• Open

    The Nansh0u Campaign – Hackers Arsenal Grows Stronger
    In the beginning of April, three attacks detected in the Guardicore Global Sensor Network (GGSN) caught our attention. All three had source IP addresses originating in South-Africa and hosted by VolumeDrive ISP (see IoCs).
    PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers
    Guardicore Labs uncovers a Ransomware detection campaign targeting MySQL servers. Attackers use Double Extortion and publish data to pressure victims.
    Threats Making WAVs - Incident Response to a Cryptomining Attack
    Guardicore security researchers describe and uncover a full analysis of a cryptomining attack, which hid a cryptominer inside WAV files. The report includes the full attack vectors, from detection, infection, network propagation and malware analysis and recommendations for optimizing incident response processes in data centers.
    The Oracle of Delphi Will Steal Your Credentials
    Our deception technology is able to reroute attackers into honeypots, where they believe that they found their real target. The attacks brute forced passwords for RDP credentials to connect to the victim download and execute a previously undetected malware, which we named Trojan.sysscan.

  • Open

    How AWS IAM role manager rethinks the starting point for IAM roles
    When you build a new application or capability on Amazon Web Services (AWS), you want to focus on what you’re building. Getting a service running almost always begins with AWS Identity and Access Management (IAM). Many AWS services that act on your behalf need an IAM role, an identity the service assumes to access your […]  ( 118 min )
  • Open

    Here's the Manual for ICE's Electric Shock Gloves
    ICE plans to spends tens of millions of dollars on the gloves, which are supposed to incapacitate people. A manual 404 Media found says the gloves may even contribute to “sudden death.”
    Twitch is Mining Peoples' Streams to Train Amazon's AI
    Here's how to opt out of Twitch's new generative AI training setting.
    Podcast: Mark Zuckerberg’s 'Superintelligent' AI Future That No One Wants
    Zuckerberg's anti-social future; a company offering human writing that is actually just AI; and the big switch from Flock to Axon.
    Researchers Show How Meta's 'Pervert Glasses' Are Used to Harass Women
    A new study shows how pickup artist influencers use smart glasses to create content, and the connection between covert recording and harm.
    AI Generated 3D Models Flood Market, But Almost No One Is Buying Them
    The number of AI generated uploads to CGTrader would suggest AI is taking over the platform, but buyers are refusing to pay for AI generated models.
    The Government is Monitoring Anti-Flock TikTok and Instagram Accounts
    Documents from law enforcement spy centers show the government is warning cops of "extensive and ongoing chatter on social media" about methods to "physically destroy Flock LPR cameras."
    This Tool Unmasks the Shadowy World of Ads that Track Your Location
    It's usually very difficult to investigate the advertising industry. A new tool called DecryptAds aims to make it much easier with a massive dataset anyone can query.
  • Open

    “Zoomsday” flaws could let one Zoom participant attack another
    Update Zoom now to protect against critical vulnerabilities that could allow an attacker in the same meeting to run malicious code on your device.  ( 22 min )
    Patch Tuesday: Update now to fix 421 flaws, including three zero-days
    Microsoft's August Patch Tuesday fixes 421 vulnerabilities, including three zero-days, 62 critical flaws, and dozens of Office remote code execution bugs.  ( 22 min )
  • Open

    Black Hat Stories | More Than a Conference
    No content preview
  • Open

    I Found an MFA-Bypassing Phishing Attack on Microsoft 365
    No content preview
  • Open

    Infosec News Nuggets — August 12, 2026
    Microsoft Plugs Nearly 400 Security Holes August’s Patch Tuesday saw Microsoft fix 398 vulnerabilities across Windows and supported software, with 42 rated critical. The lone actively exploited zero-day, a privilege escalation flaw in the AFD.sys WinSock driver, gives attackers a path to SYSTEM control after gaining an initial low-privilege foothold. Microsoft has attributed the swelling […] The post Infosec News Nuggets — August 12, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 10 min )

  • Open

    Three Decades of Influence | Why Black Hat Matters
    No content preview
    Black Hat Stories | Gaurav Keerthi, CEO and founder of StrongKeep
    No content preview
  • Open

    Landing Zone Accelerator Independent Assessment Report for C5:2020 now available on AWS Artifact
    Organizations operating in Germany and across Europe increasingly need to demonstrate cloud security compliance under the Cloud Computing Compliance Criteria Catalogue (C5:2020), published by Germany’s Federal Office for Information Security (BSI). Last year, we introduced Landing Zone Accelerator on AWS support for digital sovereignty and today we’re announcing the availability of a new independent assessment […]  ( 115 min )
    Summer 2026 SOC 1 report is now available with 185 services in scope
    Amazon Web Services (AWS) is pleased to announce that the Summer 2026 System and Organization Controls (SOC) 1 report is now available. The reports cover 185 services over the 12-month period from July 1, 2025–June 30, 2026, giving customers a full year of assurance. These reports demonstrate our continuous commitment to adhering to the heightened […]  ( 115 min )
    AWS successfully completed its 2025-26 NHS DSPT assessment
    Amazon Web Services (AWS) is pleased to announce its successful completion of the 2025-26 NHS Data Security and Protection Toolkit (NHS DSPT) assessment audit and achieving a status of Standards Exceeded. The NHS DSPT is an assessment that allows organizations to measure their performance against the National Data Guardian’s 10 data security standards. All organizations […]  ( 113 min )
  • Open

    Fake CCleaner installs GhostDesk Chrome spyware
    A convincing fake CCleaner website delivers a multi-stage malware attack that installs a spyware extension inside Chrome.  ( 24 min )
    Valve warns Steam hardware buyers: Expect fake delivery scams
    The warning affects recent buyers of Steam hardware, including the hugely popular Steam Deck.  ( 22 min )
    Social media platforms crack down on drone factory recruiting game
    Researchers found that games and major US social media platforms were used to lure young people into jobs in Russia's drone industry.  ( 24 min )
    Sexual predators targeting online accounts for intimate images, FBI warns
    The FBI is warning that criminals are breaking into social media to steal and distribute non-consensual intimate images and videos.  ( 22 min )
    Love/hate relationship: The AI affair. Young people love AI, but it’s breaking their trust
    The same technology making our lives easier is also making it harder. How are young people navigating this new world?  ( 27 min )
    Watch out for fake TikTok Shops trying to steal your money
    TikTok Shop is huge, so it's no wonder that impersonation shops have popped up. Here's how to stay safe.  ( 25 min )
    Fake popular sites offer a free app, instead take over PCs
    Fake branded download pages are tricking Windows users into installing legitimate remote-access software that's being abused by attackers.  ( 25 min )
  • Open

