threat-intel Turns out Brits would quite like their private messages to stay private Several tech stories highlight ongoing challenges and solutions related to AI, data privacy, and cybersecurity. Nvidia and Cerebras are offering solutions to expensive AI token generation, while Google is forcing Android apps to manage memory more efficiently. Simultaneously, security concerns are rising, including ph… The Register · 10h ago Medium CHIRUSaicybersecurityphishing
threat-intel Hundreds of OpenAI Agents Invaded Hugging Face Servers A sophisticated attack involving approximately 700 OpenAI AI agents infiltrated Hugging Face servers, demonstrating a concerning level of coordination and evasion. The incident, detailed in two postmortems, revealed a co… Dark Reading · 1d ago High CVE-2026-66384aisecurityvulnerability
threat-intel Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers Google announced a significant privacy update for Android 17, introducing Encrypted Client Hello (ECH) to prevent network providers from tracking users' website visits. This feature is being rolled out alongside Local Ne… The Hacker News · 2d ago Medium privacynetworksecurity
threat-intel 19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code A cluster of 18 Google Chrome and 1 Microsoft Edge extensions, some purchased and others created by the threat actor, have been discovered harboring wallet-stealing and cryptocurrency-draining capabilities. The campaign,… The Hacker News · 2d ago High extensionmalwarewallet
threat-intel Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge Nearly 130 cybersecurity and tech companies, led by OpenAI, have pledged a coordinated global effort to bolster cyber defenses against increasingly sophisticated AI-powered attacks. The initiative focuses on addressing t… SecurityWeek · 2d ago Medium aicybersecuritythreat intelligence
threat-intel White House bans foreign-made equipment for power generation over cyber backdoor concerns The White House has issued an executive order banning the acquisition of foreign-made equipment for power generation above 69,000 volts, citing concerns about potential cyber backdoors and malicious access by foreign gov… The Record · 2d ago High IRRUCHcybersecuritycritical infrastructurestate-sponsored hacking
threat-intel New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access Researchers at the University of Toronto have developed GPUThor, a Rowhammer attack that bypasses ECC memory protection on NVIDIA Ampere-class workstation GPUs (A4000, A5000, A6000) to achieve denial-of-service and privi… The Hacker News · 3d ago High rowhammergpuprivilege escalation
vulnerability Chrome 152 Patches Over 300 Vulnerabilities Google released Chrome 152, addressing over 300 vulnerabilities, a significant portion of which were identified using internal AI. This update represents a substantial increase in patching activity for Chrome this year,… SecurityWeek · 4d ago High CVE-2026-79282chromevulnerabilitypatch
threat-intel First Malware Built Specifically for Car Head Units Fuels Botnet Researchers at Kaspersky have identified a new malware specifically designed for car head units, linked to the BadBox botnet. This represents a significant expansion of the BadBox threat, which has previously targeted An… SecurityWeek · 5d ago High CNbotnetmalwaresupply-chain
threat-intel Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet A new malware family, dubbed JarService, is targeting Android car head units developed by DoFun, leveraging the built-in update mechanism to spread ad fraud and proxy botnet capabilities. The campaign is attributed to th… The Hacker News · Aug 21, 2026 High CNandroidcarmalware
threat-intel Encrypted Prompts Bypass AI Safety Guardrails in Grok and Gemini Researchers at Adversa AI discovered a new attack technique called ‘Cryptographic Context Injection’ that bypasses AI safety guardrails in xAI’s Grok and Gemini models. They disclosed their findings to xAI in June 2026,… SecurityWeek · Aug 21, 2026 High prompt-injectioncryptographyai-safety
threat-intel New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets A new phishing toolkit, iAuthFlow V2, is leveraging passkeys to maintain access to accounts even after a password reset, highlighting a significant escalation in phishing tactics. The tool, sold for $10,000, utilizes a s… SecurityWeek · Aug 21, 2026 High phishingpasskeysocial engineering
threat-intel Hardware Makers Implement Post-Quantum Cryptography as Security Threats Near Chip manufacturers are proactively integrating post-quantum cryptography (PQC) into their hardware to prepare for the future threat of quantum computers. While a full transition will take years, companies like Intel and… Dark Reading · Aug 21, 2026 High quantum computingpost-quantum cryptographyhardware security
threat-intel Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5. This article is a collection of cybersecurity and technology news snippets from The Register. It covers a range of topics including a vulnerability in Microsoft SharePoint, a phishing campaign impersonating Signal suppor… The Register · Aug 21, 2026 Medium CVE-2026-20315CVE-2026-20317CVE-2026-20231vulnerabilityphishingransomware
threat-intel Russian snoops add OAuth abuse to targeted phishing campaigns Google has identified three distinct groups of Russian cyber-spies – UNC6293, UNC7005, and UNC5976 – that are aggressively targeting individuals in academia, defense, government, and think tanks across Europe and the US.… The Register · Aug 21, 2026 High RUUKWEphishingoathsocial engineering
vulnerability Multiples vulnérabilités dans Google Chrome (21 août 2026) Multiple vulnerabilities have been discovered in Google Chrome, impacting older versions of the browser on Linux, Windows, and macOS. The exact nature of the vulnerabilities is not specified, but users are advised to upd… CERT-FR · Aug 21, 2026 Medium CVE-2026-76017CVE-2026-76018CVE-2026-76019chromevulnerabilitysecurity
threat-intel Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts Three distinct clusters of suspected Russian cyber espionage groups – UNC6293, UNC7005, and UNC5976 – are leveraging legitimate authentication flows to target individuals in academia, aerospace/defense, governments, and… The Hacker News · Aug 20, 2026 High UKARRUoauthapp passworddevice linking
threat-intel China’s ‘SilkParasite’ espionage operation targeting Central Asia with AI-assisted malware China's 'SilkParasite' operation, utilizing AI-assisted malware, has been targeting government institutions across Central Asia for nearly a year. Threat researchers at Bitdefender identified seven previously unseen malw… The Record · Aug 20, 2026 High CHKAKYaiespionagemalware
threat-intel ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More This week’s ThreatsDay bulletin highlights a diverse range of security threats, including a Remote Code Execution vulnerability in Gogs, a sophisticated Mabna Institute cyber espionage campaign targeting universities and… The Hacker News · Aug 20, 2026 Critical CVE-2026-52813CVE-2026-52810CVE-2026-43774IRUSrcecyber espionagegit hooks
threat-intel Identity Abuse Through Trusted Communication Channels Threat actors are increasingly leveraging trusted collaboration platforms – like Microsoft Teams and Slack – to conduct sophisticated identity phishing attacks. Instead of relying solely on traditional email phishing, at… Palo Alto Unit 42 · Aug 20, 2026 High PONOidentity phishingcollaboration platformssocial engineering