Security signals, without the noise. — page 1
Current feed archive. Entries come from the loaded publisher feeds and change as those feeds update. Search and saved-story filters apply to this page.
Complete index
Every loaded article, grouped by its original feed. Search scans source names and headlines.
Density
Sort
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
[Virtual Event] Building a Secure AI Strategy for the Enterprise
Hundreds of OpenAI Agents Invaded Hugging Face Servers
Offensive Security Investments Surge as AI Threats Increase
You Need Cyber Deception for OT
Defining an AI Kill Switch Is Hard, but Necessary
The Vulnpocalypse Is Repricing the Bug Bounty Economy
Chinese Routers Sold Worldwide Contain Backdoors
Agentic AI Risks, CVE Program Concerns Permeate Black Hat USA 2026
ChatGPT Astra is now rolling out to $20 Plus subscription
OpenAI is now rolling out ChatGPT Astra, its most powerful model to date, to those with a $20 Plus subscription, but there's no word on when free users will get access..
Attackers conceal phishing lures using invisible Unicode characters
Threat actors have adopted the ASCII smuggling technique in phishing campaigns, using invisible Unicode characters to evade email security filters.
Over 5,400 hacked sites serve ClickFix payloads stored on the blockchain
A massive cybercriminal operation is leveraging thousands of compromised small-business websites to deliver ClickFix payloads stored in smart contracts on the BNB Smart Chain (BSC…
OpenAI admits it didn't disclose rogue AI wiki hijacking incident
OpenAI admits it did not disclose an incident where autonomous AI agents hijacked a German wiki, created 18,000 posts, shared answers, and bypassed restrictions, saying it treated…
IDScan sued over alleged data breach affecting 153 million drivers
Multiple lawsuits have been filed against identity verification company IDScan after hackers allegedly breached the service and offered to sell more than 153 million driver's lice…
Critical Citrix NetScaler auth bypass now leveraged in attacks
Attackers have begun targeting a critical-severity Citrix NetScaler auth bypass flaw (CVE-2026-19490) in the wild, according to vulnerability intelligence company Previdian.
Microsoft says some users can’t open the Teams desktop client
Microsoft is working to resolve a known issue that causes delays or blocks some users from opening the Microsoft Teams desktop client on Windows systems.
39 New Methods That Compromise Passkey Authentication
Passkeys eliminate many password-based attacks, but researchers have documented 39 methods for compromising authentication built around them. Token explains how attackers can abus…
New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges
An anonymous security researcher who uses the
Exchange Online outage causes email delays, 'Server busy' errors
Microsoft is working to resolve an ongoing Exchange Online outage that is delaying email sent to and received from external domains.
Google warns of new Chrome zero-day flaw exploited in attacks
Google has updated the Chrome browser to address an actively exploited high-severity zero-day flaw in the V8 engine and 11 other vulnerabilities.
French hospital fined €500,000 after breach exposes data of 727,000
France's data protection authority (CNIL) has fined Hôpital privé de la Loire €500,000 ($580,000) for failing to adequately protect patients' and their relatives' data.
Coder's registry infrastructure compromised to push malicious modules
Attackers compromised Coder's Cloudflare infrastructure and added unauthorized registry servers that delivered malicious Terraform modules containing credential-stealing code.
HPE patches critical ArubaOS-CX remote code execution flaw
Hewlett Packard Enterprise (HPE) has patched a critical vulnerability in the ArubaOS-CX network operating system that could lead to remote code execution.
Microsoft: KB5120998 mouse reset bug affects only non-English PCs
Microsoft says a known issue that reverts mouse settings after installing the KB5120998 August 2026 preview update affects only non-English Windows 11 systems.
DEF CON SG1 - CSIT Village - Ernest Ang - From Chrome Renderer, To Mouse To System
DEF CON SG1 - CSIT Village - James Tan - Uncovering Hidden Threats: CSIT Qpproach
DEF CON SG1 - CSIT Village - Liu Wen Kai, Martin Koh - Your Next Forensic Analyst is AI Agents
DEF CON SG1 - CSIT Village - Anton Chua - Cyber Physical: The Soft Underbelly?
