HomeWeekly DigestsThis Week
LiveThreat Threat Intelligence

Weekly Threat Intelligence Digest — Aug 03 to Aug 10, 2026

Weekly threat intelligence digest from 386 items (30 critical, 284 high).

August 10, 2026 386 articles analyzed
LIVETHREAT WEEKLY THREAT DIGEST August 03 – August 10, 2026 This week the data shows a clear pivot: attackers are striking through trusted third‑party footholds rather than exploiting isolated on‑prem flaws. Credential‑theft in cloud admin consoles, npm supply‑chain worms, and MSP‑focused ransomware all leveraged privileged access to cascade downstream. The surge of critical supply‑chain incidents—seven in cloud providers alone—means the breach surface now lives beyond your own perimeter. 👉 Access, not just vulnerability, is the dominant risk driver. 🚨 EXECUTIVE RISK SNAPSHOT * Supply‑chain entry → MSPs, SaaS admin portals, and CI/CD pipelines were the primary compromise paths. * Privilege amplification → One stolen admin credential exposed 3.8 M health records and powered ransomware across 80 k devices. * Blind‑spot assets → OT/IoT devices and unmanaged open‑source libraries remain outside most audit inventories. 🔍 WHAT CHANGED THIS WEEK * npm worms (keyv, ChainDrop) injected credential‑stealers into >2 000 packages, turning the open‑source ecosystem into a data‑theft vector. * Device‑code phishing rose 1 500 % YoY, bypassing MFA and targeting OAuth flows used by cloud‑hosting and IAM platforms. * CISA added multiple KEV‑listed exploits (Progress LoadMaster, Langflow, Apache Tomcat), confirming active attacks on core infrastructure. 🎯 WHERE YOU ARE MOST LIKELY EXPOSED * Cloud admin accounts (Snowflake, AWS, Azure) – a single compromised credential can cascade across tenants. * API and npm providers (keyv, cacheable, ChainDrop) – malicious releases reach millions of downstream builds. * Managed Service Providers (N‑able N‑central, RMM tools) – exploitation grants footholds into client environments. ⚡ WHAT COMPLIANCE & SECURITY LEADERS SHOULD DO THIS WEEK 1. Map incidents to SOC 2 criteria – verify evidence for CC6.1 (Access Control) and CC7.1 (Change Management). 👉 “Can we produce MFA logs for every privileged login today?” 2. Tighten third‑party risk – require vendors to attest to patch status for KEV‑listed CVEs and deliver continuous SBOM updates. 👉 Automate alerts for new CVEs in any shared libraries you use. 3. Enforce credential hygiene – rotate cloud‑admin keys, implement Just‑In‑Time access, and audit OAuth device‑code grants. 4. Deploy supply‑chain monitoring – ingest npm and PyPI provenance data; flag packages with recent maintainer changes. 5. Extend audit scope to OT – inventory internet‑exposed PLCs, enforce baseline hardening, and capture configuration evidence for auditors. 📊 THE WEEK IN NUMBERS * Total tracked: 386 * Breaches/Ransomware: 76 (Critical 30, High 46) * Advisories & Threat Intel: 249 * Vulnerabilities: 47 (Critical 30, High 17) * Hot sectors: Technology & SaaS 227 items (17 critical), Cloud 14 items (7 critical), Healthcare 20 items (1 critical) #Compliance #SOC2 #AuditReadiness #Cybersecurity #ThreatIntel #ContinuousCompliance #LiveThreat #VerisqAI

Articles Referenced in This Digest 386 items

Advisory (42)

