Threat actors with ties to North Korea have been attributed to a sophisticated macOS malvertising campaign that involves redirecting users to fake web pages displaying a full-screen non-existent update sequence to deliver malware as part of a new iteration of the long-running Contagious Interview campaign. The defining aspect of the attack is that bogus…
Australian Cyber Security Magazine2026-07-30 23:45 UTC
The Australian Communications and Media Authority has commenced Federal Court proceedings against Optus Mobile Pty Limited, alleging the telecommunications provider breached its legal obligations during the September 2025 network outage [...]
El mercado de la inteligencia artificial (IA) ha entrado en una fase de madurez y exigencia económica que obliga a las corporaciones a justificar el retorno financiero y la gobernanza de cada
CISA is urging water and wastewater utilities to lock down internet-exposed controllers, days after intrusions hit dozens of Minnesota systems. The post CISA Urges Water Sector to Protect OT After Coordinated Attacks on PLCs appeared first on SecurityWeek .
La inteligencia artificial está acelerando el ritmo de los negocios y obligando a las empresas a replantearse tanto la cantidad como el tipo de espacio de oficina que necesitan. En
A coordinated cyberattack that targeted more than 30 Minnesota community water systems has alarmed industrial cybersecurity experts, not because it caused widespread disruption, but because it appears to represent the first distributed campaign against dozens of small utilities linked by a common operational technology weakness. While the affected…
A likely Iran-backed actor targeted more than 30 community water systems in Minnesota in a sobering reminder of rising threats to US critical infrastructure.
The acquisition will add approximately 65 cybersecurity professionals to Bank of America’s operations in the United Kingdom. The post Bank of America to Acquire Cybersecurity Firm MDSec appeared first on SecurityWeek .
One of Anthropic's Claude models built and uploaded a malicious Python package to PyPI during a botched security evaluation, where it ran on 15 real systems and stole credentials from a security vendor. It was one of three incidents affecting real companies. [...]
One of Anthropic's Claude models built and uploaded a malicious Python package to PyPI during a botched security evaluation, where it ran on 15 real systems and stole credentials from a security vendor. It was one of three incidents affecting real companies. [...]
A lot of security still comes down to trusting the wrong screen. This week, that screen might be a login page, an install guide, a recruiter call, or a familiar service behaving slightly wrong. Behind it: reused credentials, exposed systems, quiet loaders, abused trust, and exploit paths that should have been harder. Some defenses improved. The loose parts…
Access Restricted Access to the page you were trying to reach is restricted. If you are a WaterISAC member and you are already logged in , you may not have access to certain restricted material. If you believe your access permissions are incorrect or if you have any questions, please contact us . If you are not yet a member , please consider joining and…
Schwachstellen wachsen schneller als Teams reagieren können. Asset-Sichtbarkeit, KI-beschleunigte Exploits, Cloud-Risiken. Intelligente Priorisierung ist essentiell. Erfahren Sie mehr.
A seller posting as Roiese is offering what they describe as full administrative access to the FortiGate firewall and network security environment of Golden Tulip Bahrain, a hotel property in Bahrain.
A forum user posting as Sub21 has published what they describe as the database of ExpoEmpleo, a Uruguayan employment platform, covering registrations since around 2015.
(vendor/severity tags below are heuristic) <p>As federal enforcement tightens and states begin stepping in with their own cybersecurity mandates, water and wastewater utilities face a looming wave of hard compliance deadlines, compounded by recent cyber attacks on state water utilities.</p><div class="blog-see-also"><div class="col-sm-12"><h2>Key…
Access Restricted Access to the page you were trying to reach is restricted. If you are a WaterISAC member and you are already logged in , you may not have access to certain restricted material. If you believe your access permissions are incorrect or if you have any questions, please contact us . If you are not yet a member , please consider joining and…
Access Restricted Access to the page you were trying to reach is restricted. If you are a WaterISAC member and you are already logged in , you may not have access to certain restricted material. If you believe your access permissions are incorrect or if you have any questions, please contact us . If you are not yet a member , please consider joining and…
Access Restricted Access to the page you were trying to reach is restricted. If you are a WaterISAC member and you are already logged in , you may not have access to certain restricted material. If you believe your access permissions are incorrect or if you have any questions, please contact us . If you are not yet a member , please consider joining and…
Open Source Security Foundation2026-07-30 19:58 UTC
The July 2026 OpenSSF Newsletter highlights the upcoming Community Day Europe agenda and new compliance resources for the EU Cyber Resilience Act (CRA). It also introduces a dedicated Policy & Regulatory section, technical updates on dependency firewalls and AI artifact signing, and global community outreach efforts.
Don't let abandoned usernames become your next security breach. Learn how repojacking works and how you can protect your codebase from malicious dependency poisoning.
Are your trusted dependencies hiding a secret threat? Learn how package hijacking works and how you can protect your software supply chain from malicious code.
The European football landscape is alive with high-stakes tension as the 2026–27 UEFA Europa League second qualifying round reaches its critical second leg. On July 31, 2026, the historic Estádio da Luz in Lisbon, Portugal serves as the battlefield for a dramatic clash between Portuguese powerhouse S.L. Benfica and Swiss underdogs FC St. Gallen 1879.…
The global reality television landscape has undergone a massive shift over the last few years, moving away from standard physical challenges toward high-stakes psychological warfare. At the absolute pinnacle of this evolution sits Studio Lambert and Peacock’s breakout hit, The Traitors. As the franchise expands globally into 2026—with highly anticipated…
The deal extends Okta's reach beyond identity management and into the realm of security operations, positioning the company to compete more directly on identity threat detection and response. The post Okta to Acquire Identity Threat Detection Firm Permiso appeared first on SecurityWeek .
In a filing for federal regulators, Massachusetts-based Analog Devices said intruders had exfiltrated data from its networks earlier this summer, but the scope of the incident is still under investigation.
