Experts discovered a recently undocumented Go-based loader framework termed HollowFrame and a Rust-based malware strain called Matryoshka. Spear-phishing…
8 Best Password Managers (2026), Tested and Reviewed
Keep your logins locked down with our favorite password management apps for PC, Mac, Android, iPhone, and web browsers.
Check Point SmartConsole Authentication Bypass Is Under Active Attack, and a PoC Is Now Public
CVE-2026-16232 lets an unauthenticated attacker seize full admin control of Check Point’s management console. Check Point confirms in-the-wild attacks,…
A Skipped Cookie Check Let Flatpak Apps Escape PipeWire’s Sandbox Entirely
CVE-2026-5674 chains a broken PulseAudio auth check, default module loading, and an unrestricted dlopen() into a full PipeWire sandbox escape from inside…
Week in review: Claude breached three companies during tests, AD CS domain-takeover PoC released
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Nono: Open-source sandbox for AI agents AI coding agents…
IT Security News Hourly Summary 2026-08-02 09h : 1 posts
1 posts were published in the last hour 6:31 : SplitVPN Data Breach Exposes 865k Users’ Personal Records
SplitVPN Data Breach Exposes 865k Users’ Personal Records
A significant data breach has hit SplitVPN, a Russian VPN provider formerly known as NotVPN, exposing the personal records of roughly 865,000 unique…
CISA Urges Utilities to Remove Internet-Exposed PLCs After Minnesota Attacks
After attacks hit 30+ Minnesota water systems, CISA urged utilities to remove internet-exposed PLCs and strengthen OT security. Between Sunday and Monday,…
IT Security News Hourly Summary 2026-08-02 06h : 1 posts
1 posts were published in the last hour 3:31 : Atomic MacOS (AMOS) stealer infection, (Sun, Aug 2nd)
Atomic MacOS (AMOS) stealer infection, (Sun, Aug 2nd)
Introduction
IT Security News Hourly Summary 2026-08-02 00h : 1 posts
1 posts were published in the last hour 21:55 : IT Security News Daily Summary 2026-08-01
IT Security News Daily Summary 2026-08-01
82 posts were published in the last hour 19:5 : IT Security News Hourly Summary 2026-08-01 21h : 3 posts 19:1 : Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents 18:31 : Coldcard Hardware Wallet Flaw Linked…
IT Security News Hourly Summary 2026-08-01 21h : 3 posts
3 posts were published in the last hour 19:1 : Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents 18:31 : Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes 18:31 : Brinks Home…
Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents
Hidden instructions in a Word document can make Microsoft 365 Copilot rewrite figures in a report, then copy the same instructions into the finished file.…
Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes
An attacker drained 1,196 Bitcoin addresses in 41 minutes on July 30, taking 1,082.65 BTC worth about $70.2 million at the time. Galaxy Research mapped…
Brinks Home Confirms Data Breach Following ShinyHunters Claim
Brinks Home, one of North America’s largest residential security providers, has confirmed that hackers breached its IT systems after the notorious…
The Network Has Become the Control Plane for AI Security
Network firewalls are the workhorses of modern cybersecurity. They are trusted to protect the network, blocking malicious traffic and preventing…
Check Point Brings AI Security into the Firewall with Industry-First AI Network Firewall
Check Point Software has launched what it calls the industry’s first AI Network Firewall, extending AI-specific inspection and control into the firewall…
IT Security News Hourly Summary 2026-08-01 18h : 8 posts
8 posts were published in the last hour 16:2 : Autonomous AI Agent Breaches Hugging Face, Exposes Internal Credentials 16:2 : Suspected Chinese-Speaking Threat Actor Targets Central Asian Governments With New OctLurk and SilkLurk Malware 16:2 : Estée Lauder Discloses…
Autonomous AI Agent Breaches Hugging Face, Exposes Internal Credentials
Hugging Face, the world’s largest AI model repository, confirmed a landmark security breach in July 2026, marking the first publicly documented case of an…
Suspected Chinese-Speaking Threat Actor Targets Central Asian Governments With New OctLurk and SilkLurk Malware
Government organizations across Central Asia are facing a cyber espionage campaign that employs two newly identified malware families, OctLurk and…
Estée Lauder Discloses HR Data Breach Linked to Oracle E-Business Suite Vulnerability
Estee Lauder announced that their Oracle E-Business Suite (EBS) system that manages human capital operations was targeted by cyber criminals who managed…
The OpenAI and Anthropic AI Hacking Sprees Are a Messy New Legal Frontier
Both major AI labs’ models broke containment, escaped onto the internet, and hacked other companies. If a human had done that, the law would likely be…
Claude AI Breached Three Organizations During Internal Testing
Anthropic’s Claude models, during internal security testing, made a malicious Python package and uploaded it to PyPi, where it ran on 15 real systems. The…