HighHow to report an AI Act violation in the EU
HighWeek in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026
HighPalo Alto Networks Faces China Cybersecurity Review Amid Rising Tech Tensions
HighOnePlus 10T Is Out of Security Support: Should You Keep Using Yours?
HighSamsung’s August Update Patches 56 Security Vulnerabilities Across Galaxy Devices
HighMeta Ordered to Pay $567M and Overhaul Teen Safety on Facebook, Instagram
HighApple rushes out emergency fix for screen sharing flaw on Macs - update ASAP
HighNew Mexico judge orders Meta to pay $567 million in kids online safety case
HighMeta Ordered to Pay $567 Million Over Child Safety Failures in New Mexico Case
HighAugust 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse?
HighApple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses
HighNCSC statement in response to recent incidents resulting from frontier AI evaluations
HighCISA Adds Three Known Exploited Vulnerabilities to Catalog
HighOpen Secure AI Alliance Proposes AI Agent Security Rules
HighSenate Committee Advances Health Data Privacy Bill
HighNew York Pours $9M Into Water Cyber Defense Amid Attacks
MediumGoogle Begins Restoring Blogger Sites After False Malware Alerts
MediumAI failed to properly patch software flaws 74% of the time, 1Password's study warns
MediumCISA's New SBOM Rules Face Old Adoption Problem
MediumMicrosoft Project Perception Enters Public Preview: What Security Teams Should Know
MediumSamsung Will Ban Smart TV Apps Containing Residential Proxy Software
Medium Californians can tell data brokers to DROP their information
MediumGoogle Tests Twice-Weekly Chrome Security Updates as AI Finds More Vulnerabilities
MediumCISA lays out new guidance for using open-source software
InformationalChainloop: Open-source evidence store and policy engine for the software supply chain
InformationalLinux Shell Forensic: Let?s Dive Into Atuin!, (Fri, Aug 7th)
InformationalKeepit AI Truth Cloud protects the data behind enterprise AI
InformationalOpenAI drops ChatGPT text chat limits for free users, adds new safeguards for teens
InformationalMicrosoft extends zero trust deeper into enterprise AI
InformationalDuckDuckGo's new iPhone feature is a privacy win - I recommend getting it now
InformationalCloudflare OS goes open source with a record of everything its agents read
LowThis free Windows 11 tool can rescue your PC when things go wrong - here's how
InformationalOnePlus Nord 6 Gets Six Years of Security Updates, Four Android Upgrades
InformationalOpen Secure AI Alliance Expands at Black Hat: What You Should Know
InformationalAdvance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps
InformationalSecuronix enhances Unified Defense SIEM with AI agent detection and lower data costs
InformationalIndusface SwyftComply AI enables autonomous virtual patching for AI-discovered flaws
Informational The AI Act kicks into action, forces companies to be clear about AI chatbots
InformationalOWASP’s subtractive security project measures the attack paths you erased
InformationalDuress passcodes explained: How they work and why they can land you in court
InformationalQodana 2026.2 adds post-quantum crypto checks for JVM code
InformationalAgent Val Now Validates the Entire Attack Surface: From Network to Host

Breach (71)