    The August 2026 Security Update Review
    I’ve successfully survived Hacker Summer Camp, and I have returned with a new outlook on patch density. When even Linus Torvalds says that huge updates are the “new normal”, it’s time to readjust what we consider a true bug apocalypse. This month’s release is thankfully smaller than last months, but still huge by historical standards. Take a break from your regularly scheduled activities as we take a look at the latest security patches from Adobe and Microsoft. If you’d rather watch the full video recap covering the entire release, you can check it out here: Adobe Patches for August 2026 For the first part of the August release, Adobe released five bulletins addressing 51 unique CVEs in Adobe ColdFusion, Commerce, Lightroom Classic, Content Credentials SDK, and Adobe Campaign Classic. Here…
  • Open

    No Bosses: Ancient Engineering Marvel Was Built Without Rulers, Study Suggests
    A 2,000-year-old canal system in Colombia visible from space was long assumed to be built at the direction of powerful rulers. New evidence is turning that assumption on its head.
    Company Offering ‘100% Human-Written, Never AI’ Medical Research Is Entirely AI
    Research Gold's team of human methodologists are either AI generated or using the identity of real people without their permission
  • Open

    Can AI Build Hacker Traps That Actually Work?
    No content preview
  • Open

    Infosec News Nuggets — August 11, 2026
    CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild A deserialization flaw in on-premise JetBrains TeamCity servers is being actively exploited, letting unauthenticated attackers bypass authentication via the agent polling protocol and run arbitrary commands with the privileges of the TeamCity server process. Successful attacks can expose stored credentials and configurations and […] The post Infosec News Nuggets — August 11, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 10 min )
  • Open

    Critical SQL Injection in Metabase via Password Reset: CVE-2026-72898
    Immediate action is advised for all organizations running self-hosted Metabase. A critical, unauthenticated SQL injection vulnerability has been disclosed in Metabase's password reset functionality, and Metabase has confirmed active exploitation in the wild.

  • Open

    ICE to Pay LexisNexis Millions for Data to Feed to Palantir
    LexisNexis sells a massive amount of data to law enforcement, including ICE. New records indicate ICE wants to feed that data into a Palantir system.
    The Mayor Who Said 'No' When Flock Came to Town
    “I guess all crime could be eliminated if you put cameras everywhere, surveillance everywhere, and had drones patrolling the skies [...] but what life are we living then?”
    Mark Zuckerberg Posts Deranged 6,500-Word Essay About Giving Everyone AI Superintelligence
    "The future is for everyone," Zuckerberg says, describing future that is primarily good for Meta.
    The Roboguard Revolution is Short-Circuiting
    Knightscope and other robotics companies are rethinking automated security following canceled contracts. One pivot? Human guards.
  • Open

    Bypassing Android Hardware Attestation from the Analyst's Chair
    Hardware key attestation lets an Android app prove to its backend that a key lives in secure hardware on a locked, verified device. It is also the wall that stops a security analyst working on a rooted phone. This article opens the mechanism from the analyst's chair, from the certificate chain and the attestation extension down to the root of trust, then shows a simple bypass that never touches the secure hardware. We relay the attestation to a clean device and splice a genuine chain back into the target app with a Frida hook. A companion repository ships the validation backend, the demo apps and the instrumentation, so the whole setup can be run and inspected rather than taken on faith.
  • Open

    AWS completes the 2026 Police-Assured Secure Facilities (PASF) audit in Europe (London)
    We’re excited to announce that our Europe (London) AWS Region has renewed its accreditation for United Kingdom (UK) Police-Assured Secure Facilities (PASF) for Official-Sensitive data. Since 2017, the Amazon Web Services (AWS) Europe (London) Region has been accredited under the PASF program. This demonstrates our continuous commitment to adhere to the heightened expectations of customers […]  ( 113 min )
    2026 AWS CyberVadis report now available for due diligence on third-party suppliers
    We’re excited to announce that Amazon Web Services (AWS) has completed theCyberVadis assessment of its security posture with the highest score (Mature) in all assessed areas. This demonstrates our continued commitment to meet the heightened expectations for cloud service providers. Customers can now use the 2026 AWS CyberVadis report and scorecard to reduce their supplier […]  ( 114 min )
  • Open

    How to fake a data trail (and maybe lower prices) (Lock and Code S07E16)
    This week on the Lock and Code podcast, we speak with Chris Parr about his inventive and all-too-funny stress-test of surveillance pricing.  ( 25 min )
    New turnkey kit makes it easy for anyone to become a scammer
    We discovered a kit that gave us an insight into how modern online scams are built, promoted, and potentially used to target everyday consumers.  ( 25 min )
    Edge is dropping older extensions, affecting popular privacy tools
    Microsoft is retiring Manifest V2, the technology behind older Edge extensions. Some popular privacy tools will lose features or stop working.  ( 22 min )
    A week in security (August 3 – August 9)
    A list of topics we covered in the week of August 3 to August 9 of 2026  ( 21 min )
  • Open

    Understanding the FATF’s DeFi Report: A Functional Approach to Decentralized Finance Regulation
    Summary The FATF just released its first DeFi-specific report: Acknowledging DeFi’s operational benefits, the global AML/CFT standard-setter explains how jurisdictions,… The post Understanding the FATF’s DeFi Report: A Functional Approach to Decentralized Finance Regulation appeared first on Chainalysis.  ( 17 min )
  • Open

    Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise
    Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines AI, threat intelligence, and human expertise. The post Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise  appeared first on Microsoft Security Blog.  ( 20 min )
    DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure
    Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastructure to support victim communications, negotiations, and data leak operations alongside double extortion tactics used to pressure victims. The post DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure appeared first on Microsoft Security Blog.  ( 34 min )
  • Open

