2026-08-28 09:10 UTC
Security Journalism
BleepingComputer · Sergiu Gatlan · indexed 2026-08-28 09:25 UTC
Microsoft released the KB5120998 preview cumulative update for Windows 11 versions 25H2 and 24H2, which comes with 35 changes, including improvements to the Start menu, taskbar, and Windows search. [...]
P0
2026-08-28 09:07 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-08-28 09:30 UTC
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Red Hat, Linux Kernel, Ajax.NET Professional, Microsoft SQL Server, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2015-3246 is a race condition in Red Hat libuser that could let […]
P35
2026-08-28 08:25 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-28 08:40 UTC
PaperCut has alerted customers that bad actors are actively exploiting a vulnerability impacting all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks. The company has released an emergency patch for v25 and v26 to address the issue. It said it's "aware of confirmed customer incidents and is treating this matter with the highest priority." An
P45
2026-08-28 08:20 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-28 08:40 UTC
Cybersecurity researchers have flagged a fresh set of campaigns targeting government and diplomatic organizations in Romania, Spain, and Türkiye between late September 2025 and early April 2026. These campaigns, per Recorded Future Insikt Group, have led to the deployment of a previously undocumented backdoor dubbed HOOKEDGE, a lightweight Windows batch script that's distributed via
P0
2026-08-28 07:56 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-08-28 08:10 UTC
A cyberattack on Manchester Airports Group exposed data of 8.7 million customers across Manchester, Stansted, and East Midlands airports. Manchester Airports Group disclosed that an unauthorised third party accessed customer data belonging to approximately 8.7 million people across three of England’s busiest airports: Manchester, London Stansted, and East Midlands. “Manchester, London Stansted and East Midlands […]
P0
2026-08-28 07:04 UTC
Community
SANS Internet Storm Center · indexed 2026-08-28 07:10 UTC
During my last FOR610 session, a student asked me if I had some statistics in mind about the compilers used to generate malicious PE files? A couple of months ago, I shared some stats about the trend in 64bits VS. 32bits malware[1]. Can we go a bit further? I (vibe-)coded a Python script based on the pefile library[2] to extract some info from the PE headers. Indeed, the PE file format contains a lot of metadata! They can be accessed using a lot of tools, like Detect It Easy:
P0
2026-08-28 06:39 UTC
Vendor Research
Tenable Research Advisories · Joshua Martinelle · indexed 2026-08-28 07:15 UTC
WordPress Loops & Logic - Reflected XSS A Reflected Cross-Site Scripting vulnerability exists in the Wordpress plugin 'Loops & Logic' The ‘name’ parameter of the ‘tangible_fields_fetch’ and ‘tangible_fields_store’ actions is used in the response without any filtering, resulting in a reflected XSS vulnerability. curl http://WORDPRESS/wp-admin/admin-ajax.php?action=tangible_fields_fetch&name=%3cimg+src%3dx+onerror%3dalert%28document.domain%29%3eAll of the vulnerable code is located in 'vendor/tan…
P0
2026-08-28 03:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
UPDATED: PaperCut NG and PaperCut MF are under active exploitation. Huntress reproduced a pre-auth RCE chain and shares urgent patching, exposure, and detection guidance.
P40
2026-08-28 02:00 UTC
Community
SANS Internet Storm Center · indexed 2026-08-28 02:20 UTC
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
P0
2026-08-27 21:38 UTC
Security Journalism
BleepingComputer · Bill Toulas · indexed 2026-08-27 21:45 UTC
New details about the July attack on Hugging Face reveal that hundreds of AI agents driven by OpenAI's internal IM1 model coordinated the compromise through an unauthorized message board. [...]
P0
2026-08-27 20:31 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-08-27 20:50 UTC
Dark Caracal targets Venezuela with GoCaracal, an upgraded Bandook toolkit and an Ethereum fallback for resilient C2 communications. Dark Caracal is back with new malware and the same hunting grounds. Arctic Wolf Labs researchers link a June 2026 intrusion against a communications organisation in Venezuela to the Lebanon‑linked espionage group, and says it deployed a […]
P0
2026-08-27 19:45 UTC
Security Journalism
The Record · indexed 2026-08-27 20:00 UTC
The Trump administration is banning the acquisition of foreign-made components used to manage electricity and power, alleging that “certain foreign actors are increasingly creating and exploiting vulnerabilities” in the technology.
P0
2026-08-27 19:31 UTC
Security Journalism
Dark Reading · Nate Nelson · indexed 2026-08-27 20:00 UTC
An untold number of ZBT routers sold around the world as white-label products come with several implants built by the manufacturer.
P0
2026-08-27 18:36 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 20:30 UTC
OpenAI on Wednesday revealed that reward hacking was a key driver behind the artificial intelligence (AI)-powered hack of Hugging Face last month, adding that it found evidence of misaligned behavior as early as late May. The incident, the company said, took place during cybersecurity evaluations of several OpenAI models, and that it was mainly fueled by what it described as a "highly capable
P25
2026-08-27 18:00 UTC
Vendor Research
Cisco Talos Intelligence Blog · David J. Bianco · indexed 2026-08-27 18:10 UTC
In his first Threat Source newsletter, David Bianco explores the critical need for operational sovereignty in customizing AI guardrails to maintain the defender’s advantage.
