cybersec

#TitleDate
1Two Compromised joyfill npm Packages Run RAT When Imported Into Node.jsJul 29, 5:10 am
2ISC Stormcast For Wednesday, July 29th, 2026 https://isc.sans.edu/podcastdetail/10028, (Wed, Jul 29th)Jul 29, 2:10 am
3CubePilot drone software dev hit by DNS hijacking to intercept trafficJul 28, 10:10 pm
4OpenAI models used Artifactory zero-days to escape to the internetJul 28, 9:10 pm
5Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES AttackJul 28, 8:10 pm
6CISA shares advice on isolating vital systems during cyberattacksJul 28, 7:10 pm
7vBulletin fixes critical pre-auth RCE flaw with public exploitJul 28, 6:10 pm
824,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before LoginJul 28, 4:10 pm
9Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its ProcessJul 28, 4:10 pm
10Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as RootJul 28, 2:10 pm
11JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face BreachJul 28, 2:10 pm
12Is Your SSO Protected Against Modern Credential Attacks?Jul 28, 2:10 pm
13Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert RelaysJul 28, 1:10 pm
14Over 24,000 exposed server BMCs leak password hash via decades-old flawJul 28, 1:10 pm
15Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the CostJul 28, 10:10 am
16Data breach at medical billing firm MCBS affects 1.26 million peopleJul 28, 10:10 am
17Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root ExploitJul 28, 9:10 am
18Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging InJul 28, 9:10 am
19AutoIT Payload Injector , (Tue, Jul 28th)Jul 28, 8:10 am
20Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the CostJul 28, 7:10 am
21Attackers Exploit Arista VeloCloud Orchestrator Command Injection FlawJul 28, 6:10 am
22ISC Stormcast For Tuesday, July 28th, 2026 https://isc.sans.edu/podcastdetail/10026, (Tue, Jul 28th)Jul 28, 2:10 am
23Hackers target US firms in FastJson RCE zero-day attacksJul 28, 12:10 am
24Arista patches VeloCloud Orchestrator zero-day exploited in attacksJul 27, 11:10 pm
25New Certighost PoC exploit lets attackers hijack Windows domainsJul 27, 9:10 pm
26New Dysphoria DDoS botnet spreads to 200k devices worldwideJul 27, 9:10 pm
27NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA FrameworkJul 27, 8:10 pm
28Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid DisruptionJul 27, 6:10 pm
29Apple sued over fake App Store crypto wallet app stealing $1.8M in BitcoinJul 27, 6:10 pm
30Public Exploit Released for Patched vBulletin Pre-Auth Code Execution FlawJul 27, 4:10 pm
31Ernst & Young data breach claimed by ShinyHunters extortion gangJul 27, 4:10 pm
32Coca-Cola confirms data theft in Fairlife ransomware attackJul 27, 4:10 pm
33⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and MoreJul 27, 3:10 pm
34Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams UpdateJul 27, 2:10 pm
35n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n ProcessJul 27, 2:10 pm
36Shadow AI agents are multiplying. Here's how to find and secure them.Jul 27, 2:10 pm
37Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows MalwareJul 27, 12:10 pm
38Java Spring Boot "heapdump" scans, (Mon, Jul 27th)Jul 27, 10:10 am
39GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package AdoptionJul 27, 9:10 am
40TELESHIM Abuses Telegram for C2 in Attacks Against Middle East GovernmentsJul 27, 9:10 am
41ISC Stormcast For Monday, July 27th, 2026 https://isc.sans.edu/podcastdetail/10024, (Mon, Jul 27th)Jul 27, 2:10 am
42GitHub, PyPI add time-based defenses against supply chain attacksJul 26, 8:10 pm
43Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th)Jul 26, 4:11 pm
44GitHub, PyPI add time-absed defenses against supply chain attacksJul 26, 3:10 pm
45Steam forum ClickFix attacks infect gamers with XMRig cryptominersJul 25, 11:10 pm
46Malvertising Sends Malware in Pieces, Then Makes the Browser Build the ExecutableJul 25, 8:10 pm
47Malicious sites use JavaScript to build malware in browser memoryJul 25, 4:10 pm
48ShinyHunters data leaks fuel $2,000 sextortion email scamJul 25, 3:10 pm
49Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched AvailableJul 25, 2:10 pm
50DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate PayoutsJul 25, 12:10 pm
51Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCEJul 25, 12:10 pm
52CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account HijackingJul 25, 12:10 pm
53OpenAI confirms ChatGPT is down worldwideJul 25, 10:10 am
54Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitJul 25, 9:10 am
55OnTrac notifies customers of data breach after network hackJul 24, 8:10 pm
56Hermes AI agent used to automate attack on Thai Finance MinistryJul 24, 7:10 pm
57Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accountsJul 24, 6:10 pm
58BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware DeliveryJul 24, 5:10 pm
59Microsoft blames massive Microsoft 365 outage on maintenance bugJul 24, 4:10 pm
60Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain ControllerJul 24, 3:10 pm
61Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI AttackJul 24, 2:10 pm
62Chick-fil-A data breach affects more than 13,000 customersJul 24, 2:10 pm
63Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's ServersJul 24, 1:10 pm
64ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing LinkJul 24, 1:10 pm
65Europol flags 4,340 URLs for removal in 'The Com' crackdownJul 24, 1:10 pm
66Man gets six years for hacking 750 women's Snapchat accountsJul 24, 12:10 pm
67Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can DoJul 24, 12:10 pm
68Golden Chickens Resurfaces With Four New Malware Families and Modular ImplantsJul 24, 11:10 am
69Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance MinistryJul 24, 11:10 am
70Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers SayJul 24, 9:10 am
71NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private ChatsJul 24, 9:10 am
72Clop ransomware targets Windchill, FlexPLM in data theft attacksJul 24, 8:10 am
73Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 AttacksJul 24, 7:10 am
74ISC Stormcast For Friday, July 24th, 2026 https://isc.sans.edu/podcastdetail/10022, (Fri, Jul 24th)Jul 24, 2:10 am
75New Dolphin X malware uses AI to rank high-value targetsJul 23, 10:10 pm
76Australian energy provider Origin says data breach exposes client dataJul 23, 9:10 pm
77Fake Claude app promoted by Bing ads pushes SectopRAT malwareJul 23, 8:10 pm
78Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA CodesJul 23, 7:10 pm
79ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More StoriesJul 23, 5:10 pm
80Hackers abuse Notepad++ plugins to stealthily install malwareJul 23, 5:10 pm
81Russian hackers exploit Zimbra zero-click flaw for email theftJul 23, 5:10 pm
82Microsoft 365 outage affects Teams, SharePoint and other servicesJul 23, 4:10 pm
83China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare AttacksJul 23, 3:10 pm
84Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and EdgeJul 23, 3:10 pm
85Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac FilesJul 23, 3:10 pm
86When the "Autonomous Attacker" Is Your Own AI Model, (Thu, Jul 23rd)Jul 23, 2:10 pm
87FedRAMP Rev5 Is Ending: What the 20x Transition Really RequiresJul 23, 2:10 pm
88EU fines Google $1 billion for search, app store antitrust violationsJul 23, 1:10 pm
89Google Adds Selfie Video Recovery for Users Locked Out of Their AccountsJul 23, 12:10 pm
90Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM ServersJul 23, 12:10 pm
91New RefluXFS Linux flaw lets attackers gain root privilegesJul 23, 12:10 pm
92How Synthetic Identity Fraud is Coming for Machine IdentitiesJul 23, 12:10 pm
93Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL InstallsJul 23, 10:10 am
94Microsoft working to fix Exchange Online mailbox quarantine issueJul 23, 10:10 am
95New msaRAT malware uses Chrome, Edge browsers to route C2 trafficJul 23, 10:10 am
96Check Point warns of SmartConsole zero-day exploited in attacksJul 23, 9:10 am
97Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin AccessJul 23, 8:10 am
98ISC Stormcast For Thursday, July 23rd, 2026 https://isc.sans.edu/podcastdetail/10020, (Thu, Jul 23rd)Jul 23, 2:10 am
99Upbound says hack caused $13 million in fraudulent Acima leasesJul 22, 10:10 pm
100GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP TierJul 22, 9:10 pm
101South Korea discloses data breach impacting diplomats worldwideJul 22, 8:10 pm
102Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web DataJul 22, 7:10 pm
103Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop InstallsJul 22, 7:10 pm
104Rondo Meets Geoserver, (Wed, Jul 22nd)Jul 22, 6:10 pm
105Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattackJul 22, 5:10 pm
106How enterprise GenAI can amplify ransomware risk — and how to contain itJul 22, 4:10 pm
107New InfraTrust report reveals infrastructure flaws admins should patch firstJul 22, 3:10 pm
108The Fastest Path to AI Adoption Runs Through SecurityJul 22, 2:10 pm
109Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without AuthenticationJul 22, 2:10 pm
110Adobe Chrome extension flaw let sites access private WhatsApp chatsJul 22, 2:10 pm
111Stop renting storage space — this lifetime 2TB plan is yours for $59Jul 22, 12:10 pm
112Why Modern SOCs Need Multi-Layered DetectionsJul 22, 12:10 pm
113CISA orders urgent action on actively exploited Langflow RCE flawJul 22, 12:10 pm
114Microsoft to stop Exchange 2016 / 2019 security updates in OctoberJul 22, 11:10 am
115Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFAJul 22, 8:10 am
116Chick-fil-A discloses data breach after credential stuffing attacksJul 22, 7:10 am
117OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat BenchmarkJul 22, 6:10 am
118Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review AgentsJul 22, 6:10 am
119OpenAI says its AI models hacked Hugging Face during testingJul 22, 6:10 am
120Trojanized Newtonsoft.Json Fork Hides Game-Rigging Code in a Working LibraryJul 22, 6:10 am
121LG to Ban Residential Proxies from Smart TV AppsJul 22, 2:10 am
122ISC Stormcast For Wednesday, July 22nd, 2026 https://isc.sans.edu/podcastdetail/10018, (Wed, Jul 22nd)Jul 22, 2:10 am
123FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malwareJul 21, 11:10 pm
124Police dismantle Kratos phishing platform, arrest developerJul 21, 11:10 pm
125Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail LogsJul 21, 8:10 pm
126Critical SharePoint RCE flaw exploited to steal machine keysJul 21, 8:10 pm
127Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leakJul 21, 7:10 pm
128Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software VulnerabilitiesJul 21, 5:10 pm
129AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run CodeJul 21, 5:10 pm
130Critical wp2shell WordPress flaws exploited to install webshellsJul 21, 5:10 pm
131Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoCJul 21, 3:10 pm
132Zimbra Patches Critical SNMP Command Injection and Four XSS VulnerabilitiesJul 21, 2:10 pm
133Captive Portal Detection, (Tue, Jul 21st)Jul 21, 2:10 pm
134Closing the Identity Gaps in Critical Infrastructure SecurityJul 21, 2:10 pm
135Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial AccessJul 21, 2:10 pm
136New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an ExploitJul 21, 1:10 pm
137N-day is Becoming N-Hour. Patching Faster Won't Save You.Jul 21, 1:10 pm
138Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCsJul 21, 1:10 pm
139US seizes over 1,000 websites in FIFA World Cup piracy crackdownJul 21, 12:10 pm
140Critical Palo Alto VPN bug now exploited by Qilin ransomware gangJul 21, 11:10 am
141WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass ScanningJul 21, 9:10 am
142Microsoft shares manual fix for WSUS sync delays and timeoutsJul 21, 9:10 am
143Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code ExecutionJul 21, 8:10 am
144New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE AttackJul 21, 8:10 am
145Windows LegacyHive zero-day flaw gets free, unofficial patchesJul 21, 8:10 am
146ISC Stormcast For Tuesday, July 21st, 2026 https://isc.sans.edu/podcastdetail/10016, (Tue, Jul 21st)Jul 21, 2:10 am
147Hackers steal $23.7 million in crypto from Ostium in off-chain attackJul 20, 11:10 pm
148SonicWall SMA1000 flaws exploited as zero-days to push custom malwareJul 20, 11:10 pm
149Estée Lauder discloses data breach via Oracle E-Business flawJul 20, 11:10 pm
150Cursor, Codex, Gemini CLI, Antigravity hit by sandbox escapesJul 20, 10:10 pm
151JadePuffer agentic attacks now target AI model data with ransomwareJul 20, 9:10 pm
152FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader MalwareJul 20, 8:10 pm
153WordPress Exploitation Underway (CVE-2026-63030), (Mon, Jul 20th)Jul 20, 7:10 pm
154Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware CampaignJul 20, 6:10 pm
155New HollowGraph malware uses Microsoft Graph for stealthy C2 commsJul 20, 6:10 pm
156HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050Jul 20, 3:10 pm
157⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and MoreJul 20, 2:10 pm
158An AI SOC Evaluation Guide for Security LeadersJul 20, 2:10 pm
159Mythos Didn't Break Your Security Program. Your Exposure Window Could.Jul 20, 1:10 pm
160Hugging Face warns an autonomous AI agent hacked its networkJul 20, 1:10 pm
161Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and UkraineJul 20, 1:10 pm
162Hugging Face discloses breach linked to autonomous AI agentJul 20, 12:10 pm
163Microsoft confirms Windows Server Update Services sync delaysJul 20, 11:10 am
164Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCsJul 20, 10:10 am
165New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During ExtractionJul 20, 10:10 am
166Critical ServiceNow code execution flaw now exploited in attacksJul 20, 10:10 am
167Windows KB5121767 OOB update fixes shutdowns on some Dell PCsJul 20, 10:10 am
168SleeperGem Uses Three Malicious RubyGems Packages to Target Developer MachinesJul 20, 6:10 am
169World's Largest AI Model Repository Hugging Face Breached by Autonomous AI AgentJul 20, 6:10 am
170ISC Stormcast For Monday, July 20th, 2026 https://isc.sans.edu/podcastdetail/10014, (Mon, Jul 20th)Jul 20, 2:10 am
171Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code ExecutionJul 19, 10:10 pm
172SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root AccessJul 19, 3:10 pm
173UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih MalwareJul 19, 3:10 pm
174Hackers abuse ViPNet software to target Russian govt agenciesJul 19, 3:10 pm
175Scans for Hikvision Intelligent Security API, (Sun, Jul 19th)Jul 19, 3:10 pm
176Update now: 7-Zip fixes RCE flaw exploitable with malicious archivesJul 18, 8:10 pm
177WordPress Core "wp2shell" RCE flaws get public exploits, patch nowJul 18, 6:10 pm
178Microsoft warns of surge in ACR Stealer attacks on customersJul 18, 3:10 pm
179The Future of Age Verification: Your Face Never Leaves Your DeviceJul 18, 2:10 pm
180Abbott probes two cyber incidents amid extortion claimsJul 18, 12:10 am
181New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run CodeJul 17, 10:10 pm
182OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS RequestsJul 17, 9:10 pm
183Abbott Laboratories probes two cyber incidents amid extortion claimsJul 17, 9:10 pm
184Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RATJul 17, 8:10 pm
185GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate TheftJul 17, 6:10 pm
186New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes TokensJul 17, 6:10 pm
187HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payloadJul 17, 6:10 pm
188Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag ImagesJul 17, 4:10 pm
189Ernst & Young discloses data breach after support system hackJul 17, 3:10 pm
