| 1 | CubePilot drone software dev hit by DNS hijacking to intercept traffic | Jul 28, 10:10 pm |
|---|
| 2 | OpenAI models used Artifactory zero-days to escape to the internet | Jul 28, 9:10 pm |
|---|
| 3 | Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack | Jul 28, 8:10 pm |
|---|
| 4 | CISA shares advice on isolating vital systems during cyberattacks | Jul 28, 7:10 pm |
|---|
| 5 | vBulletin fixes critical pre-auth RCE flaw with public exploit | Jul 28, 6:10 pm |
|---|
| 6 | 24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login | Jul 28, 4:10 pm |
|---|
| 7 | Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process | Jul 28, 4:10 pm |
|---|
| 8 | Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root | Jul 28, 2:10 pm |
|---|
| 9 | JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach | Jul 28, 2:10 pm |
|---|
| 10 | Is Your SSO Protected Against Modern Credential Attacks? | Jul 28, 2:10 pm |
|---|
| 11 | Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays | Jul 28, 1:10 pm |
|---|
| 12 | Over 24,000 exposed server BMCs leak password hash via decades-old flaw | Jul 28, 1:10 pm |
|---|
| 13 | Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the Cost | Jul 28, 10:10 am |
|---|
| 14 | Data breach at medical billing firm MCBS affects 1.26 million people | Jul 28, 10:10 am |
|---|
| 15 | Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit | Jul 28, 9:10 am |
|---|
| 16 | Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In | Jul 28, 9:10 am |
|---|
| 17 | AutoIT Payload Injector , (Tue, Jul 28th) | Jul 28, 8:10 am |
|---|
| 18 | Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost | Jul 28, 7:10 am |
|---|
| 19 | Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw | Jul 28, 6:10 am |
|---|
| 20 | ISC Stormcast For Tuesday, July 28th, 2026 https://isc.sans.edu/podcastdetail/10026, (Tue, Jul 28th) | Jul 28, 2:10 am |
|---|
| 21 | Hackers target US firms in FastJson RCE zero-day attacks | Jul 28, 12:10 am |
|---|
| 22 | Arista patches VeloCloud Orchestrator zero-day exploited in attacks | Jul 27, 11:10 pm |
|---|
| 23 | New Certighost PoC exploit lets attackers hijack Windows domains | Jul 27, 9:10 pm |
|---|
| 24 | New Dysphoria DDoS botnet spreads to 200k devices worldwide | Jul 27, 9:10 pm |
|---|
| 25 | NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework | Jul 27, 8:10 pm |
|---|
| 26 | Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption | Jul 27, 6:10 pm |
|---|
| 27 | Apple sued over fake App Store crypto wallet app stealing $1.8M in Bitcoin | Jul 27, 6:10 pm |
|---|
| 28 | Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw | Jul 27, 4:10 pm |
|---|
| 29 | Ernst & Young data breach claimed by ShinyHunters extortion gang | Jul 27, 4:10 pm |
|---|
| 30 | Coca-Cola confirms data theft in Fairlife ransomware attack | Jul 27, 4:10 pm |
|---|
| 31 | ⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and More | Jul 27, 3:10 pm |
|---|
| 32 | Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams Update | Jul 27, 2:10 pm |
|---|
| 33 | n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process | Jul 27, 2:10 pm |
|---|
| 34 | Shadow AI agents are multiplying. Here's how to find and secure them. | Jul 27, 2:10 pm |
|---|
| 35 | Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware | Jul 27, 12:10 pm |
|---|
| 36 | Java Spring Boot "heapdump" scans, (Mon, Jul 27th) | Jul 27, 10:10 am |
|---|
| 37 | GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption | Jul 27, 9:10 am |
|---|
| 38 | TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments | Jul 27, 9:10 am |
|---|
| 39 | ISC Stormcast For Monday, July 27th, 2026 https://isc.sans.edu/podcastdetail/10024, (Mon, Jul 27th) | Jul 27, 2:10 am |
|---|
| 40 | GitHub, PyPI add time-based defenses against supply chain attacks | Jul 26, 8:10 pm |
|---|
| 41 | Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th) | Jul 26, 4:11 pm |
|---|
| 42 | GitHub, PyPI add time-absed defenses against supply chain attacks | Jul 26, 3:10 pm |
|---|
| 43 | Steam forum ClickFix attacks infect gamers with XMRig cryptominers | Jul 25, 11:10 pm |
|---|
| 44 | Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable | Jul 25, 8:10 pm |
|---|
| 45 | Malicious sites use JavaScript to build malware in browser memory | Jul 25, 4:10 pm |
|---|
| 46 | ShinyHunters data leaks fuel $2,000 sextortion email scam | Jul 25, 3:10 pm |
|---|
| 47 | Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available | Jul 25, 2:10 pm |
|---|
| 48 | DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts | Jul 25, 12:10 pm |
|---|
| 49 | Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE | Jul 25, 12:10 pm |
|---|
| 50 | CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking | Jul 25, 12:10 pm |
|---|
| 51 | OpenAI confirms ChatGPT is down worldwide | Jul 25, 10:10 am |
|---|
| 52 | Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git | Jul 25, 9:10 am |
|---|
| 53 | OnTrac notifies customers of data breach after network hack | Jul 24, 8:10 pm |
|---|
| 54 | Hermes AI agent used to automate attack on Thai Finance Ministry | Jul 24, 7:10 pm |
|---|
| 55 | Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts | Jul 24, 6:10 pm |
|---|
| 56 | BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery | Jul 24, 5:10 pm |
|---|
| 57 | Microsoft blames massive Microsoft 365 outage on maintenance bug | Jul 24, 4:10 pm |
|---|
| 58 | Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller | Jul 24, 3:10 pm |
|---|
| 59 | Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI Attack | Jul 24, 2:10 pm |
|---|
| 60 | Chick-fil-A data breach affects more than 13,000 customers | Jul 24, 2:10 pm |
|---|
| 61 | Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers | Jul 24, 1:10 pm |
|---|
| 62 | ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link | Jul 24, 1:10 pm |
|---|
| 63 | Europol flags 4,340 URLs for removal in 'The Com' crackdown | Jul 24, 1:10 pm |
|---|
| 64 | Man gets six years for hacking 750 women's Snapchat accounts | Jul 24, 12:10 pm |
|---|
| 65 | Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do | Jul 24, 12:10 pm |
