cybersec

#TitleDate
1CubePilot drone software dev hit by DNS hijacking to intercept trafficJul 28, 10:10 pm
2OpenAI models used Artifactory zero-days to escape to the internetJul 28, 9:10 pm
3Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES AttackJul 28, 8:10 pm
4CISA shares advice on isolating vital systems during cyberattacksJul 28, 7:10 pm
5vBulletin fixes critical pre-auth RCE flaw with public exploitJul 28, 6:10 pm
624,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before LoginJul 28, 4:10 pm
7Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its ProcessJul 28, 4:10 pm
8Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as RootJul 28, 2:10 pm
9JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face BreachJul 28, 2:10 pm
10Is Your SSO Protected Against Modern Credential Attacks?Jul 28, 2:10 pm
11Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert RelaysJul 28, 1:10 pm
12Over 24,000 exposed server BMCs leak password hash via decades-old flawJul 28, 1:10 pm
13Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the CostJul 28, 10:10 am
14Data breach at medical billing firm MCBS affects 1.26 million peopleJul 28, 10:10 am
15Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root ExploitJul 28, 9:10 am
16Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging InJul 28, 9:10 am
17AutoIT Payload Injector , (Tue, Jul 28th)Jul 28, 8:10 am
18Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the CostJul 28, 7:10 am
19Attackers Exploit Arista VeloCloud Orchestrator Command Injection FlawJul 28, 6:10 am
20ISC Stormcast For Tuesday, July 28th, 2026 https://isc.sans.edu/podcastdetail/10026, (Tue, Jul 28th)Jul 28, 2:10 am
21Hackers target US firms in FastJson RCE zero-day attacksJul 28, 12:10 am
22Arista patches VeloCloud Orchestrator zero-day exploited in attacksJul 27, 11:10 pm
23New Certighost PoC exploit lets attackers hijack Windows domainsJul 27, 9:10 pm
24New Dysphoria DDoS botnet spreads to 200k devices worldwideJul 27, 9:10 pm
25NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA FrameworkJul 27, 8:10 pm
26Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid DisruptionJul 27, 6:10 pm
27Apple sued over fake App Store crypto wallet app stealing $1.8M in BitcoinJul 27, 6:10 pm
28Public Exploit Released for Patched vBulletin Pre-Auth Code Execution FlawJul 27, 4:10 pm
29Ernst & Young data breach claimed by ShinyHunters extortion gangJul 27, 4:10 pm
30Coca-Cola confirms data theft in Fairlife ransomware attackJul 27, 4:10 pm
31⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and MoreJul 27, 3:10 pm
32Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams UpdateJul 27, 2:10 pm
33n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n ProcessJul 27, 2:10 pm
34Shadow AI agents are multiplying. Here's how to find and secure them.Jul 27, 2:10 pm
35Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows MalwareJul 27, 12:10 pm
36Java Spring Boot "heapdump" scans, (Mon, Jul 27th)Jul 27, 10:10 am
37GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package AdoptionJul 27, 9:10 am
38TELESHIM Abuses Telegram for C2 in Attacks Against Middle East GovernmentsJul 27, 9:10 am
39ISC Stormcast For Monday, July 27th, 2026 https://isc.sans.edu/podcastdetail/10024, (Mon, Jul 27th)Jul 27, 2:10 am
40GitHub, PyPI add time-based defenses against supply chain attacksJul 26, 8:10 pm
41Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th)Jul 26, 4:11 pm
42GitHub, PyPI add time-absed defenses against supply chain attacksJul 26, 3:10 pm
43Steam forum ClickFix attacks infect gamers with XMRig cryptominersJul 25, 11:10 pm
44Malvertising Sends Malware in Pieces, Then Makes the Browser Build the ExecutableJul 25, 8:10 pm
45Malicious sites use JavaScript to build malware in browser memoryJul 25, 4:10 pm
46ShinyHunters data leaks fuel $2,000 sextortion email scamJul 25, 3:10 pm
47Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched AvailableJul 25, 2:10 pm
48DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate PayoutsJul 25, 12:10 pm
49Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCEJul 25, 12:10 pm
50CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account HijackingJul 25, 12:10 pm
51OpenAI confirms ChatGPT is down worldwideJul 25, 10:10 am
52Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitJul 25, 9:10 am
53OnTrac notifies customers of data breach after network hackJul 24, 8:10 pm
54Hermes AI agent used to automate attack on Thai Finance MinistryJul 24, 7:10 pm
55Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accountsJul 24, 6:10 pm
56BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware DeliveryJul 24, 5:10 pm
57Microsoft blames massive Microsoft 365 outage on maintenance bugJul 24, 4:10 pm
58Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain ControllerJul 24, 3:10 pm
59Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI AttackJul 24, 2:10 pm
60Chick-fil-A data breach affects more than 13,000 customersJul 24, 2:10 pm
61Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's ServersJul 24, 1:10 pm
62ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing LinkJul 24, 1:10 pm
63Europol flags 4,340 URLs for removal in 'The Com' crackdownJul 24, 1:10 pm
64Man gets six years for hacking 750 women's Snapchat accountsJul 24, 12:10 pm
65Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can DoJul 24, 12:10 pm
66Golden Chickens Resurfaces With Four New Malware Families and Modular ImplantsJul 24, 11:10 am
67Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance MinistryJul 24, 11:10 am
68Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers SayJul 24, 9:10 am
69NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private ChatsJul 24, 9:10 am
70Clop ransomware targets Windchill, FlexPLM in data theft attacksJul 24, 8:10 am
71Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 AttacksJul 24, 7:10 am
72ISC Stormcast For Friday, July 24th, 2026 https://isc.sans.edu/podcastdetail/10022, (Fri, Jul 24th)Jul 24, 2:10 am
73New Dolphin X malware uses AI to rank high-value targetsJul 23, 10:10 pm
74Australian energy provider Origin says data breach exposes client dataJul 23, 9:10 pm
75Fake Claude app promoted by Bing ads pushes SectopRAT malwareJul 23, 8:10 pm
76Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA CodesJul 23, 7:10 pm
77ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More StoriesJul 23, 5:10 pm
78Hackers abuse Notepad++ plugins to stealthily install malwareJul 23, 5:10 pm
79Russian hackers exploit Zimbra zero-click flaw for email theftJul 23, 5:10 pm
80Microsoft 365 outage affects Teams, SharePoint and other servicesJul 23, 4:10 pm
81China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare AttacksJul 23, 3:10 pm
82Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and EdgeJul 23, 3:10 pm
83Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac FilesJul 23, 3:10 pm
84When the "Autonomous Attacker" Is Your Own AI Model, (Thu, Jul 23rd)Jul 23, 2:10 pm
85FedRAMP Rev5 Is Ending: What the 20x Transition Really RequiresJul 23, 2:10 pm
86EU fines Google $1 billion for search, app store antitrust violationsJul 23, 1:10 pm
87Google Adds Selfie Video Recovery for Users Locked Out of Their AccountsJul 23, 12:10 pm
88Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM ServersJul 23, 12:10 pm
89New RefluXFS Linux flaw lets attackers gain root privilegesJul 23, 12:10 pm
90How Synthetic Identity Fraud is Coming for Machine IdentitiesJul 23, 12:10 pm
91Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL InstallsJul 23, 10:10 am
92Microsoft working to fix Exchange Online mailbox quarantine issueJul 23, 10:10 am
93New msaRAT malware uses Chrome, Edge browsers to route C2 trafficJul 23, 10:10 am
94Check Point warns of SmartConsole zero-day exploited in attacksJul 23, 9:10 am
95Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin AccessJul 23, 8:10 am
96ISC Stormcast For Thursday, July 23rd, 2026 https://isc.sans.edu/podcastdetail/10020, (Thu, Jul 23rd)Jul 23, 2:10 am
97Upbound says hack caused $13 million in fraudulent Acima leasesJul 22, 10:10 pm
98GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP TierJul 22, 9:10 pm
99South Korea discloses data breach impacting diplomats worldwideJul 22, 8:10 pm
100Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web DataJul 22, 7:10 pm
101Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop InstallsJul 22, 7:10 pm
102Rondo Meets Geoserver, (Wed, Jul 22nd)Jul 22, 6:10 pm
103Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattackJul 22, 5:10 pm
104How enterprise GenAI can amplify ransomware risk — and how to contain itJul 22, 4:10 pm
105New InfraTrust report reveals infrastructure flaws admins should patch firstJul 22, 3:10 pm
106The Fastest Path to AI Adoption Runs Through SecurityJul 22, 2:10 pm
107Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without AuthenticationJul 22, 2:10 pm
108Adobe Chrome extension flaw let sites access private WhatsApp chatsJul 22, 2:10 pm
109Stop renting storage space — this lifetime 2TB plan is yours for $59Jul 22, 12:10 pm
110Why Modern SOCs Need Multi-Layered DetectionsJul 22, 12:10 pm
111CISA orders urgent action on actively exploited Langflow RCE flawJul 22, 12:10 pm
112Microsoft to stop Exchange 2016 / 2019 security updates in OctoberJul 22, 11:10 am
113Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFAJul 22, 8:10 am
114Chick-fil-A discloses data breach after credential stuffing attacksJul 22, 7:10 am
115OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat BenchmarkJul 22, 6:10 am
116Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review AgentsJul 22, 6:10 am
117OpenAI says its AI models hacked Hugging Face during testingJul 22, 6:10 am
118Trojanized Newtonsoft.Json Fork Hides Game-Rigging Code in a Working LibraryJul 22, 6:10 am
119LG to Ban Residential Proxies from Smart TV AppsJul 22, 2:10 am
120ISC Stormcast For Wednesday, July 22nd, 2026 https://isc.sans.edu/podcastdetail/10018, (Wed, Jul 22nd)Jul 22, 2:10 am
121FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malwareJul 21, 11:10 pm
122Police dismantle Kratos phishing platform, arrest developerJul 21, 11:10 pm
123Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail LogsJul 21, 8:10 pm
124Critical SharePoint RCE flaw exploited to steal machine keysJul 21, 8:10 pm
125Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leakJul 21, 7:10 pm
126Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software VulnerabilitiesJul 21, 5:10 pm
127AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run CodeJul 21, 5:10 pm
128Critical wp2shell WordPress flaws exploited to install webshellsJul 21, 5:10 pm
129Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoCJul 21, 3:10 pm
130Zimbra Patches Critical SNMP Command Injection and Four XSS VulnerabilitiesJul 21, 2:10 pm
131Captive Portal Detection, (Tue, Jul 21st)Jul 21, 2:10 pm
132Closing the Identity Gaps in Critical Infrastructure SecurityJul 21, 2:10 pm
133Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial AccessJul 21, 2:10 pm
134New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an ExploitJul 21, 1:10 pm
135N-day is Becoming N-Hour. Patching Faster Won't Save You.Jul 21, 1:10 pm
136Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCsJul 21, 1:10 pm
137US seizes over 1,000 websites in FIFA World Cup piracy crackdownJul 21, 12:10 pm
138Critical Palo Alto VPN bug now exploited by Qilin ransomware gangJul 21, 11:10 am
139WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass ScanningJul 21, 9:10 am
140Microsoft shares manual fix for WSUS sync delays and timeoutsJul 21, 9:10 am
141Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code ExecutionJul 21, 8:10 am
142New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE AttackJul 21, 8:10 am
143Windows LegacyHive zero-day flaw gets free, unofficial patchesJul 21, 8:10 am
144ISC Stormcast For Tuesday, July 21st, 2026 https://isc.sans.edu/podcastdetail/10016, (Tue, Jul 21st)Jul 21, 2:10 am
145Hackers steal $23.7 million in crypto from Ostium in off-chain attackJul 20, 11:10 pm
146SonicWall SMA1000 flaws exploited as zero-days to push custom malwareJul 20, 11:10 pm
147Estée Lauder discloses data breach via Oracle E-Business flawJul 20, 11:10 pm
148Cursor, Codex, Gemini CLI, Antigravity hit by sandbox escapesJul 20, 10:10 pm
149JadePuffer agentic attacks now target AI model data with ransomwareJul 20, 9:10 pm
150FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader MalwareJul 20, 8:10 pm
151WordPress Exploitation Underway (CVE-2026-63030), (Mon, Jul 20th)Jul 20, 7:10 pm
152Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware CampaignJul 20, 6:10 pm
153New HollowGraph malware uses Microsoft Graph for stealthy C2 commsJul 20, 6:10 pm
154HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050Jul 20, 3:10 pm
155⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and MoreJul 20, 2:10 pm
156An AI SOC Evaluation Guide for Security LeadersJul 20, 2:10 pm
157Mythos Didn't Break Your Security Program. Your Exposure Window Could.Jul 20, 1:10 pm
158Hugging Face warns an autonomous AI agent hacked its networkJul 20, 1:10 pm
159Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and UkraineJul 20, 1:10 pm
160Hugging Face discloses breach linked to autonomous AI agentJul 20, 12:10 pm
161Microsoft confirms Windows Server Update Services sync delaysJul 20, 11:10 am
162Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCsJul 20, 10:10 am
163New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During ExtractionJul 20, 10:10 am
164Critical ServiceNow code execution flaw now exploited in attacksJul 20, 10:10 am
165Windows KB5121767 OOB update fixes shutdowns on some Dell PCsJul 20, 10:10 am
166SleeperGem Uses Three Malicious RubyGems Packages to Target Developer MachinesJul 20, 6:10 am
167World's Largest AI Model Repository Hugging Face Breached by Autonomous AI AgentJul 20, 6:10 am
168ISC Stormcast For Monday, July 20th, 2026 https://isc.sans.edu/podcastdetail/10014, (Mon, Jul 20th)Jul 20, 2:10 am
169Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code ExecutionJul 19, 10:10 pm
170SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root AccessJul 19, 3:10 pm
171UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih MalwareJul 19, 3:10 pm
172Hackers abuse ViPNet software to target Russian govt agenciesJul 19, 3:10 pm
173Scans for Hikvision Intelligent Security API, (Sun, Jul 19th)Jul 19, 3:10 pm
174Update now: 7-Zip fixes RCE flaw exploitable with malicious archivesJul 18, 8:10 pm
175WordPress Core "wp2shell" RCE flaws get public exploits, patch nowJul 18, 6:10 pm
176Microsoft warns of surge in ACR Stealer attacks on customersJul 18, 3:10 pm
177The Future of Age Verification: Your Face Never Leaves Your DeviceJul 18, 2:10 pm
178Abbott probes two cyber incidents amid extortion claimsJul 18, 12:10 am
179New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run CodeJul 17, 10:10 pm
180OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS RequestsJul 17, 9:10 pm
181Abbott Laboratories probes two cyber incidents amid extortion claimsJul 17, 9:10 pm
182Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RATJul 17, 8:10 pm
183GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate TheftJul 17, 6:10 pm
184New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes TokensJul 17, 6:10 pm
185HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payloadJul 17, 6:10 pm
186Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag ImagesJul 17, 4:10 pm
187Ernst & Young discloses data breach after support system hackJul 17, 3:10 pm
188Inside the Search for "Clean" Residential Proxies for CardingJul 17, 2:10 pm
189Armenia Detains Russian Tourist on U.S. Warrant for REvil Hacker, Lawyers Say Wrong ManJul 17, 12:10 pm