CriticalUnlimited Technology Systems breach impacts 3.8 million people
CriticalSnowflake Hacker Pleads Guilty Over Breaches Affecting at Least 100 Million People
CriticalBitcoin hardware wallet maker destroys some inventory after more than $88 million stolen
Critical⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks
HighU.S. Defense Manufacturer IEH Hit by Phishing Attack, Exposing Potentially Export-Controlled Data
HighAlcon - 218,395 breached accounts
HighSecurity Affairs newsletter Round 589 by Pierluigi Paganini – INTERNATIONAL EDITION
HighHackers breach TrueConf to trojanize client installers with backdoors
HighBrinks Home - 732,162 breached accounts
HighUnlimited Technology Systems Data Breach Exposes Data of 3.8 Million Healthcare Patients
HighHackers Impersonate IT Support to Breach Leading Financial Companies
High200 accounts compromised in Swiss government’s Microsoft SharePoint breach
HighIrregular, firm behind AI hacking incidents, won't say if there were more
HighMilitary device manufacturer discloses cyber incident to SEC
HighPractice Management Firm Notifies 3.8M of 2025 Breach
HighNorth Carolina Ports confirms cyberattack disrupting operations
HighReal emails, hijacked payments: Two H1 2026 attack chains
HighLevi Strauss & Co. says hackers stole corporate data in cyberattack
HighFrench rugby club Stade Français restores systems after cyberattack, probes data leak
HighExact Sciences - 10,869,543 breached accounts
HighExposed SISVISA Database Leaks 102,000 Brazilian Health Surveillance Records
HighChainDrop: Inside a Self-Propagating npm Worm
HighSwiss government SharePoint breach compromised 200 accounts
HighClickFix attack pushes macOS infostealer for crypto theft attacks
HighBreach Roundup: Water Utilities in 12 US States Hit
HighSnowflake hacker pleads guilty, faces up to 32 years in prison
HighCyberattack on North Carolina Ports ‘contained’ as Coast Guard, state officials investigate
HighMeta AI model hacked a company during misconfigured cyber test
HighCanadian Pleads Guilty to Snowflake Customer Data Extortion
HighSnowflake Hacker Pleads Guilty After Breaching 165 Companies and Stealing Billions of Records
HighMeta AI Model Hacked a Company During Testing, Marking Third AI Lab Incident
HighCanadian man pleads guilty to Snowflake hacks that led to 165 breaches
HighHackers run khunt post-exploitation toolkit from Oracle database
HighCanadian pleads guilty to Snowflake cloud data-theft attacks
HighInter-Con Security - 276,114 breached accounts
HighBrown Health Medical Group-MA Data Breach Exposes Information of 311,000 Individuals
HighApple Seeks Injunction as OpenAI Blames Tech Giant for Security Lapses
HighHype vs. Reality: What the Hugging Face Incident Means for AI Safety
HighQuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer
HighOpen VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data
HighLeaked n8n API Tokens Exposed Live Instances to Credential Theft
HighCyberattacks on water systems expand to 12 states as South Dakota, Georgia announce incidents
HighDutch retailer De Bijenkorf warns customer data may be exposed after cyber incident
HighBeacon CRM, Widely Used by Charities, Suffers Data Breach
HighBrazil Health Surveillance Database Exposed 79GB of Sensitive Records
HighAngola's Largest Telco Breached Hours Before IPO
HighWhat stops attackers wrecking industrial plants is knowing how
High77 Open VSX extensions found harvesting developer info
HighOpenAI, Anthropic AI agents targeted real people and systems in cyber tests
HighSharePoint Flaws Used to Hack Switzerland’s Federal IT Agency
HighAirlock Digital Unveils Agentic AI Control & Governance to Extend Preventative Endpoint Security
HighShai-Hulud npm Worm Returns, Poisoning Over 1,280 npm Packages
HighAI Notetaker Lets Hackers Spy on Government, Corporate Video Calls
HighPolish convenience store chain Żabka hacked through third-party account
HighMassive ChainDrop npm supply-chain attack infects hundreds of packages
HighWorm Targets More Than 2,000 npm Package Versions
High31,000 Records Compromised in Breach of Liechtenstein Companies and Foundations Register
HighMore on the OpenAI Agent’s Attack on Hugging Face
HighSome Claude Chats Are Searchable on Google
High18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users
HighAmgen Tells SEC Hack Exposed Patient Data, Trade Secrets
High A week in security (July 27 – August 2)
HighRiver Bank obtained assurances from the attackers that the stolen data in the June attack was deleted
HighAnthropic: Claude Attacks Result of Security Gaps, Not Model Issues
HighBiotech giant Amgen says patient data stolen from third-party cloud systems
HighHackers steal 31,000 records identifying people behind Liechtenstein companies, foundations
HighPNLD Breach Exposes U.K. Police and Government Contact Details on Dark Web
HighExfilSquad hackers leak info of over 100,000 UK police officers, staff
HighAlleged Żabka Breach Exposes Jira Data, Source Code, and API Keys
HighPNLD Confirms Data Breach Affecting UK Police and Justice Staff
HighThe OpenAI Hack Shows the Genie Is Out of the Bottle