|---|
| 66 | Golden Chickens Resurfaces With Four New Malware Families and Modular Implants | Jul 24, 11:10 am |
|---|
| 67 | Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry | Jul 24, 11:10 am |
|---|
| 68 | Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say | Jul 24, 9:10 am |
|---|
| 69 | NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats | Jul 24, 9:10 am |
|---|
| 70 | Clop ransomware targets Windchill, FlexPLM in data theft attacks | Jul 24, 8:10 am |
|---|
| 71 | Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks | Jul 24, 7:10 am |
|---|
| 72 | ISC Stormcast For Friday, July 24th, 2026 https://isc.sans.edu/podcastdetail/10022, (Fri, Jul 24th) | Jul 24, 2:10 am |
|---|
| 73 | New Dolphin X malware uses AI to rank high-value targets | Jul 23, 10:10 pm |
|---|
| 74 | Australian energy provider Origin says data breach exposes client data | Jul 23, 9:10 pm |
|---|
| 75 | Fake Claude app promoted by Bing ads pushes SectopRAT malware | Jul 23, 8:10 pm |
|---|
| 76 | Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes | Jul 23, 7:10 pm |
|---|
| 77 | ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories | Jul 23, 5:10 pm |
|---|
| 78 | Hackers abuse Notepad++ plugins to stealthily install malware | Jul 23, 5:10 pm |
|---|
| 79 | Russian hackers exploit Zimbra zero-click flaw for email theft | Jul 23, 5:10 pm |
|---|
| 80 | Microsoft 365 outage affects Teams, SharePoint and other services | Jul 23, 4:10 pm |
|---|
| 81 | China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks | Jul 23, 3:10 pm |
|---|
| 82 | Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge | Jul 23, 3:10 pm |
|---|
| 83 | Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files | Jul 23, 3:10 pm |
|---|
| 84 | When the "Autonomous Attacker" Is Your Own AI Model, (Thu, Jul 23rd) | Jul 23, 2:10 pm |
|---|
| 85 | FedRAMP Rev5 Is Ending: What the 20x Transition Really Requires | Jul 23, 2:10 pm |
|---|
| 86 | EU fines Google $1 billion for search, app store antitrust violations | Jul 23, 1:10 pm |
|---|
| 87 | Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts | Jul 23, 12:10 pm |
|---|
| 88 | Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers | Jul 23, 12:10 pm |
|---|
| 89 | New RefluXFS Linux flaw lets attackers gain root privileges | Jul 23, 12:10 pm |
|---|
| 90 | How Synthetic Identity Fraud is Coming for Machine Identities | Jul 23, 12:10 pm |
|---|
| 91 | Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs | Jul 23, 10:10 am |
|---|
| 92 | Microsoft working to fix Exchange Online mailbox quarantine issue | Jul 23, 10:10 am |
|---|
| 93 | New msaRAT malware uses Chrome, Edge browsers to route C2 traffic | Jul 23, 10:10 am |
|---|
| 94 | Check Point warns of SmartConsole zero-day exploited in attacks | Jul 23, 9:10 am |
|---|
| 95 | Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access | Jul 23, 8:10 am |
|---|
| 96 | ISC Stormcast For Thursday, July 23rd, 2026 https://isc.sans.edu/podcastdetail/10020, (Thu, Jul 23rd) | Jul 23, 2:10 am |
|---|
| 97 | Upbound says hack caused $13 million in fraudulent Acima leases | Jul 22, 10:10 pm |
|---|
| 98 | GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier | Jul 22, 9:10 pm |
|---|
| 99 | South Korea discloses data breach impacting diplomats worldwide | Jul 22, 8:10 pm |
|---|
| 100 | Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data | Jul 22, 7:10 pm |
|---|
| 101 | Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs | Jul 22, 7:10 pm |
|---|
| 102 | Rondo Meets Geoserver, (Wed, Jul 22nd) | Jul 22, 6:10 pm |
|---|
| 103 | Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattack | Jul 22, 5:10 pm |
|---|
| 104 | How enterprise GenAI can amplify ransomware risk — and how to contain it | Jul 22, 4:10 pm |
|---|
| 105 | New InfraTrust report reveals infrastructure flaws admins should patch first | Jul 22, 3:10 pm |
|---|
| 106 | The Fastest Path to AI Adoption Runs Through Security | Jul 22, 2:10 pm |
|---|
| 107 | Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication | Jul 22, 2:10 pm |
|---|
| 108 | Adobe Chrome extension flaw let sites access private WhatsApp chats | Jul 22, 2:10 pm |
|---|
| 109 | Stop renting storage space — this lifetime 2TB plan is yours for $59 | Jul 22, 12:10 pm |
|---|
| 110 | Why Modern SOCs Need Multi-Layered Detections | Jul 22, 12:10 pm |
|---|
| 111 | CISA orders urgent action on actively exploited Langflow RCE flaw | Jul 22, 12:10 pm |
|---|
| 112 | Microsoft to stop Exchange 2016 / 2019 security updates in October | Jul 22, 11:10 am |
|---|
| 113 | Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA | Jul 22, 8:10 am |
|---|
| 114 | Chick-fil-A discloses data breach after credential stuffing attacks | Jul 22, 7:10 am |
|---|
| 115 | OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark | Jul 22, 6:10 am |
|---|
| 116 | Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review Agents | Jul 22, 6:10 am |
|---|
| 117 | OpenAI says its AI models hacked Hugging Face during testing | Jul 22, 6:10 am |
|---|
| 118 | Trojanized Newtonsoft.Json Fork Hides Game-Rigging Code in a Working Library | Jul 22, 6:10 am |
|---|
| 119 | LG to Ban Residential Proxies from Smart TV Apps | Jul 22, 2:10 am |
|---|
| 120 | ISC Stormcast For Wednesday, July 22nd, 2026 https://isc.sans.edu/podcastdetail/10018, (Wed, Jul 22nd) | Jul 22, 2:10 am |
|---|
| 121 | FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malware | Jul 21, 11:10 pm |
|---|
| 122 | Police dismantle Kratos phishing platform, arrest developer | Jul 21, 11:10 pm |
|---|
| 123 | Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail Logs | Jul 21, 8:10 pm |
|---|
| 124 | Critical SharePoint RCE flaw exploited to steal machine keys | Jul 21, 8:10 pm |
|---|
| 125 | Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak | Jul 21, 7:10 pm |
|---|
| 126 | Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities | Jul 21, 5:10 pm |
|---|
| 127 | AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code | Jul 21, 5:10 pm |
|---|
| 128 | Critical wp2shell WordPress flaws exploited to install webshells | Jul 21, 5:10 pm |
