210 posts were published in the last hour
- 21:31 : DefCon airplane Wi-Fi drama. GhostJacking leads to agent hijacks, AI agent hacks gym
- 21:31 : AWS Certificate Manager will discontinue email validation to prove domain validation for certificates
- 21:2 : Signal adds an extra layer of security to make sure you’re actually chatting with the right person
- 21:2 : Microsoft Plugs Nearly 400 Security Holes
- 21:2 : Iran Cyberattacks Against Minnesota Water Systems
- 21:1 : Landing Zone Accelerator Independent Assessment Report for C5:2020 now available on AWS Artifact
- 21:1 : Microsoft Patch Tuesday for August 2026 — Snort rules and prominent vulnerabilities
- 21:0 : IT Security News Hourly Summary 2026-08-13 23h : 10 posts
- 20:31 : 421 bugs in Microsoft’s Patch Tuesday release, and the Norks have already attacked one
- 20:31 : Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
- 20:31 : Cybercriminals Turn to Indirect Prompt Injection Attacks
- 20:31 : Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing
- 20:2 : Beacon CRM Confirms Full Database Theft After AWS Access Key Breach
- 20:2 : Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee’s Client
- 20:2 : AmnesiaStealer macOS Malware Hijacks Browser Sessions via Fake GitHub Lure
- 20:1 : Fake CCleaner installs GhostDesk Chrome spyware
- 20:1 : Fortinet Patches Multiple Authentication Vulnerabilities in FortiWeb, FortiManager, and FortiClient
- 20:0 : IT Security News Hourly Summary 2026-08-13 22h : 3 posts
- 19:31 : President Trump Signs Memo Expanding Private Sector Role in Offensive Cyber Operations
- 19:1 : FBI says cybercriminals are hacking into victims’ online accounts to steal their intimate pictures
- 19:0 : IT Security News Hourly Summary 2026-08-13 21h : 8 posts
- 18:31 : Adobe Commerce CVE-2026-71362 Comes Under Attack Shortly After Public Disclosure
- 18:31 : Anthropic set AI agents loose on the same task. They started a turf war.
- 18:31 : Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands
- 18:31 : Summer 2026 SOC 1 report is now available with 185 services in scope
- 18:31 : U.S. CISA adds Metabase, Windows, and Cisco Secure Firewall flaws to its Known Exploited Vulnerabilities catalog
- 18:2 : The Agent in Your Pipeline Doesn’t Have a Manager. That’s the Problem.
- 18:1 : Curiouser and Curiouser
- 18:0 : IT Security News Hourly Summary 2026-08-13 20h : 7 posts
- 17:31 : CrowdStrike Threat Hunts for Shell Command Obfuscation on VMware ESX
- 17:31 : Cisco Firewall Alert: Hackers Exploit ASA, FTD Flaw to Force Remote Restarts
- 17:31 : Zoom Patches “Zoomsday” Zero-Click Flaw Enabling Remote Code Execution
- 17:2 : Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE
- 17:1 : Microsoft Patch Tuesday August 2026, (Tue, Aug 11th)
- 17:1 : DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt
- 17:0 : IT Security News Hourly Summary 2026-08-13 19h : 20 posts
- 16:31 : Researchers find AI-powered hacking tools for sale in underground forums
- 16:31 : Firefox 153 Bakes Multi-Account Containers Into the Browser for Smarter Privacy
- 16:31 : State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
- 16:31 : ExfilSquad Targets New Victims, Shares Data via Torrents
- 16:31 : Kimsuky Brings AI Closer to Its Malware and Phishing Operations
- 16:31 : Is Temu Safe? Everything You Need to Know
- 16:31 : Tanaka Emerges as Leading Data Leak Broker as Stolen Information Fuels Cybercrime
- 16:2 : Valve warns Steam hardware buyers: Expect fake delivery scams
- 16:2 : Uncover Security Risks in Your Agent Skills Before Deploying
- 16:2 : Delta investigating after someone set up fake Wi-Fi network mid-flight
- 16:2 : AI Genie in the Wild
- 16:2 : Two wars and a World Cup lead to epic DDoS attacks on publishers
- 16:2 : Former BlackFile affiliates linked to extortion campaign targeting private equity
- 16:2 : Exposed AWS Access Key Linked to Data Breach Affecting 1500+ UK Charities
- 16:2 : Q&A: Ransomware is now a ‘fully fledged industry’, says cybercrime journalist Geoff White
- 16:2 : AWS successfully completed its 2025-26 NHS DSPT assessment