Ransomware (5)

HighRansom Cartel Leader Sentenced to 16 Years in U.S.
HighRansom Cartel Creator Gets 16 Years in Prison for Operating Ransomware-as-a-Service
HighBelarusian cybercriminal behind Ransom Cartel gets 16-year prison sentence
HighRansom Cartel ransomware creator sentenced to 16 years in prison
HighINC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws

ThreatIntel (207)

HighWebmail CSS Attacks Expose a New Risk for AI-Powered Email Tools
HighSECURITY AFFAIRS MALWARE NEWSLETTER ROUND 109
HighInside the Modern SOC: The Identity Front Door
HighN-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and Persist
HighNew CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens
HighOpenAI Is Watching Astra Think. Can It See Trouble?
HighMeta ordered to pay $942 million over harm to children
HighAI chat bots are sliding into League of Legends friend requests
HighUNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data
HighClickFix Attacks Deliver macOS Stealer That Can Drain Crypto Wallets
HighNearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer
HighWordPress XSS2Shell Flaw Turns Simple Login Bug Into Full Server Takeover
HighDéjà Vu? Meta's AI Escapes Testing Lab in Hacking Joyride
HighAI-Generated Patches Fail Half the Time
HighYour phone doesn't block SIM swapping attacks by default: Turn on these carrier settings now
HighICE Is Buying Access to Credit Card Records
HighWater utilities group partners with DEF CON offshoot for Water Watch Center
HighISMG Editors: AI Is Supercharging Attackers
HighBeware cut-price AI services that read your every word
HighTeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign
HighClaude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets
HighMalware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access
HighMicrosoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails
HighNew NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables
HighGrowing Up The Hard Way
HighUK AI tests found 19 unauthorized agent actions involving Anthropic and OpenAI models
HighAI Deepfakes Used to Impersonate OnlyFans Creators in New Scam
HighResearchers Discover Hidden Backdoor in 20 Router Models Allowing Remote Root Access
HighGut feeling does nothing against AI spear phishing texts
HighUS fuel gauge exposure fell by more than half in three months
HighWhat the first year of EU AI Act transparency enforcement could look like
HighTime for GPS Spoofing-Resistant Quantum Clocks, Says DARPA
HighResearcher Claims Control of ChatGPT Secure Sandbox
HighEmerging Threats to Neurotechnology
HighToken Jacking: Cybercriminals Could Be Stealing Your AI Resources
HighState Department says Trump raised cyber scam compound issue with Xi
HighHedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group
HighHow Agentic AI Scales Cybercrime
HighAI Accelerates Financial Services Fraud
HighIt's About Time for GPS Spoofing-Resistant Quantum Clocks, DARPA Says
HighAnthropic’s Mythos AI used social engineering to target real people
HighAmazon and Apple impersonated in “$149.99 unauthorized charge” scam
HighScammers target OnlyFans users with deepfakes
HighApple Photos Privacy Case Advances, With Up to $32.5 Billion Alleged Exposure
HighDiscounted Claude access bought on the gray market may expose every prompt you send
HighThree in four AI-generated vulnerability patches leave something broken
HighNovel-reading apps used users’ phones to generate fake ad traffic
HighAttackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access
HighAI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory
HighOver 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities
HighThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories
HighRepublic of Georgia alleges foreign disinfo campaign sought to scare off Russian tourists