|---|
| 129 | Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC | Jul 21, 3:10 pm |
|---|
| 130 | Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities | Jul 21, 2:10 pm |
|---|
| 131 | Captive Portal Detection, (Tue, Jul 21st) | Jul 21, 2:10 pm |
|---|
| 132 | Closing the Identity Gaps in Critical Infrastructure Security | Jul 21, 2:10 pm |
|---|
| 133 | Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access | Jul 21, 2:10 pm |
|---|
| 134 | New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an Exploit | Jul 21, 1:10 pm |
|---|
| 135 | N-day is Becoming N-Hour. Patching Faster Won't Save You. | Jul 21, 1:10 pm |
|---|
| 136 | Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCs | Jul 21, 1:10 pm |
|---|
| 137 | US seizes over 1,000 websites in FIFA World Cup piracy crackdown | Jul 21, 12:10 pm |
|---|
| 138 | Critical Palo Alto VPN bug now exploited by Qilin ransomware gang | Jul 21, 11:10 am |
|---|
| 139 | WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning | Jul 21, 9:10 am |
|---|
| 140 | Microsoft shares manual fix for WSUS sync delays and timeouts | Jul 21, 9:10 am |
|---|
| 141 | Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution | Jul 21, 8:10 am |
|---|
| 142 | New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack | Jul 21, 8:10 am |
|---|
| 143 | Windows LegacyHive zero-day flaw gets free, unofficial patches | Jul 21, 8:10 am |
|---|
| 144 | ISC Stormcast For Tuesday, July 21st, 2026 https://isc.sans.edu/podcastdetail/10016, (Tue, Jul 21st) | Jul 21, 2:10 am |
|---|
| 145 | Hackers steal $23.7 million in crypto from Ostium in off-chain attack | Jul 20, 11:10 pm |
|---|
| 146 | SonicWall SMA1000 flaws exploited as zero-days to push custom malware | Jul 20, 11:10 pm |
|---|
| 147 | Estée Lauder discloses data breach via Oracle E-Business flaw | Jul 20, 11:10 pm |
|---|
| 148 | Cursor, Codex, Gemini CLI, Antigravity hit by sandbox escapes | Jul 20, 10:10 pm |
|---|
| 149 | JadePuffer agentic attacks now target AI model data with ransomware | Jul 20, 9:10 pm |
|---|
| 150 | FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware | Jul 20, 8:10 pm |
|---|
| 151 | WordPress Exploitation Underway (CVE-2026-63030), (Mon, Jul 20th) | Jul 20, 7:10 pm |
|---|
| 152 | Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign | Jul 20, 6:10 pm |
|---|
| 153 | New HollowGraph malware uses Microsoft Graph for stealthy C2 comms | Jul 20, 6:10 pm |
|---|
| 154 | HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050 | Jul 20, 3:10 pm |
|---|
| 155 | ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More | Jul 20, 2:10 pm |
|---|
| 156 | An AI SOC Evaluation Guide for Security Leaders | Jul 20, 2:10 pm |
|---|
| 157 | Mythos Didn't Break Your Security Program. Your Exposure Window Could. | Jul 20, 1:10 pm |
|---|
| 158 | Hugging Face warns an autonomous AI agent hacked its network | Jul 20, 1:10 pm |
|---|
| 159 | Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine | Jul 20, 1:10 pm |
|---|
| 160 | Hugging Face discloses breach linked to autonomous AI agent | Jul 20, 12:10 pm |
|---|
| 161 | Microsoft confirms Windows Server Update Services sync delays | Jul 20, 11:10 am |
|---|
| 162 | Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs | Jul 20, 10:10 am |
|---|
| 163 | New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction | Jul 20, 10:10 am |
|---|
| 164 | Critical ServiceNow code execution flaw now exploited in attacks | Jul 20, 10:10 am |
|---|
| 165 | Windows KB5121767 OOB update fixes shutdowns on some Dell PCs | Jul 20, 10:10 am |
|---|
| 166 | SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines | Jul 20, 6:10 am |
|---|
| 167 | World's Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent | Jul 20, 6:10 am |
|---|
| 168 | ISC Stormcast For Monday, July 20th, 2026 https://isc.sans.edu/podcastdetail/10014, (Mon, Jul 20th) | Jul 20, 2:10 am |
|---|
| 169 | Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution | Jul 19, 10:10 pm |
|---|
| 170 | SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access | Jul 19, 3:10 pm |
|---|
| 171 | UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware | Jul 19, 3:10 pm |
|---|
| 172 | Hackers abuse ViPNet software to target Russian govt agencies | Jul 19, 3:10 pm |
|---|
| 173 | Scans for Hikvision Intelligent Security API, (Sun, Jul 19th) | Jul 19, 3:10 pm |
|---|
| 174 | Update now: 7-Zip fixes RCE flaw exploitable with malicious archives | Jul 18, 8:10 pm |
|---|
| 175 | WordPress Core "wp2shell" RCE flaws get public exploits, patch now | Jul 18, 6:10 pm |
|---|
| 176 | Microsoft warns of surge in ACR Stealer attacks on customers | Jul 18, 3:10 pm |
|---|
| 177 | The Future of Age Verification: Your Face Never Leaves Your Device | Jul 18, 2:10 pm |
|---|
| 178 | Abbott probes two cyber incidents amid extortion claims | Jul 18, 12:10 am |
|---|
| 179 | New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code | Jul 17, 10:10 pm |
|---|
| 180 | OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests | Jul 17, 9:10 pm |
|---|
| 181 | Abbott Laboratories probes two cyber incidents amid extortion claims | Jul 17, 9:10 pm |
|---|
| 182 | Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT | Jul 17, 8:10 pm |
|---|
| 183 | GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate Theft | Jul 17, 6:10 pm |
|---|
| 184 | New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens | Jul 17, 6:10 pm |
|---|
| 185 | HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payload | Jul 17, 6:10 pm |
|---|
| 186 | Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag Images | Jul 17, 4:10 pm |
|---|
| 187 | Ernst & Young discloses data breach after support system hack | Jul 17, 3:10 pm |
|---|
| 188 | Inside the Search for "Clean" Residential Proxies for Carding | Jul 17, 2:10 pm |
|---|
| 189 | Armenia Detains Russian Tourist on U.S. Warrant for REvil Hacker, Lawyers Say Wrong Man | Jul 17, 12:10 pm |
|---|
| 190 | The Race to Field Military Autonomy Is On, Can Trusted Information Infrastructure Keep Pace? | Jul 17, 12:10 pm |
|---|