- 16:1 : Social media platforms crack down on drone factory recruiting game
- 16:1 : DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi
- 16:1 : US government will let private companies hack criminal gangs
- 16:0 : IT Security News Hourly Summary 2026-08-13 18h : 36 posts
- 15:32 : Gen Threat Report Highlights H1 Global Threat Landscape
- 15:32 : PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers
- 15:32 : Enriched URL Reports: VirusTotal URL Scanning 2.0
- 15:32 : Google Cloud Targets 2027 for First Major Post-Quantum Security Milestone
- 15:31 : Threat Hunting Maturity: The Metrics Your Board Actually Needs
- 15:31 : Cyber Briefing: 2026.08.11
- 15:31 : AWS Security Best Practices: A Complete Checklist for 2026
- 15:31 : CVE Program eyes automation and globalization to weather AI ‘vulnpocalypse’
- 15:31 : North Korean IT Workers Use AI-Forged IDs and Remote Desktops to Become Trusted Employees
- 15:31 : 78 arrests in bust of major Western Mediterranean smuggling network in Spain
- 15:31 : Trump wants to grant private cyber firms a license to hack back
- 15:31 : Six npm Packages Read C2 Addresses From Ethereum Wallet
- 15:31 : Microsoft Exchange Server Vulnerabilities Enable DoS, Privilege Escalation, and RCE Attacks
- 15:31 : Cursor Security Bug Allowed Repositories to Execute Commands Before Trust Verification
- 15:31 : Trezor ShipMonk Data Breach Exposes Personal Data of Over 13,000 Hardware Wallet Customers
- 15:3 : North Korean remote IT staffer worked for US government agency, says FBI
- 15:3 : Sexual predators targeting online accounts for intimate images, FBI warns
- 15:3 : A Zoom Screen-Sharing Bug Let Anyone Take Over Other Devices on a Call
- 15:3 : When violence shapes identities in a larger pool of perpetrators: new Europol terrorism report
- 15:3 : White House authorizes private US companies to hack foreign criminal networks
- 15:2 : Cybersecurity M&A Roundup: 21 Deals Announced in July 2026
- 15:2 : Top Checkmarx Alternatives For Enterprise Application Risk in 2026
- 15:2 : The backup Microsoft never promised you
- 15:2 : We Empowered AI Agents With ‘Hands,’ Now We Require Kernel-Level Vision to Monitor Them
- 15:2 : The Nansh0u Campaign – Hackers Arsenal Grows Stronger
- 15:2 : OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
- 15:2 : Love/hate relationship: The AI affair. Young people love AI, but it’s breaking their trust
- 15:2 : Migrant smuggling network using rental cars dismantled across the Balkans
- 15:2 : What is IAM? Identity and Access Management Explained for Enterprise (2026)
- 15:2 : Why AWS and Azure Handle Data Perimeter Differently
- 15:2 : Season 4 of The Europol Podcast available now
- 15:2 : Threats Making WAVs – Incident Response to a Cryptomining Attack
- 15:2 : Europol and Frontex strengthen cooperation with new Working Arrangement
- 15:1 : The Oracle of Delphi Will Steal Your Credentials
- 15:1 : French-Spanish operation targets hazardous waste trafficking network: four arrested
- 15:0 : IT Security News Hourly Summary 2026-08-13 17h : 43 posts
- 14:38 : Europol-led action against nihilistic violent extremist network “The Com”
- 14:38 : De-Risking Enterprise AI In Healthcare: A Cybersecurity Perspective
- 14:37 : DataGrout helps enterprises control AI usage, governance and LLM costs
- 14:37 : Deepfake hiccup unmasks suspected digital certificate fraudster
- 14:37 : Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants
- 14:36 : Adobe Commerce Bug Targeted Immediately After Disclosure
- 14:36 : Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo
- 14:36 : Cyber Briefing: 2026.08.13
- 14:35 : vCenter Flaw Exploited Just Five Days After Disclosure
- 14:35 : In a first, US will allow some private firms to carry out cyberattacks
- 14:34 : Five arrests for smuggling migrants across the Bulgarian-Serbian green border
- 14:34 : Cybersecurity Professionals Who Ignore AI Are Arming Their Enemies
- 14:34 : A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices
- 14:33 : Chainloop: Open-source supply chain security tool
- 14:33 : Europol supports operation against amphetamine producers