HighHow AI Exposed a Browser Security Gap that Enterprises Cannot Ignore
HighNew TONTOU CPU attack bypasses Spectre v2 fixes, leaks Linux password hashes
HighWhy Passkeys Are Closing the Account Takeover Gap
HighBlack Hat USA 2026: One GitHub Issue Could Compromise Major AI Coding Workflows
High16-31 July 2026 Cyber Attacks Timeline
HighApple’s bug bounty program is drowning in so much AI slop, it is in danger of missing serious exploits
High75% of European businesses fear a US tech kill switch - American companies should, too
High22 Seconds to Compromise: How Automated SSH Actors Move From Login to Persistence Before You Can Blink [Guest Diary], (Thu, Aug 6th)
HighNon-human identities are 91% of everything active in production
HighSuppliers, logins, and AI tools are all becoming attack paths
HighOWASP 2026 LLM Top 10: “The model will be fooled”
HighOpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemes
HighOver 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures
HighChinese telcos maintain deep US presence despite Salt Typhoon links, House committee says
HighHow AI Agents Helped Seal Visa's $2.4B BioCatch
HighFew Federal Agencies Trust Their Own AI Agent Security
HighSecret White House AI Safety Framework Draws Criticism
High Google’s synchronized passkeys can be stolen in ‘Pass‑ta‑key’ attacks
HighAI Deception Emerges in Cyber Tests as Agents Target Real People and Systems
HighNew Research: The Confidence Gap Between CISOs and Their Boards Is Real, and It’s Measurable
High“I’m Allowed”: Hackers Use Simple Claims to Bypass AI Guardrails
HighOctLurk and SilkLurk Windows Backdoors Target Governments in 6 Countries
HighSmashing Security podcast #479: How a fake police officer nearly stole Graham’s cryptocurrency
HighCSS: The Hidden Threat Lurking in Your Inbox
HighNo Perfect Fix for AI Browser Prompt Injection Flaws
HighAI Browsers Vulnerable to 'PleaseFix' Zero-Click Agent Hijacking
HighAI Sends Global Crime Syndicates Into Fraud Nirvana
HighFrom open lures to cloaked gates: How a macOS ClickFix campaign learned to hide
HighCrowdStrike Warns AI Adoption Is Creating ‘Underdefended’ Attack Surfaces
HighOpenAI’s GPT-5.6 Tests Show Prompt-Injection Gains and Agent Risks
HighApple Challenges UK Demand For Access To Encrypted iCloud Data
HighApple briefly removes Telegram from App Store over reported CSAM violation
HighDon't Revoke That Token Yet: Inside the keyv/cacheable npm Worm, (Wed, Aug 5th)
HighCode review used to be the only way to catch these bugs
HighAI agent deception moves from theory to reality in UK cyber tests
HighINTERPOL flags AI as the new engine of African cybercrime
HighClaude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself
HighKali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk
HighTrojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain
HighPoison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt
HighAnthropic AI agent faked identities, phished real developers in UK government hacking test
HighHow AI-powered phishing killed blocklists for good
HighGoogle Blogger locks hundreds of blogs in malware false positive
HighCOLDCARD security audit phishing attack installs remote access tool
High Apple battles it out again with the UK over encrypted iCloud access
HighSMOKE#SCREEN Campaign Abuses ScreenConnect to Give Attackers Remote Control Access
HighKali365 Exploits Microsoft Device Login to Access US Corporate Data
HighChainDrop supply chain compromise: Anatomy of a self-propagating worm
HighOpenAI: Cambodian scam centers used ChatGPT to lure Indian nationals, conduct investment fraud
HighNew XCSSET variant targets macOS devs via compromised Xcode projects
HighPhishing service spoofs RingCentral to steal Microsoft 365 accounts
HighSubscriber Security: Trust Is Telecom's Most Valuable Asset
