access ai android api apple attack authentication backdoor breach business ceo china cisa cisco ciso cloud compliance control credentials crypto cve cyber cyberattack cybercrime cybersecurity data data-breach defense detection email exploit finance flaw framework fraud google governance government group hacker hacking healthcare identity infrastructure injection intelligence Internet jobs law leak linux malicious malware microsoft monitoring network open-source password phishing privacy ransomware remote-code-execution resilience risk russia scam service software strategy supply-chain technology theft threat tool unclassified update usa vulnerability windows zero-day
-
Spionage aus China: T-Mobile US soll Cyberangriff mit Schere bekämpft haben
Chinesische Hacker hatten sich 2024 tief in die Infrastruktur von US-Providern eingenistet. T-Mobile hat für die Cyberabwehr wohl sogar ein Kabel durchgeschnitten. First seen on golem.de Jump to article: www.golem.de/news/spionage-aus-china-t-mobile-us-soll-cyberangriff-mit-schere-bekaempft-haben-2608-212119.html also interesting: More telecom firms were breached by Chinese hackers than previously reported The biggest data breach fines, penalties, and settlements so far China-linked hackers…
-
Identität ist der Angriffsvektor Nummer eins – DORA zwingt Finanzinstitute zu echten Identitäten
Tags: doraFirst seen on security-insider.de Jump to article: www.security-insider.de/dora-identity-access-management-finanzinstitute-a-825291b30b3d5970895ec01af82570bd/ also interesting: Aus der Vergangenheit lernen – Vier Compliance-Lektionen aus der DSGVO für AI-Act und DORA With DORA approaching, financial institutions must strengthen their cyber resilience Security chiefs whose companies operate in the EU should be exploring DORA now DORA in der Praxis – Wie die isländische…
-
Def Con Attendees Targeted by Persistent Phishing Campaign
Huntress researcher explains how they were targeted by an elaborate and persistent phishing scam following Def Con First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/def-con-attendees-persistent/ also interesting: Google sues 25 China-based scammers behind Lighthouse ‘phishing for dummies’ kit Google asks US court to shut down Lighthouse phishing-as-a-service operation Phishing in 2026: 3 Attack Tactics That…
-
Hackers Trick AI Agents Into Telling Users to Install the Malware Themselves
A supply-chain campaign targeting OpenClaw has shown how threat actors can turn autonomous AI agents into persuasive malware-delivery intermediaries. Rather than relying only on exploit code, attackers poisoned the ClawHub skill registry with seemingly legitimate extensions whose instructions prompted users to install fake prerequisite tools or paste obfuscated commands into a terminal. The campaign, tracked…
-
Claude AI Finds Authentication Bypass Flaws in Multiple SAML Implementations
Multiple critical vulnerabilities in SAML implementations after employing Anthropic’s Claude Code in an AI-assisted vulnerability research pipeline. Security researcher Eric Chiang, the CTO of Oblique Security, investigation uncovered full authentication bypasses, signature-validation flaws, information disclosure risks, arbitrary logout issues, and denial-of-service conditions across several open-source SAML products. Claude AI Finds Authentication Bypass Flaws Chiang’s research…
-
CyberPanel Pre-Auth RCE Flaws Let Attackers Gain Remote Server Access
Tags: access, ai, attack, authentication, cve, cyber, data-breach, flaw, Internet, jobs, rce, remote-code-execution, vulnerabilityResearchers have revealed a pre-authentication remote code execution (RCE) vulnerability chain in CyberPanel that could allow an internet-based attacker to execute commands on vulnerable servers without any credentials. This attack combines exposed AI Scanner interfaces, an authentication flaw tracked as CVE-2026-41473, stored cross-site scripting (XSS) tracked as CVE-2026-41472, and CyberPanel’s built-in cron-job functionality. CyberPanel is…
-
CyberPanel Pre-Auth RCE Flaws Let Attackers Gain Remote Server Access