    Infosec News Nuggets — August 10, 2026
    18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers A use-after-free bug tracked as CVE-2026-64564 and nicknamed SCTPhantom has been lurking in Linux’s SCTP networking code since 2008 and can be chained into full root access on a host; researchers say they used it to escape a container and reach the […] The post Infosec News Nuggets — August 10, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 10 min )
  • Open

    Phantom 5: File Authority — Escalating from Group Membership to Root (A Linux Privilege Escalation…
    No content preview
    The Bug That Almost Wasn’t: How a “Dead End” Led to 500+ Leaked Customer Records
    A story about persistence, reading between the lines, and why you should always check custom post types Continue reading on InfoSec Write-ups »
    Hacker Holidays 2026: Day 4 Walkthrough (Packed Light)
    Someone was smuggling data out of the resort network one cookie at a time. We used Wireshark, Base64 and a single XOR key to decode the… Continue reading on InfoSec Write-ups »
    Bypassing Enterprise SSO via a Forgotten Source Map: A Bug Bounty Story
    When you look at a bug bounty scope with 15+ root domains, it’s easy to get overwhelmed. Most hunters will fire off their automated… Continue reading on InfoSec Write-ups »
    TryHackMe: Packed Light (Hacker Holidays Day 04) Walkthrough
    No content preview
    BYUCTF RSA Dreams Cybersecurity Writeup 2026
    No content preview
    They Gave Me $1,000 After I Found Their Entire Student Database Exposed!
    No content preview
    Hack Smarter - Silent Corridor (Blue Team)
    No content preview
    TryHackMe: “Complimentary” Room Walkthrough ( Hacker’s Holiday Challenge )
    No content preview
    Hacker Holidays 2026: Day 3 Walkthrough (Complimentary)
    A wellness app was quietly handing out AWS credentials to every visitor. We used them to dump the entire database. Here is how. Continue reading on InfoSec Write-ups »
  • Open

    Akamai Cloud Keeps Strengthening the Foundation (Updated August 2026)
    No content preview

  • Open

    Alcon - 218,395 breached accounts
    In August 2026, the Alcon eye care company was named in a ShinyHunters "pay or leak" extortion campaign. The group subsequently published data allegedly sourced from Alcon containing 218k unique email addresses along with other largely corporate B2B contact fields, including name, phone number and physical address.

  • Open

    📖 [The CloudSecList] Issue 350
    📖 [The CloudSecList] Issue 350 was originally published by Marco Lancini at CloudSecList on August 09, 2026.
  • Open

    Brinks Home - 732,162 breached accounts
    In July 2026, Brinks Home was targeted in a ShinyHunters "pay or leak" extortion campaign. The group subsequently published data they alleged was taken from the company, including 732k unique email addresses and other personal information relating to leads, customers and Brinks staff such as name, phone numbers and physical addresses. The data also included purchases from Brinks along with partial credit card data (last 4 digits, card type and expiry). In Brinks' disclosure notice, they acknowledged the incident and risk of disclosure, and advised that they would notify impacted parties "consistent with applicable law".
  • Open

    Crab Odyssey: Crustacean Wandered the Seas in a Bottle for Months, Scientists Find
    Scientists discovered a crab that had spent months at sea stuck in a bottle, subsisting on algae and fish that wandered into its plastic lair. The lonely mariner offers a warning about the impacts of human pollution on wildlife worldwide.

  • Open

    When Queues Become Vulnerabilities: Reverse Engineering GCD, XPC Races, and macOS Detection
    No content preview
    Black Hat USA Briefings: Kinetic Prompt Injection: Agent Compromise With a Physical Blast Radius
    No content preview
  • Open

    AI chat bots are sliding into League of Legends friend requests
    Chat bots are sending friend requests in Riot immediately after ending your game. What are the scammers up to now?  ( 26 min )
    Meta ordered to pay $942 million over harm to children
    A new court ruling not only fined Meta to the extent of $942 million but also ordered it to improve its age assurance tools.  ( 23 min )
  • Open

    A decade of enterprise identity in the cloud with AWS Managed Microsoft AD
    Ten years ago, we launched AWS Directory Service for Microsoft Active Directory, a fully managed Microsoft Active Directory in the AWS Cloud. In that original announcement, Jeff Barr described a straightforward promise: “You will spend less time administering and more time working on your applications and your business.” A decade later, AWS Managed Microsoft AD […]  ( 120 min )
    Securing your Amazon S3 buckets: Identifying and remediating over-permissioned access
    Misconfigured Amazon Simple Storage Service (Amazon S3) buckets can expose your data to unauthorized access. Without proactive review, S3 bucket policies or Access Control Lists (ACLs) configured with broad access may go unnoticed in your environment. In this post, you learn how to identify and fix over-permissioned S3 buckets across your AWS environment, along with […]  ( 126 min )
  • Open

    Learn Fault Injection at DEF CON 2026
    No content preview
  • Open

    Behind the Blog: Rare Books and Baseball Brain
    This week, we discuss Flock blogging, "rare" books, and Jesus Christ.
  • Open

    Inside the Fake Copyright Racket Silencing News Outlets
    Journalists and civil society are being silenced by accusations of copyright infringement, says Alberto Fittarelli in a report by the OCCRP. The post Inside the Fake Copyright Racket Silencing News Outlets appeared first on The Citizen Lab.
  • Open

    Bring Your Own EDR: How to Turn a Commercial EDR into a Trojan Horse
    No content preview
  • Open

    Exact Sciences - 10,869,543 breached accounts
    In July 2026, Exact Sciences (now owned by Abbott Laboratories) was the target of a ShinyHunters "pay or leak" extortion campaign. The group claimed to have obtained data from the company's cancer diagnostics business, which they later published publicly. The breach contained 10.9M unique email addresses belonging to customers, patients and healthcare providers, along with names, addresses, phone numbers and health records. Abbott subsequently published a public notice advising that "some of the impacted files contain personal information and/or personal health information" and that more specific information would follow once their review of the incident was complete. For context, Exact Sciences is the maker of the Cologuard at-home colorectal cancer screening test.