190The Race to Field Military Autonomy Is On, Can Trusted Information Infrastructure Keep Pace?Jul 17, 12:10 pm
191E.U. Orders Google to Open Android Mic, Camera and Screen to Rival AI AssistantsJul 17, 12:10 pm
192New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for EspionageJul 17, 11:10 am
193ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 FilesJul 17, 11:10 am
194New Windows LegacyHive zero-day gives hackers admin privilegesJul 17, 11:10 am
195Windows Server 2022 reach end of mainstream support in 90 daysJul 17, 10:10 am
196US charges two over laundering $43 million from investment fraudJul 17, 9:10 am
197CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEVJul 17, 8:10 am
198CISA urges immediate action on actively exploited Fortinet flawsJul 17, 7:10 am
199ISC Stormcast For Friday, July 17th, 2026 https://isc.sans.edu/podcastdetail/10012, (Fri, Jul 17th)Jul 17, 2:10 am
200New ClickLock macOS malware traps users into revealing login passwordJul 16, 10:10 pm
201Coca-Cola says Fairlife ransomware attack halts US dairy productionJul 16, 9:10 pm
202Claude Chrome extension flaw lets malicious extensions trigger AI actionsJul 16, 8:10 pm
203Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL HackJul 16, 7:10 pm
204New OkoBot framework deploys 20 payloads to steal data, cryptoJul 16, 7:10 pm
205ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More StoriesJul 16, 4:10 pm
206n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another IssuerJul 16, 3:10 pm
207New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their PasswordJul 16, 2:10 pm
208New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run CommandsJul 16, 2:10 pm
20923andMe to pay $18 million in new genetics data breach settlementJul 16, 2:10 pm
210AI Agents Broke the Security Playbook. Here's What Replaces It.Jul 16, 2:10 pm
211Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM BackdoorJul 16, 1:10 pm
212New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker CommandsJul 16, 1:10 pm
21320+ Hijacked Government Websites Became
an Attack ChannelJul 16, 1:10 pm
214Scattered Spider members behind TfL hack get five years in prisonJul 16, 1:10 pm
215Windows 11 24H2 Home and Pro reach end of support in 90 daysJul 16, 12:10 pm
216Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-WideJul 16, 11:10 am
217AI Can Find Bugs, But Human Knowledge Still Proves ThemJul 16, 11:10 am
218Russian hackers trojanize WebEx, Zoom apps to push Starland malwareJul 16, 11:10 am
219CISA orders feds to patch actively exploited Oracle flaw by SaturdayJul 16, 11:10 am
220New Spirals ransomware encrypts victim network in under 24 hoursJul 16, 10:10 am
221Zoom Patches Critical Windows Flaw That Could Enable Account TakeoverJul 16, 9:10 am
222OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 SolJul 16, 9:10 am
223ISC Stormcast For Thursday, July 16th, 2026 https://isc.sans.edu/podcastdetail/10010, (Thu, Jul 16th)Jul 16, 3:10 am
224Dutch police bust investment fraud ring stealing over €100 millionJul 15, 10:10 pm
225Zoom warns of critical account takeover vulnerabilityJul 15, 9:10 pm
226Google Gemini CLI abused as a hacking agent, malware botnet operatorJul 15, 7:10 pm
227TuxBot v3 Evolution Shows Signs of LLM-Assisted IoT Botnet DevelopmentJul 15, 7:10 pm
228AsyncAPI npm packages infected with credential-stealing malwareJul 15, 6:10 pm
229OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor AppsJul 15, 5:10 pm
230​ ​AsyncAPI npm packages infected with credential-stealing malwareJul 15, 4:10 pm
231Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security FlawsJul 15, 2:10 pm
232We built a vulnerability vending machine: AI tokens in, zero-days outJul 15, 2:10 pm
233New Webinar: Closing the Approval Gap in AI-Era Ad TechJul 15, 1:10 pm
234Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch TuesdayJul 15, 1:10 pm
235SASE Has An AI Blind Spot. Inspecting Packets Is No Longer Enough.Jul 15, 1:10 pm
236Compromised AsyncAPI npm Packages Deliver Multi-Stage Botnet MalwareJul 15, 11:11 am
237CISA warns admins to patch actively exploited SharePoint flawsJul 15, 11:11 am
238Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code ExecutionJul 15, 11:10 am
239Microsoft: Some Dell PCs shut down after recent Windows updatesJul 15, 9:10 am
240US charges alleged operators of Russian bulletproof hosting serviceJul 15, 8:10 am
241Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin CommandsJul 15, 7:10 am
242Recent DShield SIEM Update, (Tue, Jul 14th)Jul 15, 2:10 am
243ISC Stormcast For Wednesday, July 15th, 2026 https://isc.sans.edu/podcastdetail/10008, (Wed, Jul 15th)Jul 15, 2:10 am
244SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch nowJul 14, 10:10 pm
245Spanish Police take down €140 million cyber fraud ring, arrest fourJul 14, 9:10 pm
246Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active AttackJul 14, 9:10 pm
247Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail ReadsJul 14, 8:10 pm
248SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify DataJul 14, 8:10 pm
249Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Here , (Tue, Jul 14th)Jul 14, 8:10 pm
250Nearly 300 GitHub repos pose as legit software to push malwareJul 14, 8:10 pm
251Microsoft Patches a Record 570 Security FlawsJul 14, 8:10 pm