Tags: access, ai, attack, authentication, cve, cyber, data-breach, flaw, Internet, jobs, rce, remote-code-execution, vulnerabilityResearchers have revealed a pre-authentication remote code execution (RCE) vulnerability chain in CyberPanel that could allow an internet-based attacker to execute commands on vulnerable servers without any credentials. This attack combines exposed AI Scanner interfaces, an authentication flaw tracked as CVE-2026-41473, stored cross-site scripting (XSS) tracked as CVE-2026-41472, and CyberPanel’s built-in cron-job functionality. CyberPanel is…
-
US agencies warn of AI-powered attacks on Siemens industrial controllers
Threat actors are using AI to write exploit scripts targeting internet-exposed Siemens S7 Series programmable logic controllers (PLCs) used across water, energy, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/20/usa-ai-attacks-siemens-s7-plcs-critical-infrastructure/ also interesting: Cybersecurity Snapshot: F5 Breach Prompts Urgent U.S. Gov’t Warning, as OpenAI Details Disrupted ChatGPT Abuses The Changing Threat Landscape for Retailers: Why…
-
OpenAI previews privacy-focused system for detecting AI misuse
OpenAI is previewing Private Safety Processing with early customers seeking greater certainty about how their data will be protected as AI systems become more capable. The … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/20/openai-private-safety-processing-zdr/ also interesting: 12 most innovative launches at RSA 2025 Cybersecurity Snapshot: F5 Breach Prompts Urgent U.S. Gov’t Warning, as OpenAI…
-
US Indicts 17 Iranians Over Years-Long Cyber Espionage Campaign
The US charged 17 Iranians over a years-long hacking campaign that stole 31TB from universities, companies and government agencies worldwide. Eight years after the original indictment first went public, US prosecutors just added eight more names to the list. The Justice Department unsealed a superseding indictment this week charging 17 members of the Mabna Institute,…
-
Geopolitical DDoS Attacks: What Cybersecurity Teams Need to Know
Geopolitical tensions are increasingly spilling into the cyber domain, with DDoS attacks becoming a common form of retaliatory hacktivism. Unlike financially motivated attacks, these campaigns can be triggered by events such as military escalation, elections, sanctions, or other geopolitical developments”, and can begin within hours. For security teams, the challenge is not only understanding who…
-
When Attackers Can Spin Up a Phishing Site in 90 Minutes, Your Blocklist is Already Stale
AI-generated phishing is outpacing reputation-based DNS filtering, forcing organizations to adopt real-time AI classification of unknown domains before users reach malicious sites. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/when-attackers-can-spin-up-a-phishing-site-in-90-minutes-your-blocklist-is-already-stale/ also interesting: When Good Tools Go Bad: Dual-Use in Cybersecurity Patch Tuesday for May: Five zero day vulnerabilities CISOs should focus on Why domain-based attacks…
-
More Code Equals More Exposure
AI-generated code is increasing software output faster than security teams can review it, creating a growing need for automated security tooling built for AI-scale development. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/more-code-equals-more-exposure/ also interesting: Check Point erweitert sein KI-Portfolio um eine dezidierte Anti-Phishing-Lösung April Patch Tuesday roundup: Zero day vulnerabilities and critical bugs AI…
-
Identity and Access Management as the Cornerstone of IT Security Compliance: What Managed IT Teams Need to Know
Is your IT team struggling with compliance? Discover why robust Identity and Access Management is the secret to meeting security standards. Read our guide now. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/identity-and-access-management-as-the-cornerstone-of-it-security-compliance-what-managed-it-teams-need-to-know/ also interesting: Understanding OWASP’s Top 10 list of non-human identity critical risks Security operations centers are fundamental to cybersecurity, here’s how to…
-
Zimbra RCE Vulnerability Lets Remote Attackers Execute System Commands
