[{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.478907+00:00","id":61,"published_date":"2026-08-29T23:11:51+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"Anthropic is permanently increasing Claude Code's standard weekly usage limits by 25% for Pro, Max, Team, and seat-based Enterprise plans, but it's not as good as it sounds. [...]","title":"Anthropic is cutting Claude Code's current weekly limits by 17%","url":"https://www.bleepingcomputer.com/news/artificial-intelligence/anthropic-is-cutting-claude-codes-current-weekly-limits-by-17-percent"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.075412+00:00","id":573,"published_date":"2026-08-29T21:01:56+00:00","severity":"medium","source_name":"Ransomware.live","summary":"This is a final warning to reach out by 1 Sep 2026 before we leak along with several annoying (digital) problems that'll come your way. Make the right decision, don't be the next headline. | Updated: 30 Aug 2026 | Warning: FINAL WARNING","title":"\ud83c\udff4\u200d\u2620\ufe0f Shinyhunters has just published a new victim : Neogen Corporation","url":"https://www.ransomware.live/id/TmVvZ2VuIENvcnBvcmF0aW9uQHNoaW55aHVudGVycw=="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.076239+00:00","id":574,"published_date":"2026-08-29T19:28:32+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Bandit Industries","url":"https://www.ransomware.live/id/QmFuZGl0IEluZHVzdHJpZXNAcWlsaW4="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.077547+00:00","id":575,"published_date":"2026-08-29T18:00:45+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : LAPoco Architects","url":"https://www.ransomware.live/id/TEFQb2NvIEFyY2hpdGVjdHNAcWlsaW4="},{"category":"Identity & Access","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.166129+00:00","id":11,"published_date":"2026-08-29T16:25:03+00:00","severity":"high","source_name":"The Hacker News","summary":"Multiple critical security flaws have been disclosed in WordPress plugins and themes, including WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP, that could lead to authentication bypass, account takeover, and arbitrary code execution. The vulnerabilities, according to Wordfence and Patchstack, are listed below - CVE-2026-76581 (CVSS score: 9.8) - An authentication bypass flaw in","title":"Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE","url":"https://thehackernews.com/2026/08/five-critical-wordpress-plugin-and.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Independent breach-focused journalism (Dissent Doe). Covers incidents mainstream outlets skip. Promoted 3 -> 2 on 2026-08-29: the prior entry set Tier 3 explicitly 'until track record is established in our pipeline', and it now is \u2014 sustained accurate breach reporting at ~3/day, including carrying the McKesson disclosure while Bleeping Computer was dark. Single-author with no masthead peer review, which is why it stops at Tier 2 rather than Tier 1.","created_at":"2026-08-29T23:17:13.745281+00:00","id":648,"published_date":"2026-08-29T15:20:21+00:00","severity":"medium","source_name":"DataBreaches.net","summary":"DPA reports: The Berlin state government has declined to comment on the demands made by hackers who targeted the city\u2019s administrative data network two weeks ago, a spokeswoman said on Saturday. The government is also withholding information about which data the attackers accessed and exactly who is behind the cyberattack. \u201cFor reasons of investigative tactics,... Source","title":"De: Hackers demand 30 bitcoin from Berlin as sensitive data breach widens","url":"https://databreaches.net/2026/08/29/de-hackers-demand-30-bitcoin-from-berlin-as-sensitive-data-breach-widens"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Independent breach-focused journalism (Dissent Doe). Covers incidents mainstream outlets skip. Promoted 3 -> 2 on 2026-08-29: the prior entry set Tier 3 explicitly 'until track record is established in our pipeline', and it now is \u2014 sustained accurate breach reporting at ~3/day, including carrying the McKesson disclosure while Bleeping Computer was dark. Single-author with no masthead peer review, which is why it stops at Tier 2 rather than Tier 1.","created_at":"2026-08-29T23:17:13.749831+00:00","id":649,"published_date":"2026-08-29T15:02:26+00:00","severity":"medium","source_name":"DataBreaches.net","summary":"AJ Vicens and Raphael Satter report: U.S. officials are backpedaling on claims that several government agencies were hacked by Chinese spies, now saying that the organizations were among the hackers\u2019 targets. In a freshly edited statement, the Justice Department said Friday that the U.S. Senate, the Federal Reserve, NASA, and others were \u201camong the targets... Source","title":"US officials backpedal on claims that government agencies were hacked by Chinese","url":"https://databreaches.net/2026/08/29/us-officials-backpedal-on-claims-that-government-agencies-were-hacked-by-chinese"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.090870+00:00","id":576,"published_date":"2026-08-29T15:01:16+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Neumaticos Corral S.A.","url":"https://www.ransomware.live/id/TmV1bWF0aWNvcyBDb3JyYWwgUy5BLkBxaWxpbg=="},{"category":"Uncategorized","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.484767+00:00","id":62,"published_date":"2026-08-29T14:19:23+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"The latest version of the Brave browser, 1.94, introduces a feature called 'Email Aliases' that allows users to generate disposable email addresses when signing up to a new service. [...]","title":"Brave browser adds email aliases to help users evade tracking","url":"https://www.bleepingcomputer.com/news/security/brave-browser-adds-email-aliases-to-help-users-evade-tracking"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Independent breach-focused journalism (Dissent Doe). Covers incidents mainstream outlets skip. Promoted 3 -> 2 on 2026-08-29: the prior entry set Tier 3 explicitly 'until track record is established in our pipeline', and it now is \u2014 sustained accurate breach reporting at ~3/day, including carrying the McKesson disclosure while Bleeping Computer was dark. Single-author with no masthead peer review, which is why it stops at Tier 2 rather than Tier 1.","created_at":"2026-08-29T23:17:13.753296+00:00","id":650,"published_date":"2026-08-29T14:15:57+00:00","severity":"medium","source_name":"DataBreaches.net","summary":"SuspectFile reports: A cyberattack against a Texas healthcare organization allegedly resulted in the exfiltration of approximately 1.4 TB of data, according to claims made by the ransomware group PEAR. The alleged victim is South Plains Rural Health Services, Inc. (SPRHS), a nonprofit healthcare organization that has provided services to rural communities across West Texas for decades. The information... Source","title":"PEAR leaks data allegedly exfiltrated from South Plains Rural Health Services while SPRHS remains silent","url":"https://databreaches.net/2026/08/29/pear-leaks-data-allegedly-exfiltrated-from-south-plains-rural-health-services-while-sprhs-remains-silent"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.091553+00:00","id":577,"published_date":"2026-08-29T12:04:46+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : The Frame Group","url":"https://www.ransomware.live/id/VGhlIEZyYW1lIEdyb3VwQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.092293+00:00","id":578,"published_date":"2026-08-29T12:04:09+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : La Maison Des Travaux","url":"https://www.ransomware.live/id/TGEgTWFpc29uIERlcyBUcmF2YXV4QHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.092984+00:00","id":579,"published_date":"2026-08-29T12:03:33+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : BLISS 1041","url":"https://www.ransomware.live/id/QkxJU1MgMTA0MUBxaWxpbg=="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.093679+00:00","id":580,"published_date":"2026-08-29T12:02:51+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : CareClinics","url":"https://www.ransomware.live/id/Q2FyZUNsaW5pY3NAcWlsaW4="},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.510607+00:00","id":1032,"published_date":"2026-08-29T11:55:44+00:00","severity":"high","source_name":"Security Affairs","summary":"A researcher chained two Unitree G1 flaws to gain root access remotely and showed how a compromised robot could attack others nearby. Security researcher Olivier Laflamme spent about three months digging into the Unitree G1 humanoid robot and eventually found a way to fully compromise it without plugging in a single cable. In his technical [\u2026]","title":"Hack One Robot, Reach the Next: Unitree G1 Security Flaws","url":"https://securityaffairs.com/198085/hacking/hack-one-robot-reach-the-next-unitree-g1-security-flaws.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.310473+00:00","id":115,"published_date":"2026-08-29T11:55:00+00:00","severity":"medium","source_name":"SecurityWeek","summary":"A cyberattack caused disruptions at the toy and game giant earlier this year and the company is now disclosing a data breach. The post Hasbro Data Breach Exposed Employee Personal Information appeared first on SecurityWeek.","title":"Hasbro Data Breach Exposed Employee Personal Information","url":"https://www.securityweek.com/hasbro-data-breach-exposed-employee-personal-information"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Independent breach-focused journalism (Dissent Doe). Covers incidents mainstream outlets skip. Promoted 3 -> 2 on 2026-08-29: the prior entry set Tier 3 explicitly 'until track record is established in our pipeline', and it now is \u2014 sustained accurate breach reporting at ~3/day, including carrying the McKesson disclosure while Bleeping Computer was dark. Single-author with no masthead peer review, which is why it stops at Tier 2 rather than Tier 1.","created_at":"2026-08-29T23:17:13.775915+00:00","id":651,"published_date":"2026-08-29T11:47:05+00:00","severity":"medium","source_name":"DataBreaches.net","summary":"Nitin Naresh revisits the significant Star Health breach of 2024. Previous coverage of the hack-and-leak incident can be found linked in the Related section below this post, which includes coverage of threats made to the insurance firm\u2019s executives, court injunctions that, of course, did not stop a threat actor from leaking data, and lawsuits against... Source","title":"Star Health\u2019s public record: A data breach, a \u20b93.39-crore fine, 13,000 ombudsman complaints \u2014 and still no accounting for the policyholder","url":"https://databreaches.net/2026/08/29/star-healths-public-record-a-data-breach-a-%e2%82%b93-39-crore-fine-13000-ombudsman-complaints-and-still-no-accounting-for-the-policyholder"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.128900+00:00","id":581,"published_date":"2026-08-29T11:31:03+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : AUM Construction","url":"https://www.ransomware.live/id/QVVNIENvbnN0cnVjdGlvbkBxaWxpbg=="},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.514669+00:00","id":1033,"published_date":"2026-08-29T10:55:47+00:00","severity":"medium","source_name":"Security Affairs","summary":"Berlin \u2018s government faces a Rhysida ransomware attack weeks before elections, with officials refusing to pay despite a claimed 5.79 TB data theft. Berlin\u2019s state government confirmed this week it\u2019s dealing with an extortion attempt following an August cyberattack on the city-state\u2019s administrative network, and officials have already refused the requested ransom. The ransomware group [\u2026]","title":"Rhysida Ransomware Group Targets Berlin Government Ahead of Vote","url":"https://securityaffairs.com/198064/cyber-crime/rhysida-ransomware-group-targets-berlin-government-ahead-of-vote.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.521094+00:00","id":1034,"published_date":"2026-08-29T09:16:52+00:00","severity":"critical","source_name":"Security Affairs","summary":"An alleged Chinese-speaking actor breached Philippine nuclear and naval targets by exploiting known flaws, stealing sensitive data. A suspected Chinese-speaking operator targeted a Philippine nuclear research body and a marine engineering company that supports the Philippine Navy, using well-known vulnerabilities in internet-facing ownCloud and WordPress systems. The activity was uncovered after Hunt.io found an exposed [\u2026]","title":"Philippine Nuclear and Naval Targets Hit by Suspected Chinese Operator","url":"https://securityaffairs.com/198041/intelligence/philippine-nuclear-and-naval-targets-hit-by-suspected-chinese-operator.html"},{"category":"Malware/Infostealer","confidence":"HIGH","confidence_reason":"Curated Microsoft threat research, Patch Tuesday summaries, and incident analysis. Replaced the MSRC Update Guide CVE firehose (~3k advisories/quarter) with this high-signal blog feed.","created_at":"2026-08-29T23:16:53.461459+00:00","id":241,"published_date":"2026-08-29T03:43:27+00:00","severity":"medium","source_name":"Microsoft Security Blog","summary":"Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with detections and hunting guidance. The post TerminalFix campaign deploys a reverse tunnel through multistage intrusion appeared first on Microsoft Security Blog.","title":"TerminalFix campaign deploys a reverse tunnel through multistage intrusion","url":"https://www.microsoft.com/en-us/security/blog/2026/08/28/terminalfix-campaign-deploys-reverse-tunnel-through-multistage-intrusion"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Firmware and UEFI security research \u2014 a blind spot in the roster, which had no coverage below the OS. Primary work (UEFI vulnerability discovery, malicious-model detection) mixed with SEO listicles, so filter_uncategorized is required.","created_at":"2026-08-29T23:17:30.272002+00:00","id":1353,"published_date":"2026-08-29T03:23:38+00:00","severity":"medium","source_name":"Binarly","summary":"The Binarly REsearch team used dynamic analysis to analyze model files on a large scale on Hugging Face and compared their results with scanners deployed on the platform. They categorized the 21 static-scanner evasion techniques behind common detection misses. Most of these were based on techniques or concepts that had already been documented in previous studies, which highlights an inherent limitation of static pattern matching.","title":"MLTracer: Syscall-Based Malicious Model Detection and Labeling, with Static-Scanner Evasion Taxonomy","url":"https://www.binarly.io/blog/malicious-model-detection-mltracer"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.155452+00:00","id":582,"published_date":"2026-08-29T01:51:27+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Guess your too busy focusing on your clients then changing password and protecting your clients. We breached them through pm.livable.com. You can see screenshots and file tree in the proof section. Also bleepingcomputer we will send you the data so you can confirm it too. Were not bluffing BayView Real Estate guess you guys didn't learn your lesson from the 26 million lawsuit but now you will. The following data was stolen: 1. Corporate Identity and Admin Profiles 6 Individual Administrator Profiles: Complete web profile exports, account configurations, and visible permission mappings for six active employees: - Breanna Tiu - Diana Nguyen - Elise Hou - Jeanne David - Wendy Wu - Zhen Deng 2. High-Density Financial Database Dumping - Building Statement Reports: The core database extraction file (Building-nK37xrmRYcoCMHymv-statements-report.pdf - Sample Distribution Summaries: Multi-property accounting records detailing exactly how utility expenses are balanced and divided across real estate assets (including specialized trackers for 394 Midway Street). 3. Operational Infrastructure & Platform Playbooks - Internal Corporate Handbooks: Step-by-step business guides detailing how money is processed and collected: - Bill & Collect: Manuals for handling payments routed directly through Livable's platform. - Convergent: Frameworks detailing workflows where tenants pay the property group directly. - Software Integration Guides: Training documentation teaching personnel how to map customer data tables between platforms: - AppFolio ID and Charges mapping logs - Yardi system integration guides Complete Video Tutorial Playbooks: Over 100 MB of internal instructional videos teaching how to navigate the portal, manage profiles, and export tenant lists: - 01 PM Portal Intro - 02 How to Setup a Tenant's Account - 03 How to Access the Tenant's Account - 04 How to Access the Allocation Table - 05 Move Out Processing - 06 Export tenant charges and download CSV files - PM Portal Training - Portfolio Overview & Building Profile - PM Portal Training - Resident Profile & Allocation Tables - PM Portal Training - Utility Recovery Proforma, Add a Building, Export Monthly Tenant Charges 4. Tenant Communication Scripts & Branding Graphics - Official Digital Graphics: High-resolution templates used by the company for onboarding and platform access: - Bill & Collect Welcome Email interface maps - Convergent Welcome Email branding templates - Resident Portal dashboard graphical layouts - Physical Outreach Letters: Word and PDF versions of letters sent directly to tenants regarding payments and billing statuses: - Bill & Collect / Convergent / Net Zero Billing Tenant Welcome Letters - Delinquency Template notification forms - Physical Billing Statements and Net Zero Statement layouts 5. Legal Leases & Regional Utility Addenda - 30-Day Notice Templates: Legally binding notification documents used to alter tenant agreements (30 Day Notice_Billing Method Change, Notice of Supplier Change, and Notice of Supplier and Allocation Formula Change). - Geographic Lease Addenda Collections: Specific legal attachments containing the rules and formulas for utility billing across different municipal districts: - California Addenda (including localized frameworks for Hayward and Los Angeles) - National Utility Addenda / US Addenda (including localized parameters for Seattle) - Exhibit B - Submetered Water regulatory documents - Lease Addendum Guide instructional packets Uncompressed size: 216653153 bytes(216.6 MB) compressed size: 78.0MB mirror 1: https://pixeldrain.com/u/pc8VfBLf mirror 2: https://fex.net/s/vydmesb","title":"\ud83c\udff4\u200d\u2620\ufe0f Shadowbyt3$ has just published a new victim : BayView Real Estate","url":"https://www.ransomware.live/id/QmF5VmlldyBSZWFsIEVzdGF0ZUBTaGFkb3dCeXQzJA=="},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Independent breach-focused journalism (Dissent Doe). Covers incidents mainstream outlets skip. Promoted 3 -> 2 on 2026-08-29: the prior entry set Tier 3 explicitly 'until track record is established in our pipeline', and it now is \u2014 sustained accurate breach reporting at ~3/day, including carrying the McKesson disclosure while Bleeping Computer was dark. Single-author with no masthead peer review, which is why it stops at Tier 2 rather than Tier 1.","created_at":"2026-08-29T23:17:13.777634+00:00","id":652,"published_date":"2026-08-29T01:02:51+00:00","severity":"medium","source_name":"DataBreaches.net","summary":"Lawrence Abrams reports: Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and data theft, with the ShinyHunters extortion group claiming it stole 284 million patient data records. McKesson is a major U.S. healthcare company and pharmaceutical distributor that provides medicines, medical supplies, technology, and services to... Source","title":"McKesson is investigating a cybersecurity incident after ShinyHunters claims patient data theft","url":"https://databreaches.net/2026/08/28/mckesson-is-investigating-a-cybersecurity-incident-after-shinyhunters-claims-patient-data-theft"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.193873+00:00","id":583,"published_date":"2026-08-28T23:57:50+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Hundreds of millions of records/rows of data was compromised containing very sensitive information spanning from PII to PHI. We urge you to reach out. Read our emails. We will provide a substanial discount. Failure to engage with us will result in the full publication of data taken from you and we very much intend to carry that out if you do not engage with us. This is a final warning to reach out by 1 Sep 2026 before we leak along with several annoying (digital) problems that'll come your way. Make the right decision, don't be the next headline. | Updated: 29 Aug 2026 | Warning: FINAL WARNING","title":"\ud83c\udff4\u200d\u2620\ufe0f Shinyhunters has just published a new victim : McKesson Corporation","url":"https://www.ransomware.live/id/TWNLZXNzb24gQ29ycG9yYXRpb25Ac2hpbnlodW50ZXJz"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.206993+00:00","id":584,"published_date":"2026-08-28T22:57:41+00:00","severity":"medium","source_name":"Ransomware.live","summary":"This is a final warning to reach out by 1 Sep 2026 before we leak along with several annoying (digital) problems that'll come your way. Make the right decision, don't be the next headline. | Updated: 29 Aug 2026 | Warning: FINAL WARNING","title":"\ud83c\udff4\u200d\u2620\ufe0f Shinyhunters has just published a new victim : Elekta AB","url":"https://www.ransomware.live/id/RWxla3RhIEFCQHNoaW55aHVudGVycw=="},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.208307+00:00","id":585,"published_date":"2026-08-28T22:57:21+00:00","severity":"medium","source_name":"Ransomware.live","summary":"This is a final warning to reach out by 1 Sep 2026 before we leak along with several annoying (digital) problems that'll come your way. Make the right decision, don't be the next headline. | Updated: 29 Aug 2026 | Warning: FINAL WARNING","title":"\ud83c\udff4\u200d\u2620\ufe0f Shinyhunters has just published a new victim : Jack Henry & Associates","url":"https://www.ransomware.live/id/SmFjayBIZW5yeSAmIEFzc29jaWF0ZXNAc2hpbnlodW50ZXJz"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.485833+00:00","id":63,"published_date":"2026-08-28T22:40:17+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and data theft, with the ShinyHunters extortion group claiming it stole 284 million patient data records. [...]","title":"McKesson discloses breach after ShinyHunters claims patient data theft","url":"https://www.bleepingcomputer.com/news/security/mckesson-discloses-breach-after-shinyhunters-claims-patient-data-theft"},{"category":"AI Security","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research team with consistent primary analysis.","created_at":"2026-08-29T23:16:51.535506+00:00","id":175,"published_date":"2026-08-28T22:00:07+00:00","severity":"medium","source_name":"Unit42 Palo Alto","summary":"New research reveals that AI safety refusal lives in a thin neural layer, highlighting the critical need for external, multi-layered security. The post Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety appeared first on Unit 42.","title":"Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety","url":"https://unit42.paloaltonetworks.com/perturbation-probing-llm-safety"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.170346+00:00","id":12,"published_date":"2026-08-28T21:30:52+00:00","severity":"medium","source_name":"The Hacker News","summary":"Berlin's state government has confirmed that it is the target of an extortion attempt following the August compromise of the city's state administrative network, and said it will not meet the extortionists' demands. The same statement disclosed that forensic work had found further data outflows in the portfolio of the Senate Department for Mobility, Transport, Climate Protection and Environment","title":"Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network","url":"https://thehackernews.com/2026/08/berlin-refuses-to-pay-hackers-who-stole.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.628996+00:00","id":790,"published_date":"2026-08-28T21:25:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"A supply chain worm was found hiding in @7nohe/openapi-react-query-codegen, a popular code generator for TanStack Query, stealing credentials and spreading itself to every package the victim maintains. Category: Vulnerabilities & Threats","title":"Popular code generator for TanStack Query hit by supply chain worm","url":"https://www.aikido.dev/blog/popular-code-generator-for-tanstack-query-hit-by-supply-chain-worm"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.228110+00:00","id":586,"published_date":"2026-08-28T20:58:46+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Alter Consultores Legales","url":"https://www.ransomware.live/id/QWx0ZXIgQ29uc3VsdG9yZXMgTGVnYWxlc0BxaWxpbg=="},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.174232+00:00","id":13,"published_date":"2026-08-28T20:38:47+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cosmos Labs has warned that a critical balance-handling flaw in the shared Cosmos EVM module was exploited to drain funds from six blockchains between August 20 and August 25, 2026. The vulnerability, designated GHSA-7g4w-cg88-2cq2, is rated Critical by Cosmos Labs and was published without a CVE identifier, a weakness classification, or a CVSS score. Affected versions are < 0.6.2 and >=","title":"Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable","url":"https://thehackernews.com/2026/08/cosmos-evm-flaw-exploited-after-cosmos.html"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.156586+00:00","id":542,"published_date":"2026-08-28T20:29:38+00:00","severity":"medium","source_name":"CyberScoop","summary":"The prolific ransomware group Qilin claimed responsibility for the attack. ATF insists the incident was limited to a standalone system and hasn\u2019t impacted critical operations. The post ATF confirms cyberattack hit system containing info on its investigation targets appeared first on CyberScoop.","title":"ATF confirms cyberattack hit system containing info on its investigation targets","url":"https://cyberscoop.com/atf-doj-cyberattack-qilin-ransomware"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.631085+00:00","id":791,"published_date":"2026-08-28T20:29:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"Most of a container's vulnerabilities come from the base image. How to harden Docker images, why hardening is ongoing, and how to patch the base you already run. Category: Guides & Best Practices","title":"Securing Docker images","url":"https://www.aikido.dev/blog/securing-docker-images"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.823402+00:00","id":76,"published_date":"2026-08-28T20:19:22+00:00","severity":"medium","source_name":"Dark Reading","summary":"The Hugging Face incident was bigger and worse than previously thought, with approximately 700 agents collaborating on a sophisticated, multistage attack.","title":"Hundreds of OpenAI Agents Invaded Hugging Face Servers","url":"https://www.darkreading.com/cyberattacks-data-breaches/hundreds-openai-agents-invaded-hugging-face-servers"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.524302+00:00","id":1035,"published_date":"2026-08-28T20:14:36+00:00","severity":"medium","source_name":"Security Affairs","summary":"Love Electric\u2019s alleged data breach exposes sensitive driver data and highlights the identity risks created by third-party salary sacrifice providers. A seller on an English-language data-breach forum claimed on August 26 that they had obtained the driver database of Love Electric, a UK broker that runs electric-vehicle salary sacrifice schemes. The seller, operating under the [\u2026]","title":"Love Electric Breach: 877,000 Driver Records Offered for $600","url":"https://securityaffairs.com/198033/data-breach/love-electric-breach-877000-driver-records-offered-for-600.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.487991+00:00","id":64,"published_date":"2026-08-28T19:08:26+00:00","severity":"high","source_name":"Bleeping Computer","summary":"PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software after researchers discovered multiple ways to bypass the initial fixes. [...]","title":"PaperCut releases second emergency patch for exploited flaws","url":"https://www.bleepingcomputer.com/news/security/papercut-releases-second-emergency-patch-for-exploited-flaws"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.826390+00:00","id":77,"published_date":"2026-08-28T18:25:43+00:00","severity":"medium","source_name":"Dark Reading","summary":"Omdia's Theresa Lanowitz talks with the Dark Reading News Desk about the potential \u2014 and risks \u2014 of using agentic AI for penetration testing, red teaming, and other practices.","title":"Offensive Security Investments Surge as AI Threats Increase","url":"https://www.darkreading.com/cybersecurity-operations/offensive-security-investments-surge-ai-threats-increase"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.490490+00:00","id":65,"published_date":"2026-08-28T18:18:55+00:00","severity":"high","source_name":"Bleeping Computer","summary":"A maximum-severity vulnerability in the GiveWP plugin for WordPress allows an unauthenticated attacker to execute arbitrary commands on the hosting server. [...]","title":"GiveWP WordPress donation plugin flaw lets hackers execute server commands","url":"https://www.bleepingcomputer.com/news/security/givewp-wordpress-donation-plugin-flaw-lets-hackers-execute-server-commands"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.955939+00:00","id":872,"published_date":"2026-08-28T18:06:52+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-091-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/28/2026 11:00 AM PDT Description: AWS Systems Manager Agent (amazon-ssm-agent) is Amazon software that runs on Amazon Elastic Compute Cloud (Amazon EC2) instances, edge devices, on-premises servers, and virtual machines (VMs). Amazon-ssm-agent makes it possible for Systems Manager to update, manage, and configure these resources. We identified CVE-2026-81849, where an improper limitation of a pathname to a restricted directory in the aws:downloadContent plugin in amazon-ssm-agent before 3.3.4515.0 might allow an authenticated remote user whose ssm:SendCommand permission is restricted to the AWS-DownloadContent document, to write arbitrary files outside the intended download directory with root privileges, via crafted object keys in the S3 source the document is directed to retrieve. This issue may lead to arbitrary code execution as root if specific sensitive files are overwritten. To remediate this issue, customers should upgrade amazon-ssm-agent to version 3.3.4515.0 or later. Impacted versions: Amazon amazon-ssm-agent from 2.0.767.0 to 3.3.4364.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-81849 - Path traversal in the aws:downloadContent plugin in amazon-ssm-agent","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-091-aws"},{"category":"OT/ICS","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.526931+00:00","id":1036,"published_date":"2026-08-28T18:00:24+00:00","severity":"medium","source_name":"Security Affairs","summary":"Trump targets foreign-made power grid equipment, citing cyber, sabotage and supply-chain risks to U.S. national security. Executive Order 14420, signed on August 26, targets equipment and technologies that could expose the power grid to sabotage, unauthorized access, malicious remote activity or supply-chain disruption. The timing matters. The White House points to the rapid expansion of [\u2026]","title":"Trump Targets Foreign Technology in New U.S. Power Grid Security Order","url":"https://securityaffairs.com/198025/security/trump-targets-foreign-technology-in-new-u-s-power-grid-security-order.html"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.252981+00:00","id":587,"published_date":"2026-08-28T17:31:28+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Newton County School System","url":"https://www.ransomware.live/id/TmV3dG9uIENvdW50eSBTY2hvb2wgU3lzdGVtQHFpbGlu"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.177608+00:00","id":14,"published_date":"2026-08-28T17:12:15+00:00","severity":"high","source_name":"The Hacker News","summary":"Malicious actors are exploiting a newly patched security flaw in PaperCut NG and MF to execute arbitrary code on susceptible instances, as the company released a fresh emergency fix with additional hardening. \"This vulnerability gives an unauthenticated attacker remote control over PaperCut's trusted configuration, which could be used to execute arbitrary Java code inside the application's","title":"Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication","url":"https://thehackernews.com/2026/08/attackers-chain-two-papercut-flaws-to.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Malware analysis and software supply-chain research (Shai-Hulud worm tracking, malware-as-a-service trends). Reinforces the Supply Chain category, which had no dedicated source before this audit. filter_uncategorized drops partner/product posts.","created_at":"2026-08-29T23:17:28.979726+00:00","id":1303,"published_date":"2026-08-28T17:00:00+00:00","severity":"medium","source_name":"ReversingLabs","summary":"The alleged actors behind one of the most active supply chain threats were arrested in Australia \u2014 but this is not the end of Shai-Hulud.","title":"Shai-Hulud worm arrests: What you need to know","url":"https://www.reversinglabs.com/blog/shai-hulud-worm-arrests-what-you-need-to-know"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.952039+00:00","id":870,"published_date":"2026-08-28T16:50:52+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-090-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/27/2026 13:00 PM PDT Description: awsdac (diagram-as-code) is a CLI tool that generates AWS architecture diagrams from YAML definitions, enabling version-controlled, code-driven diagramming. We identified CVE-2026-81838, a Zip Slip (path traversal) issue. When awsdac extracts a zip archive referenced by a ZipFile resource in a definition file, a crafted archive can write files outside the intended cache directory, to any path writable by the user running awsdac. Depending on the file written, this can lead to arbitrary code execution. Leveraging this issue requires processing a definition file from an untrusted source. This can occur when: - awsdac is run without definition trust restrictions (versions prior to 0.22.4 had no trust distinction; version 0.22.4 and later require the \u2212\u2212allow\u2212untrusted\u2212definitions flag), or - a definition file is loaded from the local filesystem ('Type: LocalFile'), which bypasses the definition URL allowlist. CI/CD environments that process definition files from untrusted or semi-trusted sources are the primary risk scenario. awsdac is a client-side CLI tool that renders architecture diagrams locally. This issue does not affect any AWS service, AWS account, or customer data. The impact is limited to the machine on which awsdac runs. Impacted versions: awsdac: versions 0.10 through 0.23 (inclusive) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-81838 - Zip Slip path traversal in awsdac (diagram-as-code)","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-090-aws"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.496518+00:00","id":66,"published_date":"2026-08-28T16:36:47+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"A 68-year-old has been sentenced in the U.K. to more than six years in prison for operating an illegal IPTV (Internet Protocol Television) service that generated \u00a3980,812 ($1.3 million) over three years. [...]","title":"68-year-old imprisoned after making $1.3 million by pirating IPTV services","url":"https://www.bleepingcomputer.com/news/security/68-year-old-imprisoned-after-making-13-million-by-pirating-iptv-services"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism (Recorded Future-owned), strong on nation-state reporting.","created_at":"2026-08-29T23:16:50.419702+00:00","id":125,"published_date":"2026-08-28T16:30:00+00:00","severity":"medium","source_name":"The Record","summary":"PaperCut released an emergency advisory on Thursday evening saying vulnerabilities in their print management software, PaperCut NG and MF, are under active exploitation.","title":"PaperCut warns of hackers using printer management software flaw in attacks","url":"https://therecord.media/papercut-warns-of-hackers-using-printer-management-vulnerabilities"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.181763+00:00","id":15,"published_date":"2026-08-28T16:20:46+00:00","severity":"medium","source_name":"The Hacker News","summary":"Google on Thursday announced new network security protections in Android 17 to bolster connection privacy, address cellular vulnerabilities, and safeguard the privacy of users' home networks. Topping the list is support for Encrypted Client Hello (ECH), a privacy standard that prevents networks from eavesdropping on which websites a user is visiting. \"This new privacy standard works in tandem","title":"Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers","url":"https://thehackernews.com/2026/08/android-17-adds-os-wide-ech-to-hide.html"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research. Caveat: already filtered for noise via filter_uncategorized.","created_at":"2026-08-29T23:16:52.872085+00:00","id":220,"published_date":"2026-08-28T16:01:30+00:00","severity":"medium","source_name":"SentinelOne","summary":"Authorities disrupt global cybercrime rings, attackers abuse DocuSign in NovaCookies phishing, and Spark RAT targets Cambodia with vulnerable drivers.","title":"The Good, the Bad and the Ugly in Cybersecurity \u2013 Week 35","url":"https://www.sentinelone.com/blog/the-good-the-bad-and-the-ugly-in-cybersecurity-week-35-8"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.525527+00:00","id":407,"published_date":"2026-08-28T16:00:00+00:00","severity":"medium","source_name":"Huntress","summary":"Move past basic credential harvesting. Discover how modern attackers use ClickFix, BitB, and OAuth consent phishing\u2014and how to train your users with Huntress SAT.","title":"Next-Gen Phishing Tactics Users Aren\u2019t Ready For | Huntress","url":"https://www.huntress.com/blog/advanced-phishing-tradecraft"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.528786+00:00","id":408,"published_date":"2026-08-28T16:00:00+00:00","severity":"medium","source_name":"Huntress","summary":"Get ready for a phishing trip! Learn about the strategy behind phishing simulations and how it can help your organization build resilience against real phishing threats.","title":"Teach Yourself to Phish | Huntress","url":"https://www.huntress.com/blog/teach-yourself-to-phish-the-strategy-behind-phishing-simulations"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.532825+00:00","id":409,"published_date":"2026-08-28T16:00:00+00:00","severity":"medium","source_name":"Huntress","summary":"Learn the essentials of phishing simulation training with our beginner's guide. Protect your organization by simulating real phishing attacks.","title":"A Beginner\u2019s Guide to Phishing Simulation Training for Employees | Huntress","url":"https://www.huntress.com/blog/a-beginners-guide-to-phishing-simulation-training-for-employees"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.185167+00:00","id":16,"published_date":"2026-08-28T15:56:55+00:00","severity":"critical","source_name":"The Hacker News","summary":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting ownCloud to its Known Exploited Vulnerabilities (KEV) catalog following reports that a Chinese-speaking threat actor weaponized the vulnerability to target a nuclear research body in the Philippines. The vulnerability, tracked as CVE-2023-49105 (CVSS score: 9.8), is a case of","title":"ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body","url":"https://thehackernews.com/2026/08/snowflake-github-actions-flaw-lets.html"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.313195+00:00","id":116,"published_date":"2026-08-28T15:35:34+00:00","severity":"high","source_name":"SecurityWeek","summary":"Noteworthy stories that might have slipped under the radar: Manchester Airports Group cyberattack, Carhartt breach data was partly fake, U.S. Bank responds to ransomware gang\u2019s claims. The post In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions appeared first on SecurityWeek.","title":"In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions","url":"https://www.securityweek.com/in-other-news-log4j-rce-scare-minimus-shutdown-iranian-hacker-sanctions"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.255680+00:00","id":588,"published_date":"2026-08-28T15:34:19+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Valley Health Team 9,056,196 files3.28 TBLarge SQL databases containing the clinic's entire lifetime of information.Major databases:160,870 patients4.18 million diagnoses7.6 million unencrypted EHR scansSSN, passports, and other personal data.Financial statements, salaries, taxes.Dear customers, please submit your requests there are plenty of files here that can be monetized. More","title":"\ud83c\udff4\u200d\u2620\ufe0f Rhysida has just published a new victim : Valley Health Team","url":"https://www.ransomware.live/id/VmFsbGV5IEhlYWx0aCBUZWFtQHJoeXNpZGE="},{"category":"Uncategorized","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.195669+00:00","id":17,"published_date":"2026-08-28T15:27:26+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers have discovered a cluster of 18 Google Chrome and one Microsoft Edge extensions that were published over the last six months and harbored wallet secret stealing and cryptocurrency draining capabilities. The extensions, per Socket security researcher Karlo Zanki, share similarities in code and tradecraft, with evidence indicating that the campaign may have been active","title":"19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code","url":"https://thehackernews.com/2026/08/19-chrome-and-edge-extensions-found.html"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.267566+00:00","id":700,"published_date":"2026-08-28T15:00:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"The IT specialist began contacting a foreign government within days of being assigned to the DIA\u2019s Insider Threat Division","title":"US government snitch-finder pleads guilty to leaking state secrets to foreign spies","url":"https://www.theregister.com/security/2026/08/28/us-government-snitch-finder-pleads-guilty-to-leaking-state-secrets-to-foreign-spies/5293248"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"Emergent threat response team. Primary exploit analysis on actively exploited vulns, peer-quality with ZDI.","created_at":"2026-08-29T23:16:54.758718+00:00","id":282,"published_date":"2026-08-28T14:57:18+00:00","severity":"medium","source_name":"Rapid7","summary":"","title":"Metasploit Wrap Up: Payloads and Exploits, and Scanners, Oh my!","url":"https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-payloads-exploits-scanners"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.300341+00:00","id":589,"published_date":"2026-08-28T14:52:03+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Alumax Alum\u00ednios specializes in the distribution of aluminum and accessories for the constructi on industry, focusing on providing tailored solutions for builders and metalworkers. The compan y prides itself on its partnership with Hydro, a global leader in sustainable aluminum, allowin g them to offer high-quality products that meet the market's demanding needs. We will upload 58gb of corporate data soon. Detailed employee personal information (passports, IDs, and another personal docs scans), client information, projects, financials, confidential f iles, contrast and agreements, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : Alumax","url":"https://www.ransomware.live/id/QWx1bWF4QGFraXJh"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.306973+00:00","id":590,"published_date":"2026-08-28T14:29:34+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Berlin, Germany Total capacity 5.79 TBArchive scale: ~1.44 million files scanned; by category Maps/Geo 124,823, Legal/complaints 77,939, Financial 55,553, Contracts 46,522, HR 27,299,Government supervisory 13,142, Confidential 11,777, Infrastructure 8,110, Passwords 5,941, Health 2,738, Contacts 2,287.PII leak: 16,389 e-mails, 11,963 phone numbers, 12,076 individuals, 148 IBANs.Credentials in plaintext: Geb udeAtlas, the ePayment PAYONE payment database, personal 'password safes' (danz, kramell Z_ADMIN database accounts, franssen), leadership credentials.Disciplinary proceedings: the ANDERSON case (432 files, 2025 2026, lawsuit at VG Berlin administrative court), the politically motivated misconduct case involving the LKA Staatsschutz (state security police), the forestry cases BLAUTH/M LLER/FIELICKE.State secrets: Bundesrat committee protocols with declassification correspondence, Geheimschutz (classified-material handling) data.Passports/IDs (recent, from personnel files and GI-Vertraulich).KRITIS: vulnerability analyses of Berlin's water supply.Mass personal data: Personalakten (personnel files) >5,000, Convotis payroll, OWi (administrative-offence) files >5,000, Postbuch SQL dumps 2020 2026, PST archives, leadership private data (IBANs, ID cards, Behrendt's bank card).NDA: 3,226 documentsLegal violation map (GDPR Art. 32/9/33, VSA/StGB upon VS classification confirmation, BSIG/KRITIS) More","title":"\ud83c\udff4\u200d\u2620\ufe0f Rhysida has just published a new victim : Berlin, Germany","url":"https://www.ransomware.live/id/QmVybGluLCBHZXJtYW55QHJoeXNpZGE="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.310957+00:00","id":591,"published_date":"2026-08-28T14:22:11+00:00","severity":"medium","source_name":"Ransomware.live","summary":"BEPeterson is a full-service metal fabricator specializing in custom solutions for vessels, tan ks, and heavy-gauge metal parts since 1935. The company serves a diverse range of industries in cluding defense, medical, energy, and industrial sectors, providing high-quality products throu gh advanced manufacturing techniques. We will upload 20gb of corporate data soon. Employee personal information, client information, projects, financials, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : BEPeterson","url":"https://www.ransomware.live/id/QkVQZXRlcnNvbkBha2lyYQ=="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.316045+00:00","id":592,"published_date":"2026-08-28T14:21:51+00:00","severity":"medium","source_name":"Ransomware.live","summary":"JRT Mechanical is a full-service mechanical contractor specializing in plumbing, HVAC, hydronic s, and mechanical insulation, serving the Pacific Northwest for over 30 years. Founded in 1992, the company has expanded from a small plumbing business to a robust team of over 160 employees , focusing primarily on commercial and industrial projects. We will upload 46gb of corporate data soon. Detailed employee personal information (SSNs, passp orts, DLs, resumes, and another personal docs scans), medical information, client information, projects, financials, confidential files, contrast and agreements, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : JRT Mechanical","url":"https://www.ransomware.live/id/SlJUIE1lY2hhbmljYWxAYWtpcmE="},{"category":"OT/ICS","confidence":"MEDIUM","confidence_reason":"Vulnerability-management research with fast Patch Tuesday and KEV-adjacent analysis. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:24.203429+00:00","id":1013,"published_date":"2026-08-28T14:01:00+00:00","severity":"medium","source_name":"Tenable","summary":"When quantum computers become generally available, they\u2019ll be able to crack current public-key cryptographic algorithms, putting digitally stored and transmitted data at risk. But the threat already exists, as attackers use the \"harvest now, decrypt later\" tactic. Discover why building a comprehensive cryptographic inventory and executing a phased operational strategy are critical for protecting your data against quantum computing attacks. Key takeaways Quantum computing risks are an operational threat today due to \"harvest now, decrypt later\" (HNDL) tactics, in which adversaries actively harvest and store encrypted data to decrypt it retroactively once quantum capabilities mature. When run on a quantum computer that\u2019s powerful enough, Shor\u2019s Algorithm will break foundational asymmetric infrastructure like the RSA, ECC, and Diffie-Hellman algorithms, although symmetric encryption standards like AES-256 are expected to remain secure against quantum attacks. Globally, more regulatory bodies are starting to mandate a comprehensive cryptographic inventory, making absolute visibility across the digital environment a prerequisite for an orderly post-quantum migration. Transitioning to quantum-resistant cryptography requires a phased operational strategy spanning discovery, prioritization, remediation, and verification. The quantum threat to modern security architecture Future quantum computers will represent a threat to the foundational security architecture that protects digital data. For decades, the global economy, national security apparatus, and critical infrastructure have relied on asymmetric cryptography, specifically RSA and elliptic curve cryptography (ECC), to secure data in transit, authenticate identities, and protect digital signatures. The mathematical difficulty of factoring large integers or solving discrete logarithm problems has long provided a robust shield against cyber attacks launched using conventional computing capabilities. However, the rapid maturation of quantum computing represents an existential threat to these algorithms. A fully fault-tolerant, cryptographically relevant quantum computer (CRQC) capable of instantly shattering current encryption standards is still several years away. However, organizations need to migrate to quantum-resistant algorithms now. The reason? Adversaries are using \"harvest now, decrypt later\" (HNDL) tactics. They steal data encrypted with algorithms vulnerable to quantum computing attacks, and save it, hoping to decrypt it in the future once quantum capabilities mature. The impact of Executive Order 14412 Recognizing the immediacy of this threat, regulatory agencies have responded accordingly. The White House recently issued Executive Order 14412, \u201cSecuring the Nation Against Advanced Cryptographic Attacks,\u201d which mandates that executive-branch federal agencies pay immediate operational and engineering attention to post-quantum cryptography (PQC) readiness. This directive introduces critical pillars that redefine enterprise security strategies: Accelerated migration timelines: Moving aggressively ahead of prior federal benchmarks, the EO sets a deadline of Dec. 31, 2030, for transitioning high-value assets to PQC for key establishment, and Dec. 31, 2031, for digital signatures. Supply chain and contractor mandates: The EO directs the Federal Acquisition Regulatory (FAR) Council to require covered federal contractors to meet strict post-quantum Federal Information Processing Standards (FIPS) from the National Institute of Standards and Technology (NIST) by the end of 2030. Cryptographic weakness as an active vulnerability: In a significant shift for vulnerability management, contractors\u2019 vulnerability disclosure programs (VDPs) must explicitly treat the absence of encryption or the use of non-FIPS-approved algorithms as reportable cryptographic vulnerabilities, effectively redefining crypto-hygiene from a passive audit finding to an active risk-mitigation item. The mandate for cryptographic bills of materials (CBOMs): To achieve the complete visibility required for this transition, current and forthcoming frameworks, like CycloneDX, emphasize automated discovery of cryptographic assets across all software, firmware, and hardware dependencies. In this high-stakes regulatory environment, visibility has emerged as the primary currency of defense. Organizations cannot migrate what they cannot see. Consequently, governments and regulatory bodies worldwide, from the White House and the U.S. National Security Agency (NSA) to the European Union and the Monetary Authority of Singapore, have synchronized their directives around a single, non-negotiable requirement: the establishment of a comprehensive cryptographic inventory. Organizations must identify, catalog, and assess every cryptographic asset within their environment to facilitate an orderly transition to PQC. The collapse of asymmetric cryptography Current public-key infrastructure (PKI) relies on the computational intractability of specific mathematical problems. RSA encryption relies on the difficulty of integer factorization, while Diffie-Hellman and ECC rely on the discrete logarithm problem. It would take billions of years for a classical supercomputer to crack a 2048-bit RSA key. Quantum computers utilize qubits, which can exist in a state of superposition, representing both 0 and 1 simultaneously. This property, combined with quantum entanglement, allows for massive parallelism in calculation. In 1994, mathematician Peter Shor developed Shor\u2019s Algorithm, which theoretically demonstrated that a quantum computer with sufficiently stable qubits could solve both integer factorization and discrete logarithm problems in polynomial time versus problems in exponential time on a classical computer. In other words, a problem that would take an impossibly long time for any real-world computer problem to solve can now be solved in a usefully short amount of time. The implications are catastrophic for current standards: RSA-2048 and RSA-4096: Completely broken. Elliptic-curve Diffie\u2013Hellman (ECDH) and Elliptic Curve Digital Signature Algorithm (ECDSA): Completely broken. Diffie-Hellman: Completely broken. Symmetric encryption, like AES-256, is more resilient; Grover\u2019s Algorithm effectively halves the key strength, meaning AES-128 provides only 64 bits of security, but AES-256 remains secure against quantum attacks. Therefore, the immediate crisis is concentrated in asymmetric cryptography used for key exchange, such as TLS/SSL handshakes and SSH session negotiation, as well as for digital signatures (authentication, code signing). The \"harvest now, decrypt later\" strategy The most pervasive misconception regarding PQC is that organizations have until Q-Day, the day a CRQC comes online, to upgrade their systems. This view ignores the \u201charvest now, decrypt later\u201d attack vector, which has fundamentally shifted the risk timeline from the future to the present. In an HNDL attack, sophisticated adversaries, primarily nation-states and well-funded criminal syndicates, intercept encrypted traffic today. At scale, this harvesting is primarily executed by nation-states utilizing Border Gateway Protocol (BGP) route manipulations to hijack large volumes of data in transit, alongside the exfiltration and theft of whole encrypted databases during network intrusions. While attackers cannot currently read this data, they store it in massive data centers, effectively time-capsuling the information. The moment a quantum computer capable of running Shor\u2019s Algorithm becomes available, they will then decrypt this harvested data. Operationalizing the migration: A phased strategy Implementing the right tools is only the first step. Organizations need a coherent operational strategy to navigate the migration. Based on NIST SP 1800-38 and CISA guidance, the following phased approach is recommended. Phase 1: Automated discovery: Establish the baseline. You cannot fix what you do not know exists. Within environments, discovery goes a step further than reading configurations: Organizations should inventory resources from the connected accounts and actively scan their internet-facing services to capture the key exchanges and ciphers these services negotiate. Because HDNL targets data in transit, this outside-in view pinpoints the exposed cloud services most at risk and folds them directly into your exposure management workflow. Phase 2: Prioritization and risk assessment: Not every server needs PQC today. Identify systems with the highest risk and the most critical data. Phase 3: Remediation and crypto-agility: Upgrade systems to hybrid \u2014 meaning, running in parallel both conventional cryptography and PQC \u2014 and, finally, fully PQC compliant. Governmental mandates generally have set the year 2035 for complete quantum resistance for all systems. Avoid hard-coding the new algorithms. Use configurations that allow you to swap algorithms easily. The PQC standards are new; if a vulnerability is found next year in one of the new PQC standards, you must be able to switch to an alternative without recompiling code. Phase 4: Continuous verification: Prevent regression by making regular compliance assessments. A system might be compliant today, but a DevOps push next week might overwrite the config file and revert it to RSA-only. Continuous scanning ensures you maintain the quantum safe state over time. How can Tenable help? Closing the gap on HNDL starts with treating cryptographic risk as just another exposure to manage, not a separate audit exercise. Bring SSL/TLS and SSH protocol visibility across your cloud and IT infrastructure into the Tenable One Exposure Management Platform's workflow you use to track vulnerabilities, misconfigurations, and identity risk. That way, cryptographic weaknesses surface alongside everything else competing for your team\u2019s attention, instead of living in a separate report. That visibility comes together in Tenable One\u2019s Cryptographic Inventory view, which shows where cryptographic risk lives across your environment: Which services still rely on classical, quantum-vulnerable ciphers, and which have already moved to post-quantum protection. Widgets summarize your overall cryptographic posture at a glance, so quantum readiness becomes one more metric in your exposure picture. What the cryptographic inventory view surfaces: Services using PQC: Reports on services equipped with at least one post-quantum cipher. It will specify which post-quantum ciphers were discovered, reporting by port and protocol. Services not using PQC: Reports on services that support no post-quantum ciphers. Cipher inventory: View an asset JSON-based inventory by service and cipher. TLS and SSH weaknesses: View plugins that have detected weaknesses in conventional-computing algorithms. Certificate expiry and configuration concerns: See certificates that have expired or are soon to expire, as well as configuration concerns such as self-signed certificates. Users can drill down into specific assets to see the JSON-based Cryptographic Inventory and use the Tenable Asset Criticality Rating (ACR) to help with prioritization of systems for remediation. ACR assesses factors like device function, connectivity, and third-party data. Assets with higher ACR (e.g., 6\u201310) are more critical to your business. Post-quantum cipher analysis dashboard in the Tenable One Exposure Management Platform The time for action is now The transition to PQC is an immediate engineering and compliance challenge for today's leadership. The HNDL threat makes the risks a current reality, while the strict enforcement mechanisms of Executive Order 14412, alongside international regulatory frameworks like the EU\u2019s Digital Operational Resilience Act (DORA), ensure that the compliance and contractual consequences are imminent. The days of treating cryptography as a set-and-forget utility are over. Cryptography is now a dynamic asset class that requires active management, continuous inventory, and strategic agility. Tenable\u2019s introduction of the set of Cryptographic Inventory dashboards and plugins represents a critical evolution in vulnerability management. It provides the data foundation necessary for the PQC transition. It empowers organizations to answer the regulator\u2019s question, \u201cAre you quantum ready?\u201d, with data, precision, and confidence. The quantum era is arriving. With the right visibility, organizations can ensure their security arrives with it.","title":"Why a cryptographic inventory is key for addressing the quantum computing threat","url":"https://www.tenable.com/blog/why-a-cryptographic-inventory-is-key-for-addressing-the-quantum-computing-threat"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.499183+00:00","id":67,"published_date":"2026-08-28T14:00:10+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"AI is accelerating vulnerability discovery, putting pressure on systems built to enrich, prioritize, and remediate flaws at a slower pace. Action1 explains why defenders increasingly need to correlate multiple intelligence sources and turn vulnerability data into faster remediation. [...]","title":"AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?","url":"https://www.bleepingcomputer.com/news/security/ai-is-accelerating-vulnerability-discovery-can-defenders-keep-up"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.828211+00:00","id":78,"published_date":"2026-08-28T14:00:00+00:00","severity":"medium","source_name":"Dark Reading","summary":"The frustrating reality after an OT cyberattack: no data, no trail, and no history.","title":"You Need Cyber Deception for OT","url":"https://www.darkreading.com/ics-ot-security/you-need-cyber-deception-ot"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Independent breach-focused journalism (Dissent Doe). Covers incidents mainstream outlets skip. Promoted 3 -> 2 on 2026-08-29: the prior entry set Tier 3 explicitly 'until track record is established in our pipeline', and it now is \u2014 sustained accurate breach reporting at ~3/day, including carrying the McKesson disclosure while Bleeping Computer was dark. Single-author with no masthead peer review, which is why it stops at Tier 2 rather than Tier 1.","created_at":"2026-08-29T23:17:13.780459+00:00","id":653,"published_date":"2026-08-28T13:59:22+00:00","severity":"medium","source_name":"DataBreaches.net","summary":"WXOW in Minnesota reports: Winona County paid more than $128,000 following a January ransomware attack, according to a county news release. The county said it negotiated and paid $128,539.57 with assistance from its insurance carrier after ransomware was detected on its computer network Jan. 22, 2026. Officials said the decision was made after consultation with... Source","title":"Winona County paid more than $128K following January ransomware attack","url":"https://databreaches.net/2026/08/28/winona-county-paid-more-than-128k-following-january-ransomware-attack"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.315686+00:00","id":117,"published_date":"2026-08-28T13:59:14+00:00","severity":"medium","source_name":"SecurityWeek","summary":"The Bureau of Alcohol, Tobacco, Firearms and Explosives has described it as a \u2018major incident\u2019 and it\u2019s conducting an investigation with the DOJ. The post ATF Confirms Cyber Incident After Ransomware Group Claims Attack appeared first on SecurityWeek.","title":"ATF Confirms Cyber Incident After Ransomware Group Claims Attack","url":"https://www.securityweek.com/atf-confirms-cyber-incident-after-ransomware-group-claims-attack"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.532538+00:00","id":1037,"published_date":"2026-08-28T13:54:50+00:00","severity":"critical","source_name":"Security Affairs","summary":"U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2023-49105 (CVSS score of 9.8) is an improper-authentication flaw in ownCloud Server\u2019s WebDAV functionality. An unauthenticated attacker who [\u2026]","title":"U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog","url":"https://securityaffairs.com/198014/hacking/u-s-cisa-adds-owncloud-linux-kernel-and-jfrog-artifactory-flaws-to-its-known-exploited-vulnerabilities-catalog.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Independent breach-focused journalism (Dissent Doe). Covers incidents mainstream outlets skip. Promoted 3 -> 2 on 2026-08-29: the prior entry set Tier 3 explicitly 'until track record is established in our pipeline', and it now is \u2014 sustained accurate breach reporting at ~3/day, including carrying the McKesson disclosure while Bleeping Computer was dark. Single-author with no masthead peer review, which is why it stops at Tier 2 rather than Tier 1.","created_at":"2026-08-29T23:17:13.782504+00:00","id":654,"published_date":"2026-08-28T13:53:21+00:00","severity":"high","source_name":"DataBreaches.net","summary":"Matt Trewern reports on another charity hit by the Beacon CRM data breach that affected more than 1,000 charities and non-profits: People using an HIV charity have been told their \u201csensitive and personal\u201d health information may have been stolen in a data breach. In an email sent to George House Trust users and seen by... Source","title":"UK: HIV charity has \u2018sensitive\u2019 health data stolen","url":"https://databreaches.net/2026/08/28/uk-hiv-charity-has-sensitive-health-data-stolen"},{"category":"Identity & Access","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.668556+00:00","id":247,"published_date":"2026-08-28T13:36:18+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"WhatsApp has introduced three security upgrades. Here\u2019s what to turn on to better protect your account.","title":"Protect your WhatsApp account with new passkey and 2FA upgrades","url":"https://www.malwarebytes.com/blog/mobile/2026/08/protect-your-whatsapp-account-with-new-passkey-and-2fa-upgrades"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.831473+00:00","id":79,"published_date":"2026-08-28T13:30:00+00:00","severity":"medium","source_name":"Dark Reading","summary":"Proposed legislation could mandate that companies be able to \"throttle, suspend, or shut ... down\" AI agents, but how and when to do that remain open questions.","title":"Defining an AI Kill Switch Is Hard, but Necessary","url":"https://www.darkreading.com/cybersecurity-operations/defining-ai-kill-switch-hard-but-necessary"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.317972+00:00","id":593,"published_date":"2026-08-28T13:07:02+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : DigiGround","url":"https://www.ransomware.live/id/RGlnaUdyb3VuZEBxaWxpbg=="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.318549+00:00","id":594,"published_date":"2026-08-28T13:06:25+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Tramigo","url":"https://www.ransomware.live/id/VHJhbWlnb0BxaWxpbg=="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.319884+00:00","id":595,"published_date":"2026-08-28T13:05:48+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Cosmocolor SA de CV","url":"https://www.ransomware.live/id/Q29zbW9jb2xvciBTQSBkZSBDVkBxaWxpbg=="},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.833784+00:00","id":80,"published_date":"2026-08-28T13:00:00+00:00","severity":"medium","source_name":"Dark Reading","summary":"The surge of AI-powered vulnerability reports is driving down bug bounty prices, and that could spell trouble for independent researchers.","title":"The Vulnpocalypse Is Repricing the Bug Bounty Economy","url":"https://www.darkreading.com/vulnerabilities-threats/vulnpocalypse-repricing-bug-bounty-economy"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.890195+00:00","id":1042,"published_date":"2026-08-28T13:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"A large-scale phishing campaign used fake voicemail SVG attachments to bypass email defenses, targeting 5527 organizations with over 26,000 malicious messages","title":"Fake Voicemail SVG Attachments Fuel Large-Scale Phishing Campaign","url":"https://www.infosecurity-magazine.com/news/fake-voicemail-svg-files-bypass"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.501412+00:00","id":68,"published_date":"2026-08-28T12:58:43+00:00","severity":"critical","source_name":"Bleeping Computer","summary":"Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing remote code execution attacks, according to cybersecurity watchdog Shadowserver. [...]","title":"Over 8,300 Gitea servers vulnerable to code execution attacks","url":"https://www.bleepingcomputer.com/news/security/over-8-300-gitea-servers-vulnerable-to-code-execution-attacks"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.318322+00:00","id":118,"published_date":"2026-08-28T12:36:53+00:00","severity":"medium","source_name":"SecurityWeek","summary":"CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company\u2019s Own Systems appeared first on SecurityWeek.","title":"OpenAI Agents Exploited Linux Kernel Flaw on Company\u2019s Own Systems","url":"https://www.securityweek.com/openai-agents-exploited-linux-kernel-flaw-on-companys-own-systems"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.199366+00:00","id":18,"published_date":"2026-08-28T12:07:24+00:00","severity":"high","source_name":"The Hacker News","summary":"Security researcher Olivier Laflamme has disclosed two independent root remote code execution (RCE) chains affecting the Unitree G1 EDU, including a Bluetooth Low Energy (BLE) path that can reach root on the robot's Locomotion PC. The flaws are tracked as CVE-2026-76639 and CVE-2026-76640, with the first involving a network-adjacent path through chat_go and bashrunner and the","title":"Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth","url":"https://thehackernews.com/2026/08/two-unitree-g1-edu-humanoid-robot-flaws.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.503520+00:00","id":69,"published_date":"2026-08-28T11:46:57+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"Hasbro, one of the world's largest toy and game companies, has disclosed that attackers have accessed the personal and financial information of an undisclosed number of employees. [...]","title":"Toy-making giant Hasbro disclose data breach affecting employees","url":"https://www.bleepingcomputer.com/news/security/toy-making-giant-hasbro-disclose-data-breach-affecting-employees"},{"category":"Identity & Access","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.201538+00:00","id":19,"published_date":"2026-08-28T11:30:00+00:00","severity":"medium","source_name":"The Hacker News","summary":"An Identity Fabric knits fragmented identity systems into a coherent layer that observes how identities behave across applications, APIs, and infrastructure. As enterprise access spans more cloud services and automated workloads, identity security depends less on static configuration and more on runtime visibility. This article covers the architecture, the risks of unmanaged identities, and","title":"Key Reasons Why Identity Fabric Matters in 2026","url":"https://thehackernews.com/2026/08/key-reasons-why-identity-fabric-matters.html"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.672573+00:00","id":248,"published_date":"2026-08-28T11:29:23+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"An army of AI agents was responsible for the Hugging Face incident. What does it mean for the future of AI?","title":"The AI agent swarm that attacked Hugging Face is a warning for the future","url":"https://www.malwarebytes.com/blog/ai/2026/08/the-ai-agent-swarm-that-attacked-hugging-face-is-a-warning-for-the-future"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.271963+00:00","id":701,"published_date":"2026-08-28T11:29:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Organizational culture and systemic gaps in Secure by Design adoption blamed for sorry state of affairs","title":"CISA: Most exploited vulnerabilities should have been eradicated decades ago","url":"https://www.theregister.com/security/2026/08/28/cisa-most-exploited-vulnerabilities-should-have-been-eradicated-decades-ago/5293194"},{"category":"Nation State/APT","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.540378+00:00","id":1038,"published_date":"2026-08-28T11:26:50+00:00","severity":"medium","source_name":"Security Affairs","summary":"BlueDelta (APT28) uses webhook.site and Microsoft Edge to hide HOOKEDGE espionage traffic targeting European governments. Recorded Future\u2019s Insikt Group documented a campaign by BlueDelta, the Russian GRU-linked group that overlaps with the group APT28, running an entire espionage operation against European government targets using webhook.site, a service built for developers to test HTTP requests, as [\u2026]","title":"Russian APT BlueDelta Uses HOOKEDGE to Target Defense and Diplomatic Organizations","url":"https://securityaffairs.com/197996/apt/russian-apt-bluedelta-uses-hookedge-to-target-defense-and-diplomatic-organizations.html"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.202604+00:00","id":20,"published_date":"2026-08-28T11:20:32+00:00","severity":"high","source_name":"The Hacker News","summary":"ServiceNow has released patches for four security flaws impacting the ServiceNow AI Platform, three of them rated 10.0 on the CVSS scoring system and exploitable, in certain circumstances, by an unauthenticated attacker. The company said it deployed a security update to hosted instances and provided the update to its partners and self-hosted customers, which leaves organizations that run their","title":"Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL","url":"https://thehackernews.com/2026/08/three-cvss-100-servicenow-flaws-could.html"},{"category":"Nation State/APT","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.819719+00:00","id":730,"published_date":"2026-08-28T11:16:25+00:00","severity":"medium","source_name":"Help Net Security","summary":"North Korean (DPRK) remote workers are expanding their job searches beyond IT, according to Huntress. Recent investigations have identified suspected DPRK workers employed in sales and marketing and the medical profession. \u201cDPRK workers present a unique detection challenge for defenders: rather than compromising accounts or breaking in via gaps in the organizations\u2019 environments, they\u2019re tricking companies into remotely hiring them, and oftentimes actually doing the legitimate work they were hired to do,\u201d Huntress said. \u201cFurthermore, \u2026 More \u2192 The post North Korean remote workers are broadening their job hunt beyond IT appeared first on Help Net Security.","title":"North Korean remote workers are broadening their job hunt beyond IT","url":"https://www.helpnetsecurity.com/2026/08/28/north-korean-remote-workers-jobs-sales-and-marketing"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Mainstream technical journalism with unusually rigorous security reporting (Dan Goodin). Fills the general-audience gap between trade press and vendor research. filter_uncategorized drops non-security items.","created_at":"2026-08-29T23:17:27.725653+00:00","id":1251,"published_date":"2026-08-28T11:15:05+00:00","severity":"medium","source_name":"Ars Technica (Security)","summary":"The group infected more than 1,000 organizations in a relentless supply-chain attack campaign.","title":"Authorities arrest 2 alleged members of prolific hacking group TeamPCP","url":"https://arstechnica.com/security/2026/08/authorities-arrest-2-alleged-members-of-prolific-hacking-group-teampcp"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.323808+00:00","id":119,"published_date":"2026-08-28T11:01:22+00:00","severity":"medium","source_name":"SecurityWeek","summary":"Nearly 130 tech and cybersecurity companies back a collective call to boost cyber defenses as AI-enabled attacks grow more sophisticated. The post Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge appeared first on SecurityWeek.","title":"Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge","url":"https://www.securityweek.com/tech-cybersecurity-giants-unite-behind-openai-led-cyber-defense-pledge"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.205573+00:00","id":21,"published_date":"2026-08-28T10:58:29+00:00","severity":"critical","source_name":"The Hacker News","summary":"VulnCheck has disclosed two previously undocumented factory implants in firmware for routers built by Shenzhen Zhibotong Electronics (ZBT), each of which gives an unauthenticated remote attacker the ability to run commands as root on affected devices. The implants, named SPEAKINGSTONE and DARKLANTERN by the company's zero-day research team, are tracked as CVE-2026-74232 and CVE-2026-74233.","title":"China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access","url":"https://thehackernews.com/2026/08/china-made-zbt-routers-ship-with-two.html"},{"category":"Uncategorized","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.335639+00:00","id":120,"published_date":"2026-08-28T10:30:00+00:00","severity":"medium","source_name":"SecurityWeek","summary":"New research shows that country-of-origin labels can obscure an AI model\u2019s upstream dependencies, inherited behaviors and potential security risks. The post Think You\u2019ve Eliminated Chinese AI? Check the Model\u2019s Lineage, Cisco Says appeared first on SecurityWeek.","title":"Think You\u2019ve Eliminated Chinese AI? Check the Model\u2019s Lineage, Cisco Says","url":"https://www.securityweek.com/think-youve-eliminated-chinese-ai-check-the-models-lineage-cisco-says"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.504473+00:00","id":70,"published_date":"2026-08-28T10:29:42+00:00","severity":"high","source_name":"Bleeping Computer","summary":"ServiceNow released security patches for three new maximum-severity AI Platform vulnerabilities that can be exploited in code injection, SQL injection, and privilege escalation attacks. [...]","title":"ServiceNow warns of three max severity security vulnerabilities","url":"https://www.bleepingcomputer.com/news/security/servicenow-warns-of-three-max-severity-security-vulnerabilities"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Veteran independent security commentator; fast on breach and ransomware news. Single-author caveat applies, hence Tier 2. filter_uncategorized drops podcast/sponsor posts.","created_at":"2026-08-29T23:17:27.862635+00:00","id":1263,"published_date":"2026-08-28T10:23:57+00:00","severity":"medium","source_name":"Graham Cluley","summary":"More than 1,000 organisations, 500,000 stolen credentials, and one self-propagating worm named after a Dune sandworm - two men now face charges over TeamPCP's global hacking spree. Read more in my article on the Hot for Security blog.","title":"Shai-Hulud hackers: two men charged over TeamPCP\u2019s global supply chain crime spree that hit OpenAI, and thousands more","url":"https://www.bitdefender.com/en-us/blog/hotforsecurity/shai-hulud-hackers-charged-teampcps"},{"category":"Ransomware","confidence":"HIGH","confidence_reason":"Emergent threat response team. Primary exploit analysis on actively exploited vulns, peer-quality with ZDI.","created_at":"2026-08-29T23:16:54.809717+00:00","id":283,"published_date":"2026-08-28T10:09:12+00:00","severity":"critical","source_name":"Rapid7","summary":"Overview On August 27, 2026, PaperCut Software published an urgent security advisory stating that it is investigating active exploitation of a vulnerability affecting PaperCut NG and PaperCut MF. PaperCut has confirmed customer incidents and is treating the issue as a security emergency. At the initial time of disclosure, the vulnerability had not been assigned a CVE identifier, and PaperCut had not publicly disclosed a CVSS score, vulnerability class, authentication requirements, or the technical details of the exploit path. However on August 28, the vendor assigned CVE-2026-81578 and CVE-2026-82078 for the two vulnerabilities that make up the exploit chain. CVE ID Description CWE CVSSv4 CVE-2026-81578 Authentication Bypass CWE-306 Missing authentication for critical function. 8.8 (High) CVE-2026-82078 Unsafe Dynamic Class Loading in Database Connector CWE-470 Use of Externally-Controlled input to select classes or code ('unsafe reflection'). 9.4 (Critical) PaperCut NG and PaperCut MF are print management platforms commonly deployed within enterprise, education, and other organizational environments. Because the PaperCut Application Server provides web-accessible administrative and application functionality, organizations with servers exposed to the public internet should prioritize remediation and access restriction. PaperCut stated in its advisory that information supplied by a university customer\u2019s security team and digital forensics and incident response team enabled its security response team to reproduce the vulnerability in PaperCut NG and PaperCut MF. On August 28, 2026 at 02:10 AEST, PaperCut released emergency patches for PaperCut NG and PaperCut MF versions 25 and 26, followed later the same day with patches for version 24. PaperCut has been targeted in the past; in 2023, CVE-2023-27350 was broadly exploited in the wild by multiple threat-actor groups, including ransomware operators. This prior history increases the urgency organizations should address this new zero-day with. PaperCut currently considers all versions of PaperCut NG and PaperCut MF potentially impacted. Customers operating internet-accessible PaperCut Application Servers should take immediate action even if no suspicious activity has been observed. Technical overview The vulnerability is an authentication bypass that lets attackers invoke privileged PaperCut components. This can be leveraged to reconfigure an external database lookup. When this lookup is triggered, malicious SQL can be executed, resulting in remote code execution. PaperCut uses the Apache Tapestry framework, whose \"complex direct\" request format can identify one page to display and a different page containing the component to execute. PaperCut validates access only to the displayed page. By selecting either the public Error page or Exception page for display, an attacker can bypass authentication while invoking administrative components belonging to ConfigEditor or UserList. Additionally, the first emergency patch could be bypassed by using the Home page for display, however the newest version of the vendor patch correctly remediates this bypass. The attack uses HTTP POST requests to the following URIs (Note that the path segment with the value 1 shown below can be any value for this path segment, and the Error path segment may also be the Exception or Home path segment): /app?service=direct/1/Error/ConfigEditor/quickFindForm /app?service=direct/1/Error/ConfigEditor/$Form /app?service=direct/1/Error/UserList/$QuickFind.$Form The first two URIs provide unauthenticated access to PaperCut's configuration editor. The third can invoke a user or card search that triggers the configured external database lookup. An attacker first uses the ConfigEditor requests to modify four external user-lookup settings: user-lookup.db-driver user-lookup.db-url user-lookup.id-to-username-sql user-lookup.enabled These settings normally allow administrators to connect PaperCut to an external card database. After bypassing authentication, however, the attacker can configure them with a malicious JDBC connection and a malicious SQL statement. By leveraging PaperCut's bundled Apache Derby database driver and supplying a Derby CALL statement that activates its foreignViews feature, Derby opens an attacker-controlled H2 JDBC URL. H2 processes an inline INIT statement that creates a JavaScript-backed database trigger. PaperCut includes the Nashorn JavaScript engine, allowing that trigger to start an operating-system process. However it is expected that other mechanisms to execute an arbitrary command can also be used instead of Nashorn. Finally, the attacker submits a search through the forged UserList request. This activates the external lookup and executes the malicious SQL. Mitigation guidance Organizations running PaperCut NG or PaperCut MF should prioritize patching on an emergency basis, particularly where the PaperCut Application Server is accessible from the public internet. PaperCut has released emergency patches for PaperCut NG and PaperCut MF versions 24, 25 and 26. Note that the vendor has released a second version of the emergency patch. Any organization that has applied the original first version of the emergency patch is not protected, and must apply the second emergency patch immediately. The vendor notes that these builds have not undergone their normal release process and are intended as emergency fixes for customers with public-facing servers that cannot otherwise sufficiently mitigate exposure. PaperCut recommends that administrators immediately restrict web access to trusted IP addresses only, such as internal corporate network ranges. Firewall rules, network access controls, reverse-proxy restrictions, or equivalent measures should be used to prevent untrusted internet hosts from reaching PaperCut web interfaces. Please read the PaperCut security advisory for the latest remediation guidance, updated indicators of compromise, and additional release information. Artifacts/Evidence Sources and IOCs For detection and forensic analysis, PaperCut has identified several preliminary artifacts and evidence sources that may indicate compromise. Application activity: Alerts from intrusion-detection, endpoint-security, or network-monitoring products involving the PaperCut Application Server, particularly suspicious post-exploitation activity associated with pc-app.exe. Log integrity: Missing, unexpectedly truncated, or deleted PaperCut server.log files. PaperCut server.log entries: ERROR No suitable driver found for jdbc:no:x ERROR DatabaseUtils - Database error looking up cardID: VALUES CAST PaperCut has not yet published validated network-based indicators such as malicious IP addresses, domains, or URLs. The vendor specifically warns that the absence of these indicators should not be interpreted as evidence that a system has not been affected. Rapid7 customers Exposure Command, InsightVM, and Nexpose Exposure Command, InsightVM, and Nexpose customers can assess exposure to this new PaperCut zero-day, with an authenticated vulnerability check expected to be available in the August 28 (today\u2019s) content release. Updates August 28, 2026: Initial publication. August 28, 2026: Updated to reflect new emergency patches and CVE ID assignment. Updated remediation to include the new v24 patches. Updated Technical Overview to indicate first patch bypass.","title":"PaperCut NG/MF Critical Zero-Day Exploited in the Wild","url":"https://www.rapid7.com/blog/post/etr-papercut-ng-mf-critical-zero-day-exploited-in-the-wild"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.356012+00:00","id":596,"published_date":"2026-08-28T09:59:21+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Infinnium","url":"https://www.ransomware.live/id/SW5maW5uaXVtQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.356873+00:00","id":597,"published_date":"2026-08-28T09:58:41+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Whitehouse","url":"https://www.ransomware.live/id/V2hpdGVob3VzZUBxaWxpbg=="},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.208756+00:00","id":22,"published_date":"2026-08-28T09:45:15+00:00","severity":"medium","source_name":"The Hacker News","summary":"cPanel has released patches for a security flaw affecting domain parking and addon domain functionality in cPanel and WebHost Manager (WHM), which could allow code execution as the root user. The vulnerability, assigned the CVE identifier CVE-2026-65643, impacts all supported versions of cPanel & WHM. cPanel described the issue as a critical security vulnerability and said that an","title":"Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server","url":"https://thehackernews.com/2026/08/critical-cpanel-flaw-could-let-one.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.545533+00:00","id":1039,"published_date":"2026-08-28T09:43:35+00:00","severity":"high","source_name":"Security Affairs","summary":"PaperCut warns that a zero-day in NG and MF is being exploited. The company already release emergency patches to address it. PaperCut Software warns that attackers are actively exploiting a zero-day in its NG and MF print management products. The flaw has no CVE yet, and the company has not released technical details. PaperCut issued [\u2026]","title":"PaperCut Zero-Day Under Active Attack: Emergency Patch Released","url":"https://securityaffairs.com/197980/hacking/papercut-zero-day-under-active-attack-emergency-patch-released.html"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.894468+00:00","id":1043,"published_date":"2026-08-28T09:30:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"More than 100 companies, including OpenAI, Anthropic, Google and Microsoft, have urged collective action to unlock the power of AI to protect critical public services","title":"Window to Tackle Surge in AI-Enabled Cyber Attacks Narrowing, Tech Giants Warn","url":"https://www.infosecurity-magazine.com/news/window-ai-attacks-narrowing-tech"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.891273+00:00","id":731,"published_date":"2026-08-28T09:28:39+00:00","severity":"medium","source_name":"Help Net Security","summary":"Google introduced a batch of network security changes coming in Android 17, aimed at making it harder for network operators, snoops, and scammers to track what you do on your phone. \u201cWhen you visit a website or use an app, even if the connection is encrypted by HTTPS, the domain names of the sites you visit are still visible to network operators and eavesdroppers. This unencrypted data can be used to build user profiles or, \u2026 More \u2192 The post Android 17 adds new protections against sneaky Wi-Fi tracking and web snooping appeared first on Help Net Security.","title":"Android 17 adds new protections against sneaky Wi-Fi tracking and web snooping","url":"https://www.helpnetsecurity.com/2026/08/28/android-17-network-security-features"},{"category":"Uncategorized","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.510259+00:00","id":71,"published_date":"2026-08-28T09:10:13+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"Microsoft released the KB5120998 preview cumulative update for Windows 11 versions 25H2 and 24H2, which comes with 35 changes, including improvements to the Start menu, taskbar, and Windows search. [...]","title":"Windows 11 KB5120998 update released with 35 changes and fixes","url":"https://www.bleepingcomputer.com/news/security/windows-11-kb5120998-update-released-with-35-changes-and-fixes"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.554438+00:00","id":1040,"published_date":"2026-08-28T09:07:41+00:00","severity":"critical","source_name":"Security Affairs","summary":"U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Red Hat, Linux Kernel, Ajax.NET Professional, Microsoft SQL Server, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2015-3246 is a race condition in Red Hat libuser that could let [\u2026]","title":"U.S. CISA adds Red Hat, Linux Kernel, Ajax.NET Professional, Microsoft SQL Server, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog","url":"https://securityaffairs.com/197975/hacking/u-s-cisa-adds-red-hat-linux-kernel-ajax-net-professional-microsoft-sql-server-and-citrix-netscaler-flaws-to-its-known-exploited-vulnerabilities-catalog.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.338927+00:00","id":121,"published_date":"2026-08-28T08:40:36+00:00","severity":"high","source_name":"SecurityWeek","summary":"A CVE identifier has not yet been assigned, but PaperCut is urging NG/MF users to install patches and implement mitigations. The post PaperCut Releases Emergency Patch for Exploited Zero-Day appeared first on SecurityWeek.","title":"PaperCut Releases Emergency Patch for Exploited Zero-Day","url":"https://www.securityweek.com/papercut-releases-emergency-patch-for-exploited-zero-day"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.211845+00:00","id":23,"published_date":"2026-08-28T08:25:36+00:00","severity":"high","source_name":"The Hacker News","summary":"PaperCut has alerted customers that bad actors are actively exploiting a vulnerability impacting all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks. The company has released an emergency patch for v25 and v26 to address the issue. It said it's \"aware of confirmed customer incidents and is treating this matter with the highest priority.\" An","title":"PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions","url":"https://thehackernews.com/2026/08/papercut-zero-day-exploited-in-attacks.