threat-intel Learn How to Build Security Operations Ready for AI-Powered Attacks AI is significantly accelerating the speed at which attackers can discover vulnerabilities and exploit systems. This requires security teams to improve their visibility, prioritize risks, and streamline the process of mo… The Hacker News · 3d ago Medium aisecurity operationsvulnerability management
threat-intel Okta Shares Surge on Strong Earnings, Growing Demand for AI Identity Security Okta, an identity security company, saw its stock price surge after reporting strong second-quarter earnings and raising its full-year forecast. The company is focusing on securing AI agents and has recently acquired Per… SecurityWeek · 3d ago Medium identity_securityai_securitycloud_security
threat-intel Nuisance-call blocker fined £190k for being a nuisance caller A nuisance-call blocker company, NetCaller, has been fined £190,000 for repeatedly sending unsolicited calls to consumers. The company was found to be operating a system that generated a large volume of calls, many of wh… The Register · 3d ago Medium data-protectionprivacyregulation
threat-intel Cyberattack Causes Global Disruption at Boston Scientific Boston Scientific, a major medical technology firm, experienced a significant cyberattack that disrupted global operations, impacting order processing and shipping. The company is currently investigating the scope of the… SecurityWeek · 3d ago Medium cyberattackdisruptiondata breach
threat-intel A polymorphic phishing page (that occasionally breaks itself), (Thu, Aug 27th) This article details a sophisticated phishing page that employs a polymorphic obfuscation technique to evade detection. The page initially presents as broken, causing a 30-second delay and high CPU usage, due to a global… SANS Internet Storm Center · 3d ago Medium phishingobfuscationpolymorphism
threat-intel US Navy tells sailors and their families: scrub your social media, enemies are watching The US Navy is urging all of its personnel – sailors, reservists, and civilian employees – and their families to significantly tighten their social media privacy settings and be cautious about sharing personal informatio… Graham Cluley · 3d ago Medium USISIRsocial-mediaprivacyintelligence
threat-intel GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address Threat actors linked to Dark Caracal have deployed a new Go-based malware framework, GoCaracal, utilizing an Ethereum smart contract to dynamically update its command-and-control (C2) address. This allows operators to ch… The Hacker News · 3d ago Medium BRECCHethereumsmart contractc2
threat-intel AI-assisted reconnaissance: Why everyone could be a viable target for fraud AI is lowering the barrier to entry for cybercriminals by automating open-source intelligence (OSINT) gathering, enabling more sophisticated and scalable fraud schemes. AI tools can quickly analyze publicly available inf… WeLiveSecurity · 3d ago Medium osintaisocial engineering
threat-intel OpenAI explains how its AI agents did crime and attacked Hugging Face This article doesn't present a specific security incident but rather highlights a broader trend of security vulnerabilities and exploits within open-source software and related technologies. It touches on themes of open-… The Register · 4d ago Medium vulnerabilityopen-sourceexploit
vulnerability 'HTTP Terminator' Hunts for Novel Desync Attacks A new open-source tool, dubbed 'HTTP Terminator,' developed by PortSwigger, utilizes AI to automatically discover novel HTTP request smuggling vulnerabilities. The tool identifies previously unknown attack vectors by ana… Dark Reading · 4d ago Medium httpvulnerabilityweb application
threat-intel Medical device firm Boston Scientific says cyberattack has disrupted shipment processes Boston Scientific, a major medical device manufacturer, experienced a cyberattack that disrupted its shipment processes and impacted access to critical business applications. The company is working with cybersecurity exp… The Record · 4d ago Medium cyberattackmedical devicesdata breach
threat-intel Who Has Admin Rights in your Entra ID Directory?, (Wed, Aug 26th) This article from the SANS Internet Storm Center details a PowerShell script used to analyze Entra ID Directory roles and identify users with administrative privileges. The script lists each role and the number of users… SANS Internet Storm Center · 4d ago Medium entradirectoryadminrightssecurityaudit
threat-intel AI Speeds Up Malware Development, Not Its Success Rate: Analysis A Palo Alto Networks Unit 42 analysis of 405 AI-linked malware samples revealed that while AI is accelerating malware development, it hasn't significantly improved the malware's ability to evade detection. The majority o… SecurityWeek · 4d ago Medium CHUNaimalwaresandbox
threat-intel Spyware for Babies A growing trend of surveillance technology targeting babies is raising serious privacy concerns. Companies like Nanit are collecting vast amounts of biometric and behavioral data, utilizing AI to monitor development and… Schneier on Security · 4d ago Medium privacysurveillanceai
threat-intel Nigeria Looks to Sovereign Cloud for Cyber, National Security Nigeria is pursuing a sovereign cloud initiative to bolster its national cybersecurity, economic development, and technological independence. Driven by increasing cyberattacks and a desire to reduce reliance on foreign c… Dark Reading · 4d ago Medium NGsovereign cloudcybersecuritydata residency
data-breach Sensitive Information Exposed in Nutex Health Data Breach Nutex Health, a healthcare management company, experienced a data breach resulting in the potential exposure of sensitive information, including patient data, employee details, and business records. The company is curren… SecurityWeek · 4d ago Medium data breachhealthcarepatient data
threat-intel ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, (Wed, Aug 26th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · 5d ago Medium phishingvulnerabilitycredential theft
vulnerability Multiples vulnérabilités dans OpenSSL (26 août 2026) Multiple vulnerabilities have been discovered in OpenSSL, allowing for denial of service attacks and policy bypasses. These vulnerabilities affect various OpenSSL versions and could be exploited by attackers. Users are a… CERT-FR · 5d ago Medium CVE-2026-14457CVE-2026-18798CVE-2026-54874vulnerabilityopensslsecurity
vulnerability Multiples vulnérabilités dans les produits Veeam (26 août 2026) Multiple vulnerabilities have been discovered in Veeam products, allowing an attacker to compromise data confidentiality and bypass security policies. Veeam has released security bulletins with patches to address these i… CERT-FR · 5d ago Medium CVE-2026-58070CVE-2026-65641vulnerabilitypatchsecurity
threat-intel Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation The Linux Foundation will manage TRACE, a new open standard for verifying the behavior of AI agents and confidential workloads. Developed collaboratively by AMD, Intel, Microsoft, and the Technology Innovation Institute,… SecurityWeek · 5d ago Medium aiconfidential computingtrust