HighSophisticated Cyberattackers Boost Productivity Using AI
HighWhy AI Agents Challenge Identity Governance
High WhatsApp account takeover scam asks you to “vote for my friend”
High Online backlash ends in Google rolling back Google Earth AI tool after a day
High Travelers targeted when logging into hotel Wi-Fi networks
HighINC Ransomware is Calling Victims – Pressure Tactics Post SonicWall Zero-Day Exploit
HighMallory Unifies Threat Intelligence, Exposure Context, and Response Into One Architecture for Security Teams
HighSmoke#Screen RMM Takeover Gambit Exposes Threat Actor Playbook
HighAlmost Half of Malware Samples Communicate Direct to IP
HighThe Frontier AI Vulnerability Burst: Industrializing Autonomous Zero-Day Discovery in Open-Source Software
High128 Seconds to disruption: Microsoft Defender stops ransomware at QNET 
HighWhy Campaign-Level Phishing Defense Is the Future of Email Security
HighWhy Apple’s Recent Crypto Lawsuit Should Worry Australian IT Leaders
HighChrome to Block Policy-Abusing Extensions on Personal Devices
HighHow legitimate cloud platforms enable phishers to bypass MFA
HighESET introduces new AI capabilities for autonomous agent security
HighRussian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malware
HighAI developers targeted via trojanized GitHub repositories
HighDOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT
HighGoogle Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent
HighWhen Vibe Hacking Turns AI into the Junior Hacker Every Adversary Always Wanted
HighKeyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks
HighGreatness PhaaS Adds Device Code Phishing to Bypass MFA and Steal Tokens
HighSwiss IT agency hacked, 200 accounts compromised, SharePoint vulns suspected
HighApple launches new legal challenge against UK over iCloud access
HighRussian businesses erase Durov-linked products after 'terrorist' designation
HighVaronis Agent IBAC keeps AI agents within their intended boundaries
HighWhy Non-Human Identities Break Legacy Access Models
HighBurnham Government Could Signal Tougher UK Cyber and AI Regs
High “Adult TikTok” searches lead to scams
High“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI
HighFake IRS letters target cryptocurrency holders
HighDevice Code Phishing Up 1,500% in 2026; Vishing Doubles
HighFake IRS letters direct crypto holders to bogus compliance portal
HighDigital executive protection is a strategic imperative for CEOs
HighFake Roblox Xeno script launcher pushes infostealer, RAT malware
HighNew DOUBLECUP ClickFix service hides malware in browser cache images
HighNew Pass-ta-key attacks let malware hijack Google-synced passkeys
HighHotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts
HighTravelers Beware: Russian Intel Hacking Hotel Wi-Fi
HighClaude Opus 5 Vending Test Shows Profit-Driven AI Risks
HighAI Runs the Hack: Chinese Actor Automates Cyberattacks With DeepSeek
HighH96 Android TV Boxes Used for Ad Fraud and Residential Proxies
HighChinese Actor Weaponizes Deepseek AI Agent to Attack Security Firm
HighNew Tool Traces AI Videos Back to Their Source
HighHow to keep your conversations with ChatGPT, Gemini, Copilot or Claude as private as possible
HighAI is both a cyber weapon and a massive target, CrowdStrike warns
HighFake Xeno Roblox Cheats Deliver Powerful Java Stealer Through Discord and Forums
HighPass the Passkey: A Novel Attack Surface in Passwordless Authentication
HighRussian hackers hijack hotel Wi-Fi networks to spy on travelers, Microsoft says
HighAn analysis of incidents at Brazilian educational institutions
HighOpenAI reveals how criminals used ChatGPT to run scams
HighChinese hacker used DeepSeek to launch autonomous cyberattacks on vulnerable servers
HighMimecast introduces AI agent governance and managed threat response