A now-patched vulnerability in Azure Cosmos DB could have let an attacker escape the service's Gremlin query sandbox and obtain full read and write access to databases across customer tenants, according to Wiz. Wiz, which codenamed the chain CosmosEscape, said the exploit chain began with a crafted query against a Gremlin database controlled by the…
A threat actor claims to have breached Ling App, alleging the theft of nearly 6 million user profiles containing account, subscription, device, and application data. This article was first published by BreachNews . Original source: Ling App Allegedly Breached With Nearly 6 Million User Profiles Claimed Exposed
In 2026, the tech hiring landscape looks vastly different than it did just a few years ago. With automated resume parsers filtering out generic keyword-stuffed CVs and AI code generation tools making basic programming tasks instantaneous, hiring managers no longer hire based on certificates or tutorial clones. Recruiters, engineering managers, and senior…
The job market for fresh graduates in 2026 has undergone a profound structural shift, setting a whole new benchmark for students gearing up for campus recruitment in 2027. Gone are the days when a high CGPA and standard textbook knowledge were enough to secure a lucrative job offer on campus. Today, recruitment drives are leaner, highly selective, and…
The premium smartphone ecosystem in 2026 is undergoing a major technological shift, moving away from incremental design tweaks toward advanced semiconductor processing and deeply integrated artificial intelligence infrastructure. Ahead of Google's highly anticipated hardware event scheduled for August 12, 2026, official leaks, regulatory filings, and supply…
ThreatCluster - Threat Intelligence Feed2026-07-30 18:35 UTC
A critical SQL injection vulnerability, CVE-2026-4978, has been identified in the UMAI Vision Traffic Analysis System, affecting versions 30 to 33. This flaw allows unauthenticated attackers to execute arbitrary SQL commands remotely, leading to potential unauthorized access, data modification, or deletion. The vulnerability has been assigned a CVSS score…
The Common University Entrance Test for Undergraduate programs (CUET UG), administered by the National Testing Agency (NTA), stands as India's single-window portal for admission into top central, state, deemed, and private universities. Instituted to establish an equitable, standardized testing ecosystem across diverse educational boards, CUET UG has…
South Korea's Personal Information Protection Commission (PIPC) has fined telecommunications giant KT Corporation KRW 53.979 billion ($39 million) over data protection violations. [...]
One expert said they were pleased by the guidance, which touches on open-weight AI models, patching and more. The post CISA issues recommendations to federal agencies on open-source software security appeared first on CyberScoop .
The landscape of software development has shifted dramatically. What started as basic tab-autocomplete plugins a few years ago has evolved into full-fledged autonomous coding agents capable of reasoning, multi-file refactoring, and terminal execution. For modern software engineers, indie hackers, and students, choosing the right companion is no longer about…
RyRob.com: A Blog by Ryan Robinson | How Start & Grow an Online Business2026-07-30 18:13 UTC
I wanted to test something… can you learn how to start a dropshipping store with AI and get a real store live before dinner, without buying inventory, touching a single box, or losing two weeks to supplier spreadsheets? I decided to actually run this experiment, building a working outdoor dropshipping store from a blank screen Continue Reading The post How…
The internet has been set ablaze following the global unveiling of director Nitesh Tiwari’s mythological magnum opus, Ramayana: Part 1. Released globally during the sacred Brahma Muhurat on July 30, 2026, the four-minute-and-nine-second footage has given audiences a breathtaking look into what is shaping up to be Indian cinema's most ambitious visual…
The global cinematic landscape has just witnessed a defining moment in modern mythological storytelling. After months of intense industry anticipation, high-profile internet leaks, and complex international distribution negotiations, the official promotional campaign for director Nitesh Tiwari’s magnum opus has finally begun. In a deeply calculated cultural…
JetBrains is warning of a critical authentication bypass vulnerability affecting TeamCity On-Premises that could be exploited to achieve remote code execution. [...]
Indian athletics has reached a historic milestone on the global stage. For the first time at the Commonwealth Games, three Indian athletes have secured their spots in the ultimate showdown of the spear. Star thrower Neeraj Chopra, along with rising talents Rohit Yadav and Yash Vir Singh, have all successfully qualified for the men's javelin throw final at…
The intersection of renewable energy and rural socio-economic policy represents one of the most promising frontiers in modern governance. State welfare models across India have historically focused on direct benefit transfers, subsidized rationing, or agricultural relief. However, a structural shift is underway that combines sustainable livelihood creation…
The nexus between military strategic imperatives and academic research has long been the primary catalyst behind groundbreaking innovations worldwide. From satellite communications and radar systems to advanced artificial intelligence and quantum encryption, defense-backed academic research has reshaped modern technology. In 2026, India marked a historic…
Learn how I modernized an old codebase of mine using stacked sessions and pull requests in the GitHub Copilot app. The post Stacked sessions and pull requests in the GitHub Copilot app appeared first on The GitHub Blog .
For decades, modern agriculture has rested on a single, high-stakes compromise: sacrificing long-term ecological balance for immediate crop yields. Driven by the green revolution, the widespread application of synthetic plant nutrients—primarily Urea, Diammonium Phosphate (DAP), and Nitrogen-Phosphorus-Potassium (NPK) blends—helped turn India from a…
Hidden instructions in a Word document can make Microsoft 365 Copilot rewrite figures in a report, then copy the same instructions into the finished file. Håkon Måløy disclosed the technique on July 28, 144 days after reporting it to Microsoft. In his proof of concept, the internally generated file triggered the same behavior when it was used in a second…
CISA has issued a warning regarding a serious vulnerability in the Cisco Secure Firewall Management Center (FMC), which is currently being exploited in attacks. The flaw, identified as CVE-2026-20316, affects Cisco’s centralized management platform for firewall solutions and could allow remote attackers to gain easy access to sensitive network environments.…
Network firewalls are the workhorses of modern cybersecurity. They are trusted to protect the network, blocking malicious traffic and preventing intrusions and breaches. And for decades, network security teams have built controls around a relatively stable model: users connect to applications, applications exchange data, and security tools inspect packets,…
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they secretly rent the user's Internet connection out to strangers. But a groundbreaking new analysis finds these devices also routinely spoof themselves as mobile phones clicking ads on…
Melbourne, Florida, July 30th, 2026, CyberNewswire The growing number of high-profile AI security incidents making headlines around the world are not simply cybersecurity failures. They are architectural failures, according to OpenMatter Network Co-Founder and CEO Renee Davis. “Recent incidents involving increasingly autonomous AI systems – including…
ThreatCluster - Threat Intelligence Feed2026-07-30 16:38 UTC
A significant security update for perl-DBI has been released, addressing multiple vulnerabilities including CVE-2026-14380, which allows arbitrary Perl code execution. Other issues include CVE-2026-14740, leading to potential process crashes, and CVE-2026-15392, permitting arbitrary file reads and writes. The vulnerabilities affect various SUSE Linux…
Senator Ron Wyden (D-OR) sent a formal letter on July 27, 2026, to the Office of Management and Budget (OMB), the Cybersecurity and Infrastructure Security Agency (CISA), and the National Institute of Standards and Technology (NIST). The communication demands a coordinated federal mandate to phase out legacy, internet-facing virtual private network (VPN)…
ThreatCluster - Threat Intelligence Feed2026-07-30 16:31 UTC
On July 30, 2026, SUSE released an important update (2026-3423) for its Xen hypervisor addressing multiple vulnerabilities. The update resolves issues including buffer overruns and potential race conditions, with CVEs ranging from CVE-2026-42493 to CVE-2026-62434. Affected systems include SUSE Linux Enterprise Server and openSUSE Leap. The vulnerabilities…
Overview On July 29, 2026, the Ruby on Rails project published a security advisory for CVE-2026-66066 , a critical vulnerability affecting Active Storage image processing when used in conjunction with the libvips imag...
