210 posts were published in the last hour
- 21:31 : Bank of America to Acquire Cybersecurity Firm MDSec
- 21:31 : A Leaked Memo Ties Cyberattacks on Minnesota Water Utilities to Iran
- 21:31 : What CISOs should take from the Hugging Face-OpenAI incident
- 21:2 : Top 7 Enterprise IT Asset Management Software for 2027
- 21:2 : Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js
- 21:2 : Palo Alto Networks Achieves Global CBPR and PRP Certifications
- 21:2 : Falcon AIDR Now Protects Copilot Studio Agents and Claude Code
- 21:1 : Why brand impersonation is becoming an initial access vector
- 20:31 : America bans imported robots due to supply chain and security risks
- 20:31 : AI agent hacks national finance ministry, Botnet uses blockchain, Healthcare chain reopens
- 20:31 : ISC Stormcast For Wednesday, July 29th, 2026 https://isc.sans.edu/podcastdetail/10028, (Wed, Jul 29th)
- 20:31 : Measuring LLMs’ Ability to Perform Cryptanalysis
- 20:31 : CareCloud begins to notify hundreds of thousands after hackers stole medical records
- 20:31 : OpenAI’s Rogue AI Agent Hacked More Than Just Hugging Face
- 20:31 : Cyera agrees to acquire Oasis Security for $1B to safeguard proliferating AI agents
- 20:31 : A Typo Landed an Innocent Gamer in Prison for 18 Months
- 20:3 : Meta Faces Scrutiny After Report Finds Thousands of AI Nudify Ads on Facebook, Instagram
- 20:2 : FastJson RCE Zero-Day Actively Targets Organizations
- 20:2 : ChatGPT Joins Most Faked Brands Ranking in Phishing, Check Point Says
- 20:2 : Okta buys AI security startup Permiso — source says for about $200M
- 20:2 : Critical TeamCity Flaw Could Let Unauthenticated Attackers Execute Server Commands
- 20:2 : MCP gets an enterprise makeover
- 20:2 : Google Plans Global Rollout of Privacy-Focused Age Signals API
- 20:2 : Authorities investigating a coordinated cyberattack against Minnesota water systems
- 20:2 : More Than 45,000 Software Flaws Reported as AI Reshapes Cybersecurity
- 19:32 : Microsoft and Wiz mind-meld agents catch more than 90% of bugs
- 19:32 : DPRK-Linked macOS Malvertising Uses Fake Updates to Deliver Crypto-Stealing Malware
- 19:32 : CVE-2026-66066: Defending Against the “KindaRails2Shell” Pre-Auth RCE
- 19:31 : Okta to Acquire Identity Threat Detection Firm Permiso
- 19:31 : Coca-Cola Confirms Data Theft as Fairlife Ransomware Attack Escalates
- 19:31 : AI Agent Security Just Had Its Catalyst Moment
- 19:31 : Cursor Quietly Patches High-Severity Git Vulnerability After Seven-Month Delay
- 19:31 : CISO’s guide to data obfuscation
- 19:31 : Apple Fixes 194 Security Flaws Across iPhone, Mac and Other Devices
- 19:31 : Thinking Outside the Black Box: Defenders Need Open Source AI
- 19:31 : Meta Begins Removing Harassing Ray-Ban Smart Glasses Videos From Instagram
- 19:5 : IT Security News Hourly Summary 2026-07-30 21h : 10 posts
- 19:2 : The Trust Surface: The Missing Complement to Attack Surface
- 19:2 : Mate Security Grows Over 500% Since Q3 2025 and Pushes Past $50M in Funding
- 19:2 : Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack
- 19:2 : Wordfence Intelligence Weekly WordPress Vulnerability Report (July 20, 2026 to July 26, 2026)
- 19:2 : Rogue OpenAI Agent Hit More Than One Target, New Disclosures Show
- 19:2 : Google says it fixed more Chrome bugs in June than over the past two years, thanks to AI
- 19:1 : Top 8 Penetration Testing Tools to Enhance Your Security in 2026
- 18:31 : AWS KMS or AWS CloudHSM: Choose the right key management solution
- 18:31 : PhantomEnigma Infects Organizations with Malware via Hijacked Government Websites
- 18:31 : Substituting IP address evaluation with hardware-rooted sovereign zero trust
- 18:3 : ShinyHunters Claims Ernst & Young (EY) Data Breach, Threatens July 31 Leak
- 18:2 : Bank for charities pulls online services over security fears
- 18:2 : 2026 Phase 1a IRAP report is now available on AWS Artifact for Australian customers
- 18:2 : Cybercriminals Are Leveraging Autonomous AI Offensive Security Agents
