Windows Plug and Play can be abused to fetch signed vendor software for an emulated USB device and execute privileged installation components that…
OpenAI Launches Two-Tier Security Access Program Alongside GPT 5.6 Cyber
Daybreak Blue removes some OpenAI-made guardrails while Daybreak Red grants the use of cyber-focused frontier AI models
1 Tbps DDoS Attacks Become the New Normal as Cloudflare Reports Record H1 Activity
Cloudflare has reported a sharp rise in large-scale distributed denial-of-service attacks during the first half of 2026, blocking 935 network-layer…
Malicious SIMs can shut down phones, steal files, and drag 5G back to 2G
Researchers find standards-compliant functionality can be abused to hijack modems, downgrade connections, and even execute code
Gunra Uses Stolen Sessions and RDP to Pivot Into Active Directory and IT Workstations
Gunra ransomware has moved from a new name to a serious enterprise threat in a short time. The group breaks into exposed edge devices, steals valuable…
Logistics Giant Ceva Suffers Data Breach Impacting European Clients
Supply chain attack and data breach at Ceva Logistics appears to have a large blast radius
Thousand of Internet-Exposed Contollers Could Put Data center Cooling and Power at Risk
Thousands of internet-exposed building controllers may be putting the physical backbone of U.S. data centers at risk. They manage cooling, electrical…
IT Security News Hourly Summary 2026-08-13 16h : 30 posts
30 posts were published in the last hour 13:32 : Galaxy Z Fold 8 Is Getting Android’s New Tap-to-Share Quick Share Feature 13:32 : Multi-Functional Linux Botnet “Evooo1Bot” 13:32 : GitLab 19.2.2 Patches 13 Security Flaws, Including High-Severity XSS and…
Galaxy Z Fold 8 Is Getting Android’s New Tap-to-Share Quick Share Feature
Google’s tap-to-share Quick Share feature is coming to the Galaxy Z Fold 8 and Fold 8 Ultra, adding a faster proximity-based sharing option for personal…
Multi-Functional Linux Botnet “Evooo1Bot”
FortiGuard Labs analyzes Evooo1Bot, a modular Linux botnet targeting internet-facing devices with DDoS, SSH attacks, CVE exploits, and SOCKS relays
GitLab 19.2.2 Patches 13 Security Flaws, Including High-Severity XSS and CI/CD Authorization Flaws
GitLab has released security updates for Community Edition and Enterprise Edition, addressing 13 vulnerabilities affecting analytics dashboards, CI/CD…
Project CAV3RN continues: Google Apps Script as C2 relay and DNS-based C2 channel selection
Project CAV3RN targets Israel with Google Apps Script C2 relays and DNS-based routing. Modular .NET NativeAOT framework blends C2 traffic with legitimate…
Keep Your Tech FLAME Alive: Trailblazer Suzanne Wheeler
In this Akamai FLAME Trailblazer blog post, Suzanne Wheeler describes her journey into cybersecurity and gives advice to women who are finding their own…
RingCentral – 1,596,490 breached accounts
In July 2026, the cloud-based business communications platform RingCentral was the target of a ShinyHunters “pay or leak” extortion campaign . The group…
Kimwolf v7: An Evolution of the Kimwolf Botnet
Discover how Kimwolf v7 targets Android IoT devices with HTTP/2 DDoS fingerprinting, Ethereum ENS C2 resolution and Tor backup routing.
US Court Gives Go-Ahead To Thousands Of Social Media Cases
Thousands of addiction lawsuits against social media giants to proceed in California federal court after legal challenge dismissed
RingCentral breach: 1.6M accounts exposed
Cloud-based business communications provider RingCentral suffered a data breach in July 2026 after falling victim to an extortion campaign by the…
Levi Strauss & Co. Confirms Hackers Stole Corporate Data in Cyberattack
Levi Strauss & Co. (Levi’s) has announced a cybersecurity incident involving an unauthorized third party who used social engineering to access the…
Attackers exploit critical SharePoint flaw after PoC goes public (CVE-2026-55040)
Threat actors have begun exploiting a critical Microsoft SharePoint flaw following the release of proof-of-concept (PoC) exploit code by Rapid7. About…
Microsoft’s August Patch Tuesday: 400+ Bugs Fixed, One Zero-Day Already Under Attack
Microsoft’s August Patch Tuesday fixes about 400 security flaws, including an actively exploited Windows zero-day and multiple 9.8-rated RCE bugs.
CISA Warns of Windows Ancillary Function 0-Day Vulnerability Exploited in Attacks
The U.S. Cybersecurity and Infrastructure Security Agency has added a Microsoft Windows vulnerability to its Known Exploited Vulnerabilities Catalog,…
SharePoint CVE-2026-55040 Under Active Exploit
A critical authentication bypass vulnerability in Microsoft SharePoint Server Subscription Edition is under active exploitation following the public…
Hackers Leveraging GoogleWorkspace Accounts to Send Phishing and Scam Emails
Hackers are turning compromised Google Workspace accounts into tools for phishing and scam emails. The messages can look ordinary because they come from…
CBTS launches continuous penetration testing service
CBTS has launched a new Penetration Testing as a Service (PTaaS) offering that provides continuous security assessment capabilities for enterprise…