“Make everyone one percent better and it compounds across the team.” That’s the line Joe Head wrote about his own job and when I read it back to him, he…
Category: EN
Telegram Introduces Serverless Runtime for Bots, Bringing Deployment, Application Logic, and Data Under One Platform
Telegram has rolled out Telegram Serverless, a managed serverless runtime that enables developers to deploy bot backends directly to Telegram’s…
ShinyHunters Claims Ernst & Young (EY) Data Breach, Threatens July 31 Leak
EY confirmed the theft of client tax documents from its third-party support platform. ShinyHunters claims responsibility and is threatening to publish the…
Wordfence PRISM Detected Backdoored WordPress Plugin within Two Hours of it Being Introduced
On July 28th, 2026, our autonomous AI vulnerability intelligence agent, Wordfence PRISM, identified a critical Authentication Bypass backdoor in Advanced…
DEF CON bans Meta-style ‘pervert glasses’
More organizers prohibit camera-equipped specs, even with prescription lenses
Bank for charities pulls online services over security fears
Customer funds safe, but 14,000 organizations may have to phone in time-sensitive payments
Apple iOS 26.6 Fixes Flaws Enabling Kernel Code Execution, Root Access and Sandbox Escape
Apple has released iOS 26.6 and iPadOS 26.6 to address a significant number of security vulnerabilities, including flaws that could allow malicious…
Hugging Face breach reignites open-weights debate, raises liability questions
The first publicly documented cyberattack run end-to-end by an autonomous AI was an OpenAI benchmark test that escaped its sandbox and breached Hugging…
An SOC Story of Why Fast Answers Beat Perfect Answers in Cyber Incident Response
A Formula 1 pit crew doesn’t wait until every sensor, camera, and engineer agrees that a tire needs changing. They have a few seconds to make a decision…
Microsoft launches agentic security platform designed to combat AI-based attacks
The rollout comes amid growing concerns about the ability of hackers to launch campaigns using autonomous methods.
Fake Claude Code Install Guide Uses Google Ads to Deliver MacSync Infostealer
Fake Google Ads are being used to push a convincing Claude Code installation guide that delivers the MacSync infostealer to macOS users. The campaign…
Bugs in Hugging Face Diffusers Bypass Custom Code Safeguard
Three CVEs in Hugging Face diffusers let a malicious model repo run code on any machine that loads it
Fastjson Zero‑Day RCE Actively Targeting U.S. Companies
Hackers are abusing a critical Fastjson zero‑day remote code execution (RCE) flaw to compromise U.S. organizations by simply sending malicious JSON data…
Aembit Joins Snowflake to Tackle AI’s Next Security Frontier: Trusted Agent Interoperability
Silver Spring, MD, USA, 28th July 2026, CyberNewswire
AI-found bugs aren’t proving any easier to exploit despite the hype
VulnCheck says fewer than 2% of AI-assisted vulnerability discoveries have been weaponized, casting doubt on claims frontier models are handing attackers…
24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login
Cybersecurity researchers have sounded an alert after finding more than 36,000 Baseboard Management Controller (BMC) management interfaces exposing…
Companies fear AI risks more than common cybersecurity threats
That misprioritization could blind companies to the threats they should be focusing on, Arctic Wolf said in a new report.
While External Threats Are Driving Security Awareness, Internal Risks Are Growing
New research shows external threats remain the top driver for security awareness training, while insider risks, data exposure, and AI tool use are…
Russian Sandworm Hackers Adopt ClickFix Technique to Target Ukrainian Organizations
Ukraine’s Computer Emergency Response Team (CERT-UA) has issued an advisory after detecting that Russia’s advanced persistent threat (APT) group Sandworm…
Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
A new Mirai-derived botnet called Tengu can use a compromised Linux device’s hardware watchdog to trigger a reboot when defenders kill its main process.…
