195 posts were published in the last hour
- 21:2 : ChatGPT Joins Most Faked Brands Ranking in Phishing, Check Point Says
- 21:2 : FastJson RCE Zero-Day Actively Targets Organizations
- 21:1 : Meta Faces Scrutiny After Report Finds Thousands of AI Nudify Ads on Facebook, Instagram
- 20:31 : Critical TeamCity Flaw Could Let Unauthenticated Attackers Execute Server Commands
- 20:31 : Apple Fixes 194 Security Flaws Across iPhone, Mac and Other Devices
- 20:31 : Cursor Quietly Patches High-Severity Git Vulnerability After Seven-Month Delay
- 20:31 : Coca-Cola Confirms Data Theft as Fairlife Ransomware Attack Escalates
- 20:31 : AI Agent Security Just Had Its Catalyst Moment
- 20:31 : Meta Begins Removing Harassing Ray-Ban Smart Glasses Videos From Instagram
- 19:31 : Microsoft and Wiz mind-meld agents catch more than 90% of bugs
- 19:31 : Dysphoria Botnet Uses Blockchain Domains to Hide C2 Infrastructure
- 19:31 : CISO’s guide to data obfuscation
- 19:31 : Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack
- 19:31 : Mate Security Grows Over 500% Since Q3 2025 and Pushes Past $50M in Funding
- 19:5 : IT Security News Hourly Summary 2026-07-28 21h : 10 posts
- 19:2 : Claude Mythos Preview Discovers Cryptographic Weaknesses That Human Experts Missed for Years
- 19:2 : JetBrains Urging Customers to Patch Critical TeamCity Flaw that Enables OS Command Execution
- 19:2 : Chrome Extension Monitors AI Conversations Across ChatGPT, Claude, Gemini, and Other Platforms
- 19:2 : Nginx Buffer Overflow Vulnerability Allows Attackers to Execute Arbitrary Code – PoC Released
- 19:1 : AWS KMS or AWS CloudHSM: Choose the right key management solution
- 19:1 : Top 10 Phishing Kits Used by Hackers to Launch Cyberattacks (July 20-26, 2026)
- 18:31 : How Hackers Are Weaponizing Hotel Wi-Fi to Steal Corporate Microsoft 365 Accounts
- 18:31 : Substituting IP address evaluation with hardware-rooted sovereign zero trust
- 18:31 : The Governance Vacuum: Who Owns Present-State Proof?
- 18:31 : Strengthening the open source defense layer: Red Hat joins NVIDIA in the Open Secure AI Alliance
- 18:2 : PhantomEnigma Infects Organizations with Malware via Hijacked Government Websites
- 17:31 : 2026 Phase 1a IRAP report is now available on AWS Artifact for Australian customers
- 17:31 : Tools Change. Teach People How to Keep Up
- 17:1 : Telegram Introduces Serverless Runtime for Bots, Bringing Deployment, Application Logic, and Data Under One Platform
- 16:31 : ShinyHunters Claims Ernst & Young (EY) Data Breach, Threatens July 31 Leak
- 16:31 : Wordfence PRISM Detected Backdoored WordPress Plugin within Two Hours of it Being Introduced
- 16:31 : DEF CON bans Meta-style ‘pervert glasses’
- 16:5 : IT Security News Hourly Summary 2026-07-28 18h : 16 posts
- 16:2 : Bank for charities pulls online services over security fears
- 16:2 : Apple iOS 26.6 Fixes Flaws Enabling Kernel Code Execution, Root Access and Sandbox Escape
- 16:2 : Hugging Face breach reignites open-weights debate, raises liability questions
- 16:2 : An SOC Story of Why Fast Answers Beat Perfect Answers in Cyber Incident Response
- 16:2 : Microsoft launches agentic security platform designed to combat AI-based attacks
- 16:1 : Fake Claude Code Install Guide Uses Google Ads to Deliver MacSync Infostealer
- 15:32 : Bugs in Hugging Face Diffusers Bypass Custom Code Safeguard
- 15:32 : Fastjson Zero‑Day RCE Actively Targeting U.S. Companies
- 15:31 : Aembit Joins Snowflake to Tackle AI’s Next Security Frontier: Trusted Agent Interoperability
- 15:31 : AI-found bugs aren’t proving any easier to exploit despite the hype
- 15:31 : 24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login
- 15:31 : Companies fear AI risks more than common cybersecurity threats
- 15:31 : While External Threats Are Driving Security Awareness, Internal Risks Are Growing
