Tag: software
-
AI code security with Claude Mythos Preview: Inside Tenable’s 500+ hours of testing for Project Glasswing
Tags: access, ai, api, application-security, compliance, control, cyber, cybersecurity, data, exploit, flaw, reverse-engineering, risk, software, threat, tool, update, vulnerabilityWe spent 500+ hours and 40 billion tokens testing Anthropic’s Claude Mythos Preview for Project Glasswing. The takeaway: frontier AI won’t run your code security program, but used well, it can make one even stronger. Key takeaways Frontier AI dramatically scales security testing. In one month, Tenable dedicated 11 security experts and more than 40…
-
How to Automate Code Signing with Jenkins, Azure Key Vault, and AzureSignTool?
Professional software distribution dictates that software maintainability, assurance, and protection against tampering are achieved through code signing; it is a must. It takes time and effort to manually sign everything with certificates, is prone to mistakes, and introduces security risks if certificates are copied from one system to another. That’s where automation comes in. This”¦…
-
PoC Released for Linux Kernel STP UseFree Vulnerability
A proof-of-concept (PoC) has been released for a use-after-free vulnerability affecting the Linux kernel’s software bridge implementation found in `net/bridge`. This vulnerability occurs within the Spanning Tree Protocol (STP) timer lifecycle. It can result in timer structures referencing freed bridge memory, potentially allowing for control-flow hijacking. The SSD Secure Disclosure technical team disclosed the issue…
-
Hackers Turn Ethereum Smart Contract Into Dead-Drop Resolver for Remus Malware
Hackers are abusing an Ethereum smart contract as a dead”‘drop resolver to dynamically steer victims’ browsers to rotating command”‘and”‘control (C2) infrastructure in a new Remus infostealer campaign that weaponizes fake cracked software lures and Turkish”‘language SEO poisoning. In this campaign, Remus no longer relies on a static C2 domain or legacy dead-drop platforms like Steam…
-
Anthropic-KI manipuliert Menschen per E-Mail, um Schadcode in Software einzuschleusen
First seen on t3n.de Jump to article: t3n.de/news/anthropic-ki-manipuliert-menschen-per-e-mail-um-schadcode-in-software-einzuschleusen-1756393/
-
Cisco Patches 7 IOS XE Vulnerability Classes, Including Critical Command Injection Flaws
Cisco has released security-hardening updates for IOS XE Software that address seven classes of vulnerabilities, including a critical command, operating system, and argument injection category identified as CVE-2026-20272. The advisory, released on August 5, has an overall CVSS score of 3.1 and 9.8 and provides no workarounds, meaning that upgrading is the only recommended solution.…
-
Browser security is where software, data, and AI meet
In this interview with Help Net Security, Rui Ribeiro, CEO of Jscrambler, explains why the browser has become a security problem organizations do not control. Companies do not … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/06/rui-ribeiro-jscrambler-browser-security/
-
Jscrambler Launches Unified Client-Side Security Platform
Jscrambler has launched a Unified Client-Side Security Platform that combines software integrity and data governance through a browser runtime architecture. The platform is built on Jscrambler’s Behavioral Enforcement Core, which continuously monitors browser behavior, analyzes activity and enforces policy through a single deployment. The company said the goal is to extend security controls to the..…
-
Novee Brings Continuous AI Pentesting to Mobile Applications
Novee has expanded its AI penetration testing platform to mobile applications, extending continuous testing across mobile, web, APIs, desktop software and AI-enabled applications. The company announced the update ahead of Black Hat USA 2026. Novee said users can upload a mobile application package and receive results within hours, alongside findings from their other application assets……
-
Suppliers, logins, and AI tools are all becoming attack paths
Cybercriminals and state-backed hacking groups are abusing trusted identities, cloud services, AI tools, and software supply chains to gain access while avoiding detection, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/06/crowdstrike-cyber-threat-trends-report/
-
Black Hat 2026: Why AI software bills of materials are essential to AI trust
First seen on scworld.com Jump to article: www.scworld.com/perspective/black-hat-2026-why-ai-software-bills-of-materials-are-essential-to-ai-trust
-
Flooding Dropper Hits npm With 850 Malicious Packages
Tags: attack, automation, cloud, container, control, credentials, cvss, data-breach, detection, dns, endpoint, github, guide, infrastructure, linux, macOS, malicious, malware, monitoring, software, threat, windows<div cla TL;DR Sonatype Research Labs is tracking an active malicious package campaign, dubbed ‘Flooding Dropper,’ spreading on npm, currently impacting 846 software components. The attacker appears to be automating parts of the npm account and package creation process, combining terms such as bigops and bnpl with other words and recurring version patterns, such as releases…
-
Mini Shai-Hulud npm Attack: More Than 2,200 Components Impacted