252Microsoft releases Windows 10 KB5099539 extended security updateJul 14, 7:10 pm
253LabubaRAT Masquerades as NVIDIA Software to Control Windows HostsJul 14, 6:10 pm
254Windows 11 KB5101650 & KB5099414 cumulative updates releasedJul 14, 6:10 pm
255Microsoft July 2026 Patch Tuesday fixes massive 570 flaws, 3 zero-daysJul 14, 6:10 pm
256LastPass, Bitwarden users targeted with fake security alertsJul 14, 4:10 pm
257Progress confirms ShareFile zero-day flaw behind Storage Zone shutdownJul 14, 4:10 pm
258RabbitMQ Flaws Could Leak OAuth Secrets and Expose Cross-Tenant Queue MetadataJul 14, 3:10 pm
259OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra CredentialsJul 14, 2:10 pm
260How Pentera Turns AI Security Workflows into Validation EnginesJul 14, 2:10 pm
261Study of 85 Crypto Wallet Extensions Finds Address Leaks and Cross-Site Tracking RisksJul 14, 2:10 pm
26211 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure BootJul 14, 2:10 pm
263You Don't Have to Run an Exploit to Know If You're VulnerableJul 14, 2:10 pm
264New phishing kits target Microsoft 365 accounts, evade MFAJul 14, 1:10 pm
265Microsoft Entra ID gets passkeys default authentication starting SeptemberJul 14, 1:10 pm
266SAP warns of critical flaws in NetWeaver and Commerce CloudJul 14, 12:10 pm
267Grok Build Uploaded Entire Git Repositories to xAI Storage, Not Just Files It ReadJul 14, 11:10 am
268Microsoft starts testing cleaner Windows Search without adsJul 14, 11:10 am
269Grok Build Uploads Entire Git Repositories to xAI Storage, Not Just Files It ReadsJul 14, 10:10 am
270US sanctions VPN, malware providers for enabling ransomware attacksJul 14, 10:10 am
271Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters ActivityJul 14, 9:10 am
272148 npm Packages Disguised as Student Proxies Turned Browsers Into a DDoS BotnetJul 14, 9:10 am
273U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware SupportJul 14, 9:10 am
274Microsoft Maps Year-Long ShinyHunters-Linked Salesforce Data Theft Across Three PathsJul 14, 7:10 am
275ISC Stormcast For Tuesday, July 14th, 2026 https://isc.sans.edu/podcastdetail/10006, (Tue, Jul 14th)Jul 14, 3:10 am
276Japan's largest taxi operator shuts systems after cyberattackJul 13, 9:10 pm
277Hackers backdoor Jscrambler npm package with infostealer malwareJul 13, 8:10 pm
278New CrashStealer malware poses as Apple crash reporting toolJul 13, 7:10 pm
279Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector FoundJul 13, 6:10 pm
280CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper ChecksJul 13, 6:10 pm
281New MemGhost Attack Plants Persistent False Memories in AI Agents Through One EmailJul 13, 4:10 pm
282Lessons Learned from CISA’s Recent GitHub LeakJul 13, 4:10 pm
283⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and MoreJul 13, 4:10 pm
284CISA warns of actively exploited RCE flaws in Joomla extensionsJul 13, 4:10 pm
285Lidl discloses online shop breach after service provider hackJul 13, 3:10 pm
286Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session TheftJul 13, 2:10 pm
287UK charges suspects linked to Russian Coms call spoofing platformJul 13, 2:10 pm
288Breach at the Beach: Play the Ultimate Entra ID CTFJul 13, 2:10 pm
289Attacker Uses Suspected AI-Generated PowerShell Script to Map Active DirectoryJul 13, 1:10 pm
290Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst CopilotsJul 13, 1:10 pm
291Meta Files Patent for AI That Can Listen All Day and Track How You're FeelingJul 13, 1:10 pm
292EU sanctions Russian GRU military hackers over cyberattacksJul 13, 12:10 pm
293US and allies warn of Russian critical infrastructure attacksJul 13, 10:10 am
294Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365Jul 13, 9:10 am
295iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-DaysJul 13, 7:10 am
296Someone Is Scanning for Your MCP Servers and AI Assistant Credentials, (Mon, Jul 13th)Jul 13, 5:10 am
297ISC Stormcast For Monday, July 13th, 2026 https://isc.sans.edu/podcastdetail/10004, (Mon, Jul 13th)Jul 13, 2:10 am
298OpenAI temporarily relaxes GPT-5.6 Sol usage limitsJul 13, 1:10 am
299Claude Fable 5 stays free for paid users until July 19 as Anthropic buys more timeJul 12, 8:10 pm
300RedHook Android malware now uses Wireless ADB for shell accessJul 12, 3:10 pm
301Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage CampaignsJul 11, 7:10 pm
302Compromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During InstallJul 11, 7:10 pm
303Australia warns of global campaign targeting vulnerable CMS platformsJul 11, 3:10 pm
304Wireshark 4.6.7 Released, (Sat, Jul 11th)Jul 11, 10:10 am
305'Ghostcommit' hides prompt injection in images to fool AI agents, steal secretsJul 11, 9:10 am
306Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User SessionsJul 11, 8:10 am
307New U-Boot flaws could enable stealthy firmware attacksJul 10, 10:10 pm
308URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security ThreatJul 10, 7:10 pm
309Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at BootJul 10, 6:10 pm
310Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm PackagesJul 10, 6:10 pm
311Ryuk ransomware member pleads guilty in the US, faces 15 years in prisonJul 10, 6:10 pm
