threat-intel Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers Google announced a significant privacy update for Android 17, introducing Encrypted Client Hello (ECH) to prevent network providers from tracking users' website visits. This feature is being rolled out alongside Local Network Protection and Certificate Transparency enhancements, aiming to bolster overall connection pri… The Hacker News · 2d ago Medium privacynetworksecurity
vulnerability Ebyte NE2-D11 A CISA advisory highlights critical vulnerabilities in Ebyte NE2-D11 devices, primarily due to a lack of consistent authentication enforcement and cleartext transmission of sensitive information. The vendor, Ebyte, has n… CISA Advisories · 5d ago High CVE-2026-73125CVE-2026-73809CVE-2026-73839CHvulnerabilityauthenticationencryption
threat-intel Hardware Makers Implement Post-Quantum Cryptography as Security Threats Near Chip manufacturers are proactively integrating post-quantum cryptography (PQC) into their hardware to prepare for the future threat of quantum computers. While a full transition will take years, companies like Intel and… Dark Reading · Aug 21, 2026 High quantum computingpost-quantum cryptographyhardware security
vulnerability N-able Bug Exposes Password Vault Master Keys N-able Passportal, a popular password manager used by MSPs and SMBs, has a significant security vulnerability allowing malicious websites to steal users' vault credentials. The browser extension blindly trusts all incomi… Dark Reading · Aug 20, 2026 High password managerbrowser extensioncloud security
threat-intel New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data Adversa AI has discovered a technique called "Cryptographic Context Injection" that allows an attacker to steal user data, including names, location, subscription tier, and conversation history, from xAI's Grok chatbot.… The Hacker News · Aug 20, 2026 High prompt-injectiondata-exfiltrationencryption
vulnerability Siemens LOGO! Soft Comfort Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling, allowing a local attacker to extract the master key and decrypt project data or remove passwords. These v… CISA Advisories · Aug 13, 2026 High CVE-2026-57262CVE-2026-57263GEencryptionpasswordhardcoded
threat-intel WhatsApp Unveils New Scam Alert Feature WhatsApp is rolling out a limited beta feature called Scam Alert, designed to identify potentially scam messages on users' devices *before* they are sent. The feature uses on-device machine learning, doesn't send message… SecurityWeek · Aug 12, 2026 Medium GERUmachine learningencryptionprivacy
threat-intel OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning Researchers have discovered a significant vulnerability in OpenAI, Anthropic, and Google's AI APIs that allows weaker AI models to decode the reasoning processes of stronger models by replaying encrypted reasoning blocks… The Hacker News · Aug 12, 2026 High encryptionapiprompt injection
ransomware DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt The DeadLock ransomware group is utilizing a sophisticated, blockchain-backed infrastructure to enhance operational resilience and evade takedown efforts. They leverage decentralized proxy servers managed via Polygon sma… The Hacker News · Aug 11, 2026 High ITSPPOransomwareblockchainsmart contracts
threat-intel The Permanent Threat: Analyzing Aeternum’s Blockchain-Based C2 Operations and Communications Aeternum is a newly discovered blockchain-based botnet loader utilizing the Polygon blockchain for command and control. Instead of relying on traditional servers, threat actors use smart contracts to issue encrypted inst… Palo Alto Unit 42 · Aug 10, 2026 High blockchainc2polygon
threat-intel Linux Shell Forensic: Let?s Dive Into Atuin!, (Fri, Aug 7th) This article details Atuin, a tool that enhances shell history tracking by storing command history in a SQLite database, providing richer context (directory, duration, exit code, hostname) and end-to-end encryption acros… SANS Internet Storm Center · Aug 7, 2026 Medium forensicsshellhistory
vulnerability CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities The CISA has issued a warning about three actively exploited vulnerabilities affecting IBM Langflow OSS, N-able N-central, and Apache Tomcat. These vulnerabilities – CVE-2026-9198, CVE-2026-18556, and CVE-2026-34486 – ar… SecurityWeek · Aug 5, 2026 High CVE-2026-9198CVE-2026-18556CVE-2026-18577CHcvepatchremote code execution
threat-intel Apple launches new legal challenge against UK over iCloud access Apple is challenging the UK government’s legal demands for access to user data stored on iCloud, specifically related to a Technical Capability Notice (TCN) that requires Apple to retain the ability to access iCloud cont… The Record · Aug 4, 2026 High UKUSencryptiondata-privacylaw-enforcement
threat-intel MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection MedusaHVNC is a sophisticated remote access trojan (RAT) sold as a service, utilizing hidden Windows desktops to evade detection and maintain a persistent presence on victims' systems. BlackFog researchers discovered the… SecurityWeek · Jul 27, 2026 High RUrathidden desktopencryption
threat-intel Chat Control : un pirate cible 24 responsables politiques français A hacker has released personal data of 24 French politicians, including photographs, contact information, and administrative IDs, in a protest against Chat Control 1.0, a temporary European measure designed to detect chi… ZATAZ · Jul 26, 2026 High FRdata breachdoxingcyberattack
vulnerability Panduit IntraVUE Pronetiqs has identified and reported several vulnerabilities in Panduit IntraVUE software versions 3.2.1a14 and earlier, posing significant risks to industrial control systems. These vulnerabilities include plaintext st… CISA Advisories · Jul 23, 2026 High CVE-2026-40430CVE-2026-42933CVE-2026-44955industrial control systemsot securitypassword vulnerability
threat-intel End-to-End Encryption and “Going Dark” This analysis examines the ongoing debate surrounding end-to-end encryption (E2EE) and government efforts to restrict its use. The paper argues that the assumption that E2EE completely prevents law enforcement access is… Schneier on Security · Jul 23, 2026 Medium encryptiongoing darksurveillance
threat-intel New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack A new ransomware, ENCFORGE, is targeting AI model files and infrastructure, leveraging a vulnerability in Langflow (CVE-2025-3248) to gain remote code execution. The ransomware, developed by a threat actor linked to a pr… The Hacker News · Jul 21, 2026 High CVE-2025-3248CVE-2026-33017ransomwarelangflowdocker
threat-intel Scans for Hikvision Intelligent Security API, (Sun, Jul 19th) Hikvision cameras are being targeted by widespread scans due to a newly exposed REST API, the OPEN Intelligent Security API (ISAPI). This API allows remote control of camera settings and provides a simple way to identify… SANS Internet Storm Center · Jul 19, 2026 Medium iothikvisionreconnaissance
threat-intel Senator calls on Rubio, Blanche to push back against Canadian surveillance legislation Senator Ron Wyden is urging the Trump administration to push back against Canadian legislation that could force U.S. tech companies to create backdoors and share user data, potentially compromising U.S. national security… The Record · Jul 16, 2026 High CAUSsurveillanceprivacyencryption