An urgent alert regarding an actively exploited remote code execution vulnerability affecting the Zimbra Collaboration Suite, a widely used enterprise email and collaboration platform. This vulnerability, tracked as CVE-2026-73570, is an unauthenticated OS command injection issue that allows attackers to execute arbitrary shell commands as the zimbra user. Zimbra RCE Vulnerability The flaw affects Zimbra…
-
StopAndProtect Turns 2,000 Hacked WordPress Sites Into a Criminal Network
StopAndProtect turned nearly 2,000 hacked WordPress sites into a criminal network for malware delivery, data theft, surveillance and ransomware. Check Point Research uncovered a cybercrime operation, dubbed StopAndProtect, that has turned thousands of hacked WordPress websites into a shared platform for malware delivery, data theft, surveillance and ransomware. The operation is a good reminder that…
-
AI Security Incident Case: Encrypted Reasoning Blocks of Proprietary LLMs Can Be Stolen via Cross-Model Replay
Overview On August 10, 2026, MATS Research, the ELLIS Institute Tübingen, the Max Planck Institute for Intelligent Systems, and other institutions jointly published the paper Stealing Reasoning Traces from Proprietary LLM APIs. The research reveals a common architectural flaw in the reasoning model APIs of three major AI providers, Anthropic, OpenAI, and Google, which allows……
-
AI-Driven Vulnerability Exploitation Is Now Fast and Cheap
AI is making vulnerability exploitation faster and cheaper, forcing defenders to rethink vulnerability management, continuous exposure detection and agentic cyber defense. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/ai-driven-vulnerability-exploitation-is-now-fast-and-cheap/ also interesting: You Have Exposure Management Questions. We’ve Got Answers Cybersecurity Snapshot: CISA’s Best Cyber Advice on Securing Cloud, OT, Apps and More New Cybersecurity Executive…
-
Windows-11-Update lässt Spiele und PCs abstürzen
Microsoft untersucht Probleme mit den August-Updates für Windows 11. Sowohl Videospiele als auch ganze PCs stürzen bei einigen Nutzern ab. First seen on golem.de Jump to article: www.golem.de/news/microsoft-windows-11-update-laesst-spiele-und-pcs-abstuerzen-2608-212113.html also interesting: Microsoft Warns of Windows Hyper-V Zero-Day Being Exploited June Windows Server updates break Microsoft 365 Defender features Microsoft Flags Six Active Zero-Days, Patches 57 Flaws:…
-
Hackers Impersonate Claude, ChatGPT and Copilot to Deliver Infostealers and Backdoors
Threat actors are increasingly abusing the popularity of generative AI brands to distribute malware, turning trusted names such as Claude, ChatGPT and Microsoft Copilot into convincing lures for infostealers, browser hijackers and remote-access backdoors. Sophos X-Ops reviewed 12 months of Managed Detection and Response (MDR) investigations, spanning July 2, 2025 to June 29, 2026. They…
-
Cribl Just Acquired Radiant Security’s AI SOC Technology. Here’s What It Means for Your SOC.
Cribl acquired Radiant Security’s AI SOC technology on August 19, 2026. What it means for Radiant customers, evaluators, and your AI SOC shortlist. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/cribl-just-acquired-radiant-securitys-ai-soc-technology-heres-what-it-means-for-your-soc/ also interesting: Microsoft Sentinel: A cloud-native SIEM with integrated GenAI 8 trends transforming the MDR market today Top 7 agentic AI use cases for…
-
Europäische Expansion und Zusammenarbeit – Ecos schließt sich der Elvirian-Gruppe an
Tags: unclassifiedFirst seen on security-insider.de Jump to article: www.security-insider.de/ecos-schliesst-sich-der-elvirian-gruppe-an-a-bbad56e8384e2ba39fd8bd9295b28d56/ also interesting: Differences Between Secure by Design and Secure by Default SEC Drops Remaining Claims Against SolarWinds Over 2020 Hack Kleinanzeigen-Tricks: An diesen Warnsignalen erkennst du die meisten Betrüger Vorratsdatenspeicherung: Bundesdatenschutzbeauftragte hält Regierungspläne für unzulässig
-
Google setzt KI-Agenten auf Quellcode an: Schwachstellen finden, bevor Angreifer sie ausnutzen
Google und Mandiant setzen KI-Agenten zur Quellcodeanalyse ein. AVDH findet Schwachstellen automatisiert und soll Angreifern bei der Zero-Day-Suche zuvorkommen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/google-setzt-ki-agenten-auf-quellcode-an-schwachstellen-finden-bevor-angreifer-sie-ausnutzen/a46209/ also interesting: SOAR buyer’s guide: 11 security orchestration, automation, and response products, and how to choose The 2 faces of AI: How emerging models empower and endanger cybersecurity…
