German and US law enforcement have dismantled the infrastructure behind Kratos, a notorious phishing-as-a-service (PhaaS) platform. Its alleged developer and administrator was arrested in Indonesia by local police. Seizure banner (Source: BKA) The takedown was led by the Frankfurt public…
Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter
Google’s Gemini 3.5 Flash Cyber model finds, validates, and patches vulnerabilities before they can be exploited while helping mitigate broader misuse. It is part of a limited-access pilot program that will soon be available to governments and trusted partners through…
How hackers used Steam Workshop to spread malware
Steam Workshop has become the latest surprising malware delivery channel, with attackers hiding malicious code inside Wallpaper Engine “application wallpapers” to steal Steam credentials, install… The post How hackers used Steam Workshop to spread malware appeared first on Panda Security…
China Considers Restrictions On AI Models
China’s government reportedly considers barring foreign users from downloading model weights, among other new tech export rules This article has been indexed from Silicon UK Read the original article: China Considers Restrictions On AI Models
OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face
The admission comes days after Hugging Face disclosed an attack powered by autonomous AI agents. The post OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read…
Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA
German and US law enforcement have taken down the core infrastructure of Kratos, described by German investigators as one of the world’s most widely used criminal phishing kits, and Indonesian authorities arrested the man they say developed and ran it.…
Moonshot Plans Funding Round At $50bn Valuation, Ahead Of IPO
Beijing start-up reportedly preparing to begin last private capital raise as it makes preparations for Hong Kong listing This article has been indexed from Silicon UK Read the original article: Moonshot Plans Funding Round At $50bn Valuation, Ahead Of IPO
GolangGhost Steals Chrome Secrets From macOS Keychain and Hijacks MetaMask Permissions
A new malware campaign is targeting cryptocurrency and Web3 professionals through fake job interviews. The operation delivers GolangGhost, a remote access trojan that can steal browser credentials, collect wallet data, and give attackers control of infected macOS systems. The attackers…
OpenAI Confirms Its Models Breached Hugging Face Production Systems During Cyber Benchmark Testing
OpenAI has acknowledged that its AI models, including GPT-5. Thank you for being a Ghacks reader. The post OpenAI Confirms Its Models Breached Hugging Face Production Systems During Cyber Benchmark Testing appeared first on gHacks. This article has been indexed…
Bit2Watt instability, AI models cheat, Chinese LLM ban
Bit2Watt threatens power stability All AI models cheat at cyber evaluations US weighing Chinese LLM ban Get the show notes here: https://cisoseries.com/cybersecurity-news-bit2watt-instability-ai-models-cheat-chinese-llm-ban/ Huge thanks to our sponsor, QuilrAI AI agents don’t ask permission. They act — moving data, triggering workflows,…
Z.ai Builds Massive AI Data Centre With Domestic Chips
Beijing-based AI start-up reportedly begins operating new data centre intended to scale to 1 GW of capacity with Chinese processors This article has been indexed from Silicon UK Read the original article: Z.ai Builds Massive AI Data Centre With Domestic…
IT Security News Hourly Summary 2026-07-22 09h : 10 posts
10 posts were published in the last hour 7:4 : Police Dismantle Kratos Phishing-as-a-Service Platform and Take Down Over 200 Servers 7:4 : Google Unveils Gemini 3.5 Flash Cyber: A Game-Changer for AI-Powered Security 6:32 : UK Government Scraps Tech…
Police Dismantle Kratos Phishing-as-a-Service Platform and Take Down Over 200 Servers
Authorities from Germany, the United States, and Indonesia have dismantled the central infrastructure of Kratos, a major phishing-as-a-service (PhaaS) platform that enabled cybercriminals worldwide to conduct large-scale credential-harvesting campaigns. The operation, announced by Germany’s Federal Criminal Police Office (BKA) and…
Google Unveils Gemini 3.5 Flash Cyber: A Game-Changer for AI-Powered Security
Google DeepMind has just dropped a major announcement that could reshape how organizations defend against cyber threats. On… The post Google Unveils Gemini 3.5 Flash Cyber: A Game-Changer for AI-Powered Security appeared first on Hackers Online Club. This article has…
UK Government Scraps Tech Department, But Highlights AI
New prime minister Andy Burnham to dissolve Department for Science, Innovation and Technology, while creating AI cabinet role This article has been indexed from Silicon UK Read the original article: UK Government Scraps Tech Department, But Highlights AI
Small teams are the heaviest users of AI coding agents
The pull request arrives with the tests already run and the description already written, the work of an agent that handled the whole thing on its own. Somebody still has to read it. On GitHub that somebody is usually one…
OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark
OpenAI on Tuesday said a combination of its artificial intelligence (AI) models, including GPT-5.6 Sol and an “even more capable pre-release model,” was behind the security incident that targeted Hugging Face’s production infrastructure last week. The AI company said the…
Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review Agents
A single invisible comment in an Azure DevOps pull request can turn a reviewer’s own AI coding agent against them, driving it into projects the attacker has no rights to reach and quietly leaking what it finds. The flaw is…
Trojanized Newtonsoft.Json Fork Hides Game-Rigging Code in a Working Library
Cybersecurity researchers have discovered a NuGet typosquat that’s unlike the typical information-stealing malware distributed via package registries: usual info-stealers: it’s designed to rig live game results on Digitain. The package, named “Newtonsoftt.Json.Net,” masquerades as the Newtonsoft.Json library and is a…
Scotland To Deploy Drones To Aid Gull Management
Dumfries and Galloway Council to use drones to carry out survey to help with management of drone population, as reported issues rise This article has been indexed from Silicon UK Read the original article: Scotland To Deploy Drones To Aid…
AccuKnox Wins Best AI Startup Award for Enterprise Agentic AI Security at BSides Bangalore
Bangalore, India, 22nd July 2026, CyberNewswire This article has been indexed from Hackread – Cybersecurity News, Data Breaches, AI and More Read the original article: AccuKnox Wins Best AI Startup Award for Enterprise Agentic AI Security at BSides Bangalore
Google Launches Gemini 3.5 Flash Cyber to Find, Validate, and Patch Critical Vulnerabilities
Google has introduced Gemini 3.5 Flash Cyber, a lightweight AI model specifically designed to help security teams discover, validate, and patch critical software vulnerabilities at scale. Announced on July 21, 2026, this model builds on Gemini 3.5 Flash and is…
Snowpick: Open-source ServiceNow exposure scanner
An employee opens a company service portal, searches the knowledge base, and drops a file onto a ticket. Someone who never signed in can send a request to that same portal and get records back. Bishop Fox ran that test…
Google Chrome Update Fixes 12 High-Severity Vulnerabilities That Enable Browser Attacks
Google has released a Chrome security update that addresses 12 high-severity vulnerabilities affecting various components, including WebAudio, ANGLE, Chromecast, extensions, Skia, the V8 JavaScript engine, certificate handling, the user interface, and GPU elements. Many of these vulnerabilities involve memory corruption…