190Inside the Search for "Clean" Residential Proxies for CardingJul 17, 2:10 pm
191Armenia Detains Russian Tourist on U.S. Warrant for REvil Hacker, Lawyers Say Wrong ManJul 17, 12:10 pm
192The Race to Field Military Autonomy Is On, Can Trusted Information Infrastructure Keep Pace?Jul 17, 12:10 pm
193E.U. Orders Google to Open Android Mic, Camera and Screen to Rival AI AssistantsJul 17, 12:10 pm
194New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for EspionageJul 17, 11:10 am
195ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 FilesJul 17, 11:10 am
196New Windows LegacyHive zero-day gives hackers admin privilegesJul 17, 11:10 am
197Windows Server 2022 reach end of mainstream support in 90 daysJul 17, 10:10 am
198US charges two over laundering $43 million from investment fraudJul 17, 9:10 am
199CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEVJul 17, 8:10 am
200CISA urges immediate action on actively exploited Fortinet flawsJul 17, 7:10 am
201ISC Stormcast For Friday, July 17th, 2026 https://isc.sans.edu/podcastdetail/10012, (Fri, Jul 17th)Jul 17, 2:10 am
202New ClickLock macOS malware traps users into revealing login passwordJul 16, 10:10 pm
203Coca-Cola says Fairlife ransomware attack halts US dairy productionJul 16, 9:10 pm
204Claude Chrome extension flaw lets malicious extensions trigger AI actionsJul 16, 8:10 pm
205Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL HackJul 16, 7:10 pm
206New OkoBot framework deploys 20 payloads to steal data, cryptoJul 16, 7:10 pm
207ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More StoriesJul 16, 4:10 pm
208n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another IssuerJul 16, 3:10 pm
209New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their PasswordJul 16, 2:10 pm
210New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run CommandsJul 16, 2:10 pm
21123andMe to pay $18 million in new genetics data breach settlementJul 16, 2:10 pm
212AI Agents Broke the Security Playbook. Here's What Replaces It.Jul 16, 2:10 pm
213Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM BackdoorJul 16, 1:10 pm
214New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker CommandsJul 16, 1:10 pm
21520+ Hijacked Government Websites Became
an Attack ChannelJul 16, 1:10 pm
216Scattered Spider members behind TfL hack get five years in prisonJul 16, 1:10 pm
217Windows 11 24H2 Home and Pro reach end of support in 90 daysJul 16, 12:10 pm
218Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-WideJul 16, 11:10 am
219AI Can Find Bugs, But Human Knowledge Still Proves ThemJul 16, 11:10 am
220Russian hackers trojanize WebEx, Zoom apps to push Starland malwareJul 16, 11:10 am
221CISA orders feds to patch actively exploited Oracle flaw by SaturdayJul 16, 11:10 am
222New Spirals ransomware encrypts victim network in under 24 hoursJul 16, 10:10 am
223Zoom Patches Critical Windows Flaw That Could Enable Account TakeoverJul 16, 9:10 am
224OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 SolJul 16, 9:10 am
225ISC Stormcast For Thursday, July 16th, 2026 https://isc.sans.edu/podcastdetail/10010, (Thu, Jul 16th)Jul 16, 3:10 am
226Dutch police bust investment fraud ring stealing over €100 millionJul 15, 10:10 pm
227Zoom warns of critical account takeover vulnerabilityJul 15, 9:10 pm
228Google Gemini CLI abused as a hacking agent, malware botnet operatorJul 15, 7:10 pm
229TuxBot v3 Evolution Shows Signs of LLM-Assisted IoT Botnet DevelopmentJul 15, 7:10 pm
230AsyncAPI npm packages infected with credential-stealing malwareJul 15, 6:10 pm
231OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor AppsJul 15, 5:10 pm
232​ ​AsyncAPI npm packages infected with credential-stealing malwareJul 15, 4:10 pm
233Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security FlawsJul 15, 2:10 pm
234We built a vulnerability vending machine: AI tokens in, zero-days outJul 15, 2:10 pm
235New Webinar: Closing the Approval Gap in AI-Era Ad TechJul 15, 1:10 pm
236Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch TuesdayJul 15, 1:10 pm
237SASE Has An AI Blind Spot. Inspecting Packets Is No Longer Enough.Jul 15, 1:10 pm
238Compromised AsyncAPI npm Packages Deliver Multi-Stage Botnet MalwareJul 15, 11:11 am
239CISA warns admins to patch actively exploited SharePoint flawsJul 15, 11:11 am
240Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code ExecutionJul 15, 11:10 am
241Microsoft: Some Dell PCs shut down after recent Windows updatesJul 15, 9:10 am
242US charges alleged operators of Russian bulletproof hosting serviceJul 15, 8:10 am
243Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin CommandsJul 15, 7:10 am
244Recent DShield SIEM Update, (Tue, Jul 14th)Jul 15, 2:10 am
245ISC Stormcast For Wednesday, July 15th, 2026 https://isc.sans.edu/podcastdetail/10008, (Wed, Jul 15th)Jul 15, 2:10 am
246SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch nowJul 14, 10:10 pm
247Spanish Police take down €140 million cyber fraud ring, arrest fourJul 14, 9:10 pm
248Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active AttackJul 14, 9:10 pm
249Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail ReadsJul 14, 8:10 pm
250SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify DataJul 14, 8:10 pm
251Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Here , (Tue, Jul 14th)Jul 14, 8:10 pm
252Nearly 300 GitHub repos pose as legit software to push malwareJul 14, 8:10 pm
253Microsoft Patches a Record 570 Security FlawsJul 14, 8:10 pm
254Microsoft releases Windows 10 KB5099539 extended security updateJul 14, 7:10 pm
255LabubaRAT Masquerades as NVIDIA Software to Control Windows HostsJul 14, 6:10 pm
256Windows 11 KB5101650 & KB5099414 cumulative updates releasedJul 14, 6:10 pm
257Microsoft July 2026 Patch Tuesday fixes massive 570 flaws, 3 zero-daysJul 14, 6:10 pm
258LastPass, Bitwarden users targeted with fake security alertsJul 14, 4:10 pm
259Progress confirms ShareFile zero-day flaw behind Storage Zone shutdownJul 14, 4:10 pm
260RabbitMQ Flaws Could Leak OAuth Secrets and Expose Cross-Tenant Queue MetadataJul 14, 3:10 pm
261OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra CredentialsJul 14, 2:10 pm
262How Pentera Turns AI Security Workflows into Validation EnginesJul 14, 2:10 pm
263Study of 85 Crypto Wallet Extensions Finds Address Leaks and Cross-Site Tracking RisksJul 14, 2:10 pm
26411 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure BootJul 14, 2:10 pm
265You Don't Have to Run an Exploit to Know If You're VulnerableJul 14, 2:10 pm
266New phishing kits target Microsoft 365 accounts, evade MFAJul 14, 1:10 pm
267Microsoft Entra ID gets passkeys default authentication starting SeptemberJul 14, 1:10 pm
268SAP warns of critical flaws in NetWeaver and Commerce CloudJul 14, 12:10 pm
269Grok Build Uploaded Entire Git Repositories to xAI Storage, Not Just Files It ReadJul 14, 11:10 am
270Microsoft starts testing cleaner Windows Search without adsJul 14, 11:10 am
271Grok Build Uploads Entire Git Repositories to xAI Storage, Not Just Files It ReadsJul 14, 10:10 am
272US sanctions VPN, malware providers for enabling ransomware attacksJul 14, 10:10 am
273Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters ActivityJul 14, 9:10 am
274148 npm Packages Disguised as Student Proxies Turned Browsers Into a DDoS BotnetJul 14, 9:10 am
275U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware SupportJul 14, 9:10 am
276Microsoft Maps Year-Long ShinyHunters-Linked Salesforce Data Theft Across Three PathsJul 14, 7:10 am
277ISC Stormcast For Tuesday, July 14th, 2026 https://isc.sans.edu/podcastdetail/10006, (Tue, Jul 14th)Jul 14, 3:10 am
278Japan's largest taxi operator shuts systems after cyberattackJul 13, 9:10 pm
279Hackers backdoor Jscrambler npm package with infostealer malwareJul 13, 8:10 pm
280New CrashStealer malware poses as Apple crash reporting toolJul 13, 7:10 pm
281Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector FoundJul 13, 6:10 pm
282CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper ChecksJul 13, 6:10 pm
283New MemGhost Attack Plants Persistent False Memories in AI Agents Through One EmailJul 13, 4:10 pm
284Lessons Learned from CISA’s Recent GitHub LeakJul 13, 4:10 pm
285⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and MoreJul 13, 4:10 pm
286CISA warns of actively exploited RCE flaws in Joomla extensionsJul 13, 4:10 pm
287Lidl discloses online shop breach after service provider hackJul 13, 3:10 pm
288Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session TheftJul 13, 2:10 pm
289UK charges suspects linked to Russian Coms call spoofing platformJul 13, 2:10 pm
290Breach at the Beach: Play the Ultimate Entra ID CTFJul 13, 2:10 pm
291Attacker Uses Suspected AI-Generated PowerShell Script to Map Active DirectoryJul 13, 1:10 pm
292Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst CopilotsJul 13, 1:10 pm
293Meta Files Patent for AI That Can Listen All Day and Track How You're FeelingJul 13, 1:10 pm
294EU sanctions Russian GRU military hackers over cyberattacksJul 13, 12:10 pm
295US and allies warn of Russian critical infrastructure attacksJul 13, 10:10 am
296Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365Jul 13, 9:10 am
297iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-DaysJul 13, 7:10 am
298Someone Is Scanning for Your MCP Servers and AI Assistant Credentials, (Mon, Jul 13th)Jul 13, 5:10 am
299ISC Stormcast For Monday, July 13th, 2026 https://isc.sans.edu/podcastdetail/10004, (Mon, Jul 13th)Jul 13, 2:10 am
300OpenAI temporarily relaxes GPT-5.6 Sol usage limitsJul 13, 1:10 am
301Claude Fable 5 stays free for paid users until July 19 as Anthropic buys more timeJul 12, 8:10 pm
302RedHook Android malware now uses Wireless ADB for shell accessJul 12, 3:10 pm
303Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage CampaignsJul 11, 7:10 pm
304Compromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During InstallJul 11, 7:10 pm
305Australia warns of global campaign targeting vulnerable CMS platformsJul 11, 3:10 pm
306Wireshark 4.6.7 Released, (Sat, Jul 11th)Jul 11, 10:10 am
307'Ghostcommit' hides prompt injection in images to fool AI agents, steal secretsJul 11, 9:10 am
308Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User SessionsJul 11, 8:10 am
309New U-Boot flaws could enable stealthy firmware attacksJul 10, 10:10 pm
310URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security ThreatJul 10, 7:10 pm
311Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at BootJul 10, 6:10 pm
312Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm PackagesJul 10, 6:10 pm
313Ryuk ransomware member pleads guilty in the US, faces 15 years in prisonJul 10, 6:10 pm
314Progress urges ShareFile admins to shut down servers over “credible” threatJul 10, 5:10 pm
315Police suspects Dutch hackers were involved in Odido breachJul 10, 5:10 pm
316Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be PatchedJul 10, 4:10 pm
317Money launderer accused of stealing seized crypto while in prisonJul 10, 4:10 pm
318Hackers exploit critical auth bypass in Gitea Docker imageJul 10, 4:10 pm
319Researcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw FlawsJul 10, 3:10 pm
320Attackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency WalletsJul 10, 2:10 pm
321New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 TrafficJul 10, 2:10 pm
322The Replicant in Your Directory: AI Agents and the Identity Security GapJul 10, 2:10 pm
323Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 AccessJul 10, 12:10 pm
324Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and TrackingJul 10, 12:10 pm
325Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress SitesJul 10, 12:10 pm
326From 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at ScaleJul 10, 12:10 pm
327Zimbra urges customers to patch critical web client XSS flawJul 10, 12:10 pm
328Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 ServersJul 10, 12:10 pm
329Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat AttacksJul 10, 10:10 am
330Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency WalletsJul 10, 10:10 am
331"Comment stuffing" in an HTML phishing attachment as a mechanism for evading AI-based detection?, (Fri, Jul 10th)Jul 10, 10:10 am
332Former ransomware negotiator gets 4 years for BlackCat attacksJul 10, 9:10 am
333ISC Stormcast For Friday, July 10th, 2026 https://isc.sans.edu/podcastdetail/10002, (Fri, Jul 10th)Jul 10, 2:10 am
334OpenMandriva Linux says contributor tried to sabotage the projectJul 9, 11:10 pm
335Injective SDK on npm infected with cryptocurrency wallet stealerJul 9, 8:10 pm
336New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and SpywareJul 9, 7:10 pm
337Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate OrgsJul 9, 7:10 pm
338ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More StoriesJul 9, 5:10 pm
339npm 12 Disables Install Scripts by Default to Reduce Supply Chain RiskJul 9, 5:10 pm
340Microsoft expects more Windows security updates from AI-discovered flawsJul 9, 5:10 pm
341New Helix vishing group emerges in SharePoint data theft attacksJul 9, 5:10 pm
342The Hidden Security Risks of Reduced Summer IT CoverageJul 9, 3:10 pm
343New Forg365 phishing platform uses AI to target Microsoft 365 accountsJul 9, 3:10 pm
344AI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps UpJul 9, 1:10 pm
345GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint DefensesJul 9, 12:10 pm
346Summer of ClearinghousesJul 9, 12:10 pm
347Microsoft to retire the OWA Light client in Exchange ServerJul 9, 11:10 am
348Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM PrivilegesJul 9, 10:10 am
349Police arrests 5,800 suspects in global anti-fraud crackdownJul 9, 10:10 am
350Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI ImagesJul 9, 8:10 am
351AssuranceAmerica data breach exposes records of 6.9 million driversJul 9, 8:10 am
352Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running ItJul 9, 6:10 am
353Microsoft patches RoguePlanet Defender zero-day vulnerabilityJul 9, 6:10 am
354Fake 7-Zip Installers Turn Devices Into Residential Proxy NodesJul 9, 5:10 am
355GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding AgentsJul 9, 5:10 am
356_HELP_ME_ESCAPE_FROM_BELARUS_PLEASE_ [Guest Diary], (Tue, Jul 7th)Jul 9, 2:10 am
357ISC Stormcast For Thursday, July 9th, 2026 https://isc.sans.edu/podcastdetail/10000, (Thu, Jul 9th)Jul 9, 2:10 am
358Mount Royal University confirms breach as hackers claim attackJul 8, 10:10 pm
359Fake Paysafe, Skrill SDKs on NPM and PyPi steal credentialsJul 8, 8:10 pm
360Hackers exploit Roundcube flaw to spy on academic researchersJul 8, 7:10 pm
361AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch AttackersJul 8, 6:10 pm
362New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet MalwareJul 8, 5:10 pm
363Entra passkey enrollment vishing targets Microsoft 365 usersJul 8, 5:10 pm
364Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OSJul 8, 3:10 pm
365SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking UsersJul 8, 2:10 pm
366New Ghost Phishing Wave Is Breaking Traditional Email SecurityJul 8, 2:10 pm
3673 Ways AI Powers Service Desk Attacks and How to Prevent ThemJul 8, 2:10 pm
368Felons, Fraudsters Flog Offensive Cybersecurity StartupJul 8, 1:10 pm
369GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in CodeJul 8, 12:10 pm
370Telco giant KDDI says data breach affects over 12 million peopleJul 8, 12:10 pm
371The Verification Step Is the New ATO Battleground in 2026Jul 8, 12:10 pm
372GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking SignaturesJul 8, 12:10 pm
373DuckDuckGo browser now blocks YouTube video adsJul 8, 12:10 pm
374China-Linked UAT-7810 Expands ORB Network With New LONGLEASH MalwareJul 8, 10:10 am