South Korean authorities and four security firms have disclosed a state-sponsored campaign that compromised trusted domestic websites. The attackers used those sites to exploit locally installed financial-security software and infect targeted visitors with SIGNBT or COPPERHEDGE backdoors. A compromised page could infect a system running a vulnerable…
The Chinese cybercrime group known as Silver Fox has been observed using new drivers as part of bring your own vulnerable driver (BYOVD) attacks targeting a Japanese organization in the industrial manufacturing sector to ultimately deliver ValleyRAT (aka Winos 4.0) for persistent remote access. "In this campaign, the group combines new vulnerable-driver…
A recently disclosed vulnerability in Home Assistant has unveiled how improper handling of FFmpeg inputs can be exploited to steal sensitive files and ultimately enable root-level command execution on affected systems. This issue, discovered by security researchers at elttam, highlights the dangers of integrating powerful multimedia tools like FFmpeg into…
This month’s updates help security and IT teams secure their AI environments, use AI to defend, and strengthen the foundations that AI-powered operations depend on. The post What’s new in Microsoft Security: July...
ThreatCluster - Threat Intelligence Feed2026-07-30 15:52 UTC
A critical heap buffer overwrite vulnerability (CVE-2026-61464) has been identified in GraphicsMagick affecting openSUSE systems. This flaw allows attackers to exploit X11 imports with crafted window titles, potentially leading to system compromise. The vulnerability was published on July 15, 2026, and affects multiple versions of GraphicsMagick across…
The best compliance programs aren't the biggest ones. They're the ones built on a short list of questions that can actually be answered, and that still hold true when the models change. The post Timeless Compliance: Why Better Questions Beat Bigger Frameworks appeared first on SecurityWeek .
A coordinated phishing campaign is actively exploiting India’s Income Tax Return (ITR) filing season by impersonating the Income Tax Department through WhatsApp messages. The fraudulent communications threaten recipients with a fabricated 72-hour penalty deadline, coercing them into opening malicious archives and installing banking malware. WhatsApp Tax…
AI has a role to play in Security Operations Centre (SOC) environments. According to EY, the number of senior security leaders dedicating at least a quarter of their cybersecurity budget to AI solutions for cybersecurity is expected to rise in the next two years, from nine percent today to 48 percent. The reason for this increased spend […] The post…
In this edition of Reporters' Notebook, our journalists discuss the ins and outs of Anthropic's Claude Mythos rollout. How seriously should we take its risks? How big of a deal is it?
Attackers are exploiting a significant portion of vulnerabilities even before defenders receive a published CVE (Common Vulnerabilities and Exposures). In the first half of 2026, 23.43% of known exploited vulnerabilities had evidence of active exploitation on or before the day their CVE was published. This figure is slightly lower than the 28.93% recorded…
ThreatCluster - Threat Intelligence Feed2026-07-30 15:21 UTC
Wiz Research disclosed a critical vulnerability named CosmosEscape in Azure Cosmos DB, allowing attackers to potentially compromise every database in the service, including Microsoft's internal systems like Entra ID, Teams, and Copilot. The flaw, residing in the Gremlin API, could have enabled attackers to acquire the Cosmos Master Key, granting full read…
Microsoft has introduced MAI-Cyber-1-Flash, its first artificial intelligence model designed specifically for cybersecurity tasks. The model runs exclusively inside MDASH, a multi-model vulnerability identification and remediation system. According to Microsoft’s announcement, the MDASH configuration with MAI-Cyber-1-Flash and GPT-5.4 scored 95.95% on the…
Analog Devices, Inc., a leading U.S. semiconductor manufacturer specializing in analog, mixed-signal, and digital signal processing technology, has confirmed a cybersecurity incident that led to unauthorized access to its internal systems and the exfiltration of company files. The Massachusetts-based chipmaker disclosed the security incident following an…
Cisco has released emergency hot fixes for an actively exploited vulnerability impacting Cisco Secure Firewall Management Center (FMC) Software. The issue is caused by static credentials for a low-privileged account and allows an unauthenticated remote attacker to sign in to an affected appliance and access sensitive information. Although the flaw has a…
La tecnología es, o debería ser, una herramienta para hacernos la vida más fácil. Porque la verdad es que ya no podemos vivir sin ella. La tenemos en el bolsillo, en el salón, en la cocina, en el coche y en un montón de dispositivos que funcionan sin que nos demos apenas cuenta. Hace unos años todo esto parecía irreal, pero hoy forma parte de la rutina…
Ruby on Rails has released security updates for a critical Active Storage vulnerability that can allow an unauthenticated attacker to read arbitrary files from an application server through crafted image uploads. Tracked as CVE-2026-66066 and rated 9.5 on the CVSS scale, the flaw can expose secrets accessible to the Rails process and potentially enable…
ThreatCluster - Threat Intelligence Feed2026-07-30 14:54 UTC
Authoritarian governments are increasingly using cyberattacks, particularly DDoS attacks, as a means of censorship against exiled media outlets. A report from Cloudflare indicates that exiled journalists face malicious web activity at four times the rate of other media organizations. Between February 2025 and January 2026, about 5% of requests to exile…
Broadcom has released emergency security updates for a critical VMware ESXi vulnerability that can allow an attacker to escape from a virtual machine and execute code on the underlying hypervisor host. Tracked as CVE-2026-47876 and rated 9.3 on the CVSS scale, the issue resides in the VMXNET3 network adapter. Successful exploitation requires the attacker to…
Los clientes de Revolut dispondrán de ChatGPT Go gratis como parte de las suscripciones que el banco digital ofrece. En su momento explicamos que ChatGPT Go es una nueva suscripción más barata que ChatGPT Plus, pero con mejores prestaciones que la versión Free. Su coste de 8 €/mes nos saldrá gratis con la oferta de Revolut. En esencia, reduce los límites…
Derrick Van Yeboah impersonated fake romantic partners and directly interacted with victims for more than nine years. The post Ghanaian national sentenced to 7 years in prison for stealing $10M from romance scam victims appeared first on CyberScoop .
A critical vulnerability, dubbed CosmosEscape, in Microsoft Azure Cosmos DB could have let attackers seize control of virtually every database hosted on the service, including Microsoft’s own internal systems. The vulnerability resided in Cosmos DB’s Gremlin API and, if exploited, could have enabled a cross-tenant attack affecting millions of customer…
HF does a detailed play-by-play of the incident with a neat visualization, stopping AI attackers via content that triggers their guardrails, Mythos finds attacks on HAWK and AES
GenieLocker, a newly identified ransomware linked to the financially motivated Toy Ghouls group, targets Windows, Linux, and VMware ESXi systems and has primarily attacked Russia’s manufacturing sector since March 2026. The Toy Ghouls group, also known as Bearlyfy, Labubu, and Laboo.boo, previously relied on ransomware families such as LockBit, Babuk, and…
ThreatCluster - Threat Intelligence Feed2026-07-30 14:04 UTC
On July 29, 2026, the Ruby on Rails security team published CVE-2026-66066, a critical arbitrary file read and remote code execution (RCE) vulnerability in Active Storage. Discovered by the Ethiack research team, this flaw affects default configurations of Rails 6.x, 7.x, and 8.x that utilize the vips image processor. Attackers can exploit this…
The Stable channel has been updated to Chrome version 151.0.7922.71.72 for Windows and macOS, and 151.0.7922.71 for Linux, with the rollout taking place over the coming days and weeks. According to Google’s security advisory, this release includes 370 distinct security fixes that address vulnerabilities in core browser components, graphics, networking, and…
Broadcom has released security updates to fix five vulnerabilities in VMware vCenter, ESX, Workstation, and Fusion, including three critical flaws that allow attackers to bypass authentication, execute arbitrary code, or escape from a virtual machine to the host. [...]
