Tag: cyberattack
-
ExfilSquad hackers leak info of over 100,000 UK police officers, staff
A cyberattack on the U.K.’s Police National Legal Database (PNLD) has compromised contact data of more than 100,000 police officers and other criminal justice professionals. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/exfilsquad-hackers-leak-info-of-over-100-000-uk-police-officers-staff/
-
Chinese hacker used DeepSeek to launch autonomous cyberattacks on vulnerable servers
A Chinese threat actor operating under the aliases >>knaithe<>KnYuan<< used multiple LLMs to automate cyberattacks against internet-facing systems … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/03/deepseek-ai-autonomous-cyberattacks-hermes-agent/
-
3rd August Threat Intelligence Report
Minnesota IT Services has confirmed coordinated cyberattacks affecting more than 30 community water utilities across the state. The incidents briefly disrupted a treatment plant in Braham and affected industrial control systems. Officials reported […] First seen on research.checkpoint.com Jump to article: research.checkpoint.com/2026/3rd-august-threat-intelligence-report/
-
Künstliche Intelligenz ist fester Bestandteil moderner Cyberangriffe
Cyberangreifer operationalisieren künstliche Intelligenz nicht nur, um Schwachstellen innerhalb von Stunden auszunutzen, sondern auch, um KI, die in Unternehmen eingesetzt wird, anzugreifen. Zudem nutzen Angreifer sie auch, um Angriffe entlang der Software-Lieferkette zu skalieren. Dies verdeutlicht der aktuelle <> von Crowdstrike. So nutzten China-nahe Angreifer innerhalb von 24 Stunden nach der Veröffentlichung eines […] First seen…
-
Liechtenstein: Hacker kopieren 31.000 Datensätze aus Wirtschaftsregister
Die liechtensteinische Regierung muss nicht nur dem Angriff nachgehen, sondern auch Maßnahmen wegen der Verletzung der DSGVO ergreifen. First seen on golem.de Jump to article: www.golem.de/news/liechtenstein-hacker-kopieren-31-000-datensaetze-aus-wirtschaftsregister-2608-211538.html
-
Klassische Firewalls sind blind für Angriffe in natürlicher Sprache – Warum LLM-Guards allein die KI-Sicherheit nicht retten
First seen on security-insider.de Jump to article: www.security-insider.de/llm-guards-ki-sicherheit-a-2fbccecb3c2d06bb933157bbaadd9970/
-
What the Minnesota Water Attacks Reveal About Securing Remote Access to Critical Infrastructure
Tags: access, ai, attack, authentication, cisa, control, corporate, credentials, cyberattack, data-breach, exploit, Hardware, identity, infrastructure, Internet, law, least-privilege, malware, mfa, monitoring, network, password, risk, router, supply-chain, technology, vpn, zero-day, zero-trustWhen headlines break about cyberattacks targeting critical infrastructure, the conversation often turns immediately to zero-day exploits, advanced malware, and other sophisticated techniques. The recent attacks on municipal water systems across at least seven US states, including more than 30 Minnesota water and wastewater utilities, illustrate why this assumption can be misleading. As a “recovering CISO” who…
-
AI is now both the weapon and the target in cyberattacks
AI generates 2.5 signals for every human-triggered signal CrowdStrike has to assess. Meanwhile, attackers are using AI to weaponize vulnerabilities faster than companies can patch them. First seen on cyberscoop.com Jump to article: cyberscoop.com/crowdstrike-annual-threat-hunting-report-2026/
-
Infostealer liefern die Token für EntraAngriffe – So umgehen Angreifer mit gestohlenen Token die MFA
First seen on security-insider.de Jump to article: www.security-insider.de/session-token-mfa-umgehen-a-99c3ed934040d76954f5e70496a3f1c1/
-
CISA Urges Utilities to Remove Internet-Exposed PLCs After Minnesota Attacks
After attacks hit 30+ Minnesota water systems, CISA urged utilities to remove internet-exposed PLCs and strengthen OT security. Between Sunday and Monday, July 26 and 27, a coordinated cyberattack hit operational technology (OT) systems at more than 30 community water utilities across the state, according to Minnesota IT Services (MNIT). “A coordinated cyberattack targeted operational technology…
-
Chinesischer Hacker steuert DeepSeek über Telegram für autonome Angriffe
Ein chinesischsprachiger Angreifer ließ das KI-Modell DeepSeek über das Framework Hermes Agent weitgehend selbstständig Angriffe ausführen. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/hacker-deepseek-autonome-angriffe
-
7 States’ Water Systems Hit by Cyberattacks Likely Tied to Iran
Plus: The FBI eyes AI-powered tech to detect future crimes, Russia charges Telegram’s founder, xAI sues to stop a state’s “nudification” ban, and the Democrats learn a lesson about getting scammed. First seen on wired.com Jump to article: www.wired.com/story/security-news-this-week-7-states-water-systems-hit-by-cyberattacks-likely-tied-to-iran/
-
Trump blames Minnesota for cyberattacks on water sector, drawing pushback from cyber world
The president went against his intelligence agencies’ conclusions about Iran being the likely suspect in the campaign. First seen on cyberscoop.com Jump to article: cyberscoop.com/trump-blames-minnesota-water-cyberattacks-iran/
-
Hacker uses DeepSeek AI to autonomously attack vulnerable servers
A Chinese-speaking threat actor is using the DeepSeek AI model and the open-source Hermes Agent to conduct autonomous cyberattacks on exposed servers with limited human involvement. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hacker-uses-deepseek-ai-to-autonomously-attack-vulnerable-servers/
-
CISA warns of cyberattacks disrupting U.S. water utilities
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of a significant increase in attacks targeting internet-exposed programmable logic controllers (PLCs) in the water and wastewater systems sector. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-warns-of-cyberattacks-disrupting-us-water-utilities/