| 191 | E.U. Orders Google to Open Android Mic, Camera and Screen to Rival AI Assistants | Jul 17, 12:10 pm |
|---|
| 192 | New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage | Jul 17, 11:10 am |
|---|
| 193 | ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files | Jul 17, 11:10 am |
|---|
| 194 | New Windows LegacyHive zero-day gives hackers admin privileges | Jul 17, 11:10 am |
|---|
| 195 | Windows Server 2022 reach end of mainstream support in 90 days | Jul 17, 10:10 am |
|---|
| 196 | US charges two over laundering $43 million from investment fraud | Jul 17, 9:10 am |
|---|
| 197 | CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV | Jul 17, 8:10 am |
|---|
| 198 | CISA urges immediate action on actively exploited Fortinet flaws | Jul 17, 7:10 am |
|---|
| 199 | ISC Stormcast For Friday, July 17th, 2026 https://isc.sans.edu/podcastdetail/10012, (Fri, Jul 17th) | Jul 17, 2:10 am |
|---|
| 200 | New ClickLock macOS malware traps users into revealing login password | Jul 16, 10:10 pm |
|---|
| 201 | Coca-Cola says Fairlife ransomware attack halts US dairy production | Jul 16, 9:10 pm |
|---|
| 202 | Claude Chrome extension flaw lets malicious extensions trigger AI actions | Jul 16, 8:10 pm |
|---|
| 203 | Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack | Jul 16, 7:10 pm |
|---|
| 204 | New OkoBot framework deploys 20 payloads to steal data, crypto | Jul 16, 7:10 pm |
|---|
| 205 | ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More Stories | Jul 16, 4:10 pm |
|---|
| 206 | n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another Issuer | Jul 16, 3:10 pm |
|---|
| 207 | New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password | Jul 16, 2:10 pm |
|---|
| 208 | New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands | Jul 16, 2:10 pm |
|---|
| 209 | 23andMe to pay $18 million in new genetics data breach settlement | Jul 16, 2:10 pm |
|---|
| 210 | AI Agents Broke the Security Playbook. Here's What Replaces It. | Jul 16, 2:10 pm |
|---|
| 211 | Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor | Jul 16, 1:10 pm |
|---|
| 212 | New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker Commands | Jul 16, 1:10 pm |
|---|
| 213 | 20+ Hijacked Government Websites Became
an Attack Channel | Jul 16, 1:10 pm |
|---|
| 214 | Scattered Spider members behind TfL hack get five years in prison | Jul 16, 1:10 pm |
|---|
| 215 | Windows 11 24H2 Home and Pro reach end of support in 90 days | Jul 16, 12:10 pm |
|---|
| 216 | Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-Wide | Jul 16, 11:10 am |
|---|
| 217 | AI Can Find Bugs, But Human Knowledge Still Proves Them | Jul 16, 11:10 am |
|---|
| 218 | Russian hackers trojanize WebEx, Zoom apps to push Starland malware | Jul 16, 11:10 am |
|---|
| 219 | CISA orders feds to patch actively exploited Oracle flaw by Saturday | Jul 16, 11:10 am |
|---|
| 220 | New Spirals ransomware encrypts victim network in under 24 hours | Jul 16, 10:10 am |
|---|
| 221 | Zoom Patches Critical Windows Flaw That Could Enable Account Takeover | Jul 16, 9:10 am |
|---|
| 222 | OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 Sol | Jul 16, 9:10 am |
|---|
| 223 | ISC Stormcast For Thursday, July 16th, 2026 https://isc.sans.edu/podcastdetail/10010, (Thu, Jul 16th) | Jul 16, 3:10 am |
|---|
| 224 | Dutch police bust investment fraud ring stealing over €100 million | Jul 15, 10:10 pm |
|---|
| 225 | Zoom warns of critical account takeover vulnerability | Jul 15, 9:10 pm |
|---|
| 226 | Google Gemini CLI abused as a hacking agent, malware botnet operator | Jul 15, 7:10 pm |
|---|
| 227 | TuxBot v3 Evolution Shows Signs of LLM-Assisted IoT Botnet Development | Jul 15, 7:10 pm |
|---|
| 228 | AsyncAPI npm packages infected with credential-stealing malware | Jul 15, 6:10 pm |
|---|
| 229 | OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor Apps | Jul 15, 5:10 pm |
|---|
| 230 | AsyncAPI npm packages infected with credential-stealing malware | Jul 15, 4:10 pm |
|---|
| 231 | Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security Flaws | Jul 15, 2:10 pm |
|---|
| 232 | We built a vulnerability vending machine: AI tokens in, zero-days out | Jul 15, 2:10 pm |
|---|
| 233 | New Webinar: Closing the Approval Gap in AI-Era Ad Tech | Jul 15, 1:10 pm |
|---|
| 234 | Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch Tuesday | Jul 15, 1:10 pm |
|---|
| 235 | SASE Has An AI Blind Spot. Inspecting Packets Is No Longer Enough. | Jul 15, 1:10 pm |
|---|
| 236 | Compromised AsyncAPI npm Packages Deliver Multi-Stage Botnet Malware | Jul 15, 11:11 am |
|---|
| 237 | CISA warns admins to patch actively exploited SharePoint flaws | Jul 15, 11:11 am |
|---|
| 238 | Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code Execution | Jul 15, 11:10 am |
|---|
| 239 | Microsoft: Some Dell PCs shut down after recent Windows updates | Jul 15, 9:10 am |
|---|
| 240 | US charges alleged operators of Russian bulletproof hosting service | Jul 15, 8:10 am |
|---|
| 241 | Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin Commands | Jul 15, 7:10 am |
|---|
| 242 | Recent DShield SIEM Update, (Tue, Jul 14th) | Jul 15, 2:10 am |
|---|
| 243 | ISC Stormcast For Wednesday, July 15th, 2026 https://isc.sans.edu/podcastdetail/10008, (Wed, Jul 15th) | Jul 15, 2:10 am |
|---|
| 244 | SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch now | Jul 14, 10:10 pm |
|---|
| 245 | Spanish Police take down €140 million cyber fraud ring, arrest four | Jul 14, 9:10 pm |
|---|
| 246 | Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack | Jul 14, 9:10 pm |
|---|
| 247 | Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail Reads | Jul 14, 8:10 pm |
|---|
| 248 | SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify Data | Jul 14, 8:10 pm |
|---|
| 249 | Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Here , (Tue, Jul 14th) | Jul 14, 8:10 pm |
|---|
| 250 | Nearly 300 GitHub repos pose as legit software to push malware | Jul 14, 8:10 pm |
|---|
| 251 | Microsoft Patches a Record 570 Security Flaws | Jul 14, 8:10 pm |
|---|
| 252 | Microsoft releases Windows 10 KB5099539 extended security update | Jul 14, 7:10 pm |