  • Open

    Automate certificates with ACME support in AWS Certificate Manager
    Customers tell us that managing TLS certificates at scale is one of their biggest operational concerns. The Certification Authority Browser Forum (CA/Browser Forum) has mandated a phased reduction in maximum certificate validity for public certificates. By March 2027, the maximum validity drops to 100 days. By March 2029, it lasts for 47 days. For an […]  ( 120 min )
    Caching KMS data keys in multi-thread environments: Per-tenant encryption for event-driven systems at scale
    This post assumes familiarity with envelope encryption and the AWS Encryption SDK. When your encryption system generates millions of duplicate API calls per hour, costs spiral and performance degrades. That’s exactly the challenge NICE Actimize faced while operating their global-scale, event-driven financial crime detection platform on Amazon Web Services (AWS). NICE Actimize, a leading provider […]  ( 121 min )
  • Open

    CSS:the bomb inside your inbox
    Gareth Heyes - gareth.heyes@portswigger.net - @garethheyes It's quite common for webmail clients to render untrusted CSS in a trusted UI. They attempt to make this safe using CSS sanitization. In this
  • Open

    Black Hat USA Opening Session: Disruption, Defense and Operational Readiness
    No content preview
    Black Hat USA 2026 Opening Session: Cyber Power in the Age of AI
    No content preview
    Black Hat USA 2026 Keynote: Vulnerability Research in the Agentic Age
    No content preview
    Black Hat USA 2026 Keynote: The End of Rare Defending When Offense Is Cheap
    No content preview
    Black Hat USA 2026: The 'Breaking' News: The OpenAI–Hugging Face Incident
    No content preview
  • Open

    Accelerating Enterprise AI from Proof of Concept to Production
    Discover how Akamai AI Professional Services helps enterprises bridge the gap from proof of concept to secure, scalable, and manageable production AI.
    With Val Kilmer’s AI Twin, Is Gen AI Forcing Hollywood to the Edge?
    No content preview
  • Open

    Apple WebKit vulnerabilities reveal your IP address, despite Private Relay
    Researchers have found three methods to bypass Apple's Private Relay which is supposed to shield users' IP addresses and location.  ( 23 min )
    Scammers target OnlyFans users with deepfakes
    Criminals are impersonating OnlyFans creators using AI tools in order to scam followers.  ( 23 min )
    Amazon and Apple impersonated in “$149.99 unauthorized charge” scam
    Different logos, different color schemes, same scam.  ( 23 min )
    Anthropic’s Mythos AI used social engineering to target real people
    Testers found that Anthropic's AI agent Mythos attempted to social engineer Github developers into accepting malicious code.  ( 22 min )
  • Open

    Penlink Plugs Into Trusted Blockchain Data With Chainalysis
    Penlink, a leader in AI-powered digital intelligence, and Chainalysis, the blockchain data platform, this week announced a strategic partnership and… The post Penlink Plugs Into Trusted Blockchain Data With Chainalysis appeared first on Chainalysis.  ( 10 min )
    Estimated $30 Million Stolen in Violent Crypto Attacks in 2026 as France Records Emerges as Hotspot
    Summary Annual value stolen in violent attacks peaked at $58 million in 2025, the highest on record, with 2026 already… The post Estimated $30 Million Stolen in Violent Crypto Attacks in 2026 as France Records Emerges as Hotspot appeared first on Chainalysis.  ( 17 min )
  • Open

    InfoSec News Nuggets – 08/06/2026
    Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability CISA added CVE-2026-63077, a critical unauthenticated remote code execution flaw in JetBrains TeamCity On-Premises, to its Known Exploited Vulnerabilities catalog after confirming active exploitation, giving federal agencies just three days to patch under Binding Operational Directive 26-04. The deserialization vulnerability, rated CVSS 9.8, lets an attacker with mere […] The post InfoSec News Nuggets – 08/06/2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 10 min )

  • Open

    Inter-Con Security - 276,114 breached accounts
    In June 2026, Inter-Con Security was targeted in a ShinyHunters “pay or leak” extortion campaign. The group subsequently published data it alleged was taken from the company, including 276k unique email addresses along with names, physical addresses, job titles and phone numbers. The data encompassed a combination of contacts, internal users and leads.
  • Open

    CRLF-Powered Desync Attacks: Beheading HTTP Streams
    Abstract In this paper we’ll show that HTTP Header Injection is severely underestimated. Forget open redirects or Cross-Site Scripting and instead, embrace the catastrophic potential of the CRLF-Power
    Can AI do novel security research? Meet the HTTP Terminator
    Abstract We all know AI can find bugs. After a decade of research, I asked a harder question: can an autonomous system invent new attack techniques, and use them to hack live websites at scale? Buildi
  • Open

    AWS partners with Anthropic and OpenAI to bring AWS Continuum into developer workflows
    Customers have access to models that are continuously getting better with each new generation bringing larger context windows, stronger reasoning, and lower token costs. Getting the strongest AI-powered security will come from tools that combine the most relevant models with deep knowledge of a customer’s specific environment. AWS Continuum for code vulnerabilities (Preview) is built […]  ( 115 min )
    From 2 weeks to 2 minutes: Amazon Cognito launches Provisioned limits for self-service rate limit management
    Imagine preparing for your biggest sales event of the year, and you want to ensure your customer identity management service can handle the elevated traffic for carrying out application activities. For security teams, business leaders, and technologists managing identity infrastructure at scale, this scenario has been all too familiar. Whether you’re a CISO evaluating security […]  ( 118 min )
  • Open

    ​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)
    Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report. The post ​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP) appeared first on Microsoft Security Blog.  ( 21 min )
    From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide
    A macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change makes malicious infrastructure harder to detect while giving defenders new hunting opportunities. The post From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide appeared first on Microsoft Security Blog.  ( 28 min )
  • Open

    Chainalysis Supports Cronos with Automatic Token Support
    Chainalysis is excited to announce support for Cronos, an EVM-compatible Layer 1 blockchain. Cronos Network is a purpose-built settlement layer… The post Chainalysis Supports Cronos with Automatic Token Support appeared first on Chainalysis.  ( 9 min )
  • Open