- 14:33 : From Detection To Remediation: Automating Cloud Security Fixes In Financial Infrastructure
- 14:33 : Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
- 14:32 : Windows 11 USB Plug and Play Privilege Escalation
- 14:32 : Defending Against Gunra: Key Takeaways from the Joint CISA Advisory
- 14:32 : Deel acquires identity security firm Clarity
- 14:32 : Cybersecurity Awareness Lies In Grassroots, Not Just In Policy Frameworks
- 14:31 : Ceva Logistics Data Breach Impacts European Clients
- 14:31 : White House Authorizes Offensive Cyber Operations Against Foreign Syndicates
- 14:3 : Ransom Cartel Leader Sentenced to 16 Years
- 14:3 : Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets
- 14:3 : Jewelbug Uses Public Google Docs as Malware Command-and-Control Delivery Channel
- 14:3 : Expanding AI Benchmarks in Cybersecurity Beyond Vulnerability Discovery
- 14:3 : AI for Military Support
- 14:2 : A10 Networks introduces AI Gateway to secure and manage enterprise AI
- 14:2 : Suisan City, California, Responds to Cyber Incident Amid Wave of US Local Government Attacks
- 14:2 : Scammers Exploit Shopify’s Own Notification System in New ‘Fake Refund’ Scam
- 14:2 : Google Chrome’s New Defense Model to Protect Users Against Malicious Notifications
- 14:2 : Hackers Actively Exploiting Microsoft SharePoint Vulnerability Following PoC Release
- 14:2 : Mozilla revokes Firefox signing key after unencrypted copy lands in GitHub
- 14:2 : Jewelbug APT: China-based group runs espionage and crypto fraud
- 14:2 : Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11
- 14:2 : OpenAI Launches Two-Tier Security Access Program Alongside GPT 5.6 Cyber
- 14:2 : 1 Tbps DDoS Attacks Become the New Normal as Cloudflare Reports Record H1 Activity
- 14:2 : Malicious SIMs can shut down phones, steal files, and drag 5G back to 2G
- 14:1 : Gunra Uses Stolen Sessions and RDP to Pivot Into Active Directory and IT Workstations
- 14:1 : Logistics Giant Ceva Suffers Data Breach Impacting European Clients
- 14:1 : Thousand of Internet-Exposed Contollers Could Put Data center Cooling and Power at Risk
- 14:0 : IT Security News Hourly Summary 2026-08-13 16h : 30 posts
- 13:32 : Galaxy Z Fold 8 Is Getting Android’s New Tap-to-Share Quick Share Feature
- 13:32 : Multi-Functional Linux Botnet “Evooo1Bot”
- 13:32 : GitLab 19.2.2 Patches 13 Security Flaws, Including High-Severity XSS and CI/CD Authorization Flaws
- 13:32 : Project CAV3RN continues: Google Apps Script as C2 relay and DNS-based C2 channel selection
- 13:32 : Keep Your Tech FLAME Alive: Trailblazer Suzanne Wheeler
- 13:32 : RingCentral – 1,596,490 breached accounts
- 13:32 : Kimwolf v7: An Evolution of the Kimwolf Botnet
- 13:32 : US Court Gives Go-Ahead To Thousands Of Social Media Cases
- 13:32 : RingCentral breach: 1.6M accounts exposed
- 13:32 : Levi Strauss & Co. Confirms Hackers Stole Corporate Data in Cyberattack
- 13:31 : Attackers exploit critical SharePoint flaw after PoC goes public (CVE-2026-55040)
- 13:31 : Microsoft’s August Patch Tuesday: 400+ Bugs Fixed, One Zero-Day Already Under Attack
- 13:31 : CISA Warns of Windows Ancillary Function 0-Day Vulnerability Exploited in Attacks
- 13:31 : SharePoint CVE-2026-55040 Under Active Exploit
- 13:31 : Hackers Leveraging GoogleWorkspace Accounts to Send Phishing and Scam Emails
- 13:31 : CBTS launches continuous penetration testing service
- 13:31 : Jewelbug APT Hijacks Browsers to Steal Cookies and Spy on Government Networks
- 13:31 : Cisco sees network refresh surge from AI vulnerability disco
- 13:31 : Armored Likho Still Toolkit Steals Telegram Sessions and Records Victims’ Conversations
- 13:31 : Twitch AI training opt-out enabled by default
- 13:2 : The Model Is the Malware | What Four Agentic Intrusions Tell Defenders
- 13:2 : Microsoft Exchange Server Vulnerabilities Allow DoS, Privilege Escalation, and RCE
- 13:2 : WordPress 7.0.4 Patches Remote Code Execution Vulnerability
- 13:2 : Senior Police Detective Probed Over AI Use
- 13:2 : Ransomware Didn’t Slow Down in Q2 2026. It Just Spread Out.
