Berlin ‘s government faces a Rhysida ransomware attack weeks before elections, with officials refusing to pay despite a claimed 5.79 TB data theft.…
The Cybersecurity Apocalypse Is Coming in ‘Months,’ AI Giants Warn
Plus: Hackers target over 100 US water systems, ICE puts in an order for robot dogs, and you’ll never guess what “MrChildPorn” was arrested for.
Philippine Nuclear and Naval Targets Hit by Suspected Chinese Operator
An alleged Chinese-speaking actor breached Philippine nuclear and naval targets by exploiting known flaws, stealing sensitive data. A suspected…
Best SIEM Tools For SOC Analysts: Splunk vs Sentinel vs QRadar (2026)
By HOC Team | Last updated: August 29, 2026 | Read time: ~25 min In 2026, the average…
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path…
Malvertising Is Moving From Deceptive Content to Weaponized Infrastructure
Malvertising is becoming harder to identify by looking at the ad itself. A growing share of malicious advertising activity now depends on what happens…
Hackers Compromise TanStack Query npm Package to Steal Developer Credentials
A supply-chain worm has compromised multiple releases of @7nohe/openapi-react-query-codegen, an npm package that generates type-safe TanStack Query hooks.…
Hackers Use Fake Cloudflare CAPTCHA to Deploy TerminalFix Reverse Tunnel
A newly documented TerminalFix campaign is using fake Cloudflare CAPTCHA prompts to trick users into manually executing malicious PowerShell commands,…
Chinese Hackers Deploy PackClient RAT via Tax-Themed Phishing Attacks to Steal Data
A Chinese-speaking threat actor tracked as TA4922 is deploying the PackClient remote access trojan via tax-themed phishing campaigns targeting…
TerminalFix campaign deploys a reverse tunnel through multistage intrusion
Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with…
Critical ServiceNow Flaws Let Attackers Execute Code and Access Data
ServiceNow has released security updates for four vulnerabilities in its Now Platform and ServiceNow AI platform, including three critical flaws that…
700 AI Agents Secretly Coordinated to Hack Hugging Face After Breaking Their Isolation
A large group of AI agents reportedly bypassed their intended isolation, created a covert communication channel, and coordinated an attack on Hugging Face…
Hackers Can Take Full Control of Unitree G1 Humanoid Robots Over Bluetooth
A critical attack chain could let attackers within Bluetooth range take full control of Unitree G1 humanoid robots, gaining root-level code execution on…
How Varonis hacks AIs into snitching on themselves
Varonis AI Threat Lead on Copilot Exploits, Prompt Injection, and the AI Hacking Trifecta The host interviews Mark Vaitsman, AI threat research lead at…
Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety
New research reveals that AI safety refusal lives in a thin neural layer, highlighting the critical need for external, multi-layered security.
Berlin Refuses to Pay Hackers Who Stole Data From the City’s State Network
Berlin’s state government has confirmed that it is the target of an extortion attempt following the August compromise of the city’s state administrative…
4 Samsung Smart Switch Flaws Put Sensitive Data at Risk: Check Your Version
Samsung patched four Smart Switch Android vulnerabilities that could expose sensitive data. Users should update to version 3.7.72.6.
Innovator Spotlight: Snowflake
Giving AI Freedom Without Losing Control Who’s Really in Control? AI agents are stepping into a bigger role inside the enterprise. They are not just…
58 Arrested, 263 Suspects Identified: Inside the Global Crackdown on Operation Jackal IV
The Foundation Operation Jackal INTERPOL has been spearheading a continuing, multi-year international law enforcement effort known as Operation Jackal to…
The Balance Of Healthcare Research Potential And Privacy In The Age Of AI
There’s no question that AI has transformed healthcare research and completely changed the trajectory of the healthcare industry. What would have taken…
Innovator Spotlight: Rubrik Zero Labs
When AI Breaks Out of the Sandbox What Happens When AI Escapes? AI assistants are gaining unprecedented access to the inner workings of businesses, but…
Friday Squid Blogging: Truckload of Squid Spills in Rhode Island
Ugh : A tractor-trailer rollover sent a truckload of squid spilling into a Rhode Island roadway, leaving a stench as they sat in the road for hours in the…
The Artificial Adversary
Cybersecurity has spent decades focused on the human adversary. We built models for nation-state actors, cybercriminal gangs, insiders, access brokers,…
The Department of Know: Power plant attack, NSA hacker reunion, Hugging Face hack report
Read the full stories at CISOSeries.com . This week’s Department of Know is hosted by Rich Stroffolino, with guests Jason Elrod , CISO, MultiCare Health…