As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.
Hackers Infect Android Car Screens Through Their Built-In Software Update System
A newly uncovered Android malware campaign has turned car infotainment screens into an unexpected target. Rather than tricking drivers into installing a…
Slovakia Warns of Cyber Risks in Road Speed Cameras
Slovakia warns that vulnerable speed cameras could expose vehicle data, enable remote access and provide attackers with a foothold into public networks.…
Hugging Face Reportedly Explores $13 Billion Sale Following Recent AI Security Incident
Hugging Face is testing a sale that could value the open-source AI hub at $13 billion or more, even as it is still closing out July’s autonomous-agent…
IT Security News Hourly Summary 2026-08-24 12h : 7 posts
7 posts published in the last hour 09:31Salesforce gave every org the same free scanner. Attackers already know what it misses. 09:31TikTok Reaches $400 Million Settlement With US Justice Department Over Children’s Privacy 09:31Wake-Up Call for CNI After Iranian Attack…
Salesforce gave every org the same free scanner. Attackers already know what it misses.
A defense every attacker can rehearse against isn’t a defense. It’s a false sense of security.
TikTok Reaches $400 Million Settlement With US Justice Department Over Children’s Privacy
TikTok will pay $300 million immediately and another $100 million after an order vacates an earlier consent decree against its predecessor company,…
Wake-Up Call for CNI After Iranian Attack Shuts Down UK Power Plant
Experts argue Iranian cyber-attack on UK power plant lays bare frailty of critical national infrastructure
Iran-Linked Hackers Shut Down UK Power Plant for Four Days
The attack caused real-world operational disruption and raised concerns about the resilience of Britain’s distributed energy infrastructure and the…
New SynkLoader Malware Uses Fake Windows Lock Screen to Steal Passwords and Pivot Networks
SynkLoader, a newly identified modular malware framework that combines Python, C#, C++, PowerShell, and memory-resident payloads to evade endpoint…
UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit
Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-10147 that’s targeting Windows and Linux web servers…
IT Security News Hourly Summary 2026-08-24 11h : 11 posts
11 posts published in the last hour 08:31AliExpress Ran Silent Browser Audio to Fingerprint and Track Devices, Researchers Find 08:31Researchers Uncover Thousands of Leaked AWS Keys 08:02Post-DEF CON phishing campaign delivered AMOS and NetSupport malware 08:02Windows 11 Update Triggers Game…
AliExpress Ran Silent Browser Audio to Fingerprint and Track Devices, Researchers Find
AliExpress has been found to run silent audio processes in the browser to fingerprint and track devices. Thank you for being a Ghacks reader.
Researchers Uncover Thousands of Leaked AWS Keys
Truffle Security says it found over 9000 publicly accessible and active AWS key pairs
Post-DEF CON phishing campaign delivered AMOS and NetSupport malware
A phishing campaign targeting attendees of Black Hat and DEF CON conferences involved distributing information-stealing malware and remote access malware…
Windows 11 Update Triggers Game Crashes on Systems With RGB Lighting Drivers
Microsoft is currently investigating a compatibility issue with Windows 11, in which certain games crash, freeze, or cause unexpected system restarts on…
Report Finds Over 700 Fake VPN Extensions on the Chrome Web Store With 75,000 Installs
Cybersecurity firm Socket has identified over 700 fake VPN extensions on the Chrome Web Store. Thank you for being a Ghacks reader.
TikTok Settles U.S. Child Privacy Case for $400 Million
TikTok will pay $400 million to settle U.S. claims that it violated child privacy laws by collecting data from users under 13. The U.S. Department of…
A reverse image search platform exposed more than 9 million facial images
A publicly accessible database linked to reverse image search service ClarityCheck exposed more than nine million images, including photographs of adults,…
New macOS Malware Clones Your Logged-In Browser and Gives Hackers Remote Control.
AmnesiaStealer, a multi-stage macOS infostealer written in Rust that moves beyond conventional credential theft by giving attackers covert, interactive…
iAuthFlow v2: The $10,000 Phishing Toolkit That Survives Your Password Reset
iAuthFlow v2 phishing toolkit uses a phished Google session to enroll an attacker-controlled passkey that survives password resets. Abnormal Security…
AI agents taking unsanctioned action during cyber testing
The UK’s AI Security Institute (AISI) has disclosed a security incident in which frontier AI agents took unsanctioned actions against real people and…
IT Security News Hourly Summary 2026-08-24 10h : 14 posts
14 posts published in the last hour 07:32Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund 07:32Critical isolated-vm Flaw Lets Untrusted JavaScript Escape Sandbox and Hijack Host Execution 07:31Critical WordPress Pods Flaw Lets Unauthenticated Attackers Gain…
Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund
Claude Security, currently in public beta for Claude Enterprise customers, now runs codebase scans on Mythos 5.