312Progress urges ShareFile admins to shut down servers over “credible” threatJul 10, 5:10 pm
313Police suspects Dutch hackers were involved in Odido breachJul 10, 5:10 pm
314Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be PatchedJul 10, 4:10 pm
315Money launderer accused of stealing seized crypto while in prisonJul 10, 4:10 pm
316Hackers exploit critical auth bypass in Gitea Docker imageJul 10, 4:10 pm
317Researcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw FlawsJul 10, 3:10 pm
318Attackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency WalletsJul 10, 2:10 pm
319New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 TrafficJul 10, 2:10 pm
320The Replicant in Your Directory: AI Agents and the Identity Security GapJul 10, 2:10 pm
321Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 AccessJul 10, 12:10 pm
322Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and TrackingJul 10, 12:10 pm
323Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress SitesJul 10, 12:10 pm
324From 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at ScaleJul 10, 12:10 pm
325Zimbra urges customers to patch critical web client XSS flawJul 10, 12:10 pm
326Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 ServersJul 10, 12:10 pm
327Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat AttacksJul 10, 10:10 am
328Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency WalletsJul 10, 10:10 am
329"Comment stuffing" in an HTML phishing attachment as a mechanism for evading AI-based detection?, (Fri, Jul 10th)Jul 10, 10:10 am
330Former ransomware negotiator gets 4 years for BlackCat attacksJul 10, 9:10 am
331ISC Stormcast For Friday, July 10th, 2026 https://isc.sans.edu/podcastdetail/10002, (Fri, Jul 10th)Jul 10, 2:10 am
332OpenMandriva Linux says contributor tried to sabotage the projectJul 9, 11:10 pm
333Injective SDK on npm infected with cryptocurrency wallet stealerJul 9, 8:10 pm
334New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and SpywareJul 9, 7:10 pm
335Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate OrgsJul 9, 7:10 pm
336ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More StoriesJul 9, 5:10 pm
337npm 12 Disables Install Scripts by Default to Reduce Supply Chain RiskJul 9, 5:10 pm
338Microsoft expects more Windows security updates from AI-discovered flawsJul 9, 5:10 pm
339New Helix vishing group emerges in SharePoint data theft attacksJul 9, 5:10 pm
340The Hidden Security Risks of Reduced Summer IT CoverageJul 9, 3:10 pm
341New Forg365 phishing platform uses AI to target Microsoft 365 accountsJul 9, 3:10 pm
342AI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps UpJul 9, 1:10 pm
343GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint DefensesJul 9, 12:10 pm
344Summer of ClearinghousesJul 9, 12:10 pm
345Microsoft to retire the OWA Light client in Exchange ServerJul 9, 11:10 am
346Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM PrivilegesJul 9, 10:10 am
347Police arrests 5,800 suspects in global anti-fraud crackdownJul 9, 10:10 am
348Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI ImagesJul 9, 8:10 am
349AssuranceAmerica data breach exposes records of 6.9 million driversJul 9, 8:10 am
350Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running ItJul 9, 6:10 am
351Microsoft patches RoguePlanet Defender zero-day vulnerabilityJul 9, 6:10 am
352Fake 7-Zip Installers Turn Devices Into Residential Proxy NodesJul 9, 5:10 am
353GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding AgentsJul 9, 5:10 am
354_HELP_ME_ESCAPE_FROM_BELARUS_PLEASE_ [Guest Diary], (Tue, Jul 7th)Jul 9, 2:10 am
355ISC Stormcast For Thursday, July 9th, 2026 https://isc.sans.edu/podcastdetail/10000, (Thu, Jul 9th)Jul 9, 2:10 am
356Mount Royal University confirms breach as hackers claim attackJul 8, 10:10 pm
357Fake Paysafe, Skrill SDKs on NPM and PyPi steal credentialsJul 8, 8:10 pm
358Hackers exploit Roundcube flaw to spy on academic researchersJul 8, 7:10 pm
359AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch AttackersJul 8, 6:10 pm
360New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet MalwareJul 8, 5:10 pm
361Entra passkey enrollment vishing targets Microsoft 365 usersJul 8, 5:10 pm
362Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OSJul 8, 3:10 pm
363SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking UsersJul 8, 2:10 pm
364New Ghost Phishing Wave Is Breaking Traditional Email SecurityJul 8, 2:10 pm
3653 Ways AI Powers Service Desk Attacks and How to Prevent ThemJul 8, 2:10 pm
366Felons, Fraudsters Flog Offensive Cybersecurity StartupJul 8, 1:10 pm
367GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in CodeJul 8, 12:10 pm
368Telco giant KDDI says data breach affects over 12 million peopleJul 8, 12:10 pm
369The Verification Step Is the New ATO Battleground in 2026Jul 8, 12:10 pm
370GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking SignaturesJul 8, 12:10 pm
371DuckDuckGo browser now blocks YouTube video adsJul 8, 12:10 pm
372China-Linked UAT-7810 Expands ORB Network With New LONGLEASH MalwareJul 8, 10:10 am
373CISA orders feds to prioritize patching Langflow auth bypass flawJul 8, 10:10 am
374My Stack Simulator, (Wed, Jul 8th)Jul 8, 9:10 am
375Ubiquiti warns of new max severity UniFi OS vulnerabilityJul 8, 9:10 am