375CISA orders feds to prioritize patching Langflow auth bypass flawJul 8, 10:10 am
376My Stack Simulator, (Wed, Jul 8th)Jul 8, 9:10 am
377Ubiquiti warns of new max severity UniFi OS vulnerabilityJul 8, 9:10 am
378CISA orders feds to patch max severity ColdFusion flaw by FridayJul 8, 8:10 am
379CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEVJul 8, 7:10 am
38015-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux DistrosJul 8, 7:10 am
381ISC Stormcast For Wednesday, July 8th, 2026 https://isc.sans.edu/podcastdetail/9998, (Wed, Jul 8th)Jul 8, 2:10 am
382Accenture confirms breach after hacker offers stolen data for saleJul 7, 10:10 pm
383More Odd DNS Records: NIMLOC, (Tue, Jul 7th)Jul 7, 7:10 pm
384Chinese hackers develop LONGLEASH malware to expand ORB networkJul 7, 7:10 pm
385Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX ChatbotsJul 7, 6:10 pm
386RedWing MaaS Packages Android Bank Fraud as a Telegram Rental ServiceJul 7, 6:10 pm
387Hidden backdoor in Tenda router firmware grants admin accessJul 7, 6:10 pm
388DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 AccountsJul 7, 5:10 pm
389Spain arrests suspected member of pro-Russian hacktivist groupsJul 7, 4:10 pm
390Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo DataJul 7, 3:10 pm
391Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across TenantsJul 7, 2:10 pm
392Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider HackerJul 7, 2:10 pm
393The GitHub Actions Attack Pattern Your CI Security Scanners MissJul 7, 2:10 pm
394Webinar tomorrow: Why modern email attacks require a new approach to defenseJul 7, 1:10 pm
395What Changes When Your Software Supply Chain Includes AI Writing Your Code?Jul 7, 12:10 pm
396New Januscape Linux flaw allows VM escape on Intel, AMD devicesJul 7, 12:10 pm
397Suspected China-Aligned Hackers Exploit Roundcube Flaws Against UniversitiesJul 7, 10:10 am
398Microsoft to enable Windows settings backup by default for orgsJul 7, 10:10 am
399BeyondTrust warns of critical flaws in remote access softwareJul 7, 9:10 am
400CERT/CC Warns of Hidden Admin Backdoor in Tenda Router FirmwareJul 7, 8:10 am
401Microsoft testing new Cloud Rebuild Windows 11 recovery featureJul 7, 8:10 am
402BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRAJul 7, 7:10 am
403ISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th)Jul 7, 2:10 am
404Fake IT support calls on Microsoft Teams push EtherRAT malwareJul 6, 9:10 pm
405Phishing poses as big-brand job interview to steal Google accountsJul 6, 9:10 pm
406Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli OrganizationsJul 6, 8:10 pm
40716-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 SystemsJul 6, 7:10 pm
408Vietnam arrests suspects behind HiAnime anime piracy serviceJul 6, 7:10 pm
409Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After DisclosureJul 6, 6:10 pm
410⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and MoreJul 6, 2:10 pm
411Max severity Adobe ColdFusion flaw now exploited in attacksJul 6, 2:10 pm
412RCS and DNS: The NAPTR Record, (Mon, Jul 6th)Jul 6, 2:10 pm
413Software Is Now Written at the Speed of Thought. Security Isn't.Jul 6, 2:10 pm
414Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRATJul 6, 1:10 pm
415How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from Bolt-On AI solutionsJul 6, 1:10 pm
416ISC Stormcast For Monday, July 6th, 2026 https://isc.sans.edu/podcastdetail/9994, (Mon, Jul 6th)Jul 6, 12:10 pm
417New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOSJul 6, 9:10 am
418New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable EmissionsJul 6, 9:10 am
419Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited PagesJul 6, 8:10 am
420SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting PackingJul 6, 7:10 am
421Flipper Zero firmware development continues with community helpJul 5, 3:10 pm
422JadePuffer ransomware used AI agent to automate entire attackJul 4, 3:10 pm
423U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion CaseJul 4, 2:10 pm
424North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider CampaignJul 4, 12:10 pm
425Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded DevicesJul 3, 10:10 pm
426New Avalon Malware Framework Packs CrownX Ransomware CapabilitiesJul 3, 8:11 pm
427New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits AndroidJul 3, 8:10 pm
428NetNut proxy network disrupted, 2 million infected devices cut offJul 3, 6:10 pm
429North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer SecretsJul 3, 5:10 pm
430ARToken PhaaS exposes EvilTokens' Microsoft 365 phishing toolkitJul 3, 3:10 pm
431Armored Likho Targets Government Agencies, Power Sector with BusySnake StealerJul 3, 2:10 pm
432European Parliament Member Investigating Spyware Was Hacked With PegasusJul 3, 11:10 am
433PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login PasswordsJul 3, 9:10 am
434Claude Fable 5 isn’t permanently leaving subscriptions, Anthropic saysJul 3, 2:10 am
435Claude Fable relaunch disappoints users with nerfed performanceJul 3, 1:10 am
436Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain CredentialsJul 2, 8:10 pm
437Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home DevicesJul 2, 8:10 pm
438FBI Seizes NetNut Proxy Platform, Popa BotnetJul 2, 8:10 pm
