threat-intel US Water Systems Get Cyber Boost From New Senate Bill and ‘Water Watch Center’ The US is bolstering its defenses against cyberattacks targeting water infrastructure through a combination of new legislation and a grassroots initiative. The Water Cyber Shield Act will expand federal oversight, while… SecurityWeek · Aug 11, 2026 Medium cybersecuritywater systemsdigital twins
threat-intel OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development OpenAI has released GPT-5.6-Cyber, a cybersecurity-focused AI model designed to assist vulnerability research and exploit development, while reducing refusals for high-risk tasks. The model, accessible through the Daybre… The Hacker News · Aug 11, 2026 High CVE-2026-15903UNaicybersecurityvulnerability
threat-intel Local governments in four states dealing with cyberattacks that have shut down services Local governments across four states – California, Oklahoma, South Dakota, Texas, and Wisconsin – are experiencing a surge in cyberattacks, leading to service disruptions and shutdowns. These attacks have impacted critic… The Record · Aug 11, 2026 High UScyberattacklocal governmentransomware
threat-intel Deepfake hiccup unmasks suspected digital certificate fraudster This article discusses a potential digital certificate fraud scheme linked to deepfake technology, where Russian actors are impersonating Signal support to launch phishing attacks. The vulnerability stems from flaws in J… The Register · Aug 11, 2026 Medium RUdeepfakephishingjoomla
threat-intel Kids’ online safety bill faces dim prospects of passage this session despite progress The Kids Online Safety Act (KOSA), a landmark bill aimed at increasing online safety for children, faces significant obstacles in Congress, particularly regarding a ‘duty of care’ provision requiring companies to take re… The Record · Aug 11, 2026 High UNonline safetychildrenfirst amendment
threat-intel A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices Researchers at the University of Birmingham and Fuzzware discovered a vulnerability in cellular IoT devices that allows a malicious SIM card to execute commands on the device. The vulnerability stems from a SIM card's ab… The Hacker News · Aug 11, 2026 High CVE-2025-48618CVE-2026-57550CVE-2021-31698UNiotcellularsim card
vulnerability Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo Mozilla has revoked a cryptographic key used to sign Firefox and Thunderbird downloads for Linux after an unencrypted copy was accidentally committed to a private repository. This affects older downloads and requires man… The Hacker News · Aug 11, 2026 High gpgkey revocationgithub breach
threat-intel Corma Raises $60 Million for Defensive Cybersecurity AI Model Corma, a new cybersecurity firm, has secured $60 million in funding to develop an AI-powered defensive cybersecurity model. Unlike general AI models, Corma’s system is specifically designed to analyze security telemetry… SecurityWeek · Aug 11, 2026 Medium aicybersecuritydefense
threat-intel Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants The Head Mare APT group is exploiting multiple vulnerabilities in TrueConf servers to deliver the PhantomCore and PhantomGraph backdoors. Attackers connect to TrueConf servers without authorization, call a server functio… Securelist · Aug 11, 2026 Critical aptmalwarebackdoor
vulnerability Pulsetto Vagus Nerve Stimulator A critical vulnerability (CVE-2026-18844) exists in Pulsetto Vagus Nerve Stimulator devices, allowing attackers to bypass security measures and manipulate device settings via Bluetooth Low Energy (BLE). The vulnerability… CISA Advisories · Aug 11, 2026 Critical CVE-2026-18844LIbluetoothcvecontrol systems
vulnerability Mira Hormone Monitor, Mira Android App Multiple vulnerabilities in the Mira Hormone Monitor and Mira Android App allow an attacker to access unauthorized health profile information, make changes to health data, cause denial-of-service conditions, and potentia… CISA Advisories · Aug 11, 2026 High CVE-2026-66875CVE-2026-66098CVE-2026-67558bleauthenticationwebview
threat-intel Mozilla revokes Firefox signing key after unencrypted copy lands in GitHub Mozilla has revoked a signing key for Firefox after an unencrypted copy of the key was accidentally uploaded to GitHub. This significantly increases the risk of malicious actors creating fake Firefox installations. The i… The Register · Aug 11, 2026 High key-managementfirefoxvulnerability
threat-intel Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers Security researchers simulated a cryptocurrency startup and hired three individuals they believe were North Korean operatives to test recruitment processes and identify potential risks. The operation involved sophisticat… The Hacker News · Aug 11, 2026 High USNOnorth korearecruitmentidentity theft
threat-intel AI for Military Support Research suggests that despite concerns about AI automating military decisions, human operators exhibit ‘algorithmic aversion’ when presented with AI recommendations, particularly in scenarios with potential for signific… Schneier on Security · Aug 11, 2026 Medium ILaimilitarydecision-making
threat-intel Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities A Chrome extension, initially banned for stealing AI chat conversations, has returned to the Chrome Web Store and is now targeting enterprise browsers through Google's CDN. The extension employs a sophisticated affiliate… SecurityWeek · Aug 11, 2026 High chromeextensionaffiliate
supply-chain Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11 Researchers have discovered a method to leverage Windows Plug and Play to achieve SYSTEM-level access on Windows 11 machines. By emulating USB devices and exploiting a vulnerability in the driver installation process, an… The Hacker News · Aug 11, 2026 High usbremotedriver
threat-intel Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets A malicious tool server leveraging the Model Context Protocol (MCP) can silently exfiltrate sensitive data – including SSH keys, source code, and customer data – from AI coding assistants. The attack works by splitting r… The Hacker News · Aug 11, 2026 High aimodel context protocolghostsplice
Project CAV3RN continues: Google Apps Script as C2 relay and DNS-based C2 channel selection Project CAV3RN, a modular espionage framework used against targets in Israel, continues to evolve, utilizing a sophisticated multi-transport C2 communication module. The framework now leverages DNS A-record responses to… Securelist · Aug 11, 2026 High
malware Kimwolf v7: An Evolution of the Kimwolf Botnet A new version (v7) of the Kimwolf botnet, primarily targeting Android TV boxes, has been identified. This version significantly enhances DDoS attack capabilities through HTTP/2-based flooding and browser fingerprinting,… Palo Alto Unit 42 · Aug 11, 2026 CVE-2016-5195
threat-intel Hacker Conversations: Marcus Hutchins and the Journey From the Gray Zone to Redemption Marcus Hutchins, a cybersecurity professional, rose to prominence in 2017 for his role in stopping the WannaCry ransomware attack. Initially involved in a cybercrime forum and creating a blog (MalwareTech) that inadverte… SecurityWeek · Aug 11, 2026 High USUKneurodiversitywannacrymalwaretech