threat-intel CISO Conversation: Russ Kirby – Passion Is the Antidote to Burnout Russ Kirby, a CISO with extensive experience at companies like Ping Identity, Creditsafe, and ForgeRock, attributes his success and longevity in cybersecurity to a deep passion for the field and a proactive approach to c… SecurityWeek · Aug 4, 2026 High cisoburnoutai
threat-intel Russian businesses erase Durov-linked products after 'terrorist' designation Following Russia's designation of Telegram founder Pavel Durov as a terrorist and extremist, numerous Russian businesses are removing products associated with him, including books, films, and merchandise. Despite these e… The Record · Aug 4, 2026 High RUFRUAcensorshipduraovtelegram
threat-intel Weaponized Email AI Assistants Could Help Attackers Hijack Accounts Attackers are leveraging compromised email accounts and their built-in AI assistants to bypass security measures and conduct sophisticated phishing attacks against executives. By using the AI assistant to gather informat… SecurityWeek · Aug 4, 2026 High phishingaiemail
threat-intel Zenity Raises $125 Million in Series C Funding Zenity, an AI security company, secured $125 million in Series C funding to bolster its efforts in securing AI agentic frameworks and expanding its global presence. This investment reflects the growing need for specializ… SecurityWeek · Aug 4, 2026 Medium ISUSaisecurityagentic ai
threat-intel Keyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks A sophisticated npm worm, linked to the Keyv vulnerability and attributed to the Shai-Hulud threat actor family, has spread across hundreds of packages, injecting credential-stealing and malicious code. The worm leverage… The Hacker News · Aug 4, 2026 High npmsupply-chaincredential-stealing
threat-intel Fake Adobe and Zoom Updates Install ScreenConnect for Persistent Remote Access A multi-wave campaign leveraging social engineering to deploy Remote Monitoring and Management (RMM) software, specifically ScreenConnect, is actively targeting users with fake Adobe and Zoom updates, as well as business… The Hacker News · Aug 4, 2026 High phishingmalwaresupply-chain
threat-intel The Frontier AI Vulnerability Burst: Industrializing Autonomous Zero-Day Discovery in Open-Source Software Palo Alto Unit 42’s research demonstrates a significant shift in vulnerability discovery due to the emergence of frontier AI. Their system, NOVA, autonomously analyzed 3,915 open-source projects in just two months, uncov… Palo Alto Unit 42 · Aug 4, 2026 High vulnerabilityopen-sourceai
threat-intel AI Notetaker Lets Hackers Spy on Government, Corporate Video Calls An AI meeting assistant, tl;dv, is vulnerable due to a misconfiguration in its Firebase environment, allowing unauthorized access to users' video calls and meeting data. A security researcher discovered that users could… Dark Reading · Aug 4, 2026 High MAUKBRfirebaseaimeeting assistant
threat-intel Apple launches new legal challenge against UK over iCloud access Apple is challenging the UK government’s legal demands for access to user data stored on iCloud, specifically related to a Technical Capability Notice (TCN) that requires Apple to retain the ability to access iCloud cont… The Record · Aug 4, 2026 High UKUSencryptiondata-privacylaw-enforcement
threat-intel Almost Half of Malware Samples Communicate Direct to IP Almost half (45.32%) of malware samples with Command & Control (C2) activity bypass DNS entirely, communicating directly to IP addresses. This behavior, known as D2IP, is prevalent across various threat types, including… Palo Alto Unit 42 · Aug 4, 2026 High BRd2ipdnsc2
threat-intel Botnet Hunting for Vulnerabilities in Diagnostic Tools, (Tue, Aug 4th) A SANS Internet Storm Center alert highlights a botnet actively scanning for vulnerabilities in diagnostic tools. The issue stems from a common practice of diagnostic tools executing operating system commands directly, o… SANS Internet Storm Center · Aug 4, 2026 Medium CVE-2024-12856CVE-2013-7179CVE-2020-8949command-injectionos-command-executionvulnerability
vulnerability Swiss IT agency hacked, 200 accounts compromised, SharePoint vulns suspected The Swiss Federal Office for Information Technology and Communications (BIT) was hacked, with approximately 200 accounts compromised due to vulnerabilities in on-premises Microsoft SharePoint servers. Hackers exploited k… The Record · Aug 4, 2026 High SWsharepointvulnerabilityiis
threat-intel Tennessee congressional hopeful accused of shooting license plate cameras Several AI and open-source model developments are occurring, including Alibaba's release of its Qwen model and competition in the AI space. Simultaneously, security concerns are rising, with reports of phishing attacks i… The Register · Aug 4, 2026 Medium CHIRaiopen-sourcephishing
threat-intel How legitimate cloud platforms enable phishers to bypass MFA Threat actors are increasingly leveraging legitimate cloud platforms – like Cloudflare, Vercel, Netlify, and GitHub Pages – to conduct sophisticated phishing attacks. These attacks utilize multi-stage adversary-in-the-mi… Securelist · Aug 4, 2026 High phishingaitmbitb
threat-intel Obsidian Security Raises $85 Million at $1.1 Billion Valuation Obsidian Security, a company specializing in AI agent security governance, has raised $85 million in a Series D funding round, valuing the company at $1.1 billion. The investment will fuel their expansion into governing… SecurityWeek · Aug 4, 2026 Medium aiagentic-aigovernance
vulnerability Thermo Fisher Applied Biosystems Genetic Analyzers Thermo Fisher Scientific has issued a security advisory regarding vulnerabilities in its Applied Biosystems Genetic Analyzers, specifically the data collection software and instrument software. These vulnerabilities coul… CISA Advisories · Aug 4, 2026 High CVE-2026-17583vulnerabilitydnadata manipulation
vulnerability Acrisure KARR BT and DR-100 A critical vulnerability has been identified in Acrisure KARR BT and DR-100 automotive anti-theft systems, allowing an attacker within Bluetooth range to potentially control vehicle functions, including door unlocking an… CISA Advisories · Aug 4, 2026 Critical CVE-2026-18411USbluetoothfirmwarecwe-321
vulnerability TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover Researchers at Forescout discovered 15 vulnerabilities in TP-Link’s Omada networking ecosystem’s zero-touch provisioning (ZTP) system, allowing attackers to potentially take over entire networks by chaining together thes… SecurityWeek · Aug 4, 2026 High CVE-2025-7850CVE-2025-7851ztpnetworkvulnerability
threat-intel When Vibe Hacking Turns AI into the Junior Hacker Every Adversary Always Wanted Generative AI is lowering the barrier to entry for cyberattacks, allowing individuals with limited technical expertise to rapidly learn and adapt attack techniques. This shift is changing the dynamics of offensive securi… The Hacker News · Aug 4, 2026 High aicyberattackoffensive security
threat-intel CAF Bank reopens online service but warns of further outages This article is a collection of cybersecurity and technology news snippets. It covers a range of topics including a phishing campaign mimicking Signal support, a vulnerability impacting Joomla extensions, and a new X11 s… The Register · Aug 4, 2026 Medium CHIRphishingvulnerabilitycybersecurity