- 13:2 : OpenAI Pauses Some Development of Astra Model on Security Concerns
- 13:1 : Critical Dell VMware vSphere Client Flaw Lets Remote Attackers Execute Commands as Root
- 13:1 : Trump Authorizes Private Sector Participation in Offensive Cyber Operations
- 13:1 : Trump Administration Authorizes Cyber Operations Against Foreign Criminal Networks
- 13:0 : IT Security News Hourly Summary 2026-08-13 15h : 20 posts
- 12:31 : New Android malware lets criminals use your bank card in real time
- 12:31 : Only Half of UK Manufacturers Have a Cyber Incident Response Plan
- 12:31 : Nvidia Works With Financial Giants On $500bn AI Funding Package
- 12:31 : Digital Forensics Tutorial: Evidence Collection and Analysis Guide (2026)
- 12:31 : Watch out for fake TikTok Shops trying to steal your money
- 12:31 : Data Breach Affects Lincoln Cathedral, Leisure Centres
- 12:31 : Fake CCleaner Installer Triggers Malicious GhostDesk Campaign
- 12:31 : Police To Deploy Live Facial Recognition In Tube Stations
- 12:31 : Fake popular sites offer a free app, instead take over PCs
- 12:31 : Consulting Giant EY Sets Up Unit To Monitor AI Costs
- 12:2 : Is AI entering the SOC at the right stage?
- 12:2 : Falcon AIDR Now Protects Copilot Studio Agents and Claude Code
- 12:2 : Venture Firm Team8 Secures Additional $365 Million
- 12:2 : Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
- 12:2 : Drones Spotted At German Military Base
- 12:2 : Sandworm’s poisoned VPN, Royal Navy drones phone China, OpenAI loosens cyber limits
- 12:2 : LiteLLM Hack Exposes Secrets From 2,488 Companies Across 118,829 CI Runner Dumps
- 12:1 : AWS key exposed in JavaScript may have lit way to Beacon’s charity data
- 12:1 : Akira Ransomware Affiliate Rebooted Into Safe Mode to Dodge EDR and Broke Its Own Attack
- 12:0 : IT Security News Hourly Summary 2026-08-13 14h : 17 posts
- 11:31 : Separating AI’s Technological Problems from Its Capitalism Problems
- 11:31 : Forescout Launches Rapid Insight Assessment to Uncover Hidden Cyber Risks
- 11:31 : Wireshark 4.6.8 Released With Patch for 28 Vulnerabilities That Lead to Crashes
- 11:31 : BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins
- 11:31 : Blacklight Toolkit Finds Codex, Claude Code, and Cursor Artifacts Exposing Tokens and Session Data
- 11:31 : CISA Adds Actively Exploited Windows WinSock Vulnerability to KEV Catalog
- 11:31 : 40 Minute LiteLLM Hack Exposes Cloud Keys and CI/CD Secrets From 2,488 Companies
- 11:31 : OpenAI Pauses Astra, Expands Daybreak GPT 5.6 Cyber
- 11:31 : Kimwolf v7 Botnet Uses Chrome Browser Fingerprints to Hide HTTP/2 DDoS Attacks
- 11:2 : Fortinet Patches Authentication Flaws in FortiWeb and FortiManager
- 11:2 : Armored Likho Turns Windows Microphones Into Automated Eavesdropping Devices
- 11:2 : UK Cyber Attacks Jump 26% Year-on-Year as Ransomware Activity Doubles Globally
- 11:2 : Searchlight Cyber combines exposure and threat intelligence in new PTEM platform
- 11:1 : Wireshark 4.6.8 Released to Patch 28 Security Vulnerabilities
- 11:1 : 153GB of stolen credentials surface after LiteLLM supply chain attack
- 11:1 : Cloudflare Mitigates 23.2 Million DDoS Attacks as 1 Tbps Attacks Surge 519%
- 11:0 : IT Security News Hourly Summary 2026-08-13 13h : 12 posts
- 10:31 : Meta Faces Latest Test As Federal Trial Begins
- 10:31 : CopyEscape: Taking Over Docker Hosts with docker cp
- 10:31 : 6,330 Internet-Exposed ICS Devices Near U.S. Data Centers Put Cooling and Power Systems at Risk
- 10:31 : Parents take on Meta, TikTok, Google, and Snap in 3,000 youth safety lawsuits
- 10:31 : Nearly 40% of APIs Carry More Than One Authentication Risk at Once — and That Should Change How We Think About the Problem
- 10:2 : Dissecting the JWR phishing framework
- 10:2 : White House Mobilizes Security Firms for Operations Against Foreign Cybercrime Gangs
- 10:2 : Akira Affiliate Crashes Ransomware After Attempting EDR Evasion