threat-intel Nvidia and Tech Giants Launch AI Security Alliance Nvidia and a coalition of tech giants have launched the Open Secure AI Alliance, an initiative focused on developing and sharing open-source tools and techniques to bolster the security of AI systems and agents. The alli… SecurityWeek · Jul 27, 2026 High aisecurityopen source
threat-intel Hackers used autonomous AI agent to spy on Thailand's finance ministry Hackers used an autonomous AI agent, Hermes developed by Nous Research, to conduct a cyber-espionage campaign targeting Thailand's Ministry of Finance. The agent independently explored the ministry's network, gathering i… The Record · Jul 27, 2026 High CNaicyberespionageautonomous agent
threat-intel Beelzebub Raises $3.4 Million for Hacker-Trapping Platform Beelzebub, an Italian cybersecurity startup, has raised €3.4 million in seed funding to combat AI-powered cyberattacks. Their platform uses a combination of red and blue teaming, deception technology, and AI analysis to… SecurityWeek · Jul 27, 2026 Medium ITSAROaicybersecuritythreat intelligence
threat-intel Cognyte Sells a Mobile Cell Surveillance Van Cognyte, an Israeli surveillance firm, has sold a mobile cell surveillance van called FalcoNet, mimicking a cell tower to track nearby phones. This technology, similar to Stingrays, allows law enforcement to monitor comm… Schneier on Security · Jul 27, 2026 High ISsurveillanceprivacycell-site
threat-intel What’s Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out Lookout has launched a new Mobile Security Exposure Center (MSEC) designed to provide organizations with a deeper understanding of the vulnerabilities hidden within their mobile apps. MSEC creates a ‘software bill of mat… SecurityWeek · Jul 27, 2026 High CHmobile-securitysbomvulnerability
threat-intel Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware The China-linked cybercrime group behind tax-themed phishing campaigns is utilizing a sophisticated crypter service called Cruciferra to deliver a wide range of malware, including remote access trojans and information st… The Hacker News · Jul 27, 2026 High CNcrypterransomwarephishing
threat-intel Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials A threat actor is exploiting vulnerabilities in public Wi-Fi gateways, particularly at hotels and conference centers, to steal corporate credentials, including Microsoft 365 accounts, and is leveraging tactics similar to… SecurityWeek · Jul 27, 2026 High USINSAdnscaptive portalcredential theft
threat-intel Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits Anthropic’s Opus 5 AI model excels at finding software vulnerabilities, nearly matching Mythos 5’s capabilities, but it cannot automatically generate exploits. Anthropic deliberately limits Opus 5’s exploit generation ab… SecurityWeek · Jul 27, 2026 Medium aivulnerabilitycybersecurity
threat-intel TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments A threat actor linked to East Asia has been targeting government entities in the Middle East using a sophisticated attack chain leveraging Telegram for command-and-control. The campaign utilizes malware families like TEL… The Hacker News · Jul 27, 2026 High CNedr evasiontelegramcommand and control
threat-intel GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption GitHub has implemented a three-day cooldown period for Dependabot to mitigate the risk of malicious packages being rapidly adopted by downstream projects. This new feature aims to slow down the spread of poisoned package… The Hacker News · Jul 27, 2026 Medium supply-chainpackage-managementdependency-updates
threat-intel Google goes it alone with a new cybercrime crew taxonomy This article is a collection of security news snippets from The Register. It highlights a Microsoft vulnerability in on-prem SharePoint, a phishing campaign impersonating Signal support, and a broader trend of increasing… The Register · Jul 27, 2026 High RUphishingvulnerabilitycybercrime
threat-intel Chat Control : un pirate cible 24 responsables politiques français A hacker has released personal data of 24 French politicians, including photographs, contact information, and administrative IDs, in a protest against Chat Control 1.0, a temporary European measure designed to detect chi… ZATAZ · Jul 26, 2026 High FRdata breachdoxingcyberattack
threat-intel Des données de pompiers français exposées en série A series of coordinated data breaches have exposed sensitive information from multiple French fire and rescue services (SDIS), including databases, internal documents, and administrator access, occurring amidst ongoing w… ZATAZ · Jul 26, 2026 High FRdata breachfrench fire servicesthreat intelligence
threat-intel Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable A sophisticated malvertising campaign, dubbed SourTrade and linked to Confiant, is using legitimate browser technologies like Bun and a ServiceWorker to build Windows executables for victims, primarily targeting retail t… The Hacker News · Jul 25, 2026 High malvertisingbrowserbun
threat-intel CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking A new investigation by CTM360 reveals a significant evolution in insurance phishing attacks, moving beyond simple credential harvesting to real-time account hijacking. Attackers now synchronize their activity with victim… The Hacker News · Jul 25, 2026 High SAUNINphishingaccount hijackinginsurance
threat-intel Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE Threat actors linked to the Cl0p ransomware group are exploiting internet-exposed PTC Windchill and FlexPLM deployments to gain unauthenticated remote code execution and steal sensitive data for extortion. The campaign l… The Hacker News · Jul 25, 2026 Critical CVE-2026-12569vulnerabilityransomwaredata-breach
threat-intel DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts The DevMan ransomware-as-a-service (RaaS) operation has significantly upgraded its affiliate portal, transitioning from a chat-based system to a centralized platform for managing victims, payouts, and team operations. PR… The Hacker News · Jul 25, 2026 High USCISEransomwareraasdevman
threat-intel CISOs vs. Boards: Myth or Misunderstanding? The article explores the persistent disconnect between CISOs and boards regarding cybersecurity, despite increasing cyber threats. While boards are increasingly recognizing the importance of security, a lack of understan… Dark Reading · Jul 24, 2026 Medium cybersecurityboard communicationrisk management
threat-intel Friday Squid Blogging: Illex Squid Catch in the Falklands This article discusses a recent operation by the Illex squid fishing company in the Falkland Islands, where they used a sophisticated network of underwater drones to illegally catch squid. The operation highlights a conc… Schneier on Security · Jul 24, 2026 Medium FKfishingautomationillegality
threat-intel Europol flags 4,340 'horrific' URLs linked to The Com This article is a collection of security-related news snippets from The Register. It highlights a phishing campaign targeting Signal users by Russian actors, a zero-day vulnerability in on-prem SharePoint, and a signific… The Register · Jul 24, 2026 Medium RUCHphishingvulnerabilitycybersecurity