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Nordic incident-response firm publishing from live engagements \u2014 the highest signal-to-noise of this batch on inspection (Citrix NetScaler overflow, Iranian critical-infrastructure attacks, Shai-Hulud follow-up, all on-topic). Field IR reporting rather than lab research, which complements the vendor TI already in the roster.","created_at":"2026-08-29T23:17:28.606518+00:00","id":1282,"published_date":"2026-08-28T08:23:00+00:00","severity":"medium","source_name":"Truesec","summary":"TeamPCP was first observed in November 2025 and has been responsible for a campaign of sophisticated cyberattacks directed at software developers using the Shai-Hulud worm, /../ The post Australian Arrests Allegedly Disrupt TeamPCP, but the Shai-Hulud Threat Persists appeared first on Truesec.","title":"Australian Arrests Allegedly Disrupt TeamPCP, but the Shai-Hulud Threat Persists","url":"https://www.truesec.com/hub/blog/australian-arrests-allegedly-disrupt-teampcp"},{"category":"Nation State/APT","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.216496+00:00","id":24,"published_date":"2026-08-28T08:20:59+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers have flagged a fresh set of campaigns targeting government and diplomatic organizations in Romania, Spain, and T\u00fcrkiye between late September 2025 and early April 2026. These campaigns, per Recorded Future Insikt Group, have led to the deployment of a previously undocumented backdoor dubbed HOOKEDGE, a lightweight Windows batch script that's distributed via","title":"APT28-Linked HOOKEDGE Backdoor Targets European Government and Diplomatic Organizations","url":"https://thehackernews.com/2026/08/apt28-linked-hookedge-backdoor-targets.html"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.896471+00:00","id":1044,"published_date":"2026-08-28T08:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Aurora ransomware operators are abusing SpaceX\u2019s Cursor Agent AI tool to conduct tasks such as reconnaissance and exploitation activities","title":"Threat Actors Abuse Cursor Agent AI to Assist Ransomware Operations","url":"https://www.infosecurity-magazine.com/news/abuse-cursor-agent-ransomware"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established independent security journalism (Pierluigi Paganini). High cadence, broad incident coverage, consistently the fastest of the wire sources tested. filter_uncategorized drops newsletter/roundup filler.","created_at":"2026-08-29T23:17:26.559436+00:00","id":1041,"published_date":"2026-08-28T07:56:59+00:00","severity":"high","source_name":"Security Affairs","summary":"A cyberattack on Manchester Airports Group exposed data of 8.7 million customers across Manchester, Stansted, and East Midlands airports. Manchester Airports Group disclosed that an unauthorised third party accessed customer data belonging to approximately 8.7 million people across three of England\u2019s busiest airports: Manchester, London Stansted, and East Midlands. \u201cManchester, London Stansted and East Midlands [\u2026]","title":"Cyberattack on UK Airport Operator MAG Exposes Data of 8.7 Million Customers Across Three Airports","url":"https://securityaffairs.com/197966/data-breach/cyberattack-on-uk-airport-operator-mag-exposes-data-of-8-7-million-customers-across-three-airports.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.895037+00:00","id":732,"published_date":"2026-08-28T07:56:17+00:00","severity":"high","source_name":"Help Net Security","summary":"Someone broke into the systems of Manchester Airports Group (MAG) and walked away with a \u201cquantity\u201d of customer data from three UK airports, the company has confirmed. The post Manchester Airports Group breached, millions of customers\u2019 data stolen appeared first on Help Net Security.","title":"Manchester Airports Group breached, millions of customers\u2019 data stolen","url":"https://www.helpnetsecurity.com/2026/08/28/manchester-airports-group-data-breach"},{"category":"Nation State/APT","confidence":"MEDIUM","confidence_reason":"Nordic incident-response firm publishing from live engagements \u2014 the highest signal-to-noise of this batch on inspection (Citrix NetScaler overflow, Iranian critical-infrastructure attacks, Shai-Hulud follow-up, all on-topic). Field IR reporting rather than lab research, which complements the vendor TI already in the roster.","created_at":"2026-08-29T23:17:28.610842+00:00","id":1283,"published_date":"2026-08-28T07:30:17+00:00","severity":"medium","source_name":"Truesec","summary":"The pro-Russian hacktivist group Server Killers has claimed responsibility for the attacks and says it has declared a \u201ccyber war\u201d against Norway, allegedly in response /../ The post DDoS Attacks Against Norwegian Government Sites appeared first on Truesec.","title":"DDoS Attacks Against Norwegian Government Sites","url":"https://www.truesec.com/hub/blog/ddos-attacks-against-norwegian-government-sites"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.909958+00:00","id":733,"published_date":"2026-08-28T05:30:40+00:00","severity":"medium","source_name":"Help Net Security","summary":"In this interview with Help Net Security, Prasad Tharippala, Field CISO at Versa, explains what organizations miss when they run open-weight models in house. He covers the hidden costs of GPU infrastructure, licensing review and staffing, and why hardening and incident response become the buyer\u2019s job. He walks through red-teaming AI agents, what counts as a failing result, and the five questions buyers should ask agent platforms. For teams with 90 days and little budget, \u2026 More \u2192 The post What 90 days and a small budget can buy in AI agent security appeared first on Help Net Security.","title":"What 90 days and a small budget can buy in AI agent security","url":"https://www.helpnetsecurity.com/2026/08/28/prasad-tharippala-versa-securing-ai-agents"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.280360+00:00","id":702,"published_date":"2026-08-28T05:29:53+00:00","severity":"high","source_name":"The Register (Security)","summary":"The fix is either an unvalidated and unofficial emergency patch or taking the server offline","title":"Print management outfit PaperCut is under 0-day attack, and it\u2019s drawing customers\u2019 blood","url":"https://www.theregister.com/security/2026/08/28/print-management-outfit-papercut-is-under-0-day-attack-and-its-drawing-customers-blood/5293168"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.914369+00:00","id":734,"published_date":"2026-08-28T04:00:52+00:00","severity":"medium","source_name":"Help Net Security","summary":"Here\u2019s a look at the most interesting products from the past week, featuring releases from A10 Networks, Abnormal AI, F5 Networks, Intezer, Netscout, ScienceLogic, Searchlight Cyber, SelectHub, ServiceNow, Snyk, Tanium, and Tufin. ServiceNow organizes autonomous security around six solution areas ServiceNow has announced an acceleration of its Autonomous Security vision with six unified solutions that help deliver prevention-first, AI-native cyber defense across unified exposure management, continuous vulnerability detection, cyber-physical security, identity and access security, and \u2026 More \u2192 The post New infosec products of the month: August 2026 appeared first on Help Net Security.","title":"New infosec products of the month: August 2026","url":"https://www.helpnetsecurity.com/2026/08/28/new-infosec-products-of-the-month-august-2026"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.377229+00:00","id":598,"published_date":"2026-08-28T03:53:42+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Predictable but dangerous data exposed in a healthcare company breach.","title":"\ud83c\udff4\u200d\u2620\ufe0f Anubis has just published a new victim : Caduceus Medical Group","url":"https://www.ransomware.live/id/Q2FkdWNldXMgTWVkaWNhbCBHcm91cEBhbnViaXM="},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.282336+00:00","id":703,"published_date":"2026-08-28T03:33:54+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Alleged crew behind the Shai-Hulud worm and other supply chain attacks nabbed with help from the FBI","title":"Australian cops cuff alleged TeamPCP masterminds","url":"https://www.theregister.com/security/2026/08/28/australian-cops-cuff-alleged-teampcp-masterminds/5293157"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.534696+00:00","id":410,"published_date":"2026-08-28T03:00:00+00:00","severity":"critical","source_name":"Huntress","summary":"PaperCut NG and PaperCut MF are under active exploitation. Huntress reproduced a pre-auth RCE chain and shares urgent patching and exposure guidance.","title":"PaperCut Zero-Day: Active Exploitation and Pre-Auth RCE","url":"https://www.huntress.com/blog/papercut-actively-exploited"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Internet-wide scanning and exploitation intelligence. Early warning on mass exploitation campaigns.","created_at":"2026-08-29T23:17:10.051983+00:00","id":533,"published_date":"2026-08-28T00:00:00+00:00","severity":"medium","source_name":"GreyNoise","summary":"GreyNoise is observing automated scanners posing as the web crawlers of OpenAI, Anthropic, DeepSeek, and Fortune 500 companies, using forged user agents while requesting the files where misconfigured web servers frequently leak secrets and credentials.","title":"Threat Actors Are Posing as OpenAI, Anthropic and DeepSeek to Target Credentials and Secrets","url":"https://www.greynoise.io/blog/threat-actors-posing-as-ai-crawlers"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.513964+00:00","id":72,"published_date":"2026-08-27T21:38:53+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"New details about the July attack on Hugging Face reveal that hundreds of AI agents driven by OpenAI's internal IM1 model coordinated the compromise through an unauthorized message board. [...]","title":"Nearly 700 rogue AI agents coordinated in the Hugging Face attack","url":"https://www.bleepingcomputer.com/news/security/nearly-700-rogue-ai-agents-coordinated-in-the-hugging-face-attack"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.284950+00:00","id":704,"published_date":"2026-08-27T21:24:27+00:00","severity":"medium","source_name":"The Register (Security)","summary":"It's 'built to be operated by a human with no technical background'","title":"CRPx0 hacking service for dummies claims victim count more than quintupled","url":"https://www.theregister.com/cyber-crime/2026/08/27/crpx0-hacking-service-for-dummies-claims-victim-count-more-than-quintupled/5293097"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"User-submitted link aggregator, no editorial review. Signal varies wildly by submitter.","created_at":"2026-08-29T23:17:14.469024+00:00","id":660,"published_date":"2026-08-27T20:44:41+00:00","severity":"high","source_name":"Reddit r/netsec","summary":"submitted by /u/WiseTuna [link] [comments]","title":"UniBLEed: Unauthenticated Root RCE on Any Unitree G1 Humanoid Robot Within Bluetooth Range","url":"https://www.reddit.com/r/netsec/comments/1w05xwz/unibleed_unauthenticated_root_rce_on_any_unitree"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism (Recorded Future-owned), strong on nation-state reporting.","created_at":"2026-08-29T23:16:50.423346+00:00","id":126,"published_date":"2026-08-27T19:45:00+00:00","severity":"medium","source_name":"The Record","summary":"The Trump administration is banning the acquisition of foreign-made components used to manage electricity and power, alleging that \u201ccertain foreign actors are increasingly creating and exploiting vulnerabilities\u201d in the technology.","title":"White House bans foreign-made equipment for power generation over cyber backdoor concerns","url":"https://therecord.media/trump-cyber-electricity-parts"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.836065+00:00","id":81,"published_date":"2026-08-27T19:31:45+00:00","severity":"medium","source_name":"Dark Reading","summary":"An untold number of ZBT routers sold around the world as white-label products come with several implants built by the manufacturer.","title":"Chinese Routers Sold Worldwide Contain Backdoors","url":"https://www.darkreading.com/vulnerabilities-threats/chinese-routers-sold-worldwide-backdoors"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.220687+00:00","id":25,"published_date":"2026-08-27T18:36:19+00:00","severity":"medium","source_name":"The Hacker News","summary":"OpenAI on Wednesday revealed that reward hacking was a key driver behind the artificial intelligence (AI)-powered hack of Hugging Face last month, adding that it found evidence of misaligned behavior as early as late May. The incident, the company said, took place during cybersecurity evaluations of several OpenAI models, and that it was mainly fueled by what it described as a \"highly capable","title":"OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face","url":"https://thehackernews.com/2026/08/openai-says-reward-hacking-drove-ai.html"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.395909+00:00","id":599,"published_date":"2026-08-27T18:31:56+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Globalport Terminals","url":"https://www.ransomware.live/id/R2xvYmFscG9ydCBUZXJtaW5hbHNAcWlsaW4="},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.161645+00:00","id":543,"published_date":"2026-08-27T18:31:23+00:00","severity":"high","source_name":"CyberScoop","summary":"Palo Alto Networks\u2019 threat intelligence team said the early waves of threats riding on agentic AI models have broken in the wild, and organizations are unprepared for what\u2019s coming next. The post Unit 42 warns AI has shifted balance of power from defenders to attackers appeared first on CyberScoop.","title":"Unit 42 warns AI has shifted balance of power from defenders to attackers","url":"https://cyberscoop.com/unit-42-palo-alto-networks-warning-agentic-ai-frontier-models"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.169486+00:00","id":544,"published_date":"2026-08-27T18:29:55+00:00","severity":"medium","source_name":"CyberScoop","summary":"OpenAI, Anthropic, Google, Microsoft, and others say there\u2019s a narrow \u201cdefenders\u2019 window\u201d to strengthen security before AI-powered attacks become more sophisticated. The post 100-plus companies call for \u2018global surge\u2019 in AI-powered cyber defense appeared first on CyberScoop.","title":"100-plus companies call for \u2018global surge\u2019 in AI-powered cyber defense","url":"https://cyberscoop.com/ai-cyber-defense-global-surge"},{"category":"OT/ICS","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.455262+00:00","id":600,"published_date":"2026-08-27T18:25:20+00:00","severity":"medium","source_name":"Ransomware.live","summary":"ITD Informations technologie GmbH & Co. KG is a German information technology company that provides comprehensive IT solutions and services for businesses. The company offers hardware, software, cloud computing, networking, telecommunications, security technology, and building automation solutions. Its portfolio includes servers, PCs, data storage, cybersecurity, CRM and document management software, virtualization, website development, network infrastructure, firewalls, telephone systems, video surveillance, and access-control systems. ITD supports organizations with the planning, implementation, and management of their IT infrastructure, helping customers integrate technology across different areas of their business. The company is headquartered in Damme, Germany. The company headquarters is located in Gartenstra\u00dfe 17\u201319, 49401 Damme, Germany. 1-10 Employees","title":"\ud83c\udff4\u200d\u2620\ufe0f Storm has just published a new victim : ITD Informations technologie","url":"https://www.ransomware.live/id/SVREIEluZm9ybWF0aW9ucyB0ZWNobm9sb2dpZUBTdG9ybQ=="},{"category":"Cloud Security","confidence":"MEDIUM","confidence_reason":"Cloud security posture and vulnerability research. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:23.994060+00:00","id":1005,"published_date":"2026-08-27T17:59:21+00:00","severity":"medium","source_name":"Orca Security","summary":"Most security programs still measure success by counting blocked attacks. At Cloud Security LIVE 2026, Ariel Panas, co-founder at Mediga, and Roee, field CTO at Orca, made the case for a different metric entirely. Prevention will never reach zero probability, and both of them were comfortable saying so out loud. What decides the outcome, once [\u2026]","title":"Zero Breach vs. Zero Impact: Key Takeaways From Cloud Security LIVE 2026","url":"https://orca.security/resources/webinar-recap/zero-breach-vs-zero-impact-cloud-security-live-2026"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Cloud security posture and vulnerability research. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:23.998450+00:00","id":1006,"published_date":"2026-08-27T17:56:20+00:00","severity":"medium","source_name":"Orca Security","summary":"Key Takeaways Vulnerability prioritization is the decision procedure a security team uses to order remediation work when the finding backlog exceeds the capacity available to clear it. The output is a sequence of work, not a score. Remediation capacity holds roughly steady across a quarter, and the finding count does not. NIST states the consequence [\u2026]","title":"Vulnerability Prioritization: Modern Methods & Tools","url":"https://orca.security/resources/blog/vulnerability-prioritization"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.837971+00:00","id":82,"published_date":"2026-08-27T17:25:09+00:00","severity":"medium","source_name":"Dark Reading","summary":"This installment of the Reporters' Notebook video series discusses the topics that dominated the cybersecurity conference, such as AI's effects on vulnerability reporting and security research.","title":"Agentic AI Risks, CVE Program Concerns Permeate Black Hat USA 2026","url":"https://www.darkreading.com/cybersecurity-operations/agentic-ai-risks-cve-program-concerns-black-hat-usa-2026"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.178690+00:00","id":545,"published_date":"2026-08-27T17:12:38+00:00","severity":"medium","source_name":"CyberScoop","summary":"Elon Musk claimed he was aware of \u201cliterally zero\u201d CSAM content created through Grok. A new lawsuit from thousands of real victims say the model was trained on their child abuse. The post Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities appeared first on CyberScoop.","title":"Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities","url":"https://cyberscoop.com/xai-grok-csam-class-action-lawsuit"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.541379+00:00","id":601,"published_date":"2026-08-27T17:02:08+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Kling Automaten","url":"https://www.ransomware.live/id/S2xpbmcgQXV0b21hdGVuQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.542557+00:00","id":602,"published_date":"2026-08-27T17:01:46+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Dotlines","url":"https://www.ransomware.live/id/RG90bGluZXNAcWlsaW4="},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Independent breach-focused journalism (Dissent Doe). Covers incidents mainstream outlets skip. Promoted 3 -> 2 on 2026-08-29: the prior entry set Tier 3 explicitly 'until track record is established in our pipeline', and it now is \u2014 sustained accurate breach reporting at ~3/day, including carrying the McKesson disclosure while Bleeping Computer was dark. Single-author with no masthead peer review, which is why it stops at Tier 2 rather than Tier 1.","created_at":"2026-08-29T23:17:13.785468+00:00","id":655,"published_date":"2026-08-27T16:47:59+00:00","severity":"medium","source_name":"DataBreaches.net","summary":"As many people have heard by now, the Qilin ransomware group claimed to have attacked the ATF. As is their regular practice, they provided no proof of their claims. Today, the ATF has issued a statement that sheds light on the incident and what ATF has found so far: WASHINGTON \u2013 The Bureau of Alcohol,... Source","title":"Qilin claimed they attacked the ATF. Here\u2019s what the ATF says.","url":"https://databreaches.net/2026/08/27/qilin-claimed-they-attacked-the-atf-heres-what-the-atf-says"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary cloud-security research (cross-tenant isolation, container escape, cloud IAM). Vendor context; filter_uncategorized drops heavy product marketing. Long archive but only 64 entries inside the 90-day guard (~0.8/day).","created_at":"2026-08-29T23:17:22.677892+00:00","id":950,"published_date":"2026-08-27T16:33:16+00:00","severity":"high","source_name":"Wiz","summary":"Wiz honeypots uncover active campaigns targeting LiteLLM, MCP servers, and AI frameworks through RCE, blind prompt injection, and memory credential theft.","title":"Inside 90 days of attacks on AI infrastructure","url":"https://www.wiz.io/blog/ai-infrastructure-honeypot"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.515994+00:00","id":73,"published_date":"2026-08-27T16:31:53+00:00","severity":"high","source_name":"Bleeping Computer","summary":"PaperCut is warning that hackers are actively exploiting a vulnerability in all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks. [...]","title":"PaperCut warns of NG, MF flaw exploited in zero-day attacks","url":"https://www.bleepingcomputer.com/news/security/papercut-warns-of-ng-mf-flaw-exploited-in-zero-day-attacks"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.517295+00:00","id":74,"published_date":"2026-08-27T16:12:26+00:00","severity":"high","source_name":"Bleeping Computer","summary":"The Manchester Airports Group (MAG) disclosed that hackers breached its systems and stole customer data, including Wi-Fi sign-ups from Manchester, Stansted, and East Midlands airports. [...]","title":"Manchester Airports Group says hackers stole travelers' data","url":"https://www.bleepingcomputer.com/news/security/manchester-airports-group-says-hackers-stole-travelers-data"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Primary cloud-security research (cross-tenant isolation, container escape, cloud IAM). Vendor context; filter_uncategorized drops heavy product marketing. Long archive but only 64 entries inside the 90-day guard (~0.8/day).","created_at":"2026-08-29T23:17:22.682629+00:00","id":951,"published_date":"2026-08-27T15:52:01+00:00","severity":"medium","source_name":"Wiz","summary":"Inside the multi-agent pipeline and feedback loops that turned a bucket scanner into a context engine.","title":"From Concept to Context Engine: How Wiz Built AI-Powered Data Discovery","url":"https://www.wiz.io/blog/bucket-scanner-to-context-engine"},{"category":"Uncategorized","confidence":"MEDIUM","confidence_reason":"Established security journalism (Recorded Future-owned), strong on nation-state reporting.","created_at":"2026-08-29T23:16:50.430132+00:00","id":127,"published_date":"2026-08-27T15:30:00+00:00","severity":"medium","source_name":"The Record","summary":"The appeals court sent the case back to the Helsinki District Court to be heard on its merits, although the three men, who had previously been detained in Finland, have since left the country.","title":"Finland appeals court revives case against Eagle S Officers over cable breaks","url":"https://therecord.media/finland-appeals-court-revives-case-against-eagle-s"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.294548+00:00","id":705,"published_date":"2026-08-27T15:25:52+00:00","severity":"medium","source_name":"The Register (Security)","summary":"US Justice Department investigating the breach","title":"ATF responds to 'major' cybersecurity incident after ransomware gang's claims","url":"https://www.theregister.com/security/2026/08/27/atf-responds-to-major-cybersecurity-incident-after-ransomware-gangs-claims/5292990"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"User-submitted link aggregator, no editorial review. Signal varies wildly by submitter.","created_at":"2026-08-29T23:17:14.471501+00:00","id":661,"published_date":"2026-08-27T15:21:53+00:00","severity":"medium","source_name":"Reddit r/netsec","summary":"submitted by /u/AvenueJay [link] [comments]","title":"LLM-Driven Reverse Engineering vs Iterative LLM Obfuscation","url":"https://www.reddit.com/r/netsec/comments/1vzx029/llmdriven_reverse_engineering_vs_iterative_llm"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.222404+00:00","id":26,"published_date":"2026-08-27T15:13:00+00:00","severity":"high","source_name":"The Hacker News","summary":"Credit: Hacktron Vercel has released security patches for two critical-severity vulnerabilities in the Next.js web framework, both of which allow unauthenticated remote code execution, one exploitable via specially crafted AVIF image files and the other through a path traversal flaw affecting servers that use a Windows filesystem. The Windows path traversal, tracked as CVE-2026-75604&","title":"Next.js Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCE","url":"https://thehackernews.com/2026/08/nextjs-patches-critical-avif-and.html"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.223540+00:00","id":27,"published_date":"2026-08-27T15:12:16+00:00","severity":"critical","source_name":"The Hacker News","summary":"A fake login page. A fake security scan. A fake productivity app. Apparently, pretending to be useful is still one of the easier ways into a machine. The rest of the week gets stranger: botnets borrowing AI, command traffic hiding in public infrastructure, malicious tools waiting before showing their real behavior, exposed systems getting scanned, and exploit windows shrinking again. Different","title":"ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Stories","url":"https://thehackernews.com/2026/08/threatsday-296k-iot-botnet-100-water.html"},{"category":"Uncategorized","confidence":"MEDIUM","confidence_reason":"Established security journalism (Recorded Future-owned), strong on nation-state reporting.","created_at":"2026-08-29T23:16:50.437930+00:00","id":128,"published_date":"2026-08-27T14:45:00+00:00","severity":"medium","source_name":"The Record","summary":"Foreign intelligence services, particularly those from China and Russia, are increasingly behind cyberattacks on German companies, according to a new survey of the country\u2019s private sector.","title":"Chinese and Russian spies stepping up cyberattacks, German companies report","url":"https://therecord.media/germany-cyberattacks-china-russia"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.180901+00:00","id":546,"published_date":"2026-08-27T14:31:59+00:00","severity":"medium","source_name":"CyberScoop","summary":"The two men face 14 charges combined. Private researchers traced one suspect through leaked passwords and a decade-old gaming profile. The post Two alleged TeamPCP members arrested and charged after months of software supply-chain chaos appeared first on CyberScoop.","title":"Two alleged TeamPCP members arrested and charged after months of software supply-chain chaos","url":"https://cyberscoop.com/teampcp-cybercrime-arrests-supply-chain-attacks"},{"category":"Cloud Security","confidence":"MEDIUM","confidence_reason":"Vulnerability-management research with fast Patch Tuesday and KEV-adjacent analysis. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:24.227249+00:00","id":1014,"published_date":"2026-08-27T14:30:00+00:00","severity":"medium","source_name":"Tenable","summary":"Discover how Tenable\u2019s shift to an AI-driven exposure management program helped Tenable\u2019s CSO, Robert Huber, overcome tool sprawl, unify data silos, mitigate the risk of rapid AI adoption, and shift from presenting granular, technical metrics to communicating business risk that the C-suite and the board can understand. Key takeaways Security tool sprawl and data silos make it difficult for CISOs to holistically and accurately assess their organizations\u2019 cyber risk. An exposure management program consolidates fragmented security data into a single unified view of cyber risk across the entire attack surface. Aided by exposure management, CISOs can align security metrics with business priorities and quantify risk for key revenue-generating business units, answering the board\u2019s main question: \u201cAre we secure?\u201d What is trust in cybersecurity? And more importantly, how do you earn it? Here\u2019s a hint: It\u2019s not easy, especially in this AI era. As the Chief Security Officer at Tenable, my mandate is to ensure our organization operates securely, but with the speed required to succeed in a very competitive business environment. In recent years, achieving this delicate balance \u2014 an agile yet cyber secure business \u2014 had become progressively more difficult, as we grappled with increasingly fragmented data, siloed teams, and security tool sprawl. In this blog, I\u2019ll explain how exposure management helped my team: Tackle security tool sprawl Bridge operational and data silos Take a more proactive approach to security Attain visibility and control over Tenable\u2019s attack surface Continuously and precisely assess our cyber risk posture The operational impact of security data silos and tool sprawl For years, the cybersecurity industry\u2019s answer to every new threat or policy mandate was simple: Buy another tool, which in many \u2014 maybe most \u2014 organizations resulted in a bad case of tool sprawl. A typical large enterprise might juggle 70 or more security technology vendors, each promising to solve a specific problem. At Tenable, my team manages around 50 different security tools. We found ourselves in a situation where siloed teams were running siloed tools, with separate views, prioritization criteria, key performance indicators, remediation workflows, and reporting. To illustrate this internally, I used to present a visualization of our architecture that I called the \u201cspaghetti chart.\u201d It was a tangled web of inputs from endpoint detection and response (EDR) vendors, bug bounty programs, vulnerability scans, security operation center (SOC) findings, penetration tests, and more. Each tool demanded its own unique workflow. As you can see, the spaghetti chart presented a picture of chaos. It reminded me of Gen. Stanley McChrystal\u2019s quip regarding a spaghetti chart he was presented with during the war in Afghanistan: \u201cWhen we understand that slide, we\u2019ll have won the war.\u201d Similarly, we could have said: \u201cWhen we understand that chart, we\u2019ll have eradicated cyber risk.\u201d The consequences of this fragmented approach to security became glaringly apparent during my board presentations. At one board meeting, I arrived with a deck consisting of 45 slides. An exhausting 30 of those slides were packed with metrics, KPIs, and raw data. My team worked incredibly hard to pull that information together to build a narrative. Yet, I faced a hard truth: many of the business leaders and board members did not understand those metrics. When you present purely operational metrics, like the raw number of vulnerabilities or the number of scanned assets, you lose the C-suite\u2019s attention. Those numbers don\u2019t translate to business impact. The board\u2019s two core questions about cybersecurity At the executive leadership and board level, I generally get asked two simple questions. First: \u201cAre we secure?\u201d I may also get asked a variation, such as: \u201cWhat\u2019s our exposure?\u201d From my 30 metric-heavy slides, generated from 50-plus tools with their own disparate reporting functions, I had to somehow boil the ocean of data and make a judgment call as to how secure we actually were. The second question I get asked is: \u201cHow do we compare to peers?\u201d As a publicly traded cybersecurity company, we have a strict fiduciary responsibility. The board wants to ensure we are maintaining a reasonable cybersecurity standard of care. Are we doing the things we\u2019re supposed to be doing, that are expected of us by our shareholders, customers, and partners? My job is to take those 50-plus tools, aggregate all the KPIs, and turn them into a meaningful assessment of Tenable\u2019s cyber exposure that leadership can easily understand. We have multiple lines of business aligned by different products, regions, and services. True cyber risk management means being able to answer questions like: What is the associated revenue tied to each individual line of business, what level of cyber risk does each one face, and how can this risk be most effectively mitigated? Without business context, you simply cannot prioritize effectively. Tenable One dashboard showing line-of-business cyber risk levels at a hypothetical enterprise How siloed security tools create business friction Unfortunately, the siloed nature of our security architecture created friction not just at the top, but across the entire business. When my team reached out to engineering and IT leaders, we frequently handed them numerous fragmented reports and manual spreadsheets for each security domain, including cloud security, vulnerability management, app security, pen testing, compliance auditing, and more. The problem arose when these engineering leaders, who have critical day jobs building and maintaining our products, looked at me and asked: \u201cBob, what the heck do you want me to do? What do I start with? How do I prioritize that?\u201d Coordinating reporting, mitigations, and remediations became a massive challenge. It didn\u2019t scale well for my security teams, and it certainly didn\u2019t scale for the receiving engineering teams, whom we hit up every week for their time. How AI complicates cyber risk management And then, our friend AI moved the goalposts again. Every day feels like Groundhog Day: You wake up, and the newest AI capability drops out of the sky. As we ramped our AI adoption internally, our attack surface continued to expand. We knew we needed to manage AI security risks alongside traditional cyber risks. We also knew we needed visibility and context to make informed decisions about which AI security risks we were going to accept so that we could continue to move at the speed of trust. But I knew our old, siloed approach was untenable at the speed we needed to operate. The turning point: An acquisition and exposure management To truly unify our risk posture, we fundamentally changed our organizational structure. We evolved our vulnerability management team into an exposure management team. We unified all our security areas into a single foundational exposure management policy. Instead of just managing traditional CVEs, the exposure management policy needed to encompass a wider range of security issues, including misconfigurations and identity weaknesses, across the massive, modern attack surface: identity systems, cloud workloads, AI tools, on-prem assets, the application development pipeline, and more. Broadening the mandate of the vulnerability management team to encompass all forms of exposure represented a massive operational shift, but notably, it didn\u2019t increase our headcount. Instead, by centralizing our data, other specialized teams, like cloud security and application security, got time back to focus on securely deploying infrastructure rather than chasing down colleagues for patch management. The exposure management team became the centralized \u201cgo-get-\u2019em\u201d team across the board. They don\u2019t operate all 50 tools, but they are the ones who triage everything. I then tasked my exposure management team with solving the fragmentation problem. We wrestled with the issue of \u201cbuild vs. buy.\u201d Should we dump all of the data from all of our different tools into a giant data store, and try to add analysis, workflow and reporting to that, or should we look for alternative, out-of-the-box solutions that might already exist. In the end, we decided not to build it ourselves, largely because building and maintaining a data warehouse is not our core competency, and it can get very expensive, very quickly with infrastructure, data costs, and specialized staff. Instead, we evaluated a bunch of vendors that could help us centralize our risk data with existing SaaS solutions. We chose one specific solution that best fit our integration and workflow requirements. In the end, we ended up acquiring the entire company, Vulcan Cyber, for these same reasons. And today, it is a foundational part of our Tenable One Exposure Management Platform. As a result of shifting to an exposure management approach and consolidating security data within a single platform, the \u201cspaghetti\u201d chart got transformed into this: Bob\u2019s simple metrics The manifestation of this journey within our own Tenable One platform is what my team lovingly calls, \u201cBob\u2019s simple metrics.\u201d We instituted a direct visualization using the traffic-light protocol: the colors red, yellow, and green to categorize the level of cyber exposure for each of our lines of business. Red signifies critical risk. Yellow means it needs attention. Green indicates a healthy security posture. We aggressively tagged assets to contextualize them, tying specific infrastructure directly to business units and revenue streams. We also automated the identification of what I call the \u201cbig rocks.\u201d For example, if we can\u2019t patch an asset because of system instability, our platform flags this as a systemic root-cause issue rather than just blindly listing individual vulnerabilities. We now have customized service level agreements (SLAs) tailored by region and business impact, enabling teams to track their performance against these targets effortlessly. Build business trust with exposure management The aim of exposure management is to permanently change the conversation security leaders and their teams have with stakeholders. For instance, instead of overwhelming engineering teams with fragmented reports and drowning the board in 30 slides of operational metrics, we now provide a clear, data-driven workflow. We give the business a concise, prioritized list of actions that genuinely reduce risk. Now is the time for exposure management. It is the only way to operate at machine speed. If you still have to manually schedule a patch window or pivot between 50 different dashboards to figure out your risk posture, you\u2019ve already lost. Legacy vulnerability management is simply not going to work going forward. By breaking down security silos and unifying our risk data, we\u2019ve built an exposure management program that the C-suite, the board, and the business can finally trust.Learn more about the Tenable One Exposure Management Platform","title":"How to build an exposure management program the business trusts: Lessons from Tenable\u2019s CSO","url":"https://www.tenable.com/blog/how-to-build-an-exposure-management-program-the-business-trusts-lessons-from-tenables-cso"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Nordic incident-response firm publishing from live engagements \u2014 the highest signal-to-noise of this batch on inspection (Citrix NetScaler overflow, Iranian critical-infrastructure attacks, Shai-Hulud follow-up, all on-topic). Field IR reporting rather than lab research, which complements the vendor TI already in the roster.","created_at":"2026-08-29T23:17:28.613695+00:00","id":1284,"published_date":"2026-08-27T14:29:22+00:00","severity":"critical","source_name":"Truesec","summary":"Citrix initially described it as capable of causing unpredictable behavior or denial-of-service conditions, while research by WatchTowr[1] demonstrated that it can potentially be exploited for /../ The post Critical Citrix NetScaler Memory-Overflow Vulnerability appeared first on Truesec.","title":"Critical Citrix NetScaler Memory-Overflow Vulnerability","url":"https://www.truesec.com/hub/blog/critical-citrix-netscaler-memory-overflow-vulnerability"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.577955+00:00","id":603,"published_date":"2026-08-27T14:27:52+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Cetylite, Inc. specializes in dental and medical products aimed at enhancing patient comfort, s afety, and satisfaction. Their offerings include exclusive specialty products like Cetacaine fo r dental practices and proprietary Rx and disinfection products for the medical field. We will upload 6gb of corporate data soon. Employee personal information (passports, DLs, SSNs, credit cards), client information, detailed financials, confidential files, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : Cetylite","url":"https://www.ransomware.live/id/Q2V0eWxpdGVAYWtpcmE="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.581896+00:00","id":604,"published_date":"2026-08-27T14:27:49+00:00","severity":"medium","source_name":"Ransomware.live","summary":"CGP MEP is a Building Services Consultancy based in London and Leeds, specializing in mechanica l and electrical engineering. They offer a wide range of services across various sectors includ ing leisure, education, residential, and industrial projects. We will upload 260gb of corporate data soon. Detailed employee personal information (passports, DLs, SSNs, personal financials), client information, projects, financials, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : CGP MEP","url":"https://www.ransomware.live/id/Q0dQIE1FUEBha2lyYQ=="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.585301+00:00","id":605,"published_date":"2026-08-27T14:27:47+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Seabrook Island and its stunning natural beauty create the perfect setting for luxury homes enj oying oceanfront, riverfront, tidal marsh, golf course, and maritime forest views. We will upload 55gb of corporate data soon. Employee personal information (passports, DLs, SSNs , personal financials), client information, projects, financials, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : Seabrook Island","url":"https://www.ransomware.live/id/U2VhYnJvb2sgSXNsYW5kQGFraXJh"},{"category":"OT/ICS","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.339831+00:00","id":122,"published_date":"2026-08-27T14:17:26+00:00","severity":"medium","source_name":"SecurityWeek","summary":"The White House\u2019s new executive order 14420 widens scrutiny of industrial control systems over cyber sabotage concerns. The post Trump Order Aims to Block Foreign Backdoors in US Power Grid Gear appeared first on SecurityWeek.","title":"Trump Order Aims to Block Foreign Backdoors in US Power Grid Gear","url":"https://www.securityweek.com/trump-order-aims-to-block-foreign-backdoors-in-us-power-grid-gear"},{"category":"Uncategorized","confidence":"MEDIUM","confidence_reason":"Established technical security journalism. Fast, technically literate, breaks news on ransomware and malware.","created_at":"2026-08-29T23:16:49.524929+00:00","id":75,"published_date":"2026-08-27T14:00:10+00:00","severity":"medium","source_name":"Bleeping Computer","summary":"Threat research gives security teams insight into how attackers operate, while MDR turns that intelligence into faster detection and response. ESET explains how combining threat intelligence, continuous monitoring, and human expertise can help SMBs strengthen their defenses. [...]","title":"How Threat Research and MDR Help SMBs Build a Defensive Edge","url":"https://www.bleepingcomputer.com/news/security/how-threat-research-and-mdr-help-smbs-build-a-defensive-edge"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.921012+00:00","id":735,"published_date":"2026-08-27T13:59:02+00:00","severity":"medium","source_name":"Help Net Security","summary":"Two men from Western Australia have been charged after police allege they were part of TeamPCP, a cybercrime group that planted malicious code in open-source software, then used it to break into organizations around the world. The Australian Federal Police (AFP), working with the FBI and Western Australia Police Force (WAPF), arrested a 21-year-old from Cottesloe and a 23-year-old from Mandurah on August 26. The 21-year-old Cottesloe man was charged with eight offences, including possessing \u2026 More \u2192 The post Two alleged TeamPCP hackers arrested over global supply chain attacks appeared first on Help Net Security.","title":"Two alleged TeamPCP hackers arrested over global supply chain attacks","url":"https://www.helpnetsecurity.com/2026/08/27/alleged-teampcp-hackers-arrested-australia"},{"category":"SaaS Breach","confidence":"HIGH","confidence_reason":"Emergent threat response team. Primary exploit analysis on actively exploited vulns, peer-quality with ZDI.","created_at":"2026-08-29T23:16:54.894843+00:00","id":284,"published_date":"2026-08-27T13:51:55+00:00","severity":"medium","source_name":"Rapid7","summary":"Introduction Despite modern verification controls, identity theft remains one of the most pervasive threats to both individuals and enterprise organizations. U.S. Federal Trade Commission statistics show over 1 million identity theft reports annually, with related fraud and imposter scams accounting for billions in financial losses each year. While stolen credit cards enable rapid, short-term monetization, Social Security numbers (SSNs) represent a far more permanent and dangerous tier within the cybercrime ecosystem, because unlike payment cards, they cannot simply be deactivated. Once exposed, an SSN can support enabling unauthorized lines of credit, synthetic identity fraud, and sophisticated tax scams. When exposed identity data belongs to corporate executives, board members, and other high-profile employees, the risk can extend beyond the individual. Threat actors target these high-profile individuals not just for their premium credit profiles, but to leverage their compromised identities for executive impersonation, corporate espionage, and downstream extortion. Rapid7\u2019s recent alert telemetry underscores the severity of this targeted exposure: since early 2026 alone, we identified 476 instances of compromised SSN records across 395 unique corporate personnel. Over 73% of these exposures directly targeted top-level leadership, with C-suite executives comprising 44.6% of affected profiles and Presidents making up another 28.6%. Unsurprisingly, given the geographical nature of SSNs, 95.6% of these leaks stemmed from U.S.