Tag: detection
-
C2Looper: A New Backdoor Likely Tied To Ransomware With GitHub C2
IntroductionIn July 2026, Zscaler ThreatLabz identified a new Rust-based malware family that we track as C2Looper, which is likely leveraged by a ransomware-related threat actor. Furthermore, ThreatLabz assesses with low to medium confidence that C2Looper has been delivered to victims through a multi-stage ClickFix infection chain. C2Looper supports backdoor commands including executing arbitrary commands, performing reconnaissance,…
-
GitHub Expands Dependabot Malware Alerts to Detect Malicious Packages Across 8 Ecosystems
GitHub has expanded its Dependabot malware alerts beyond npm, enabling the detection of malicious dependencies across various package ecosystems, including PyPI, Maven, RubyGems, NuGet, Go, crates.io, and PHP Composer. This rollout is supported by a new GitHub Advisory Database importer for OpenSSF’s malicious-packages repository, which enhances supply chain detection across these eight ecosystems. GitHub Expands…
-
The Best Intrusion Detection Prevention (IDS/IPS) Tools, Compared and Priced (2026)
This market runs from $0 to seven figures, and the free options power half the paid ones, so price comparisons here reward honesty. The verdict up front: Snort and Suricata are the best-value detection engines on earth (free, production-grade, industry-embedded), Zeek is the evidence standard, and among commercial platforms Fortinet delivers the strongest inline-prevention […]…
-
This ‘adversarial’ pattern can prevent surveillance cameras from detecting you
A security researcher has designed an algorithm that can create computer-generated patterns capable of hiding people, faces, and vehicles from detection by surveillance cameras. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/09/this-adversarial-pattern-can-prevent-surveillance-cameras-from-detecting-you/
-
BSidesSF 2026 Detection Allegro: Composing Detection Rules With Agentic Workflows
Tags: detectionPresenters: Raphael Ruban, Chen Cao Our thanks to Security BSides San Francisco for publishing their Creators, Authors and Presenter’s outstanding BSidesSF 2026 content on the Organizations’ YouTube Channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/bsidessf-2026-detection-allegro-composing-detection-rules-with-agentic-workflows/
-
Agentic AI for Cyber Defenders: What Security Teams Built at Black Hat USA 2026
Tags: ai, automation, conference, control, credentials, cve, cyber, cybersecurity, data, data-breach, defense, detection, exploit, flaw, group, iam, intelligence, ISO-27001, mitigation, network, nvidia, offense, open-source, RedTeam, risk, skills, soc, technology, threat, tool, usa, vulnerabilityAgentic AI armed attackers first, but it also put real building power in defenders’ hands. Here’s what security practitioners built in two days at Black Hat USA 2026, and how the CyberAgents Exchange keeps that work compounding long after the event. Key takeaways Building defensive cybersecurity tooling no longer requires a developer. Agentic tooling drove…
-
Sophos, OpenAI Partner to Bring Frontier Models to Managed Service Providers
Sophos said it is partnering with OpenAI to bring OpenAI frontier models to managed service providers through Sophos Fusion, the company’s connected cyber defense system. Announced Aug. 6 during Black Hat USA 2026, the partnership is intended to give MSPs a way to deliver AI security services and build offerings around detection, investigation and response……
-
How Agentic AI Scales Cybercrime
Google’s Hultquist on Autonomous Attacks and Behavioral Defense. Cybercriminals are using agentic AI to automate intrusions, rewrite malware and scale operations with stolen access to artificial intelligence services. Google’s John Hultquist explains why signature-based defenses are losing ground and how behavioral detection can help security teams respond. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/how-agentic-ai-scales-cybercrime-a-32449
-
Suppliers, logins, and AI tools are all becoming attack paths
Cybercriminals and state-backed hacking groups are abusing trusted identities, cloud services, AI tools, and software supply chains to gain access while avoiding detection, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/06/crowdstrike-cyber-threat-trends-report/
-
Flooding Dropper Hits npm With 850 Malicious Packages