    Immigration Policy: The Backdoor to Transnational Repression
    Citizen Lab researchers write that restrictive immigration policies are incompatible with attempts to counter transnational repression. The post Immigration Policy: The Backdoor to Transnational Repression appeared first on The Citizen Lab.
  • Open

    Shadow AI, Rogue Agents, and Data Leaks: A Special Report on Navigating AI Risk
    Discover top enterprise AI risks — from shadow AI to rogue agents and data leaks — plus practical CISO strategies in the new Akamai SOTI special report.
  • Open

    Python Software Foundation - Python 3.11.0a3 to 3.15.0b2
    Bishop Fox discovered a privilege escalation vulnerability in Python for Windows affecting versions 3.11.0a3 through 3.15.0b2. A low-privilege user can plant malicious files and wait for a privileged account to run the interpreter, inheriting that account's elevated access. Patches are available.
  • Open

    Infosec News Nuggets — August 5, 2026
    Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself  The UK’s AI Security Institute disclosed that an agent running Anthropic’s Claude Mythos 5 spent 34 hours during a routine cyber evaluation trying to get a malware dropper merged into a real, public open-source project, and when a bystander publicly flagged […] The post Infosec News Nuggets — August 5, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 11 min )
  • Open

    Google’s synchronized passkeys can be stolen in ‘Pass‑ta‑key’ attacks
    Over time, passkeys are supposed to replace passwords. But what happens when malware steals the master key?  ( 25 min )

  • Open

    ChainDrop supply chain compromise: Anatomy of a self-propagating worm
    A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates. This analysis details the attack chain, affected environments, and practical guidance for detection, hunting, and remediation. The post ChainDrop supply chain compromise: Anatomy of a self-propagating worm appeared first on Microsoft Security Blog.  ( 26 min )
    Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps
    Microsoft expands its Zero Trust for AI strategy to enhance security for AI and DevSecOps environments with new tools and guidance. The post Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps appeared first on Microsoft Security Blog.  ( 23 min )
    128 Seconds to disruption: Microsoft Defender stops ransomware at QNET
    Microsoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist or spread. The post 128 Seconds to disruption: Microsoft Defender stops ransomware at QNET  appeared first on Microsoft Security Blog.  ( 23 min )
  • Open

    A Roadmap for Confronting the Chilling Effects of Censorship, Surveillance and New Technology
    Senior research fellow Jon Penney spoke with Tech Policy Press about how rising surveillance is causing people to self-censor.  The post A Roadmap for Confronting the Chilling Effects of Censorship, Surveillance and New Technology appeared first on The Citizen Lab.
  • Open

    Spring 2026 PCI DSS and PCI 3DS compliance packages for AWS now available
    Amazon Web Services (AWS) is pleased to announce the successful completion of our Payment Card Industry (PCI) Data Security Standard (DSS) and Three Domain Secure (3DS) certifications. As part of this renewal, we have expanded the scope to include three additional AWS services and one additional AWS Region: Newly added AWS services: Amazon Bedrock AgentCore […]  ( 114 min )
  • Open

    OMB M-26-14 Compliance: Adaptive Edge Logging for Federal CISOs
    No content preview

  • Open

    Cyber Deception Everywhere
    No content preview
  • Open

    Wild West Hackin’ Fest @ Deadwood 2026 - In-Person/Virtual Conference - Meet the Community!
    No content preview

  • Open

    📖 [The CloudSecList] Issue 349
    📖 [The CloudSecList] Issue 349 was originally published by Marco Lancini at CloudSecList on August 02, 2026.
  • Open

    JHT Course Launch! Home Labs with Proxmox
    No content preview
  • Open

    SplitVPN - 865,336 breached accounts
    In July 2026, the Russian VPN service SplitVPN (previously known as NotVPN) suffered a data breach. The incident exposed millions of customer records, including 865k unique email addresses. Other impacted data included IP addresses, the user's country, and partial payment card data (first 6 and last 4 digits plus expiry date).

  • Open

    CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft
    Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals of hospitality-related organizations such as hotels since May 2026 in order to deliver malware to travelers and steal credentials in an operation we call CaptiveCrunch. The post CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft appeared first on Microsoft Security Blog.  ( 34 min )
  • Open

    Why Black Hat Matters | Black Hat Stories
    No content preview
    Black Hat Stories | Daniel Cuthbert, Black Hat Training Review Board Member
    No content preview
  • Open

    HIPAA Security Rule on AWS – Technical Safeguards Implementation and Readiness Guidance
    Today, we’re releasing the HIPAA Security Rule on AWS: Technical Safeguards Implementation and Readiness Guidance. This helps covered entities and business associates configure, implement, and evidence compliance with the HIPAA Security Rule Technical Safeguard requirements (45 CFR §164.312) when building healthcare workloads on AWS. The HIPAA Security Rule’s Technical Safeguards (§164.312) define five standards and […]  ( 115 min )
  • Open

    Wild West Hackin’ Fest @ Deadwood 2026 - In-Person/Virtual Conference - Our Keynote Speakers
    No content preview
    Wild West Hackin’ Fest @ Deadwood 2026 - In-Person/Virtual Conference - Our Keynote Speakers
    No content preview
  • Open

    Kate Robertson on the Risks That Lie Behind Canada’s Unexpected Signing of the UN Cybercrime Convention
    Earlier this month, the Canadian government announced that it had signed the United Nations Convention against Cybercrime.  Speaking with Michael Geist of Law Bytes, senior research associate Kate Robertson argues that the convention is a cross-border surveillance and electronic evidence sharing agreement that Canada originally opposed, which carries significant adverse implications around the world for […] The post Kate Robertson on the Risks That Lie Behind Canada’s Unexpected Signing of the UN Cybercrime Convention appeared first on The Citizen Lab.
  • Open

    Operationalizing Offensive AI: An Open Framework for Modern Security
    No content preview
  • Open

    What Security Leaders Think About Frontier AI Models: Firsthand of Mythos
    Frontier AI models are raising the ceiling for skilled attackers and lowering the bar for everyone else. Leaders from Vista Equity, Cisco, and Bishop Fox share what that shift looks like in practice, how the existing security stack needs to change, and how long defenders will stay at a disadvantage.
  • Open

