157 posts published today
- 21:31The Department of Know: Living off Azure, OpenAI’s “defender window,” and AI-driven PLC attacks
- 21:31Friday Squid Blogging: Neon Flying Squid
- 21:02Flock Has a Powerful New AI Tool for Police. We Got Its Code
- 20:3114 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
- 20:00IT Security News Hourly Summary 2026-08-21 22h : 8 posts
- 19:31Apple Changes EU Fees For Third-Party App Stores
- 19:31France Probes Major Tax Authority Data Breach
- 19:02Pennsylvania Governor Restricts Data Centre Development
- 19:02Your Shredded Visa Card May Still Work at the Checkout
- 19:02UK Fraud Cases Hit Record High in 2026
- 19:02New Manic Android Malware Uses Offline Networks to Drain Bank Accounts
- 19:01AI Data Centre Expansion Planned For Lanarkshire
- 19:00IT Security News Hourly Summary 2026-08-21 21h : 7 posts
- 18:31Meta Faces Biggest Legal Challenge Yet As Addiction Trial Begins
- 18:31Microsoft Expands Mailbox Storage From 50 GB to 100 GB for Users
- 18:31Microsoft Patches Severe Entra ID Flaw (CVSS 10.0) Allowing Remote Code Execution
- 18:31Claude Mythos 5 Now Available in Claude Security for Vulnerability Scanning
- 18:022026-08-21: SmartApeSG ClickFix campaign leads to two RATs
- 18:02Wordfence Intelligence Weekly WordPress Vulnerability Report (August 10, 2026 to August 16, 2026)
- 18:00IT Security News Hourly Summary 2026-08-21 20h : 8 posts
- 17:31Microsoft discloses maximum severity flaw in Entra ID
- 17:31AI “mind virus,” malware living off Azure, an Irregular post-mortem
- 17:31Defense contractors still struggling with basic CMMC requirements
- 17:02AI Is Learning to Write Genetic Code
- 17:02Oz Hair and Beauty – 1,988,331 breached accounts
- 17:02Google HEIR Enables AI Inference Using Homomorphic Encryption
- 17:02Fanlore – 144,520 breached accounts
- 17:00IT Security News Hourly Summary 2026-08-21 19h : 21 posts
- 16:32Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet
- 16:32Microsoft Patches Entra ID RCE Vulnerability Exploited in Attacks
- 16:31ISC Stormcast For Wednesday, August 19th, 2026 https://isc.sans.edu/podcastdetail/10058, (Wed, Aug 19th)
- 16:31Critical N-able Passportal Flaw Lets Malicious Websites Steal Entire Password Vault and 2FA Codes
- 16:31Homeland security cybercops say patch TrueConf (Russia’s Zoom) if you’re using it
- 16:31CoPilot Snitches on Itself, Hacker leaks Azure data and Texas University deals with cyber attack
- 16:31Former NSA Director Paul Nakasone Launches National Security Advisory Firm
- 16:31Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot
- 16:31Critical Patches, AI-Driven Attacks, and Data Theft Define the Week in August 2026
- 16:31Critical GitLab Code Injection Vulnerability Actively Exploited in Attacks
- 16:31Australian hotel chain leaks guests’ PII after breach at third-party database operator
- 16:31US Bank Investigating Data Breach Following LockBit Ransomware Claim
- 16:31OpenAI’s overhead will rise 20 percent for some workloads as it hardens security
- 16:02Claude Opus 5 Routes Around Obfuscated Binaries Instead of Defeating the Protection
- 16:02Scammers Use WhatsApp Groups to Coordinate Millions in Victim Trades and Pump Real Stocks
- 16:02Critical WordPress Plugin Vulnerability Exposes Sites to RCE Attacks
- 16:02AI Proves Decades-Old Math Problems With Machine-Checkable Results
- 16:02Hackers Hide Agent Tesla JScript Behind Unicode Emojis to Evade Detection
- 16:02100,000 WordPress Sites Affected by Privilege Escalation Vulnerability in Pods WordPress Plugin
- 16:01Chinese Hackers Use AI Agents to Exploit Web Servers and Automate Attacks
- 16:00IT Security News Hourly Summary 2026-08-21 18h : 10 posts
- 15:31In Other News: Zombie Card Attack, T-Mobile Cut Cable to Stop Hackers, GitHub Denies AI Caused Bug
- 15:31Phishing-as-a-Service Is Turning Credential Theft Into a Scalable Cybercrime Business
- 15:31Defense contractors’ CMMC confidence lags, even as self-assessments improve
- 15:31Malware Attacks Google-Synced Passkeys
