170 posts were published in the last hour
- 21:37 : One Password Mistake Helped Hackers Access Chick-fil-A Account
- 21:36 : Apple Fixes Hide My Email Bug After Yearlong Delay
- 21:36 : Russian TA488 Exploits Zimbra CVE-2025-66376 to Target Government Mail Servers
- 21:35 : Censys Finds AI/LLM Tool Exposures Up More Than 60%
- 21:2 : Wordfence Intelligence Weekly WordPress Vulnerability Report (July 13, 2026 to July 19, 2026)
- 20:34 : The Rise of Agentic SRE: Humans, Agents, and Reliability
- 20:34 : U.S. CISA adds Microsoft SharePoint and Check Point SmartConsole flaws to its Known Exploited Vulnerabilities catalog
- 19:35 : Top 10 Best Physical Security Penetration Testing Firms 2026
- 19:34 : Chaos ransomware deploys browser-based msaRAT to evade network detection
- 19:5 : Every Application Now Lives in an AI Ecosystem
- 19:5 : IT Security News Hourly Summary 2026-07-23 21h : 5 posts
- 19:5 : Windows 11 Security Cheat Sheet: BitLocker, Passkeys, and Defender Explained
- 19:4 : AegisAI, founded by former Google security execs, lands $36M to stop AI-driven spear phishing
- 19:4 : Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
- 18:32 : For Taylor Swift, Madison Square Garden’s Controversial Cameras Briefly Went Dark
- 18:32 : Chaos Ransomware Turns Your Chrome and Edge Web Browser Into an Invisible Malware Command Channel
- 18:32 : Hackers Abuse Notepad++ Plugins to Compromise Your System Silently
- 18:4 : Don’t swing at everything
- 17:35 : A New Threat Landscape Meets A New Kind of Defender
- 17:34 : Why AI-Generated Code Fails Security Reviews 45% of the Time
- 17:34 : US government says Iran-linked hackers are disrupting American water and energy providers
- 17:5 : Year-long Russian attacks infect users as soon as they look at an email
- 17:5 : ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories
- 16:36 : SourTrade: Browser-Assembled Malware Delivered Through Malvertising
- 16:36 : Millions of California-bought cars can be hijacked via Bluetooth
- 16:35 : French Court Orders Google and Cloudflare to Block Piracy Sites, Sparking Internet Freedom Debate
- 16:35 : EU’s ‘Chat Control 1.0’ Revived, Rekindling Privacy and Surveillance Fears
- 16:34 : Enterprise security at machine speed: AWS Black Hat 2026 preview
- 16:5 : Fake Bahrain Civil Defense App Deploys Android RAT to Steal PINs, OTPs, and Banking Credentials
- 16:5 : Hackers Abuse GitHub Actions to Exploit cPanel and WHM Servers and Steal Cloud Credentials
- 16:5 : Exim Directory Traversal Vulnerability Enables Privilege Escalation Attacks
- 16:5 : Next.js Patches Nine Security Flaws Enabling SSRF, Authentication Bypass, and DoS Attacks
- 16:5 : Hackers’ OPSEC Mistake Exposed a Global Espionage Campaign and Its New TriBack Malware
- 16:5 : IT Security News Hourly Summary 2026-07-23 18h : 15 posts
- 16:5 : Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations
- 16:4 : GAO report details scope of cybersecurity regulation overlap
- 16:4 : CISA, FBI warn that Iran-linked hackers are expanding target set for water, energy
- 16:4 : Russia-backed threat actor targets Western organizations in phishing campaign
- 15:38 : Blockchain Life Returns to Dubai — Featuring the Debut of AI Future
- 15:37 : What Is Cryptocurrency and How Does It Actually Work?
- 15:37 : VPN vs Zero Trust: Which Should Your Organisation Use in 2026?