- 18:2 : Tools Change. Teach People How to Keep Up
- 18:2 : Microsoft launches agentic security platform designed to combat AI-based attacks
- 18:2 : You were onto something with “It’s the Climb,” Miley
- 18:2 : Telegram Introduces Serverless Runtime for Bots, Bringing Deployment, Application Logic, and Data Under One Platform
- 18:2 : Bugs in Hugging Face Diffusers Bypass Custom Code Safeguard
- 18:2 : Wordfence PRISM Detected Backdoored WordPress Plugin within Two Hours of it Being Introduced
- 18:1 : DEF CON bans Meta-style ‘pervert glasses’
- 17:32 : Companies fear AI risks more than common cybersecurity threats
- 17:32 : Fastjson Zero‑Day RCE Actively Targeting U.S. Companies
- 17:32 : Why Your Business Needs a Secure Messaging Platform
- 17:32 : AI-Assisted Bug Hunt Uncovers Linux Kernel 0-Day in net/sched
- 17:32 : Chrome Needs Twice-a-Week Patching Thanks to AI Bug Hunting
- 17:32 : Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
- 17:32 : AI takes on a bigger role in finding Chrome vulnerabilities
- 17:31 : Extend Amazon Inspector SBOM Generator with Plugins
- 17:31 : AI-found bugs aren’t proving any easier to exploit despite the hype
- 17:31 : While External Threats Are Driving Security Awareness, Internal Risks Are Growing
- 17:31 : Russian Sandworm Hackers Adopt ClickFix Technique to Target Ukrainian Organizations
- 17:31 : 24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login
- 17:31 : Jscrambler launches Unified Client-Side Security Platform
- 17:31 : Vatican ‘Click to Pray’ App Security Flaw Exposed Data of 700,000 Users
- 17:3 : Read This Before You Buy That TV Streaming Stick
- 17:3 : Your AI Governance Policy Should Survive Your Next Model Change
- 17:3 : Phishing Dominates as Initial Entry Method for Cyber-Attacks, as Hackers Hone Evasion Techniques
- 17:2 : AI Agents, Trust Abuse, and Breaches Define Cybersecurity News this Week of July 2026
- 17:2 : How Partners Can Defend the Network and Ease AI Anxiety
- 17:2 : Engineering Production Agentic Systems: Part 2: The Guardrails
- 17:2 : Cyber Briefing: 2026.07.28
- 17:2 : JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach
- 17:2 : IBM 2026 Cost of a Data Breach Report: Key Findings
- 17:2 : Solve Multi-CDN Entitlement Drift with Edge Functions Without Losing Viewers
- 17:2 : Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root
- 16:32 : Act Security Launches Patch Management Solution
- 16:32 : Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
- 16:32 : Uncle Sam needs you to fight for 6G leadership and security, lest Beijing get there first
- 16:32 : OpenMatter Network Calls on Enterprise Leaders to Rethink AI Security Before the Next Rogue AI Crisis
- 16:32 : Public Exploit Lands for vBulletin’s Pre-Auth RCE, CVE-2026-61511
- 16:32 : Malwarebytes for Windows, now available on the Microsoft Store
- 16:32 : American Being Prosecuted for Wiping His Phone Before Handing It Over to Border Officials
- 16:31 : Okta buys AI security startup Permiso; source says for about $200M
- 16:31 : Microsoft Launches Flurry of AI Security Initiatives to Combat AI-Enabled Threats
- 16:31 : What’s new in Microsoft Security: July 2026
- 16:31 : EShare App Vulnerability CVE-2026-55977
- 16:31 : ThreatsDay: AI-Powered Hacking, 370 Chrome Flaws, SonicWall Attacks, DNS Hijacking + 22 More Stories
- 16:31 : Shared Claude chats were searchable on Google
- 16:31 : Microsoft Launches Cybersecurity AI Model MDASH
- 16:31 : We rebuilt Malwarebytes Mobile Security for the scams of today
- 16:5 : IT Security News Hourly Summary 2026-07-30 18h : 20 posts
- 16:3 : Jailed Flock vandal wipes out three cameras, racks up thousands in damages
- 16:3 : TrendAI™ Joins Nvidia’s Open Secure AI Alliance: Closing the Gap Between AI Builders and AI Defenders
- 16:3 : Shadow AI, leadership resistance make AI governance tough for worried CISOs
- 16:3 : Microsoft Fixes CosmosEscape Flaw That Could Allow Any Cosmos DB Takeover