HighChinese Threat Actor Uses Leaked DarkSword Kit to Deploy GHOSTBLADE on iOS
HighGoogle Password Manager Attacks Could Let Malware Hijack Passkey-Protected Accounts
HighInside the Underground Business of the Android BTMOB RAT malware
HighSay Hello to Agent Insta: Closing the Detection Gap in Exposure Management at Machine Speed 
HighZero-Day Remediation Meets Operational Resiliency
Medium71% of CISOs spend 10+ hours on board reports
Medium15 AI Security Lessons From Black Hat and Ai4 2026
MediumWi-Fi 7 adoption in the US quadrupled in a year - is it time to upgrade?
MediumShieldFont fights AI scraping by handing crawlers the wrong words
MediumCloudflare Builds Business on Surge in Bot Traffic and AI Workloads
MediumThe Coordination Gap: How Attackers Are Outpacing Law Enforcement
Medium8 Ways AI is Changing Threat Intelligence
Medium16-31 July 2026 Cyber Attacks Timeline Infographic
MediumHit by T-Mobile's outage? You can get up to $80 in credit - here's how
MediumWhatsApp Users Say They’re Being Locked Out of Accounts by Mistake
MediumTenable broadens AI visibility across major LLMs and AI tools
MediumYour enterprise AI footprint is about three times bigger than your model list
MediumFuture AGI: Open-source platform for shipping self-improving AI agents
MediumBotnet Hunting for Vulnerabilities in Diagnostic Tools, (Tue, Aug 4th)
MediumWhy Bitcoin Businesses Are Moving to Dedicated VPS Infrastructure
MediumHow Google used AI agents to find and fix 1,072 Chrome security bugs - in 60 days
MediumAI shopping searches surged 200% in one year - and it's a top priority for commerce leaders now
MediumI tried buying a MacBook Air from Apple today - shipping was delayed by over a month
InformationalISC Stormcast For Monday, August 10th, 2026 https://isc.sans.edu/podcastdetail/10044, (Mon, Aug 10th)
Informational11 Reasons Native Telemetry Correlation Matters in XDR
InformationalHorizon3 Raises $250M to Prove What Attackers Can Exploit
InformationalThe Detection Gap: MITRE ATT&CK T1053.005
InformationalPhotos: Black Hat USA 2026 Arsenal
InformationalPhotos: Black Hat USA 2026, part two
InformationalISC Stormcast For Thursday, August 6th, 2026 https://isc.sans.edu/podcastdetail/10040, (Thu, Aug 6th)
InformationalBrowser security is where software, data, and AI meet
InformationalDesktop Linux just cracked 10% market share - and Windows 11 is mostly to blame
InformationalWant a free Photoshop alternative on Linux? How to get Affinity today: 2 ways
InformationalLumu launches live threat intelligence platform for real-time cyber defence
InformationalTuskira expands exposure management with Agentic Control Plane
InformationalArmorCode enhances attack path analysis with new AI agents and Context Risk Graph
InformationalStellar Cyber’s Auto-Triage AI matches human analysts 99.7% of the time
InformationalUppsala Security Becomes First Blockchain Intelligence Company to Join Cyber Threat Alliance
LowISC Stormcast For Wednesday, August 5th, 2026 https://isc.sans.edu/podcastdetail/10038, (Wed, Aug 5th)
InformationalGmail’s New Feature Warns You Before Revealing You Were BCC’d
InformationalJoinable Labs unveils Joinable Security for threat intelligence and AI-driven response
InformationalServiceNow organizes autonomous security around six solution areas
InformationalISC Stormcast For Tuesday, August 4th, 2026 https://isc.sans.edu/podcastdetail/10036, (Tue, Aug 4th)
InformationalGoogle Warns Open-Source Attacks Will Reach New Heights
InformationalIs your SD-WAN ready for AI-powered operations?
InformationalThe Ember Smart Mug 2 will keep your coffee warm for hours - and it's on sale
InformationalWelcoming the Nepalese Government to Have I Been Pwned
Informational[Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidents
LowSimbian adds AI threat hunting agent to expand autonomous SecOps platform