376CISA orders feds to patch max severity ColdFusion flaw by FridayJul 8, 8:10 am
377CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEVJul 8, 7:10 am
37815-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux DistrosJul 8, 7:10 am
379ISC Stormcast For Wednesday, July 8th, 2026 https://isc.sans.edu/podcastdetail/9998, (Wed, Jul 8th)Jul 8, 2:10 am
380Accenture confirms breach after hacker offers stolen data for saleJul 7, 10:10 pm
381More Odd DNS Records: NIMLOC, (Tue, Jul 7th)Jul 7, 7:10 pm
382Chinese hackers develop LONGLEASH malware to expand ORB networkJul 7, 7:10 pm
383Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX ChatbotsJul 7, 6:10 pm
384RedWing MaaS Packages Android Bank Fraud as a Telegram Rental ServiceJul 7, 6:10 pm
385Hidden backdoor in Tenda router firmware grants admin accessJul 7, 6:10 pm
386DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 AccountsJul 7, 5:10 pm
387Spain arrests suspected member of pro-Russian hacktivist groupsJul 7, 4:10 pm
388Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo DataJul 7, 3:10 pm
389Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across TenantsJul 7, 2:10 pm
390Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider HackerJul 7, 2:10 pm
391The GitHub Actions Attack Pattern Your CI Security Scanners MissJul 7, 2:10 pm
392Webinar tomorrow: Why modern email attacks require a new approach to defenseJul 7, 1:10 pm
393What Changes When Your Software Supply Chain Includes AI Writing Your Code?Jul 7, 12:10 pm
394New Januscape Linux flaw allows VM escape on Intel, AMD devicesJul 7, 12:10 pm
395Suspected China-Aligned Hackers Exploit Roundcube Flaws Against UniversitiesJul 7, 10:10 am
396Microsoft to enable Windows settings backup by default for orgsJul 7, 10:10 am
397BeyondTrust warns of critical flaws in remote access softwareJul 7, 9:10 am
398CERT/CC Warns of Hidden Admin Backdoor in Tenda Router FirmwareJul 7, 8:10 am
399Microsoft testing new Cloud Rebuild Windows 11 recovery featureJul 7, 8:10 am
400BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRAJul 7, 7:10 am
401ISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th)Jul 7, 2:10 am
402Fake IT support calls on Microsoft Teams push EtherRAT malwareJul 6, 9:10 pm
403Phishing poses as big-brand job interview to steal Google accountsJul 6, 9:10 pm
404Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli OrganizationsJul 6, 8:10 pm
40516-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 SystemsJul 6, 7:10 pm
406Vietnam arrests suspects behind HiAnime anime piracy serviceJul 6, 7:10 pm
407Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After DisclosureJul 6, 6:10 pm
408⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and MoreJul 6, 2:10 pm
409Max severity Adobe ColdFusion flaw now exploited in attacksJul 6, 2:10 pm
410RCS and DNS: The NAPTR Record, (Mon, Jul 6th)Jul 6, 2:10 pm
411Software Is Now Written at the Speed of Thought. Security Isn't.Jul 6, 2:10 pm
412Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRATJul 6, 1:10 pm
413How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from Bolt-On AI solutionsJul 6, 1:10 pm
414ISC Stormcast For Monday, July 6th, 2026 https://isc.sans.edu/podcastdetail/9994, (Mon, Jul 6th)Jul 6, 12:10 pm
415New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOSJul 6, 9:10 am
416New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable EmissionsJul 6, 9:10 am
417Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited PagesJul 6, 8:10 am
418SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting PackingJul 6, 7:10 am
419Flipper Zero firmware development continues with community helpJul 5, 3:10 pm
420JadePuffer ransomware used AI agent to automate entire attackJul 4, 3:10 pm
421U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion CaseJul 4, 2:10 pm
422North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider CampaignJul 4, 12:10 pm
423Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded DevicesJul 3, 10:10 pm
424New Avalon Malware Framework Packs CrownX Ransomware CapabilitiesJul 3, 8:11 pm
425New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits AndroidJul 3, 8:10 pm
426NetNut proxy network disrupted, 2 million infected devices cut offJul 3, 6:10 pm
427North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer SecretsJul 3, 5:10 pm
428ARToken PhaaS exposes EvilTokens' Microsoft 365 phishing toolkitJul 3, 3:10 pm
429Armored Likho Targets Government Agencies, Power Sector with BusySnake StealerJul 3, 2:10 pm
430European Parliament Member Investigating Spyware Was Hacked With PegasusJul 3, 11:10 am
431PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login PasswordsJul 3, 9:10 am
432Claude Fable 5 isn’t permanently leaving subscriptions, Anthropic saysJul 3, 2:10 am
433Claude Fable relaunch disappoints users with nerfed performanceJul 3, 1:10 am
434Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain CredentialsJul 2, 8:10 pm
435Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home DevicesJul 2, 8:10 pm
436FBI Seizes NetNut Proxy Platform, Popa BotnetJul 2, 8:10 pm
437Google loses final appeal to overturn €4.1 billion EU fineJul 2, 4:10 pm
438ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 StoriesJul 2, 4:10 pm
439ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google APIJul 2, 2:10 pm
440ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 SecondsJul 2, 2:10 pm
441Identity Lifecycle Management Wasn't Built for AI Agents Jul 2, 1:10 pm
442Microsoft fixes bug that removed Copilot buttons in OutlookJul 2, 1:10 pm
443Cisco finally confirms attackers exploiting Unified CM flawJul 2, 12:10 pm
444Opera rolls out Paste Protect feature to fight ClickFix attacksJul 2, 11:10 am
445CISA: Microsoft SharePoint RCE flaw now actively exploitedJul 2, 11:10 am
446FortiBleed Credential Theft Linked to INC and Lynx Ransomware OperationsJul 2, 10:10 am
447AI Agent Exploits Langflow RCE to Automate Database Ransomware AttackJul 2, 10:10 am
448Alleged Scattered Spider hacker extradited to the United StatesJul 2, 9:10 am
449New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit ReposJul 2, 8:10 am
450SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active ExploitationJul 2, 7:10 am
451Medtronic notifies customers impacted by ShinyHunters data breachJul 2, 5:10 am
452ISC Stormcast For Thursday, July 2nd, 2026 https://isc.sans.edu/podcastdetail/9992, (Thu, Jul 2nd)Jul 2, 2:10 am
453FortiBleed credential-theft campaign linked to Lynx ransomwareJul 1, 10:10 pm
454New ChocoPoC malware targets researchers via trojanized PoC exploitsJul 1, 9:10 pm
455Kubota says hackers had month-long access to network systemsJul 1, 9:10 pm
45619-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking ChargesJul 1, 8:10 pm
457Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes ClustersJul 1, 8:10 pm
458ChocoPoc malware delivered via trojanized exploits on GitHubJul 1, 8:10 pm
459VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs StealerJul 1, 7:10 pm
460SEO-Poisoned Software Sites Abuse ScreenConnect to Deploy AsyncRATJul 1, 7:10 pm
461DHS confirms hackers breached HSIN info-sharing platformJul 1, 6:10 pm
462Hackers target Microsoft 365 accounts with 81 million login attemptsJul 1, 5:10 pm
463Webinar: Why traditional email security is no longer enoughJul 1, 5:10 pm
464Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run CommandsJul 1, 4:10 pm
465Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign ClassicJul 1, 4:10 pm
466Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF LuresJul 1, 4:10 pm
467AI-Generated Browser Ransomware Abuses Chromium API on Windows and AndroidJul 1, 3:10 pm
468Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation AttemptsJul 1, 3:10 pm
469Turning Indicators into Intelligence in OpenCTI with Criminal IPJul 1, 3:10 pm
4702026 Cybersecurity Assessment: The Gap Between Awareness and ResilienceJul 1, 1:10 pm
471Over 900 Oracle E-Business instances exposed to ongoing attacksJul 1, 1:10 pm
472Microsoft Accelerates Post-Quantum Cryptography Shift to 2029Jul 1, 12:10 pm
473Microsoft fixes GIF functionality in the Windows Emoji PanelJul 1, 11:10 am
474Amazon fined $2.25M for withholding evidence from fraud victimsJul 1, 10:10 am
475Anthropic Restores Claude Fable 5 After U.S. Lifts Jailbreak-Linked Export ControlsJul 1, 8:10 am
476Phantom Squatting Uses AI-Hallucinated Domains for Phishing and MalwareJul 1, 8:10 am
477Adobe patches seven max severity ColdFusion, Campaign flawsJul 1, 8:10 am
478Why Ask Credentials If There Are Secret Codes?, (Wed, Jul 1st)Jul 1, 6:10 am
479Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware DeliveryJul 1, 6:10 am
480Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ AttemptsJul 1, 6:10 am
481Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-ServiceJul 1, 5:10 am
482ISC Stormcast For Wednesday, July 1st, 2026 https://isc.sans.edu/podcastdetail/9990, (Wed, Jul 1st)Jul 1, 2:10 am
483Anthropic to restore Claude Fable access on WednesdayJul 1, 1:10 am
484Anthropic rolls out Sonnet 5 with near-Opus 4.8 performance at a lower priceJul 1, 12:10 am
485Microsoft accelerates quantum-safe roadmap as risks growJun 30, 10:10 pm
486New BioShocking attack manipulates AI browser into data theftJun 30, 10:10 pm
487Malicious PyPI packages give hackers control of Telegram bot serversJun 30, 9:10 pm
488RustDuck Botnet Rebuilds in Rust to Hijack Routers and Servers for DDoSJun 30, 7:10 pm
489Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak DataJun 30, 7:10 pm
490Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App EndpointsJun 30, 6:10 pm
491Silent Swap Crypto Clipper Uses Fake Google Notes Extension to Replace Wallet AddressesJun 30, 4:10 pm
492Fake Perplexity extension on Chrome Web Store tracked searchesJun 30, 4:10 pm
493282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic StudyJun 30, 3:10 pm
494GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection RisksJun 30, 3:10 pm
495Lessons from the Underground: How to Combat Business Email CompromiseJun 30, 2:10 pm
496What the Numbers Say About FIFA 2026 Cyber RiskJun 30, 1:10 pm
497Microsoft adds smarter bot protection to Teams meetingsJun 30, 12:10 pm
498Insurance giant Aflac discloses data breach after subsidiary hackJun 30, 12:10 pm
499Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn StealerJun 30, 12:10 pm
500AirDrop and Quick Share Flaws Let Nearby Attackers Trigger Crashes and Bypass ChecksJun 30, 11:10 am
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.