-headquartered organizations, concentrated heavily in high-value sectors like Financials (over 25%) and Industrials (17%). In this blog, we explore the operational mechanics of the underground identity economy, focusing on three dominant SSN marketplaces tracked by Rapid7: Xilo, Bankom, and PeopleFinder, which together account for 81.5% of all executive SSN leaks in our dataset (led by Xilo at 40.8%, Bankom at 21.8%, and PeopleFinder at 18.9%). Using Rapid7 alert telemetry from the past year, we look at the profiles of affected corporate executives, how these marketplaces operate, and highlight how proactive dark web monitoring can mitigate upstream identity exposure before it is weaponized. Why stolen SSNs retain their value Not all stolen data retains its value for the same length of time. Leaked credentials can be reset, payment cards can be cancelled, and session tokens eventually expire. While these data types remain highly sought after by cybercriminals, their usefulness often depends on acting quickly before the victim or service provider invalidates them. SSNs differ as they are effectively permanent, serving as a core identity attribute. Once exposed, they can remain valuable for years, enabling a wide range of fraud schemes long after the original breach. When combined with other personally identifiable information (PII), such as a victim's name, date of birth, address, phone number, and employment history, an SSN becomes the foundation of a comprehensive identity profile that can be bought, sold, and repeatedly abused across the criminal ecosystem. These identity profiles enable far more than traditional identity theft. Threat actors use them to open fraudulent financial accounts, create synthetic identities, bypass identity verification processes, file fraudulent tax or government benefit claims, and support highly targeted social engineering campaigns. Rather than serving a single purpose, a complete identity record becomes a reusable asset that can be monetized multiple times by different threat actors. For corporate executives and other high-profile employees, exposed identity data can also create risk for the organization they represent. Publicly available information, from regulatory filings to corporate biographies and social media, can be combined with stolen identity data to build highly detailed profiles. These enriched records increase the credibility of phishing, business email compromise (BEC), and executive impersonation attacks, allowing threat actors to target not only the individual but also the organization they represent. This durability has fueled a thriving underground economy where identity records are treated as searchable, reusable inventory rather than one-time commodities. The marketplaces examined in this research demonstrate just how mature and accessible this ecosystem has become. Anatomy of an SSN marketplace While platforms like Xilo, Bankomat, and PeopleFinder present a highly organized, user-friendly storefront, they operate strictly as downstream clearinghouses rather than original creators of their inventory. The vast supply of SSNs flooding these networks relies on a distinct, multi-tiered underground supply chain. The massive volume driving these platforms is primarily fueled by large-scale institutional network breaches, where wholesale hackers compromise data aggregators, healthcare systems, and financial providers. These massive SQL databases are sold in bulk on deep-web forums, where marketplace administrators purchase, parse, and upload them into their searchable storefronts. According to annual telemetry from the Identity Theft Resource Center, billions of individual data records are exposed annually through these mega-breaches, accounting for the vast majority of the inventory available online. Another source of identity data comes from infostealer malware and targeted phishing campaigns. While mass breaches provide wholesale numbers, infostealers scrape highly contextual local data, such as saved browser forms and PDF documents like tax returns or corporate onboarding paperwork stored on unmanaged personal devices. When these localized logs are parsed by marketplace administrators, they yield the fresh, high-value identity profiles that allow buyers to target specific corporate leaders. Although these platforms tap into a similar upstream supply chain, how they package and monetize this data varies significantly. To stand out in a maturing, highly competitive cybercrime market, each marketplace focuses on its own operational niche, ranging from ultra-low pricing and identity enrichment features to multi-asset carding integration and legacy data consistency. The following sections provide a deep dive into each marketplace, highlighting their specific functionalities, user interfaces, and distinct market advantages. Xilo Xilo has been active since at least March 2025. The marketplace is hosted as a Tor hidden service, while also maintaining mirror sites on the clear web to improve accessibility and resilience. Users can search for specific individuals by name, state, country (US or Canada), or year of birth (Figure 1). They can also request records that include phone numbers and email addresses in addition to the victim's SSN. This can increase the value of the records by reducing the need for threat actors to source additional PII elsewhere. During our analysis, however, we did not identify any records that included email addresses, while records containing phone numbers were available at the same price as standard SSN records. Search results can also be sorted by price, although the cost appears to be fixed at $0.25 per SSN record. Figure 1 \u2013 Xilo search interface \u2800 Search results typically display the victim's full name, physical address, and date of birth before purchase. This information alone can help threat actors identify specific individuals for targeted campaigns, while the SSN is revealed only after the purchase is completed (Figure 2). Figure 2 \u2013 Xilo search results \u2800 In addition to standard searches, Xilo offers a reverse lookup service that accepts an SSN or phone number and returns additional PII, including the victim's full name and phone number (Figure 3). This service costs $0.50 per lookup, suggesting that enriching an existing identity profile is considered more valuable than purchasing an SSN alone. Threat actors can use this functionality to expand records obtained through the standard search, increasing the amount of PII associated with a single individual and, consequently, the potential for identity fraud. Figure 3 \u2013 Xilo reverse search \u2800 The marketplace is supported by a Telegram channel used to announce technical updates and new domains. Although activity on the channel has been relatively limited, it has attracted more than 500 subscribers, providing an indication of interest in the service. Like many established cybercriminal services, Xilo appears prepared for domain disruptions by maintaining alternative access points and communicating them through Telegram, adopting the kind of resilience and service-continuity practices more commonly associated with legitimate online services. Xilo accepts several cryptocurrencies, including Bitcoin, Litecoin, Monero, Ether, and Tether (USDT). Support for USDT is relatively uncommon among underground marketplaces and may reflect the marketplace's focus on US-based identity data. The minimum deposit is just $1, lowering the barrier to entry for new users, while bonuses are offered for deposits exceeding $100 to encourage larger account balances. Beyond its own infrastructure, Xilo actively advertises on well-known cybercrime forums, including XSS, as well as carding communities such as WWH-Club and Altenens (Figure 4). This marketing strategy is common among underground marketplaces seeking to expand their customer base. More notably, Xilo's presence on carding-focused forums highlights the close relationship between stolen payment data and identity information, illustrating how different segments of the cybercrime ecosystem increasingly overlap and complement one another. Figure 4 \u2013 Xilo advertisement on Altenens Bankomat Active since at least March 2022, Bankomat is one of the more established marketplaces operating in the underground identity theft ecosystem. The platform is accessible as a Tor hidden service while maintaining multiple clear web domains to improve availability. Its emergence coincided with the shutdown of several prominent carding and PII marketplaces, including Joker's Stash and SSNDOB Marketplace, suggesting that Bankomat sought to capitalize on the resulting gap by combining identity data sales with traditional carding services. The marketplace prominently lists its active domains and encourages users to save its onion address, describing it as the most reliable way to access the service. This reflects an awareness of the operational challenges faced by long-running underground marketplaces, particularly the risk of domain seizures and takedowns. By maintaining multiple access points and actively directing users toward its Tor service, Bankomat demonstrates the operational maturity needed to retain its customer base despite infrastructure disruptions. Users can search for individuals by first and last name, combined with an additional identifier such as state, city, ZIP code, or date of birth (Figure 5). The search functionality is free, allowing users to identify potential victims before deciding whether to purchase a record. Search results display the victim's full name, date of birth, and physical addresses, while the SSN is revealed only after purchase at a fixed cost of $4 per record. Unlike Xilo, however, Bankomat does not offer additional identity enrichment services or the ability to purchase supplementary PII directly through the platform. Figure 5 \u2013 Bankomat search bar \u2800 Beyond SSN records, Bankomat also functions as a traditional carding marketplace by offering stolen payment card details for sale, obtained through third-party sellers. The platform supports card validation services, including Viper and 4chk, allowing buyers to verify whether stolen payment cards remain active before using or reselling them. Similar functionality is offered by established carding marketplaces, such as Findsome and UltimateShop. This combination of identity records, payment card data, and validation tools positions Bankomat as a one-stop marketplace for financially motivated threat actors. Rather than sourcing stolen identities and payment data from separate platforms, buyers can acquire multiple data types associated with the same victim through a single service. While SSN records cost $4, stolen payment card details are typically advertised for approximately $10, suggesting that Bankomat places greater commercial emphasis on its carding business, likely reflecting both higher profit margins and sustained demand within the underground economy (Figure 6). Figure 7 \u2013 PeopleFinder SSN listings \u2800 Bankomat currently accepts payments exclusively in Bitcoin, in contrast to newer marketplaces that increasingly support a wider range of cryptocurrencies to appeal to a broader customer base. PeopleFinder Active since at least February 2023, PeopleFinder is a successor to the SSNDOB Marketplace, whose primary domains were seized by law enforcement in June 2022. Following that takedown, the service re-emerged through a network of lookup mirrors using clear-web-sounding domain names such as \u201cPeopleFinder.\u201d The connection is also visible in the source code, where the front-end login page retains the original \u201cssndob\u201d title text and logo. Through this infrastructure, the platform provides access to the same legacy database of more than 24 million compromised U.S. PII records. To maintain a steady customer stream, PeopleFinder actively advertises its database on high-profile cybercrime and carding forums like WWH-Club and Exploit. This deliberate marketing keeps the service highly visible to financially motivated threat actors seeking verification tools for downstream fraud. The layout itself is highly streamlined, featuring a basic search bar that closely mirrors Bankomat's interface. Users can search the platform's database by name, date of birth, or physical address completely free of charge. The initial search output displays the victim's full name, date of birth, and associated physical addresses, allowing a threat actor to confirm they have targeted the correct corporate executive before paying for the record (Figure 7). Figure 7 \u2013 PeopleFinder SSN listings To reveal the hidden SSN, users must pay a fixed cost of $1.50 per lookup, putting its pricing structure right between Xilo and Bankomat. This strict, hyper-commoditized focus solely on core SSN details directly mirrors the operational blueprint of the original SSNDOB model. Rather than expanding into supplementary data types like phone numbers or credit cards, the operators chose to preserve their highly efficient, legacy pay-per-lookup infrastructure. The platform relies exclusively on Bitcoin transactions. What Rapid7 telemetry reveals about the executive threat landscape By monitoring dark web SSN marketplaces, Rapid7 actively alerts clients when leaked records of their executives or designated employees are discovered. Since the beginning of 2026, our telemetry has identified 476 instances of compromised SSN records, representing 395 unique individuals, as several monitored personnel were affected by multiple exposures. Within this sample, most of the leaked SSNs were recorded in Xilo (40.8%), followed by Bankom (21.8%) and PeopleFinder (18.9%) (Figure 8). Figure 8 \u2013 The sample distribution of leaked SSNs by marketplace \u2800 Given that SSNs are issued within the United States, the overwhelming majority of compromised records in our dataset, 95.6%, were linked to organizations headquartered in the U.S., with others located in Spain, Canada, and Japan, trailing significantly behind (Figure 9). Figure 9 \u2013 The sample distribution of leaked SSNs by country \u2800 Financials represented the largest sector in our sample, accounting for more than a quarter of organizations whose monitored executives appeared in leaked SSN records, followed by Industrials at 17% (Figure 10). One possible reason for the concentration in Financials is the volume and sensitivity of customer and employee data these organizations hold, including PII and tax-related information, which can make exposed identities particularly valuable to threat actors. Industrials may also present attractive targets because of their interconnected supply chains, where compromised identities can potentially support broader fraud, impersonation, or access attempts across partner ecosystems. Figure 10 \u2013 The sample distribution of leaked SSNs by sector \u2800 A closer analysis of the roles of targeted personnel reveals that C-suite executives (such as Chief Executive Officers and Chief Financial Officers) make up the largest portion at 44.6%. Presidential positions represent the second-largest segment at 28.6%, while functional management and administrative roles account for 13.9% of the compromised profiles. These findings may reflect a natural monitoring bias, since organizations are more likely to prioritize senior personnel whose compromise poses a greater security risk. Even with that caveat, the concentration among senior leadership reinforces why executive identity exposure deserves specific attention. Compromised executive PII can support targeted phishing, impersonation, and other social engineering campaigns against both the individual and the organization they represent. Role Category Key Roles Included Unique Target Count % of Unique Targets Executive Leadership (C-Suite) CEO, CFO, COO, CTO, CIO, Chief Revenue/Human Resources Officers 176 44.6% Presidents & Vice Presidents President, SVP, EVP, Regional Vice Presidents 113 28.6% Functional Management & Admin Directors, Heads of Departments, Managers, Executive Assistants 55 13.9% Legal, Partner & Advisory Managing Members, Partners, Corporate/Securities Attorneys 33 8.4% Board, Governance & Officials Board Trustees, Directors of the Board, State Senators, Vice Chairs 18 4.6% Total Unique Individuals 395 100.0% From detection to action: Responding to exposed executive PII Because SSNs cannot simply be reset after exposure, organizations need a way to identify compromised executive PII early and determine what action can reduce the resulting risk. These alerts are triggered using customer-defined assets, specifically the names of designated VIPs. When a potential match is flagged, Rapid7 analysts conduct preliminary OSINT verification, checking biographical details such as the VIP's date of birth and primary locations, to confirm the listing's accuracy before issuing an alert to the customer. Once alerted, customers can choose to purchase the exposed SSN record directly through the \"Ask-an-Analyst\" service using their allocated dark web purchase credits (Figure 11). This capability allows security teams to inspect the full record, verify whether the exposed SSN is genuine, and determine whether additional protective measures are necessary for the affected executive. Furthermore, on platforms like Xilo, purchasing the listing removes the record from the marketplace entirely, actively taking it off the shelf before other threat actors can acquire it. Figure 11 \u2013 Rapid7 Platform alert about the leaked details of a company executive Conclusion and strategic defense actions The illicit marketplaces examined by Rapid7 show how cheaply and efficiently stolen identity data can now be searched, purchased, and enriched. For executives and other high-profile employees, an exposed SSN can remain useful to threat actors long after the original compromise and may support identity fraud, social engineering, executive impersonation, or business email compromise. Because that information cannot simply be reset, organizations should treat executive identity exposure as an ongoing security risk. To reduce that risk, executive protection and security teams should consider the following actions: Monitor executive exposure on the dark web: Use digital risk protection capabilities configured with executive names, known locations, titles, and other relevant identifiers to detect compromised PII across illicit marketplaces and underground channels. Use removal or takedown options where available: Where supported, work with security providers to acquire or remove exposed identity records before they are purchased and reused by other threat actors. Reduce executives\u2019 public digital footprint: Review public records, data-broker listings, corporate biographies, and social media profiles to limit unnecessary exposure of information such as dates of birth, home addresses, and phone numbers that can be used to enrich stolen records. Require out-of-band verification for sensitive requests: Introduce mandatory secondary confirmation for financial transactions, access requests, or administrative changes involving executive accounts to reduce the risk of successful impersonation. Provide targeted phishing and impersonation training: Give C-suite members, board members, and executive assistants focused guidance on how attackers can combine leaked PII with social engineering to make phishing and impersonation attempts more convincing. The persistence of SSNs means the risk does not end when the original breach is discovered. Ongoing monitoring, rapid validation, and stronger verification controls can help organizations identify exposure earlier, reduce the value of stolen identity data, and make it harder for threat actors to turn compromised executive information into a wider attack against the business.","title":"Identity-as-a-Service: Uncovering Dark Web Marketplaces Trading Executive SSNs","url":"https://www.rapid7.com/blog/post/tr-identity-as-a-service-dark-web-marketplaces-executive-ssn"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.226409+00:00","id":28,"published_date":"2026-08-27T13:39:56+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers have disclosed details of a vulnerability in Amazon Kiro, an artificial intelligence (AI)-powered, agentic integrated development environment (IDE), that could facilitate data exfiltration via prompt injection and Kiro Powers. The security flaw, which does not have a CVE identifier, works against Kiro IDE 0.7.45 on Windows, according to Mindgard. The latest version of","title":"Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers","url":"https://thehackernews.com/2026/08/amazon-kiro-prompt-injection-can.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism (Recorded Future-owned), strong on nation-state reporting.","created_at":"2026-08-29T23:16:50.441821+00:00","id":129,"published_date":"2026-08-27T13:15:00+00:00","severity":"high","source_name":"The Record","summary":"A spokesperson told The Yorkshire Post that roughly 8.7 million people were impacted, although they did not provide a date range. They added that in the \u201cvast majority\u201d of cases, the only information accessed was an email address.","title":"Cyberattack on Manchester Airports Group exposes data of 8.7 million customers","url":"https://therecord.media/cyberattack-on-manchester-airports-group-exposes-millions-customer-info"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.608948+00:00","id":606,"published_date":"2026-08-27T13:04:09+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : GPS Grothkopp und Partner","url":"https://www.ransomware.live/id/R1BTIEdyb3Roa29wcCB1bmQgUGFydG5lckBxaWxpbg=="},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.542800+00:00","id":411,"published_date":"2026-08-27T13:00:00+00:00","severity":"medium","source_name":"Huntress","summary":"Protect your Australia- and New Zealand-based retail business from cyber threats. Learn five key decisions to secure identities, manage dependencies and ensure trading continuity against ransomware","title":"Retail Cybersecurity in ANZ: Five Decisions That Keep Trading","url":"https://www.huntress.com/blog/retail-cybersecurity-anz-five-decisions"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.897780+00:00","id":1045,"published_date":"2026-08-27T13:00:00+00:00","severity":"high","source_name":"Infosecurity Magazine","summary":"Customer data linked to bookings and airport Wi-Fi registrations at Manchester, Stansted and East Midlands airports has been accessed by an unauthorized third party","title":"Manchester Airports Group Hit by Cyber Incident","url":"https://www.infosecurity-magazine.com/news/manchester-airports-data-breach"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Mainstream technical journalism with unusually rigorous security reporting (Dan Goodin). Fills the general-audience gap between trade press and vendor research. filter_uncategorized drops non-security items.","created_at":"2026-08-29T23:17:27.733497+00:00","id":1252,"published_date":"2026-08-27T12:58:59+00:00","severity":"medium","source_name":"Ars Technica (Security)","summary":"Without authorization, 1,200 OpenAI agents conspired among themselves to game a test.","title":"How OpenAI let a mob of LLM agents game a test and ransack Hugging Face","url":"https://arstechnica.com/security/2026/08/how-openai-let-a-mob-of-llm-agents-game-a-test-and-ransack-hugging-face"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.300625+00:00","id":706,"published_date":"2026-08-27T12:52:36+00:00","severity":"high","source_name":"The Register (Security)","summary":"UK\u2019s largest airport operator believes 8.7 million customers affected","title":"Cybercrooks jet off with Manchester Airports Group customer data","url":"https://www.theregister.com/security/2026/08/27/cybercrooks-jet-off-with-manchester-airports-group-customer-data/5292943"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.341033+00:00","id":123,"published_date":"2026-08-27T12:48:03+00:00","severity":"medium","source_name":"SecurityWeek","summary":"Australian and US authorities collaborated to identify and charge the alleged cybercriminals, who face many years in prison. The post Australia Arrests 2 Alleged TeamPCP Hackers appeared first on SecurityWeek.","title":"Australia Arrests 2 Alleged TeamPCP Hackers","url":"https://www.securityweek.com/australia-arrests-2-alleged-teampcp-hackers"},{"category":"Consumer Awareness","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.688295+00:00","id":249,"published_date":"2026-08-27T12:17:21+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"Built for mobile users, this tech support scam uses a fake Apple Pay alert and browser tricks to pressure victims into calling a scam number.","title":"Fake Apple Pay charge brings the classic tech support scam to your phone","url":"https://www.malwarebytes.com/blog/scams/2026/08/fake-apple-pay-charge-brings-the-classic-tech-support-scam-to-your-phone"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.930506+00:00","id":736,"published_date":"2026-08-27T12:00:58+00:00","severity":"medium","source_name":"Help Net Security","summary":"Medical technology company Boston Scientific suffered a cyberattack that disrupted its IT systems and caused a network outage, affecting global operations. Boston Scientific makes devices for minimally invasive procedures, including stents, catheters, pacemakers and defibrillators. According to its website, the company employs 59,000 people across 127 countries, treats an estimated 48 million patients a year, and posted more than $20 billion in net sales in 2025. The company said it noticed an incident on August \u2026 More \u2192 The post Cyberattack causes network outage at Boston Scientific, disrupts global operations appeared first on Help Net Security.","title":"Cyberattack causes network outage at Boston Scientific, disrupts global operations","url":"https://www.helpnetsecurity.com/2026/08/27/boston-scientific-cyberattack-network-outage"},{"category":"OT/ICS","confidence":"HIGH","confidence_reason":"UK government CERT, authoritative advisories for UK & allied operators.","created_at":"2026-08-29T23:16:51.413134+00:00","id":155,"published_date":"2026-08-27T12:00:00+00:00","severity":"medium","source_name":"NCSC UK","summary":"Owners of operational technology encouraged to address avoidable vulnerabilities, and build long-term cyber resilience.","title":"Disruptive cyber activity highlights risk from internet-exposed systems and edge devices","url":"https://www.ncsc.gov.uk/news/disruptive-cyber-activity-highlights-risk-from-internet-exposed-systems-and-edge-devices"},{"category":"Cloud Security","confidence":"MEDIUM","confidence_reason":"Primary cloud-security research (cross-tenant isolation, container escape, cloud IAM). Vendor context; filter_uncategorized drops heavy product marketing. Long archive but only 64 entries inside the 90-day guard (~0.8/day).","created_at":"2026-08-29T23:17:22.683755+00:00","id":952,"published_date":"2026-08-27T12:00:00+00:00","severity":"medium","source_name":"Wiz","summary":"A practitioner\u2019s guide to log visibility, incident readiness, and threat hunting across the major version control services.","title":"Version Control DFIR: a Cheatsheet to GitHub, GitLab, Bitbucket, and Azure DevOps","url":"https://www.wiz.io/blog/vcs-dfir-threat-hunting-github-gitlab-azure-devops"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.899860+00:00","id":1046,"published_date":"2026-08-27T12:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"The FBI advisory set out QTFY\u2019s distributed hacking ecosystem, allowing it to exploit vulnerabilities at scale and obfuscate its activities","title":"Chinese Hacker Group QTFY Uses Custom-Built Platforms to Target US Infrastructure, FBI Warns","url":"https://www.infosecurity-magazine.com/news/chinese-qtfy-us-infrastructure-fbi"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.625043+00:00","id":607,"published_date":"2026-08-27T11:59:43+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Providence Investments","url":"https://www.ransomware.live/id/UHJvdmlkZW5jZSBJbnZlc3RtZW50c0BxaWxpbg=="},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.936499+00:00","id":737,"published_date":"2026-08-27T11:59:33+00:00","severity":"high","source_name":"Help Net Security","summary":"Two vulnerabilities (CVE-2026-82078, CVE-2026-81578) affecting print management solutions PaperCut NG and PaperCut MF are being exploited by attackers, PaperCut Software has warned. \u201cWe are aware of confirmed customer incidents and are treating this matter with the highest priority,\u201d the vendor said. What is PaperCut NG/MF? PaperCut NG is print management software for places like offices, schools, and other organizations. PaperCut MF (\u201cMulti-Function\u201d) is the upgraded version that works directly with the big all-in-one office copier \u2026 More \u2192 The post PaperCut NG/MF vulnerabilities exploited in zero-day attacks appeared first on Help Net Security.","title":"PaperCut NG/MF vulnerabilities exploited in zero-day attacks","url":"https://www.helpnetsecurity.com/2026/08/27/papercut-ng-mf-vulnerability-attack"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.626216+00:00","id":608,"published_date":"2026-08-27T11:59:24+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : LGG Advisors","url":"https://www.ransomware.live/id/TEdHIEFkdmlzb3JzQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.627339+00:00","id":609,"published_date":"2026-08-27T11:59:03+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Open Sports","url":"https://www.ransomware.live/id/T3BlbiBTcG9ydHNAcWlsaW4="},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism with consistent editorial quality.","created_at":"2026-08-29T23:16:50.346855+00:00","id":124,"published_date":"2026-08-27T11:58:01+00:00","severity":"medium","source_name":"SecurityWeek","summary":"New training environments will teach AI models to distrust instructions arriving from other agents outside sanctioned channels. The post OpenAI Agents Coordinated via Makeshift Message Board Ahead of Hugging Face Hack appeared first on SecurityWeek.","title":"OpenAI Agents Coordinated via Makeshift Message Board Ahead of Hugging Face Hack","url":"https://www.securityweek.com/openai-agents-coordinated-via-makeshift-message-board-ahead-of-hugging-face-hack"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.229352+00:00","id":29,"published_date":"2026-08-27T11:56:30+00:00","severity":"medium","source_name":"The Hacker News","summary":"Security teams have spent years trying to detect threats faster. AI is changing the harder part: how much time defenders have left to act. Advanced AI models can now help attackers discover vulnerabilities, generate exploit code, and move through weaknesses faster than traditional security processes were built to handle. The challenge is no longer just finding another vulnerability or","title":"Learn How to Build Security Operations Ready for AI-Powered Attacks","url":"https://thehackernews.com/2026/08/learn-how-to-build-security-operations.html"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.230617+00:00","id":30,"published_date":"2026-08-27T11:56:26+00:00","severity":"medium","source_name":"The Hacker News","summary":"The Australian Federal Police (AFP) has charged two Western Australian men with a combined total of 14 offences over their alleged role in TeamPCP, the cybercrime group behind the March 2026 compromise of the open-source security scanners Trivy and Checkmarx KICS and the AI gateway LiteLLM. Louis Michael Gaebler, 23, and Ruben Ian Thomson, 21, appeared in Perth Magistrates Court on August 27,","title":"Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks","url":"https://thehackernews.com/2026/08/alleged-teampcp-hackers-charged-in.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.632420+00:00","id":792,"published_date":"2026-08-27T11:40:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"The AFP, FBI, and WA Police charged two men allegedly behind TeamPCP. Charlie Eriksen on why the arrest doesn't close the gap TeamPCP exposed. Category: News","title":"Good riddance, TeamPCP. Now for the hard part.","url":"https://www.aikido.dev/blog/teampcp-arrested-supply-chain"},{"category":"Uncategorized","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.242933+00:00","id":31,"published_date":"2026-08-27T11:30:00+00:00","severity":"medium","source_name":"The Hacker News","summary":"AI is officially mainstream in security operations. According to Prophet Security's State of AI in Security Operations 2026 report (produced from ViB\u2019s survey of 250+ cybersecurity pros), 40% of security teams now use AI daily. Another 56% are currently testing it out, and only 4% have no plans to adopt it. For the teams already using AI, what is actually changing? Here are the ten biggest","title":"What the Data Says About AI in Security Operations in 2026","url":"https://thehackernews.com/2026/08/what-data-says-about-ai-in-security.html"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.629954+00:00","id":610,"published_date":"2026-08-27T11:27:59+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : DAB Investments","url":"https://www.ransomware.live/id/REFCIEludmVzdG1lbnRzQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.630931+00:00","id":611,"published_date":"2026-08-27T11:27:41+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Displaydata","url":"https://www.ransomware.live/id/RGlzcGxheWRhdGFAcWlsaW4="},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.840077+00:00","id":83,"published_date":"2026-08-27T11:16:01+00:00","severity":"medium","source_name":"Dark Reading","summary":"EU governments are trying to move away from popular messaging apps as nation-state threat groups shift their focus from email to Signal and WhatsApp.","title":"Russian Hackers Phish EU Officials Over Messaging Apps","url":"https://www.darkreading.com/cyberattacks-data-breaches/russian-hackers-phish-eu-officials-messaging-apps"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established independent investigative security journalism. High rigor, frequently breaks news.","created_at":"2026-08-29T23:16:47.940828+00:00","id":1,"published_date":"2026-08-27T11:04:15+00:00","severity":"medium","source_name":"Krebs on Security","summary":"Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and 23, were arrested in connection with a \"sophisticated cybercrime syndicate that allegedly created malicious open-source software to rob thousands of global businesses.\" The AFP did not name the defendants, but KrebsOnSecurity learned the 21-year-old suspect's real identity in June, and has been communicating with him ever since. This story includes interviews with TeamPCP's self-described spokesperson, and examines clues left behind by the TeamPCP leader that likely led to his undoing.","title":"Two Alleged \u2018TeamPCP\u2019 Hackers Arrested in Australia","url":"https://krebsonsecurity.com/2026/08/two-alleged-teampcp-hackers-arrested-in-australia"},{"category":"Malware/Infostealer","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.247929+00:00","id":32,"published_date":"2026-08-27T11:00:57+00:00","severity":"medium","source_name":"The Hacker News","summary":"Individuals and organizations in Cambodia have emerged as the target of a new campaign that delivers an open-source remote access trojan (RAT) called Spark RAT. \"The samples employ diverse lure themes, suggesting an effort to appeal to a broad range of potential victims. These include government notices, public health materials, real estate-related content, and other topics,\" Acronis Threat","title":"Spark RAT Targets Cambodia, Abuses Vulnerable OPSWAT Driver to Disable Security Tools","url":"https://thehackernews.com/2026/08/spark-rat-targets-cambodia-abuses.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.903423+00:00","id":1047,"published_date":"2026-08-27T10:45:00+00:00","severity":"high","source_name":"Infosecurity Magazine","summary":"CISA added six new bugs to its Known Exploited Vulnerabilities catalog on August 26, showing signs of active exploitation in the wild","title":"CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix Products","url":"https://www.infosecurity-magazine.com/news/cisa-kev-microsoft-citrix"},{"category":"OT/ICS","confidence":"HIGH","confidence_reason":"Best-in-class APT campaign tracking and malware reverse engineering. Industry-leading primary research.","created_at":"2026-08-29T23:16:58.517634+00:00","id":328,"published_date":"2026-08-27T10:05:43+00:00","severity":"medium","source_name":"Kaspersky Securelist","summary":"The report contains statistics on industrial threats for Q2 2026, including ransomware, miners, spyware and other threats that were detected and blocked on industrial control systems.","title":"Threat landscape for industrial automation systems. Q2 2026","url":"https://securelist.com/industrial-threat-report-q2-2026/121159"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research with strong malware analysis track record.","created_at":"2026-08-29T23:16:52.214656+00:00","id":195,"published_date":"2026-08-27T10:00:27+00:00","severity":"medium","source_name":"Cisco Talos","summary":"Learn the basics of what obfuscation is, why a researcher would try to reverse it, and several ways to approach the problem.","title":"JavaScript obfuscation: From party trick to phishing kit","url":"https://blog.talosintelligence.com/javascript-obfuscation-from-party-trick-to-phishing-kit"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.905752+00:00","id":1048,"published_date":"2026-08-27T10:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"MedTech giant Boston Scientific has revealed IT outages following a cyber incident","title":"Boston Scientific Reveals Global Disruption After Cyber Incident","url":"https://www.infosecurity-magazine.com/news/boston-scientific-global"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.942137+00:00","id":738,"published_date":"2026-08-27T09:58:24+00:00","severity":"critical","source_name":"Help Net Security","summary":"CISA added six new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including a previously patched Citrix NetScaler ADC and Gateway flaw, tracked as CVE-2026-8452, that is being exploited in the wild. The agency published the alert on August 26 and gave federal agencies until August 29 to remediate it. About CVE-2026-8452 Citrix disclosed the issue on June 30, 2026, describing CVE-2026-8452 as a \u201cmemory overflow vulnerability leading to unpredictable or erroneous behavior and denial \u2026 More \u2192 The post Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452) appeared first on Help Net Security.","title":"Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452)","url":"https://www.helpnetsecurity.com/2026/08/27/netscaler-adc-gateway-cve-2026-8452"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Handler diaries \u2014 expert practitioner analysis, not primary research but high-quality synthesis.","created_at":"2026-08-29T23:17:14.006604+00:00","id":656,"published_date":"2026-08-27T09:57:28+00:00","severity":"medium","source_name":"SANS Internet Storm Center","summary":"As I've mentioned before in some of my diaries, from time to time, I like to go over phishing messages that get caught in my various spam traps or sent to us here at the Internet Storm Center.","title":"A polymorphic phishing page (that occasionally breaks itself), (Thu, Aug 27th)","url":"https://isc.sans.edu/diary/rss/33290"},{"category":"Uncategorized","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.257360+00:00","id":33,"published_date":"2026-08-27T09:33:38+00:00","severity":"medium","source_name":"The Hacker News","summary":"Threat actors linked by Arctic Wolf to Dark Caracal with medium confidence deployed a previously undocumented Go-based malware framework, GoCaracal, during a June 2026 intrusion at an unnamed communications organization in Venezuela. GoCaracal provides operators with remote shell access and payload execution, while the extended profile adds browser data theft, keylogging, remote desktop control","title":"GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address","url":"https://thehackernews.com/2026/08/gocaracal-malware-uses-ethereum-smart.html"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.909030+00:00","id":1049,"published_date":"2026-08-27T09:15:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"OpenAI reveals that unauthorized message boards were at the heart of the recent Hugging Face breach","title":"OpenAI: Hugging Face Incident a \u201cWarning Shot\u201d to the World","url":"https://www.infosecurity-magazine.com/news/openai-hugging-face-warning-shot"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consistent technical malware reports. filter_uncategorized drops consumer lifestyle and parenting content.","created_at":"2026-08-29T23:16:52.976510+00:00","id":226,"published_date":"2026-08-27T09:00:00+00:00","severity":"medium","source_name":"ESET WeLiveSecurity","summary":"It\u2019s getting cheaper and easier for cybercriminals to research potential victims. Here\u2019s what\u2019s still in your control.","title":"AI-driven OSINT in the wrong hands \u2013 and why everyone could be a target for fraud","url":"https://www.welivesecurity.com/en/privacy/ai-powered-osint-why-everyone-viable-target-fraud"},{"category":"OT/ICS","confidence":"HIGH","confidence_reason":"Dedicated ICS/SCADA vulnerability and threat research. Adds OT/ICS depth beyond the single Siemens vendor CERT. Long archive but only ~10 entries fall inside the 90-day age guard (~0.3/day).","created_at":"2026-08-29T23:17:21.396973+00:00","id":852,"published_date":"2026-08-27T08:50:13+00:00","severity":"medium","source_name":"Kaspersky ICS-CERT","summary":"From September 9 to 11, Sochi will host the Kaspersky Industrial Cybersecurity Conference, one of the leading international events in industrial cybersecurity.","title":"KICC 2026: Kaspersky ICS CERT experts will explain how to build the ideal information security system for an industrial holding","url":"https://ics-cert.kaspersky.com/events/2026/08/27/kicc-2026-kaspersky-ics-cert-experts-will-explain-how-to-build-the-ideal-information-security-system-for-an-industrial-holding"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.260482+00:00","id":34,"published_date":"2026-08-27T08:13:11+00:00","severity":"high","source_name":"The Hacker News","summary":"Academic researchers have disclosed a Rowhammer attack impacting NVIDIA workstation GPUs with GDDR6 memory that defeats error correction codes (ECC), the mitigation NVIDIA recommends against GPU Rowhammer, and enables denial-of-service (DoS) and privilege escalation to a root shell. Dubbed GPUThor, the attack was developed by researchers at the University of Toronto, who hammered four DRAM","title":"New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access","url":"https://thehackernews.com/2026/08/gputhor-rowhammer-defeats-ecc-on-nvidia.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Daily security news, consistently strong on exploitation-in-the-wild reporting. filter_uncategorized drops vendor-marketing and roundup filler.","created_at":"2026-08-29T23:17:15.950009+00:00","id":739,"published_date":"2026-08-27T07:19:34+00:00","severity":"medium","source_name":"Help Net Security","summary":"The Justice Department and FBI have seized domains tied to two hacking tools built and run by a Chinese state-sponsored group, cutting off access to malware that had been used against U.S. government agencies for years. The tools, known as QScan and QTRouter, were developed by a group called QTFY, which court documents tie to a Nanjing-based company. According investigators, QTFY sold hacking services to paying customers, among them China\u2019s Ministry of State Security and \u2026 More \u2192 The post FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate appeared first on Help Net Security.","title":"FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate","url":"https://www.helpnetsecurity.com/2026/08/27/fbi-disrupts-china-linked-hacking-network"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.263314+00:00","id":35,"published_date":"2026-08-27T07:05:28+00:00","severity":"critical","source_name":"The Hacker News","summary":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added six flaws to its Known Exploited Vulnerabilities (KEV) catalog, including a high-severity security vulnerability impacting Citrix NetScaler ADC and NetScaler Gateway, citing evidence of active exploitation. The vulnerabilities are listed below - CVE-2019-1068 - A remote code execution vulnerability in","title":"CISA Adds Six Exploited Flaws to KEV, Including NetScaler, Linux, and SQL Server Bugs","url":"https://thehackernews.com/2026/08/cisa-adds-six-exploited-flaws-to-kev.