- 15:36 : Oracle drops 1,449 security patches like it’s the new normal
- 15:36 : From Awareness to Action: Helping Organizations Prepare for Post-Quantum Cryptography
- 15:35 : Is Patching Dead? Vulnerability Management in the Post-Mythos Era
- 15:34 : OpenAI Fixes ChatGPT Agent Flaw That Could Let Attackers Forge an AI Insider
- 15:34 : Email threat landscape: Q2 2026 trends and insights
- 15:5 : The 4 best managed EDR service suppliers (and how to choose)
- 15:5 : Chick-fil-A Accounts Get Fried in Credential Stuffing Attack
- 15:5 : China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
- 15:4 : Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge
- 15:4 : Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files
- 14:35 : Russian Global Webmail Espionage
- 14:35 : Google Holds Back Gemini 3.5 Flash Cyber as CodeMender Enters Preview
- 14:34 : Iran-linked crews are probing more flavors of US industrial kit
- 14:34 : Former DigitalMint negotiator sentenced to 70 months for conspiring with BlackCat ransomware affiliates
- 14:8 : When the “Autonomous Attacker” Is Your Own AI Model, (Thu, Jul 23rd)
- 14:8 : Research Shows Quantum Security Deployment Remains Stuck Despite Enterprise Planning
- 14:7 : Abstract Raises $25 Million to Expand Composable Security Operations Platform
- 14:6 : Microsoft Copilot Deployments Delayed Over Security Concerns
- 14:5 : Cyber Briefing: 2026.07.23
- 13:36 : New Kimi K3 AI Agent Uncovers Redis Remote Code Execution Flaws in Just 27 Minutes
- 13:36 : Which Brands Are Impersonated Most? Inside the Q2 2026 Brand Phishing Report
- 13:36 : A Conversation with Crime Stoppers International About Our Shared Cybercrime Bounty Initiative
- 13:36 : One ChatGPT link could smuggle a rogue AI agent into your company
- 13:35 : How attackers hosted a fake Claude download page on the claude.ai domain
- 13:35 : Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns
- 13:35 : Agentic AI Challenges Confidential Computing
- 13:35 : Chick-fil-A data breach via credential stuffing
- 13:34 : Google adds selfie video authentication
- 13:34 : EU AI Act Deadline Approaching
- 13:34 : Security teams shift from AI-only to hybrid penetration test
- 13:7 : New TriBack Loader Evades EDR Using Signed Binaries and Win32 Callback APIs
- 13:6 : TrickBot Turns Ordinary DNS Traffic Into a Hidden Channel for Malware Commands
- 13:6 : Microsoft Defender for Office 365 Adds New Prompt Injection Protection
- 13:5 : Ubuntu snap-confine Race Condition Enables Local Privilege Escalation to Root
- 13:5 : Google Launches CodeMender AI Agent to Find, Validate, and Patch Vulnerabilities
- 13:5 : New Dolphin X Malware Steals Credentials From 300+ Apps and Profiles Victims With AI
- 13:5 : IT Security News Hourly Summary 2026-07-23 15h : 10 posts
- 13:4 : Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models
- 13:4 : Cobalt adds Autonomous Pentest to scale application security testing
- 12:34 : Google Released Gemini 3.5 Flash Cyber AI, a Specialized AI Model for Vulnerability Hunting
- 12:34 : If you get knocked on the head and get all your devices stolen and have amnesia, Google will let you back in with a selfie
- 12:8 : Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts
- 12:8 : Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
- 12:7 : How Synthetic Identity Fraud is Coming for Machine Identities
- 12:6 : WhatsApp Web chats exposed by Adobe’s Acrobat extension flaw
- 12:5 : Millions of cars could be tracked and unlocked by a hidden security flaw
- 12:5 : Swiss train maker tells ransomware crooks to get off at the next stop
- 12:4 : OpenAI behind Hugging Face hack, TrickBot tunnels through DNS, Acrobat extension opens WhatsApp
- 11:35 : Exim Vulnerability Lets Attackers Access Files Outside the Mail Spool
- 11:35 : Hackers Turn GitHub Actions Into a Global Botnet for Attacking Web Hosting Servers
- 11:34 : Critical FreeRDP Clipboard Flaw Could Let Malicious RDP Servers Execute Code
- 11:34 : Critical FreePBX Flaws Let Unauthenticated Attackers Execute Code and Take Over Administrator Accounts
- 11:34 : End-to-End Encryption and “Going Dark”
- 11:34 : The EU AI Act Deadline Is Approaching. Is Your Workforce Ready?
- 11:34 : Months-long breach exposes South Korean diplomats’ personal data
- 11:34 : AI Agents Now the Enterprises Fastest Growing Exposed Attack Surface
- 11:6 : OpenAI Models Breached Hugging Face During Internal Cyber Test
- 11:5 : New TrickBot Variant Spotted Using DNS to Control Infected Windows PCs
- 11:5 : New Windows Stealer Uses AI Profiling to Identify High-Value Corporate Victims
- 11:5 : Hackers Breach South Korea’s Diplomatic Academy and Expose Foreign Ministry Staff Data
- 11:4 : Upbound Group Says Data Breach Led to $13 Million in Fraudulent Contract Losses
- 11:4 : Chaos ransomware msaRAT hides its C2 channel inside a legitimate browser process
- 11:4 : Attackers exploit critical Check Point flaw to take over firewall management (CVE-2026-16232)
- 10:34 : FakeAgent Campaign: Malicious Claude Artifact Used to Distribute SectopRAT to 29 Organisations