|---|
| 253 | LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts | Jul 14, 6:10 pm |
|---|
| 254 | Windows 11 KB5101650 & KB5099414 cumulative updates released | Jul 14, 6:10 pm |
|---|
| 255 | Microsoft July 2026 Patch Tuesday fixes massive 570 flaws, 3 zero-days | Jul 14, 6:10 pm |
|---|
| 256 | LastPass, Bitwarden users targeted with fake security alerts | Jul 14, 4:10 pm |
|---|
| 257 | Progress confirms ShareFile zero-day flaw behind Storage Zone shutdown | Jul 14, 4:10 pm |
|---|
| 258 | RabbitMQ Flaws Could Leak OAuth Secrets and Expose Cross-Tenant Queue Metadata | Jul 14, 3:10 pm |
|---|
| 259 | OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials | Jul 14, 2:10 pm |
|---|
| 260 | How Pentera Turns AI Security Workflows into Validation Engines | Jul 14, 2:10 pm |
|---|
| 261 | Study of 85 Crypto Wallet Extensions Finds Address Leaks and Cross-Site Tracking Risks | Jul 14, 2:10 pm |
|---|
| 262 | 11 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure Boot | Jul 14, 2:10 pm |
|---|
| 263 | You Don't Have to Run an Exploit to Know If You're Vulnerable | Jul 14, 2:10 pm |
|---|
| 264 | New phishing kits target Microsoft 365 accounts, evade MFA | Jul 14, 1:10 pm |
|---|
| 265 | Microsoft Entra ID gets passkeys default authentication starting September | Jul 14, 1:10 pm |
|---|
| 266 | SAP warns of critical flaws in NetWeaver and Commerce Cloud | Jul 14, 12:10 pm |
|---|
| 267 | Grok Build Uploaded Entire Git Repositories to xAI Storage, Not Just Files It Read | Jul 14, 11:10 am |
|---|
| 268 | Microsoft starts testing cleaner Windows Search without ads | Jul 14, 11:10 am |
|---|
| 269 | Grok Build Uploads Entire Git Repositories to xAI Storage, Not Just Files It Reads | Jul 14, 10:10 am |
|---|
| 270 | US sanctions VPN, malware providers for enabling ransomware attacks | Jul 14, 10:10 am |
|---|
| 271 | Microsoft Maps Three Salesforce Attack Paths Tied to a Year of ShinyHunters Activity | Jul 14, 9:10 am |
|---|
| 272 | 148 npm Packages Disguised as Student Proxies Turned Browsers Into a DDoS Botnet | Jul 14, 9:10 am |
|---|
| 273 | U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware Support | Jul 14, 9:10 am |
|---|
| 274 | Microsoft Maps Year-Long ShinyHunters-Linked Salesforce Data Theft Across Three Paths | Jul 14, 7:10 am |
|---|
| 275 | ISC Stormcast For Tuesday, July 14th, 2026 https://isc.sans.edu/podcastdetail/10006, (Tue, Jul 14th) | Jul 14, 3:10 am |
|---|
| 276 | Japan's largest taxi operator shuts systems after cyberattack | Jul 13, 9:10 pm |
|---|
| 277 | Hackers backdoor Jscrambler npm package with infostealer malware | Jul 13, 8:10 pm |
|---|
| 278 | New CrashStealer malware poses as Apple crash reporting tool | Jul 13, 7:10 pm |
|---|
| 279 | Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found | Jul 13, 6:10 pm |
|---|
| 280 | CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper Checks | Jul 13, 6:10 pm |
|---|
| 281 | New MemGhost Attack Plants Persistent False Memories in AI Agents Through One Email | Jul 13, 4:10 pm |
|---|
| 282 | Lessons Learned from CISA’s Recent GitHub Leak | Jul 13, 4:10 pm |
|---|
| 283 | ⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and More | Jul 13, 4:10 pm |
|---|
| 284 | CISA warns of actively exploited RCE flaws in Joomla extensions | Jul 13, 4:10 pm |
|---|
| 285 | Lidl discloses online shop breach after service provider hack | Jul 13, 3:10 pm |
|---|
| 286 | Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft | Jul 13, 2:10 pm |
|---|
| 287 | UK charges suspects linked to Russian Coms call spoofing platform | Jul 13, 2:10 pm |
|---|
| 288 | Breach at the Beach: Play the Ultimate Entra ID CTF | Jul 13, 2:10 pm |
|---|
| 289 | Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory | Jul 13, 1:10 pm |
|---|
| 290 | Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst Copilots | Jul 13, 1:10 pm |
|---|
| 291 | Meta Files Patent for AI That Can Listen All Day and Track How You're Feeling | Jul 13, 1:10 pm |
|---|
| 292 | EU sanctions Russian GRU military hackers over cyberattacks | Jul 13, 12:10 pm |
|---|
| 293 | US and allies warn of Russian critical infrastructure attacks | Jul 13, 10:10 am |
|---|
| 294 | Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365 | Jul 13, 9:10 am |
|---|
| 295 | iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-Days | Jul 13, 7:10 am |
|---|
| 296 | Someone Is Scanning for Your MCP Servers and AI Assistant Credentials, (Mon, Jul 13th) | Jul 13, 5:10 am |
|---|
| 297 | ISC Stormcast For Monday, July 13th, 2026 https://isc.sans.edu/podcastdetail/10004, (Mon, Jul 13th) | Jul 13, 2:10 am |
|---|
| 298 | OpenAI temporarily relaxes GPT-5.6 Sol usage limits | Jul 13, 1:10 am |
|---|
| 299 | Claude Fable 5 stays free for paid users until July 19 as Anthropic buys more time | Jul 12, 8:10 pm |
|---|
| 300 | RedHook Android malware now uses Wireless ADB for shell access | Jul 12, 3:10 pm |
|---|
| 301 | Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage Campaigns | Jul 11, 7:10 pm |
|---|
| 302 | Compromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During Install | Jul 11, 7:10 pm |
|---|
| 303 | Australia warns of global campaign targeting vulnerable CMS platforms | Jul 11, 3:10 pm |
|---|
| 304 | Wireshark 4.6.7 Released, (Sat, Jul 11th) | Jul 11, 10:10 am |
|---|
| 305 | 'Ghostcommit' hides prompt injection in images to fool AI agents, steal secrets | Jul 11, 9:10 am |
|---|
| 306 | Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User Sessions | Jul 11, 8:10 am |
|---|
| 307 | New U-Boot flaws could enable stealthy firmware attacks | Jul 10, 10:10 pm |
|---|
| 308 | URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat | Jul 10, 7:10 pm |
|---|
| 309 | Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at Boot | Jul 10, 6:10 pm |
|---|
| 310 | Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages | Jul 10, 6:10 pm |
|---|
| 311 | Ryuk ransomware member pleads guilty in the US, faces 15 years in prison | Jul 10, 6:10 pm |
|---|
| 312 | Progress urges ShareFile admins to shut down servers over “credible” threat | Jul 10, 5:10 pm |