-
41 deceptive download sites show a real link, then send you somewhere else
Tags: unclassifiedA legitimate-looking link or valid digital signature can offer false reassurance. Here’s why familiar download safety checks aren’t always enough. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/41-deceptive-download-sites-show-a-real-link-then-send-you-somewhere-else/ also interesting: Somerset Police Nab Card Skimming Mastermind USENIX NSDI ’24 SwiftPaxos: Fast Geo-Replicated State Machines NASA’s Artemis II Moon rocket arrives at the launch pad Snap-Hack…
-
Microsoft says August Windows updates may cause gaming issues
Microsoft is investigating a potential issue with the August 2026 updates that may prevent some games from launching or cause them to crash on affected Windows 11 systems. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-august-windows-updates-may-cause-gaming-issues-reboots/ also interesting: CrowdStrike CEO says 97% of Windows sensors restored in IT outage recovery effort Kritische Fehler: Windows 11-Update…
-
US charges 17 Iranian hackers over 31-terabyte academic data theft
The U.S. has charged 17 alleged members of Mabna Institute, an Iranian hacking-for-hire company accused of running a years-long campaign that stole data from American … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/20/us-iranian-hackers-mabna-institute-charged/ also interesting: US charges Iranian hackers over $3.4 billion intellectual property theft Top 12 ways hackers broke into your systems in…
-
Microsoft Defender Update Crashes Virus Scans on Windows PCs
Microsoft Defender has been aborting Quick, Full, and Offline virus scans on Windows systems following a series of Security Intelligence updates released on August 18, 2026. This issue has affected both consumer devices and Microsoft Defender for Endpoint-managed environments, disrupting a critical malware-detection capability for administrators and home users alike. Microsoft Defender Update Crashes Virus…
-
BSidesSF 2026 Your AI Agent Has Production Access: Now What?
Presenter: Jack Our thanks to Security BSides San Francisco for publishing their Creators, Authors and Presenter’s outstanding BSidesSF 2026 content on the Organizations’ YouTube Channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/bsidessf-2026-your-ai-agent-has-production-access-now-what/ also interesting: Three Keys to Modernizing Data Security: DSPM, AI, and Encryption Securing Agentic AI: How to Protect the Invisible Identity…
-
BSidesSF 2026 Your AI Agent Has Production Access: Now What?
Presenter: Jack Our thanks to Security BSides San Francisco for publishing their Creators, Authors and Presenter’s outstanding BSidesSF 2026 content on the Organizations’ YouTube Channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/bsidessf-2026-your-ai-agent-has-production-access-now-what/ also interesting: Improve Your Cyber Resilience with Data Security Platformization 10 promising cybersecurity startups CISOs should know about How shadow IT…
-
BSidesSF 2026 Your AI Agent Has Production Access: Now What?
Presenter: Jack Our thanks to Security BSides San Francisco for publishing their Creators, Authors and Presenter’s outstanding BSidesSF 2026 content on the Organizations’ YouTube Channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/bsidessf-2026-your-ai-agent-has-production-access-now-what/ also interesting: Improve Your Cyber Resilience with Data Security Platformization 10 promising cybersecurity startups CISOs should know about How shadow IT…
-
Security Analytics in NetFlow Analyzer: Spot Behavioral Threats Early Respond With Context
Your network is already being mapped. You just can’t see it yet. Modern attacks don’t make a sound. They don’t kick down the door. They find an unlocked window, slip through, and spend weeks quietly mapping your network before making a move. By the time your monitoring tool fires an alert, the attack is already..…
-
NIST AI RMF vs. NIST SP 800-53: Which Framework Do You Need for AI Risk?