439Google loses final appeal to overturn €4.1 billion EU fineJul 2, 4:10 pm
440ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 StoriesJul 2, 4:10 pm
441ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google APIJul 2, 2:10 pm
442ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 SecondsJul 2, 2:10 pm
443Identity Lifecycle Management Wasn't Built for AI Agents Jul 2, 1:10 pm
444Microsoft fixes bug that removed Copilot buttons in OutlookJul 2, 1:10 pm
445Cisco finally confirms attackers exploiting Unified CM flawJul 2, 12:10 pm
446Opera rolls out Paste Protect feature to fight ClickFix attacksJul 2, 11:10 am
447CISA: Microsoft SharePoint RCE flaw now actively exploitedJul 2, 11:10 am
448FortiBleed Credential Theft Linked to INC and Lynx Ransomware OperationsJul 2, 10:10 am
449AI Agent Exploits Langflow RCE to Automate Database Ransomware AttackJul 2, 10:10 am
450Alleged Scattered Spider hacker extradited to the United StatesJul 2, 9:10 am
451New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit ReposJul 2, 8:10 am
452SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active ExploitationJul 2, 7:10 am
453Medtronic notifies customers impacted by ShinyHunters data breachJul 2, 5:10 am
454ISC Stormcast For Thursday, July 2nd, 2026 https://isc.sans.edu/podcastdetail/9992, (Thu, Jul 2nd)Jul 2, 2:10 am
455FortiBleed credential-theft campaign linked to Lynx ransomwareJul 1, 10:10 pm
456New ChocoPoC malware targets researchers via trojanized PoC exploitsJul 1, 9:10 pm
457Kubota says hackers had month-long access to network systemsJul 1, 9:10 pm
45819-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking ChargesJul 1, 8:10 pm
459Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes ClustersJul 1, 8:10 pm
460ChocoPoc malware delivered via trojanized exploits on GitHubJul 1, 8:10 pm
461VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs StealerJul 1, 7:10 pm
462SEO-Poisoned Software Sites Abuse ScreenConnect to Deploy AsyncRATJul 1, 7:10 pm
463DHS confirms hackers breached HSIN info-sharing platformJul 1, 6:10 pm
464Hackers target Microsoft 365 accounts with 81 million login attemptsJul 1, 5:10 pm
465Webinar: Why traditional email security is no longer enoughJul 1, 5:10 pm
466Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run CommandsJul 1, 4:10 pm
467Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign ClassicJul 1, 4:10 pm
468Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF LuresJul 1, 4:10 pm
469AI-Generated Browser Ransomware Abuses Chromium API on Windows and AndroidJul 1, 3:10 pm
470Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation AttemptsJul 1, 3:10 pm
471Turning Indicators into Intelligence in OpenCTI with Criminal IPJul 1, 3:10 pm
4722026 Cybersecurity Assessment: The Gap Between Awareness and ResilienceJul 1, 1:10 pm
473Over 900 Oracle E-Business instances exposed to ongoing attacksJul 1, 1:10 pm
474Microsoft Accelerates Post-Quantum Cryptography Shift to 2029Jul 1, 12:10 pm
475Microsoft fixes GIF functionality in the Windows Emoji PanelJul 1, 11:10 am
476Amazon fined $2.25M for withholding evidence from fraud victimsJul 1, 10:10 am
477Anthropic Restores Claude Fable 5 After U.S. Lifts Jailbreak-Linked Export ControlsJul 1, 8:10 am
478Phantom Squatting Uses AI-Hallucinated Domains for Phishing and MalwareJul 1, 8:10 am
479Adobe patches seven max severity ColdFusion, Campaign flawsJul 1, 8:10 am
480Why Ask Credentials If There Are Secret Codes?, (Wed, Jul 1st)Jul 1, 6:10 am
481Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware DeliveryJul 1, 6:10 am
482Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ AttemptsJul 1, 6:10 am
483Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-ServiceJul 1, 5:10 am
484ISC Stormcast For Wednesday, July 1st, 2026 https://isc.sans.edu/podcastdetail/9990, (Wed, Jul 1st)Jul 1, 2:10 am
485Anthropic to restore Claude Fable access on WednesdayJul 1, 1:10 am
486Anthropic rolls out Sonnet 5 with near-Opus 4.8 performance at a lower priceJul 1, 12:10 am
487Microsoft accelerates quantum-safe roadmap as risks growJun 30, 10:10 pm
488New BioShocking attack manipulates AI browser into data theftJun 30, 10:10 pm
489Malicious PyPI packages give hackers control of Telegram bot serversJun 30, 9:10 pm
490RustDuck Botnet Rebuilds in Rust to Hijack Routers and Servers for DDoSJun 30, 7:10 pm
491Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak DataJun 30, 7:10 pm
492Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App EndpointsJun 30, 6:10 pm
493Silent Swap Crypto Clipper Uses Fake Google Notes Extension to Replace Wallet AddressesJun 30, 4:10 pm
494Fake Perplexity extension on Chrome Web Store tracked searchesJun 30, 4:10 pm
495282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic StudyJun 30, 3:10 pm
496GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection RisksJun 30, 3:10 pm
497Lessons from the Underground: How to Combat Business Email CompromiseJun 30, 2:10 pm
498What the Numbers Say About FIFA 2026 Cyber RiskJun 30, 1:10 pm
499Microsoft adds smarter bot protection to Teams meetingsJun 30, 12:10 pm
500Insurance giant Aflac discloses data breach after subsidiary hackJun 30, 12:10 pm
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.