The spotlight features some key findings:Increasing violence: Museum thefts are becoming more aggressive, with offenders using tools like sledgehammers,…
CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix Products
CISA added six new bugs to its Known Exploited Vulnerabilities catalog on August 26, showing signs of active exploitation in the wild
Chinese hackers hit US agencies, Ring locks out police, Boston Scientific feels cyber pain
China contractor hack hits US agencies Ring throws away the key Boston Scientific feels cyber pain Get the show notes here:…
IT Security News Hourly Summary 2026-08-27 13h : 18 posts
18 posts published in the last hour 10:32New Instagram and Facebook rules set a default two-hour limit for teens 10:32Streamlining container security: Red Hat Hardened Images now supported in AWS InspectorScan API and ECR Basic scanning 10:32Cyberattack Causes Global Disruption…
New Instagram and Facebook rules set a default two-hour limit for teens
Meta will pay up to $17 billion and introduce new protections for US teens to settle a landmark child safety case.
Streamlining container security: Red Hat Hardened Images now supported in AWS InspectorScan API and ECR Basic scanning
Software security teams can face an overwhelming influx of vulnerability alerts, often stemming from non-essential packages bundled inside traditional…
Cyberattack Causes Global Disruption at Boston Scientific
The cybersecurity incident has disrupted Boston Scientific’s ability to process and ship customer orders.
Boston Scientific Reveals Global Disruption After Cyber Incident
MedTech giant Boston Scientific has revealed IT outages following a cyber incident
Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452)
CISA added six new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including a previously patched Citrix NetScaler ADC and Gateway…
GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address
Threat actors linked by Arctic Wolf to Dark Caracal with medium confidence deployed a previously undocumented Go-based malware framework, GoCaracal,…
Threat landscape for industrial automation systems. Q2 2026
The report contains statistics on industrial threats for Q2 2026, including ransomware, miners, spyware and other threats that were detected and blocked…
Preparing OpenStack for the post-quantum era: A systematic approach to crypto-agility
OpenStack powers clouds used by some of the most security-sensitive organizations on the planet: government agencies, telecommunications providers,…
The Future of AI-Driven Security Depends on Complete Data
For twenty-five years, “data” in security meant logs and events. But logs are a lossy representation of reality.
Critical Veeam ONE Flaw Lets Unauthenticated Attackers Coerce SMB Authentication From Service Accounts
Veeam has released security updates for a critical vulnerability in Veeam ONE that could allow an unauthenticated network attacker to coerce SMB…
Ransomware Hacker Uses AI to Plan Attacks and Compromises More Than 20 Organizations
A Russian-speaking affiliate of the Aurora ransomware operation compromised more than 20 organizations across nine countries between April and July 2026,…
A polymorphic phishing page (that occasionally breaks itself), (Thu, Aug 27th)
As I’ve mentioned before in some of my diaries, from time to time, I like to go over phishing messages that get caught in my various spam traps or sent to…
AccuKnox Launches AgentZ to Help Enterprises Build, Run, and Govern AI Agents at Scale
Menlo Park, California, USA, August 27th, 2026, CyberNewswire AccuKnox today announced the launch of AgentZ, a platform for building, running, and…
LLM-Based Social Engineering Scams
OpenAI disrupted a social engineering group from Cambodia that used ChatGPT. Its scope is impressive: The network simultaneously conducted multiple types…
CISA Warns of Actively Exploited Microsoft SQL Server RCE Vulnerability
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2019-1068, a remote code execution vulnerability affecting Microsoft SQL…
JavaScript obfuscation: From party trick to phishing kit
Learn the basics of what obfuscation is, why a researcher would try to reverse it, and several ways to approach the problem.
FBI Seizes China State-Sponsored Hacker Platforms Used to Target U.S. Critical Infrastructure
The U.S. Justice Department and the FBI have seized domains associated with two hacking platforms linked to China, QScan and QTRouter. This…
IT Security News Hourly Summary 2026-08-27 12h : 8 posts
8 posts published in the last hour 09:31Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services 09:31GitLab Duo Claude AI Agent Flaw Lets Attackers Execute Arbitrary Commands in CI Pipelines 09:31OpenAI: Hugging Face Incident a “Warning Shot”…
Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services
The pro-Russian hacker group Server Killers claimed responsibility for the attack.
GitLab Duo Claude AI Agent Flaw Lets Attackers Execute Arbitrary Commands in CI Pipelines
GitLab has released security updates for both its Community Edition and Enterprise Edition, addressing seven vulnerabilities, including a high-severity…
