threat-intel JavaScript obfuscation: From party trick to phishing kit This article from Cisco Talos explores the techniques used to obfuscate JavaScript code, primarily for malicious purposes like phishing and malware delivery. The author details various methods of hiding code, including s… Cisco Talos · 3d ago High obfuscationjavascriptmalware
threat-intel The Future of AI-Driven Security Depends on Complete Data The article argues that AI-powered security solutions are failing because they are often fed incomplete data. Traditional security systems filter and normalize data, resulting in a loss of context and preventing AI from… SecurityWeek · 3d ago High aidata privacydata sovereignty
threat-intel A polymorphic phishing page (that occasionally breaks itself), (Thu, Aug 27th) This article details a sophisticated phishing page that employs a polymorphic obfuscation technique to evade detection. The page initially presents as broken, causing a 30-second delay and high CPU usage, due to a global… SANS Internet Storm Center · 3d ago Medium phishingobfuscationpolymorphism
threat-intel LLM-Based Social Engineering Scams OpenAI successfully disrupted a sophisticated social engineering operation originating in Cambodia, which was leveraging large language models (LLMs) like ChatGPT to conduct a wide range of scams, including romance scams… Schneier on Security · 3d ago High KHllmsocial engineeringscam
threat-intel US Navy tells sailors and their families: scrub your social media, enemies are watching The US Navy is urging all of its personnel – sailors, reservists, and civilian employees – and their families to significantly tighten their social media privacy settings and be cautious about sharing personal informatio… Graham Cluley · 3d ago Medium USISIRsocial-mediaprivacyintelligence
threat-intel GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address Threat actors linked to Dark Caracal have deployed a new Go-based malware framework, GoCaracal, utilizing an Ethereum smart contract to dynamically update its command-and-control (C2) address. This allows operators to ch… The Hacker News · 3d ago Medium BRECCHethereumsmart contractc2
threat-intel US Disrupts Chinese Hacking Platform Used in Military and Critical Infrastructure Attacks The US government has disrupted a Chinese hacking platform and botnet, QTFY, used by Chinese threat actors to target military and critical infrastructure systems in the United States. The disruption targeted QScan and QT… SecurityWeek · 3d ago High CHhackingcyberespionagebotnet
threat-intel AI-assisted reconnaissance: Why everyone could be a viable target for fraud AI is lowering the barrier to entry for cybercriminals by automating open-source intelligence (OSINT) gathering, enabling more sophisticated and scalable fraud schemes. AI tools can quickly analyze publicly available inf… WeLiveSecurity · 3d ago Medium osintaisocial engineering
threat-intel New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access Researchers at the University of Toronto have developed GPUThor, a Rowhammer attack that bypasses ECC memory protection on NVIDIA Ampere-class workstation GPUs (A4000, A5000, A6000) to achieve denial-of-service and privi… The Hacker News · 3d ago High rowhammergpuprivilege escalation
threat-intel Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services A pro-Russian hacker group, Server Killers, claimed responsibility for a sustained cyberattack targeting multiple Norwegian government digital services. The attack, initiated following Norway’s increased security coopera… SecurityWeek · 3d ago High NORUDEcyberattackrussiacyberwar
threat-intel CISA Adds Six Exploited Flaws to KEV, Including NetScaler, Linux, and SQL Server Bugs The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added six previously exploited vulnerabilities to its KEV catalog, including flaws in Citrix NetScaler, Linux, and Microsoft SQL Server. These vulnerab… The Hacker News · 3d ago High CVE-2019-1068CVE-2026-8452CVE-2022-0995SWGEHOkevexploitationvulnerability
threat-intel ISC Stormcast For Thursday, August 27th, 2026 https://isc.sans.edu/podcastdetail/10070, (Thu, Aug 27th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · 3d ago High phishingsupply chainvulnerability
threat-intel FBI seizes hacking tools it says China used to attack NASA, DOE, US Senate and other critical networks The FBI has seized hacking tools believed to have been used by Chinese state actors to target critical US infrastructure, including NASA, the Department of Energy, and the US Senate. These tools were used to conduct reco… The Register · 3d ago High CVE-2019-11510CVE-2019-19781CHcyber espionagestate-sponsoredcritical infrastructure
threat-intel OpenAI explains how its AI agents did crime and attacked Hugging Face This article doesn't present a specific security incident but rather highlights a broader trend of security vulnerabilities and exploits within open-source software and related technologies. It touches on themes of open-… The Register · 3d ago Medium vulnerabilityopen-sourceexploit
threat-intel Smashing Security podcast #482: This hacker leaked GTA 6 – and launched their own cryptocurrency This episode of Smashing Security tackles the recent leak of GTA 6 gameplay footage by a hacker known as CyberLeak. The hacker, motivated by both attention and financial gain, released video clips of the game, including… Graham Cluley · 3d ago High hackerleakgta6
threat-intel Dark Caracal Adds New Malware to Cyber Espionage Arsenal The Dark Caracal cyber-espionage group, linked to Lebanon, has added a new modular malware framework called GoCaracal to its arsenal. This framework, developed since 2026, is used for data theft, maintaining persistent a… Dark Reading · 4d ago High LBVEBRcyber-espionagedata theftmalware
threat-intel Exclusive: NSA to host a hacker reunion in bid to rebuild secretive unit The NSA is hosting a reunion for former members of its elite hacking unit, Tailored Access Operations (TAO), in an attempt to rebuild the group and bolster its capabilities. The event, spearheaded by NSA Deputy Director… The Record · 4d ago High hackingintelligencereunion
threat-intel Red Flags That Expose Fake North Korean IT Workers North Korean operatives are increasingly sophisticated in their attempts to infiltrate organizations by posing as IT workers, often leveraging stolen or fabricated identities and VPNs to mask their locations. Huntress In… Dark Reading · 4d ago High CHNEnorth koreanvpnproxy
threat-intel Medical device firm Boston Scientific says cyberattack has disrupted shipment processes Boston Scientific, a major medical device manufacturer, experienced a cyberattack that disrupted its shipment processes and impacted access to critical business applications. The company is working with cybersecurity exp… The Record · 4d ago Medium cyberattackmedical devicesdata breach
threat-intel More than 100 water systems were hit in July cyberattacks Multiple U.S. water systems were targeted in a July cyberattack, with over 100 systems affected. The attacks involved exploiting vulnerabilities in Joomla extensions, allowing attackers to gain unauthorized access and po… The Register · 4d ago High USRUjoomlasupply chaincritical infrastructure