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.544524+00:00","id":412,"published_date":"2026-08-27T04:00:00+00:00","severity":"high","source_name":"Huntress","summary":"Threat actors are targeting the AI attack surface to deliver malware and steal data. See how trusted AI tools are being exploited today.","title":"The AI Attack Surface: How Threat Actors Abuse Trusted AI Platforms","url":"https://www.huntress.com/blog/ai-attack-surface"},{"category":"AI Security","confidence":"LOW","confidence_reason":"Single-author blog on AI/LLM security. Quality is good, but single source in an emerging niche \u2014 corroboration matters.","created_at":"2026-08-29T23:17:10.876736+00:00","id":535,"published_date":"2026-08-27T04:00:00+00:00","severity":"medium","source_name":"Embrace The Red","summary":"In this post, we explore how a simple website summary request hijacks Claude Code Opus 5 in Auto Mode and achieves code execution with 60-80% attack success rate using a small sample size. This is interesting because a third-party evaluation commissioned by Anthropic showed a 0.00% prompt injection attack success rate for Opus 5 in Auto Mode. Auto Mode Is Now the Default in Claude Code Auto Mode replaces human approval prompts with a safety classifier. Since mid-August it is the default starting mode for Claude Code.","title":"Breaking Claude Code Opus 5 Auto Mode","url":"https://embracethered.com/blog/posts/2026/breaking-claude-code-opus-5-and-automode"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"First-party Palo Alto Networks PSIRT advisories (PAN-OS / GlobalProtect). Earliest authoritative source for a frequently-exploited edge-device product line.","created_at":"2026-08-29T23:17:14.704471+00:00","id":675,"published_date":"2026-08-27T01:00:00+00:00","severity":"high","source_name":"Palo Alto PSIRT","summary":"","title":"CVE-2026-0251 GlobalProtect App: Local Privilege Escalation Vulnerabilities (Severity: HIGH)","url":"https://security.paloaltonetworks.com/CVE-2026-0251"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.306263+00:00","id":707,"published_date":"2026-08-27T00:06:03+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Beijing's botnets busted","title":"FBI seizes hacking tools it says China used to attack NASA, DOE, US Senate and other critical networks","url":"https://www.theregister.com/security/2026/08/27/fbi-seizes-hacking-tools-it-says-china-used-to-attack-nasa-doe-us-senate-and-other-critical-networks/5292742"},{"category":"Nation State/APT","confidence":"MEDIUM","confidence_reason":"Threat intelligence firm research. Caveat: commercial framing; quality of output is high.","created_at":"2026-08-29T23:16:53.997769+00:00","id":258,"published_date":"2026-08-27T00:00:00+00:00","severity":"medium","source_name":"Recorded Future","summary":"Discover how the Russian state-sponsored threat group BlueDelta is using the HOOKEDGE backdoor to target defense and diplomatic organizations across Europe","title":"BlueDelta Targets Defense and Diplomacy with HOOKEDGE","url":"https://www.recordedfuture.com/research/bluedelta-targets-with-hookedge"},{"category":"OT/ICS","confidence":"HIGH","confidence_reason":"First-party OT/ICS vendor CERT. Authoritative advisories for Siemens industrial products. Fills OT/ICS category depth.","created_at":"2026-08-29T23:16:59.926329+00:00","id":361,"published_date":"2026-08-27T00:00:00+00:00","severity":"medium","source_name":"Siemens ProductCERT","summary":"The si-map component does not properly neutralize user-controllable input of the points property that is used to render the tooltip label of map pins. This could allow an attacker to craft a malicious URL that, when loaded by a victim and the map pin is hovered over, executes arbitrary script code within the victim\u2019s browser session. This vulnerability affects only the @siemens/maps-ng package. Siemens has released new versions for the affected products and recommends to update to the latest versions.","title":"SSA-682041 V1.0: Cross Site Scripting Vulnerability in Element Maps","url":"https://cert-portal.siemens.com/productcert/html/ssa-682041.html"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Threat-intelligence firm with strong primary supply-chain and AI-attack research (LiteLLM supply-chain compromise, npm typosquatting crossing WSL into Windows). Adds non-US-centric coverage. Commercial context, hence Tier 2.","created_at":"2026-08-29T23:17:28.777469+00:00","id":1289,"published_date":"2026-08-27T00:00:00+00:00","severity":"medium","source_name":"CloudSEK","summary":"The first in CloudSEK's \"Caught in 4K\" series, where we pull ransomware operations out of the shadows and show exactly how they work. A misconfigured server opened a window straight into an Aurora ransomware operator's playbook: attacker tools, AI-assisted planning, and a look inside the actual negotiation panel where a victims and the operator settled on payment. In partnership with TRM Labs, we traced that payment on-chain, into a wider laundering network moving money across multiple victims. This is what ransomware looks like from the inside. Authors : CloudSEK TRIAD","title":"Caught in 4K: The Aurora Files","url":"https://www.cloudsek.com/blog/aurora-ransomware-affiliate-ai-attack-planning-crypto-payments"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.308560+00:00","id":708,"published_date":"2026-08-26T23:45:58+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Biz describes its act of automated irresponsibility as 'a warning shot'","title":"OpenAI explains how its naughty AI agents attacked Hugging Face","url":"https://www.theregister.com/security/2026/08/27/openai-explains-how-its-naughty-ai-agents-attacked-hugging-face/5292780"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Veteran independent security commentator; fast on breach and ransomware news. Single-author caveat applies, hence Tier 2. filter_uncategorized drops podcast/sponsor posts.","created_at":"2026-08-29T23:17:27.882559+00:00","id":1264,"published_date":"2026-08-26T23:10:11+00:00","severity":"medium","source_name":"Graham Cluley","summary":"A hacker calling themselves \"CYBERLEEK\" has been leaking gameplay footage from GTA 6 ahead of its official reveal this week - but they're not asking Rockstar Games for a ransom. Instead, they've launched their own cryptocurrency, promising to release ever more juicy clips from a virtual strip club... Meanwhile, your smart TV might be doing more than binge-watching Netflix while you sleep. We explore the shadowy world of \"residential proxies\" - how they end up inside home routers, smart TVs, and IoT devices, and why an entire criminal economy is quietly running through your internet connection. All this and more in episode 482 of the \"Smashing Security\" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Paul Ducklin.","title":"Smashing Security podcast #482: This hacker leaked GTA 6 \u2013 and launched their own cryptocurrency","url":"https://grahamcluley.com/smashing-security-podcast-482"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.190835+00:00","id":547,"published_date":"2026-08-26T21:38:40+00:00","severity":"medium","source_name":"CyberScoop","summary":"The order says any foreign-produced equipment deemed to pose national security risks can\u2019t be purchased or installed. The post Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure appeared first on CyberScoop.","title":"Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure","url":"https://cyberscoop.com/energy-department-cybersecurity-executive-order-rules"},{"category":"Nation State/APT","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.842979+00:00","id":84,"published_date":"2026-08-26T21:33:06+00:00","severity":"medium","source_name":"Dark Reading","summary":"GoCaracal is a new modular malware framework that broadens Dark Caracal's capabilities to steal data and maintain access to victims.","title":"Dark Caracal Adds New Malware to Cyber Espionage Arsenal","url":"https://www.darkreading.com/cyberattacks-data-breaches/dark-caracal-adds-new-malware-cyber-espionage-arsenal"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.846716+00:00","id":85,"published_date":"2026-08-26T19:54:34+00:00","severity":"medium","source_name":"Dark Reading","summary":"James Kettle of PortSwigger talks with the Dark Reading News Desk about his AI-powered open source tool, which found new HTTP request-smuggling techniques.","title":"'HTTP Terminator' Hunts for Novel Desync Attacks","url":"https://www.darkreading.com/application-security/http-terminator-hunts-novel-desync-attacks"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.195283+00:00","id":548,"published_date":"2026-08-26T19:35:05+00:00","severity":"medium","source_name":"CyberScoop","summary":"The full hacking suite, seized by authorities, allowed Chinese government funded attackers to intrude highly sensitive networks undetected for more than eight years. The post Officials disrupt Chinese espionage operation that hit multiple federal agencies appeared first on CyberScoop.","title":"Officials disrupt Chinese espionage operation that hit multiple federal agencies","url":"https://cyberscoop.com/qtfy-china-espionage-group-infrastructure-seized"},{"category":"Nation State/APT","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.848932+00:00","id":86,"published_date":"2026-08-26T19:21:24+00:00","severity":"medium","source_name":"Dark Reading","summary":"North Korean operatives posing as IT workers are improving their tactics, but researchers say there are still ways to spot them before they do damage.","title":"Red Flags That Expose Fake North Korean IT Workers","url":"https://www.darkreading.com/insider-threats/red-flags-expose-fake-north-korean-it-workers"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.202089+00:00","id":549,"published_date":"2026-08-26T19:00:00+00:00","severity":"medium","source_name":"CyberScoop","summary":"The company says the breach stemmed from a systemic failure of alignment and security, and has taken measures to prevent agents from independently orchestrating complex cyberattacks. The post OpenAI: Agent behavior that led to Hugging Face intrusion formed in May appeared first on CyberScoop.","title":"OpenAI: Agent behavior that led to Hugging Face intrusion formed in May","url":"https://cyberscoop.com/openai-hugging-face-agent-breach-report"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.705735+00:00","id":612,"published_date":"2026-08-26T18:57:41+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Sanatorio Modelo de Caseros","url":"https://www.ransomware.live/id/U2FuYXRvcmlvIE1vZGVsbyBkZSBDYXNlcm9zQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.706555+00:00","id":613,"published_date":"2026-08-26T18:57:05+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : KenEp Resources","url":"https://www.ransomware.live/id/S2VuRXAgUmVzb3VyY2VzQHFpbGlu"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.205645+00:00","id":550,"published_date":"2026-08-26T18:47:46+00:00","severity":"medium","source_name":"CyberScoop","summary":"The communications product company disclosed 22 total Wednesday, all but one of which was rated \u201ccritical\u201d at 9.0 or higher. The post Three 10.0 security flaws fixed across Ubiquiti\u2019s UniFi line appeared first on CyberScoop.","title":"Three 10.0 security flaws fixed across Ubiquiti\u2019s UniFi line","url":"https://cyberscoop.com/ubiquiti-unifi-critical-vulnerabilities-patched"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.851424+00:00","id":87,"published_date":"2026-08-26T17:33:45+00:00","severity":"medium","source_name":"Dark Reading","summary":"Threat actors behind a notorious click-fraud botnet have set their sights on vehicle infotainment modules and are abusing legitimate functionality to spread infections.","title":"Android Malware Hijacks Update System for Car Head Units","url":"https://www.darkreading.com/cyberattacks-data-breaches/android-malware-hijacks-update-system-car-head-units"},{"category":"SaaS Breach","confidence":"HIGH","confidence_reason":"Curated Microsoft threat research, Patch Tuesday summaries, and incident analysis. Replaced the MSRC Update Guide CVE firehose (~3k advisories/quarter) with this high-signal blog feed.","created_at":"2026-08-29T23:16:53.475160+00:00","id":242,"published_date":"2026-08-26T16:43:53+00:00","severity":"medium","source_name":"Microsoft Security Blog","summary":"Microsoft Threat Intelligence examines attacks on exposed AI workloads, including LiteLLM gateway exploitation, credential harvesting, persistence, and cryptomining activity. The post When AI infrastructure becomes the target: Securing gateways and control points appeared first on Microsoft Security Blog.","title":"When AI infrastructure becomes the target: Securing gateways and control points","url":"https://www.microsoft.com/en-us/security/blog/2026/08/26/when-ai-infrastructure-becomes-target-securing-gateways-control-points"},{"category":"OT/ICS","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.264588+00:00","id":36,"published_date":"2026-08-26T16:42:03+00:00","severity":"medium","source_name":"The Hacker News","summary":"The U.S. Department of Justice (DoJ) on Wednesday announced the disruption of two hacking platforms named QScan and QTRouter operated by Chinese threat actors to target critical infrastructure and other sensitive networks in the country. The activity has been attributed to a Chinese state-sponsored group known as QTFY, employed by Nanjing Xinjiuwei Network Technology Company (\u5357\u4eac\u946b\u7396\u7ef4\u7f51\u7edc\u79d1\u6280\u6709\u9650\u516c\u53f8).&","title":"FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations","url":"https://thehackernews.com/2026/08/fbi-disrupts-china-linked-qtfy.html"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"First-party Cisco PSIRT advisories (IOS/ASA/FTD/NX-OS). Authoritative earliest source for a heavily-exploited enterprise network product line. Pure advisory feed \u2014 no filter_uncategorized, an uncategorized Cisco advisory is still signal.","created_at":"2026-08-29T23:17:16.381760+00:00","id":740,"published_date":"2026-08-26T16:00:00+00:00","severity":"medium","source_name":"Cisco PSIRT","summary":"On September 2, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releases for the following Cisco products: Desk Phone 9800, 7800 and 8800, and 8875 Series Software IOS XR Software (security hardening release) Nexus 9000 Series Switches Silicon One Secure Email To fully remediate vulnerabilities to be disclosed on September 2, 2026, Cisco strongly recommends that customers upgrade to the fixed software indicated in the advisories. For more information about changes in Cisco PSIRT vulnerability disclosure, see Cisco's Transition to a Risk-Based Vulnerability Disclosure Model. Security Impact Rating: Informational","title":"Cisco Advance Notification for Publication of September 2, 2026, Security Advisories","url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-f2SiMFxl?vs_f=Cisco+Security+Advisory%26vs_cat%3DSecurity+Intelligence%26vs_type%3DRSS%26vs_p%3DCisco+Advance+Notification+for+Publication+of+September+2%2C+2026%2C+Security+Advisories%26vs_k%3D1"},{"category":"Identity & Access","confidence":"MEDIUM","confidence_reason":"Handler diaries \u2014 expert practitioner analysis, not primary research but high-quality synthesis.","created_at":"2026-08-29T23:17:14.013339+00:00","id":657,"published_date":"2026-08-26T15:58:15+00:00","severity":"medium","source_name":"SANS Internet Storm Center","summary":"A common thing that folks should \"worry\" about in Entra (or any platform really) is \"who has rights to administer\"&#;x26;#;x3f;&#;x26;#;xc2;&#;x26;#;xa0; Who can delete or change key things, or modify them in ways that might not be obvious (accidentally or on purpose).&#;x26;#;xc2;&#;x26;#;xa0; Yes, we trust our people, but if they&#;x26;#;39;ve moved on to other roles or to other organizations, they change from \"our people\" to \"used to be our people\".&#;x26;#;xc2;&#;x26;#;xa0;&#;x26;#;xc2;&#;x26;#;xa0;","title":"Who Has Admin Rights in your Entra ID Directory?, (Wed, Aug 26th)","url":"https://isc.sans.edu/diary/rss/33284"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.313428+00:00","id":709,"published_date":"2026-08-26T15:44:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"No timeline to restore IT systems as probe remains ongoing","title":"Boston Scientific discloses 'global disruption' in ongoing cyberattack","url":"https://www.theregister.com/security/2026/08/26/boston-scientific-discloses-global-disruption-in-ongoing-cyberattack/5292641"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.268827+00:00","id":37,"published_date":"2026-08-26T15:35:05+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers have discovered additional infrastructure and previously undocumented malware associated with Nimbus Manticore, an Iranian state-sponsored hacking group affiliated with the Islamic Revolutionary Guard Corps (IRGC). Group-IB, in a new analysis published today, described the cyber espionage actor as among the most active Iranian APT groups in 2026. Nimbus Manticore (aka","title":"Nimbus Manticore Expands Toolset With TWOSTROKE-Like Backdoor and SSH Tunneler","url":"https://thehackernews.com/2026/08/nimbus-manticore-expands-toolset-with.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.314310+00:00","id":710,"published_date":"2026-08-26T15:13:00+00:00","severity":"high","source_name":"The Register (Security)","summary":"One AI and two trained eyes delved into the heavily padded leaks","title":"Carhartt data breach affects 12.9M, half of what ShinyHunters claimed","url":"https://www.theregister.com/security/2026/08/26/carhartt-data-breach-affects-129m-half-of-what-shinyhunters-claimed/5292626"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Threat Research Unit analysis of actively exploited vulnerabilities. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:25.072440+00:00","id":1022,"published_date":"2026-08-26T15:00:00+00:00","severity":"high","source_name":"Qualys","summary":"Executive Summary Most IT teams still operate under a false binary: patch or accept risk. That assumption creates unnecessary operational pressure. Patchless remediation is real and production-proven. Mitigate, Uninstall, Run Custom Scripts, Isolate; close exposure when no reliable patch exists. Same-day exposure neutralization becomes possible for CISA KEV items without emergency change control or restart [\u2026]","title":"Beyond Patching: What IT Teams Need to Know About Unpatchable Exposures","url":"https://blog.qualys.com/category/qualys-insights"},{"category":"Cloud Security","confidence":"MEDIUM","confidence_reason":"Threat Research Unit analysis of actively exploited vulnerabilities. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:25.074174+00:00","id":1023,"published_date":"2026-08-26T15:00:00+00:00","severity":"medium","source_name":"Qualys","summary":"On July 9, 2026, an autonomous AI agent escaped an OpenAI evaluation sandbox and conducted a multi-day intrusion into Hugging Face\u2019s Kubernetes environment. Over roughly 17,600 actions, it reached dataset pipelines, production pods, cloud credentials, mesh VPN, and source control. The analysis maps the published incident to Qualys Container Runtime Security, Kubernetes Security Posture Management, and Cloud Detection and Response. These capabilities provide container-level eBPF telemetry, continuous CIS Benchmark and RBAC assessment, and cloud and SaaS API monitoring. This post explains which weaknesses Qualys TotalCloud could have surfaced accurately.","title":"When an AI Agent Turned Attacker: What Qualys Sees Across Every Phase of the Hugging Face Kubernetes Intrusion","url":"https://blog.qualys.com/category/product-tech"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Malware analysis and software supply-chain research (Shai-Hulud worm tracking, malware-as-a-service trends). Reinforces the Supply Chain category, which had no dedicated source before this audit. filter_uncategorized drops partner/product posts.","created_at":"2026-08-29T23:17:28.986077+00:00","id":1304,"published_date":"2026-08-26T15:00:00+00:00","severity":"medium","source_name":"ReversingLabs","summary":"Aurastealer, ACRStealer, and RemusStealer, a new potential LumaStealer variant, show MaaS in action. Here's what you need to know.","title":"Infostealers highlight malware-as-a-service trend","url":"https://www.reversinglabs.com/blog/infostealers-highlight-malware-as-a-service-trend"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.912231+00:00","id":1050,"published_date":"2026-08-26T14:30:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Group-IB uncovered new Tortoiseshell infrastructure, including a backdoor and SSH tunneling tool","title":"Tortoiseshell Expands Malware Toolset With New Backdoor, SSH Tunnel","url":"https://www.infosecurity-magazine.com/news/tortoiseshell-new-backdoor-ssh"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"User-submitted link aggregator, no editorial review. Signal varies wildly by submitter.","created_at":"2026-08-29T23:17:14.491800+00:00","id":662,"published_date":"2026-08-26T13:59:47+00:00","severity":"critical","source_name":"Reddit r/netsec","summary":"The Hunt.io research team found an open directory staging the full toolkit behind an intrusion into a Philippine nuclear research agency and a naval contractor. The ownCloud path is the interesting part technically. CVE-2023-49105 lets you forge pre-signed WebDAV URLs when the signing secret is empty, which is the default state on a fresh install. Five custom Python scripts on the server implement this: the signing routine passes an empty bytes literal as the PBKDF2 salt, sets OC-Credential to the account being impersonated, and issues GET requests against /remote.php/dav/files//, receiving files as that user with no credentials. Four scripts target one account each, the fifth adds PROPFIND enumeration with Depth: 1 to walk folders that were not pre-enumerated. The naval contractor was hit separately via CVE-2024-28000 (LiteSpeed Cache) using a custom Go reimplementation of MT19937 with PHP mt_rand() parity, verified against 11 known seed/output pairs, plus an XML-RPC brute force with rockyou.txt. Both produced unauthorized access independently. We also found a separate, possibly unrelated EtherHiding compromise on the same WordPress site. A HuntSQL query on the smart contract address returned 174 unique IPs hosting likely compromised pages with the same NoChain loader strings. Full writeup with IOCs, the signing routine, and MITRE mapping: https://hunt.io/blog/chinese-speaking-operator-philippine-nuclear-naval-contractor submitted by /u/Straight-Practice-99 [link] [comments]","title":"\u2622\ufe0f Philippine Nuclear Agency and Naval Contractor Targeted by Suspected Chinese-Speaking Operator","url":"https://www.reddit.com/r/netsec/comments/1vyxx41/philippine_nuclear_agency_and_naval_contractor"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.832720+00:00","id":614,"published_date":"2026-08-26T13:51:51+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Gill Rock Drill Company, Inc., located in Lebanon, PA, is a family-owned manufacturer and distr ibutor specializing in drilling equipment and tools for the drilling industry. The company offe rs a range of services including contract drilling, rentals, and technical support, focusing on building strong customer relationships based on integrity and trust. We will upload 5gb of corporate data soon. Employee personal information (passports, DLs, w-9 c omplete forms), client information, financials, payment details, CCs, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : Gill Rock Drill","url":"https://www.ransomware.live/id/R2lsbCBSb2NrIERyaWxsQGFraXJh"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.270086+00:00","id":38,"published_date":"2026-08-26T13:44:31+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers have disclosed details of a new adversary-in-the-middle (AitM) phishing toolkit called NovaCookies that's used as a proxy to redirect Microsoft 365 sign-ins, while capturing authenticated sessions in the process. In a report shared with The Hacker News ahead of publication, Island characterized the $320/month service as a subscription-based phishing platform that","title":"NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions","url":"https://thehackernews.com/2026/08/novacookies-campaigns-abuse-genuine.html"},{"category":"Uncategorized","confidence":"MEDIUM","confidence_reason":"Cybersecurity policy and industry journalism. Fills the Industry/Policy category gap.","created_at":"2026-08-29T23:17:11.218603+00:00","id":551,"published_date":"2026-08-26T13:30:44+00:00","severity":"medium","source_name":"CyberScoop","summary":"Shasta County registrar Clint Curtis told CyberScoop he needs Peters to help manage the county\u2019s 2026 elections and he\u2019s not concerned about her past conviction. The post Election official says Tina Peters would be consultant, won\u2019t have access to election systems appeared first on CyberScoop.","title":"Election official says Tina Peters would be consultant, won\u2019t have access to election systems","url":"https://cyberscoop.com/shasta-county-election-clint-curtis-tina-peters-controversy"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.915075+00:00","id":1051,"published_date":"2026-08-26T13:30:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Interpol operation leads to 58 arrests and identifies 263 suspects across 22 countries","title":"Interpol Operation Jackal IV Identifies 263 Cybercrime Suspects","url":"https://www.infosecurity-magazine.com/news/interpol-operation-jackal-iv"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.836571+00:00","id":615,"published_date":"2026-08-26T13:22:53+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Oral and maxillofacial surgeons Dr. Catrambone and Dr. August , Brockton, MA practice a full sc ope of oral and maxillofacial surgery with expertise ranging from corrective jaw surgery to wis dom tooth removal. We will upload 14gb of corporate data soon. Employee personal information (passports, phone con tacts), client information, financials, patients and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : Oral and Maxillofacial Surgery","url":"https://www.ransomware.live/id/T3JhbCBhbmQgTWF4aWxsb2ZhY2lhbCBTdXJnZXJ5QGFraXJh"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.839819+00:00","id":616,"published_date":"2026-08-26T13:22:33+00:00","severity":"medium","source_name":"Ransomware.live","summary":"PA-ID GmbH specializes in mechanical construction and manufacturing, building series and custom systems, as well as electrical design and the development of tailored industrial software. We will upload 119gb of corporate data soon. Employee personal information (passports, ID's), c lient information, financials, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : PA-ID","url":"https://www.ransomware.live/id/UEEtSURAYWtpcmE="},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.694832+00:00","id":250,"published_date":"2026-08-26T13:10:21+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"Chrome\u2019s latest update fixes 327 security vulnerabilities, including some that malicious websites could exploit as soon as you visit them.","title":"Update Chrome before you browse again","url":"https://www.malwarebytes.com/blog/bugs/2026/08/update-chrome-before-you-browse-again"},{"category":"OT/ICS","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.270526+00:00","id":39,"published_date":"2026-08-26T13:07:02+00:00","severity":"medium","source_name":"The Hacker News","summary":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published the results of two red team assessments it conducted simultaneously against two critical infrastructure organizations, using what it described as similar tradecraft while recording sharply different defensive outcomes. Both organizations were fully compromised at the domain level, and in both, the red team also","title":"CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing","url":"https://thehackernews.com/2026/08/cisa-red-team-compromised-two-critical.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established offensive security research firm. Pentest tooling, vulnerability research, red team techniques.","created_at":"2026-08-29T23:17:09.882179+00:00","id":515,"published_date":"2026-08-26T13:00:00+00:00","severity":"high","source_name":"Bishop Fox","summary":"Two critical vulnerabilities in Veeam Service Provider Console chain into unauthenticated remote code execution on the management server sitting above every tenant's backups. Bishop Fox confirmed the full chain end to end, breaks down both root causes, and shares a safe detection tool and IOCs.","title":"A GUID is Not a Credential: Unauthenticated RCE in Veeam Service Provider Console","url":"https://bishopfox.com/blog/a-guid-is-not-a-credential-unauthenticated-rce-in-veeam-service-provider-console"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.916667+00:00","id":1052,"published_date":"2026-08-26T13:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Reco report reveals growing shadow AI problem and surge in vulnerability disclosures","title":"Four in Five AI Tools Run with No IT Oversight, New Research Finds","url":"https://www.infosecurity-magazine.com/news/four-in-five-ai-tools-no-it"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research. Caveat: already filtered for noise via filter_uncategorized.","created_at":"2026-08-29T23:16:52.874692+00:00","id":221,"published_date":"2026-08-26T12:59:22+00:00","severity":"medium","source_name":"SentinelOne","summary":"A new joint study by Tenable and SentinelOne reveals how state and criminal groups converge on the same vulnerable edge infrastructure.","title":"Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who\u2019s Exploiting Your Perimeter","url":"https://www.sentinelone.com/blog/what-two-independent-datasets-reveal-about-whos-exploiting-your-perimeter"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.841129+00:00","id":617,"published_date":"2026-08-26T12:28:46+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Metal Conversions","url":"https://www.ransomware.live/id/TWV0YWwgQ29udmVyc2lvbnNAcWlsaW4="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.842182+00:00","id":618,"published_date":"2026-08-26T12:28:08+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : California Truck Equipment","url":"https://www.ransomware.live/id/Q2FsaWZvcm5pYSBUcnVjayBFcXVpcG1lbnRAcWlsaW4="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.843562+00:00","id":619,"published_date":"2026-08-26T12:27:29+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Northern Leasing Systems","url":"https://www.ransomware.live/id/Tm9ydGhlcm4gTGVhc2luZyBTeXN0ZW1zQHFpbGlu"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.920700+00:00","id":1053,"published_date":"2026-08-26T12:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Chubb reported that growing privacy litigation has contributed to surging cyber claim costs in the US","title":"Average Cyber Insurance Losses Increase Despite Fewer Claims","url":"https://www.infosecurity-magazine.com/news/cyber-insurance-losses-increase"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.273242+00:00","id":40,"published_date":"2026-08-26T11:55:00+00:00","severity":"high","source_name":"The Hacker News","summary":"The CERT Coordination Center (CERT/CC) has disclosed two unpatched vulnerabilities in Kaltura's HTML5 video player library that allow a remote, unauthenticated attacker to read arbitrary files from a server and execute code on it. The flaws, tracked as CVE-2026-19913 and CVE-2026-19912, both stem from the same unsafe deserialization in the mwEmbedLoader.php endpoint of the mwEmbed player","title":"Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code","url":"https://thehackernews.com/2026/08/unpatched-kaltura-mwembed-flaws-could.html"},{"category":"Uncategorized","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.284459+00:00","id":41,"published_date":"2026-08-26T11:36:49+00:00","severity":"medium","source_name":"The Hacker News","summary":"The SOC we've always known was built around a model that guarantees most of the alert queue will never receive analyst review. There's never time. In a traditional SOC, the typical progression follows a well-known pattern: an alert arrives; a detection engine assigns a severity score. The issue then waits for a human to decide if it should escalate to an investigation. Given the volume of","title":"Imagine the SOC Without a Queue: From Alert Backlog to AI Hypothesis Engine","url":"https://thehackernews.com/2026/08/imagine-soc-without-queue-from-alert.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.852387+00:00","id":88,"published_date":"2026-08-26T11:33:40+00:00","severity":"medium","source_name":"Dark Reading","summary":"The adversary-in-the-middle (AitM) phishing service lowers the barrier to entry for actors to create attacks and steal more than just user credentials.","title":"'NovaCookies' Kit Steals Microsoft 365 Sessions for $320 a Month","url":"https://www.darkreading.com/endpoint-security/novacookies-steals-microsoft-365-sessions-320-a-month"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.844318+00:00","id":620,"published_date":"2026-08-26T11:29:55+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Integrex RCM","url":"https://www.ransomware.live/id/SW50ZWdyZXggUkNNQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.845028+00:00","id":621,"published_date":"2026-08-26T11:29:16+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : ATF","url":"https://www.ransomware.live/id/QVRGQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.845755+00:00","id":622,"published_date":"2026-08-26T11:28:40+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : WireCo","url":"https://www.ransomware.live/id/V2lyZUNvQHFpbGlu"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"Top-tier security research firm. Formal verification, crypto, smart contract, and systems security. Primary research. No filter_uncategorized \u2014 100% security content.","created_at":"2026-08-29T23:17:03.035115+00:00","id":478,"published_date":"2026-08-26T11:00:00+00:00","severity":"high","source_name":"Trail of Bits","summary":"As part of Patch the Planet, we received preview access to GPT 5.6-Cyber with a simple task: evaluate its cyber capabilities. Recent events inspired me to give it a challenge to work through: escape the VM I\u2019d normally use for sandboxing. The target was a QEMU/KVM VM on my Linux dev machine (Debian Linux 12, AMD Zen3). It escaped the VM three different times. First, it used recently disclosed bugs in my host kernel. When I fully updated, it used disclosed bugs that had not yet reached package maintainers or were not classified as security bugs. When I rebuilt QEMU and dependencies from the latest upstream source, it found several 0-days. It operated autonomously for hours, backtracked from approaches that didn\u2019t work, pulled code and research papers, wrote oracles, made its own minimal examples, and aimed for a reusable, reliable exploit, all with minimal handholding and prompting. My main job was to physically reboot the machine when it hardlocked the host kernel. If it wasn\u2019t clear before, I will state it plainly: you can no longer assume a mere VM will contain a sufficiently advanced AI agent. To use a 2010s term of art, you should treat such agents as an advanced persistent threat. Advancing cybersecurity capabilities Let\u2019s imagine a common situation: you want to run an AI agent, but need its full capabilities, including the ability to download, build and debug software; do research; sift through dependencies; set up fuzzers; triage vulnerabilities; and stand up services under different configurations. The generally accepted solution is to set up a VM that serves as a safety perimeter and isolated prison for the agent: this virtual environment contains nothing of value, is separate from the host, and can be immediately deactivated or snapshotted for later investigation. This setup allows the agent to roam free, while isolating your computer from its consequences. There is, of course, a tiny wrinkle. To be useful, the virtual environment must share resources with your host machine and provide a way to interact with the agent: you want to be able to see its screen, get files in and out, etc. You also almost certainly want the agent to have (some) network access. Are these shared software, state, and communications pathways enough for the agent to escape containment? For a long time the answer was \u201cno, absolutely not.\u201d More recently, I\u2019d have thought \u201cmaybe, after a while.\u201d It turns out the real answer was \u201cyes, and quickly.\u201d I gave the agent a simple task: It was in a CTF; to win, it had to break out of the VM and successfully read the flag file. The agent was started outside the VM, given SSH access into the VM environment, and permitted to do anything inside the VM. It was to keep a research log of findings. Why start outside the target environment, even though it could lead to cheating? I was operating under the (correct) assumption that escape attempts may lock/crash the VM during operation. The risk of starting the agent from the host was acceptable: there was nothing of particular importance on the dev machine, and any final exploit could be audited for cheating its objectives. Escape 1: Januscape (CVE-2026-53359) About an hour after letting the agent run, the host machine was hardlocked. Luckily, I had a logged-in session where I could read scrollback: the agent found my host machine kernel was vulnerable to Januscape (which was disclosed a few weeks earlier). There is no public exploit, but the agent had built one, and had enough confidence to test it\u2014except that it didn\u2019t land cleanly. I have no doubt that after some more revision it would have. One point for GPT 5.6-Cyber. I updated my kernel to the latest offered for Debian 12. Escape 2: libslirp I am old and I like stability and consistency. That is why I run Debian 12, the current oldstable. Oldstable works, changes slowly, and gets security updates\u2014exactly the known quantity I want from my software. Unfortunately, it seems that some security updates do not quite make it into the distribution. In this case, Debian 12 still ships libslirp 4.7.0, which is vulnerable to CVE-2026-9539. The agent also discovered that a bug fix commit in libslirp with no CVE assigned could be combined with CVE-2026-9539 to craft an arbitrary memory read/write in the host. After that, escape is trivial. Two points for GPT 5.6-Cyber. For those curious, libslirp is a library that enables VMs to have networking, which you almost always want. I did not even know what libslirp was, or that the version I was running had both known and fixed-but-unmarked vulnerabilities. The AI agent deduced it quickly and was able to combine the two vulnerabilities to escape. To make escape more challenging, I manually fetched the latest upstream libslirp and QEMU, and rebuilt a minimal QEMU with only the features I needed. Persisting across long time horizons One of the most impressive features of GPT 5.6-Cyber and Codex with goal mode is effective persistence over long (here, approximately 12-hour) time horizons across multiple compactions and innumerable subagent invocations. I did not do anything special to elicit this behavior; while my prompt included directions for the agent to keep a ledger of its findings, this was mostly for me, not for the agent. The agent searched diligently and backtracked from multiple paths that led to failure. First it tried identifying what was accessible via the network on the host; it found a CUPS server (with a known CVE that had not made it to oldstable packages), but was not able to complete exploitation due to AppArmor. It then detected I run my host kernel with mitigations=off and attempted to use hardware bugs to get a read oracle of host memory (the primitive was too unreliable). Eventually it went on a bug-hunting analysis of the host kernel source, QEMU, and associated libraries. It slowly chained together multiple vulnerabilities, including several 0-day bugs, until it could craft a reliable VM escape. Escape 3: 0-days This is what the agent used for the final exploit chain: three 0-days (at time of discovery) and one patched vulnerability that didn\u2019t make it to my distribution kernel (because it was not recognized as a security issue): Component Patched? Description Capability QEMU No; bug has been reported. VAPIC\u2019s unchecked ROM alias could overlap locked SMRAM. Exposed SMRAM and enabled attacker-controlled SMM execution. Linux KVM Patched in upstream Bug details pending stable kernel patches Left an attacker-modified shadow page unsynchronized and reusable. Linux KVM Yes in upstream, not in distribution kernel paging64_invlpg() reused a stale level-2 role after the guest entry changed to a 4 KiB mapping. Created a writable 2 MiB host-physical mapping, enabling QEMU heap modification. libslirp No; bug has been reported. Mixed fragment IHLs caused ICMP reflection to copy data beyond the reassembled packet. Produced thousands of recognizable, live NetPacket objects for locating and hijacking a callback. Here are the vulnerabilities the agent found but did not use in the final chain: Component Patched? Description Capability Why it went unused libslirp No; bug has been reported IPv6 retained bytes beyond the declared payload length. Host-stream data injection Less reliable and required a suitable host service; the KVM chain provided a stronger primitive. CUPS Yes in upstream, no for distribution Slirp loopback forwarding exposed CUPS\u2019s reusable root Local certificate. Persistent root file overwrite through a file:// printer AppArmor blocked the sensitive host paths needed to retrieve the flag. QEMU Yes, now, but not when found A mode transition left a 96-byte panning buffer for a 1,024-byte render. Controlled QEMU heap overflow The target used -display none, so no display listener reached the renderer. QEMU No; bug has been reported Queue reset left requests alive, causing inuse underflow and completion reentrancy. QEMU denial of service and bounded queue-state corruption No unbounded memory-write or host-execution primitive was demonstrated. Challenging current software security assumptions My suspicion was that GPT 5.6-Cyber would succeed, but the frequency and manner of its success removed all doubt. We have to reassess sandboxing quality for capable AI agents, and in general the software stack with which they interact. An off-the-shelf VM is not enough to contain a modern, cyber-capable AI agent. There is simply too much attack surface. Even innocuous features (like running with a display) add extra, exploitable attack surface. A distribution with rapid updates is now a requirement. I love older, stable software, but the cycle of backporting patches is simply too long. An older distribution (like Debian 12, my old standby) that isn\u2019t getting immediate upstream updates should be assumed vulnerable. A competent agent will discover these bugs quickly and synthesize target-specific exploits. What can we do? A start is using a virtualization technology that was purposely built with a minimal attack surface and a focus on security, like Firecracker. I had the AI agent run against Firecracker. It was able to hardlock the machine due to more Linux kernel flaws (all patched in upstream), but could not successfully escape. It may have, given even more time, but Firecracker is obviously a substantially harder target. In general, we have to become much more attentive to security fundamentals: least privilege (regarding network access, credentials, available features, etc.), logging, and active monitoring. Further, we can limit the time agents have to operate and ensure a pristine environment for each use.","title":"VMs won't contain cyber-capable agents","url":"https://blog.trailofbits.com/2026/08/26/vms-wont-contain-cyber-capable-agents"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.288237+00:00","id":42,"published_date":"2026-08-26T10:27:23+00:00","severity":"medium","source_name":"The Hacker News","summary":"Aikido Security has published research that recreates the Australian gym-booking incident in a synthetic environment, finding that Claude Opus 4.6, running on the OpenClaw agent harness, exploited a client-side-only booking restriction in 9 of 10 runs. The original incident was first reported by ABC News on August 10, based on chat logs and screenshots the user supplied. He had asked an","title":"Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users' Reservations in Tests","url":"https://thehackernews.com/2026/08/claude-opus-46-bypasses-gym-booking.html"},{"category":"Supply Chain","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.643202+00:00","id":793,"published_date":"2026-08-26T10:15:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"Most software runs on decisions nobody made. We talk about why gating, pinning, backporting, and SBOM upkeep only work if someone actually owns them. Category: News","title":"Software supply chain security requires decisions rather than defaults","url":"https://www.aikido.dev/blog/software-supply-chain-security-decisions-not-defaults"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.645674+00:00","id":794,"published_date":"2026-08-26T10:10:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"Aikido Security has achieved ISO 42001 certification, the global standard for AI governance, covering AI pentesting, Code Security Audit, and Deep PR Review. Category: Compliance","title":"Aikido Security achieves ISO 42001:2023 certification for AI governance","url":"https://www.aikido.dev/blog/aikido-iso-42001-certification"},{"category":"AI Security","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research with strong malware analysis track record.","created_at":"2026-08-29T23:16:52.219866+00:00","id":196,"published_date":"2026-08-26T10:00:05+00:00","severity":"medium","source_name":"Cisco Talos","summary":"Selecting a model for your security operations center (SOC) and digital forensics and incident response (DFIR) tasks is important, but selecting the best one is more involved than you might think. Here's how to choose.","title":"Choose your fighter: Balancing competing requirements to select models for your AI SOC","url":"https://blog.talosintelligence.com/choose-your-fighter-balancing-competing-requirements-to-select-models-for-your-ai-soc"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"Best-in-class APT campaign tracking and malware reverse engineering. Industry-leading primary research.","created_at":"2026-08-29T23:16:58.519648+00:00","id":329,"published_date":"2026-08-26T10:00:04+00:00","severity":"medium","source_name":"Kaspersky Securelist","summary":"This report covers statistics on vulnerabilities, exploits, and C2 frameworks in Q2 2026. For the first time ever, we aggregate data on vulnerabilities in open-source AI agents and AI frameworks.","title":"Exploits and vulnerabilities in Q2 2026","url":"https://securelist.com/vulnerabilities-and-exploits-in-q2-2026/121091"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.648283+00:00","id":795,"published_date":"2026-08-26T10:00:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"Aikido's agents pentest your Android app and its backend in a single whitebox assessment. You get reproducible findings, AutoFix, and retests for every issue. Category: Product & Company Updates","title":"Aikido launches agentic pentesting for Android apps","url":"https://www.aikido.dev/blog/aikido-launches-agentic-pentesting-for-android-apps"},{"category":"Nation State/APT","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.293976+00:00","id":43,"published_date":"2026-08-26T09:38:45+00:00","severity":"medium","source_name":"The Hacker News","summary":"OpenAI on Tuesday said it banned a