Vulnerability (61)

CriticalProgress Kemp LoadMaster Flaw Hits CISA KEV After 792 Reported Exploit Attempts
CriticalMetabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication
CriticalU.S. CISA adds a Progress LoadMaster flaw to its Known Exploited Vulnerabilities catalog
CriticalMetabase Zero-Day Exploited in the Wild, Exposing Admin Access and Sensitive Data
CriticalMetabase SQLi zero-day exploited in customer data-theft attacks
CriticalJuly 2026 CVE Landscape
CriticalAI-Assisted HTTP Terminator Finds Novel HTTP Desync Techniques and Apache Zero-Day
CriticalCritical Cisco IMC bug gives attackers root, PoC is out (CVE-2026-20200)
CriticalCISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild
CriticalChinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells
CriticalCisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs
CriticalNew Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts
CriticalU.S. CISA adds a JetBrains TeamCity flaw to its Known Exploited Vulnerabilities catalog
CriticalPre-auth RCE in enterprise Java hits Bonita and OFBiz servers
CriticalU.S. CISA adds Langflow, Apache Tomcat, and N-able N-central flaws to its Known Exploited Vulnerabilities catalog
CriticalCISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited
CriticalCritical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup
CriticalVeeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug
CriticalCISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws
CriticalTP-Link patches Omada ZTP flaws allowing hackers to breach networks
CriticalNew cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root
CriticalCVE-2026-58048: cPanel Bug Enables Full Database Administrator Access
CriticalAttackers Exploit N-able Patch Bypass Flaw on RMM Servers
CriticalKindaRails2Shell threatens Ruby on Rails apps (CVE-2026-66066)
CriticalN-able Says Attackers Take Over N-central Servers After Initial Fix Proves Incomplete
CriticalRuby on Rails Patches Critical Active Storage Vulnerability Affecting Image Processing
HighAtlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
HighCPDLC over ATN-B1 Vulnerabilities
HighCISA Adds One Known Exploited Vulnerability to Catalog
High18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers
HighNew WordPress Pre-Auth XSS Could Lead to PHP Code Execution - Patch ASAP
HighMultiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
HighABB Ability Zenon
HighApple WebKit vulnerabilities reveal your IP address, despite Private Relay
HighAWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model
HighCryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps
HighNew Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs
HighZDI-26-524: (0Day) PAX Technology Q80 XCB Daemon Missing Authentication Vulnerability
HighZDI-26-525: (0Day) PAX Technology Q80 AIP File Parsing Link Following Remote Code Execution Vulnerability
HighZDI-26-526: (0Day) PAX Technology Q80 Application Installer Signature Verification Bypass Remote Code Execution Vulnerability
HighOVSwrap: 13-Year-Old Linux Kernel Flaw Lets Local Users Become Root
HighFlaws in Google APK for Python Unlock Agent-to-Agent Attack
High15 TP-Link Bugs Expose Risks in Zero-Trust Provisioning
HighCISA Adds One Known Exploited Vulnerability to Catalog
High15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic
HighNew OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch
HighPaperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports
HighVulnerabilities in Car Anti-Theft Device
HighCISA Adds Exploited N-able N-central Flaw to KEV After Customer Compromises
HighAcrisure KARR BT and DR-100
HighU.S. CISA adds a N-able N-central flaw to its Known Exploited Vulnerabilities catalog
HighThermo Fisher Patches Forensic DNA File Tampering Flaw in Its Software
HighCISA Adds One Known Exploited Vulnerability to Catalog
HighCOLDCARD Seed Generation Flaw Linked to Nearly $89 Million Bitcoin Theft
HighMultiple Vulnerabilities in SolarWinds Web Help Desk Could Allow for Authentication Bypass
HighHugging Face Diffusers Flaws Could Let Model Repositories Execute Arbitrary Code
HighThermo Fisher Patches Flaw That Could Make DNA File Tampering Nearly Undetectable
HighN-able warns of N-central auth bypass flaw exploited in attacks
HighHackers Exploit N-able N-central Flaw After Initial Fix Falls Short
MediumJohnson Controls Inc. TL280
LowMedixant RadiAnt DICOM

Daily breach, advisory, and vulnerability briefs publish every weekday.

View Live Breach Feed ← All Weekly Digests