The disruption took place amid a wave of attacks targeting vulnerable industrial devices in the water and energy sectors.
Iran-Linked Hackers Cyberattack On UK Power Plant, Offline for Four Days
Hackers linked to the Iran, cyber attack on a British energy facility and forced it to shut down…
New Guidance Helps Businesses Verify Quantum-Safe Hardware Claims
TCG has released new guidance to help proving that trusted platform modules genuinely meet essential quantum-safe requirements
⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More
A package gets installed. A login prompt opens. A box sits exposed to the internet. Nothing looks unusual yet. That’s roughly the mood this week. Trusted…
House Democrats ask GAO to study CISA workforce cuts
The five lawmakers, who serve on the Homeland Security Committee, said Congress didn’t know enough about the Trump administration’s changes to the…
NIST Warns of Unique Security Risks in Multi-Cloud Environments
NIST has set out 23 novel challenges that arise in multi-cloud environments and has encouraged the cyber community to find solutions
IT Security News Hourly Summary 2026-08-24 18h : 6 posts
6 posts published in the last hour 15:31What happens to your data when you die? (Lock and Code S07E17) 15:31Foundation Advisory Committee nominations and election (2026) 15:02Fake Microsoft security scans trick victims into uninstalling their antivirus 15:02Fake Codex Download Uses…
What happens to your data when you die? (Lock and Code S07E17)
This week on the Lock and Code podcast, we speak with Tamara Kneese about the many ways your data remains long after your die.
Foundation Advisory Committee nominations and election (2026)
The 2026 OpenSSL Foundation Advisory Committee nomination period has started! The Foundation is looking for people who want to help guild the future of…
Fake Microsoft security scans trick victims into uninstalling their antivirus
We found fake Microsoft-branded scanners that invent security problems, tell victims to uninstall AV, and then steer them into a refund scam.
Fake Codex Download Uses Google Sites to Deliver macOS Malware
Fake Codex pages used Google Sites, sponsored search and ClickFix to target Mac users
Your data doesn’t die when you do (Lock and Code S07E17)
This week on the Lock and Code podcast, we speak with Tamara Kneese about the many ways your data remains long after your die.
IT Security News Hourly Summary 2026-08-24 17h : 7 posts
7 posts published in the last hour 14:31Hired for One Job, Judged on Another: The CISO’s Real Problem 14:31AliExpress caught using silent audio to fingerprint visitors’ browsers 14:02A tiny “rainbow on a chip” could help supercharge 6G networks 14:02ToxicPanda 2.0…
Hired for One Job, Judged on Another: The CISO’s Real Problem
The skills that get a CISO hired are rarely the skills they are judged on later. Most security leaders are stuck in that gap. Closing it is the real job.
AliExpress caught using silent audio to fingerprint visitors’ browsers
Silent audio processing on the AliExpress website was found helping to fingerprint visitors’ browsers without relying on cookies.
A tiny “rainbow on a chip” could help supercharge 6G networks
Researchers have created a tiny chip that produces a stable “rainbow” of light capable of generating multiple high-frequency signals at once, potentially…
ToxicPanda 2.0 can take over your Android phone and banking apps
A new version of the Android banking Trojan can seize control of infected phones and block access to Google Play and Google Play Services.
Suspected Iran-linked attack knocked UK power plant offline for days
News that suspected Iranian hackers caused the shutdown of a British power plant broke over the weekend, raising the question of whether UK’s power grid…
WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords
Cybersecurity researchers have flagged two new malware families called WordlistLoader and SynkLoader that’s used to deliver next-stage payloads and likely…
IT Security News Hourly Summary 2026-08-24 16h : 11 posts
11 posts published in the last hour 13:31How to Secure Fintech REST APIs Against BOLA Vulnerabilities 13:31Google and Bing Search Results Used to Deliver Hidden Banking Phishing Pages 13:31Doubloon Dredger Abuses Notion to Harvest Authentication Tokens 13:31North Korean Hackers Hide…
How to Secure Fintech REST APIs Against BOLA Vulnerabilities
Broken Object Level Authorization (BOLA) occurs when a REST API exposes an object identifier—such as an account, transaction, or loan ID — without…
Google and Bing Search Results Used to Deliver Hidden Banking Phishing Pages
Threat actors are increasingly using Google and Bing as phishing delivery channels, employing a cloaking technique that presents harmless pages to…
Doubloon Dredger Abuses Notion to Harvest Authentication Tokens
Doubloon Dredger abused Notion and malicious PDFs to harvest Microsoft authentication tokens
North Korean Hackers Hide AnyDesk on Victim PCs to Maintain Secret Remote Access
North Korea-linked Kimsuky operators have targeted organizations in South Korea and Japan with spear-phishing campaigns that install and conceal AnyDesk,…