- 15:31 : Russian Sandworm Hackers Adopt ClickFix Technique to Target Ukrainian Organizations
- 15:31 : Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
- 15:31 : Vatican ‘Click to Pray’ App Security Flaw Exposed Data of 700,000 Users
- 15:3 : AI-Assisted Bug Hunt Uncovers Linux Kernel 0-Day in net/sched
- 15:2 : Cyera Acquiring Oasis Security in $1 Billion Deal
- 15:2 : Cyber Briefing: 2026.07.28
- 15:2 : Solve Multi-CDN Entitlement Drift with Edge Functions Without Losing Viewers
- 15:2 : Charity bank pulls online services over security fears
- 15:2 : Your AI Governance Policy Should Survive Your Next Model Change
- 15:2 : Engineering Production Agentic Systems: Part 2: The Guardrails
- 15:2 : Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe
- 15:1 : How Partners Can Defend the Network and Ease AI Anxiety
- 14:2 : Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root
- 14:2 : AI Agents, Trust Abuse, and Breaches Define Cybersecurity News this Week of July 2026
- 14:2 : Charity bank pulls online services over third-party software flaw
- 14:1 : JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach
- 13:32 : Fake Claude Code Installer Delivers MacSync macOS Infostealer Through Google Ads
- 13:32 : Phishing Dominates as Initial Entry Method for Cyber-Attacks, as Hackers Hone Evasion Techniques
- 13:32 : Origin Confirms Data Breach – Hackers Accessed 900,000 Customers’ Data
- 13:32 : OT Security Startup Frenos Raises $1.52 Million
- 13:32 : Bugcrowd introduces Savant Pathseeker for agentic penetration testing with exploit validation
- 13:32 : Microsoft Launches Cybersecurity AI Model MDASH
- 13:32 : From Payments to Portfolios: How Financial Super Apps Rewrite Economics of Global Investing
- 13:32 : Public Exploit Lands for vBulletin’s Pre-Auth RCE, CVE-2026-61511
- 13:32 : An SOC Story Why Fast Answers Beat Perfect Answers in Cyber Incident Response
- 13:32 : Prescient Security adds attack surface management to Cait, broadens AI-assisted pentesting
- 13:31 : Dismantled Kratos Phishing Kits Acting as Blueprint for Others to Attack Microsoft 365 Users
- 13:31 : BlackCloak extends deepfake protection to the executive’s trusted circle
- 13:31 : Hackers Are Using Fake Crypto Wallet Screens to Steal Recovery Phrases and Browser Sessions
- 13:31 : Cyberhaven launches Flow to secure data across human and AI workflows
- 13:31 : Hackers Exploiting FastJson RCE 0-Day in the Wild to Attack US-based Organizations
- 13:5 : IT Security News Hourly Summary 2026-07-28 15h : 16 posts
- 13:3 : Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
- 13:3 : We rebuilt Malwarebytes Mobile Security for the scams of today
- 13:3 : Dismantled Kratos Phishing Kit Becomes Blueprint for Attacks on Microsoft 365 Users
- 13:3 : Microsoft Launches Flurry of AI Security Initiatives to Combat AI-Enabled Threats
- 13:2 : Uncle Sam needs you to fight for 6G leadership and security, lest Beijing get there first
- 13:2 : EShare App Vulnerability CVE-2026-55977
- 13:2 : Intel 471 expands Verity471 with AI agent and MCP support for threat intelligence
- 13:2 : Shared Claude chats were searchable on Google
- 13:2 : Act Security Launches Patch Management Solution
- 13:2 : SpecterOps brings AWS attack path management and AI to hybrid identity security
- 13:2 : Tribeca Film Festival Data Breach Exposes 666K Records
- 13:2 : Update your iPhone, iPad and Mac to fix Apple security holes
- 13:2 : Senator Wyden urges federal VPN purge
- 13:2 : Team Cymru unveils Pure Signal Command for AI-powered threat intelligence and incident response
- 13:1 : Fake IT Calls Deploy GoGRPC Backdoor via Teams
- 12:31 : Exposed BMCs hand out password hashes before login
- 12:2 : CastleLoader Campaign Deploys NeedleStealer to Steal Crypto Wallet Seeds and Browser Sessions
- 12:2 : July Apple updates are especially important if you receive images
- 11:32 : VERITAS project could change the way scientists secure AI