DEF CON SG1 - CSIT Village - Loke Yan Hao -Hack Smarter: Unleashing AI in Bug Bounty Pen Testing
DEF CON SG1 - CSIT Village - Chua Meng Han - From CTF To CVE 202552691 Lessons Hidden In Plain Sight
DEF CON SG1 - Theodore Lee - Ashes To Analysis: Deconstructing Malware With Aether
DEF CON SG1 - CSIT Village - Poh Cai Min & Shawn Pang - Kînig Bridging Webapi Fuzzing With A Graph
DEF CON SG1 - CSIT Village - Kang Hao - Android Security Javascript Bridge Is Falling Down
DEF CON SG1 - CSIT Village - Daryl Lim, Zhi Kai - Rolling Api Tokens A Thought Experiment
DEF CON SG1 - CSIT Village - Jun Rong And Javier Koh - Cve 2025 52692 Rogue Request Roots Router
DEF CON SG 1 - CSIT Village - Kan Onn Kit - Struct Reconstruction In Aether
DEF CON SG1 - CSIT Village - Eugene Lim - Mic Drop: Hacking into Enterprise Audiovisual Hardware
DEF CON SG1 - CSIT Village - Daniel Siok - Balancing Security&Usability In AirGapped Implementations
DEF CON SG1 - CSIT Village - Lim Jing Qiang - Registry Stored Payloads For Usb Rubber Duckies
Why the FBI Wanted This Hacking Tool
Age Verification: The Privacy Risk You Need to Know
How Hackers Weaponize Your AI Agents
3 New Ekahau Plans Revealed
Your Compiler Can Make Secure Code Vulnerable
AI companies hacking now?
Google Researchers Hacked the Pixel Phone using Audio Messages
They want access to your confidential files
3 Secret Tools Used by OSINT Experts
This Free Tool Decodes Game Boy ROM From a Photograph
2 Electrodes Made My Balance FAIL
This Pocket Tool Diagnoses Wi-Fi in 45 Seconds
NodeZero Only Shows What It Exploits
Say Goodbye To Patch Tuesdays
Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication
Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner
Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code
Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers' Data It Said Was Deleted
Thousands of OpenAI Agents Quietly Turned an Abandoned Wiki Into Their Coordination Channel
Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universities
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
PostgreSQL Fixes 12-Year-Old Logical Decoding Flaw Enabling Replication-Role Code Execution
New Ted Backdoor Hides Inside Victims' Own HAProxy Builds to Intercept Web Traffic
Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws
Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws
Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day
GPT-6 Astra Scores 100% on ExploitBench as OpenAI Blocks PoC Exploit Requests
ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories
Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root
BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory
Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data
US Becomes Top Target in RMM Phishing Campaign Spanning 46 Countries
Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Anthropic locks out Claude users after infostealers
Synology ActiveProtect Manager 2.0 improves AI-driven security
Synology ActiveProtect Manager 2.0 extends protection to Amazon EC2, Azure VM, Proxmox VE, Nutanix AHV, and Google Workspace.
Google patches actively exploited Chrome zero-day (CVE-2026-85046)
Google has patched 12 vulnerabilities affecting its popular Chrome browser, among them CVE-2026-85046, which has been exploited in the wild.
Microsoft Teams is about to make QR code phishing much harder
Microsoft is preparing a new Teams feature to help users stay safe from QR code phishing, with rollout set for October 2026.
September 2026 Patch Tuesday forecast: All we need is more time
Todd Schell from Ivanti gives his overview of August 2026 and forecast for September 2026 Patch Tuesday. Are you ready to get patching?
A five-part inventory for your AI agent credentials
Roy Katmor explains the review gap around AI agent credentials and what teams should inventory before an agent acts on its own.
Scammers have figured out the best time to text you
Scam texts peak at noon and surge on Fridays, Malwarebytes data shows, while MrBeast, Google, and Roblox rank among scammers’ top targets.
OpenAI is putting $1 billion behind Daybreak for defenders working without enterprise budgets
OpenAI Daybreak frontline defenders get $1B in subsidized access for water, grid and local government teams, with a six-month clock.