    Infosec News Nuggets — July 31, 2026
    Semiconductor Chip Titan Analog Devices Reports Data Breach Analog Devices told federal regulators that intruders gained unauthorized access to its systems in June and exfiltrated an unknown number of files, with outside cybersecurity experts and law enforcement now involved in the response. The Massachusetts-based chip maker, which posted more than $11 billion in revenue last […] The post Infosec News Nuggets — July 31, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 10 min )
  • Open

    GTA Malware Trap
    No content preview

  • Open

    Balancing speed and safety: A control framework for AI coding agents
    AI coding agents are part of the developer toolchain. Tools like Kiro and Claude Code generate features, tests, and code refactors from natural-language prompts. A single agent can open dozens of pull requests (PRs) across your repositories in an afternoon. That productivity comes with a trade-off: agents optimize for task completion at machine speed with […]  ( 125 min )
    Extend Amazon Inspector SBOM Generator with Plugins
    Amazon Inspector is an automated vulnerability management service that continually scans Amazon Web Services (AWS) workloads for software vulnerabilities. The vulnerability management capabilities of Amazon Inspector are powered by an asset inventory engine known as the Amazon Inspector SBOM Generator (inspector-sbomgen), a standalone command-line tool that produces a software bill of materials (SBOM) from container […]  ( 121 min )
  • Open

    Cyber War Forum: The Critical Questions No One Has Real Answers To
    No content preview
  • Open

    The 2026 World Cup On-Chain: $20 Billion in Crypto Flows, From Bets to Tickets
    Summary The 2026 World Cup generated $20 billion in prediction market volume and $24 million in digital collectible trades, with… The post The 2026 World Cup On-Chain: $20 Billion in Crypto Flows, From Bets to Tickets appeared first on Chainalysis.  ( 16 min )
  • Open

    ​​​​What’s new in Microsoft Security: July 2026
    This month’s updates help security and IT teams secure their AI environments, use AI to defend, and strengthen the foundations that AI-powered operations depend on. The post ​​​​What’s new in Microsoft Security: July 2026 appeared first on Microsoft Security Blog.  ( 22 min )
  • Open

    API Security for Government Services: Protecting Citizen-Facing Applications
    No content preview
    Thinking Outside the Black Box: Defenders Need Open Source AI
    Discover why open source AI is vital for cybersecurity as we join the Open Secure AI Alliance to build an open, distributed defense stack for the AI era.
    CVE-2026-66066: Defending Against the “KindaRails2Shell” Pre-Auth RCE
    No content preview
  • Open

    The July 2026 Apple Security Update Review
    Welcome to our monthly look at Apple security patches. This release shows that Apple is not immune to the bug apocalypse that is impacting other vendors. Last month, they released 37 unique CVEs compare to this month’s 210. Quite a jump. For July 2026, Apple released 210 unique CVEs across iOS/iPadOS 26.6, macOS Tahoe 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, tvOS 26.6, watchOS 26.6, visionOS 26.6, and Safari 26.6. Since Apple doesn’t provide CVSS scores or other severity information, we’re left to speculate on which of these bugs is the most severe. However, there are a couple that stand out. ·      CVE-2026-43818 (ImageIO) – This bug could allow the “Processing [of] a maliciously crafted image may lead to arbitrary code execution." ImageIO is the classic zero-/one-click remote sur…
  • Open

    Infosec News Nuggets — July 30, 2026
    Coordinated Cyberattack Targets 30+ Minnesota Water Systems A coordinated intrusion hit operational technology at more than 30 community water and wastewater utilities across Minnesota on July 26 and 27, disrupting automated control functions and briefly knocking one city’s treatment plant offline while state and federal investigators, including the FBI, work to identify the attackers and […] The post Infosec News Nuggets — July 30, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 9 min )

  • Open

    Amazon identifies North Korean hacker group behind open-source supply chain attacks
    Amazon is sharing new findings about how a threat actor linked to the Democratic People’s Republic of Korea (DPRK) is targeting open source software libraries, the shared building blocks that companies around the world use to develop applications. Amazon Threat Intelligence has linked several recent compromises of popular Node Package Manager (NPM) libraries to the […]  ( 121 min )
    Secure your npm and pip package updates in Amazon Linux
    If you use and install packages from npm or PyPI, the first hours after a package is published are the riskiest because scanners can’t analyze packages before publication. Recent supply chain events affecting NodeJS and Python packages have been detected and removed within hours. However, while those packages were available to the general public, it’s […]  ( 119 min )
  • Open

    Monitoring Privacy Blockchains: How Compliance Teams Can Stay a Step Ahead
    Summary Institutions are shaping blockchain design: A new generation of hybrid blockchains are building capabilities that suit the privacy-forward needs… The post Monitoring Privacy Blockchains: How Compliance Teams Can Stay a Step Ahead appeared first on Chainalysis.  ( 15 min )
  • Open

    ​​Better security starts with better questions
    Learn how better questions, trusted AI, and human judgment help security leaders make confident decisions and build resilient systems. The post ​​Better security starts with better questions appeared first on Microsoft Security Blog.  ( 21 min )
  • Open

    Black Hat Asia 2026 | Keynote: From Prompt Tricks to Autonomous Hackers
    No content preview
  • Open

    Minecraft Security Mods
    No content preview
    Payload Podcast 010 - Olaf Hartong
    No content preview
  • Open

    Infosec News Nuggets — July 29, 2026
    Arista patches VeloCloud Orchestrator zero-day exploited in attacks Arista has shipped patches for a maximum-severity command injection flaw in on-premises VeloCloud Orchestrator deployments after confirming it is being actively exploited. The bug allows unauthenticated attackers with only network access to the web interface to reach privileged internal functionality, potentially compromising the confidentiality, integrity, and availability […] The post Infosec News Nuggets — July 29, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 10 min )