- 15:31Microsoft confirms maximum severity flaw in Entra ID targeted for exploitation
- 15:31BTMOB Android RAT Ecosystem Expands With Resellers, Source-Code Sellers and Impersonators
- 15:02Encrypted Prompts Bypass AI Safety Guardrails in Grok and Gemini
- 15:02Hackers poison popular Rust crates to steal developers’ credentials
- 15:01Zombie Card: An expired Visa credit card can be used for purchases
- 15:00IT Security News Hourly Summary 2026-08-21 17h : 10 posts
- 14:31Federal Agencies Warn of Active Attacks on Siemens Industrial Controllers
- 14:31The Expiry Illusion: Why Fresh Evidence Can Still Be Wrong
- 14:31Inside NIST SP 1353: The New Quick-Start Guide for AI-Powered CSF Analysis
- 14:31Alation Confirms Cyberattack: What Security Teams Need to Know
- 14:31Zero Trust In The Age Of AI Driven Cyber Threats (Why Cisos Must Redefine Enterprise Trust Boundaries In 2026)
- 14:31New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets
- 14:31The New Russian Playbook: Bypassing MFA Without Cracking Passwords
- 14:02True Lies
- 14:02Private equity firm Apollo confirms data breach amid hacking wave targeting financial giants
- 14:00IT Security News Hourly Summary 2026-08-21 16h : 9 posts
- 13:31New “Cryptographic Context Injection” Leaks Grok Chat History in Zero-Click Exploit
- 13:31US Bank Investigates Alleged Data Breach After LockBit Ransomware Extortion Claim
- 13:31Senator asks US government watchdog to review how feds use hacking tools
- 13:31Deepfake Ads Funnel Investors Into WhatsApp Groups Controlled by Fake Financial Analysts
- 13:02Six Maximum-Severity Flaws Found in Cisco Products
- 13:02North Korean Hackers Tied to Rust Supply Chain Attack
- 13:02Microsoft Patches Exploited Entra ID Vulnerability
- 13:01Scientists catch a hidden electronic state forming in just 30 femtoseconds
- 13:00IT Security News Hourly Summary 2026-08-21 15h : 11 posts
- 12:31Wazuh and AI For Enhanced SOC Workflows
- 12:31Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836)
- 12:31Critical Isolated-vm Vulnerability Leads to RCE on Host
- 12:31Medical records, SSNs, and bank details exposed in CareCloud data breach
- 12:02New Agent Tesla Malware Variant Boosts Evasion Capabilities
- 12:02Bandwidth-Sharing App Can Turn Employee Devices Into Gateways to Internal Networks
- 12:02Attackers impersonate popular AI brands to spread malware
- 12:02UAT-10147 Compromises Web Servers to Deploy BadIIS for SEO Fraud and Data Theft
- 12:02Fake Conferences, OAuth and WhatsApp: Inside Russia’s New Espionage Tactics
- 12:02Russian Hackers Abuse OAuth and WhatsApp Device Linking to Hijack High-Value Accounts
- 12:00IT Security News Hourly Summary 2026-08-21 14h : 5 posts
- 11:31OpenAI Frontier Models Get Zero Data Retention With Private Safety Processing
- 11:31Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0
- 11:31Critical N-Able PassPortal Extension Flaw Gives Attackers Full Password Vault Access
- 11:02GitLab Warns of Active Exploitation of Critical GraphQL Flaw
- 11:00IT Security News Hourly Summary 2026-08-21 13h : 5 posts
- 10:31Hackers Hide Agent Tesla Malware Behind Emojis to Steal Browser and Email Passwords
- 10:31Quarkslab Says Anti-Reversing Software Should Return Plausible Wrong Answers Instead of Crashing
- 10:02More Incidents of AIs Going Rogue in Cybersecurity Challenges
- 10:02Poland’s CERT Warns of Active Exploitation of Critical Zimbra Collaboration Suite Flaw
- 10:00IT Security News Hourly Summary 2026-08-21 12h : 11 posts
- 09:31Sakura Internet Breach – Hackers Accessed 1.36 million Customers’ Personal Records
- 09:31Rust Supply Chain Attack Linked to North Korean Hackers
- 09:31DOJ Charges 17 Iranian Hackers in IRGC-Linked Campaign That Stole 31.5TB of Research Data
- 09:31Critical Spring Security LDAP Flaw Lets Remote Attackers Read and Modify Directory Data
- 09:31OpenAI Offers Zero Data Retention for Frontier AI Models With Private Safety Processing
- 09:31Head Mare APT Exploits TrueConf Server RCE Flaws to Deliver PhantomCore Malware