Most of the bugs Claude Mythos found have never been checked by a human
Anthropic produced 23,019 Claude Mythos vulnerability findings. Outside firms reviewed 1,900, and 13 of 27 severity ratings were too high.
New infosec products of the week: September 4, 2026
Here’s a look at the most interesting products from the past week, featuring releases from BugBase, F5 Networks, Ping Identity, and Superna.
Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
In Other News: Microsoft’s Cloud Patches, Hacked Dropbox Accounts, Guardio’s $1.1B Valuation
HPE Patches Critical RCE Vulnerabilities in AOS-CX
OpenAI Pledges $1 Billion to Bring Frontier AI to Critical Infrastructure Defenders
Sangoma Switchvox Vulnerabilities Exploited in the Wild
12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover
Catch Raises $5 Million for AI Executive Assistant With Guardrails
VMware Workstation and Fusion Updates Patch Critical Vulnerability
Google Patches 6th Chrome Zero-Day of 2026
Nvidia Is Buying AI Platform Hugging Face for $13 Billion
OpenAI Agents Hacked Another Website
ICE Wants to Know Who Bought a Certain Green Beanie From REI in the Last 2 Years
Nobody Is Saying Why OpenAI and Anthropic Had Outages Today
Prediction Market Betting Is Getting People Banned and Arrested
This Is Flock’s AI Search Tool for Cops
OpenAI Is About to Release Its First AI Model With ‘Critical’ Cyber Abilities
Using High-Energy Laser, US Shoots Down Drones Near Mexico Border
ATM Flaws Reveal Key Weaknesses in the Software Supply Chain
The Cybersecurity Apocalypse Is Coming in ‘Months,’ AI Giants Warn
Microsoft Teams Has Become a Haven for Scammers in China
How an Atlanta Suburb Ended Up Sharing Flock Data With More Than 2,000 Organizations
A Georgia Cop Used Flock to Track 2 Other Cops: His Ex and Her Friend
Founder and Creator of Black Hat | Jeff Moss
Black Hat Stories | Jeff Moss
Black Hat Asia 2026 | Mobile Track Spotlight
Black Hat Stories | Jeff Moss, Founder and Creator of Black Hat
Black Hat Asia 2026 | Revealing User Activity on macOS for Apple Silicon
Black Hat Asia 2026 | Model Files → Memory Corruption → RCE: The Triple-Stage AI Attack Chain
Black Hat Asia 2026 | Payload Compromised: Full Key Recovery in Rocket.Chat E2EE
Black Hat Asia 2026 | Exploiting BLE Re-Pairing with the BLERP Attacks
Black Hat Asia 2026 | Bad Vibes - Pwning Coding Agents 70 Times With The Same Bugs
Black Hat Asia 2026 | Large-Scale macOS PID-Domain Vulnerability Discovery with LLM Reasoning
Black Hat Asia 2026 | LLM-Empowered Differential Testing for the Ethereum Infrastructure
Black Hat Asia 2026 | Overkill: Hijacking a Wi-Fi 7 Chip for SYSTEM Privileges
Black Hat Asia 2026 | Mass Scale Hijacking of Shared Mobility and EV-Charging Fleets
Black Hat Asia 2026 | Graph-Aware LLM for Windows Logon with a Closed-Loop Guarded Detection Agent
Black Hat Asia 2026 | Social Media Manipulation Wargaming for Cyberliteracy and Research
OpenAI agents discussed ways to escape their sandbox on public wiki
Once popular for attacking AI, ASCII smuggling is embraced by spammers
Confused about which VPN is right, US senator asks the NSA for guidance
I rented a car, and within hours, my driver's license was for sale
Well-executed BGP hijattack uses hijacked IPs to infect real networks
Think twice before installing this device promising free movies
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
How to secure edge AI in customer-owned environments
As AI moves into customer-owned environments, organizations need new ways to verify the systems, software, and AI assets they trust before releasing sensitive data, credentials, a…
ASCII smuggling crosses over from AI prompt injection to phishing evasion
Invisible Unicode characters popularized for hiding instructions from AI models are now being used to obfuscate words before email filters parse them.