- 11:32 : Confidential Computing on CPU and GPU Systems: How AI Data Centers Protect Data in Use
- 11:32 : One-click Claude Desktop flaw could enable hidden prompt injection and code execution
- 11:32 : Act Security Emerges from Stealth to Fight the Patch Problem
- 11:32 : Axon Is Another License Plate Surveillance Company
- 11:32 : Dysphoria Botnet Infects 200,000 IoT Devices and Hides C2 Behind Blockchain Domains
- 11:31 : JetBrains Patches Critical TeamCity Flaw Allowing Server Takeover
- 11:31 : Vatican’s Click To Pray app exposed personal data from 700,000 users
- 11:31 : JetBrains fixes critical unauthenticated RCE in TeamCity On-Premises (CVE-2026-63077)
- 11:31 : Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker
- 11:31 : Scammers Pose as ShinyHunters to Blackmail Data-Breach Victims With Fake Webcam Videos
- 11:31 : Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model
- 11:31 : Hackers Exploiting Arista VeloCloud Orchestrator 0-Day Vulnerability in the Wild
- 11:2 : Fake IT Calls on Microsoft Teams Lead to GoGRPC Backdoor Infections
- 11:2 : Coca-Cola Reveals Subsidiary Fairlife Suffered Data Breach
- 11:2 : libssh2 Vulnerabilities Allow a Malicious SSH Server to Corrupt Client Memory
- 11:2 : Russian state attackers exploiting misconfigured routers, new multi-nation advisory warns
- 11:2 : New Tengu Mirai Botnet Reboots Your IoT Device When You Try to Kill It
- 11:2 : AI-Discovered Linux Kernel Zero-Day Enables Root Privilege Escalation
- 11:2 : LegacyHive Exploitation Chain Bypasses Windows Security Even With July 2026 Patches Installed
- 11:2 : Critical TeamCity Flaw Lets Unauthenticated Attackers Execute System Commands
- 11:2 : Researchers Say a ‘Ghost’ Chinese Company Built the Network Hiding PLA Cyberattacks
- 11:2 : Chinese Hackers Use RedRelay Multi-Hop Network to Conceal Global Cyber Operations
- 11:2 : AI-Assisted Research Uncovers Linux Kernel Zero-Day Enabling Root Privilege Escalation
- 10:31 : New Crypter-as-a-Service Cruciferra Fuels Stealthy Malware Attacks Worldwide
- 10:19 : e-Health Platform: When penetration tests prevent bad things from happening
- 10:18 : Hush Security Raises $30 Million for AI Agent Governance
- 10:18 : Waymo Mulls Split With Uber Amid Lobbying Conflict
- 10:5 : IT Security News Hourly Summary 2026-07-28 12h : 14 posts
- 10:2 : Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the Cost
- 10:2 : Grafana Assistant expands with AI agents for investigations, automation, and observability
- 10:2 : Tengu Mirai Botnet Uses Watchdog Reboots and Binary Bricking to Resist Removal
- 10:2 : Closing the Sovereignty Gap: Bringing Active API Protection to Self-Managed Environments
- 10:2 : IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains
- 10:2 : NVIDIA’s Open Secure AI Alliance Is Missing Some Big Names
- 10:2 : Chinese Company Starts Manufacturing DUV Chip Tools
- 9:31 : Shares In China’s CXMT Surge 466 Percent On Shanghai Debut
- 9:31 : Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit
- 9:31 : Arista patches actively exploited VeloCloud bug as CISA puts admins on the clock
- 9:31 : AWS to retire Shield Advanced L7 automatic mitigation on January 1, 2027
- 9:31 : Fake ShinyHunters Emails Give Victims 48 Hours to Pay $2,000 Bitcoin Ransom
- 9:31 : Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In
- 9:31 : Coca-Cola confirms hackers stole data in Fairlife ransomware attack
- 9:2 : New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation
- 9:2 : PortSwigger Launches Burp AT to Transform Web Pentesting
- 9:2 : Google Adopts New Threat Actor Naming System
- 9:2 : China Chipmakers See Profits Surge 2,579.5 Percent
- 8:32 : Five Progress LoadMaster Flaws Let Attackers Execute Commands and Gain Root Access
- 8:32 : Drone Follows Police Scotland Helicopter At Close Range
- 8:31 : U.S. CISA adds Arista VeloCloud Orchestrator and Fortinet FortiOS flaws to its Known Exploited Vulnerabilities catalog