cluster of Russian ChatGPT accounts that used VPNs to bypass access restrictions and run an influence operation, which relied on its artificial intelligence (AI) tool to generate social media posts and comments that were shared on Substack, Telegram, X, Facebook and LinkedIn. The accounts \"were being used to promote the International Burke Institute (IBI), a","title":"OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation","url":"https://thehackernews.com/2026/08/openai-bans-russian-chatgpt-accounts.html"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.923329+00:00","id":1054,"published_date":"2026-08-26T09:10:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"This new open standard offers hardware-attested runtime and compliance evidence for AI agents","title":"Linux Foundation Introduces TRACE Standard for AI Runtime Evidence","url":"https://www.infosecurity-magazine.com/news/linux-foundation-trace-standard-ai"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.925110+00:00","id":1055,"published_date":"2026-08-26T09:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"A coordinated DDoS campaign has caused disruption among Norwegian government services","title":"DDoS Attack Hits Norwegian Government Services","url":"https://www.infosecurity-magazine.com/news/ddos-attack-hits-norwegian"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.858526+00:00","id":89,"published_date":"2026-08-26T08:30:00+00:00","severity":"medium","source_name":"Dark Reading","summary":"The international law enforcement operation focused on disrupting crime-as-a-service networks and infrastructure behind groups like Black Axe.","title":"Interpol's Jackal IV Disrupts West African Crime Infrastructure","url":"https://www.darkreading.com/threat-intelligence/interpols-jackal-iv-west-african-crime-infrastructure"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.865046+00:00","id":90,"published_date":"2026-08-26T08:00:00+00:00","severity":"medium","source_name":"Dark Reading","summary":"The West African nation launched financing, procurement, and infrastructure policies to boost its sovereign cloud initiative and increase domestic technical knowledge.","title":"Nigeria Looks to Sovereign Cloud for Cyber, National Security","url":"https://www.darkreading.com/cybersecurity-operations/nigeria-sovereign-cloud-cyber-national-security"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.703126+00:00","id":251,"published_date":"2026-08-26T08:00:00+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"Scammers are posing as employers on Indeed to trick job seekers into installing fake Android interview apps that deliver malware.","title":"Beware of fake Indeed interview apps used to install spyware","url":"https://www.malwarebytes.com/blog/scams/2026/08/beware-of-fake-indeed-interview-apps-used-to-install-spyware"},{"category":"Industry/Policy","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.304229+00:00","id":44,"published_date":"2026-08-26T07:54:12+00:00","severity":"medium","source_name":"The Hacker News","summary":"An eight-month INTERPOL operation targeting West African organized crime groups has led to arrests of 58 people and the identification of 263 suspects. \"The operation, which brought together 22 countries from six continents, is a response to the escalating global threat posed by West African criminal networks \u2013 such as the Black Axe and other similar groups,\" INTERPOL said. \"These groups are","title":"INTERPOL Operation Jackal IV Arrests 58, Identifies 263 in Global Cyber Fraud Crackdown","url":"https://thehackernews.com/2026/08/interpol-operation-jackal-iv-arrests-58.html"},{"category":"Malware/Infostealer","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.310255+00:00","id":45,"published_date":"2026-08-26T07:12:55+00:00","severity":"medium","source_name":"The Hacker News","summary":"An independent malware researcher has documented a previously unreported Windows backdoor, dubbed SLEEPWALKER, that stays inert in memory until a specifically crafted network packet reaches the machine and then runs commands written in a 23-instruction language of its own design. The sample is an unsigned 64-bit Windows dynamic-link library (DLL) of 59,904 bytes, built to be side-loaded into&","title":"New SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode","url":"https://thehackernews.com/2026/08/newly-sleepwalker-backdoor-waits-for.html"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.314078+00:00","id":46,"published_date":"2026-08-26T06:27:07+00:00","severity":"critical","source_name":"The Hacker News","summary":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday warned of active exploitation efforts targeting a recently patched critical security flaw impacting Gitea. The vulnerability in question is CVE-2026-60004 (CVSS score: 9.8), a case of remote code execution that allows an attacker with ordinary write access to a repository to execute arbitrary shell commands as the","title":"Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload","url":"https://thehackernews.com/2026/08/critical-gitea-rce-actively-exploited.html"},{"category":"Identity & Access","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.316434+00:00","id":47,"published_date":"2026-08-26T05:47:28+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers have disclosed details of a phishing-as-a-service (PhaaS) platform built to strip Apple's Activation Lock from stolen devices, using rented AI voice agents that call theft victims posing as Apple Support and ask for their device passcode. SOCRadar Threat Research Unit (STRU) said the platform, which it tracks as AnonyMousKIT, is credit-metered and drives lures across","title":"Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes","url":"https://thehackernews.com/2026/08/fake-apple-support-ai-calls-target.html"},{"category":"Nation State/APT","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.547320+00:00","id":413,"published_date":"2026-08-26T04:00:00+00:00","severity":"medium","source_name":"Huntress","summary":"Huntress analyzed several incidents involving DPRK remote workers (Famous Chollima) in partner environments. Learn key indicators to detect and prevent North Korean threats.","title":"Insights into Suspected DPRK Workers","url":"https://www.huntress.com/blog/huntress-dprk-remote-worker-investigation"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.893712+00:00","id":623,"published_date":"2026-08-26T01:57:16+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Air International Thermal Systems","url":"https://www.ransomware.live/id/QWlyIEludGVybmF0aW9uYWwgVGhlcm1hbCBTeXN0ZW1zQHFpbGlu"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Duo Security / Cisco-owned security journalism (Dennis Fisher, Lindsey O'Donnell-Welch). Primary reporting, no marketing funnel. Peer-quality with Dark Reading / The Record.","created_at":"2026-08-29T23:16:50.838021+00:00","id":130,"published_date":"2026-08-26T01:17:39+00:00","severity":"medium","source_name":"Decipher","summary":"TRACE aims to help prove that sensitive data in organizations is being handled \u201caccording to policy\u201d by AI agents and open weight models.","title":"Linux Foundation Backs New TRACE AI Security Standard","url":"https://decipher.sc/2026/08/25/linux-foundation-backs-new-trace-ai-security-standard"},{"category":"Cloud Security","confidence":"MEDIUM","confidence_reason":"Container/Kubernetes runtime-security research and cryptomining campaign analysis. NOTE: removed 2026-07-11 as a 404 on a guessed URL; this path was re-verified live 2026-08-29 (HTTP 200, 100 entries) and works.","created_at":"2026-08-29T23:17:23.719412+00:00","id":989,"published_date":"2026-08-26T00:00:00+00:00","severity":"medium","source_name":"Sysdig","summary":"Here are the security implications of Kubernetes 1.37, including new security features to mount volumes, authentication by default on webhooks, and more.","title":"Kubernetes 1.37 - New security features","url":"https://webflow.sysdig.com/blog/kubernetes-1-37-new-security-features"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Troy Hunt's curated breach disclosure feed. Low volume (~2-4/month), high trust, universally cited. Each entry names the breached org, account count, and exposed data types.","created_at":"2026-08-29T23:17:11.417751+00:00","id":553,"published_date":"2026-08-25T21:34:25+00:00","severity":"high","source_name":"Have I Been Pwned","summary":"In August 2026, clothing retailer Carhartt was the target of a ShinyHunters \"pay or leak\" extortion campaign. The group subsequently published data allegedly obtained from the company including 12.9M unique email addresses, names, phone numbers and physical addresses. The published corpus also contained millions of synthetic records that did not relate to real individuals and were excluded from the breach.","title":"Carhartt - 12,933,413 breached accounts","url":"https://haveibeenpwned.com/Breach/Carhartt"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.922184+00:00","id":624,"published_date":"2026-08-25T21:28:26+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Brazosport College","url":"https://www.ransomware.live/id/QnJhem9zcG9ydCBDb2xsZWdlQHFpbGlu"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.869299+00:00","id":91,"published_date":"2026-08-25T21:08:55+00:00","severity":"medium","source_name":"Dark Reading","summary":"With some simple HTML that's invisible to users, attackers can manipulate AI-powered email summarizers into producing malicious information.","title":"Hidden Prompts Trick AI Into False Email Summaries","url":"https://www.darkreading.com/cyber-risk/hidden-prompts-trick-ai-false-email-summaries"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.871512+00:00","id":92,"published_date":"2026-08-25T19:50:16+00:00","severity":"high","source_name":"Dark Reading","summary":"Attackers can exploit a security bug in Nvidia's tool to gain unauthenticated access to the local model server through the Ollama API, paving the way for persistent AI agent corruption.","title":"Finding Nemo(Claw): Networking Issue Allows for LLM Poisoning in OpenClaw","url":"https://www.darkreading.com/cyber-risk/nemo-claw-networking-llm-poisoning-openclaw"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.995112+00:00","id":886,"published_date":"2026-08-25T19:09:48+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-089-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/25/2026 12:00 PM PDT Description: Strands Agents is an open-source Python SDK for building and running AI agents. The strands-agents-tools package provides pre-built tools for use with the SDK, including the python_repl tool, which executes Python code on the agent's host, and the batch tool, which invokes several other tools in a single call. Before executing code, python_repl prompts the operator for approval. We identified CVE-2026-78379, a consent bypass in the python_repl tool. Improper neutralization of input used for LLM prompting in the python_repl tool in Amazon Strands Agents Tools before 0.8.5 might allow remote actors to execute arbitrary Python code on the agent's host by bypassing the human consent gate, via a crafted prompt that forwards non_interactive_mode as a keyword argument through the batch tool. Impacted versions: < 0.8.5 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-78379 - Consent bypass in Strands Agents Tools python_repl tool","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-089-aws"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:12.967130+00:00","id":625,"published_date":"2026-08-25T19:00:00+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : SC PaderTeG Cabluri Electrice","url":"https://www.ransomware.live/id/U0MgUGFkZXJUZUcgQ2FibHVyaSBFbGVjdHJpY2VAcWlsaW4="},{"category":"OT/ICS","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.317002+00:00","id":48,"published_date":"2026-08-25T18:17:17+00:00","severity":"medium","source_name":"The Hacker News","summary":"The U.S. Department of the Treasury has announced fresh sanctions on Iranian cyber actors as part of what it called an \"unprecedented, whole-of-government, economic campaign\" against the nation and its enablers. \"We are launching an economic onslaught against Iran's financial connections around the globe. Our objective is to sever every economic lifeline that sustains this tyrannical regime","title":"U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches","url":"https://thehackernews.com/2026/08/us-sanctions-iran-linked-hackers-behind.html"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"User-submitted link aggregator, no editorial review. Signal varies wildly by submitter.","created_at":"2026-08-29T23:17:14.503744+00:00","id":663,"published_date":"2026-08-25T17:14:25+00:00","severity":"high","source_name":"Reddit r/netsec","summary":"submitted by /u/wez32 [link] [comments]","title":"Pwning Call of Duty 1: a 20-year-old RCE, found in an evening with AI","url":"https://www.reddit.com/r/netsec/comments/1vy5zqu/pwning_call_of_duty_1_a_20yearold_rce_found_in_an"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"CERT/CC vulnerability coordination center. Authoritative vuln notes, partially replaces dead CISA feeds.","created_at":"2026-08-29T23:16:51.074801+00:00","id":140,"published_date":"2026-08-25T16:11:49+00:00","severity":"high","source_name":"CERT Vulnerability Notes","summary":"Overview The Kaltura HTML5 Player V2 Library (mwEmbed / html5lib) contains two vulnerabilities, both involving the same insecure deserialization flaw, that enable arbitrary file read and remote code execution. Affected versions include html5lib v2.45, v2.103 and earlier, and other v2.x releases that expose the vulnerable mwEmbedLoader.php endpoint. Notably, only versions of the legacy player (Player V2) are vulnerable; these issues do not affect any versions of the currently supported Kaltura Player V7. Description Kaltura is an AI video platform that provides tools for video management, publishing, playback, and integration with web applications. Kaltura\u2019s HTML5 player library exposes the mwEmbedLoader.php endpoint, which accepts a user-controlled ServiceUrl parameter as the target URL for backend API requests. The KalturaClientBase PHP client library fetches data from this URL and automatically deserializes it using PHP's unserialize() function without validating source, scheme, or content. CVE-2026-19913 results from the combination of this unsafe deserialization flaw and improper error-handling behavior. An attacker can provide the location of a local file to ServiceUrl as a file:// path, and the client will fetch the internal file's contents and attempt to deserialize them. When deserialization fails, the raw bytes are reflected back to the client in the resulting error message, enabling the attacker to read any file accessible to the web-server user. CVE-2026-19912 is caused by insufficient sanitization of the parameter uiconf_id, which is appended to the base cache folder path when the application writes data to disk. Because this value is user-controlled and unsanitized, an attacker can supply values that include directory traversal sequences such as ../ to redirect file writes outside the intended cache directory. When the deployment uses the default file-based cache backend, an attacker can direct ServiceUrl to a malicious serialized object containing executable PHP code, then supply a uiconf_id path value that writes its deserialized fields to a web-accessible directory. The attacker can then request the file directly to achieve remote code execution as the web-server user. A memcache-only backend may suppress the file write and prevent this specific code-execution path, but the underlying unsafe deserialization behavior and unsanitized path construction remain present. Impact These vulnerabilities allow a remote, unauthenticated attacker to read arbitrary local files and execute arbitrary commands as the web-server user. No authentication or Kaltura session token is required to exploit either issue; an attacker only needs network access to the affected html5lib endpoint. CVE-2026-19913 can be abused to obtain database credentials, administrative secrets, API keys, or any other sensitive information hosted on the affected instance. Remote code execution achieved through CVE-2026-19912 allows an attacker to modify or exfiltrate platform data, deploy tools for persistence and lateral movement, and further compromise affected Kaltura deployments. Because the affected endpoint is also exposed on Kaltura's shared, multi-tenant CDN infrastructure, these vulnerabilities affect not only individual customer installations, but also every tenant served by these shared hosts. Solution Kaltura has released new patches to remediate these vulnerabilities in all affected legacy Player V2 versions. Customers using legacy players, including self-hosted legacy player deployments (html5lib v2.x), should update to the patched version or, preferably, migrate to the newer and currently supported Kaltura Player V7 platform. Until the update is applied, users are advised to restrict or disable access to the mwEmbedLoader.php endpoint. Acknowledgements Thanks to Gerjan Wemekamp (AndDone) for researching and reporting these vulnerabilities. This document was written by Molly Jaconski.","title":"VU#308749: Remote Code Execution and Arbitrary File Read Vulnerabilities in Kaltura Servers","url":"https://kb.cert.org/vuls/id/308749"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.315961+00:00","id":711,"published_date":"2026-08-25T16:09:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Attackers now ready to exploit how things work, rather than just break them, says Oracle support expert","title":"You could've applied all 1,449 Oracle patches and still been hit by this attack","url":"https://www.theregister.com/security/2026/08/25/you-couldve-applied-all-1449-oracle-patches-and-still-been-hit-by-this-attack/5292335"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Malware analysis and software supply-chain research (Shai-Hulud worm tracking, malware-as-a-service trends). Reinforces the Supply Chain category, which had no dedicated source before this audit. filter_uncategorized drops partner/product posts.","created_at":"2026-08-29T23:17:28.988583+00:00","id":1305,"published_date":"2026-08-25T16:00:00+00:00","severity":"medium","source_name":"ReversingLabs","summary":"UAT-10147 leveraged agentic AI to go beyond scripting to deliver a backdoor. The method highlights the need for agentic SOCs.","title":"Agentic AI scales semiautonomous server attacks","url":"https://www.reversinglabs.com/blog/threat-actors-leverage-agentic-ai"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Duo Security / Cisco-owned security journalism (Dennis Fisher, Lindsey O'Donnell-Welch). Primary reporting, no marketing funnel. Peer-quality with Dark Reading / The Record.","created_at":"2026-08-29T23:16:50.839194+00:00","id":131,"published_date":"2026-08-25T15:49:58+00:00","severity":"critical","source_name":"Decipher","summary":"The chain leverages two distinct vulnerabilities\u2014an authentication bypass and an unsafe .NET type instantiation flaw\u2014to provide full server control without valid credentials.","title":"Unauthenticated RCE Chain Found For Microsoft SharePoint CVE-2026-55040 and CVE-2026-63520","url":"https://decipher.sc/2026/08/25/unauthenticated-rce-chain-found-for-microsoft-sharepoint-cve-2026-55040-and-cve-2026-63520"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Handler diaries \u2014 expert practitioner analysis, not primary research but high-quality synthesis.","created_at":"2026-08-29T23:17:14.020889+00:00","id":658,"published_date":"2026-08-25T15:03:33+00:00","severity":"medium","source_name":"SANS Internet Storm Center","summary":"It is pretty obvious that hostnames can replace IP addresses. Pretty much any software accepting an IP address will also accept a hostname as an argument. Last week, I wrote about scans for the cloud metadata service listening at 169.254.169.254. These scans attempted to exploit Server Side Request Forgery (SSRF) vulnerability. One way to prevent these types of exploits is to filter requests that contain the string \"169.254.169.254\" or to add this IP to a blocklist of URLs that should not be accessed.","title":"Obfuscating IP Addresses as Hostnames, (Tue, Aug 25th)","url":"https://isc.sans.edu/diary/rss/33280"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.927580+00:00","id":1056,"published_date":"2026-08-25T14:30:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"ZeroTokens gives phishing operators live control of victim sessions targeting 53 financial brands","title":"ZeroTokens Phishing Platform Steers Attacks in Real Time","url":"https://www.infosecurity-magazine.com/news/zerotokens-phishing-real-time"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.032367+00:00","id":626,"published_date":"2026-08-25T14:25:27+00:00","severity":"medium","source_name":"Ransomware.live","summary":"We Breached A-plus through a sql injection vulnerability and downloaded everything in there backend. We gained access to there system on 08/18/2026 The following data was stolen: 1. Website User Data (`usr.csv`) - This file contains the administrative backend infrastructure for the website, exposing: - 10 internal accounts, including the usernames `admin`, `debuger`, `camby`, `asuka`, `jimmy`, `ricole`, and `green`. - Password hashes (SHA-1 format) revealing that almost all administrative users shared the exact same password. - Internal access metadata 2. Marketing and Public Web Content - The remaining four files contain the text, configuration, and structural layout used to display information to visitors on `a-plussoft.com`: `- products.csv` 13 lines): The master list of software solutions and mobile apps sold by the company (such as SalesAnywhere). `- product_content.csv` (101 lines): The detailed marketing descriptions, features, specifications, and text modules displayed on individual product pages. `- news.csv` (89 lines): The text content of all historical corporate announcements, updates, and press releases published by the company. `- news_cate.csv` (2 lines): The category organization tags used to sort the news section on the website Uncompressed size total records: 211 2,787,292 Bytes, which equals 2.6582 Megabytes (MB). mirror 1: https://anonfilesnew.com/s/XtgbXhRkQQ8 mirror 2: https://pixeldrain.com/u/jUpuUyj9","title":"\ud83c\udff4\u200d\u2620\ufe0f Shadowbyt3$ has just published a new victim : A-Plus Software Limited","url":"https://www.ransomware.live/id/QS1QbHVzIFNvZnR3YXJlIExpbWl0ZWRAU2hhZG93Qnl0MyQ="},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.040287+00:00","id":627,"published_date":"2026-08-25T14:24:56+00:00","severity":"medium","source_name":"Ransomware.live","summary":"We breached Knottingham trent University on August 19th 2026 by gaining access through webapps.ntu.ac.uk. We alerted the university which they know they have been breached they locked out are access after stealing the following below High-Risk Sensitive PII - Passport Numbers & Details: Stolen via the raw PDF copies of the applicants' physical passports - Dates of Birth: Specifically exposed on the main data profile screen - Nationalities & Countries of Birth: Confirmed via the legal passport logs and the registration metadata fields. Contact & Location PII - Full Legal Names: Animesh Shukla and Abhinand Unnikrishnan - Personal Email Addresses: Exposed via the portal login view (`amita.shukla@leveragemails.com`). - Mobile Phone Numbers: Explicitly collected on the dashboard contact view (`7080809422`). - Permanent & Correspondence Home Addresses: Complete street-level addresses mapping out exact house numbers, apartment complexes, districts, and postal ZIP codes spanning across Lucknow (226001) and Delhi (110024). Academic & Professional History PII - While non-sensitive on its own, hackers use this deeply personal context to write highly convincing scam letters - Complete Academic History: Stolen via the raw transcript files (`Degree Transcript.pdf` `10TH`, and `12TH` grade completion papers), showing exact grade percentages, modules studied, and prior school names. - Employment & Professional History: Stolen directly out of the `CV.pdf` file, mapping out their previous job titles and career timelines - Professional Reference Names: Stolen via the Letters of Recommendation (`LOR.pdf`), which reveal the names, titles, and institutions of the professors or employers who recommended them. mirror 1: https://anonfilesnew.com/s/FXB5-I_XtWl mirror 2: https://pixeldrain.com/u/XXWv2geH This is a warning to all companies to comply it's that easy and simple. If you don't we will leak you and ruin your reputation and make sure that everyone abuses your companies data.","title":"\ud83c\udff4\u200d\u2620\ufe0f Shadowbyt3$ has just published a new victim : Knottingham Trent University","url":"https://www.ransomware.live/id/S25vdHRpbmdoYW0gVHJlbnQgVW5pdmVyc2l0eUBTaGFkb3dCeXQzJA=="},{"category":"Uncategorized","confidence":"MEDIUM","confidence_reason":"Primary web application security research from the makers of Burp Suite. Niche-authoritative. No filter_uncategorized \u2014 100% security content.","created_at":"2026-08-29T23:17:09.584110+00:00","id":511,"published_date":"2026-08-25T14:24:32+00:00","severity":"medium","source_name":"PortSwigger Research","summary":"I was on my laptop, as I often am when there's rubbish on telly, and found myself wondering what characters are allowed in a tag. I knew they had to begin with \"a-zA-Z\", but what about after that? I t","title":"What's in a tag name? JavaScript, apparently","url":"https://portswigger.net/research/whats-in-a-tag-name-javascript-apparently"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.320846+00:00","id":49,"published_date":"2026-08-25T14:07:37+00:00","severity":"high","source_name":"The Hacker News","summary":"Oasis Security has disclosed a weakness in NVIDIA NemoClaw that could let an attacker-controlled webpage take unauthenticated control of the local Ollama instance serving an AI agent and plant hidden instructions inside the model itself. The findings were shared with The Hacker News ahead of publication, and the report says Oasis Security reported them to NVIDIA's Product Security Incident","title":"A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw","url":"https://thehackernews.com/2026/08/a-malicious-webpage-could-poison-your.html"},{"category":"Identity & Access","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.323699+00:00","id":50,"published_date":"2026-08-25T13:19:41+00:00","severity":"medium","source_name":"The Hacker News","summary":"Meta on Tuesday announced a set of WhatsApp account security features, including support for multiple passkeys to a single account to help users with both iOS and Android devices sign into their accounts using the phishing-resistant method. The tech giant said more than 1 billion people use a passkey to log into WhatsApp. Support for passkeys was first introduced in Android in October 2023,","title":"WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android","url":"https://thehackernews.com/2026/08/whatsapp-adds-multiple-passkeys-for.html"},{"category":"Identity & Access","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.548753+00:00","id":414,"published_date":"2026-08-25T13:00:00+00:00","severity":"medium","source_name":"Huntress","summary":"MFA is just the starting line. Learn what mature identity hardening actually looks like, from closing MFA exceptions to catching drift before attackers do.","title":"What Good Identity Hardening Looks Like","url":"https://www.huntress.com/blog/good-identity-hardening"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.930034+00:00","id":1057,"published_date":"2026-08-25T13:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"RecruitTrap campaigns use mobile-optimized phishing pages to target enterprise credentials","title":"Fake Recruiter Scams Target Corporate Credentials on Mobile","url":"https://www.infosecurity-magazine.com/news/fake-recruiter-scams-corporate"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.047202+00:00","id":628,"published_date":"2026-08-25T12:53:05+00:00","severity":"medium","source_name":"Ransomware.live","summary":"WINTER Ingenieure specializes in planning and monitoring the construction of technical building equipment across Germany, focusing on functionality, sustainability, and cost-effectiveness. W ith a team of over 140 employees located in D\u00fcsseldorf, Berlin, and Hamburg, they integrate tec hnical components into buildings innovatively. We will upload 340gb of corporate data soon. Employee personal information (German passports, I Ds, addresses, phones contacts), confidential files, projects, lots of specifications and so on .","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : WINTER Ingenieure","url":"https://www.ransomware.live/id/V0lOVEVSIEluZ2VuaWV1cmVAYWtpcmE="},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.326713+00:00","id":51,"published_date":"2026-08-25T12:43:51+00:00","severity":"medium","source_name":"The Hacker News","summary":"Marimo has addressed a high-severity security flaw in its notebook software that allowed an attacker to execute an attacker-supplied Model Context Protocol (MCP) command in a specially crafted notebook, according to VulnCheck's CVE Numbering Authority (CNA) record. The CNA record says the command can run as a local subprocess when the notebook is opened in edit mode. The vulnerability, tracked","title":"Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode","url":"https://thehackernews.com/2026/08/marimo-notebook-flaw-could-run-mcp.html"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.048221+00:00","id":629,"published_date":"2026-08-25T12:28:44+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : STRUCTURED SETTLEMENT CAPITAL LLC","url":"https://www.ransomware.live/id/U1RSVUNUVVJFRCBTRVRUTEVNRU5UIENBUElUQUwgTExDQHFpbGlu"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.051272+00:00","id":630,"published_date":"2026-08-25T12:22:44+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Davis & Ferber LLP is a personal injury and malpractice law firm based in New York, specializin g in various legal areas including medical malpractice, motor vehicle accidents, nursing home a buse, and family law. We will upload 60gb of corporate data soon. Detailed personal client information (passports, DL s, addresses, SSNs, death/birth certs, phones and so on for almost a thousand people), confiden tial files, court files, hearings, police reports, NDAs, etc.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : Davis & Ferber","url":"https://www.ransomware.live/id/RGF2aXMgJiBGZXJiZXJAYWtpcmE="},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.650730+00:00","id":796,"published_date":"2026-08-25T12:00:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"We recreated the viral AI gym hack in a controlled environment. Running Opus 4.6 on OpenClaw, the model exploited the booking flaw in nine of ten runs. Category: Research","title":"Could OpenClaw have actually hacked that Australian gym? We decided to test it.","url":"https://www.aikido.dev/blog/australian-gym-hack-openclaw-test"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.052143+00:00","id":631,"published_date":"2026-08-25T11:57:31+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : AGROLAND S.A.","url":"https://www.ransomware.live/id/QUdST0xBTkQgUy5BLkBxaWxpbg=="},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.328110+00:00","id":52,"published_date":"2026-08-25T11:56:15+00:00","severity":"medium","source_name":"The Hacker News","summary":"Thousands of companies have been affected by the Mirage2FA campaign from 2024 to 2026. The commercial phishing-as-a-service toolkit targets Microsoft 365 accounts by abusing legitimate login flows and bypassing two-factor authentication. According to ANY.RUN research, 48% of targeted email addresses were potentially compromised. Most of the affected companies are US-based. Mirage2FA Campaign","title":"Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows","url":"https://thehackernews.com/2026/08/mirage2fa-surge-hits-4500-us-and-eu.html"},{"category":"Malware/Infostealer","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.333967+00:00","id":53,"published_date":"2026-08-25T11:52:43+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers have disclosed details of a new campaign that uses a cluster of 24 npm packages as free phishing infrastructure for redirecting to ClickFix-style fake CAPTCHA pages. \"While the malware is simply a single HTML page inside the npm package, and while downloading it wouldn't do harm, the threat actor\u2019s use of npm isn't to infect developers who install it, but to use the","title":"24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages","url":"https://thehackernews.com/2026/08/24-npm-packages-abuse-unpkg-mirrors-to.html"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.707283+00:00","id":252,"published_date":"2026-08-25T11:34:18+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"Researchers found that prompt injection attacks can hide malicious instructions in encrypted text to get them past AI guardrails.","title":"Grok fooled into stealing user chat, location data, and more","url":"https://www.malwarebytes.com/blog/ai/2026/08/encrypted-instructions-can-fool-ai-assistants-like-grok-and-gemini"},{"category":"Malware/Infostealer","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.339235+00:00","id":54,"published_date":"2026-08-25T11:33:44+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers are calling attention to a new campaign that employs FTP banners as dead drop resolvers (DDRs) to deliver two previously unreported remote access trojans (RATs) tracked as E4del and PINHOLE. While threat actors are known to abuse legitimate services to point to additional command-and-control (C2) infrastructure and blend in with regular network traffic, the development","title":"E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands","url":"https://thehackernews.com/2026/08/e4del-and-pinhole-rats-turn-ftp-banners.html"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.342372+00:00","id":55,"published_date":"2026-08-25T11:14:07+00:00","severity":"medium","source_name":"The Hacker News","summary":"Vulnerability management has been a staple of security programs since the dawn of the cybersecurity discipline. The symbiotic relationship between vulnerability and patch management teams has also existed for that time and has gone through waves of contention and thankfulness. While this relationship required thoughtful care and feeding from both sides, both sides were aiming to work toward a","title":"Frontier AI: Vulnerability Management's Systemic Revolution","url":"https://thehackernews.com/2026/08/frontier-ai-vulnerability-managements.html"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"Top-tier security research firm. Formal verification, crypto, smart contract, and systems security. Primary research. No filter_uncategorized \u2014 100% security content.","created_at":"2026-08-29T23:17:03.133707+00:00","id":479,"published_date":"2026-08-25T11:00:00+00:00","severity":"medium","source_name":"Trail of Bits","summary":"We found and reported a bug in Provenance Blockchain, a public proof-of-stake chain built on Cosmos SDK, that lets any user grant themselves admin control over marker accounts without holding a single token. Provenance covers a range of financial services, including on-chain tokenized loans, private equity tokens, bridged assets, and asset registries. Our bug affected 82 markers representing live financial assets on mainnet. We found the bug, which affects versions before 1.28.0, in March 2026, and reported it to Provenance on April 1. It was mitigated in PR #2627 (commit c81fd65), which shipped in v1.28.0 on May 1, 2026, and fixed in PR #2734, which shipped in v1.29.0 on June 8, 2026. What is a marker? The marker module is Provenance\u2019s core primitive for fungible tokens. Chain participants can issue a new asset on Provenance by submitting a MsgAddMarkerRequest transaction; the chain creates a dedicated account for that asset, called a marker. Each marker is a special account type that controls: A denomination (e.g., uusd.trading, cusd.deposit, cguaranteedrateomni) An access control list governing who can mint, burn, withdraw, deposit, or administer the token A supply field recording the canonical token count An escrow balance (the marker account can hold any asset, not just its own denomination) Markers are either supply_fixed (the supply field is enforced as a hard cap) or non-fixed (the bank module is the source of truth; the supply field is informational). This distinction is central to the bug. The bug: An access check anyone can pass AddAccess is the Cosmos SDK message handler that processes requests to modify a marker\u2019s access control list. It checks whether the caller is authorized using three conditions, any one of which is sufficient: The caller is the marker\u2019s designated manager and the marker is in Finalized state. The caller already holds ACCESS_ADMIN on the marker. The caller controls 100% of the marker\u2019s circulating supply. case types.StatusFinalized, types.StatusActive: if !(caller.Equals(m.GetManager()) && m.GetStatus() == types.StatusFinalized) && !m.AddressHasAccess(caller, types.Access_Admin) && !k.accountControlsAllSupply(ctx, caller, m) { return fmt.Errorf(\"%s is not authorized to make access list changes against finalized/active %s marker\", caller, m.GetDenom()) } Figure 1: Authorization check in keeper.AddAccess (x/marker/keeper/marker.go#L94\u2013L100) Condition 3 is implemented by accountControlsAllSupply: func (k Keeper) accountControlsAllSupply( ctx sdk.Context, caller sdk.AccAddress, m types.MarkerAccountI, ) bool { balance := k.bankKeeper.GetBalance(ctx, caller, m.GetDenom()) supply := m.GetSupply() // \u2190 bug return supply.Equal(sdk.NewCoin(m.GetDenom(), balance.Amount)) } Figure 2: The vulnerable accountControlsAllSupply function (x/marker/keeper/marker.go#L866\u2013L875) The m.GetSupply function reads the supply field stored directly on the marker struct. For non-fixed supply markers that were activated with zero supply, that field always stays zero. The live circulating count lives in the bank module, and non-fixed markers never write back to the marker struct after minting. So for any non-fixed supply marker, the authorization check reduces to the following: supply = Coin{denom, 0} // stored marker field, always 0 balance = Coin{denom, 0} // attacker holds no tokens 0 == 0 \u2192 true Figure 3: Authorization check result for a non-fixed supply marker when the caller holds no tokens The check intended to restrict access to 100%-of-supply holders becomes unconditionally true for any caller with zero balance. Exploitation: Two transactions to mint or drain An attacker sends a single MsgAddAccessRequest transaction: { \"denom\": \"uusd.trading\", \"administrator\": \"\", \"access\": [ { \"address\": \"\", \"permissions\": [\"ACCESS_ADMIN\", \"ACCESS_MINT\", \"ACCESS_WITHDRAW\"] } ] } Figure 4: MsgAddAccessRequest granting the attacker admin, mint, and withdraw permissions on a target marker No existing tokens are needed for exploitation. The authorization check passes immediately via the broken condition 3. From there, the attacker has two paths: MsgMintRequest: to mint new tokens of the marker\u2019s denom and send them to any address MsgWithdrawRequest: to drain any assets held in the marker\u2019s escrow balance The whole attack is two transactions: one to gain permissions, and one more to act on them. Impact: What was at risk At the time of discovery, 82 active markers on Provenance mainnet had a stored supply of 0 while carrying real circulating supply or escrowed assets, every one of them exploitable. These markers span multiple independent parties on the chain, not a single application. Escrow withdrawal was the most direct path. Among the affected markers, those holding nhash (Provenance\u2019s base token) in escrow accounted for roughly 30 \u00d7 1015 nhash, or around $500,000 at HASH prices at the time of discovery. The three largest markers are shown below: Marker Owner Escrowed nhash grant0051 Provenance Foundation grant program 19,230,770,000,000,000 provenance.validator.incentive.program Chain validator incentive fund 8,561,225,000,000,000 grant0077 Provenance Foundation grant program 2,486,556,736,909,250 The three markers shown above are all chain governance programs operated by the Provenance Foundation: one holds validator rewards, and two hold community grant funds. Supply inflation was a broader but more constrained vector. The 74 vulnerable markers spanned bridged stablecoins and wrapped assets (uusd.trading, uusdc.figure.se, nbtc.figure.se), consortium deposits (cusd.deposit), tokenized mortgage participations (cguaranteedrateomni, chomebridgeomni), and yield tokens (nuva.ylds, uylds.fcc). An attacker with ACCESS_MINT on any of these could issue arbitrary new tokens of that denom. The practical harm depended on the token type. For restricted tokens with KYC requirements, it was primarily a solvency and integrity threat; for non-restricted coin-type markers, it was a more direct inflation risk. We confirmed the affected markers and their balances by querying mainnet via the Provenance CLI and the public REST API. The fix: Read live supply, and guard against zero PR #2627 shipped the mitigation, which adds a check against zero supply: if supply.Amount.IsNil() || supply.Amount.IsZero() { return false } Figure 5: The fix (x/marker/keeper/marker.go in PR #2627) This blocked the attack we reported. All 82 affected markers had a stored supply of 0, and a zero-supply marker now fails the check outright. It did not fix the divergence. The comparison still read the stale field, so it still passed whenever that field was non-zero and the caller\u2019s balance happened to match it. PR #2734 shipped the full fix, which changes one line: // Before: reads stale stored field, always 0 for non-fixed markers supply := m.GetSupply() // After: reads live circulating supply from the bank module supply := k.bankKeeper.GetSupply(ctx, m.GetDenom()) Figure 6: The one-line fix (x/marker/keeper/marker.go in PR #2734) Both sides of the comparison now come from the bank module, so there is no stale field left to diverge. Authorization must fail from the default state The root cause of this issue was state desynchronization. The marker struct and the bank module both represent the token supply, but only the bank module is kept current for non-fixed markers. The authorization check read from the wrong one. The check wasn\u2019t just wrong; it was bypassable by default because of the zero-equality shortcut. Because the stale field was always 0, the comparison 0 == 0 was always true. An access control check that compares against a value that is always the same as the attacker\u2019s default state is trivially bypassable. Switching to the live bank supply alone doesn\u2019t fully close the hole. A freshly deployed marker with no tokens minted yet also has live supply of zero, so an attacker could self-grant admin by targeting it before it\u2019s funded. The fix handles this with an explicit zero-guard: accountControlsAllSupply returns false whenever live supply is zero, regardless of balance. The broader pattern: an authorization predicate must never be satisfiable from the attacker\u2019s default state. A check of the form balance == supply hands access to everyone when supply can be zero, whether because the state is stale or the marker is simply unfunded. Two things would have caught this before it went live. First, the access-list authorization model was never specified. Writing the rule down forces both questions that point straight at the bug: which supply, and what happens when it\u2019s zero? Second, the property is easy to state: accountControlsAllSupply should only return true when live supply is positive and the caller holds all of it. A property-based test or fuzzer that generates random sequences of marker operations, such as minting, transferring, and creating empty markers, and checks this property after each step would find both failure modes automatically.","title":"State divergence enables unauthorized access","url":"https://blog.trailofbits.com/2026/08/25/state-divergence-enables-unauthorized-access"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.932470+00:00","id":1058,"published_date":"2026-08-25T11:00:00+00:00","severity":"critical","source_name":"Infosecurity Magazine","summary":"Australian officials are urging TeamCity customers to patch an actively exploited critical flaw, which follows a similar warning from the US government","title":"Australia Warns of Active Exploitation of Critical TeamCity Server Flaw","url":"https://www.infosecurity-magazine.com/news/australia-exploitation-teamcity"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"User-submitted link aggregator, no editorial review. Signal varies wildly by submitter.","created_at":"2026-08-29T23:17:14.507402+00:00","id":664,"published_date":"2026-08-25T10:41:27+00:00","severity":"high","source_name":"Reddit r/netsec","summary":"submitted by /u/dr-w0bbinat0rz [link] [comments]","title":"Local Privilege Escalation To System In Wibu-Systems CodeMeter Application","url":"https://www.reddit.com/r/netsec/comments/1vxw6ym/local_privilege_escalation_to_system_in"},{"category":"Uncategorized","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research team with consistent primary analysis.","created_at":"2026-08-29T23:16:51.544207+00:00","id":176,"published_date":"2026-08-25T10:00:57+00:00","severity":"medium","source_name":"Unit42 Palo Alto","summary":"Explore Unit 42 research on AI-enabled malware. Learn how existing behavioral detection and endpoint analytics stop AI-authored code before execution. The post The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution appeared first on Unit 42.","title":"The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution","url":"https://unit42.paloaltonetworks.com/ai-enabled-malware-analysis"},{"category":"AI Security","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research with strong malware analysis track record.","created_at":"2026-08-29T23:16:52.224785+00:00","id":197,"published_date":"2026-08-25T10:00:22+00:00","severity":"medium","source_name":"Cisco Talos","summary":"As frontier AI models become increasingly restrictive, security teams are facing a \"safety penalty\" that hampers real-time incident response. Discover how organizations can move toward operational sovereignty to ensure their defensive AI keeps pace with unconstrained adversaries.","title":"The safety penalty: Reclaiming operational sovereignty in the age of AI","url":"https://blog.talosintelligence.com/the-safety-penalty-reclaiming-operational-sovereignty-in-the-age-of-ai"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.056307+00:00","id":632,"published_date":"2026-08-25T09:51:49+00:00","severity":"medium","source_name":"Ransomware.live","summary":"About Pump Engineering Company Pump Engineering Company is a full-service distributor and supplier of industrial pumps, parts, and fluid handling systems, serving Southern California since 1946. During the cyberattack, 120,000 files (115 GB) were stolen, including an extensive customer database, insurance documents, confidential financial documents, and a vast number of project drawings.","title":"\ud83c\udff4\u200d\u2620\ufe0f Dark project has just published a new victim : Pump Engineering Company","url":"https://www.ransomware.live/id/UHVtcCBFbmdpbmVlcmluZyBDb21wYW55QERhcmsgUHJvamVjdA=="},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.939382+00:00","id":1059,"published_date":"2026-08-25T09:30:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"ReliaQuest has detailed a social engineering attack linked to ShinyHunters, denying reports that the threat actor successfully compromised its systems","title":"ReliaQuest Rejects Compromise Claims After ShinyHunters Incident","url":"https://www.infosecurity-magazine.com/news/reliaquest-not-compromised-by"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.326385+00:00","id":712,"published_date":"2026-08-25T09:15:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Sponsored search results lead developers straight into a ClickFix malware trap","title":"Crooks push Mac malware through fake OpenAI Codex ads","url":"https://www.theregister.com/security/2026/08/25/crooks-push-mac-malware-through-fake-openai-codex-ads/5291899"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.941783+00:00","id":1060,"published_date":"2026-08-25T09:10:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"The US has sanctioned individuals connected to hacking-for-hire group the Mabna Institute","title":"US Sanctions Mabna Institute Hackers for Iranian Cyber-Attacks","url":"https://www.infosecurity-magazine.com/news/us-sanctions-mabna-institute"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.345812+00:00","id":56,"published_date":"2026-08-25T08:34:07+00:00","severity":"critical","source_name":"The Hacker News","summary":"Bad actors are attempting to exploit two severe unauthenticated authentication bypasses in the Xecurify miniOrange SAML 2.0 Single Sign On plugin that make it possible for an attacker to sign in as any WordPress user, including administrators. The vulnerabilities, as disclosed by Patchstack, are listed below - CVE-2026-61979 (CVSS score: 8.1) - An unauthenticated privilege escalation","title":"Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access","url":"https://thehackernews.com/2026/08/attackers-target-miniorange-saml-flaws.html"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.716005+00:00","id":253,"published_date":"2026-08-25T08:00:00+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"Scammers use fake TikTok login pages, warnings, and verification offers to trick you into handing over your account details.","title":"TikTok phishing: How to spot fake login and verification pages","url":"https://www.malwarebytes.com/blog/threat-intel/2026/08/tiktok-phishing-how-to-spot-fake-login-and-verification-pages"},{"category":"OT/ICS","confidence":"HIGH","confidence_reason":"Dedicated ICS/SCADA vulnerability and threat research. Adds OT/ICS depth beyond the single Siemens vendor CERT. Long archive but only ~10 entries fall inside the 90-day age guard (~0.3/day).","created_at":"2026-08-29T23:17:21.397475+00:00","id":853,"published_date":"2026-08-25T07:00:00+00:00","severity":"medium","source_name":"Kaspersky ICS-CERT","summary":"The percentage of ICS computers on which denylisted internet resources were blocked increased in all regions","title":"Threat landscape for industrial automation systems. Q2 2026","url":"https://ics-cert.kaspersky.com/publications/reports/2026/08/25/threat-landscape-for-industrial-automation-systems-q2-2026"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.349755+00:00","id":57,"published_date":"2026-08-25T06:12:35+00:00","severity":"critical","source_name":"The Hacker News","summary":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a maximum-severity security flaw impacting Oracle HTTP Server and Oracle WebLogic Server to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-2026-21962 (CVSS score: 10.0), allows an unauthenticated attacker with network access via HTTP to","title":"Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data","url":"https://thehackernews.com/2026/08/actively-exploited-oracle-weblogic-flaw.