Tag: tool
-
Vertrauen lässt sich nicht prompten
Wie informieren sich IT-Entscheider, und welchen Quellen vertrauen sie? Dieser Frage ist Akima im März 2026 in einer Befragung von 309 IT-Entscheidern in deutschen Unternehmen nachgegangen. KI-Tools sind innerhalb eines Jahres von Platz 9 (2025) auf Platz 3 der meistgenutzten Quellen vorgerückt und haben sich damit als neue Gatekeeper etabliert. An den Kriterien für Vertrauen…
-
Apple Fixes WebKit Flaws in iOS and macOS, With Help From AI Tools
Apple released updates for iOS, iPadOS, macOS, and Safari, fixing WebKit flaws, four of which were found using AI tools like Claude and Codex Apple pushed out security updates for iOS, iPadOS, macOS, and Safari on Monday, and this round comes with a twist worth noticing. Four of the WebKit vulnerabilities patched were found using…
-
Apple Fixes WebKit Flaws in iOS and macOS, With Help From AI Tools
Apple released updates for iOS, iPadOS, macOS, and Safari, fixing WebKit flaws, four of which were found using AI tools like Claude and Codex Apple pushed out security updates for iOS, iPadOS, macOS, and Safari on Monday, and this round comes with a twist worth noticing. Four of the WebKit vulnerabilities patched were found using…
-
SystemBC Malware Turns Windows Machines Into SOCKS5 Proxies for Ransomware Attacks
SystemBC (also tracked as Coroxy) remains a versatile and persistent Windows malware family that operators routinely deploy to convert compromised hosts into SOCKS5 proxy gateways and to maintain remote access for follow-on operations. First observed as a payload in exploit kits around 20182019, SystemBC has evolved into a widely traded commodity tool used by multiple…
-
Kali Linux 2026.2 Release With new Hacking Tool and With Updated Desktop Environments
Kali Linux 2026.2 arrives on schedule in the final week of Q2 with a pragmatic blend of desktop environment refreshes, infrastructure hardening, and practical usability refinements that will matter to both pentesters and platform maintainers. The release emphasizes polish and performance rather than headline-grabbing features: GNOME advances to version 50 and KDE Plasma to 6.6.…
-
Kali Linux 2026.2 released with 9 new tools, NetHunter updates
Kali Linux 2026.2, the second release of the year, is now available for download, featuring 9 new tools and numerous Kali NetHunter improvements. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/linux/kali-linux-20262-released-with-9-new-tools-nethunter-updates/
-
Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs
Apple on Monday released security updates for iOS, macOS, and the Safari web browser to address over three dozen flaws, including four vulnerabilities in WebKit that were discovered using artificial intelligence (AI) tools like Anthropic Claude and OpenAI Codex Security.The WebKit vulnerabilities are listed below – CVE-2026-43707 – A memory corruption issue that could result…
-
Hottest cybersecurity open-source tools of the month: June 2026
Presented here is a curated selection of noteworthy open-source cybersecurity solutions that have drawn recognition for their ability to enhance security postures across … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/30/hottest-cybersecurity-open-source-tools-of-the-month-june-2026/
-
New MCP Specifications Fix Security Issue But Open Many More
Model Context Protocol Rewrite Leaves More Security Decisions to Developers. The new MCP specifications fix a long-standing weakness in how AI agents authenticate to external tools, but security experts say it shifts key safeguards to developers. The result is a more flexible standard that can also increase the risk of authorization flaws, data exposure and…
-
Gefälschtes Vertrauen wird zur neuen Währung der Cyberkriminalität
Die Kampagne rund um manipulierte Krypto-Tools macht deutlich, wie sehr sich Cyberangriffe inzwischen verändert haben. Malware muss sich heute nicht mehr nur verstecken, sie kann sich auch gezielt als vertrauenswürdiges Produkt inszenieren. In diesem Fall wurde eine gesamte Fake-Reputation-Ökonomie aufgebaut, um einen Crypto-Clipboard-Hijacker als beliebtes, geprüftes und sicheres Tool erscheinen zu lassen. Gefälschte Github-Sterne, künstlich…
-
Wenn Vertrauen zur Falle wird: Cyberkriminelle tarnen Malware als beliebtes Krypto-Tool
Selbst wenn Nutzer versuchen, die Schadsoftware manuell zu entfernen, kann sie sich erneut festsetzen oder wiederherstellen. Für Betroffene wird die Bereinigung dadurch deutlich schwieriger. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/wenn-vertrauen-zur-falle-wird-cyberkriminelle-tarnen-malware-als-beliebtes-krypto-tool/a45627/
-
Most teams accept higher risk for faster AI database work
Database professionals are using AI for everyday work like writing queries, building schemas, and reviewing code, and a growing share rely on autonomous tools that act on the … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/29/teams-ai-database-security/
-
Clean GitHub repo tricks AI coding agents into running malware
An agentic coding tool tasked with cloning and setting up a seemingly benign GitHub repository could execute a malicious payload that remains invisible to security scanners, AI agents, and human reviewers. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/clean-github-repo-tricks-ai-coding-agents-into-running-malware/
-
8 Top SAST Tools for Polyglot Monorepos and Platform Engineering in 2026
Tags: toolCompare 8 top SAST tools for polyglot monorepos, covering incremental scans, ownership, custom rules and platform engineering at scale 2026. First seen on hackread.com Jump to article: hackread.com/top-sast-tools-polyglot-monorepos-platform-engineering/
-
HHS Agencies Flesh Out Priorities for Healthcare AI
