threat-intel 'Not a theoretical risk,' feds warn as attackers use AI-made code to hack critical infrastructure controllers Federal agencies are warning that attackers are now leveraging AI-generated code to target critical infrastructure controllers, presenting a significant and rapidly evolving threat. This isn't a theoretical risk; it's a… The Register · Aug 19, 2026 High IRaicyberattackcritical infrastructure
threat-intel No-Filter 'Kriminal' AI Platform Raises Cybercrime Concerns A new AI platform called ‘Kriminal’ is raising concerns within the cybersecurity community due to its permissive nature and explicit marketing targeting cybercriminals. Despite claims of being for research and educationa… Dark Reading · Aug 19, 2026 Medium aicybercrimeosint
vulnerability Chrome, Firefox Updates Patch Dozens of Vulnerabilities Google and Mozilla have released security updates for Chrome and Firefox, addressing a significant number of vulnerabilities, including critical and high-severity flaws. These updates aim to prevent exploitation of issue… SecurityWeek · Aug 19, 2026 High vulnerabilitypatchsecurity
vulnerability Multiples vulnérabilités dans Google Chrome (19 août 2026) Multiple vulnerabilities have been discovered in Google Chrome, impacting older versions. The exact nature of the vulnerabilities is not specified, but users are advised to consult the Chrome security bulletin for availa… CERT-FR · Aug 19, 2026 Medium CVE-2026-76033CVE-2026-76034CVE-2026-76035chromevulnerabilitysecurity
threat-intel The 'Industrial Accidents' Behind Rogue AI Agent Attacks — and the Sandbox Failures Exposed Rich Mogull, a senior analyst at the Cloud Security Alliance, highlights a growing trend of "industrial accidents" – rogue AI agent attacks – stemming from a lack of robust safety protocols and sandboxing around increasi… Dark Reading · Aug 18, 2026 High CHUNaiartificial intelligencecybersecurity
threat-intel CISO Conversations: Nico Waisman – From Self-Taught Hacker to AI-Driven Offensive Security at XBOW Nico Waisman’s cybersecurity journey is a remarkable and almost accidental one, beginning with a childhood fascination with hacking in Argentina and culminating in his current role as CISO at XBOW, a company specializing… SecurityWeek · Aug 18, 2026 High ARcybersecurityoffensive-securityai
threat-intel 16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets A new typosquatting campaign targeting RubyGems users has been identified, leveraging a Rust-based stealer to steal browser credentials, cryptocurrency wallets, and Telegram data. The campaign utilizes a 'StubMaker' tool… The Hacker News · Aug 18, 2026 High typosquattingrubymalware
threat-intel Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware Threat actors are spending heavily – nearly $7 million – on expired domains to build a criminal enterprise focused on illegal sports streaming, online gambling promotion, and malware infrastructure. These ‘dropcatch’ dom… The Hacker News · Aug 14, 2026 High VIRUAUdropcatchexpired domainsmalware
threat-intel Autonomous AI attacks pose 'clear and present danger' to critical infrastructure A growing trend indicates that attackers are increasingly leveraging open-source AI agents to autonomously launch sophisticated cyberattacks against critical infrastructure, including government systems, energy companies… The Register · Aug 14, 2026 High CHIRNOaicyberattackcritical infrastructure
threat-intel In Other News: Rapid7 Layoffs, Hacking a Boeing 737, Refrigeration System Vulnerabilities This week’s cybersecurity news highlights a range of concerning developments, including a government contract sparking AI concerns, a North Korean IT worker infiltrating a US federal agency, vulnerabilities discovered in… SecurityWeek · Aug 14, 2026 High NOransomwarecyberattackvulnerability
threat-intel Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers Researchers have discovered a post-exploitation technique leveraging Chrome DevTools Protocol (CDP) to steal cookies and sensitive data from running instances of Chrome and Edge on Windows. This method bypasses standard… The Hacker News · Aug 14, 2026 High cdpdevtoolscookie theft
threat-intel Google Cloud Sets Out Post-Quantum Roadmap With 2029 Readiness Goal Google Cloud is proactively preparing its infrastructure for the advent of quantum computing by outlining a roadmap to transition to post-quantum cryptography (PQC). Their goal is to achieve full readiness by 2029, focus… SecurityWeek · Aug 14, 2026 Medium post-quantumcryptographyquantum computing
threat-intel Passwords stored in public Google Doc then showed up in search results A security incident occurred where passwords were stored in a publicly accessible Google Doc, leading to those passwords appearing in search results. This highlights a significant risk of credential exposure and undersco… The Register · Aug 13, 2026 High IRcredentialspasswordsecurity
threat-intel 737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One A massive collection of 737 Chrome VPN and proxy extensions are being used to route user traffic through a single SOCKS5 proxy infrastructure, primarily targeting Russian-speaking users seeking access to blocked content.… The Hacker News · Aug 12, 2026 High RUvpnproxychrome
threat-intel Mindgard Raises $30 Million to Protect AI Systems AI security startup Mindgard secured $30 million in Series A funding to bolster its platform for identifying and mitigating vulnerabilities in AI systems. The company’s platform proactively tests AI models and applicatio… SecurityWeek · Aug 12, 2026 Medium aisecurityvulnerability
threat-intel CISA gives federal agencies two weeks to patch Microsoft bug exploited in DPRK campaign The CISA has ordered federal agencies to patch a critical Windows vulnerability being actively exploited by North Korean hackers as part of Operation ‘Dream Job’. This campaign, led by the Lazarus Group, impersonates rec… The Record · Aug 12, 2026 Critical CVE-2026-68820FRGEBRzero-daynorth koreaoperation dream job
threat-intel OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning Researchers have discovered a significant vulnerability in OpenAI, Anthropic, and Google's AI APIs that allows weaker AI models to decode the reasoning processes of stronger models by replaying encrypted reasoning blocks… The Hacker News · Aug 12, 2026 High encryptionapiprompt injection
vulnerability Multiples vulnérabilités dans Google Chrome (12 août 2026) Multiple vulnerabilities have been discovered in Google Chrome, impacting older versions of the browser on Windows, Linux, and macOS. The exact nature of the security issue is not specified by the publisher, but users ar… CERT-FR · Aug 12, 2026 Medium CVE-2026-19556CVE-2026-19557CVE-2026-19558chromevulnerabilitysecurity
threat-intel NSA installs DHS lawyer as new general counsel The National Security Agency (NSA) has appointed Kerianne Tobitsch, a former Homeland Security lawyer and Jones Day partner, as its new general counsel. This appointment follows a series of high-level departures within t… The Record · Aug 11, 2026 Medium fisansasurveillance
threat-intel Google suspend son IA d’images dans Google Earth Google has temporarily suspended a new AI feature in Google Earth that allowed users to generate fictional satellite images based on text prompts. The feature, dubbed Nano Banana 2, was quickly shut down after journalist… ZATAZ · Aug 11, 2026 Medium aidisinformationsatellite imagery