Cyberattack tools and infrastructure used by North Korea’s Lazarus Group appear to have been shared with ransomware criminals targeting South Korean organizations — further evidence of deepening entanglement between Pyongyang-backed hackers and the ransomware ecosystem.
The company will accelerate investments in R&D and product innovation to expand its agentic data control plane. The post DataBahn Raises $40 Million for Agentic Data Pipeline Management appeared first on SecurityWeek .
Un robot que se pasea por tu casa todos los días, esquiva los muebles y “entiende” cada habitación no es solo un electrodoméstico cómodo: según el modelo, puede incorporar cámaras, micrófonos y sensores con los que ve, escucha y dibuja el plano de tu vivienda. Esa comodidad tiene un precio, y casi nunca se paga en dinero: se paga en datos. Aquí vemos qué…
Motorola tiene muchas cosas de las que presumir, como su gran relación calidad-precio o sus modelos que cuentan con tan buen diseño como utilidad. Uno de los últimos en enamorar a sus usuarios es el Motorola Edge 70 Pro , y vamos a contarte nuestra experiencia con él tras varias semanas de uso para que sepas qué tal rinde, cómo hace las fotos, cuánto…
Am 17. Juli 2026 hat das WordPress-Sicherheitsteam Updates für den Kern veröffentlicht, die zwei zusammenhängende Schwachstellen schließen. In Kombination lassen sich diese von Angreifern ohne vorherige Anmeldung nutzen, um ein eigenes Administratorkonto anzulegen und darüber Code auf der jeweiligen Website auszuführen – etwa durch das Hochladen eines…
ThreatCluster - Threat Intelligence Feed2026-07-30 13:15 UTC
IBM has resolved multiple critical vulnerabilities in its WebSphere Application Server and WebSphere Application Server Liberty. The vulnerabilities, identified as CVE-2026-14446 and CVE-2026-14512, allow attackers to gain elevated privileges and execute malicious code remotely. These issues were published on July 28, 2026, and are considered critical due…
The Russian threat actors recently linked to the exploitation of a now-patched vulnerability in Zimbra have been observed exploiting another vulnerability, this time in Microsoft Outlook Web Access (OWA), to target U.S. and European government entities, as well as the telecommunications, financial, hospitality, and aerospace sectors. The activity, which…
El 2 de agosto entrará en vigor la Ley de IA de la Unión Europea (AI Act). Esto significa que habrá que tener en cuenta nuevas disposiciones clave, como las
AI agents are now being allowed to create business records, approve transactions, and execute financial workflows. ERP security firm Pathlock says most organizations don’t know if that is all they are doing. The company’s 2026 AI Governance Gap Report found that 79% of organizations do not have a dedicated AI governance team, despite AI agents being…
Google says artificial intelligence is dramatically increasing the number of security vulnerabilities it can find and fix in Chrome, with more than 1,000 security bugs patched across the browser's two most recent releases as it expands its use of AI. [...]
The company will invest in accelerating the development and adoption of its agentic platform. The post Discern Security Raises $13 Million in Series A Funding appeared first on SecurityWeek .
The startup’s community-powered agentic security platform helps proactively identify, prioritize, and remediate vulnerabilities. The post Cantina Emerges From Stealth With $8 Million in Funding appeared first on SecurityWeek .
A North Korea-linked hacker group was behind several high-profile compromises of open-source software libraries used by developers worldwide, researchers have found.
The Federal Communications Commission (FCC) added foreign-produced mobile robots and networked power inverters to its Covered List on July 28. The move generally prevents new models from receiving the equipment authorization required for import, marketing, or sale in the US. Previously authorized models can still be sold, and devices people already own are…
Residential security company Brinks Home has disclosed that hackers breached some of its systems and are threatening to leak allegedly stolen data. [...]
Residential security company Brinks Home has disclosed that hackers breached some of its systems and are threatening to leak allegedly stolen data. [...]
Chipmaker Analog Devices disclosed a data breach after detecting unauthorized access to systems on June 23. The investigation is ongoing. Semiconductor giant Analog Devices (ADI) disclosed a data breach following a cy...
Acronis ha presentado una importante evolución de su plataforma de ciberprotección AI-native para MSP, incorporando en una única experiencia de usuario capacidades de protección, infraestructura, gestión, inteligencia de negocio y ejecución autónoma. Las nuevas funcionalidades se
A critical vulnerability in the open-source AI agent platform Ruflo could allow unauthenticated attackers to take control of enterprise AI environments by exploiting an exposed Model Context Protocol (MCP) bridge, according to research published by Noma Security. The flaw, tracked as CVE-2026-59726 and dubbed RufRoot, carries a maximum CVSS score of 10.0…
The Series B funding round brings the total raised by Onyx Security to $153 million. The post Onyx Security Raises $113 Million to Control AI Agents in the Enterprise appeared first on SecurityWeek .
Researchers warn that AI could turn dangling DNS takeovers into a nation-state weapon capable of disrupting governments, banks and global supply chains. The post ‘DangleGeddon’: AI Could Weaponize Forgotten DNS Records at Global Scale appeared first on SecurityWeek .
Proofpoint announced significant enhancements to its Data Security Posture Management (DSPM) and data access governance capabilities in Europe, including expanded AI-powered data discovery and classification across Europe’s major business languages. Hosted from Proofpoint’s data centre located in Frankfurt,Germany, these investments help organisations adopt…
Canada’s new Critical Cyber Systems Protection Act (Bill C-8) introduces a strict 72-hour cyber incident reporting mandate. Find out how Tenable is helping critical national infrastructure operators bridge the IT/OT divide to ensure full compliance. Key takeaways: Bill C-8 introduces stringent new cyber incident reporting requirements and heavy financial…
Proofpoint, empresa líder en ciberseguridad y cumplimiento normativo, ha anunciado importantes mejoras en sus capacidades de Data Security Posture Management (DSPM) y gobernanza de acceso a datos en Europa, que incluyen una mayor cobertura
Budgets are stretched with varying priorities, yet safety threats continue to grow, challenging schools to strengthen their security posture using the resources they have on hand.
Cybercriminals are attempting to extort Britain’s Department for Education (DfE) after compromising what the hackers said was more than 600,000 pieces of data allegedly including names, email addresses and phone numbers.