- 10:34 : France, Germany Summon Russian Envoys Over Alleged Cyber Espionage Campaign
- 10:34 : New Dolphin X Stealer Employs AI Profiling to Prioritize Targets
- 10:5 : Preview: Cisco Talos at Black Hat USA 2026
- 10:5 : Chaos ransomware’s msaRAT: Living off the browser to build a covert C2 channel
- 10:5 : Ubuntu Snap-Confine Vulnerability Allows Unprivileged Users to Execute Code as Root
- 10:5 : Critical Check Point SmartConsole Flaw Exploited in the Wild to Bypass Authentication
- 10:5 : IT Security News Hourly Summary 2026-07-23 12h : 15 posts
- 10:4 : Assaf Keren Appointed New CISO of Meta
- 10:4 : PyPI hardens package security with new upload restrictions
- 10:4 : Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs
- 9:35 : KARR Bluetooth Vulnerability Lets Nearby Attackers Unlock and Immobilize Over 2 Million Cars
- 9:35 : Microsoft Adds Prompt Injection Protection to Defender for Office 365
- 9:35 : Check Point patches actively exploited SmartConsole authentication bypass flaw
- 9:34 : New Check Point Zero-Day Vulnerability Exploited in the Wild
- 9:6 : Login Theft Becomes Top Factor In Ransomware Attacks
- 9:6 : Chick-fil-A Confirms Data Breach After Credential Stuffing Attack Exposes Customer Personal and Payment Data
- 9:6 : CISA Warns of Check Point Authentication Vulnerability Actively Exploited in the Wild
- 9:6 : CISA Warns Iran-Linked Hackers Exploit Rockwell PLCs to Disrupt U.S. Critical Infrastructure
- 9:5 : Chick-fil-A Urges Customers to Change Chick-fil-A One Passwords After Unauthorized Access
- 9:5 : July 2026 InfraTrust Report Flags 26 Unauthenticated Vulnerabilities and Exploited SonicWall Flaws
- 9:5 : Bluetooth Vulnerability Exposes 2.2 Million Cars to Remote Unlock and Immobilization Attacks
- 9:5 : GitHub revamps bug bounty program with new VIP tier, payout changes
- 9:4 : Swiss rail manufacturer Stadler refuses to pay $12.3 million ransom after cyberattack
- 9:4 : Adobe Patches Acrobat Chrome Extension Flaw That Exposed WhatsApp Web Chats to Any Website
- 8:35 : EU Informs JD.com Of Concerns Over Ceconomy Buyout
- 8:35 : The Trust Economy: Why Transparency and Data Privacy Are Becoming Core Parts of Customer Experience
- 8:34 : The Trust Economy: Head-to-Head
- 8:34 : Anthropic To Deploy AMD Chips In Investment Deal
- 8:34 : Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access
- 8:5 : Google Unveils CodeMender AI Agent for Automated Vulnerability Detection and Remediation
- 8:4 : Unknown Attackers Remain Inside South Korean Diplomatic System for Nearly 10 Months
- 8:4 : AI Between Compliance and Data Protection: “A Ban or Ignoring It Often Just Leads to Shadow AI”
- 8:4 : Preparing for Q-day: Four steps to prepare your hybrid cloud today
- 8:4 : Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
- 7:34 : Teen Drops Landmark Addiction Case Against Meta
- 7:33 : 1-15 July 2026 Cyber Attacks Timeline
- 7:32 : 1-15 July 2026 Cyber Attacks Timeline Infographic
- 7:32 : Axonius expands Asset Cloud with Cyber Assets and Exposures enhancements
- 7:5 : IT Security News Hourly Summary 2026-07-23 09h : 8 posts
- 7:3 : Samsung In Talks To Invest In France’s Mistral AI
- 7:2 : New TrickBot Malware Variant Uses DNS Tunneling for Command-and-Control
- 7:2 : Talking smack about a doctor got him access to private medical files
- 6:35 : OpenAI Plans 3.2 GW Data Centre In Georgia
- 6:34 : 26 Unauthenticated Vulnerability Advisories Expose Firewalls, VPNs, Switches, and Load Balancers
- 6:34 : CISA Warns of Check Point Authentication Vulnerability Exploited in Attacks
- 6:34 : Shadow AI is becoming enterprise security’s biggest blind spot
- 6:5 : France Passes Social Media Ban For Under-15s
- 6:4 : CISA Urges Organizations to Remove Rockwell PLCs From Direct Internet Exposure
- 6:4 : Critical RefluXFS Linux Kernel Flaw Lets Local Attackers Gain Root Access
- 6:4 : Product Showcase: AppViewX Agent Identity Security
- 5:35 : Critical Adobe Acrobat Chrome Extension Flaw “HermeticReader” Lets Hackers Hijack WhatsApp Chats of 300M+ Users
- 5:35 : Anthropic Launches Claude Security Plugin to Scan Codebases for Vulnerabilities Before Commit
- 5:34 : US Warns of Iranian Hackers Targeting Siemens, Schneider, and Rockwell ICS Devices
- 5:34 : Multi-patch vulnerability fixes can leave open source exposed
- 5:4 : The AI code vulnerabilities that grow with your app
- 4:34 : Building a defense in depth strategy for sensitive data
- 4:5 : IT Security News Hourly Summary 2026-07-23 06h : 1 posts
- 4:4 : Anthropic Launches Claude Security Plugin to Scan Code for Vulnerabilities
- 2:4 : ISC Stormcast For Thursday, July 23rd, 2026 https://isc.sans.edu/podcastdetail/10020, (Thu, Jul 23rd)
- 0:4 : OpenAI scored an own goal with HuggingFace attack, showing how open Chinese models are winning
- 23:34 : CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections
- 22:33 : OpenAI AI Models Breach Hugging Face During Security Test
- 22:33 : Adobe Acrobat Chrome extension bug enabled silent WhatsApp data theft
- 22:5 : IT Security News Hourly Summary 2026-07-23 00h : 1 posts
- 21:56 : IT Security News Daily Summary 2026-07-22