<div cla First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/nist-ai-rmf-vs-nist-sp-800-53-which-framework-do-you-need-for-ai-risk/ also interesting: Cybersecurity Snapshot: NIST Program Probes AI Cyber and Privacy Risks, as U.S. Gov’t Tackles Automotive IoT Threat from Russia, China Introducing MAESTRO: A framework for securing generative and agentic AI Demystifying risk in AI How to make LLMs a defensive advantage without…
-
Detecting DCSync attacks using directory replication event logs
DCSync is one of the more important identity abuse techniques to understand if you run Active Directory. It does not rely on malware on the domain controller itself, and it can be carried out using legitimate directory replication interfaces if an attacker has the right permissions. That makes it especially relevant for defenders who want……
-
How Archer City ISD Replaced a Patchwork of Tools With A Unified Security and Safety Solution
ManagedMethods helps consolidate three critical K-12 technology functions while saving time and money When Karen Brunker’s colleague left Archer City Independent School District, she spent approximately six weeks managing the district’s entire technology workload alone. Every cybersecurity alert, blocked website inquiry, Chromebook issue, classroom request, projector problem, and support question landed on her desk. It…
-
Airlock Digital Completes Independent IRAP Assessment at the PROTECTED Level
Tags: unclassifiedAdelaide, Australia, 19th August 2026, CyberNewswire First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/airlock-digital-completes-independent-irap-assessment-at-the-protected-level/ also interesting: Ausgespähte Firmengeheimnisse: Die meisten Spione sitzen in der IT-Abteilung Font Security Still A Helvetica Of A Problem, Says Canva Sweden concludes that it cannot rule out sabotage over subsea cable break Fehlender Kontext als größtes Sicherheitsrisiko für Unternehmen
-
Identity Is Broken. Stop Trying to Fix It.
Tags: access, authentication, credentials, cryptography, data, identity, infrastructure, mfa, zero-trustFrom the earliest days of public-key cryptography and systems like Rivest-Shamir-Adleman (RSA), organizations have relied on identity and credentials to determine who can access IT environments, data, and applications. Over the decades, this infrastructure has undergone innovations like multi-factor authentication, single sign-on, identity providers, and zero-trust architectures. Then, there has been the emergence of various..…
-
Data protection through encryption and secure channels for UK SMEs
Key takeaways Start with the data that would hurt most if exposed, then apply encryption where it reduces the biggest business risk. Protect both stored data and data in transit, because laptops, backups, websites, and system connections all carry different risks. Encryption only works properly when keys, passwords, certificates, and access rights are managed carefully….…
-
Klassische Risikomodelle scheitern an der Permakrise – GRC wird vom Schutzmechanismus zur strategischen Steuerungsfunktion
Tags: grcFirst seen on security-insider.de Jump to article: www.security-insider.de/grc-permakrise-risikomanagement-wertschoepfung-a-0e489414b40e084db702c12262b581f3/ also interesting: The Future of GRC Integrating ESG, Cyber, and Regulatory Risk How AI is changing the GRC strategy “MomentTime” GRC Is Becoming Obsolete The Shadow AI Trap: Why Your AI Inventory is Your Biggest EU AI Act Compliance Risk FireTail Blog
-
Elementor Pro Flaw Could Let Unauthenticated Attackers Upload PHP and Execute Code
Cybersecurity researchers have disclosed details of a critical flaw in the Elementor Pro WordPress plugin that, if successfully exploited, could lead to remote code execution.The vulnerability, tracked as CVE-2026-32475, carries a CVSS score of 9.0 out of 10.0. It has been described as a case of unrestricted upload of a file with a dangerous type.”The…
-
ShinyHunters: Erpressungsversuch bei Logitech-Tochter
Hacker drohen Streamlabs mit Erpressung: Die Gruppe ShinyHunters fordert Kontakt bis 21. August. Millionen Daten sind bedroht. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/logitech-tochter-erpressung also interesting: Cl0p-linked threat actors target Oracle E-Business Suite in extortion campaign Hackers Claim Stealing 94GB of Pornhub Premium User Watch Histories Pornhub Premium und der Leak, der nach Erpressung…