- 09:31Critical Spring Security Flaw Lets Attackers Gain Admin Access to LDAP Servers
- 09:02U.S. CISA adds TrueConf Server flaws to its Known Exploited Vulnerabilities catalog
- 09:02Google Chrome 151 Update Fixes 7 Security Flaws Enabling Remote Code Execution and Sandbox Escape
- 09:02Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind
- 09:00IT Security News Hourly Summary 2026-08-21 11h : 10 posts
- 08:31Microsoft Rolls Out 22 Fresh Security Patches
- 08:31Russia-Linked Hackers Exploit Legitimate Login Flows to Bypass 2FA and Steal Account Access
- 08:31GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure
- 08:31The invisible passenger in your car
- 08:02Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490)
- 08:02Coldcard Bitcoin Wallets Hit by Ongoing Attack Exploiting Key Generation Flaw
- 08:02Cybersecurity Job Ads Requiring AI Skills Double
- 08:02Cl0p Targets 40+ Organizations Through PTC Windchill Flaw
- 08:02GitLab 19.3 helps enterprises scale agentic development securely
- 08:00IT Security News Hourly Summary 2026-08-21 10h : 10 posts
- 07:31Google Chrome 151 Chromoting Flaw Allows Attackers to Execute Malicious Code Remotely
- 07:31UAE Police ‘Detained’ Two Binance Employees
- 07:31CISA MLFlow warning, Siemens PLCs warning, CareCloud confirms breach
- 07:31China-Linked Spy Campaign Uses Five New Malware Families Against Central Asian Governments
- 07:31CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities
- 07:31Hackers Exploit TrueConf Servers to Push Malware Through Legitimate Video Conference Downloads
- 07:31Peer2Profit Turns Employee Devices Into AstroProxy Nodes That Can Expose Internal Networks
- 07:31Apple’s Private Find My People Reversed to Decrypt Live Shared Locations on Linux
- 07:02Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution
- 07:00IT Security News Hourly Summary 2026-08-21 09h : 9 posts
- 06:31New Manic Android Malware Targets 169 Apps, Steals PINs and Exfiltrates Data via Wi-Fi Mesh
- 06:31Hackers Use Fake Google Gemini Installer to Deploy Vidar Stealer and Steal Browser Credentials
- 06:31Compromised Rust Crate With 18,000+ Downloads Steals Source Code During Builds
- 06:02Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5.
- 06:02ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit, and More
- 06:02Microsoft Entra ID RCE Flaw Lets Unauthorized Attackers Execute Code Remotely
- 06:02CISA Warns AI-Powered Zero Day Targets Windows And VMware
- 06:02Windows Defender Driver Abuse Enables Kernel-Level EDR and Antivirus Bypass
- 06:00IT Security News Hourly Summary 2026-08-21 08h : 4 posts
- 05:31A $25 template helped scammers build hundreds of phantom bank domains
- 05:31SilkParasite Uses Google Drive as C2 to Hide RAT Traffic Inside Trusted Cloud Services
- 05:02Nearly half of enterprises have no one leading PQC migration
- 05:01Microsoft Entra ID Remote Code Execution Vulnerability Exploited in the Wild
- 04:31New infosec products of the week: August 21, 2026
- 03:02Who Got Missed in the MFA Rollout? More Powershell + Graph + Entra scripting!, (Fri, Aug 21st)
- 02:02ISC Stormcast For Friday, August 21st, 2026 https://isc.sans.edu/podcastdetail/10062, (Fri, Aug 21st)
- 02:02Even MOAR Powershell, looking at Entra logins – the good, the bad and the password sprays, (Fri, Aug 21st)
- 01:31NSA warns AI exploits target power and water, Android malware leaks data via nearby phones, ransomware’s sweet spot
- 00:31Russian snoops add OAuth abuse to targeted phishing campaigns
- 23:02Falcon Cloud Security July 2026 Release: Helping Security Teams Move Faster in the Cloud
- 23:00IT Security News Hourly Summary 2026-08-21 01h : 5 posts
- 22:31Medusa Ransomware Hits 500-Plus Victims as Agencies Warn of Rapid Exploitation
- 22:31Inside Astaroth’s New Spambot Component
- 22:31Researchers Use Remote Spectre Attack to Leak JWT From Cloudflare Worker
- 22:02Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads
- 22:00IT Security News Hourly Summary 2026-08-21 00h : 9 posts
- 21:55IT Security News Daily Summary 2026-08-20