  • Open

    AWS KMS or AWS CloudHSM: Choose the right key management solution
    Choosing the right cryptographic key management service on Amazon Web Services (AWS) starts with understanding the difference between AWS Key Management Service (AWS KMS) and AWS CloudHSM. Both provide key storage backed by a hardware security module (HSM) but serve very different needs. AWS KMS is a fully managed service that integrates with all AWS […]  ( 117 min )
    2026 Phase 1a IRAP report is now available on AWS Artifact for Australian customers
    Amazon Web Services (AWS) is excited to announce that the latest version of Information Security Registered Assessors Program (IRAP) report (Phase 1a – full assessment) is now available through AWS Artifact. An independent Australian Signals Directorate (ASD) certified IRAP assessor completed the IRAP assessment of AWS in June 2026. The new IRAP report includes four […]  ( 114 min )
  • Open

    Co-Founder of Controversial Spyware Firm Had Israeli Diplomatic Passport
    The OCCRP found that the co-founder of NSO Group, which develops Pegasus spyware, travelled to Panama in 2013 on an Israeli diplomatic passport. The post Co-Founder of Controversial Spyware Firm Had Israeli Diplomatic Passport appeared first on The Citizen Lab.
  • Open

    How Partners Can Defend the Network and Ease AI Anxiety
    Learn how Akamai Guardicore Segmentation empowers partners to ease customer AI anxiety and contain machine-speed exploits with automated microsegmentation.
    Solve Multi-CDN Entitlement Drift with Edge Functions Without Losing Viewers
    No content preview
  • Open

    Infosec News Nuggets — July 28, 2026
    Hackers Target US Firms in FastJson RCE Zero-Day Attacks Attackers are actively exploiting a critical remote code execution flaw in the open-source FastJson Java library, a widely used component in Alibaba-linked enterprise software, without needing user interaction or elevated privileges. Tracked as CVE-2026-16723, the bug affects versions 1.2.68 through 1.2.83 under common Spring Boot fat-JAR […] The post Infosec News Nuggets — July 28, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 10 min )
  • Open

    Houston City College - 831,642 breached accounts
    In June 2026, Houston City College was the target of a ShinyHunters "pay or leak" extortion campaign. Data allegedly obtained from the college was later published publicly and included 832k unique email addresses along with names, addresses, phone numbers, academic records, and other personal information relating to both current students and alumni.
  • Open

    OFAC Sanctions Members of Hamas Financing Network
    Summary  OFAC designated Zaid Issam Ahmed al-Jebouri, an Iraqi national based in Istanbul, and two associates as Specially Designated Global… The post OFAC Sanctions Members of Hamas Financing Network appeared first on Chainalysis.  ( 11 min )

  • Open

    Did an AI Really Hack Hugging Face?
    No content preview
  • Open

    Infosec News Nuggets — July 27, 2026
    Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller Researchers published a working exploit on July 24 for a flaw dubbed Certighost that lets a low-privileged Active Directory user obtain a certificate for a Domain Controller and authenticate as that machine, then use the resulting Kerberos credential to pull the krbtgt secret through […] The post Infosec News Nuggets — July 27, 2026 appeared first on AboutDFIR - The Definitive Compendium Project.  ( 10 min )

  • Open

    Any App Notification
    No content preview

  • Open

    📖 [The CloudSecList] Issue 348
    📖 [The CloudSecList] Issue 348 was originally published by Marco Lancini at CloudSecList on July 26, 2026.
  • Open

    Building Fake Notifications
    No content preview

  • Open

    Black Hat Intercepted | James Kettle, Director of Research at Portswicker
    No content preview
  • Open

    The EU’s 21st Russia Sanctions Package Targets Crypto Platforms for Sanctions Evasion, Introduces Third-Country Ban Mechanism
    Summary The EU’s 21st Russia sanctions package introduces a transaction ban on 14 crypto-related service platforms across six jurisdictions: Georgia,… The post The EU’s 21st Russia Sanctions Package Targets Crypto Platforms for Sanctions Evasion, Introduces Third-Country Ban Mechanism appeared first on Chainalysis.  ( 12 min )
  • Open

    How Iran Uses Cellular Infrastructure to Target US Military Phones
    Senior fellow Gary Miller spoke with Cape Cellular about the exploitation of mobile network vulnerabilities to track US personnel during the Iran war. The post How Iran Uses Cellular Infrastructure to Target US Military Phones appeared first on The Citizen Lab.
  • Open

    Attacking SCCM with SCCMHunter | Garrett Foster
    No content preview

  • Open

    Fake Edge Update
    No content preview
  • Open

    Every Application Now Lives in an AI Ecosystem
    Discover why modern applications are all part of the AI ecosystem, how real-time inference drives performance, and how to avoid hidden data transfer costs.
    PQC Migration Now Has a Deadline. Does Your DNS Estate?
    Learn why crypto-agility depends not just on adopting the right standards, but on maintaining a clear, unified view of your DNS environment before the migration begins.
  • Open

    What FATF’s 7th Crypto Compliance Report Card Means: Enforcement Must Catch Up With Legislation
    Summary Laws are outpacing enforcement: While jurisdictions are increasingly adopting necessary regulations — from Travel Rule legislation to VASP licensing… The post What FATF’s 7th Crypto Compliance Report Card Means: Enforcement Must Catch Up With Legislation appeared first on Chainalysis.  ( 15 min )

  • Open

    Secure Healthcare Networks with Zero Trust Device Segmentation
    No content preview

  • Open

    Announcements & Evolving ROADtools for Entra ID Recon & Tokens | Dirk-jan Mollema
    No content preview
  • Open

    Pwn2Own Ireland 2026 – New Targets and Categories
    If you just want to read the rules, you can find them here.   Pwn2Own Ireland returns for 2026, and it’s the third year for this event in the Emerald Isle. Despite the dreary Irish skies (and the threat of a random banshee), we had an amazing event, even if we did end up in a jail at the end. With that in mind, we’re excited to return to Cork this fall for yet another great Pwn2Own event. We’ll also be returning to some of the great pubs Ireland has to offer in the evenings and wrapping the event up at a special location (stay tuned for that announcement). As for the contest itself, it will run from October 6-9, 2026. As always, we’ll have a random drawing to determine the schedule of attempts on the first day of the contest, and we will proceed from there. Registration closes at 5:00 p.m…
  • Open