-
Nach OpenAI-Vorfall – Auch Claude hat eigenständig Unternehmen angegriffen
First seen on security-insider.de Jump to article: www.security-insider.de/claude-anthropic-unbefugter-zugriff-internetzugang-tests-a-5214f43e384dadf8a39df816a0d26de6/
-
The Cyber Express Weekly Roundup: AI Fraud, Data Leaks, Malware Campaigns, and Critical Infrastructure Threats
Tags: ai, cyber, cyberattack, data, exploit, finance, fraud, government, infrastructure, intelligence, leak, malicious, malware, software, threatThis weekly roundup highlights the growing complexity of digital threats affecting governments, businesses, developers, and consumers. From artificial intelligence being misused for financial fraud to large-scale customer data exposures, malicious software targeting developer ecosystems, and cyberattacks against critical infrastructure, recent incidents demonstrate how attackers are exploiting both emerging technologies and existing security weaknesses. First seen…
-
Healthcare Disruption, Critical Software Flaws, and Exposed PLCs Show How Quickly Cyber Risk Becomes Business Risk
Tags: business, computer, cyber, cyberattack, data-breach, flaw, healthcare, Internet, phone, risk, softwareAnMed temporarily closed 79 of its 106 facilities after a cyberattack disrupted computer systems, phone lines, and internet connectivity. Appointments were postponed, elective procedures faced uncertainty, and the health system had to coordinate care while teams worked to restore access. For a healthcare provider, that kind of disruption reaches far beyond technology. It affects how……
-
Chinese-Speaking Hacker Uses DeepSeek Agent to Launch Autonomous Cyberattacks
Chinese-speaking threat actor “knaithe” (aka KnYuan) has been caught running an AI-enabled autonomous attack stack built around DeepSeek and the Hermes Agent framework, proving that large language models can now drive end”‘to”‘end offensive operations with minimal human oversight. Hermes provided terminal access, skills orchestration, and Model Context Protocol (MCP) integrations. At the same time, DeepSeek…
-
Suspected Iranian Campaign Disrupts Minnesota Water Systems
U.S. and Minnesota investigators believe Iranian hackers were likely responsible for a cyberattack on roughly 36 municipal water systems in Minnesota, The New York Times reported Thursday. Officials cautioned that the attribution remains a preliminary assessment and could change as investigators gather more evidence. The attacks occurred Monday and were focused on technology that municipalities..…
-
A Leaked Memo Ties Cyberattacks on Minnesota Water Utilities to Iran
A memo obtained by WIRED, issued by the water utilities information sharing group WaterISAC, links dozens of cyberattacks against Minnesota water utilities to Tehran. First seen on wired.com Jump to article: www.wired.com/story/a-leaked-memo-ties-cyberattacks-on-minnesota-water-utilities-to-iran/
-
Authorities investigating a coordinated cyberattack against Minnesota water systems
The two-day attack comes days after federal officials warned of state-linked threat groups targeting a wider set of industrial devices. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/authorities-investigating-a-coordinated-cyberattack-against-minnesota-water/826427/
-
Warum Security-Operations-Center-Teams ganzheitliche Transparenz brauchen
Security-Operations-Center (SOC)-Teams stehen zunehmend unter Druck. Die Zahl sicherheitsrelevanter Ereignisse steigt kontinuierlich, und Angriffe werden immer schneller und gezielter. Durch KI und Automatisierung sind gleichzeitig auch die Prozesse in Security-Operations-Centers immer moderner. Analysen laufen schneller, Muster lassen sich effizienter erkennen, viele Prozesse können skaliert werden. Doch noch immer begrenzt der Mangel an Echtzeit-Transparenz die Wirksamkeit…
-
Coordinated cyberattack disrupts water utilities in 30+ Minnesota communities
A cyberattack of undetermined origin disrupted water treatment plants in at least 30 communities in Minnesota, according to the state’s technology bureau. First seen on statescoop.com Jump to article: statescoop.com/coordinated-cyberattack-disrupts-water-utilities-in-30-minnesota-communities/
-
CISA shares advice on isolating vital systems during cyberattacks
The U.S. and Australian governments have released new guidance urging critical infrastructure organizations to prepare to isolate vital operational technology systems in the event of a cyberattack or other major disruptions. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-shares-advice-on-isolating-vital-systems-during-cyberattacks/
-
Hugging Face breach reignites open-weights debate, raises liability questions
The first publicly documented cyberattack run end-to-end by an autonomous AI was an OpenAI benchmark test that escaped its sandbox and breached Hugging Face. In an incident … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/28/hugging-face-breach-ciso-playbook-open-weight-llms/
-
Trojaner ersetzt in einer JSON-Bibliothek die Konfiguration des Entwicklers zur Manipulation einer Wettplattform
Das JFrog Security Research Team hat ein per Typosquatting getarntes NuGet-Paket entdeckt und offengelegt, das einen ungewöhnlich präzisen Supply-Chain-Angriff darstellt. Statt als generischer Info-Stealer zu agieren, wurde ‘Newtonsoftt.Json.Net>> als gezieltes Betrugswerkzeug gegen ein einzelnes Unternehmen entwickelt, während es sich für alle anderen wie eine völlig normale Software-Bibliothek verhielt. Es gab sich als die weit verbreitete…
-
OpenAI models escape containment, hack Hugging Face
In an unprecedented — and unintended — cyberattack, frontier AI models autonomously escaped their contained testing environment and breached another company’s systems. First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366646105/OpenAI-models-escape-containment-hack-Hugging-Face