Coordinated ‘OneHHS’ AI Governance, Implementation, Guidance Efforts Under Way. The U.S. Department of Health and Human Services is preparing guidance aimed at accelerating the adoption of healthcare AI, with agency officials signaling that governance frameworks, implementation support and new approaches to evaluating clinical AI tools are among the department’s top priorities. First seen on govinfosecurity.com…
-
ATF cancels controversial commercial geolocation contract
Tags: toolThe agency told CyberScoop the tool was a pilot that didn’t meet their needs. Members of Congress say it was accessed for hundreds of active cases. First seen on cyberscoop.com Jump to article: cyberscoop.com/atf-cancels-penlink-ad-surveillance-contract/
-
Chinese APT CL1062 Expands Attacks on Southeast Asian Critical Infrastructure With Custom Malware
Chinese-speaking APT CL-STA-1062 targeted Southeast Asian government and energy networks open-source tools, and a new TinyRCT backdoor. Palo Alto Networks Unit 42 researchers published a detailed report on a Chinese-speaking threat actor, tracked as CL-STA-1062, that has been running persistent operations across East Asia since at least March 2022 and shifted focus to Southeast Asian…
-
23 Top Open Source Penetration Testing Tools in 2026
Review and compare 23 of the best open-source pen testing tools in 2026. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/applications/open-source-penetration-testing-tools/
-
AWS unveils agent security, data access tools
The updates reflect Anthropic’s Mythos model and the speed at which vulnerabilities can be surfaced. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/aws-continuum-ai-security-claude-mythos/823393/
-
macOS Flaw Allowed Standard Users to Disable CrowdStrike and Kandji Security Tools
A macOS XPC flaw let regular users disable CrowdStrike and Kandji tools, exposing security gaps that vendors patched after XM Cyber reported the security issue. First seen on hackread.com Jump to article: hackread.com/macos-flaw-users-disable-crowdstrike-kandji-security-tools/
-
Activist Phone Hacked With Cellebrite After Russia Contract Cancellation
Russian authorities used Cellebrite tools to unlock an activist’s iPhone and analyze private data despite canceled support, raising abuse concerns. On May 31, 2021, Russian security services pulled opposition activist Andrey Pivovarov off a flight at St. Petersburg airport and confiscated his iPhone 12 and MacBook. He never consented to a search and never gave…
-
Russian Authorities Used Cellebrite UFED to Break Into Human Rights Activist’s iPhone
Russian authorities leveraged Cellebrite’s Universal Forensic Extraction Device (UFED) to gain access to a detained human rights activist’s iPhone, according to a detailed forensic investigation that raises fresh concerns over the use of commercial digital forensics tools in political repression. The findings as per reported by CitizenLabs, based on technical analysis and corroborated by official…
-
Russia Used Cellebrite on Jailed Activist’s iPhone Months After Sales Cutoff
Russian authorities used Cellebrite’s UFED forensic tools to break into the iPhone of detained opposition activist Andrey Pivovarov in June 2021, three months after Cellebrite said it would stop selling its tools and services to Russia and Belarus.The finding, published June 25 by the Citizen Lab, rests on two things that rarely line up: traces…
-
Healthcare leaders see a fatal cyber incident as inevitable
Healthcare practices run on a chain of outside vendors. An EMR system holds clinical records, a billing platform processes claims, a telehealth tool supports remote visits, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/26/cyber-incident-healthcare-vendor-risk/
-
Interview mit Georgeta Toth Wer den Prozess weglässt, hat das Tool umsonst gekauft
Viele Unternehmen haben ihre Sicherheitsarchitektur mit Tools zugeschüttet und trotzdem keine Kontrolle. Georgeta Toth, Senior Regional Director Central Europe bei der Rapid7 Germany GmbH, erklärt, warum Security-Operations-Center-Projekte scheitern, wie KI die Angreiferseite verändert und weshalb NIS2 für IT-Verantwortliche ein Befreiungsschlag war. First seen on ap-verlag.de Jump to article: ap-verlag.de/interview-mit-georgeta-toth-wer-den-prozess-weglaesst-hat-das-tool-umsonst-gekauft/105574/
-
Feds Expand AI to Combat Healthcare Fraud
$6.5B Takedown Highlights AI’s Growing Role in Fraud Detection. A federal effort, bolstered with by data analytics and AI tools, helped bust $6.5 billion in false healthcare claims, U.S. government officials said this week. Moving forward, AI will play an even bigger role in identifying potential fraud before criminals can cash out, they promised. First…
-
Cellebrite said it cut off Russia, but Russia used its tools anyway
Security researchers found evidence that Russian authorities hacked the iPhone of a political opponent using a phone-unlocking device made by Cellebrite, even after the company said it would stop selling to Putin’s government. First seen on techcrunch.com Jump to article: techcrunch.com/2026/06/25/cellebrite-said-it-cut-off-russia-but-russia-used-is-tools-anyway/
-
macOS attack technique bypasses endpoint security tools
First seen on scworld.com Jump to article: www.scworld.com/brief/macos-attack-technique-bypasses-endpoint-security-tools
-
AI is raising the cost of MSP tool sprawl
First seen on scworld.com Jump to article: www.scworld.com/native/msps-cant-run-ai-on-a-fragmented-tech-stack
-
SuperOps, Guardz target MSP tool sprawl with a unified AI-ready stack
First seen on scworld.com Jump to article: www.scworld.com/news/superops-guardz-target-msp-tool-sprawl-with-a-unified-ai-ready-stack

