threat-intel What the Data Says About AI in Security Operations in 2026 AI is rapidly becoming mainstream in security operations, with 40% of teams using it daily and 56% testing it out. However, security teams are struggling with alert fatigue, leading to missed alerts and a reliance on tur… The Hacker News · 3d ago High aisecurityalert fatigue
threat-intel Russian Hackers Phish EU Officials Over Messaging Apps Russian state-sponsored hackers are increasingly using messaging apps like WhatsApp and Signal to spear-fish EU government officials, bypassing traditional email security measures. The attacks, targeting high-ranking ind… Dark Reading · 3d ago High RUCHIRphishingsocial engineeringmessaging
threat-intel CISO Conversations: Chris Wheeler – Trust Is the Job, From the Navy to the C-Suite Chris Wheeler, currently CISO at Resilience, draws heavily on his extensive experience in cybersecurity and leadership, particularly his time in the US Navy. He emphasizes the importance of trust – both in the CISO-team… SecurityWeek · 3d ago High leadershiptrustrisk management
threat-intel Two Alleged ‘TeamPCP’ Hackers Arrested in Australia Two men, believed to be members of the Australian cybercrime group TeamPCP, have been arrested in Western Australia. TeamPCP is a prolific group responsible for a long-running series of software supply chain attacks, emb… Krebs on Security · 3d ago High AUSOsupply-chaincybercrimeopen-source
threat-intel Spark RAT Targets Cambodia, Abuses Vulnerable OPSWAT Driver to Disable Security Tools A new campaign targeting Cambodia is utilizing a sophisticated multi-stage attack leveraging a vulnerable OPSWAT driver to deploy the open-source remote access trojan, Spark RAT. Attackers are using deceptive phishing em… The Hacker News · 3d ago High CVE-2026-36425KHphishingransomwaremalware
threat-intel Threat landscape for industrial automation systems. Q2 2026 In Q2 2026, the percentage of ICS computers blocked by malicious objects continued to decline, hitting a low of 19.15%, the lowest since 2022. East Asia and Africa saw significant increases in threat percentages across… Securelist · 3d ago High RUCHAFicsindustrial automationcybersecurity
threat-intel JavaScript obfuscation: From party trick to phishing kit This article from Cisco Talos explores the techniques used to obfuscate JavaScript code, primarily for malicious purposes like phishing and malware delivery. The author details various methods of hiding code, including s… Cisco Talos · 3d ago High obfuscationjavascriptmalware
threat-intel The Future of AI-Driven Security Depends on Complete Data The article argues that AI-powered security solutions are failing because they are often fed incomplete data. Traditional security systems filter and normalize data, resulting in a loss of context and preventing AI from… SecurityWeek · 3d ago High aidata privacydata sovereignty
threat-intel LLM-Based Social Engineering Scams OpenAI successfully disrupted a sophisticated social engineering operation originating in Cambodia, which was leveraging large language models (LLMs) like ChatGPT to conduct a wide range of scams, including romance scams… Schneier on Security · 3d ago High KHllmsocial engineeringscam
threat-intel US Disrupts Chinese Hacking Platform Used in Military and Critical Infrastructure Attacks The US government has disrupted a Chinese hacking platform and botnet, QTFY, used by Chinese threat actors to target military and critical infrastructure systems in the United States. The disruption targeted QScan and QT… SecurityWeek · 3d ago High CHhackingcyberespionagebotnet
threat-intel New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access Researchers at the University of Toronto have developed GPUThor, a Rowhammer attack that bypasses ECC memory protection on NVIDIA Ampere-class workstation GPUs (A4000, A5000, A6000) to achieve denial-of-service and privi… The Hacker News · 3d ago High rowhammergpuprivilege escalation
threat-intel Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services A pro-Russian hacker group, Server Killers, claimed responsibility for a sustained cyberattack targeting multiple Norwegian government digital services. The attack, initiated following Norway’s increased security coopera… SecurityWeek · 3d ago High NORUDEcyberattackrussiacyberwar
threat-intel CISA Adds Six Exploited Flaws to KEV, Including NetScaler, Linux, and SQL Server Bugs The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added six previously exploited vulnerabilities to its KEV catalog, including flaws in Citrix NetScaler, Linux, and Microsoft SQL Server. These vulnerab… The Hacker News · 3d ago High CVE-2019-1068CVE-2026-8452CVE-2022-0995SWGEHOkevexploitationvulnerability
vulnerability Recent Citrix NetScaler Vulnerability Exploited in the Wild A critical Citrix NetScaler vulnerability (CVE-2026-8452) is currently being actively exploited in the wild, prompting CISA to urge immediate action from government agencies. The vulnerability allows for unauthenticated… SecurityWeek · 3d ago High CVE-2026-8452CVE-2026-8451vulnerabilityremote code executionunpatched
threat-intel ISC Stormcast For Thursday, August 27th, 2026 https://isc.sans.edu/podcastdetail/10070, (Thu, Aug 27th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · 3d ago High phishingsupply chainvulnerability
threat-intel FBI seizes hacking tools it says China used to attack NASA, DOE, US Senate and other critical networks The FBI has seized hacking tools believed to have been used by Chinese state actors to target critical US infrastructure, including NASA, the Department of Energy, and the US Senate. These tools were used to conduct reco… The Register · 3d ago High CVE-2019-11510CVE-2019-19781CHcyber espionagestate-sponsoredcritical infrastructure
threat-intel Smashing Security podcast #482: This hacker leaked GTA 6 – and launched their own cryptocurrency This episode of Smashing Security tackles the recent leak of GTA 6 gameplay footage by a hacker known as CyberLeak. The hacker, motivated by both attention and financial gain, released video clips of the game, including… Graham Cluley · 3d ago High hackerleakgta6
threat-intel Dark Caracal Adds New Malware to Cyber Espionage Arsenal The Dark Caracal cyber-espionage group, linked to Lebanon, has added a new modular malware framework called GoCaracal to its arsenal. This framework, developed since 2026, is used for data theft, maintaining persistent a… Dark Reading · 3d ago High LBVEBRcyber-espionagedata theftmalware
threat-intel Exclusive: NSA to host a hacker reunion in bid to rebuild secretive unit The NSA is hosting a reunion for former members of its elite hacking unit, Tailored Access Operations (TAO), in an attempt to rebuild the group and bolster its capabilities. The event, spearheaded by NSA Deputy Director… The Record · 4d ago High hackingintelligencereunion
threat-intel Red Flags That Expose Fake North Korean IT Workers North Korean operatives are increasingly sophisticated in their attempts to infiltrate organizations by posing as IT workers, often leveraging stolen or fabricated identities and VPNs to mask their locations. Huntress In… Dark Reading · 4d ago High CHNEnorth koreanvpnproxy