A US government advisory warned that attackers are deploying AI-generated exploitation scripts against exposed Siemens S7 Series PLCs
Red Hat Kubernetes Flaw Lets Unauthenticated Attackers Access Internal Cluster Services
Red Hat has disclosed CVE-2026-66794, an important-severity server-side request forgery (SSRF) vulnerability in the cluster-proxy-addon component of the…
Fake Gemini installer delivers Vidar infostealer via Google Colab lure
A malicious executable masquerading as a Google Gemini installer was used to deliver the Vidar infostealer on a company network in the EMEA region,…
Splunk Fixes 17 Vulnerabilities Including Critical MCP Server RCE
Splunk has released a security hardening update addressing 17 vulnerabilities across several applications and add-ons, including a critical remote code…
IT Security News Hourly Summary 2026-08-20 13h : 17 posts
17 posts published in the last hour 10:31Uber Offers Robotaxi Rides In Zagreb 10:31Europol supports operation against amphetamine producers 10:31Hackers Create Hidden Microsoft 365 Inbox Rules to Conceal Vendor Payment Fraud 10:31Identity Abuse Through Trusted Communication Channels 10:02Police Are Hiding…
Uber Offers Robotaxi Rides In Zagreb
Uber offers autonomous vehicle rides via its app for first time in Croatian capital, as it prepares London launch
Europol supports operation against amphetamine producers
As part of an extensive investigation led by the German Krefeld Public Prosecutor’s Office and Mönchengladbach Police, officers from the North…
Hackers Create Hidden Microsoft 365 Inbox Rules to Conceal Vendor Payment Fraud
Threat actors are increasingly abusing Microsoft 365 identity sessions rather than deploying malware, as shown in a cloud-only business email compromise…
Identity Abuse Through Trusted Communication Channels
Unit 42 details how attackers exploit enterprise collaboration tools for identity phishing and credential theft. Discover key defense strategies.
Police Are Hiding Their Use of Flock Surveillance Cameras
A usage policy for Flock license plate reader cameras tells police not to talk about the cameras: When cops use Flock to arrest someone in Wapello County,…
15 Malicious Firefox Extensions Abuse Cloudflare Workers to Exfiltrate Crypto Wallet Secrets
Firefox users are facing a coordinated campaign of malicious add-ons that masquerade as cryptocurrency wallets, themes, and simple browser tools. The…
Google, Marvell To Develop Custom AI Chips
Marvell to work with Google to develop custom silicon around Tensor Processing Units, including inference accelerators
Expanding AI Benchmarks in Cybersecurity Beyond Vulnerability Discovery
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: Expanding AI Benchmarks in Cybersecurity Beyond Vulnerability Discovery
UAT-10147 deploys SPECTRE: A cross-platform implant with Linux rootkit and BYOVD capabilities
The newly identified SPECTRE implant represents an evolution in commodity intrusion tooling, integrating cross-platform C2 operations, process injection,…
Def Con Attendees Targeted by Persistent Phishing Campaign
Huntress researcher explains how they were targeted by an elaborate and persistent phishing scam following Def Con
US Indicts 17 Iranians Over Years-Long Cyber Espionage Campaign
The US charged 17 Iranians over a years-long hacking campaign that stole 31TB from universities, companies and government agencies worldwide. Eight years…
Splunk Patches Critical MCP Server RCE and 16 Other Security Flaws Across AI Toolkit, Kafka Apps
Splunk has released security updates for 17 vulnerabilities affecting several apps and add-ons, including Splunk MCP Server, Splunk AI Toolkit, and Splunk…
UAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operations
Cisco Talos discovered a Chinese-speaking cybercrime group, tracked as UAT-10147, that targets a wide range of vulnerable web servers. This is an overview…
Updated ToxicPanda Variant Targets 140+ Banking and Crypto Apps
Zimperium lifts the lid on the ToxicPanda 2.0 Android banking Trojan
U.S. CISA adds an MLflow flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds an MLflow vulnerability to its Known Exploited Vulnerabilities catalog. The U.S.…
New “Zombie Card” Flaw Lets Expired Visa Cards Make Contactless Payments
Security researchers have demonstrated that an expired credit card is not as dead as most cardholders believe. A new study from the University of…
IT Security News Hourly Summary 2026-08-20 12h : 10 posts
10 posts published in the last hour 09:31Fractile Seeks $6.5bn Valuation In New Funding Round 09:31OpenAI previews privacy-focused system for detecting AI misuse 09:31CyberPanel Pre-Auth RCE Flaws Let Attackers Gain Remote Server Access 09:31US agencies warn of AI-powered attacks on…
Fractile Seeks $6.5bn Valuation In New Funding Round
London-based AI inference chip start-up reportedly raising about $600m at value roughly six times that of previous round in May
OpenAI previews privacy-focused system for detecting AI misuse
OpenAI is previewing Private Safety Processing with early customers seeking greater certainty about how their data will be protected as AI systems become…