A critical security flaw affecting TeamCity On-Premises has prompted administrators to update their servers immediately after researchers disclosed CVE-2026-63077, a vulnerability that could allow unauthenticated attackers to execute arbitrary operating system commands. The issue impacts all TeamCity On-Premises versions exposed over HTTP(S) and has been…
Threat actors are impersonating IT support staff in Microsoft Teams calls to gain remote access to corporate devices and deploy Chaos ransomware in attacks targeting North American organizations. [...]
Amazon has tied the September 2025 hijack of the npm packages debug and chalk to North Korea. For ten months, the incident sat in the public record as crypto theft: a maintainer phished through a lookalike npm domain and a wallet-draining script pushed into at least 18 packages carrying more than 2 billion weekly downloads between them. The original Aikido…
Hackers were detected on Analog Devices systems in June, and an investigation found that they stole files. The post Semiconductor Firm Analog Devices Discloses Data Breach appeared first on SecurityWeek .
Our experts discovered OctLurk and SilkLurk, backdoors operating primarily in memory, targeting Central Asia. They inject plugins to launch shells, scan networks, dump credentials, and keylogging.
Deepfakes have turned identity into banking’s softest target. The strongest defence may already exist inside the branch. By Rodolphe Hugel, Head of Smart Connect at Smart Biometrics, IDEMIA Public Security. The post The $25 million video call appeared first on Security Middle East Magazine .
A Russia-aligned threat group used a “half-click” exploit against Microsoft Exchange’s Outlook Web Access to install a browser-based backdoor when recipients opened specially crafted emails. The campaign began on July 22 and was conducted by TA488, which is also tracked as Void Blizzard and Laundry Bear, according to a report from the cybersecurity firm…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a newly disclosed security flaw impacting Cisco Secure Firewall Management Center (FMC) Software to its Known Exploited Vulnerabilities (KEV) catalog, following reports of zero-day exploitation. The vulnerability, assigned CVE-2026-20316 (CVSS score: 5.3), could permit an…
AI has introduced a new class of network traffic. Prompts, file uploads, model calls, and agent actions carrying sensitive business context now traverse the network as organizations race to adopt AI and achieve their business goals. Traditional firewalls were never built to understand these connections, AI activity often looks like ordinary web traffic,…
ThreatCluster - Threat Intelligence Feed2026-07-30 10:23 UTC
The Toy Ghouls group, also known as Bearlyfy, has introduced a new ransomware called GenieLocker, active since March 2026. This ransomware targets Windows, Linux, and VMware ESXi systems, primarily affecting the manufacturing sector in Russia. The group previously relied on third-party ransomware like LockBit and Babuk but has now developed its own custom…
Ransomware is malware, but not all malware is ransomware. That distinction sounds simple, yet it’s the source of most of the confusion around these two terms. Malware is the umbrella category for any software designed to damage, disrupt, or gain unauthorized access to a system; ransomware is one specific, highly aggressive branch of that family,...
ThreatCluster - Threat Intelligence Feed2026-07-30 10:05 UTC
From 2025 to mid-2026, a state-sponsored threat group exploited vulnerabilities in Korean financial security software, utilizing watering hole attacks and spear phishing to deploy backdoors named Struggle and Brandoor. AhnLab identified that attacks deploying Gunra ransomware shared initial access vulnerabilities and malware characteristics with this state…
Attackers rarely stop after gaining initial access. Huntress analyzes a real-world intrusion to show how threat actors establish persistence, disable defenses, and reshape compromised systems, and why defenders must investigate the original entry point rather than simply remove the malware. [...]
Unit 42 details a Chinese speaking threat actor combining autonomous AI scanning across seven vulnerabilities with manual exploitation. Read more. The post Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks appeared first on Unit 42 .
Unit 42 details a Chinese speaking threat actor combining autonomous AI scanning across seven vulnerabilities with manual exploitation. Read more. The post Chinese-Speaking Threat Actor Harnesses AI Models for Autonom...
Headquartered in Abu Dhabi, the Group serves government, public-sector and enterprise customers across the Middle East and global markets ABU DHABI, UAE, July 30, 2026 /PRNewswire/ — Robo.ai Inc. (NASDAQ: AIIO) (the “Company”) today announced the appointment of H.E. Dr. […]
Unauthenticated attackers could send HTTP requests to an exposed endpoint to execute commands inside the MCP bridge container. The post Critical Ruflo Flaw Lets Attackers Spawn Rogue AI Swarms appeared first on SecurityWeek .
AtlasRAT is being delivered through a fake Flash Player installer that looks harmless but can give attackers remote control of a Windows computer. The campaign abuses a familiar software name to lower a victim’s guard, then loads much of its malicious code directly into memory, where it is harder for traditional file-based checks to catch. […] The post Fake…
WannaCry is a self-propagating ransomware worm that infected more than 200,000 computers across 150 countries within four days in May 2017, encrypting victims’ files and demanding Bitcoin payments for their release. It spread by exploiting EternalBlue, a Windows SMB protocol vulnerability originally developed by the US National Security Agency and leaked…
ThreatCluster - Threat Intelligence Feed2026-07-30 09:36 UTC
The Russian-aligned TA488 group is exploiting a flaw in Microsoft Outlook Web Access (OWA) that allows them to maintain access to mailboxes even after password resets and device reimaging. This vulnerability enables the attackers to use an implant called OWAReaper, which grants them persistent server-side permissions by simply opening an email. The attack…
I arrived in Salzburg expecting to see how a manufacturer builds intercom systems. I left with a completely different impression. Behind every demonstration was a simple philosophy: in mission-critical environments, communication always comes first. Over the next hours, I discovered why Commend has spent more than fifty years perfecting something most of us…
The critical vulnerability CVE-2026-16812 with a maximum CVSS score of 10.0 in on-premises versions of Arista VeloCloud Orchestrator (VCO) has been confirmed as being actively exploited. The vulnerability allows a remote attacker to execute arbitrary operating system commands on the orchestrator host, which leads to complete compromise of the…
Claroty has analyzed 750,000 cyber-physical systems across some of the world’s largest data center facilities. The post 1 in 5 Data Center Assets Are Within Easy Reach of Attackers appeared first on SecurityWeek .