P0
2026-08-27 17:25 UTC
Security Journalism
Dark Reading · Becky Bracken · indexed 2026-08-27 18:45 UTC
This installment of the Reporters' Notebook video series discusses the topics that dominated the cybersecurity conference, such as AI's effects on vulnerability reporting and security research.
P0
2026-08-27 16:31 UTC
Security Journalism
BleepingComputer · Lawrence Abrams · indexed 2026-08-27 16:35 UTC
PaperCut is warning that hackers are actively exploiting a vulnerability in all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks. [...]
P25
2026-08-27 16:20 UTC
Vendor Research
AWS Security Blog · Stephan Traub · indexed 2026-08-27 16:35 UTC
If you’re running AI agents in production, Amazon Bedrock Guardrails protects the model boundary. But your agents also invoke tools, fetch external data, and communicate with other systems. That data flows outside the model boundary, where model-level guardrails can’t reach. You can extend guardrail coverage to those interactions using three validation checkpoints built with the […]
P0
2026-08-27 16:12 UTC
Security Journalism
BleepingComputer · Bill Toulas · indexed 2026-08-27 16:25 UTC
The Manchester Airports Group (MAG) disclosed that hackers breached its systems and stole customer data, including Wi-Fi sign-ups from Manchester, Stansted, and East Midlands airports. [...]
P0
2026-08-27 16:00 UTC
Vendor Research
Microsoft Security Blog · Alym Rayani · indexed 2026-08-27 17:35 UTC
This month’s updates provide new capabilities to help organizations gain insights into agent activity, expand security coverage across supported environments, and enhance security management across their environments. The post What’s new in Microsoft Security: August 2026 appeared first on Microsoft Security Blog.
P0
2026-08-27 15:30 UTC
Security Journalism
The Record · indexed 2026-08-27 15:35 UTC
The appeals court sent the case back to the Helsinki District Court to be heard on its merits, although the three men, who had previously been detained in Finland, have since left the country.
P0
2026-08-27 15:13 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 17:00 UTC
Credit: Hacktron Vercel has released security patches for two critical-severity vulnerabilities in the Next.js web framework, both of which allow unauthenticated remote code execution, one exploitable via specially crafted AVIF image files and the other through a path traversal flaw affecting servers that use a Windows filesystem. The Windows path traversal, tracked as CVE-2026-75604&
P20
2026-08-27 15:12 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-08-27 17:00 UTC
A fake login page. A fake security scan. A fake productivity app. Apparently, pretending to be useful is still one of the easier ways into a machine. The rest of the week gets stranger: botnets borrowing AI, command traffic hiding in public infrastructure, malicious tools waiting before showing their real behavior, exposed systems getting scanned, and exploit windows shrinking again. Different
P15
2026-08-27 14:45 UTC
Security Journalism
The Record · indexed 2026-08-27 14:50 UTC
Foreign intelligence services, particularly those from China and Russia, are increasingly behind cyberattacks on German companies, according to a new survey of the country’s private sector.
P0
2026-08-27 14:30 UTC
Vendor Research
Tenable Blog · Robert Huber · indexed 2026-08-27 14:40 UTC
Discover how Tenable’s shift to an AI-driven exposure management program helped Tenable’s CSO, Robert Huber, overcome tool sprawl, unify data silos, mitigate the risk of rapid AI adoption, and shift from presenting granular, technical metrics to communicating business risk that the C-suite and the board can understand.Key takeawaysSecurity tool sprawl and data silos make it difficult for CISOs to holistically and accurately assess their organizations’ cyber risk.An exposure management program c…
P0
2026-08-27 14:09 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-08-27 14:25 UTC
Australian police charged two men linked to TeamPCP over malware hidden in open-source code that stole 500,000+ credentials from 1,000+ organizations. Australian police have charged two men from Western Australia over a global cybercrime operation that allegedly hid malicious code in open-source software and used it to steal data from thousands of organisations. “Two West […]
P0
2026-08-27 14:00 UTC
Security Journalism
BleepingComputer · Sponsored by ESET · indexed 2026-08-27 14:05 UTC
Threat research gives security teams insight into how attackers operate, while MDR turns that intelligence into faster detection and response. ESET explains how combining threat intelligence, continuous monitoring, and human expertise can help SMBs strengthen their defenses. [...]
P0
2026-08-27 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress’ redesigned Managed ITDR dashboard adds Rapid Identity Triage, Failed Login Characterization, and Quick SIEM search for faster investigations.
P0
2026-08-27 14:00 UTC
Vendor Research
Google Security Blog · Bram Bonné · indexed 2026-09-01 12:15 UTC
Android bot with a shield protecting the network
P0
2026-08-27 14:00 UTC
Security Journalism
BleepingComputer · Bill Toulas · indexed 2026-08-27 14:05 UTC
Google is introducing new network security protections in Android 17 to strengthen connection privacy, address cellular vulnerabilities, and protect the privacy of users' home networks. [...]
P0