|---|
| 313 | Police suspects Dutch hackers were involved in Odido breach | Jul 10, 5:10 pm |
|---|
| 314 | Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be Patched | Jul 10, 4:10 pm |
|---|
| 315 | Money launderer accused of stealing seized crypto while in prison | Jul 10, 4:10 pm |
|---|
| 316 | Hackers exploit critical auth bypass in Gitea Docker image | Jul 10, 4:10 pm |
|---|
| 317 | Researcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw Flaws | Jul 10, 3:10 pm |
|---|
| 318 | Attackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency Wallets | Jul 10, 2:10 pm |
|---|
| 319 | New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic | Jul 10, 2:10 pm |
|---|
| 320 | The Replicant in Your Directory: AI Agents and the Identity Security Gap | Jul 10, 2:10 pm |
|---|
| 321 | Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access | Jul 10, 12:10 pm |
|---|
| 322 | Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and Tracking | Jul 10, 12:10 pm |
|---|
| 323 | Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites | Jul 10, 12:10 pm |
|---|
| 324 | From 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at Scale | Jul 10, 12:10 pm |
|---|
| 325 | Zimbra urges customers to patch critical web client XSS flaw | Jul 10, 12:10 pm |
|---|
| 326 | Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 Servers | Jul 10, 12:10 pm |
|---|
| 327 | Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks | Jul 10, 10:10 am |
|---|
| 328 | Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency Wallets | Jul 10, 10:10 am |
|---|
| 329 | "Comment stuffing" in an HTML phishing attachment as a mechanism for evading AI-based detection?, (Fri, Jul 10th) | Jul 10, 10:10 am |
|---|
| 330 | Former ransomware negotiator gets 4 years for BlackCat attacks | Jul 10, 9:10 am |
|---|
| 331 | ISC Stormcast For Friday, July 10th, 2026 https://isc.sans.edu/podcastdetail/10002, (Fri, Jul 10th) | Jul 10, 2:10 am |
|---|
| 332 | OpenMandriva Linux says contributor tried to sabotage the project | Jul 9, 11:10 pm |
|---|
| 333 | Injective SDK on npm infected with cryptocurrency wallet stealer | Jul 9, 8:10 pm |
|---|
| 334 | New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and Spyware | Jul 9, 7:10 pm |
|---|
| 335 | Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs | Jul 9, 7:10 pm |
|---|
| 336 | ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More Stories | Jul 9, 5:10 pm |
|---|
| 337 | npm 12 Disables Install Scripts by Default to Reduce Supply Chain Risk | Jul 9, 5:10 pm |
|---|
| 338 | Microsoft expects more Windows security updates from AI-discovered flaws | Jul 9, 5:10 pm |
|---|
| 339 | New Helix vishing group emerges in SharePoint data theft attacks | Jul 9, 5:10 pm |
|---|
| 340 | The Hidden Security Risks of Reduced Summer IT Coverage | Jul 9, 3:10 pm |
|---|
| 341 | New Forg365 phishing platform uses AI to target Microsoft 365 accounts | Jul 9, 3:10 pm |
|---|
| 342 | AI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps Up | Jul 9, 1:10 pm |
|---|
| 343 | GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint Defenses | Jul 9, 12:10 pm |
|---|
| 344 | Summer of Clearinghouses | Jul 9, 12:10 pm |
|---|
| 345 | Microsoft to retire the OWA Light client in Exchange Server | Jul 9, 11:10 am |
|---|
| 346 | Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges | Jul 9, 10:10 am |
|---|
| 347 | Police arrests 5,800 suspects in global anti-fraud crackdown | Jul 9, 10:10 am |
|---|
| 348 | Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images | Jul 9, 8:10 am |
|---|
| 349 | AssuranceAmerica data breach exposes records of 6.9 million drivers | Jul 9, 8:10 am |
|---|
| 350 | Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running It | Jul 9, 6:10 am |
|---|
| 351 | Microsoft patches RoguePlanet Defender zero-day vulnerability | Jul 9, 6:10 am |
|---|
| 352 | Fake 7-Zip Installers Turn Devices Into Residential Proxy Nodes | Jul 9, 5:10 am |
|---|
| 353 | GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding Agents | Jul 9, 5:10 am |
|---|
| 354 | _HELP_ME_ESCAPE_FROM_BELARUS_PLEASE_ [Guest Diary], (Tue, Jul 7th) | Jul 9, 2:10 am |
|---|
| 355 | ISC Stormcast For Thursday, July 9th, 2026 https://isc.sans.edu/podcastdetail/10000, (Thu, Jul 9th) | Jul 9, 2:10 am |
|---|
| 356 | Mount Royal University confirms breach as hackers claim attack | Jul 8, 10:10 pm |
|---|
| 357 | Fake Paysafe, Skrill SDKs on NPM and PyPi steal credentials | Jul 8, 8:10 pm |
|---|
| 358 | Hackers exploit Roundcube flaw to spy on academic researchers | Jul 8, 7:10 pm |
|---|
| 359 | AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers | Jul 8, 6:10 pm |
|---|
| 360 | New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware | Jul 8, 5:10 pm |
|---|
| 361 | Entra passkey enrollment vishing targets Microsoft 365 users | Jul 8, 5:10 pm |
|---|
| 362 | Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS | Jul 8, 3:10 pm |
|---|
| 363 | SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users | Jul 8, 2:10 pm |
|---|
| 364 | New Ghost Phishing Wave Is Breaking Traditional Email Security | Jul 8, 2:10 pm |
|---|
| 365 | 3 Ways AI Powers Service Desk Attacks and How to Prevent Them | Jul 8, 2:10 pm |
|---|
| 366 | Felons, Fraudsters Flog Offensive Cybersecurity Startup | Jul 8, 1:10 pm |
|---|
| 367 | GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code | Jul 8, 12:10 pm |
|---|
| 368 | Telco giant KDDI says data breach affects over 12 million people | Jul 8, 12:10 pm |
|---|
| 369 | The Verification Step Is the New ATO Battleground in 2026 | Jul 8, 12:10 pm |
|---|
| 370 | GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures | Jul 8, 12:10 pm |
|---|
| 371 | DuckDuckGo browser now blocks YouTube video ads | Jul 8, 12:10 pm |
|---|
| 372 | China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware | Jul 8, 10:10 am |
|---|
| 373 | CISA orders feds to prioritize patching Langflow auth bypass flaw | Jul 8, 10:10 am |
|---|
| 374 | My Stack Simulator, (Wed, Jul 8th) | Jul 8, 9:10 am |
|---|
| 375 | Ubiquiti warns of new max severity UniFi OS vulnerability | Jul 8, 9:10 am |
