Interpol claims AI is driving a surge in cybercrime in Africa, with related losses doubling
A Malicious GitHub Issue Could Turn Google’s AI Agent Against Its Own CI/CD Pipeline
A first practical, real-world case of agent-to-agent exploitation inside a production multi-agent system, a novel attack class that turns one AI agent…
Indusface SwyftComply AI enables autonomous virtual patching for AI-discovered flaws
Indusface has announced SwyftComply AI, an autonomous vulnerability remediation solution that virtually patches vulnerabilities surfaced by AI-assisted…
Chinese Military Researchers Use AI Distillation to Train Drone and Battlefield Systems
Chinese military-linked researchers are studying ways to turn the outputs of advanced Western AI systems into smaller, cheaper models for drones,…
DOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT
A new Russian loader-as-a-service (LaaS) codenamed DOUBLECUP has been using ClickFix lures as a way to stage malware-laced PNG images in victims’ browser…
BINDCLOAK Steals Windows User and Process Tokens to Run Malware With Higher Privileges
A newly uncovered Windows backdoor is giving an East Asia-linked espionage operation a quiet way to deepen control inside targeted networks. Named…
Joinable Labs unveils Joinable Security for threat intelligence and AI-driven response
Joinable Labs launched Joinable Security, the first domain on the Joinable platform, with two products: Joinable Threat Map, a free utility that lets the…
Apache NiFi Vulnerabilities Enable Authorization Bypass Attacks
Apache NiFi users should upgrade to version 2.11.0 after the project disclosed four security vulnerabilities affecting the NiFi Web API and Parameter…
ESET introduces new AI capabilities for autonomous agent security
ESET is expanding its AI capabilities across threat detection, investigations, threat protection, and security operations, delivering added value to…
Fake AI Tool Campaign Turns Developer Interest Into Enterprise Initial Access
A new malware campaign is turning interest in artificial intelligence tools into a route for enterprise intrusion. Attackers are cloning trusted GitHub…
IT Security News Hourly Summary 2026-08-04 12h : 14 posts
14 posts were published in the last hour 10:2 : “Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI 10:2 : Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks 10:2 : Apple…
“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI
Talos has collected prompt logs from threat actor endpoints running various applications, such as Claude Code, CodeX, Cursor, or Gemini. This blog is an…
Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks
Over 24,000 internet-accessible server-management interfaces disclose authentication hashes before login.
Apple Challenges New UK Encrypted Data Order
Apple confirms legal complaint against latest government effort to access UK users’ encrypted data stored in iCloud
Critical Gitea Flaw Lets Unauthenticated Attackers Read Server Files and Execute Code
A critical vulnerability in Gitea has been identified, potentially allowing unauthenticated remote attackers to read arbitrary files on vulnerable servers…
Legit Security VibeGuard 2.0 brings endpoint security and real-time guardrails to AI coding agents
Legit Security has unveiled VibeGuard 2.0, bringing a new endpoint security capability that seamlessly discovers and integrates with coding agents,…
DeepSeek V4-Flash Undercuts US AI Rivals
New lightweight DeepSeek AI model costs average of 105 times less per task than Claude Fable 5, benchmark tests find
Securonix enhances Unified Defense SIEM with AI agent detection and lower data costs
Securonix has announced expanded cybersecurity cost reduction, expanded Threat Analytics for Microsoft Sentinel, and new Governed AI Agent Detection and…
macOS CUPS Flaw Lets Local Attackers Write Arbitrary Files as Root
A recently disclosed privilege-related vulnerability in the Common UNIX Printing System (CUPS) on macOS could allow an unprivileged local user to create…
Uptime Kuma 2.5.0 waits two weeks before trusting a new npm package
Uptime Kuma checks whether a website, a Docker container, a DNS record, or a Steam game server is still answering, and pushes a message to Telegram,…
Tanium expands autonomous security across AI, exposure management and SecOps
Tanium has announced a series of new autonomous security capabilities across the Tanium Autonomous IT Platform. Spanning agentic AI, exposure management…
Critical Adobe Campaign Flaws Let Unauthenticated Attackers Execute Arbitrary Code
Adobe has released an urgent security update for Adobe Campaign Classic, addressing multiple critical vulnerabilities that could allow remote attackers to…
When Data Becomes Instructions: AI Agents Need a Chain of Custody for Context
A few weeks ago, an AI cyber evaluation produced an unexpectedly efficient strategy for solving a benchmark: the agents went looking for the answers.…
Mayor’s Office Tells Court ‘No Choice’ But To Block Palantir Deal
London mayor’s office tells High Court that Met Police provided ‘misleading’ information on procurement strategy, relations with Palantir