEASH MalwareJul 8, 10:10 am
380CISA orders feds to prioritize patching Langflow auth bypass flawJul 8, 10:10 am
381My Stack Simulator, (Wed, Jul 8th)Jul 8, 9:10 am
382Ubiquiti warns of new max severity UniFi OS vulnerabilityJul 8, 9:10 am
383CISA orders feds to patch max severity ColdFusion flaw by FridayJul 8, 8:10 am
384CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEVJul 8, 7:10 am
38515-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux DistrosJul 8, 7:10 am
386ISC Stormcast For Wednesday, July 8th, 2026 https://isc.sans.edu/podcastdetail/9998, (Wed, Jul 8th)Jul 8, 2:10 am
387Accenture confirms breach after hacker offers stolen data for saleJul 7, 10:10 pm
388More Odd DNS Records: NIMLOC, (Tue, Jul 7th)Jul 7, 7:10 pm
389Chinese hackers develop LONGLEASH malware to expand ORB networkJul 7, 7:10 pm
390Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX ChatbotsJul 7, 6:10 pm
391RedWing MaaS Packages Android Bank Fraud as a Telegram Rental ServiceJul 7, 6:10 pm
392Hidden backdoor in Tenda router firmware grants admin accessJul 7, 6:10 pm
393DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 AccountsJul 7, 5:10 pm
394Spain arrests suspected member of pro-Russian hacktivist groupsJul 7, 4:10 pm
395Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo DataJul 7, 3:10 pm
396Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across TenantsJul 7, 2:10 pm
397Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider HackerJul 7, 2:10 pm
398The GitHub Actions Attack Pattern Your CI Security Scanners MissJul 7, 2:10 pm
399Webinar tomorrow: Why modern email attacks require a new approach to defenseJul 7, 1:10 pm
400What Changes When Your Software Supply Chain Includes AI Writing Your Code?Jul 7, 12:10 pm
401New Januscape Linux flaw allows VM escape on Intel, AMD devicesJul 7, 12:10 pm
402Suspected China-Aligned Hackers Exploit Roundcube Flaws Against UniversitiesJul 7, 10:10 am
403Microsoft to enable Windows settings backup by default for orgsJul 7, 10:10 am
404BeyondTrust warns of critical flaws in remote access softwareJul 7, 9:10 am
405CERT/CC Warns of Hidden Admin Backdoor in Tenda Router FirmwareJul 7, 8:10 am
406Microsoft testing new Cloud Rebuild Windows 11 recovery featureJul 7, 8:10 am
407BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRAJul 7, 7:10 am
408ISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th)Jul 7, 2:10 am
409Fake IT support calls on Microsoft Teams push EtherRAT malwareJul 6, 9:10 pm
410Phishing poses as big-brand job interview to steal Google accountsJul 6, 9:10 pm
411Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli OrganizationsJul 6, 8:10 pm
41216-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 SystemsJul 6, 7:10 pm
413Vietnam arrests suspects behind HiAnime anime piracy serviceJul 6, 7:10 pm
414Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After DisclosureJul 6, 6:10 pm
415⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and MoreJul 6, 2:10 pm
416Max severity Adobe ColdFusion flaw now exploited in attacksJul 6, 2:10 pm
417RCS and DNS: The NAPTR Record, (Mon, Jul 6th)Jul 6, 2:10 pm
418Software Is Now Written at the Speed of Thought. Security Isn't.Jul 6, 2:10 pm
419Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRATJul 6, 1:10 pm
420How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from Bolt-On AI solutionsJul 6, 1:10 pm
421ISC Stormcast For Monday, July 6th, 2026 https://isc.sans.edu/podcastdetail/9994, (Mon, Jul 6th)Jul 6, 12:10 pm
422New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOSJul 6, 9:10 am
423New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable EmissionsJul 6, 9:10 am
424Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited PagesJul 6, 8:10 am
425SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting PackingJul 6, 7:10 am
426Flipper Zero firmware development continues with community helpJul 5, 3:10 pm
427JadePuffer ransomware used AI agent to automate entire attackJul 4, 3:10 pm
428U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion CaseJul 4, 2:10 pm
429North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider CampaignJul 4, 12:10 pm
430Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded DevicesJul 3, 10:10 pm
431New Avalon Malware Framework Packs CrownX Ransomware CapabilitiesJul 3, 8:11 pm
432New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits AndroidJul 3, 8:10 pm
433NetNut proxy network disrupted, 2 million infected devices cut offJul 3, 6:10 pm
434North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer SecretsJul 3, 5:10 pm
435ARToken PhaaS exposes EvilTokens' Microsoft 365 phishing toolkitJul 3, 3:10 pm
436Armored Likho Targets Government Agencies, Power Sector with BusySnake StealerJul 3, 2:10 pm
437European Parliament Member Investigating Spyware Was Hacked With PegasusJul 3, 11:10 am
438PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login PasswordsJul 3, 9:10 am
439Claude Fable 5 isn’t permanently leaving subscriptions, Anthropic saysJul 3, 2:10 am
440Claude Fable relaunch disappoints users with nerfed performanceJul 3, 1:10 am
441Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain CredentialsJul 2, 8:10 pm
442Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home DevicesJul 2, 8:10 pm
443FBI Seizes NetNut Proxy Platform, Popa BotnetJul 2, 8:10 pm
444Google loses final appeal to overturn €4.1 billion EU fineJul 2, 4:10 pm
445ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 StoriesJul 2, 4:10 pm
446ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google APIJul 2, 2:10 pm
447ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 SecondsJul 2, 2:10 pm
448Identity Lifecycle Management Wasn't Built for AI Agents Jul 2, 1:10 pm
449Microsoft fixes bug that removed Copilot buttons in OutlookJul 2, 1:10 pm
450Cisco finally confirms attackers exploiting Unified CM flawJul 2, 12:10 pm
451Opera rolls out Paste Protect feature to fight ClickFix attacksJul 2, 11:10 am
452CISA: Microsoft SharePoint RCE flaw now actively exploitedJul 2, 11:10 am
453FortiBleed Credential Theft Linked to INC and Lynx Ransomware OperationsJul 2, 10:10 am
454AI Agent Exploits Langflow RCE to Automate Database Ransomware AttackJul 2, 10:10 am
455Alleged Scattered Spider hacker extradited to the United StatesJul 2, 9:10 am
456New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit ReposJul 2, 8:10 am
457SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active ExploitationJul 2, 7:10 am
458Medtronic notifies customers impacted by ShinyHunters data breachJul 2, 5:10 am
459ISC Stormcast For Thursday, July 2nd, 2026 https://isc.sans.edu/podcastdetail/9992, (Thu, Jul 2nd)Jul 2, 2:10 am
460FortiBleed credential-theft campaign linked to Lynx ransomwareJul 1, 10:10 pm
461New ChocoPoC malware targets researchers via trojanized PoC exploitsJul 1, 9:10 pm
462Kubota says hackers had month-long access to network systemsJul 1, 9:10 pm
46319-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking ChargesJul 1, 8:10 pm
464Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes ClustersJul 1, 8:10 pm
465ChocoPoc malware delivered via trojanized exploits on GitHubJul 1, 8:10 pm
466VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs StealerJul 1, 7:10 pm
467SEO-Poisoned Software Sites Abuse ScreenConnect to Deploy AsyncRATJul 1, 7:10 pm
468DHS confirms hackers breached HSIN info-sharing platformJul 1, 6:10 pm
469Hackers target Microsoft 365 accounts with 81 million login attemptsJul 1, 5:10 pm
470Webinar: Why traditional email security is no longer enoughJul 1, 5:10 pm
471Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run CommandsJul 1, 4:10 pm
472Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign ClassicJul 1, 4:10 pm
473Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF LuresJul 1, 4:10 pm
474AI-Generated Browser Ransomware Abuses Chromium API on Windows and AndroidJul 1, 3:10 pm
475Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation AttemptsJul 1, 3:10 pm
476Turning Indicators into Intelligence in OpenCTI with Criminal IPJul 1, 3:10 pm
4772026 Cybersecurity Assessment: The Gap Between Awareness and ResilienceJul 1, 1:10 pm
478Over 900 Oracle E-Business instances exposed to ongoing attacksJul 1, 1:10 pm
479Microsoft Accelerates Post-Quantum Cryptography Shift to 2029Jul 1, 12:10 pm
480Microsoft fixes GIF functionality in the Windows Emoji PanelJul 1, 11:10 am
481Amazon fined $2.25M for withholding evidence from fraud victimsJul 1, 10:10 am
482Anthropic Restores Claude Fable 5 After U.S. Lifts Jailbreak-Linked Export ControlsJul 1, 8:10 am
483Phantom Squatting Uses AI-Hallucinated Domains for Phishing and MalwareJul 1, 8:10 am
484Adobe patches seven max severity ColdFusion, Campaign flawsJul 1, 8:10 am
485Why Ask Credentials If There Are Secret Codes?, (Wed, Jul 1st)Jul 1, 6:10 am
486Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware DeliveryJul 1, 6:10 am
487Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ AttemptsJul 1, 6:10 am
488Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-ServiceJul 1, 5:10 am
489ISC Stormcast For Wednesday, July 1st, 2026 https://isc.sans.edu/podcastdetail/9990, (Wed, Jul 1st)Jul 1, 2:10 am
490Anthropic to restore Claude Fable access on WednesdayJul 1, 1:10 am
491Anthropic rolls out Sonnet 5 with near-Opus 4.8 performance at a lower priceJul 1, 12:10 am
492Microsoft accelerates quantum-safe roadmap as risks growJun 30, 10:10 pm
493New BioShocking attack manipulates AI browser into data theftJun 30, 10:10 pm
494Malicious PyPI packages give hackers control of Telegram bot serversJun 30, 9:10 pm
495RustDuck Botnet Rebuilds in Rust to Hijack Routers and Servers for DDoSJun 30, 7:10 pm
496Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak DataJun 30, 7:10 pm
497Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App EndpointsJun 30, 6:10 pm
498Silent Swap Crypto Clipper Uses Fake Google Notes Extension to Replace Wallet AddressesJun 30, 4:10 pm
499Fake Perplexity extension on Chrome Web Store tracked searchesJun 30, 4:10 pm
500282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic StudyJun 30, 3:10 pm
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.