The 2026 edition recorded a 19% increase in the number of exhibitors, reaching 253 companies compared to the previous edition. The total exhibition space also grew by 17%, reaching 28,000 square meters. National companies accounted for 60% of the total exhibitors, while international companies represented 40%. By: ISNR Marketing Team E-mail:…
“How few people can we get away with?” That’s a question many bosses think hard about. Automate. Streamline. Improve productivity and take humans out of as many tasks as possible. It’s a time-tested way to create profits and to increase a certain kind of reliability. Claude Code is popular with many organizations for precisely this […]
Securing active construction sites is rarely straightforward, particularly when projects span large areas and site layouts change almost daily. On a construction project in Ireland, Reconeyez addressed these challenges by replacing conventional surveillance methods with a fully wireless solution that delivered mobility, long battery life, and improved…
O código-fonte do framework malicioso Flying Eagle, utilizado para criar trojans de acesso remoto (RATs) para Android, está circulando em canais criminosos no Telegram. Pesquisadores da Hunt.io e o pesquisador independente NetAskari identificaram 170 servidores na internet com características compatíveis com a infraestrutura da ferramenta, embora o número…
A OpenAI divulgou novos detalhes sobre o incidente envolvendo um agente autônomo de inteligência artificial que escapou de um ambiente de testes e invadiu a infraestrutura da Hugging Face. Segundo a empresa, a investigação revelou que o modelo também utilizou credenciais expostas para acessar quatro contas em quatro serviços públicos diferentes, ampliando o…
O Serviço Federal de Segurança da Rússia (FSB) anunciou que apresentou acusações criminais contra Pavel Durov, fundador do Telegram, por supostamente facilitar atividades terroristas e descumprir a legislação russa ao não remover conteúdos considerados proibidos da plataforma. O empresário também foi incluído na lista internacional de procurados do país.…
Four developments this week share a theme: autonomous AI agents are now acting with less human pacing than the systems around them assume. An evaluation agent escaped its intended sandbox and reached a company it was never authorised to touch. A ransomware agent returned to a target it had already hit, this time carrying a payload purpose-built to destroy…
A new Linux cryptomining campaign has surfaced using a rare trick to stay hidden inside compromised networks. Instead of behaving like typical malware, the operators turned a trusted Linux security feature into a tool for covering their tracks. This let them mine Monero cryptocurrency while dodging alerts that usually expose intruders. The attack began in…
GitLab has released critical security updates to address 13 vulnerabilities that could potentially expose sensitive data, manipulate CI/CD pipelines, and disrupt server availability across Community Edition (CE) and Enterprise Edition (EE) deployments. The latest patch versions, 19.2.1, 19.1.3, and 19.0.5, were released on July 29, 2026. These updates…
As infrastructure across the Middle East becomes more interconnected, organizations need more than isolated access control, visitor management, and asset tracking systems. Integrated RFID, BLE, and IoT platforms are helping turn fragmented operational data into continuous visibility, stronger coordination, and real-time intelligence By: Praveen Perumal,…
A short Microsoft Teams call can now become the first step in a ransomware attack. Attackers posing as IT support staff are persuading employees to grant remote access, then using that foothold to spread through networks and deploy Chaos ransomware. The campaign, tracked as STAC4749, targeted dozens of North American organizations between February and June…
A recently released criminal complaint against Peter Stokes , an alleged member of the Scattered Spider cybercrime group , reveals previously unpublicized details about Windows telemetry . Microsoft has never exactly had a reputation for being privacy-focused, however the complaint reveals the important part played by Microsoft’s Global Device Identifier…
ThreatCluster - Threat Intelligence Feed2026-07-30 08:23 UTC
On July 28, 2026, the Xen Project released 12 security advisories addressing severe vulnerabilities, including three that allow guest virtual machines to escape to the host. These vulnerabilities, identified as CVE-2026-62428, CVE-2026-62433, and CVE-2026-62434, pose significant risks to data confidentiality and availability, particularly in multi-tenant…
ThreatCluster - Threat Intelligence Feed2026-07-30 08:23 UTC
Apache Traffic Server (ATS) has been found to have 38 vulnerabilities, including critical flaws that can lead to denial of service (DoS) attacks and security mechanism bypasses. The vulnerabilities, published on 2026-07-29, affect various versions of ATS, primarily impacting users of versions 9.x and 10.x. Notable CVEs include CVE-2026-22068,…
Westcon-Comstor announced that 1Password, a leader in identity security, has joined its AWS Marketplace programme, creating new opportunities for partners to drive growth in the identity security market. The agreement enables partners across Europe, the Middle East and Africa (EMEA) to purchase 1Password’s software fromWestcon-Comstor via private AWS…
Five years after the initial release, the refresh introduces new elements, removes others, and updates terminology. The post US and Allies Update SBOM Guidance appeared first on SecurityWeek .
Das Marktforschungsunternehmen Gartner rechnet damit, dass sich die Ursache von Datenschutzvorfällen in den kommenden Jahren grundlegend verschiebt. Nicht mehr die direkte Offenlegung personenbezogener Daten soll bis 2029 im Vordergrund stehen, sondern Schlussfolgerungen, die künstliche Intelligenz eigenständig über Personen zieht. Der Beitrag Gartner:…
Anthropic’s Claude AI platform suffered a worldwide outage on July 29, 2026, causing failed prompts, slow responses, interrupted conversations, and “Request Failed With 529 Overloaded” errors across multiple models. The outage affected both Claude’s web interface and services that rely on Claude models via its API. The 529 error generally indicates that a…
Mobile access is becoming the new standard in physical security, but many organizations still hesitate because of perceived complexity. HID’s latest approach removes these barriers by enabling a fast, cost-effective migration using existing infrastructure. By: Sam Cherif, Senior Director and Head of MEA, HID E-mail: PACSGlobalMarcom@hidglobal.com When…
Kaspersky experts dissect GenieLocker: new custom ransomware variants for Windows, Linux, and ESXi systems. We found this family in attacks by Toy Ghouls, a financially motivated extortion group.
At GE Vernova Accelerate 2026, Clark Rexrode, Colin Reilly, Chris Grega, and Ben Hoff from PPG presented how the company deploys Proficy MES across a manufacturing network of 140 to 150 facilities in more than 50 countries. PPG, a coatings and specialty materials company with $15.9 billion in 2025 sales, developed product technology blueprints for […] The…
Ein Softwareentwickler hat in einem Online-Forum einen Vorfall geschildert, bei dem das KI-Modell Claude Opus 5 im sogenannten Ultracode-Modus innerhalb weniger Minuten eine komplette Produktionsdatenbank geleert haben soll. Der Beitrag hat inzwischen für reichlich Diskussionsstoff in der Entwickler-Community gesorgt, da er ein grundsätzliches Thema beim…
Voice phishing is no longer limited to a convincing phone call and a fake sign-in page. A newly examined criminal platform called Work Panel brings target research, caller management, phishing-site creation, and stolen-credential handling into one web-based operation. The result is a faster route from a helpdesk impersonation call to an enterprise account…
The major browser update resolves roughly 80 critical- and high-severity security defects. The post Chrome 151 Patches 370 Vulnerabilities appeared first on SecurityWeek .