- 16:3 : Timeless Compliance: Why Better Questions Beat Bigger Frameworks
- 16:3 : Google Chrome 151 Patches 370 Security Flaws, Including Seven Critical Vulnerabilities
- 16:3 : Location Sharing: Convenience at the Cost of Safety
- 16:3 : Senator Wyden urges federal VPN purge
- 16:2 : Heimdal data reveals MediaArena adware completes persistence before antivirus quarantine finishes
- 16:2 : MCP Server Security: The Blind Spot in Your AI Stack
- 16:2 : Update your iPhone, iPad and Mac to fix Apple security holes
- 16:2 : Novee brings continuous AI pentesting to mobile apps
- 16:2 : Why the Open Secure AI Alliance Matters: Open Frontier Models, Open Deployment Flexibility
- 16:2 : New GenieLocker Ransomware Attacks Windows, ESXi, and Linux Instances
- 16:2 : Hackers abuse Microsoft Teams in ransomware campaign through fake IT support
- 16:2 : Semiconductor Firm Analog Devices Confirms Data Breach After Internal Systems Intrusion
- 16:2 : Amazon Attributes Earlier npm Supply Chain Attacks to North Korea’s Sapphire Sleet
- 16:2 : Hackers Are Exploiting Nearly One in Four Vulnerabilities Before Defenders Get a CVE
- 16:1 : Tribeca Film Festival Data Breach Exposes 666K Records
- 16:1 : New CosmosEscape Vulnerability Lets Attackers Take Over Azure Cosmos DB Instances
- 15:2 : Microsoft Warns of Rising ACR Stealer Campaigns Targeting Enterprise Credentials
- 15:2 : Vatican’s Click To Pray app exposed personal data from 700,000 users
- 15:2 : Experts react as Department for Education cyber attack exposes 607,000 records
- 15:2 : API Security for Government Services: Protecting Citizen-Facing Applications
- 15:2 : Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database
- 15:2 : TA488 Exploits Outlook Web Access Flaw with Half-Click Attack
- 15:2 : Axon Is Another License Plate Surveillance Company
- 15:2 : In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable
- 15:1 : One-click Claude Desktop flaw could enable hidden prompt injection and code execution
- 14:32 : Laundry Bear’s new Microsoft Exchange attack triggers on email open (CVE-2026-42897)
- 14:32 : Russian state attackers exploiting misconfigured routers, new multi-nation advisory warns
- 14:32 : OpenAI’s Hacking Debacle Comes Down to Human Error
- 14:32 : Cyber Briefing: 2026.07.30
- 14:31 : Coca-Cola Reveals Subsidiary Fairlife Suffered Data Breach
- 14:31 : Hims & Hers sued over alleged health data privacy failures
- 14:31 : The 5 Best VPN Extensions for Chrome
- 14:31 : Discern Security Raises $13 Million in Series A Funding
- 14:31 : Hugging Face Deepfake Tests Raise New Risks for AI Procurement
- 14:31 : DataBahn Raises $40 Million for Agentic Data Pipeline Management
- 14:31 : GitHub Automatically Holds Suspicious Actions Runs, but Repository Owners Must Approve Them
- 14:2 : FTC sues Hims & Hers for allegedly sharing patients’ medical data with advertisers Meta and Snap
- 14:2 : Analog Devices Discloses Data Breach After Unauthorized System Access
- 14:2 : Closing the Sovereignty Gap: Bringing Active API Protection to Self-Managed Environments
- 14:2 : e-Health Platform: When penetration tests prevent bad things from happening
- 14:2 : Waymo Mulls Split With Uber Amid Lobbying Conflict
- 14:2 : Hidden prompt turns Microsoft Copilot into an AI worm
- 14:2 : Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the Cost
- 14:1 : WorkNest Secure Launches Continuous Vulnerability Scanning with GuardNest
- 13:32 : Arista patches actively exploited VeloCloud bug as CISA puts admins on the clock
- 13:32 : Huntress Surpasses $250M ARR as EMEA Growth Outpaces Global Expansion More Than Five-Fold
- 13:32 : PortSwigger launches Burp AT agentic AI tool
- 13:32 : Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In
- 13:32 : IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains
- 13:32 : NVIDIA’s Open Secure AI Alliance Is Missing Some Big Names
- 13:32 : Hidden prompt can make Microsoft Copilot spread itself through your Word docs