|---|
| 376 | CISA orders feds to patch max severity ColdFusion flaw by Friday | Jul 8, 8:10 am |
|---|
| 377 | CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEV | Jul 8, 7:10 am |
|---|
| 378 | 15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros | Jul 8, 7:10 am |
|---|
| 379 | ISC Stormcast For Wednesday, July 8th, 2026 https://isc.sans.edu/podcastdetail/9998, (Wed, Jul 8th) | Jul 8, 2:10 am |
|---|
| 380 | Accenture confirms breach after hacker offers stolen data for sale | Jul 7, 10:10 pm |
|---|
| 381 | More Odd DNS Records: NIMLOC, (Tue, Jul 7th) | Jul 7, 7:10 pm |
|---|
| 382 | Chinese hackers develop LONGLEASH malware to expand ORB network | Jul 7, 7:10 pm |
|---|
| 383 | Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots | Jul 7, 6:10 pm |
|---|
| 384 | RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service | Jul 7, 6:10 pm |
|---|
| 385 | Hidden backdoor in Tenda router firmware grants admin access | Jul 7, 6:10 pm |
|---|
| 386 | DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts | Jul 7, 5:10 pm |
|---|
| 387 | Spain arrests suspected member of pro-Russian hacktivist groups | Jul 7, 4:10 pm |
|---|
| 388 | Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data | Jul 7, 3:10 pm |
|---|
| 389 | Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants | Jul 7, 2:10 pm |
|---|
| 390 | Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker | Jul 7, 2:10 pm |
|---|
| 391 | The GitHub Actions Attack Pattern Your CI Security Scanners Miss | Jul 7, 2:10 pm |
|---|
| 392 | Webinar tomorrow: Why modern email attacks require a new approach to defense | Jul 7, 1:10 pm |
|---|
| 393 | What Changes When Your Software Supply Chain Includes AI Writing Your Code? | Jul 7, 12:10 pm |
|---|
| 394 | New Januscape Linux flaw allows VM escape on Intel, AMD devices | Jul 7, 12:10 pm |
|---|
| 395 | Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities | Jul 7, 10:10 am |
|---|
| 396 | Microsoft to enable Windows settings backup by default for orgs | Jul 7, 10:10 am |
|---|
| 397 | BeyondTrust warns of critical flaws in remote access software | Jul 7, 9:10 am |
|---|
| 398 | CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware | Jul 7, 8:10 am |
|---|
| 399 | Microsoft testing new Cloud Rebuild Windows 11 recovery feature | Jul 7, 8:10 am |
|---|
| 400 | BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA | Jul 7, 7:10 am |
|---|
| 401 | ISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th) | Jul 7, 2:10 am |
|---|
| 402 | Fake IT support calls on Microsoft Teams push EtherRAT malware | Jul 6, 9:10 pm |
|---|
| 403 | Phishing poses as big-brand job interview to steal Google accounts | Jul 6, 9:10 pm |
|---|
| 404 | Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations | Jul 6, 8:10 pm |
|---|
| 405 | 16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems | Jul 6, 7:10 pm |
|---|
| 406 | Vietnam arrests suspects behind HiAnime anime piracy service | Jul 6, 7:10 pm |
|---|
| 407 | Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure | Jul 6, 6:10 pm |
|---|
| 408 | ⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and More | Jul 6, 2:10 pm |
|---|
| 409 | Max severity Adobe ColdFusion flaw now exploited in attacks | Jul 6, 2:10 pm |
|---|
| 410 | RCS and DNS: The NAPTR Record, (Mon, Jul 6th) | Jul 6, 2:10 pm |
|---|
| 411 | Software Is Now Written at the Speed of Thought. Security Isn't. | Jul 6, 2:10 pm |
|---|
| 412 | Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRAT | Jul 6, 1:10 pm |
|---|
| 413 | How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from Bolt-On AI solutions | Jul 6, 1:10 pm |
|---|
| 414 | ISC Stormcast For Monday, July 6th, 2026 https://isc.sans.edu/podcastdetail/9994, (Mon, Jul 6th) | Jul 6, 12:10 pm |
|---|
| 415 | New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS | Jul 6, 9:10 am |
|---|
| 416 | New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions | Jul 6, 9:10 am |
|---|
| 417 | Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited Pages | Jul 6, 8:10 am |
|---|
| 418 | SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting Packing | Jul 6, 7:10 am |
|---|
| 419 | Flipper Zero firmware development continues with community help | Jul 5, 3:10 pm |
|---|
| 420 | JadePuffer ransomware used AI agent to automate entire attack | Jul 4, 3:10 pm |
|---|
| 421 | U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Case | Jul 4, 2:10 pm |
|---|
| 422 | North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider Campaign | Jul 4, 12:10 pm |
|---|
| 423 | Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded Devices | Jul 3, 10:10 pm |
|---|
| 424 | New Avalon Malware Framework Packs CrownX Ransomware Capabilities | Jul 3, 8:11 pm |
|---|
| 425 | New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Android | Jul 3, 8:10 pm |
|---|
| 426 | NetNut proxy network disrupted, 2 million infected devices cut off | Jul 3, 6:10 pm |
|---|
| 427 | North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets | Jul 3, 5:10 pm |
|---|
| 428 | ARToken PhaaS exposes EvilTokens' Microsoft 365 phishing toolkit | Jul 3, 3:10 pm |
|---|
| 429 | Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer | Jul 3, 2:10 pm |
|---|
| 430 | European Parliament Member Investigating Spyware Was Hacked With Pegasus | Jul 3, 11:10 am |
|---|
| 431 | PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords | Jul 3, 9:10 am |
|---|
| 432 | Claude Fable 5 isn’t permanently leaving subscriptions, Anthropic says | Jul 3, 2:10 am |
|---|
| 433 | Claude Fable relaunch disappoints users with nerfed performance | Jul 3, 1:10 am |
|---|
| 434 | Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials | Jul 2, 8:10 pm |
|---|
| 435 | Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices | Jul 2, 8:10 pm |
|---|
| 436 | FBI Seizes NetNut Proxy Platform, Popa Botnet | Jul 2, 8:10 pm |
|---|
| 437 | Google loses final appeal to overturn €4.1 billion EU fine | Jul 2, 4:10 pm |
|---|
| 438 | ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories | Jul 2, 4:10 pm |
|---|