- 8:31 : PortSwigger Launches Burp AT Agentic AI for Human-Led Web Penetration Testing
- 8:31 : LegacyHive Exploit Abuses Windows Profile Loading to Hijack User Registry Hives
- 8:31 : Microsoft Teams Vishing Attack Uses Quick Assist to Deploy GoGRPC Backdoor
- 8:31 : Mirage Kitten targets Middle East and Africa region with new malware
- 8:31 : Multiple FFmpeg Vulnerabilities Allow Attackers to Corrupt Memory Via Malicious Video File
- 8:31 : Apple Delays First Smart Glasses to WWDC 2027 Over Privacy Concerns
- 8:31 : Operation STANDOFF Hides Command-and-Control Traffic Behind GitHub Redirects
- 8:2 : Dysphoria IoT Botnet Uses Blockchain Domains and 200,000 Devices for DDoS Attacks
- 8:2 : SpaceX Starship Rocket Splashes Down After Successful Test
- 8:2 : Top 10 Best VPN Alternatives For Secure Remote Access in 2026
- 8:2 : AutoIT Payload Injector , (Tue, Jul 28th)
- 8:1 : PortSwigger Introduces Burp AT Agentic AI for Automated Penetration Testing
- 7:31 : Nvidia opens AI security tent, Microsoft adds cyber sprinter to MDASH, Fairlife ransomware spills data
- 7:31 : Unpatched Fastjson Vulnerability Exploited in Attacks
- 7:31 : Command Injection Cheatsheet: OS Payloads And Prevention (2026)
- 7:31 : Shein Sees $99m Loss Ahead Of Hong Kong IPO
- 7:31 : Houston City College – 831,642 breached accounts
- 7:31 : Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy GoGRPC Backdoor
- 7:31 : Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day
- 7:5 : IT Security News Hourly Summary 2026-07-28 09h : 3 posts
- 6:31 : Multiple FFmpeg Flaws Allow Arbitrary Memory Corruption via Malicious Videos
- 6:31 : Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost
- 6:31 : Shadow AI incident response begins with logs that may already be gone
- 6:2 : Hugging Face Has a Deepfake Nudes Problem
- 6:2 : Apple iOS 26.6 Update Fixes Flaws Allowing Kernel-Level Code Execution and Root Access
- 6:2 : Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw
- 6:2 : AI took more than junior developer jobs and the bill comes later
- 6:2 : How DCSync Attack Helps Hackers Steal Password Hashes Silently from Active Directory
- 6:2 : Operation STANDOFF Uses GitHub Redirects Across 44 Servers to Hide Multi-Malware C2 Traffic
- 6:1 : CISA Warns of Fortinet FortiOS Vulnerability Exploited in Attacks
- 5:31 : Download: The High-Performance Team Playbook
- 5:31 : Operation BlueDash Maintains Redundant Remote Access Even After One RMM Tool Is Removed
- 5:31 : Origin Energy Data Breach Affects 900,000 Australians
- 5:31 : OpenAI CEO Sam Altman Claims AI Has Reached Singularity as Systems Begin Improving Themselves
- 5:2 : Europol Targets the Online Network Turning Teen Hackers Into Extortionists and Violent Offenders
- 5:1 : ShinyHunters Claims EY Data Breach, Threatens to Leak Stolen Client Tax Data
- 5:1 : Call of Duty Mobile scam uses fake free points giveaway to hijack players’ accounts
- 4:31 : Cybersecurity jobs available right now: July 28, 2026
- 4:31 : Incident Response Plan Template: Step-by-Step Guide for 2026
- 4:5 : IT Security News Hourly Summary 2026-07-28 06h : 1 posts
- 3:31 : OpenAI CEO Sam Altman Claims AI Has Reached Singularity, Where Systems Improve by Themselves
- 2:31 : For Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup
- 2:1 : ISC Stormcast For Tuesday, July 28th, 2026 https://isc.sans.edu/podcastdetail/10026, (Tue, Jul 28th)
- 0:2 : Nvidia Forms AI Security Alliance as Major Frontier Labs Sit Out
- 0:1 : Meta Launches Free Facebook Verification Badge for Personal Accounts
- 23:2 : Reuters: OpenAI Agent Hacked Hugging Face for Days Before Being Detected
- 23:1 : Too Many AI Tools? How to Create Story Videos In One Workflow With Wondershare Media.io
- 22:5 : IT Security News Hourly Summary 2026-07-28 00h : 2 posts
- 21:55 : IT Security News Daily Summary 2026-07-27