Impersonating IT support: how threat actors turn a remote session into enterprise-wide access
Microsoft Threat Intelligence observed a human-operated intrusion campaign that abuses Microsoft Teams external collaboration to impersonate IT support, gain remote access, and de…
Counterfeit installers to system compromise: Tracking a deceptive software download campaign
An active campaign is impersonating legitimate software vendors to deliver malware through look-alike download pages and regenerated installer archives. Microsoft Defender Experts…
Cybersecurity IR Workshop: The workshop you shouldn’t miss
Cyber resilience starts before a crisis. Gain practical insights from DART to strengthen readiness and response.
TerminalFix campaign deploys a reverse tunnel through multistage intrusion
Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with detections and hunting guidance.
What’s new in Microsoft Security: August 2026
This month’s updates provide new capabilities to help organizations gain insights into agent activity, expand security coverage across supported environments, and enhance security…
Serbia Allegedly Hits 14 Activists With Pegasus Spyware
Self-hosted Coder: check whether you pulled a registry module on Aug 31. no CVE, so nothing will flag it for you
Getting Agents to tell on themselves
From fake interview to signed ClickOnce: inside a three-payload Windows chain (Part 2)
The Validator Can Lie: SSRF Beyond URL Validation (GitLab, Mealie, Apache ShenYu, Thumbor)
From Patch to Exploit; Using Claude Code to reverse engineer an n-day in Papercut NG
r/netsec monthly discussion & tool thread
Off the Hook: Discovering and Observing Active Exploitation of Sangoma Switchvox CVE-2026-9586
Authentication bypass in EOL Proxmox VE 7 release
GeoNetwork - Pre-Auth RCE via Unauthenticated File Upload and Unsafe XSLT Processor (4 CVEs, 121 government deployments, all patched)
Don’t Let Abliteration Abliterate Your Bug Hunting: Discovering Verdict Bias in Uncensored Models
Privilege escalation from IIS AppPool to NT Authority/SYSTEM via AD CS RPC endpoint
Anatomy of a ServiceNow Red Team
UniBLEed: Unauthenticated Root RCE on Any Unitree G1 Humanoid Robot Within Bluetooth Range
A fake resume invoked China’s defence tech elite, then installed VShell
US, Britain to coordinate on scam center takedowns
UK account-hack losses surge as new reporting system exposes hidden cases
Russian data centers face new security requirements amid Ukraine's drone threats
G7 urges organizations to prepare for quantum cyber threats
US offers $10 million for info on Iranian allegedly behind cyberattacks on critical infrastructure
CVE-2026-50376 Windows Remote Desktop Client Information Disclosure Vulnerability
Chromium: CVE-2026-84359 Information leak in Skia
Chromium: CVE-2026-84358 Improper privilege management in Downloads
Chromium: CVE-2026-84357 Improper input validation in Omnibox
Chromium: CVE-2026-84356 UI misrepresentation in FullScreen
Chromium: CVE-2026-84355 Incorrect authorization in Navigation
Chromium: CVE-2026-84354 Incorrect authorization in FileSystem
Chromium: CVE-2026-84353 Use after free in Shared Tab Groups
Chromium: CVE-2026-84351 Buffer overflow in GPU
Chromium: CVE-2026-84350 Use after free in TabStrip
Chromium: CVE-2026-84349 Use after free in Browser
Chromium: CVE-2026-84348 Information leak in MediaCapture
Chromium: CVE-2026-84347 Use after free in WebRTC
Chromium: CVE-2026-84335 Incorrect authorization in TabStrip
Chromium: CVE-2026-84334 Incorrect authorization in Chromoting
Chromium: CVE-2026-84332 Incorrect authorization in SiteSettings
Chromium: CVE-2026-84331 Incorrect authorization in Actor
Chromium: CVE-2026-84329 Confused deputy in CredentialProvider
Chromium: CVE-2026-84328 Missing authorization in FileSystem
Chromium: CVE-2026-84327 Incorrect authorization in Autofill
Angry Birds: Toy Ghouls’ new toys
Kaspersky GERT experts have discovered new backdoors used by the Toy Ghouls group. One version of the backdoor uses the HiveMQ MQTT broker as its command-and-control server; the o…
Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set
Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.