| 439 | ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API | Jul 2, 2:10 pm |
|---|
| 440 | ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds | Jul 2, 2:10 pm |
|---|
| 441 | Identity Lifecycle Management Wasn't Built for AI Agents | Jul 2, 1:10 pm |
|---|
| 442 | Microsoft fixes bug that removed Copilot buttons in Outlook | Jul 2, 1:10 pm |
|---|
| 443 | Cisco finally confirms attackers exploiting Unified CM flaw | Jul 2, 12:10 pm |
|---|
| 444 | Opera rolls out Paste Protect feature to fight ClickFix attacks | Jul 2, 11:10 am |
|---|
| 445 | CISA: Microsoft SharePoint RCE flaw now actively exploited | Jul 2, 11:10 am |
|---|
| 446 | FortiBleed Credential Theft Linked to INC and Lynx Ransomware Operations | Jul 2, 10:10 am |
|---|
| 447 | AI Agent Exploits Langflow RCE to Automate Database Ransomware Attack | Jul 2, 10:10 am |
|---|
| 448 | Alleged Scattered Spider hacker extradited to the United States | Jul 2, 9:10 am |
|---|
| 449 | New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit Repos | Jul 2, 8:10 am |
|---|
| 450 | SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation | Jul 2, 7:10 am |
|---|
| 451 | Medtronic notifies customers impacted by ShinyHunters data breach | Jul 2, 5:10 am |
|---|
| 452 | ISC Stormcast For Thursday, July 2nd, 2026 https://isc.sans.edu/podcastdetail/9992, (Thu, Jul 2nd) | Jul 2, 2:10 am |
|---|
| 453 | FortiBleed credential-theft campaign linked to Lynx ransomware | Jul 1, 10:10 pm |
|---|
| 454 | New ChocoPoC malware targets researchers via trojanized PoC exploits | Jul 1, 9:10 pm |
|---|
| 455 | Kubota says hackers had month-long access to network systems | Jul 1, 9:10 pm |
|---|
| 456 | 19-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking Charges | Jul 1, 8:10 pm |
|---|
| 457 | Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes Clusters | Jul 1, 8:10 pm |
|---|
| 458 | ChocoPoc malware delivered via trojanized exploits on GitHub | Jul 1, 8:10 pm |
|---|
| 459 | VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs Stealer | Jul 1, 7:10 pm |
|---|
| 460 | SEO-Poisoned Software Sites Abuse ScreenConnect to Deploy AsyncRAT | Jul 1, 7:10 pm |
|---|
| 461 | DHS confirms hackers breached HSIN info-sharing platform | Jul 1, 6:10 pm |
|---|
| 462 | Hackers target Microsoft 365 accounts with 81 million login attempts | Jul 1, 5:10 pm |
|---|
| 463 | Webinar: Why traditional email security is no longer enough | Jul 1, 5:10 pm |
|---|
| 464 | Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run Commands | Jul 1, 4:10 pm |
|---|
| 465 | Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign Classic | Jul 1, 4:10 pm |
|---|
| 466 | Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF Lures | Jul 1, 4:10 pm |
|---|
| 467 | AI-Generated Browser Ransomware Abuses Chromium API on Windows and Android | Jul 1, 3:10 pm |
|---|
| 468 | Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts | Jul 1, 3:10 pm |
|---|
| 469 | Turning Indicators into Intelligence in OpenCTI with Criminal IP | Jul 1, 3:10 pm |
|---|
| 470 | 2026 Cybersecurity Assessment: The Gap Between Awareness and Resilience | Jul 1, 1:10 pm |
|---|
| 471 | Over 900 Oracle E-Business instances exposed to ongoing attacks | Jul 1, 1:10 pm |
|---|
| 472 | Microsoft Accelerates Post-Quantum Cryptography Shift to 2029 | Jul 1, 12:10 pm |
|---|
| 473 | Microsoft fixes GIF functionality in the Windows Emoji Panel | Jul 1, 11:10 am |
|---|
| 474 | Amazon fined $2.25M for withholding evidence from fraud victims | Jul 1, 10:10 am |
|---|
| 475 | Anthropic Restores Claude Fable 5 After U.S. Lifts Jailbreak-Linked Export Controls | Jul 1, 8:10 am |
|---|
| 476 | Phantom Squatting Uses AI-Hallucinated Domains for Phishing and Malware | Jul 1, 8:10 am |
|---|
| 477 | Adobe patches seven max severity ColdFusion, Campaign flaws | Jul 1, 8:10 am |
|---|
| 478 | Why Ask Credentials If There Are Secret Codes?, (Wed, Jul 1st) | Jul 1, 6:10 am |
|---|
| 479 | Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware Delivery | Jul 1, 6:10 am |
|---|
| 480 | Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ Attempts | Jul 1, 6:10 am |
|---|
| 481 | Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service | Jul 1, 5:10 am |
|---|
| 482 | ISC Stormcast For Wednesday, July 1st, 2026 https://isc.sans.edu/podcastdetail/9990, (Wed, Jul 1st) | Jul 1, 2:10 am |
|---|
| 483 | Anthropic to restore Claude Fable access on Wednesday | Jul 1, 1:10 am |
|---|
| 484 | Anthropic rolls out Sonnet 5 with near-Opus 4.8 performance at a lower price | Jul 1, 12:10 am |
|---|
| 485 | Microsoft accelerates quantum-safe roadmap as risks grow | Jun 30, 10:10 pm |
|---|
| 486 | New BioShocking attack manipulates AI browser into data theft | Jun 30, 10:10 pm |
|---|
| 487 | Malicious PyPI packages give hackers control of Telegram bot servers | Jun 30, 9:10 pm |
|---|
| 488 | RustDuck Botnet Rebuilds in Rust to Hijack Routers and Servers for DDoS | Jun 30, 7:10 pm |
|---|
| 489 | Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak Data | Jun 30, 7:10 pm |
|---|
| 490 | Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App Endpoints | Jun 30, 6:10 pm |
|---|
| 491 | Silent Swap Crypto Clipper Uses Fake Google Notes Extension to Replace Wallet Addresses | Jun 30, 4:10 pm |
|---|
| 492 | Fake Perplexity extension on Chrome Web Store tracked searches | Jun 30, 4:10 pm |
|---|
| 493 | 282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study | Jun 30, 3:10 pm |
|---|
| 494 | GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection Risks | Jun 30, 3:10 pm |
|---|
| 495 | Lessons from the Underground: How to Combat Business Email Compromise | Jun 30, 2:10 pm |
|---|
| 496 | What the Numbers Say About FIFA 2026 Cyber Risk | Jun 30, 1:10 pm |
|---|
| 497 | Microsoft adds smarter bot protection to Teams meetings | Jun 30, 12:10 pm |
|---|
| 498 | Insurance giant Aflac discloses data breach after subsidiary hack | Jun 30, 12:10 pm |
|---|
| 499 | Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn Stealer | Jun 30, 12:10 pm |
|---|
| 500 | AirDrop and Quick Share Flaws Let Nearby Attackers Trigger Crashes and Bypass Checks | Jun 30, 11:10 am |
|---|