- 13:31 : Cantina Emerges From Stealth With $8 Million in Funding
- 13:31 : Shares In China’s CXMT Surge 466 Percent On Shanghai Debut
- 13:31 : CI Fortify Guide for Critical Infrastructure
- 13:31 : Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit
- 13:31 : AI and Automation Fall Short of Sysadmin Expectations
- 13:31 : Chinese Company Starts Manufacturing DUV Chip Tools
- 13:31 : Dropzone AI launches AI Threat Hunter tool
- 13:5 : IT Security News Hourly Summary 2026-07-30 15h : 16 posts
- 13:2 : MacSync: Six-Stage macOS Stealer via Fake Claude
- 13:2 : New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation
- 13:2 : China Chipmakers See Profits Surge 2,579.5 Percent
- 13:2 : PortSwigger Launches Burp AT to Transform Web Pentesting
- 13:2 : Coordinated cyberattack hits 30+ Minnesota water utilities
- 13:2 : Teams-Themed Phishing Campaign Abused Legitimate Microsoft Login Pages
- 13:2 : Drone Follows Police Scotland Helicopter At Close Range
- 13:2 : Russian hackers exploit Exchange XSS flaw for mailbox takeover
- 12:32 : Mirage Kitten targets Middle East and Africa region with new malware
- 12:32 : CISA sets a new SBOM baseline
- 12:32 : AtlasRAT Uses Four-Stage In-Memory Loader to Keylog and Inject Malware Into WeChat
- 12:32 : Onyx Security Raises $113 Million to Control AI Agents in the Enterprise
- 12:31 : Apple Delays First Smart Glasses to WWDC 2027 Over Privacy Concerns
- 12:31 : Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents
- 12:31 : ‘DangleGeddon’: AI Could Weaponize Forgotten DNS Records at Global Scale
- 12:31 : The Network Has Become the Control Plane for AI Security
- 12:2 : Check Point Brings AI Security into the Firewall with Industry-First AI Network Firewall
- 12:2 : SpaceX Starship Rocket Splashes Down After Successful Test
- 12:2 : Nvidia opens AI security tent, Microsoft adds cyber sprinter to MDASH, Fairlife ransomware spills data
- 12:2 : Command Injection Cheatsheet: OS Payloads And Prevention (2026)
- 12:2 : Orca Security secures AI-built and developer-created applications
- 12:2 : AutoIT Payload Injector , (Tue, Jul 28th)
- 12:1 : CISA Adds Cisco Secure Firewall Management Flaw to Exploited Vulnerabilities List
- 11:32 : Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw
- 11:32 : Shein Sees $99m Loss Ahead Of Hong Kong IPO
- 11:32 : Houston City College – 831,642 breached accounts
- 11:32 : Should You Use AI for a Task? Here’s a Simple Way to Decide
- 11:31 : OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia
- 11:31 : Hugging Face Has a Deepfake Nudes Problem
- 11:31 : Semiconductor Firm Analog Devices Discloses Data Breach
- 11:31 : Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks
- 11:3 : Linux XMRig Botnet Abuses PAM for Fileless Monero Mining and Persistent Access
- 11:3 : How Heimdal grew from a bold idea into a global cybersecurity platform
- 11:3 : Fake Flash Player Installer Uses Microsoft-Themed Certificate to Deploy AtlasRAT
- 11:3 : Introducing the Industry’s First AI Network Firewall
- 11:3 : OpenAI’s Hacking Debacle Was a Human Mistake
- 11:2 : Fake Claude Install Guide Delivers Six-Stage macOS Stealer and RAT, Huntress Finds
- 11:2 : Cisco FMC static credentials exploited by attackers (CVE-2026-20316)
- 11:2 : FCC Restricts New Foreign Robots and Inverters Over Security Risks
- 11:2 : SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT
- 11:2 : MediaArena malvertising: why a quarantine isn’t the end of the incident
- 11:2 : Dropzone AI turns threat hunting into a routine SOC operation
- 11:2 : Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts
- 11:1 : PortSwigger introduces Burp AT for agentic AI security testing
- 10:32 : Russian spies take their half-click email attack from Zimbra to Outlook
- 10:32 : ISC Stormcast For Tuesday, July 28th, 2026 https://isc.sans.edu/podcastdetail/10026, (Tue, Jul 28th)
- 10:32 : Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks
- 10:31 : A Civilian Plane Crashed in New Mexico. Was the Military’s Tech to Blame?