-
Critical Citrix NetScaler Flaw Allows Attackers to Bypass Authentication
Cloud Software Group has issued a critical security bulletin regarding two vulnerabilities that affect customer-managed NetScaler ADC and NetScaler Gateway appliances. Among these, there is an authentication-bypass flaw that could expose remote-access environments to unauthenticated breaches. Citrix NetScaler Flaw The most severe issue, tracked as CVE-2026-19490, has a CVSS v4 base score of 9.3 and…
-
Critical Citrix NetScaler Flaw Allows Attackers to Bypass Authentication
Cloud Software Group has issued a critical security bulletin regarding two vulnerabilities that affect customer-managed NetScaler ADC and NetScaler Gateway appliances. Among these, there is an authentication-bypass flaw that could expose remote-access environments to unauthenticated breaches. Citrix NetScaler Flaw The most severe issue, tracked as CVE-2026-19490, has a CVSS v4 base score of 9.3 and…
-
13 Malicious Rabby Firefox Extensions Steal Wallet Keyrings Before They Are Encrypted
A broad Firefox add-on campaign that includes 13 malicious Rabby Wallet impersonators engineered to exfiltrate wallet keyring data before the application encrypts it locally. The activity is part of a larger operation, provisionally tracked as “Offside Wallet Theft Factory,” which links 77 Firefox extension identities through cloned code, reused infrastructure, deceptive listings, stable add-on IDs,…
-
Airlock Digital Completes Independent IRAP Assessment at the PROTECTED Level
Adelaide, Australia, August 19th, 2026, CyberNewswire Independent assessment provides Australian organisations with additional evidence when evaluating application control for sensitive, government, defence and critical infrastructure environments. Airlock Digital, a global provider of application control and allowlisting solutions, today announced that it has completed an independent Information Security Registered Assessors Program (IRAP) assessment at the PROTECTED…
-
Airlock Digital Completes Independent IRAP Assessment at the PROTECTED Level
Adelaide, Australia, August 19th, 2026, CyberNewswire Independent assessment provides Australian organisations with additional evidence when evaluating application control for sensitive, government, defence and critical infrastructure environments. Airlock Digital, a global provider of application control and allowlisting solutions, today announced that it has completed an independent Information Security Registered Assessors Program (IRAP) assessment at the PROTECTED…
-
Sequoia, Sonoma und Tahoe betroffen – Screen-Sharing-Schwachstelle in macOS wird aktiv ausgenutzt
First seen on security-insider.de Jump to article: www.security-insider.de/macos-screen-sharing-authentifizierungsfehler-cve-2026-65400-a-38474d316feea9b4b2b602026bb358ce/ also interesting: Apple Releases Urgent Updates to Patch Actively Exploited Zero-Day Vulnerabilities ESET fixed two privilege escalation flaws in its products iTerm2 Emulator Vulnerability Let Attackers Access Sensitive User Data Volume of attacks on network devices shows need to replace end of life devices quickly
-
They escaped south-east Asia’s scam compounds. Then they realised they were still trapped
The cyber-fraud industry has flourished in Thailand, Cambodia and Myanmar, with thousands of people trafficked into the industry. But even those who have managed to find a way out often cannot return homeArtillery fire thundered. Windows shattered. Roofs caved in. And thousands of foreign workers many who had been tricked and trafficked into the vast…
-
Aeternum Operators Use Polygon Smart Contracts to Rotate Malware C2 Domains Dynamically
Aeternum operators are abusing Polygon smart contracts as a decentralized dead-drop resolver, allowing malware to retrieve and rotate command-and-control (C2) domains without depending on conventional attacker-owned servers. The approach turns a public blockchain into resilient C2 infrastructure that is substantially harder to disrupt through domain seizures, hosting takedowns, or sinkholing. Rather than contacting a fixed…