WordPress has released security updates to address the wp2shell vulnerability, a critical flaw that allowed attackers to achieve remote code execution (RCE) on vulnerable sites using a single anonymous web request. Unlike many previous attacks, this issue did not require plugins, authentication, or third-party code, making affected core installations…
Kaspersky shares the results of the global study conducted by its internal research center which surveyed 1,800 IT and cybersecurity decision-makers and specialists from organizations across 18 countries and multiple industries. The report shows that the pace of AI integration across organizations is rapid, despite associated risks. The company’s experts…
The Node.js project has released important security updates addressing 11 vulnerabilities across its active branches: 22.x, 24.x, and 26.x. The updates are now available as Node.js versions v22.23.2, v24.18.1, and v26.5.1. The July 2026 security release includes fixes for vulnerabilities related to HTTP/2 processing, the Permission Model, HTTPS connection…
The IIT Kanpur Website Hack has taken an unexpected turn after the institute decided to assess the technical skills of a student who allegedly breached parts of the IIT Kanpur and IIT Madras websites following his rejection from the newly launched undergraduate cybersecurity program. Instead of immediately pursuing legal action, IIT Kanpur said it would…
With increasing regulatory requirements, evolving security threats and the growing adoption of cloud-connected technologies, organisations across the Middle East are seeking solutions that deliver greater intelligence, flexibility and operational efficiency. ASSA ABLOY is helping customers address these evolving requirements through Primo, a next-generation…
Cisco hat eine Schwachstelle in der Weboberfläche der Secure Firewall Management Center (FMC)-Software bestätigt, die derzeit aktiv ausgenutzt wird. Über ein Konto mit fest hinterlegten, statischen Zugangsdaten können sich Angreifer ohne vorherige Authentifizierung anmelden und auf sensible Informationen der betroffenen Systeme zugreifen. Cisco stellt…
A developer has reported that Anthropic’s Claude Opus 5, running in Ultracode mode, accidentally wiped an entire production database in roughly ten minutes while working on a personal web project. According to the Reddit post, the incident occurred as the developer rebuilt comparison pages and connected Claude Opus 5 directly to a Supabase instance with […]…
Am Mittwoch kam es bei zahlreichen Anwendern von Claude zu Problemen: Anthropic meldete erhöhte Fehlerraten über sämtliche Modelle hinweg. Betroffene erhielten dabei die Meldung „529 Overloaded" und konnten den Dienst zeitweise nicht nutzen. Der Beitrag Claude-Ausfall: Anthropic behebt weltweite Störung erschien zuerst auf All About Security Das…
Se explota de forma activa CVE-2026-20316 en Cisco Secure Firewall Management Center, un fallo que permite iniciar sesión sin autenticación previa mediante credenciales estáticas de una cuenta de bajo privilegio. Cisco ya distribuye hotfixes y pide revisar un indicador concreto en logs, la presencia de /var/tmp/license.tmp, además de reducir la exposición…
A new fraud campaign is targeting Android banking users through convincing phone calls that impersonate N26 support staff. The attack begins as voice phishing, but it can end with criminals remotely controlling banking apps on a victim’s phone. Victims are told that their account needs urgent verification or a device certification update. Attackers then…
Google hat die stabile Version 151 von Chrome für Windows, macOS und Linux veröffentlicht. Im Mittelpunkt des Updates steht die Behebung von insgesamt 370 Sicherheitslücken, sieben davon in der höchsten Schweregradstufe. Nutzer sollten den Browser zeitnah aktualisieren, um von den Korrekturen zu profitieren. Der Beitrag Chrome 151: Google schließt 370…
Help AG has been awarded the Dubai AI Seal Tier E certification, recognising the company as a trusted AI enterprise under Dubai’s government-led verification programme. The recognition also builds on e&’s early participation in the programme as it was among the first companies to receive recognition under the Dubai AI The post Help AG Secures Dubai AI Seal…
NVIDIA, together with 36 organizations, announced the creation of the Open Secure AI Alliance—a coalition to develop open technologies for securing software and AI agents. The alliance includes Microsoft, Cisco, Cloudflare, CrowdStrike, Hugging Face, IBM, Palo Alto Networks, Red Hat and the Linux Foundation. The stated scope covers the full stack of agentic…
According to a new Kaspersky ICS CERT report, in Q1 2026, the percentage of industrial control systems (ICS) on which malicious objects were blocked reached 19.6% globally. Kaspersky security solutions blocked malware from 10,052 different malware families of various categories on industrial automation systems. Regionally, the share of ICS computers that…
The vulnerability tracked as CVE-2026-20316 can be exploited by a remote, unauthenticated attacker to log into affected devices. The post Cisco Secure FMC Zero-Day Exploited in the Wild appeared first on SecurityWeek .
Keeper Security, the leading zero-trust and zero-knowledge identity security and Privileged Access Management (PAM) platform, today announced its leadership in a recent comparison report analysing independent, user-validated data from Info-Tech Research Group’s SoftwareReviews platform. KeeperPAM emerged as the leader among top PAM providers, significantly…
Ram Narayanan, Country Manager, Check Point Software Technologies, Middle East, highlights that sustained attack levels in the first half of 2026 show why UAE organisations need prevention-first security, continuous exposure reduction and secure AI adoption as part of their broader digital transformation strategy. The first half of 2026 showed that The post…
ThreatCluster - Threat Intelligence Feed2026-07-30 06:15 UTC
The Mirage Kitten APT group has deployed a sophisticated malware suite, including the NightLedger backdoor, across the Middle East and Africa. This campaign has successfully infiltrated sensitive sectors such as government, finance, and telecommunications. The malware utilizes targeted spear-phishing and fake recruitment portals for initial access.…
North Korean-linked hackers are turning trusted npm packages into an entry point for widespread software supply-chain attacks. By compromising the accounts of legitimate package maintainers, the attackers can slip malicious updates into tools that developers and businesses already trust. The campaigns affected the typo-crypto, debug, chalk, and axios…
ThreatCluster - Threat Intelligence Feed2026-07-30 05:49 UTC
TA488 has launched a campaign exploiting CVE-2026-42897, a cross-site scripting flaw in Outlook Web Access (OWA). This vulnerability, disclosed by Microsoft on May 14, 2026, allows attackers to deploy a persistent JavaScript backdoor known as OWAReaper. The backdoor can survive credential rotations, browser restarts, and even full host re-imaging. Targeted…
ThreatCluster - Threat Intelligence Feed2026-07-30 05:17 UTC
Cisco has reported a high-severity vulnerability (CVE-2026-20316) in its Secure Firewall Management Center (FMC) software, which is being actively exploited in the wild. The flaw arises from hardcoded static credentials for a low-privileged account, allowing unauthenticated remote attackers to log in and access sensitive data. Despite a CVSS score of 5.3,…
America's darling diva pairs up with the banjo guru of our time for a set of old Appalachian songs about love, loss and the sturdy hope for better times.
ThreatCluster - Threat Intelligence Feed2026-07-30 04:16 UTC
A critical vulnerability in Microsoft Copilot for Word allows hidden malicious prompts in documents to alter generated content and spread to new files. Disclosed by researcher Håkon Måløy, this issue, termed 'Context Collapse, Part 3 – AI Worming through Word,' has persisted despite Microsoft's mitigation attempts since March 2026. The vulnerability enables…
Marked annually on 30 July, the World Day Against Trafficking in Persons highlights one of the most pressing security and human rights challenges facing governments, law enforcement agencies and security professionals worldwide. The post World Day Against Trafficking in Persons puts focus on security and human protection appeared first on Security Middle…
A severe security vulnerability in Ruby on Rails Active Storage tracked as CVE-2026-66066 can let unauthenticated attackers read sensitive files from a server and potentially escalate to remote code execution. The issue affects applications that use libvips for image variant processing and accept image uploads from untrusted users, putting secrets such as…
Cyberthreat telemetry suggests that organizations in the region should prioritize advanced email protection, sandboxing credentials, identity security as primary control plane, and investing in AI and automation. But are organizations heeding?