Tags: attack, automation, cloud, container, control, credentials, cvss, data-breach, detection, dns, endpoint, github, guide, infrastructure, linux, macOS, malicious, malware, monitoring, software, threat, windows<div cla TL;DR Sonatype Research Labs is tracking an active malicious package campaign, dubbed ‘Flooding Dropper,’ spreading on npm, currently impacting 846 software components. The attacker appears to be automating parts of the npm account and package creation process, combining terms such as bigops and bnpl with other words and recurring version patterns, such as releases…
-
Realm Security Debuts Detection Integrity and Unmetered Data Haven Search
Realm Security is introducing two capabilities ahead of Black Hat USA 2026: Detection Integrity and search inside its Data Haven retention layer. The company said the tools are intended to help security teams reduce SIEM data volume without losing visibility into the detections that depend on that data. Detection Integrity reads the detections running in..…
-
5 Best AI Detection Response Platforms for 2026
Compare AI detection response platforms for 2026, including Dash, Lakera, Operant AI, HiddenLayer and Prisma AIRS, for runtime threat protection and response. First seen on hackread.com Jump to article: hackread.com/best-ai-detection-response-platforms-2026/
-
Optiv Debuts Agentic Security Operations, Overhauling Its Managed Detection Service
Optiv unveiled Optiv Agentic Security Operations on Wednesday at Black Hat USA 2026, a major expansion of its managed security services and a substantial overhaul of the offering formerly known as Optiv MDR. The new service combines Google Security Operations technology, already central to the prior offering, with deeply integrated cloud and AI security capabilities..…
-
How AI-powered phishing killed blocklists for good
AI is helping attackers create disposable phishing infrastructure and rapidly evolving toolkits that blocklists cannot track fast enough. Push Security explains why browser-level, technique-based detection offers a more durable defense than relying on domains, signatures, and other known-bad indicators. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/how-ai-powered-phishing-killed-blocklists-for-good/
-
Is Your AI Infrastructure Quantum-Ready? Evaluating Threat Detection and Access Control
Is your AI infrastructure quantum-ready? Discover how to defend against Harvest Now, Decrypt Later threats and secure your Model Context Protocol deployments. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/is-your-ai-infrastructure-quantum-ready-evaluating-threat-detection-and-access-control/
-
Subscriber Security: Trust Is Telecom’s Most Valuable Asset
Why Protecting Subscriber Identity has Become Industry’s Cybersecurity Priority As subscriber identities become the foundation of digital services, telecom and DTH providers must move from protecting networks to safeguarding customer trust. Identity-centric security, stronger governance, AI-driven fraud detection and evolving regulations are reshaping cybersecurity priorities. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/blogs/subscriber-security-trust-telecoms-most-valuable-asset-p-4165
-
Salt Debuts First AWS WAF Managed Ruleset for AI Agent and API Protection
Tags: access, ai, api, attack, ceo, credentials, detection, email, endpoint, exploit, intelligence, marketplace, threat, waf, xssThe WAF gap no one is talking about Your WAF is doing its job. It’s blocking SQLi, XSS, and the usual suspects. But here’s the problem: it wasn’t built for APIs, and it definitely wasn’t built for AI agents. APIs now power nearly every digital experience. And AI agents, the automated systems that access your…
-
Wie sich Security-Operations-Center entwickelten und sich weiter entwickeln
Hochmoderne Security-Operations-Center (SOC) sind durchzogen von künstlicher Intelligenz und KI-Agenten, die viele Aufgaben bereits autonom übernehmen. Die Einführung dieser Technologie war allerdings kein singuläres Ereignis, sondern ist lediglich die aktuelle Evolutionsstufe. Ontinue, ein führender Experte für Managed-Extended-Detection and Response (MXDR), zeigt die Entwicklungsstufen auf und wirft einen Blick in die Zukunft der Cybersecurity. Das Thema…
-
OWASP Introduces Subtractive Security Top 10 to Eliminate Attack Paths and Reduce Cyber Risk
OWASP has launched the Subtractive Security Top 10 project, a security engineering initiative that shifts the focus from adding more detection controls to removing the architectural conditions that enable cyberattacks. The project, led by Christopher Frenz, promotes a straightforward premise: attackers can only exploit attack paths that exist. Instead of relying primarily on monitoring, alerting,…

