threat-intel Turns out Brits would quite like their private messages to stay private Several tech stories highlight ongoing challenges and solutions related to AI, data privacy, and cybersecurity. Nvidia and Cerebras are offering solutions to expensive AI token generation, while Google is forcing Android apps to manage memory more efficiently. Simultaneously, security concerns are rising, including ph… The Register · 11h ago Medium CHIRUSaicybersecurityphishing
data-breach Hasbro Data Breach Exposed Employee Personal Information Hasbro has notified employees that a security incident may have exposed their personal information, including names, addresses, and financial details. The breach is linked to a cyberattack in March, and while Hasbro clai… SecurityWeek · 1d ago Medium USdata breachemployee datacybersecurity
threat-intel Industry that built the problem offers to sell you the solution Several tech companies are grappling with the rising costs associated with AI development and deployment, leading to a paradoxical situation where they are now offering solutions to their customers – often at a premium.… The Register · 2d ago Medium USIRCHaihardwarecybersecurity
threat-intel Think You’ve Eliminated Chinese AI? Check the Model’s Lineage, Cisco Says Cisco research reveals that country-of-origin labels on AI models are misleading because they don't accurately reflect a model's lineage and can mask potentially problematic inherited behaviors. The study highlights a ‘s… SecurityWeek · 2d ago Medium CHUSaimodel lineageprovenance
vulnerability PaperCut Releases Emergency Patch for Exploited Zero-Day PaperCut has released an emergency patch for a zero-day vulnerability being actively exploited in its print management solutions. The vulnerability, currently unassigned a CVE, is linked to malware delivery and log delet… SecurityWeek · 2d ago High USCAEUzero-dayvulnerabilitypatch
threat-intel Chinese Routers Sold Worldwide Contain Backdoors Chinese router manufacturer Shenzhen Zhibotong Electronics Co. Ltd. (ZBT) has been selling routers containing multiple backdoors, some dating back a decade, to white-label distributors worldwide. These backdoors, includi… Dark Reading · 3d ago High CHUSRUbackdoorsupply-chainespionage
threat-intel US Navy tells sailors and their families: scrub your social media, enemies are watching The US Navy is urging all of its personnel – sailors, reservists, and civilian employees – and their families to significantly tighten their social media privacy settings and be cautious about sharing personal informatio… Graham Cluley · 3d ago Medium USISIRsocial-mediaprivacyintelligence
threat-intel More than 100 water systems were hit in July cyberattacks Multiple U.S. water systems were targeted in a July cyberattack, with over 100 systems affected. The attacks involved exploiting vulnerabilities in Joomla extensions, allowing attackers to gain unauthorized access and po… The Register · 4d ago High USRUjoomlasupply chaincritical infrastructure
threat-intel NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions A new phishing toolkit called NovaCookies is being used to steal Microsoft 365 sessions by abusing legitimate Docusign notifications and mimicking genuine email shares. Developed by an adversary-in-the-middle (AitM) oper… The Hacker News · 4d ago High USUKCAphishingaitmmicrosoft 365
threat-intel 'NovaCookies' Kit Steals Microsoft 365 Sessions for $320 a Month A new adversary-in-the-middle (AitM) phishing service called ‘NovaCookies’ is offering a turnkey solution for attackers to steal Microsoft 365 sessions for $320 a month, bypassing MFA protections. The service provides lu… Dark Reading · 4d ago High USphishingaitmmicrosoft 365
threat-intel CISA: Over 100 Internet-Exposed Water Systems Targeted in July Cyberattacks CISA has revealed that over 100 internet-exposed water systems were targeted in July cyberattacks, primarily linked to Iranian threat actors. The agency is urging water and wastewater utilities to significantly reduce th… SecurityWeek · 4d ago High IRUSiototcyberattack
threat-intel Interpol's Jackal IV Disrupts West African Crime Infrastructure Interpol's Jackal IV operation successfully disrupted West African crime infrastructure networks involved in various cybercrime activities, including business email compromise, romance scams, and money laundering. The op… Dark Reading · 4d ago High ARAUCAcybercrimefraudmoney laundering
threat-intel INTERPOL Operation Jackal IV Arrests 58, Identifies 263 in Global Cyber Fraud Crackdown INTERPOL’s fourth iteration of Operation Jackal has resulted in the arrest of 58 individuals and the identification of 263 suspects globally, targeting West African organized crime groups involved in cyber fraud, includi… The Hacker News · 4d ago High AUARBEcybercrimefraudmoney laundering
threat-intel Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes A sophisticated phishing-as-a-service platform, dubbed AnonyMousKIT, is being used to target stolen Apple devices and trick owners into providing their passcodes and 2FA codes, enabling Activation Lock removal. Operated… The Hacker News · 4d ago High ZABRUSphishingactivation lock2fa
threat-intel Employee benefits platform Paylogix says hackers stole financial and health data Paylogix, a benefits administration platform, suffered a cyberattack that exposed sensitive data for tens of thousands of users, including Social Security numbers, health insurance details, and passport information. The… The Record · 5d ago Critical USransomwaredata breachcyberattack
vulnerability PayRange API A critical vulnerability in the PayRange API allows unauthorized access to sensitive device information and potential denial-of-service attacks. The vulnerability stems from a lack of proper authorization on management e… CISA Advisories · 5d ago Critical CVE-2026-18965USCAvulnerabilityicscontrol systems
vulnerability Rently Smart Home Rently Smart Home versions 20.1.0 and earlier are vulnerable to an insufficient credentials issue, potentially allowing an attacker to access sensitive information and override user permissions. Rently has released a pat… CISA Advisories · 5d ago Medium CVE-2026-75960USINvulnerabilitycwe-522industrial control systems
threat-intel Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows The Mirage2FA campaign, a commercial phishing-as-a-service toolkit, has impacted approximately 4,532 organizations, primarily in the US, by exploiting legitimate Microsoft 365 login flows and bypassing two-factor authent… The Hacker News · 5d ago High USINSGphishingmicrosoftmfa
threat-intel The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution A recent analysis by Palo Alto Unit 42 found that while a significant number of AI-enabled malware samples exist in research and testing environments, only a small fraction (around 12) reached production endpoints across… Palo Alto Unit 42 · 5d ago Medium USCNGBaimalwarethreat intelligence
threat-intel Indian man who fled US arrested on charges he helped scammers siphon $7.5 million from the elderly An Indian man, Jay Sunilbharthi Goswami, has been arrested on charges of aiding overseas cyberscammers who defrauded elderly New Yorkers out of $7.5 million. Goswami acted as a money mule, receiving instructions and tran… The Record · 6d ago High INCAUSmoney mulescamcybercrime