A major shift is occurring in how technology products and services are bought and sold. Omdia’s chief analyst, Jay McBain, and chief analyst of Asia Pacific (APAC) channels, Mark Iles, had an insightful discussion on the topic during the third day of the event. The pair highlighted the growing role of cloud marketplaces in reshaping customer procurement and…
By Mike Fisher* New strengthening of the laws governing security requirements protecting Australia’s critical infrastructure is now in force, covering both cybersecurity and physical safeguards for specific high-risk critical infrastructure sectors. The changes – which are of particular interest to planners, designers, builders, operators, and owners of…
ThreatCluster - Threat Intelligence Feed2026-07-30 01:17 UTC
Fedora has released security updates for WordPress versions 6.9.5 addressing critical SQL injection and remote code execution vulnerabilities. The vulnerabilities stem from a REST API batch-route confusion, allowing attackers to exploit the system remotely. Users of Fedora 43 and 44 are affected, with the updates issued on July 30, 2026. The vulnerabilities…
ThreatCluster - Threat Intelligence Feed2026-07-30 01:08 UTC
On July 22, 2026, n8n released a patch for a high-severity sandbox escape vulnerability (GHSA-gv7g-jm28-cr3m) rated 8.7 on CVSS 4.0. This flaw allows authenticated users to execute operating system commands via crafted JavaScript expressions. The vulnerability arises from a failure in the expression sandbox, enabling access to the Node.js process object.…
Medical billing provider MCBS confirmed that a 2025 network intrusion exposed personal, insurance, and medical information belonging to 1.26 million people. This article was first published by BreachNews . Original source: MCBS Data Breach Exposes Health Data of 1.26 Million People
The groups move from goods to services and continue to traffic people from at least 80 countries, costing nations in the region at least $88 billion in 2025 alone.
Australian Cyber Security Magazine2026-07-30 00:49 UTC
Monash University has announced a partnership with CyberCX, part of Accenture, to co-design and co-deliver a new undergraduate degree focused on cybersecurity and artificial intelligence. The three-year Bachelor of CyberAI [...]
Australians are less likely to trust each other than they were in 2020, with interpersonal trust falling to the lowest level this decade, according to the June 2026 ANUpoll. Analysis of the latest ANUpoll of more than 3,500 adults also shows that levels of wellbeing among Australians remain stable, but at a low base. And [...]
Most IT operators understand that critical infrastructure should be isolated in crisis situations, but many don’t know how to do it in a way that maximizes security and minimizes disruption. Now, several global agencies are offering a step-by-step action plan, CI Fortify . Released by the US Cybersecurity and Infrastructure Security Agency (CISA) and…
ThreatCluster - Threat Intelligence Feed2026-07-30 00:19 UTC
A significant data breach involving SplitVPN has exposed approximately 58 million connection logs and millions of user records, contradicting the VPN's 'no logs' policy. The leaked database, distributed on the Altenen cybercrime forum, includes 23.4 million user records, 13.6 million device records, and 2.6 million payment records. Although full credit card…
Nature, Published online: 30 July 2026; doi:10.1038/d41586-026-02420-9 The tool can add, remove or swap protein subunits using similar steps to natural evolution. Plus, spin qubits are back in the quantum race and the drugs that could prevent long COVID.
Nature, Published online: 30 July 2026; doi:10.1038/d41586-026-02079-2 Some 50 years after exposing gender discrimination in US academics’ retirement benefits, Mary Gray works as a statistician and social-justice campaigner.
Nature, Published online: 30 July 2026; doi:10.1038/d41586-026-02361-3 Countries such as Spain and France can expect fire regimes more like those of California as climate change favours hot, dry conditions, scientists suggest.
Nature, Published online: 30 July 2026; doi:10.1038/d41586-026-02195-z Researchers are looking for ways to extract the metal from underground reservoirs that use less water in the process.
Nature, Published online: 30 July 2026; doi:10.1038/d41586-026-01843-8 The career market is difficult to navigate — and academic achievements feel like they’re no longer enough, says Daniella Watson.
Nature, Published online: 30 July 2026; doi:10.1038/s41586-026-10920-x Author Correction: Sleep chart of biological ageing clocks in middle and late life
De multiples vulnérabilités ont été découvertes dans Google Chrome. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
De multiples vulnérabilités ont été découvertes dans Node.js. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.
Une vulnérabilité a été découverte dans Cisco Firewall Management Center. Elle permet à un attaquant de provoquer une atteinte à la confidentialité des données et un contournement de la politique de sécurité. Cisco indique que la vulnérabilité CVE-2026-20316 est activement exploitée.
De multiples vulnérabilités ont été découvertes dans GitLab. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et une injection de code indirecte à distance (XSS).
De multiples vulnérabilités ont été découvertes dans les produits VMware. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.
Une vulnérabilité a été découverte dans Ruby on Rails activestorage. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance et une atteinte à la confidentialité des données.
NYC Health Hospitals data breach: LeakNet posted 11TB of patient records on the dark web, including fingerprints, SSNs, and HIV records from 1.8 million confirmed victims.
Upanal CNC Solutions, a leading Indian CNC machinery company, has been targeted by the ransomware group The Gentlemen. The attack threatens to expose sensitive data unless negotiations occur.
TheGentlemen ransomware group has targeted Indus Protech Solutions, a leading Chennai-based MRO services provider. Sensitive data is at risk as the attackers threaten exposure unless negotiations commence.
The Gentlemen ransomware group has targeted Angel Hotel, a historic Tudor-origin hotel in Pershore, UK. Sensitive data risks exposure unless demands are met.
The Morpheus ransomware group has attacked Yue Ki Industrial, a Taiwanese manufacturer, threatening to leak sensitive data unless negotiations are initiated. The breach impacts the company's operations in Taiwan.
The Harwal Group, a leading plastics recycler in the UAE, has fallen victim to the Incransom ransomware group. The attack threatens to expose 12TB of sensitive data unless the company negotiates.
The ransomware group Section9 has claimed responsibility for an attack on ****.com.pa. The breach threatens to expose sensitive data unless negotiations are initiated.
IDC has named Rapid7 a Leader in the 2026 Worldwide Managed Detection and Response Service for Midmarket 2026 Vendor Assessment ( Doc #US52992326, July 2026 ). We believe this recognition and research highlights where...
Ely Kahn, Okta's chief product officer, told CyberScoop the deal enriches the company's current threat detection tools and gives it deeper visibility into AI agent activity across enterprise systems. The post Okta’s d...