    A Millisecond of Predictability: Why CVE-2026-11374 Is Hard to Exploit
    ManageEngine's SSO ticket was just the millisecond wall-clock time at login, making unauthenticated account takeover theoretically possible. Bishop Fox confirmed the exploit end to end and breaks down why blind exploitation is still impractical and what defenders should do about it.
  • Open

    An AI Botnet
    No content preview
  • Open

    Akamai Recognized as a Customers’ Choice in the 2026 Gartner® Peer Insights™ Voice of the Customer for Edge Distribution Platforms
    Customers named Akamai a 2026 GartnerⓇ Peer Insights™ Customers’ Choice for Edge Distribution Platforms. See why they trust us to scale and secure their apps.
    Akamai Security Hub: Operational Intelligence for Modern Security Teams
    No content preview

  • Open

    Suno - 55,282,226 breached accounts
    In November 2025, AI music generation tool Suno suffered a data breach that later came to light in July the following year. The data contained over 55M unique email addresses. Phone numbers were also present where they had been used as the sign-up method. Although representing a small portion of the corpus, the breach also included tens of thousands of Stripe records relating to purchases, containing names, physical addresses, purchase amounts and partial credit card data including the card type, expiry date and last 4 digits. The company advised that "Suno does not have access to customers' full credit card numbers in Stripe".
  • Open

    CVE-2026-63030 and CVE-2026-60137: Mitigating a Critical Unauthenticated RCE Chain in WordPress
    No content preview
    Why Taste Matters: Building Real-Time Recommendation Systems with AI
    No content preview
  • Open

    Redirect Chain Abuse
    No content preview
    Microsoft Exchange Hacked, Five Years Later
    No content preview

  • Open

    Paidwork - 23,272,765 breached accounts
    In March 2026, hackers claimed they had obtained data from the gig economy platform Paidwork which they then listed for sale. Almost 11GB of data allegedly obtained from the platform was subsequently posted publicly in July and contained over 23M unique email addresses. The breach also included a broad range of other data relating to the operation of the platform including user profile data, banking information, payout history for workers and passwords stored as bcrypt hashes.

  • Open

    📖 [The CloudSecList] Issue 347
    📖 [The CloudSecList] Issue 347 was originally published by Marco Lancini at CloudSecList on July 19, 2026.

  • Open

    US Military Smartphones Targeted Through Roaming and Ad Tech
    Senior research fellow Gary Miller spoke to Financial Times about attempts to exploit mobile network vulnerabilities to track US personnel during the Iran war.  The post US Military Smartphones Targeted Through Roaming and Ad Tech appeared first on The Citizen Lab.
  • Open

    Breaking Entra: Identity Attacks You Can Recreate | Jonathan Elkabas
    No content preview
  • Open

    Using MCP Agents for Penetration Testing
    AI agent harnesses are changing how penetration tests get executed. Bishop Fox used MCP agents across external, application, and cloud testing to surface two information leaks totaling over 12 million records in hours rather than days. Here is how the approach works and where it makes sense to use.
  • Open

    From Recon to Free Flights: Precision Prompt Attacks on AI Agents
    No content preview

  • Open

    Using Microsegmentation to Contain Autonomous AI Agents
    Discover why traditional security fails against autonomous AI agents and how machine-speed microsegmentation helps stop tool chaining and lateral movement.
  • Open

    Evil Token Marketplace
    No content preview
    Payload Podcast 009 - Steven Flores
    No content preview

  • Open

    OFAC Sanctions Iran Central Bank Crypto Wallets, Freezing $131M in Stablecoins
    The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) on Tuesday updated its Central Bank of Iran designation to… The post OFAC Sanctions Iran Central Bank Crypto Wallets, Freezing $131M in Stablecoins appeared first on Chainalysis.  ( 10 min )
  • Open

    Smash and Grab at Scale: Agentic AI Is Reshaping the Threat to Commerce
    The SOTI Security report examines how agentic AI is disrupting commerce security, scaling API abuse, and driving up infrastructure costs.
    A New Definition of Hyperscale
    No content preview
    Post-Quantum Cryptography: What’s Next for Edge Security
    No content preview
  • Open

    Fluke - 821,100 breached accounts
    In July 2026, electronic test and measurement equipment company Fluke was targeted in a ShinyHunters "pay or leak" extortion campaign. The group subsequently published more than 100GB of data allegedly taken from the company. The corpus contained largely corporate contact information, including over 800k unique email addresses, names, phone numbers and physical addresses. A large collection of support cases was also present.
    Goose Creek - 6,574,121 breached accounts
    In June 2026, a party claiming to have access to data from Goose Creek Candle Company sent emails to a number of the company's customers, claiming the company had a security vulnerability and suffered a data breach. The data was subsequently sent to Have I Been Pwned and contained 6.6M unique email addresses along with names, phone numbers, physical addresses, order IDs and total spent. The data appears to have been obtained from the company's Shopify instance. Goose Creek is aware of the reports but was unable to provide Have I Been Pwned with any further information at the time of publication.

  • Open

    The July 2026 Security Update Review
    Well folks. Here we are. The bug apocalypse has fully descended upon us. I’ll do my best to sort this out in some way meaningful, but this month’s release shows us the nay-sayers were right, and I’ve got to hand it to the nay-sayers here. Excellent call. Take an extended break from your regularly scheduled activities as we let’s take a look at the latest security patches from Adobe and Microsoft. If you’d rather watch the full video recap covering the entire release, you can check it out here: Adobe Patches for July 2026 Adobe has now moved to a bimonthly release schedule, which means they will be releasing patches on the second and fourth Tuesdays of the month. I’ll continue to cover the second Tuesday release here and update this blog should the fourth Tuesday release contain anything si…
  • Open

    Langflow Exploited to Build Custom DDoS Gafgyt Botnets
    No content preview
  • Open

    Canada’s Electronic Spy Agency Conducted Cyberattacks on Criminals Brokering Fentanyl Ingredients, Report Says
    Research fellow Bill Robinson speaks with The Globe and Mail about CSE spending. The post Canada’s Electronic Spy Agency Conducted Cyberattacks on Criminals Brokering Fentanyl Ingredients, Report Says appeared first on The Citizen Lab.
2026-08-13T01:59:13.789Z osmosfeed 1.15.1