Tags: access, ai, attack, breach, cloud, container, control, credentials, data, data-breach, github, guide, infection, intelligence, kubernetes, malicious, malware, microsoft, open-source, risk, sbom, service, software, threat, update<div cla TL;DR A new wave of the Shai-Hulud malicious package campaign emerged on npm, with 2,225 software component versions impacted. The malware executes through a malicious preinstall hook, steals npm, GitHub, cloud, Kubernetes, Vault, CI/CD, and other credentials, then uses stolen publishing access to compromise additional packages. Organizations that installed an affected version should…
-
Beacon CRM, Widely Used by Charities, Suffers Data Breach
English National Ballet is Among the Confirmed Victims Notifying Supporters. Cloud-based customer relationship management software provider Beacon CRM said it’s suffered a security breach that likely led to the theft of customer data. Over 1,000 charities use the software, and English National Ballet and the Centre for Sustainable Energy report they’ve been affected. First seen…
-
Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures
A macOS ClickFix operation spanning more than 250 front-end domains now fingerprints visitors before deciding whether to show them a malware lure, a change Microsoft Threat Intelligence tracked on infrastructure it had been watching for weeks.The server-side gate hides the malicious page from crawlers and sandboxes while presenting selected Mac users with a fake software…
-
Hacker greifen 120 Unternehmen über offizielle Microsoft-Dienste mit Phishing-Mails an
Check Point Research (CPR), die Sicherheitsforschungsabteilung von Check Point Software Technologies hat eine neue Phishing-Taktik von Angreifern aufgedeckt und analysiert, die sich Microsofts Infrastruktur zunutze macht und deren Vertrauenswürdigkeit ausnutzt. Vom 25. Juni bis in die zweite Juliwoche identifizierte CPR mehr als 200 Phishing-E-Mails, die sich an Nutzer in rund 120 Organisationen richteten und dabei…
-
Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug
HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and Django.The three most serious: An unauthenticated flaw in Veeam’s console that hands over a managed agent’s credentials, rated 9.5 A cross-tenant flaw in HashiCorp’s MCP server that lets one user’s Terraform token be reused for…
-
Open-source software’s archenemy TeamPCP goes back further than anyone thought
Oligo Security uncovered evidence of a long operational history, including multiple previous attacks it traced to the same attacker infrastructure and tools. First seen on cyberscoop.com Jump to article: cyberscoop.com/teampcp-long-active-history-2020-oligo-security/
-
Keyfactor will Cofide übernehmen, um verifizierte Identitäten für KI-Agenten und Cloud-Workloads bereitstellen zu können
Keyfactor gibt seine Absicht bekannt, das in Großbritannien beheimatete Unternehmen Cofide, eine Identitätsplattform, die Software-Workloads und KI-Agenten in modernen Cloud-Umgebungen schützt, zu übernehmen. Durch die Übernahme wird die Keyfactor-Trust-Control-Plane auf Workloads und KI-Agenten ausgeweitet werden. Sicherheitsteams werden über ein einziges System verfügen, mit dem sie unternehmensweit nicht-menschliche Identitäten verwalten und steuern können werden. Unternehmen setzen zunehmend…
-
Anthropic AI agent faked identities, phished real developers in UK government hacking test
An artificial intelligence agent built by Anthropic independently planted malicious code in a real software project and sent phishing emails to developers during a U.K. government security evaluation, according to Britain’s AI Security Institute. First seen on therecord.media Jump to article: therecord.media/anthropic-ai-hacking-uk
-
Leaked n8n API Tokens Exposed Live Instances to Credential Theft
GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability.We scanned public GitHub commits for exposed n8n API tokens and identified 4,576 unique credentials associated with 1,255 hostnames. Of the 896…
-
Managing endlife software risks for UK SMEs
End-of-life software is one of those issues that often stays hidden until it becomes expensive. A system may still appear to work, but if the supplier has stopped supporting it, the business is carrying more risk every day it stays in place. That risk is not just technical. It can mean avoidable downtime, higher support……
-
ScreenConnect Attackers Hide Windows, Delete Installers and Masquerade as Software Updates
ScreenConnect is being systematically weaponized in the SMOKE#SCREEN campaign, where attackers hide execution windows, delete installers, and disguise malicious activity as routine software updates to plant fully functional, signed ScreenConnect agents across Windows and macOS endpoints. The result is persistent, “legitimate-looking” remote access that blends into normal IT operations while silently bypassing user awareness and…
-
Bank of America impersonators weaponize ScreenConnect, then make it hard to remove
A phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and then making it … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/05/fake-bank-of-america-email-account-guard/
-
CISA’s New SBOM Rules Face Old Adoption Problem
New Rules Add Hashes and Licenses – But Critics See Little to Drive Adoption. The U.S. Cybersecurity and Infrastructure Security Agency, the NSA, the FBI and 15 international partners released updated minimum elements for software bills of materials, adding 10 new data fields and replacing 2021 guidance – though experts warn the revision does little…
-
Black Hat 2026: CrowdStrike Threat Hunting Report Findings
CrowdStrike’s 2026 Threat Hunting Report highlights how AI, identity attacks, and software supply chain threats are reshaping cyber risk. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/black-hat-2026-crowdstrike-threat-hunting-report-findings/