ValleyRAT masquerading as adware
Threat actors are distributing the ValleyRAT backdoor disguised as adware. We analyze the infection chain, from the malicious installer to the final payload.
Recorded Future Announces Automated Signature Creation, Accelerating Vulnerability Prioritization
Recorded Future's Automated Signature Creation turns new vulnerabilities into detection signatures in under an hour, matching the pace of AI-driven exploits.
H1 2026 Malware Vulnerability Trends
Learn how adversaries abuse trusted tools, AI, and developer environments for cyberattacks. Get actionable insights on ransomware, mobile threats, and supply chain security.
The Agentic SOC – From AI Theater to Real Defense
Experts from Recorded Future and Accenture offer perspectives on navigating the path to becoming an agentic SOC. Find out how to plan moving beyond “AI theater” by prioritizing me…
Shift Browser is signed adware that fingerprints your endpoint before it drops payload
Heimdal SOC flagged Shift Browser adware across 50+ client environments. See how the signed installer fingerprints endpoints before dropping its payload, plus IOCs and MITRE mappi…
6 ThreatLocker alternatives that should make your shortlist
6 handpicked ThreatLocker alternatives. Some are direct ThreatLocker competitors, others let you manage clients’ environments differently.
Jail time for Maine child in 764 marks turning point in federal law enforcement
The FCC wants consumers to rate their telecom’s anti-robocall protections
Dogged Russia-based botnet dismantled after 23-year run
Pegasus, NoviSpy variant spyware found on devices of Serbian activists
Wyden seeks upgraded NSA security guidance on commercial VPN use
FBI raises alarm over deceptive phishing campaign targeting prominent people
Tina Peters, through attorney, backs off formal role in Shasta County elections
Whistleblower says USPS deploying new, ‘untested’ IT systems governing mail-in ballots
The Collective Cyber Defense letter wrote your next vendor questionnaire
McKesson copes with fallout from data theft extortion attack
‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
The AI Kill Switch Act is repeating the Clipper Chip’s mistakes
ATF confirms cyberattack hit system containing info on its investigation targets
Unit 42 warns AI has shifted balance of power from defenders to attackers
100-plus companies call for ‘global surge’ in AI-powered cyber defense
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Compromising 5.4% of Texas’ Battery Fleet Could Black Out the Grid
Dropbox Data Breach: 5,000 Accounts Compromised
The Most Immediate Threat to the Global Financial System Is AI Cyberattacks
Majority of Senior Cybersecurity Leaders Have Limited Trust in AI
McKesson Confirms Data Breach, Experts Weigh In
Could AI Elevate Women in Cybersecurity?
Security Leaders Share Advice for Insider Threat Awareness Day
Only 33% of AI Agents Provisioned With Least-Privilege Access
Bureau of Alcohol, Tobacco, Firearms and Explosives Discloses Cyber Incident
Hasbro Breach Exposes Employee Information
Security Leaders Weigh in on Recent PaperCut Vulnerabilities
Meta Pays $18B Settlement, Plans Platform Changes
Security Leaders Discuss OpenAI’s Call for Collaboration on Cyber Defense
Manchester Airports Breach Impacts 8.7M
Report Finds AI Security Fails to Match AI Usage
DOJ, NASA, Others Among Victims of Chinese State-Sponsored Hack
Cisco Secure Email Secure/Multipurpose Internet Mail Extensions Ciphertext Decryption Vulnerabilities
Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Extensions (S/MIME) decryption functionality of Cisco Secure Email could allow an unauthenticated, remote attacke…
Cisco IOS XR Software Security Hardening Release: September 2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review.…
Cisco Nexus 9000 Series Switches Silicon One Remote Code Execution Vulnerability
A vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute code with root privileges. This vuln…
Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Denial of Service Vulnerability
A vulnerability in Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 that are running Cisco Session Initiation Protocol (SIP) Software…
No matching sources found.