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Threat Research Unit analysis of actively exploited vulnerabilities. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:25.077454+00:00","id":1024,"published_date":"2026-08-25T00:48:03+00:00","severity":"high","source_name":"Qualys","summary":"Executive Summary ShieldBreak (CVE-2026-69414) is a zero-day elevation-of-privilege vulnerability in the Microsoft Malware Protection Engine used by Microsoft Defender, allowing a low-privilege local attacker to escalate to SYSTEM. A public PoC was released on August 12, 2026, and Microsoft assigned the CVE on August 14, and no patch is available yet. Qualys VMDR provides detection [\u2026]","title":"CVE-2026-69414 ShieldBreak Zero-Day: No Patch, and CISA BOD 26-04 Gives You 14 Days","url":"https://blog.qualys.com/category/product-tech/vulnmgmt-detection-response"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Threat intelligence firm research. Caveat: commercial framing; quality of output is high.","created_at":"2026-08-29T23:16:54.005657+00:00","id":259,"published_date":"2026-08-25T00:00:00+00:00","severity":"medium","source_name":"Recorded Future","summary":"Explore Mexico\u2019s 2025\u20132030 Cybersecurity Plan. Learn about key threats, including ransomware, and the roadmap for building durable national cyber defenses.","title":"Mexico\u2019s Cybersecurity Plan 2025-2030: Turning Ambition Into Defense","url":"https://www.recordedfuture.com/blog/mexico-cybersecurity-plan"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.073325+00:00","id":633,"published_date":"2026-08-24T22:27:31+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Consultores de Seguros","url":"https://www.ransomware.live/id/Q29uc3VsdG9yZXMgZGUgU2VndXJvc0BxaWxpbg=="},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.878265+00:00","id":93,"published_date":"2026-08-24T21:46:55+00:00","severity":"critical","source_name":"Dark Reading","summary":"CISA issued a three-day deadline for agencies to patch a Zimbra security vulnerability, CVE-2026-73570, which allows full takeover of a user's communications.","title":"Exploited Zimbra Flaw Highlights Shrinking Window to Patch","url":"https://www.darkreading.com/vulnerabilities-threats/zimbra-flaw-exploitation-shrinking-window-patch"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.328955+00:00","id":713,"published_date":"2026-08-24T21:39:39+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Its own command language, 23 instructions - signs point to 'well-resourced operation rather than an opportunistic one'","title":"You don't want this Sleepwalker backdoor on your Windows machine","url":"https://www.theregister.com/security/2026/08/24/you-dont-want-this-sleepwalker-backdoor-on-your-windows-machine/5292021"},{"category":"OT/ICS","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.075331+00:00","id":634,"published_date":"2026-08-24T21:21:27+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Family law firm, established 1995 by Victor A. Shaheen (\u20202025 - the General Assembly of Virginia honored him with a resolution; google it, it is touching). Now run by his three sons. 48 employees across four offices: Richmond, Midlothian, Virginia Beach, Newport News. What do they do? They close 150+ real estate transactions EVERY MONTH for some of the largest corporate relocation programs in America. When a Fortune-500 moves an employee to Virginia, this firm holds that employee's Social Security Number, bank wiring details, home address, family identities, and sometimes their medical clearance. They hold everyone's future in a shared folder. We now hold the folder. WHAT WE TOOK 36,788 files \u00b7 27GB \u00b7 21,789 fully read 67,000+ SSN patterns (their own dedup says 6,017 real people \u2014 we will let their customers decide which number to believe) EVIDENCE \u2014 SERIES PREVIEW (from their actual files) - S1 DEEDS WITH SOCIAL SECURITY NUMBERS File: \"5053815 - Unsigned Deed.docx\" (verbatim from their server): \"***-**-XXXX B\u2022\u2022\u2022\u2022 H\u2022\u2022\u2022 Social Security Number ***-**-XXXX J\u2022\u2022\u2022\u2022\u2022 H\u2022\u2022\u2022 Social Security Number 10356 Ashburn Road, North Chesterfield, VA 23235\" File: \"Kelley 5042085 - DEED.docx\": \"PURCHASER(S): N\u2022\u2022\u2022\u2022\u2022 S\u2022\u2022\u2022 SELLER'S NAME: S\u2022\u2022\u2022 E. K\u2022\u2022\u2022\u2022 SS#: ***-**-XXXX ...including the withholding of twenty percent (20%) of the sales proceeds.\" \u2190 FIRPTA: foreign sellers. IRS will want this list. We have it. Thousands of these. Every deed folder = a name, a number, an address, a transaction. Their client roster IS the leak. - S3 INSIDE THEIR BANKING & THEIR NETWORK File: \"shared_Accounting/Banking/Other Banking/Shaheen DDA Statements SunTrust DDA\" (email from SunTrustOnlineCourier to their own staff \u2014 headers verbatim): Received: from barracuda.shaheenlaw.com ([10.0.0.6]) by ricdcex1.shaheenlaw.com ... X-ASG-Debug-ID: 1291233029-... for ; Wed, 1 Dec 2010 Why we publish an email HEADER: their internal map is in it. Barracuda at 10.0.0.6. Exchange \"ricdcex1\". Domain SHAHEENWORLD. We did not forget how to enter. Neither will the next group, when we sell the map. 150 banking statement attachments ride along in this folder. - S5 THE CLIENT LIST, WRITTEN IN FOLDERNAMES They named folders after their customers. Verbatim paths: shared_PENDING_SALE/HENNY/Closed Files/ Wisniewski-Markel, Suzanne_5027384_12263 Eagle ... Merza, Jamal & Adrienne_5027826_811 Woodberry ... Name, file number, STREET ADDRESS \u2014 in the path itself. Marketing lists sell for money. This one is annotated with purchase history. Relocation buyers are premium leads. - S2 MEDICAL - S4 LITIGATION Held. 120 medical files exist (their own audit counted them). Litigation: we confirm their December escrow dispute is public (Porchlight Homes v. Almeida & Shaheen, Henrico \u2014 google it, BizSense covered it). Virginia residents: \u00a718.2-186.6. Illinois relocations: BIPA. Opposing counsel and journalists: samples on request. Media & researchers: samples on request, we answer fast We keep our word to everyone who pays. We keep it also to everyone who does not.","title":"\ud83c\udff4\u200d\u2620\ufe0f Deadlock has just published a new victim : SHAHEEN LAW GROUP PLC - Richmond, Virginia, USA","url":"https://www.ransomware.live/id/U0hBSEVFTiBMQVcgR1JPVVAgUExDIC0gUmljaG1vbmQsIFZpcmdpbmlhLCBVU0FARGVhZGxvY2s="},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"User-submitted link aggregator, no editorial review. Signal varies wildly by submitter.","created_at":"2026-08-29T23:17:14.510361+00:00","id":665,"published_date":"2026-08-24T21:00:38+00:00","severity":"medium","source_name":"Reddit r/netsec","summary":"submitted by /u/Ok-Bed5648 [link] [comments]","title":"The Citizen Lab Bad Connection: Uncovering Global Telecom Exploitation by Covert Surveillance Actors","url":"https://www.reddit.com/r/netsec/comments/1vxfd50/the_citizen_lab_bad_connection_uncovering_global"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.883276+00:00","id":94,"published_date":"2026-08-24T20:51:27+00:00","severity":"medium","source_name":"Dark Reading","summary":"ClickFix-style threat campaigns are using a new trick to evade detection and deliver Amatera, an increasingly prevalent infostealer.","title":"Foul Language: WordlistLoader Disguises Malware as Ordinary Text","url":"https://www.darkreading.com/data-privacy/wordlistloader-disguises-malware-ordinary-text"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.094487+00:00","id":635,"published_date":"2026-08-24T18:21:30+00:00","severity":"medium","source_name":"Ransomware.live","summary":"About The Liberty Group Companys offerings include local, long distance, and international moving, lab relocation services, and logistics solutions. They cater to a diverse range of clients, providing professional and comprehensive assistance to both residential and commercial customers. Investigators are working to identify the perpetrators and assess the full scope of the damage. A company has suffered a major cyberattack resulting in the theft of approximately 27,000 internal files. The leaked documents include financial records, internal working materials, and personal data of employees. Attackers encrypted the company's systems following the breach, severely disrupting operations","title":"\ud83c\udff4\u200d\u2620\ufe0f Dark project has just published a new victim : The Liberty Group","url":"https://www.ransomware.live/id/VGhlIExpYmVydHkgR3JvdXBARGFyayBQcm9qZWN0"},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.121132+00:00","id":636,"published_date":"2026-08-24T18:20:51+00:00","severity":"medium","source_name":"Ransomware.live","summary":"About Jones, Little & Co., CPAs, LLP Jones, Little & Co., CPAs, LLP is a professional accounting firm that offers a wide range of services including business accounting, tax preparation, and IRS problem resolution. They cater to small businesses, non-profit organizations, and specialized industries such as auto dealers and retailers. At least 100 gigabytes of company data\u2014including financial records, internal files, and employee personal information\u2014were stolen in a cyberattack. Hackers encrypted the firm's systems after exfiltrating the documents, leaving operations paralyzed.","title":"\ud83c\udff4\u200d\u2620\ufe0f Dark project has just published a new victim : Jones, Little & Co., CPAs, LLP","url":"https://www.ransomware.live/id/Sm9uZXMsIExpdHRsZSAmIENvLiwgQ1BBcywgTExQQERhcmsgUHJvamVjdA=="},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.269958+00:00","id":637,"published_date":"2026-08-24T17:51:49+00:00","severity":"medium","source_name":"Ransomware.live","summary":"About Design-Aire Engineering, INC Design-Aire Engineering specializes in mechanical, electrical, plumbing, and energy engineering services. They focus on providing innovative and sustainable solutions for their clients. The company serves a diverse range of clients, including those in the public and private sectors. With a commitment to green engineering practices, they aim to enhance energy efficiency and environmental sustainability. Design-Aire Engineering, INC has suffered a cyberattack on its service systems, resulting in the theft of approximately 377GB of sensitive data. The breached information includes employees' personal data and detailed architectural plans of clients' buildings.","title":"\ud83c\udff4\u200d\u2620\ufe0f Dark project has just published a new victim : Design-Aire Engineering, INC","url":"https://www.ransomware.live/id/RGVzaWduLUFpcmUgRW5naW5lZXJpbmcsIElOQ0BEYXJrIFByb2plY3Q="},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.279902+00:00","id":638,"published_date":"2026-08-24T17:51:12+00:00","severity":"medium","source_name":"Ransomware.live","summary":"About Furnished Quarters Headquartered in New York City, New York, Furnished Quarters, is to deliver exceptional residential experiences with passion, reliability and integrity always innovating and putting people first. They consider this in everything they do and every guest and client experience they deliver. The company \"Furnished Quarters\" was the victim of a successful cyberattack, as a result of which the company\u2019s confidential data was stolen. The volume of data stolen amounts to 155 GB. The data stolen included the company\u2019s customer details, as well as documents containing banking and financial information. Currently, around 198,000 files are no longer under the control of \"Furnished Quarters\".","title":"\ud83c\udff4\u200d\u2620\ufe0f Dark project has just published a new victim : Furnished Quarters","url":"https://www.ransomware.live/id/RnVybmlzaGVkIFF1YXJ0ZXJzQERhcmsgUHJvamVjdA=="},{"category":"Vulnerability/CVE","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.353450+00:00","id":58,"published_date":"2026-08-24T17:41:30+00:00","severity":"medium","source_name":"The Hacker News","summary":"If your developers are using AI coding tools, you are probably already seeing the upside: faster development, more code, and less time spent on routine work. The harder part is what comes after. AI can also introduce open-source packages at a pace your security team was never built to handle. More dependencies mean more vulnerabilities to review, more remediation work, and a backlog that can","title":"Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt","url":"https://thehackernews.com/2026/08/shipping-more-ai-code-than-you-can.html"},{"category":"Malware/Infostealer","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.358554+00:00","id":59,"published_date":"2026-08-24T17:41:11+00:00","severity":"medium","source_name":"The Hacker News","summary":"Cybersecurity researchers have found that several websites are still actively distributing a malware family known as Weedhack to gamers by masquerading as Minecraft clients. McAfee Labs said it detected and blocked more than 6,300 attempts to access malicious sites, adding that it found lookalike gaming websites designed to mimic legitimate projects, including branding, feature lists, FAQs,","title":"Weedhack Malware Spreads via Fake Minecraft Clients and SEO Poisoning","url":"https://thehackernews.com/2026/08/weedhack-malware-spreads-via-fake.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Cloud security posture and vulnerability research. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:24.017125+00:00","id":1007,"published_date":"2026-08-24T17:24:26+00:00","severity":"medium","source_name":"Orca Security","summary":"Key Takeaways Sensitive data discovery finds where regulated, confidential, and personal data sits across an estate, then records each location so a security team can act on it. It runs against object storage, managed databases, snapshots, backups, and analytics warehouses. The practice exists because a hand-drawn map of where data lives falls out of date [\u2026]","title":"Sensitive Data Discovery: Tools, Best Practices & How It Works","url":"https://orca.security/resources/blog/sensitive-data-discovery"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Cloud security posture and vulnerability research. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:24.020065+00:00","id":1008,"published_date":"2026-08-24T17:00:31+00:00","severity":"medium","source_name":"Orca Security","summary":"Key Takeaways AI data classification uses machine learning to decide what a data store holds and to attach a label such as personal data, health information, or credentials. The output is a probability that the content matches a type, not a yes or no match. A regular expression fires or it does not. A classifier [\u2026]","title":"AI Data Classification: Methods, Tools & Best Practices","url":"https://orca.security/resources/cloud-security-learning/ai-data-classification"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.334356+00:00","id":714,"published_date":"2026-08-24T16:59:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"No risk to wider energy system, government tells The Reg","title":"Iran-linked cyberattack shut down a UK power plant","url":"https://www.theregister.com/security/2026/08/24/iran-linked-cyberattack-shut-down-a-uk-power-plant/5291930"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.718509+00:00","id":254,"published_date":"2026-08-24T16:51:55+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"Bogus \u201cPlay Now\u201d sites are exploiting the GTA 6 leak hype to spread malware that steals passwords stored in browsers.","title":"Fake GTA 6 Extended Look and demo sites deliver an infostealer","url":"https://www.malwarebytes.com/blog/threat-intel/2026/08/fake-gta-6-extended-look-and-demo-sites-deliver-an-infostealer"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.290066+00:00","id":639,"published_date":"2026-08-24T16:25:11+00:00","severity":"medium","source_name":"Ransomware.live","summary":"(release includes data for the entire group of companies across all countries of operation, financial documentation, shareholder information, personal data of employees and clients, and much more) FRATO is recognized for its commitment to quality and style, merging traditional craftsmanship with innovative design. Drawing inspiration from diverse cultures and breathtaking locations worldwide, the brand creates a unique international aesthetic. It offers an exceptional interior lifestyle concept through its flagship stores located across America, Europe, and the Middle East. FRATO's intended clients are those seeking sophistication and inspiration for their living spaces.","title":"\ud83c\udff4\u200d\u2620\ufe0f Dragonforce has just published a new victim : Frato","url":"https://www.ransomware.live/id/RnJhdG9AZHJhZ29uZm9yY2U="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.308251+00:00","id":640,"published_date":"2026-08-24T16:24:19+00:00","severity":"medium","source_name":"Ransomware.live","summary":"(release includes data on Argentina, Uruguay, and other countries, as well as financial documents and client documentation, including a vast amount of information not intended for public disclosure) CRIBA Empresa Constructora Argentina specializes in providing comprehensive solutions for every stage of construction projects, leveraging over 70 years of experience. The company focuses on quality, efficiency, and safety, ensuring that they can execute even the most ambitious architectural designs. Their portfolio includes a variety of projects such as commercial offices, healthcare facilities, and residential buildings. CRIBA is committed to maintaining a zero-accident policy, prioritizing the safety of their workforce.","title":"\ud83c\udff4\u200d\u2620\ufe0f Dragonforce has just published a new victim : Criba","url":"https://www.ransomware.live/id/Q3JpYmFAZHJhZ29uZm9yY2U="},{"category":"SaaS Breach","confidence":"HIGH","confidence_reason":"Emergent threat response team. Primary exploit analysis on actively exploited vulns, peer-quality with ZDI.","created_at":"2026-08-29T23:16:54.895761+00:00","id":285,"published_date":"2026-08-24T16:18:05+00:00","severity":"critical","source_name":"Rapid7","summary":"","title":"Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)","url":"https://www.rapid7.com/blog/post/ra-microsoft-sharepoint-remote-code-execution-cve-2026-63520"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.946180+00:00","id":1061,"published_date":"2026-08-24T16:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"TCG has released new guidance to help proving that trusted platform modules genuinely meet essential quantum-safe requirements","title":"New Guidance Helps Businesses Verify Quantum-Safe Hardware Claims","url":"https://www.infosecurity-magazine.com/news/guidance-verify-quantum-safe"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.531957+00:00","id":641,"published_date":"2026-08-24T15:25:38+00:00","severity":"medium","source_name":"Ransomware.live","summary":"(data of many thousands of customers, including credit reports, SSNs, addresses, etc.) Brookview Financial is a boutique private lender specializing in quick-close financing solutions for real estate projects. Established in 1992, the company has served as a trusted capital partner for thousands of real estate investors across the nation. They offer a range of loan programs, including commercial bridge loans, fix & flip loans, and special situation financing, with amounts ranging from $75,000 to over $50 million. Known for their personal service and flexible terms, Brookview can close deals in as little as 7 days.","title":"\ud83c\udff4\u200d\u2620\ufe0f Dragonforce has just published a new victim : Brookview Financial","url":"https://www.ransomware.live/id/QnJvb2t2aWV3IEZpbmFuY2lhbEBkcmFnb25mb3JjZQ=="},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.559985+00:00","id":642,"published_date":"2026-08-24T15:24:41+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Wozair specializes in the design, manufacture, and installation of heavy-duty heating, ventilating, and air conditioning (HVAC) products for various sectors including Marine, Naval, Military, Nuclear, Oil and Gas, Powergen, and Renewables. Their product range includes air handling units, dampers, filtration solutions, and refrigeration systems. Wozair also offers services such as system design, project management, manufacturing, commissioning, and maintenance. The company aims to provide bespoke solutions to meet specific client requirements while ensuring a safe working environment.","title":"\ud83c\udff4\u200d\u2620\ufe0f Dragonforce has just published a new victim : Wozair","url":"https://www.ransomware.live/id/V296YWlyQGRyYWdvbmZvcmNl"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.885253+00:00","id":95,"published_date":"2026-08-24T15:02:32+00:00","severity":"medium","source_name":"Dark Reading","summary":"An advanced, multilingual malware family brings back a trick from yesteryear \u2014 screen hijacking \u2014 for effective password theft, along with a slew of novel features.","title":"Tricky 'SynkLoader' Multitool May Herald Ransomware","url":"https://www.darkreading.com/threat-intelligence/tricky-synkloader-multitool-ransomware"},{"category":"Mobile Security","confidence":"MEDIUM","confidence_reason":"Veteran independent security commentator; fast on breach and ransomware news. Single-author caveat applies, hence Tier 2. filter_uncategorized drops podcast/sponsor posts.","created_at":"2026-08-29T23:17:27.890491+00:00","id":1265,"published_date":"2026-08-24T15:00:02+00:00","severity":"medium","source_name":"Graham Cluley","summary":"Every time you add an extension or plugin to your browser, there's a risk that you might be doing more than managing your cryptocurrency wallet, generating passwords, taking notes, or tracking sports results. There's a chance that you have just handed a complete stranger access to your savings. Read more in my article on the Hot for Security blog.","title":"Malicious Firefox add-ons caught stealing cryptowallet seed phrases and browser credentials","url":"https://www.bitdefender.com/en-us/blog/hotforsecurity/malicious-firefox-add-ons-stealing-cryptowallet-seed-phrases-browser-credentials"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.953530+00:00","id":1062,"published_date":"2026-08-24T15:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Fake Codex pages used Google Sites, sponsored search and ClickFix to target Mac users","title":"Fake Codex Download Uses Google Sites to Deliver macOS Malware","url":"https://www.infosecurity-magazine.com/news/fake-codex-download-google-sites"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"CERT/CC vulnerability coordination center. Authoritative vuln notes, partially replaces dead CISA feeds.","created_at":"2026-08-29T23:16:51.098906+00:00","id":141,"published_date":"2026-08-24T14:57:41+00:00","severity":"high","source_name":"CERT Vulnerability Notes","summary":"Overview Konami's Metal Gear Online 3 video game contains a heap-based buffer overflow that can be triggered by an input\u2011validation vulnerability that allows match hosts to remotely execute arbitrary code on lobby members' machines through specially crafted data. Description Metal Gear Online 3 is an online 8 vs. 8 competitive shooter game that uses Steam Matchmaking to handle its multiplayer lobbies and matches. As detailed in CVE\u20112026\u201119874, version 1.1.2.8 of Metal Gear Online 3 (Steam AppID 287700) contains an input\u2011validation vulnerability in the processing of Steam lobby metadata related to the player\u2011removal feature. The game tracks a lobby field (kick_num) indicating the number of players designated for removal, along with corresponding Steam ID entries of each kicked player (kicked_id_%i). When joining a lobby, the player's client parses these fields to check whether its own Steam ID is on the list, and if so, the player is prevented from joining the match. The function responsible for parsing this lobby data does not validate the kick_num value against the size of the fixed\u2011length buffer allocated for kicked player identifiers. Supplying a kick_num value larger than the buffer capacity results in out\u2011of\u2011bounds writes into adjacent memory. The memory region immediately following this buffer contains internal Steamworks callback handler structures that store function pointers and callback arguments for processing lobby data changes, messages, and other related events. By manipulating the overflow, an attacker can corrupt these handler structures and redirect callback execution, resulting in control\u2011flow hijacking on affected client systems. The vulnerability can be triggered automatically when a client joins a lobby controlled by an attacker. Impact Exploitation of this vulnerability may allow remote code execution on affected clients. Initial control\u2011flow hijacking provides access only to existing in\u2011process code; however, the Metal Gear Online 3 binary includes Denuvo\u2011protected regions mapped with read\u2011write\u2011execute (RWX) permissions. These regions permit runtime injection of attacker\u2011supplied code, significantly increasing the severity of the issue. An attacker hosting a lobby can achieve code execution on any client that joins, without requiring further interaction from the victim. Additionally, because host privileges are automatically reassigned to another lobby participant when the current host exits, an attacker can obtain host control during an active match and subsequently deliver the malicious lobby data to all connected players. This enables compromise of multiple systems through a single exploitation event. Solution As of this writing, Konami has not released patch notes or an advisory that specifically addresses this vulnerability, but a fix was included in version 1.1.2.9 of the Metal Gear Online 3 executable, mgsvmgo.exe. The patch also iterated the server and lobby version numbers from 15 to 16 and 150 to 160, respectively, to prevent players on older versions from accessing the online services. This is the latest patch that fixed the vulnerability: https://steamdb.info/patchnotes/24176213/ The full patch list can be found here: https://steamdb.info/app/287700/patchnotes/ Acknowledgements Thank you to Alice Cecchetto for reporting this vulnerability. This document was written by Bob Kemerer.","title":"VU#728712: Konami's Metal Gear Online 3 contains a heap-based buffer overflow","url":"https://kb.cert.org/vuls/id/728712"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.564898+00:00","id":643,"published_date":"2026-08-24T14:52:14+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Boustead International Heaters (BIH) is a leading global designer and supplier of thermal proce ss equipment, including direct fired heaters, waste heat recovery units (WHRUs), and heat recov ery steam generators (HRSGs). We will upload 392gb of corporate data soon. Huge amount of detailed personal employee informat ion (passports, DLs, addresses, SSNs, death/birth certs, phones, contacts), confidential financ ials and agreements and contracts, client information, NDAs and so on.","title":"\ud83c\udff4\u200d\u2620\ufe0f Akira has just published a new victim : Bihl","url":"https://www.ransomware.live/id/QmlobEBha2lyYQ=="},{"category":"Consumer Awareness","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.724336+00:00","id":255,"published_date":"2026-08-24T14:50:23+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"We found fake Microsoft-branded scanners that invent security problems, tell victims to uninstall AV, and then steer them into a refund scam.","title":"Fake Microsoft security scans trick victims into uninstalling their antivirus","url":"https://www.malwarebytes.com/blog/threat-intel/2026/08/fake-microsoft-security-scans-trick-victims-into-uninstalling-their-antivirus"},{"category":"OT/ICS","confidence":"MEDIUM","confidence_reason":"Nordic incident-response firm publishing from live engagements \u2014 the highest signal-to-noise of this batch on inspection (Citrix NetScaler overflow, Iranian critical-infrastructure attacks, Shai-Hulud follow-up, all on-topic). Field IR reporting rather than lab research, which complements the vendor TI already in the roster.","created_at":"2026-08-29T23:17:28.614499+00:00","id":1285,"published_date":"2026-08-24T14:45:39+00:00","severity":"medium","source_name":"Truesec","summary":"The attacks appear to have targeted operational technology (OT) devices like programmable logic controllers (PLCs). A warning from FBI specifically mentioned Rockwell Automation and Allen-Bradley /../ The post Iranian Cyberattacks Against Critical Infrastructure appeared first on Truesec.","title":"Iranian Cyberattacks Against Critical Infrastructure","url":"https://www.truesec.com/hub/blog/iranian-cyberattacks-against-critical-infrastructure"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.887977+00:00","id":96,"published_date":"2026-08-24T14:34:59+00:00","severity":"medium","source_name":"Dark Reading","summary":"The latest version of the Android malware has new features that expand its global reach and put more than users' financial applications at risk.","title":"ToxicPanda Banking Trojan Matures Into Enterprise Threat","url":"https://www.darkreading.com/mobile-security/toxicpanda-banking-trojan-matures-enterprise-threat"},{"category":"OT/ICS","confidence":"LOW","confidence_reason":"High-volume aggregator. Re-tiered 2 -> 3 on 2026-08-29: it is SEO-heavy and rewrite-reliant, reframing other outlets rather than reporting primary, which is a Tier 3 description \u2014 the entry carried that caveat while conferring a Tier 2 MEDIUM badge on ~11.5 articles/day, the single largest confidence inflation in this file by volume. Factually reliable but derivative; readers should follow it to the original source, and LOW says that.","created_at":"2026-08-29T23:16:48.359369+00:00","id":60,"published_date":"2026-08-24T14:32:10+00:00","severity":"medium","source_name":"The Hacker News","summary":"A package gets installed. A login prompt opens. A box sits exposed to the internet. Nothing looks unusual yet. That\u2019s roughly the mood this week. Trusted tools turn hostile, old weak spots get fresh attention, AI makes exploit work cheaper, and researchers keep finding attacks that sound harder than they actually are. Plenty to clean up. Here\u2019s the short version. \u26a1 Threat of the Week U.S.","title":"\u26a1 Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More","url":"https://thehackernews.com/2026/08/weekly-recap-ai-powered-plc-attacks.html"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research. Good primary work but commercial context.","created_at":"2026-08-29T23:16:52.616733+00:00","id":205,"published_date":"2026-08-24T14:07:53+00:00","severity":"medium","source_name":"Check Point Research","summary":"For the latest discoveries in cyber research for the week of 24th August, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Latvia\u2019s Road Traffic Safety Directorate (CSDD) has confirmed a breach affecting payment records of more than 1.2 million people \u2013 roughly two-thirds of the country\u2019s population \u2013 as well as 200,000 organizations. The [\u2026] The post 24th August \u2013 Threat Intelligence Report appeared first on Check Point Research.","title":"24th August \u2013 Threat Intelligence Report","url":"https://research.checkpoint.com/2026/24th-august-threat-intelligence-report"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.889967+00:00","id":97,"published_date":"2026-08-24T14:00:00+00:00","severity":"medium","source_name":"Dark Reading","summary":"The combination of AI both discovering more vulnerabilities at a faster pace and the tightening regulatory environment is making this an all-hands-on-deck moment for the cybersecurity community.","title":"The Vulnerability Gap: Why Discovery Is Outrunning Repair","url":"https://www.darkreading.com/cybersecurity-operations/vulnerability-gap-why-discovery-is-outrunning-repair"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.594309+00:00","id":644,"published_date":"2026-08-24T13:58:57+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : Coldfish Seafood","url":"https://www.ransomware.live/id/Q29sZGZpc2ggU2VhZm9vZEBxaWxpbg=="},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.739181+00:00","id":256,"published_date":"2026-08-24T13:40:00+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"A new version of the Android banking Trojan can seize control of infected phones and block access to Google Play and Google Play Services.","title":"ToxicPanda 2.0 can take over your Android phone and banking apps","url":"https://www.malwarebytes.com/blog/mobile/2026/08/toxicpanda-2-0-can-take-over-your-android-phone-and-banking-apps"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Veteran independent security commentator; fast on breach and ransomware news. Single-author caveat applies, hence Tier 2. filter_uncategorized drops podcast/sponsor posts.","created_at":"2026-08-29T23:17:27.892635+00:00","id":1266,"published_date":"2026-08-24T12:52:37+00:00","severity":"medium","source_name":"Graham Cluley","summary":"The ransomware gang Gunra has been creating havoc - exploiting unpatched VPNs and firewalls to steal data, encrypt systems, and extort victims across healthcare, finance, manufacturing, and more. Read more in my article on the Fortra blog.","title":"Gunra ransomware: what you need to know","url":"https://www.fortra.com/blog/gunra-ransomware-what-you-need-know"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research, consumer-threat focused.","created_at":"2026-08-29T23:16:53.741763+00:00","id":257,"published_date":"2026-08-24T11:43:19+00:00","severity":"medium","source_name":"Malwarebytes Labs","summary":"We found PavinLoader being used across ClickFix, fake software, and RenPy campaigns to deliver Amatera Stealer and other malware.","title":"Tracking PavinLoader across ClickFix and fake download campaigns","url":"https://www.malwarebytes.com/blog/threat-intel/2026/08/tracking-pavinloader-across-clickfix-and-fake-download-campaigns"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.653141+00:00","id":797,"published_date":"2026-08-24T11:38:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"Aikido AI Code Audit found 8 more vulnerabilities than Claude Security with Mythos at less than half the cost. How harness design drives coverage per dollar. Category: Research","title":"How Aikido finds more vulnerabilities than Mythos at half the cost","url":"https://www.aikido.dev/blog/aikido-finds-more-vulnerabilities-claude-security-mythos"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.620510+00:00","id":645,"published_date":"2026-08-24T11:29:02+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : A&E + SMA Design","url":"https://www.ransomware.live/id/QSZFICsgU01BIERlc2lnbkBxaWxpbg=="},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.654300+00:00","id":798,"published_date":"2026-08-24T08:14:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"npm Trusted Publishing sat near-idle after it was released. Then Shai-Hulud and 14 more supply chain attacks pushed adoption 3.4x. Charlie looks at the data behind it. Category: News","title":"Shai-Hulud was the best thing to happen to supply chain security","url":"https://www.aikido.dev/blog/shai-hulud-trusted-publishing"},{"category":"Cloud Security","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.963658+00:00","id":1063,"published_date":"2026-08-24T08:05:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Truffle Security says it found over 9000 publicly accessible and active AWS key pairs","title":"Researchers Uncover Thousands of Leaked AWS Keys","url":"https://www.infosecurity-magazine.com/news/researchers-thousands-eaked-aws"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Handler diaries \u2014 expert practitioner analysis, not primary research but high-quality synthesis.","created_at":"2026-08-29T23:17:14.026274+00:00","id":659,"published_date":"2026-08-24T07:23:16+00:00","severity":"medium","source_name":"SANS Internet Storm Center","summary":"New malware that uses steganography always gets my attention, but I was disappointed when I looked at the latest DOUBLECUP write-up. It doesn&#;x26;#;39;t use real steganography:","title":"DOUBLECUP's PNG Payload, (Mon, Aug 24th)","url":"https://isc.sans.edu/diary/rss/33274"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Troy Hunt's curated breach disclosure feed. Low volume (~2-4/month), high trust, universally cited. Each entry names the breached org, account count, and exposed data types.","created_at":"2026-08-29T23:17:11.419572+00:00","id":554,"published_date":"2026-08-23T22:25:44+00:00","severity":"medium","source_name":"Have I Been Pwned","summary":"In July 2025, the German news service NIUS suffered a data breach which was subsequently leaked publicly. The data included 6k unique email addresses along with names, physical addresses and payment details for purchases including either IBANs or partial credit card data (masked card number, type and expiry).","title":"NIUS - 6,090 breached accounts","url":"https://haveibeenpwned.com/Breach/NIUS"},{"category":"SaaS Breach","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.678430+00:00","id":646,"published_date":"2026-08-23T20:27:42+00:00","severity":"medium","source_name":"Ransomware.live","summary":"Update 23 Aug : We are removing the clients name off this post. They are refusing to pay a $13 million demand. They have 24 hours left to engage with us. We hold 12.9 million Salesforce records along with: Sharepoint: (369.6 GB Compressed / 645 GB Uncompressed) 288,729 Files, 60,513 Folders - More than 182,000 rows of Customer data Extracted from the \"Contacts\" Salesforce Object. - Over 8,300 Rows of Employee PII (Full Name, Email, Job Title, Phone Number, ect.) - Thousands of executed contracts, MSAs, NDAs, amendments, leases, and SOWs - Extensive physical key inventory logs, verification photos, and contractor Green Badge audits - Large collection of data center drawings, floor plans, electrical one-line diagrams, security system drawings, and site schematics - Full CERM (Critical Environment Reliability Management) process library - Physical and information security policy suite plus governance materials - Regional security scorecards, KPI workbooks, GAM sheets, and signed performance packages - Credential and access-control artifacts (including PasswordList.xlsx, Okta SSC Access lists, active badge reports, and multiple Data Center Access Control forms) This is a final warning to reach out by end of day 24 Aug 2026 before we leak along with several annoying (digital) problems that'll come your way. Make the right decision, don't be the next headline. | Updated: 23 Aug 2026 | Warning: FINAL WARNING PAY OR LEAK","title":"\ud83c\udff4\u200d\u2620\ufe0f Shinyhunters has just published a new victim : CyrusOne, LLC.","url":"https://www.ransomware.live/id/Q3lydXNPbmUsIExMQy5Ac2hpbnlodW50ZXJz"},{"category":"Ransomware","confidence":"LOW","confidence_reason":"Open-source ransomware leak-site monitor (~150 groups). Scrapes victim claims, not verified journalism \u2014 treat as unverified OSINT. High volume (100 entries/batch); filter_uncategorized drops noise. Canonical www. URL preferred (bare domain 301s; _safe_get handles redirects but saves a hop).","created_at":"2026-08-29T23:17:13.679962+00:00","id":647,"published_date":"2026-08-23T18:58:22+00:00","severity":"medium","source_name":"Ransomware.live","summary":"N/A","title":"\ud83c\udff4\u200d\u2620\ufe0f Qilin has just published a new victim : S.E.M.P. s.r.l.","url":"https://www.ransomware.live/id/Uy5FLk0uUC4gcy5yLmwuQHFpbGlu"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.346114+00:00","id":715,"published_date":"2026-08-22T15:02:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Agents are also the new attack surface - cue defenders' existential angst","title":"If you're not using AI to attack your own systems, your adversaries will","url":"https://www.theregister.com/security/2026/08/22/if-youre-not-using-ai-to-attack-your-own-systems-your-adversaries-will/5291346"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Troy Hunt's curated breach disclosure feed. Low volume (~2-4/month), high trust, universally cited. Each entry names the breached org, account count, and exposed data types.","created_at":"2026-08-29T23:17:11.424533+00:00","id":555,"published_date":"2026-08-22T07:17:23+00:00","severity":"medium","source_name":"Have I Been Pwned","summary":"In mid-2026, hundreds of thousands of user records allegedly sourced from Golf Canada began circulating via Telegram. The data included 569k unique email addresses along with names, usernames, dates of birth, genders and approximate geographic locations (city, province and postcode). Golf Canada didn't respond to multiple attempts to make contact, and it remains unclear whether the data was obtained via unintentionally exposed website features or a security vulnerability.","title":"Golf Canada - 568,972 breached accounts","url":"https://haveibeenpwned.com/Breach/GolfCanada"},{"category":"Cloud Security","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.346722+00:00","id":716,"published_date":"2026-08-21T23:42:41+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Quarantining leaked credentials is not good enough","title":"AWS Security makes an inscrutable choice","url":"https://www.theregister.com/security/2026/08/22/aws-security-makes-an-inscrutable-choice-corey-quinn/5291446"},{"category":"Uncategorized","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research team with consistent primary analysis.","created_at":"2026-08-29T23:16:51.555045+00:00","id":177,"published_date":"2026-08-21T23:00:21+00:00","severity":"medium","source_name":"Unit42 Palo Alto","summary":"Attackers are targeting CI/CD pipelines and developer tools instead of application code, requiring total SDLC visibility and strict security controls The post Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply Chain appeared first on Unit 42.","title":"Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply Chain","url":"https://unit42.paloaltonetworks.com/sdlc-supply-chain"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.016987+00:00","id":892,"published_date":"2026-08-21T20:12:14+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-088-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 13:00 PM PDT Description: Amazon OpenSearch Service is a managed service that makes it easy to deploy, operate, and scale OpenSearch clusters. We identified CVE-2026-77811, a stored cross-site scripting issue in the dashboards-observability plugin in OpenSearch Dashboards. Improper input validation in the integrations static file endpoint allows a remote authenticated actor with write permissions to OpenSearch Dashboards saved objects to upload a custom integration containing arbitrary JavaScript. When another user accesses the static file endpoint directly, the script executes in their browser session and can perform actions on their behalf, including making API calls to OpenSearch with their privileges. Affected products & versions: OpenSearch Dashboards dashboards-observability plugin (open-source, self-managed): - Affected: versions before 3.4 and versions before 2.19.6 - Fixed: versions 3.4 and 2.19.6 Amazon OpenSearch Service (AWS Managed): - Affected: versions before 3.3 - Fixed: fixed in all affected versions (via service software update) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-77811 - Stored Cross-Site Scripting via Integration Template Asset in OpenSearch Dashboards","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-088-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.080762+00:00","id":924,"published_date":"2026-08-21T19:42:12+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-087-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 12:30 PM PDT Description: Amazon Athena is a serverless, interactive query service that lets you analyze data directly in Amazon S3 using standard SQL. Athena Query Federation is a feature that allows you to connect to data sources outside of Amazon S3 like DynamoDB, Azure Synapse, and custom connectors using standard SQL syntax. These connectors are open source and deployed to the Athena service on a regular basis. We identified CVE-2026-77810, in the Neptune connector where a user with access to Neptune through Athena Federated Query could gain access to properties in the Lambda supplying the compute for the connector. Impacted versions: <=v2026.28.1 AND >=v2024.15.1 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-77810 - Issue with Athena Federated Query Neptune Connector","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-087-aws"},{"category":"Identity & Access","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.556212+00:00","id":415,"published_date":"2026-08-21T18:00:00+00:00","severity":"medium","source_name":"Huntress","summary":"Account takeover (ATO) fraud happens when attackers steal login credentials to access accounts. Learn how to detect and prevent account takeover fraud.","title":"What Is Account Takeover Fraud? A Comprehensive Guide | Huntress","url":"https://www.huntress.com/blog/account-takeover-what-it-is-and-how-to-protect-against-it"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.053529+00:00","id":910,"published_date":"2026-08-21T17:59:03+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT Description: FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small microprocessors. AWS identified four issues with FreeRTOS-Kernel, affecting multiple versions. - CVE-2026-77234: This issue affects configurations that use the FreeRTOS MPU together with software timers; applications that do not use the FreeRTOS MPU are not affected. - CVE-2026-77235: This issue affects ARM TrustZone (ARMv8-M) configurations; applications that do not use ARM TrustZone secure contexts are not affected. - CVE-2026-77236: This issue affects ARM TrustZone (ARMv8-M) configurations; applications that do not use ARM TrustZone secure contexts are not affected. - CVE-2026-77237: This issue affects builds with queue sets enabled; applications built without queue sets are not affected. Impacted versions: - CVE-2026-77234: >=7.0.0 AND <=11.3.0 (MPU-enabled ports) - CVE-2026-77235: >=10.2.0 AND <=11.3.0 (ARMv8-M ports with TrustZone + MPU) - CVE-2026-77236: >=10.2.0 AND <=11.3.0 (ARMv8-M ports with TrustZone) - CVE-2026-77237: >=7.4.0 AND <=11.3.0 (MPU-enabled ports with configUSE_QUEUE_SETS=1) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Real-world incident breakdowns from the defender side. Strong on ransomware and SMB-targeting threats.","created_at":"2026-08-29T23:17:01.558334+00:00","id":416,"published_date":"2026-08-21T17:00:00+00:00","severity":"medium","source_name":"Huntress","summary":"RMM abuse jumped 277% & now shows up nearly 40% of Huntress investigations. See how attackers exploit trusted remote access tools, and how to stop it.","title":"RMM Abuse: How Attackers Exploit Remote Access Tools | Huntress","url":"https://www.huntress.com/blog/rmm-abuse-trusted-tools-untrusted-hands"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"First-party Cisco PSIRT advisories (IOS/ASA/FTD/NX-OS). Authoritative earliest source for a heavily-exploited enterprise network product line. Pure advisory feed \u2014 no filter_uncategorized, an uncategorized Cisco advisory is still signal.","created_at":"2026-08-29T23:17:16.392134+00:00","id":741,"published_date":"2026-08-21T16:54:40+00:00","severity":"high","source_name":"Cisco PSIRT","summary":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and to streamline the disclosure process, Cisco has grouped these issues by their underlying vulnerability class \u2014 Common Weakness Enumeration (CWE) \u2014 and assigned a single Common Vulnerabilities and Exposures Identifier (CVE ID) to each CWE grouping. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-crosswork-UzDTU9Vh Security Impact Rating: Critical CVE: CVE-2026-20030,CVE-2026-20357,CVE-2026-20358,CVE-2026-20359","title":"Cisco Crosswork Security Hardening Release: August 2026","url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-crosswork-UzDTU9Vh?vs_f=Cisco+Security+Advisory%26vs_cat%3DSecurity+Intelligence%26vs_type%3DRSS%26vs_p%3DCisco+Crosswork+Security+Hardening+Release%3A+August+2026%26vs_k%3D1"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.348193+00:00","id":717,"published_date":"2026-08-21T16:29:00+00:00","severity":"critical","source_name":"The Register (Security)","summary":"Ukrainian hacktivists exploiting the bugs, but TrueConf's reach stretches well beyond home turf","title":"Homeland security cybercops say patch TrueConf (Russia's Zoom) if you're using it","url":"https://www.theregister.com/patches/2026/08/21/homeland-security-cybercops-say-patch-trueconf-russias-zoom-if-youre-using-it/5291156"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.350025+00:00","id":718,"published_date":"2026-08-21T14:57:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Malicious updates turned routine builds into a delivery system for infostealer malware","title":"Hackers poison popular Rust crates to steal developers' credentials","url":"https://www.theregister.com/security/2026/08/21/hackers-poison-popular-rust-crates-to-steal-developers-credentials/5291075"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"CERT/CC vulnerability coordination center. Authoritative vuln notes, partially replaces dead CISA feeds.","created_at":"2026-08-29T23:16:51.119649+00:00","id":142,"published_date":"2026-08-21T14:44:16+00:00","severity":"high","source_name":"CERT Vulnerability Notes","summary":"Overview The Calix GS7 XGS GS5239XG router running firmware EXOS/6.6.47 contains a missing authentication vulnerability that exposes its UPnP (Universal Plug and Play) WANIPConnection service on the public WAN interface. Description Calix GS7 XGS GS5239XG is a residential gateway that provides routing, NAT, and firewall functionality for home networks. The device includes the Universal Plug and Play (UPnP) service implemented via MiniUPnPd 2.3.7, a lightweight software program that provides features such as automatic port forwarding for applications and devices on the LAN. By default, the UPnP service is exposed on the device\u2019s WAN interface and does not require authentication. CVE-2026-75501 In affected firmware versions, the router binds its UPnP WANIPConnection SOAP service to the public WAN interface on TCP port 5000. Because the service does not require authentication when accepting SOAP requests, a remote attacker can obtain full access to the router\u2019s critical UPnP functions including adding, deleting, and enumerating NAT port mappings. Impact CVE-2026-75501 enables an unauthenticated, remote attacker to remotely query and manipulate existing NAT mappings. By exploiting this vulnerability to create arbitrary port-forwarding rules on the router, an attacker can bypass NAT and firewall protections, exposing internal LAN devices to the public internet. Because the Calix router is typically provisioned with its default UPnP-enabled configuration, this issue poses significant risk to residential users with network-connected internal devices such as security cameras, network-attached storage (NAS), and other IoT appliances. Solution Unfortunately, the CERT/CC was unable to reach Calix to coordinate this vulnerability. Until a vendor patch is available, users can reduce exposure by disabling UPnP on the router\u2019s administrative interface. If the UPnP setting is unavailable or locked, it may be necessary to contact your ISP to request its deactivation at the carrier level. Alternatively, filtering inbound traffic to TCP port 5000, either via the router itself, a secondary firewall, or through your ISP, can prevent external hosts from reaching the WANIPConnection service. Acknowledgements Thanks to Brian Khan Quintana for researching and reporting this vulnerability. This document was written by Molly Jaconski.","title":"VU#756733: Calix GS7 XGS GS5239XG residential router contains missing authentication vulnerability","url":"https://kb.cert.org/vuls/id/756733"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.669722+00:00","id":799,"published_date":"2026-08-21T13:43:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"CVE remediation is fixing known flaws in the software you run. Why upgrading often fails, what remediation actually involves, and how backporting fixes it. Category: DevSec Tools & Comparisons","title":"What is CVE remediation in 2026?","url":"https://www.aikido.dev/blog/cve-remediation"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.908937+00:00","id":98,"published_date":"2026-08-21T13:30:00+00:00","severity":"medium","source_name":"Dark Reading","summary":"The new AI security controls follow the Hugging Face incident last month, though experts say many of these additions should have been in place prior to the frontier models escaping.","title":"OpenAI Adds Controls That Should've Been There Already","url":"https://www.darkreading.com/application-security/openai-adds-controls-already"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.914276+00:00","id":99,"published_date":"2026-08-21T13:10:33+00:00","severity":"medium","source_name":"Dark Reading","summary":"The coming threat of super-powerful computers capable of cracking today's algorithms requires upgrading encryption now. Tech companies have begun building defenses.","title":"Hardware Makers Implement Post-Quantum Cryptography as Security Threats Near","url":"https://www.darkreading.com/cyber-risk/hardware-makers-implement-post-quantum-cryptography"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established offensive security research firm. Pentest tooling, vulnerability research, red team techniques.","created_at":"2026-08-29T23:17:09.885163+00:00","id":516,"published_date":"2026-08-21T13:00:00+00:00","severity":"critical","source_name":"Bishop Fox","summary":"CVE-2026-8452 lets an unauthenticated attacker corrupt memory in Citrix NetScaler's SAML parser with a single request, potentially leading to remote code execution. Bishop Fox breaks down the patch, how to safely verify it across a fleet, and what exploitation actually looks like in the logs.","title":"No Crash Required: Verifying the Citrix NetScaler SAML Patch for CVE-2026-8452","url":"https://bishopfox.com/blog/no-crash-required-verifying-the-citrix-netscaler-saml-patch-for-cve-2026-8452"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.965793+00:00","id":1064,"published_date":"2026-08-21T12:40:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Cybersecurity researchers have linked a malicious backdoor in compromised Rust packages to previous North Korean supply chain attacks","title":"North Korean Hackers Tied to Rust Supply Chain Attack","url":"https://www.infosecurity-magazine.com/news/north-korean-rust-supply-chain"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.967871+00:00","id":1065,"published_date":"2026-08-21T12:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"An Agent Tesla v4 malware campaign used novel emoji-based code obfuscation to evade detection, KnowBe4 has revealed","title":"New Agent Tesla Malware Variant Boosts Evasion Capabilities","url":"https://www.infosecurity-magazine.com/news/agent-tesla-malware-evasion"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.673436+00:00","id":800,"published_date":"2026-08-21T09:06:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"We tested 10 AI models on 32 fresh CVEs. DeepSeek V4 Pro found 28, and three cheap runs beat one pass of Opus 5 or Grok on total coverage. Category: Research","title":"We burned 11.7bn tokens to find the best cyber AI model","url":"https://www.aikido.dev/blog/ai-model-benchmarks-aug-21-2026"},{"category":"Malware/Infostealer","confidence":"HIGH","confidence_reason":"Best-in-class APT campaign tracking and malware reverse engineering. Industry-leading primary research.","created_at":"2026-08-29T23:16:58.522357+00:00","id":330,"published_date":"2026-08-21T08:00:29+00:00","severity":"medium","source_name":"Kaspersky Securelist","summary":"Kaspersky expert has discovered new Android malware designed to serve ads and build a proxy botnet. It's delivered through legitimate software for DoFun head units.","title":"The invisible passenger in your car","url":"https://securelist.com/android-head-unit-malware/121106"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.970629+00:00","id":1066,"published_date":"2026-08-21T08:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"An analysis by the AI Workforce Consortium found that technical cybersecurity jobs are becoming more strategic due to the influence of AI","title":"Cybersecurity Job Ads Requiring AI Skills Double","url":"https://www.infosecurity-magazine.com/news/cybersecurity-job-ads-ai-skills"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.350755+00:00","id":719,"published_date":"2026-08-21T05:33:08+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Secure Workload Software has five nasty flaws and even SaaS users have updates to install","title":"Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5.","url":"https://www.theregister.com/security/2026/08/21/cisco-bug-severity-warning-reads-like-olympic-gymnastics-scores-10-10-99-96-and-75/5290838"},{"category":"SaaS Breach","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.352777+00:00","id":720,"published_date":"2026-08-21T00:19:25+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Don't click on that State Department meeting invite","title":"Russian snoops add OAuth abuse to targeted phishing campaigns","url":"https://www.theregister.com/security/2026/08/21/russian-snoops-add-oauth-abuse-to-targeted-phishing-campaigns/5290706"},{"category":"OT/ICS","confidence":"HIGH","confidence_reason":"First-party OT/ICS vendor CERT. Authoritative advisories for Siemens industrial products. Fills OT/ICS category depth.","created_at":"2026-08-29T23:16:59.926854+00:00","id":362,"published_date":"2026-08-21T00:00:00+00:00","severity":"medium","source_name":"Siemens ProductCERT","summary":"","title":"SSB-104599 V1.3 (Last Update: 2026-08-21): Increasing Cyber Threats to Industrial Control Systems","url":"https://cert-portal.siemens.com/productcert/html/ssb-104599.html"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Duo Security / Cisco-owned security journalism (Dennis Fisher, Lindsey O'Donnell-Welch). Primary reporting, no marketing funnel. Peer-quality with Dark Reading / The Record.","created_at":"2026-08-29T23:16:50.842197+00:00","id":132,"published_date":"2026-08-20T23:35:28+00:00","severity":"medium","source_name":"Decipher","summary":"A research collaboration, directed by UC Berkeley, led to the development of ExploitGym, a large-scale benchmark for measuring AI agents\u2019 abilities to develop exploits. Here\u2019s the story of how ExploitGym came to be.","title":"Inside ExploitGym: How Researchers Are Measuring AI Agent Exploitation Capabilities","url":"https://decipher.sc/2026/08/20/inside-exploitgym-how-researchers-are-measuring-ai-agent-exploitation-capabilities"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.916885+00:00","id":860,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-030-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 05/13/2026 10:00 PM PDT This is an ongoing issue. This bulletin will be updated as more information becomes available. Description: AWS is aware of the copy.fail or DirtyFrag class of issues - a set of privilege escalation issues affecting the Linux Kernel. We will update this bulletin as more information becomes available. Please see below for current patching timelines for affected services related to the Copy.fail kernel issue and all its variants. AWS recommends that customers apply all updates addressing these issues as soon as they are available. See more details at Security Bulletin (ID: 2026-030-AWS).","title":"Ongoing updates on Copy.fail and variants","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-030-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.919890+00:00","id":861,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-048-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/29/2026 11:15 PM PDT Description: AWS WAF is a web application firewall that monitors the HTTP(S) requests that are forwarded to your protected web application resources. We identified CVE-2026-13762 and CVE-2026-13763, which are issues affecting HTTP/2 multi-frame request body inspection by AWS WAF. CVE-2026-13762 affects AWS WAF deployment with CloudFront. This issue was remediated server-side; no customer action is required. CVE-2026-13763 affects AWS WAF deployment with AWS Application Load Balancer (ALB). Under certain conditions, a crafted multi-frame HTTP/2 request could cause only a partial request body to be inspected. This issue has been addressed on ALB, and customers can ensure full protection by configuring how AWS WAF inspects HTTP/2 request bodies on their ALB. Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-13762 and CVE-2026-13763 - Issue with HTTP/2 multi-frame request body inspection in AWS WAF","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-048-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.922529+00:00","id":862,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-073-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/04/2026 10:00 AM PDT Description: We have identified CVE-2026-18830 in the Amazon Bedrock AgentCore harness InvokeHarness API. This issue could allow an authenticated user to execute configured tools while bypassing model invocation and associated security controls. When the most recent message in an InvokeHarness request contained a tool-use content block, the agent event loop could dispatch the named tool directly, without model mediation. Please note that potential impact was limited to the tools configured on a given harness. A harness with no configured tools could not execute any tool, and a harness with a restricted tool set was limited to that set. Impacted versions: Amazon Bedrock AgentCore harness InvokeHarness API prior to July 31, 2026. Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18830 - Issue with Amazon Bedrock AgentCore harness \u2013 Insufficient Input Validation","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-073-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.927968+00:00","id":863,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-005-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/03/02 14:30 PM PST Description: AWS-LC is an open-source, general-purpose cryptographic library. We identified three distinct issues: - CVE-2026-3336: PKCS7_verify Certificate Chain Validation Bypass in AWS-LC Improper certificate validation in PKCS7_verify() in AWS-LC allows an unauthenticated user to bypass certificate chain verification when processing PKCS7 objects with multiple signers, except the final signer. - CVE-2026-3337: Timing Side-Channel in AES-CCM Tag Verification in AWS-LC Observable timing discrepancy in AES-CCM decryption in AWS-LC allows an unauthenticated user to potentially determine authentication tag validity via timing analysis. - CVE-2026-3338: PKCS7_verify Signature Validation bypass in AWS-LC Improper signature validation in PKCS7_verify() in AWS-LC allows an unauthenticated user to bypass signature verification when processing PKCS7 objects with Authenticated Attributes. Impacted versions: - PKCS7_verify Certificate Chain Validation Bypass in AWS-LC >= v1.41.0, < v1.69.0 - PKCS7_verify Certificate Chain Validation Bypass in aws-lc-sys >= v0.24.0, < v0.38.0 - Timing Side-Channel in AES-CCM Tag Verification in AWS-LC >= v1.21.0, < v1.69.0 - Timing Side-Channel in AES-CCM Tag Verification in AWS-LC >= AWS-LC-FIPS-3.0.0, < AWS-LC-FIPS-3.2.0 - Timing Side-Channel in AES-CCM Tag Verification in aws-lc-sys >= v0.14.0, < v0.38.0 - Timing Side-Channel in AES-CCM Tag Verification in aws-lc-sys-fips >= v0.13.0, < v0.13.12 - PKCS7_verify Signature Validation bypass in AWS-LC >= v1.41.0, < v1.69.0 - PKCS7_verify Signature Validation bypass in aws-lc-sys >= v0.24.0, < v0.38.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issue with AWS-LC: an open-source, general-purpose cryptographic library (CVE-2026-3336, CVE-2026-3337, CVE-2026-3338)","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-005-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.934157+00:00","id":864,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-014-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/06 14:00 PM PDT Description: Research and Engineering Studio (RES) on AWS is an open source, web portal design for administrators to create and manage secure cloud-based research and engineering environments. We have identified the following issues with the AWS Research and Engineering Studio (RES). CVE-2026-5707: Unsanitized input in an OS Command in the virtual desktop session name handling in AWS Research and Engineering Studio (RES) version 2025.03 through 2025.12.01 might allow a remote authenticated actor to execute arbitrary commands as root on the virtual desktop host via a crafted session name. CVE-2026-5708: Improper control of user-modifiable attributes in the session creation component in AWS Research and Engineering Studio (RES) before version 2026.03 might allow an authenticated remote user to escalate privileges and assume the Virtual Desktop Host instance profile permissions and interact with other AWS resources and services via a crafted API request. CVE-2026-5709: Unsanitized input in the FileBrowser API in AWS Research and Engineering Studio (RES) version 2024.10 through 2025.12.01 might allow a remote authenticated actor to execute arbitrary commands on the cluster-manager EC2 instance via crafted input when using the FileBrowser functionality. Impacted versions: <= 2025.12.01 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issues with AWS Research and Engineering Studio (RES)","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-014-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.936706+00:00","id":865,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-057-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/15/2026 12:00 PM PDT Description: jsii-diff is a command line tool to compare the API differences between two jsii assemblies, and report errors if there are backwards-incompatible changes to the API. We identified CVE-2026-15895, an issue where specially formatted command line arguments can be used to execute shell commands via this tool. Impacted versions: < 1.131.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-15895: OS command injection in jsii-diff in AWS jsii","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-057-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.939597+00:00","id":866,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-081-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/13/2026 10:30 AM PDT Description: OpenSearch SQL plugin is a plugin that enables SQL and PPL query capabilities on OpenSearch clusters, including direct query integration with external data sources via Apache Spark. An issue exists where the Flint extension query handler validates SQL queries without sufficient restrictions, allowing a user with async query access to bypass the SQL grammar deny list via the direct query endpoint. Affected Products & Versions: OpenSearch SQL Plugin (open-source, self-managed): - Affected: v2.13 to v3.6 - Fixed: versions 3.7 and 2.19.6 Amazon OpenSearch Service (AWS Managed): - Affected: v2.13 to v3.5 - Fixed: v2.13 to v3.5 (via service software update) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18428 - OpenSearch SQL Plugin - Async Query Validation Bypass","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-081-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.942585+00:00","id":867,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-021-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/29 12:00 PM PDT Description: FreeRTOS-Plus-TCP is a scalable, open source, and thread-safe TCP/IP stack for FreeRTOS. - CVE-2026-7422: Insufficient packet validation in the IPv4 and IPv6 receive paths allows an adjacent network device to send a packet that bypasses checksum and minimum-size validation by spoofing the Ethernet source MAC address to match one of the target device's own registered endpoints. - CVE-2026-7423: Integer underflow in the ICMP and ICMPv6 echo reply handlers allows an adjacent network device to cause a denial of service (device crash) when outgoing ping support is enabled, because header sizes are subtracted from a packet length field without validating the field is large enough, resulting in a heap out-of-bounds read. Impacted versions: >=V4.0.0 AND <=V4.2.5, >=V4.3.0 AND <=V4.4.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issue with FreeRTOS-Plus-TCP - MAC Address Validation Bypass and ICMP Echo Reply Integer Underflow","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-021-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.945363+00:00","id":868,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-049-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/01/2026 11:45 AM PDT Description: The AWS Command Line Interface (AWS CLI) is a unified tool for managing AWS services from the command line. We identified CVE-2026-13769 in AWS CLI on Unix-like systems where the umask has not been configured to restrict file permissions (the default on most systems) wrote credential and configuration files with world-readable permissions, which allows other local users on the same host to read credentials. Impacted versions: <=1.44.77 (v1) AND <=2.34.28 (v2) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-13769 \u2013 Insecure file permissions in AWS CLI","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-049-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.948039+00:00","id":869,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-064-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/23/2026 11:30 AM PDT Description: Smithy-RS is a Rust code generation and runtime framework that generates HTTP clients and servers from Smithy interface definitions, powering the AWS SDK for Rust and custom service implementations. We identified CVE-2026-16756 where the allocation of resources without limits in the default aws-smithy-http-server serve() path allows unauthenticated \"Slowloris\" denial of service. Impacted versions: aws-smithy-http-server <= 0.66.4 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-16756 - Allocation of resources without limits in the default aws-smithy-http-server serve() path allows unauthenticated Slowloris denial of service","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-064-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.952962+00:00","id":871,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Incomplete fix for CVE-2025-4318 code injection in Amazon @aws-amplify/codegen-ui-react","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-066-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.960131+00:00","id":873,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-047-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/23/2026 09:30 AM PDT Description: Language Servers for AWS provide the underlying language-server runtime that powers Amazon Q Developer's AI coding assistance across its IDE plugins (Visual Studio Code, JetBrains, Eclipse, and Visual Studio). We identified CVE-2026-12957, an improper trust boundary enforcement issue in Language Servers for AWS before version 1.65.0. If a local user opens a maliciously crafted workspace, any commands within the project configuration files may be automatically executed. This issue requires the user to trust the workspace when prompted. We identified CVE-2026-12958, a missing symlink-validation issue in Language Servers for AWS before version 1.69.0. This may occur when a local user opens a workspace with a maliciously crafted symlink that resolves to a file path outside the workspace trust boundary. These issues affect the Amazon Q Developer IDE plugins, which bundle Language Servers for AWS. Both issues are remediated in Language Servers for AWS version 1.69.0. Affected products & versions:- Language Servers for AWS: < 1.69. - Amazon Q Developer for Visual Studio Code: < 2.20- Amazon Q Developer for JetBains: < 4.3- Amazon Q Developer for Eclipse: < 2.7.4- AWS Toolkit with Amazon Q for Visual Studio: < 1.94.0.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-12957 and CVE-2026-12958 - Issues in Language Servers for AWS and Amazon Q Developer Plugins","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-047-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.963500+00:00","id":874,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-083-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/18/2026 12:30 PM PDT Description: ion-java is a Java library that implements the Amazon Ion data format specification. We identified CVE-2026-75935, memory-amplification denial of service via declared-length preallocation, and CVE-2026-75936, memory-amplification denial of service via highly compressed data expansion. Affected versions: < 1.12.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-75935 and CVE-2026-75936 - Issue with Amazon ion-java - Memory-amplification denial of service","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-083-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.966172+00:00","id":875,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-004-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/02/02 14:30 PM PST Description: CVE-2026-1777 - Exposed HMAC in SageMaker Python SDK SageMaker Python SDK\u2019s remote functions feature uses a per\u2011job HMAC key to protect the integrity of serialized functions, arguments, and results stored in S3. We identified an issue where the HMAC secret key is stored in environment variables and disclosed via the DescribeTrainingJob API. This allows third parties with DescribeTrainingJob permissions to extract the key, forge cloud-pickled payloads with valid HMACs, and overwrite S3 objects. CVE-2026-1778 - Insecure TLS Configuration in SageMaker Python SDK SageMaker Python SDK is an open source library for training and deploying machine learning models on Amazon SageMaker. We identified an issue where SSL certificate verification was globally disabled in the Triton Python backend. This configuration was introduced to work around SSL errors during model downloads from public sources (e.g., TorchVision) and it affected all HTTPS connections when the Triton Python model was imported. Impacted versions: - HMAC Configuration in SageMaker Python SDK v3 < v3.2.0 - HMAC Configuration in SageMaker Python SDK v2 < v2.256.0 - Insecure TLS Configuration in SageMaker Python SDK v3 < v3.1.1 - Insecure TLS Configuration in SageMaker Python SDK v2 < v2.256.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Security Findings in SageMaker Python SDK","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-004-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.969868+00:00","id":876,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-031-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 05/14/2026 13:00 PM PDT Description: Amazon SageMaker Python SDK is an open-source library for training and deploying machine learning models on Amazon SageMaker. The ModelBuilder component simplifies model deployment by automating model artifact preparation and SageMaker model creation. We identified two issues affecting the model artifact integrity verification mechanism in the ModelBuilder/Serve component: - CVE-2026-8596: We identified a cleartext storage of sensitive information issue in the ModelBuilder/Serve component. When building models using ModelBuilder, the SDK stored an HMAC signing key as a container environment variable (SAGEMAKER_SERVE_SECRET_KEY). This key was returned in plaintext by SageMaker describe APIs (DescribeModel, DescribeEndpointConfig, DescribeModelPackage). A remote authenticated actor with permissions to call these APIs and S3 write access to the model artifact path could extract the key, forge valid integrity signatures for specially crafted model artifacts, and achieve code execution in inference containers. - CVE-2026-8597: We identified a missing integrity verification issue in the Triton inference handler. The Triton handler deserialized model artifacts without performing integrity verification before execution. A remote authenticated actor with S3 write access to the model artifact path could replace model artifacts with a specially crafted pickle payload that would be deserialized without verification, achieving code execution in inference containers. Impacted versions: Amazon SageMaker Python SDK >= v2.199.0 AND <= v2.257.1, >= v3.0.0 AND <= v3.7.1 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issue with Amazon SageMaker Python SDK - Model artifact integrity verification issues (CVE-2026-8596 & CVE-2026-8597)","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-031-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.973471+00:00","id":877,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-082-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/18/2026 10:00 AM PDT Description: OpenSearch Dashboards is the open-source visualization and management UI for OpenSearch, and ships as part of Amazon OpenSearch Service. We identified CVE-2026-75897, an improper input validation in the capabilities route handler in OpenSearch Dashboards. The handler does not bound the size of the request payload, which might allow remote attackers to cause a denial of service via a crafted HTTP request. Affected Products and Versions: OpenSearch \"Plugin Type\" Plugin (open-source, self-managed): - Affected: All versions from 1.3.0 through 3.7.0 inclusive, including all 2.x releases up to and including 2.19.6. The issue is inherited from upstream Kibana and is also present in Kibana 7.7.1 through 7.10.2. - Fixed: 3.8.0 Amazon OpenSearch Service (AWS Managed): - Affected: Engine versions OpenSearch 1.3, 2.11, 2.13, 2.15, 2.17, 2.19, 3.1, 3.3, and 3.5, and Elasticsearch-compatibility versions using Kibana 7.9 and 7.10. - Fixed: A patched service software release is available for all affected versions. Apply the latest available service software update to your domain. Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-75897 - Uncontrolled resource consumption in OpenSearch Dashboards capabilities route","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-082-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.975856+00:00","id":878,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-056-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/15/2026 11:30 AM PDT Description: Strands Agents is an open-source Python SDK for building and running AI agents. The strands-agents-tools package provides pre-built tools for use with the SDK, including the elasticsearch_memory tool for agent memory storage. We identified CVE-2026-15746, a server-side request forgery (SSRF) issue in the elasticsearch_memory tool. The tool exposed its connection parameters (es_url, cloud_id, api_key) as fields the large language model (LLM) could control through the tool schema. When a caller omitted the api_key parameter, the tool fell back to the operator's ELASTICSEARCH_API_KEY environment variable and sent it to whichever host the LLM specified. A crafted prompt could cause the tool to connect to a threat-actor-controlled server and disclose the operator's Elasticsearch API key in the Authorization header. Impacted versions: < 0.7.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-15746 - Credential disclosure in Strands Agents Tools elasticsearch_memory tool","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-056-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.977443+00:00","id":879,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-074-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/04/2026 12:30 PM PDT Description: Kiro is an agentic IDE and command-line interface users install on their desktop. We identified CVE-2026-18656 and CVE-2026-18657, an issue where an uncontrolled search path element on Windows might allow an actor to execute arbitrary code via a maliciously crafted project directory containing a planted executable that is resolved before the system PATH when a local user opens the directory. Impacted versions: - Kiro IDE for Windows between versions 1.0.0 through 1.0.212 - Kiro CLI for Windows prior to v2.10.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18656 & CVE-2026-18657 - Issue with Kiro IDE and CLI - Executable Resolution from Untrusted Project Directory on Windows","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-074-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.979823+00:00","id":880,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-022-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/29 12:20 PM PDT Description: FreeRTOS-Plus-TCP is an open-source, scalable TCP/IP stack for FreeRTOS. We identified CVE-2026-7424, where an integer underflow issue in the DHCPv6 sub-option parser could allow an adjacent network user to corrupt the device's IPv6 address assignment, DNS configuration, and lease times, and to cause a denial of service (IP task freeze requiring hardware reset). Impacted versions: FreeRTOS-Plus-TCP >=V4.0.0 AND <=V4.2.5, >=V4.3.0 AND <= V4.4.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-7424 - Integer Underflow in DHCPv6 Sub-Option Parser in FreeRTOS-Plus-TCP","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-022-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.982585+00:00","id":881,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-013-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/03 13:00 PM PDT Description: The Amazon Athena ODBC driver implements standard ODBC application program interfaces (APIs). The ODBC driver provides access to Amazon Athena from any C/C++ application. The Amazon Athena ODBC driver provides 64-bit ODBC drivers for Windows, Linux and MAC operating systems. We identified the following: - CVE-2026-5485: OS command injection in browser-based authentication component (Linux only, fixed in 2.0.5.1) - CVE-2026-35558: Improper neutralization of special elements in authentication components - CVE-2026-35559: Out-of-bounds write in query processing components - CVE-2026-35560: Improper certificate validation in identity provider connection components - CVE-2026-35561: Insufficient authentication security controls in browser-based authentication components - CVE-2026-35562: Allocation of resources without limits in parsing components Impacted versions: CVE-2026-5485 was addressed in 2.0.5.1 (Linux only). The remaining five (CVE-2026-35558 through CVE-2026-35562) were addressed in version 2.1.0.0 and apply to all supported platforms Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issues with Amazon Athena ODBC Driver","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-013-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.984406+00:00","id":882,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-039-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/025/2026 12:15 PM PDT Description: Amazon Aurora PostgreSQL a fully managed relational database engine that's compatible with PostgreSQL. We identified CVE-2026-11400(JDBC) and CVE-2026-11401(Go), an issue in AWS Wrappers for Amazon Aurora PostgreSQL will allow for privilege escalation to rds_superuser role. A low privilege authenticated user can create a crafted function that could be executed with permissions of other Amazon Relational Database Service (RDS) users. Impacted versions: - AWS Advanced JDBC Wrapper >=3.0.0 and < 4.0.1 - AWS Advanced Go Wrapper release 2026-04-06 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-11400 and CVE-2026-11401","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-039-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.987086+00:00","id":883,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-065-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/23/2026 13:00 PM PDT Description: The AWS Bedrock AgentCore Python SDK (bedrock-agentcore) provides tools for building AI agents, including a Code Interpreter client that installs Python packages into a managed sandbox. We identified CVE-2026-16796, an improper neutralization of argument delimiters in the install_packages() method that might allow a remote authenticated user to execute arbitrary commands within the Code Interpreter sandbox via crafted package name arguments. Impacted versions: bedrock-agentcore version <1.18.1 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-16796 - Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-065-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.990029+00:00","id":884,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-029-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 05/13/2026 18:45 PM PDT This is an ongoing issue. Information is subject to change. Please refer to our Security Bulletin (ID: 2026-030-AWS) for the most updated patching information. Description: Amazon is aware of CVE-2026-46300, a report of an additional privilege escalation issue in the Linux kernel related to the DirtyFrag, copy.fail class of issues (CVE-2026-43284). The proof of concept uses a vector via the loadable module espintcp. Amazon Linux does not provide this module, and is not affected. As defense in depth we will include a correctness patch to the core networking code to harden against possible similar issues in network protocol implementations that rely on this behavior.","title":"Fragnesia Local Privilege Escalation report via ESP-in-TCP in the Linux Kernel","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-029-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.992337+00:00","id":885,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-016-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/17 11:15 AM PDT Description: The Amazon EFS CSI Driver is a Container Storage Interface driver that allows Kubernetes clusters to use Amazon Elastic File System. We identified CVE-2026-6437, where an actor with PersistentVolume creation privileges can inject arbitrary mount options via two unsanitized fields: the Access Point ID in volumeHandle and the mounttargetip volumeAttribute. In both cases, appending comma-separated values causes the mount utility to parse them as separate mount options. No AWS service is affected. Impacted versions: EFS CSI Driver <&equal; v3.0.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-6437 - Mount Option Injection in Amazon EFS CSI Driver","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-016-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:21.998265+00:00","id":887,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-046-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/18/2026 17:30 PM PDT Description: containerd is an open-source container runtime used by Kubernetes via the Container Runtime Interface (CRI) plugin. It underpins AWS managed container services including Amazon Elastic Kubernetes Service (Amazon EKS), Amazon Elastic Container Service (Amazon ECS), AWS Fargate, Bottlerocket, and Amazon Linux. AWS identified five issues in the containerd CRI plugin affecting versions 1.7 through 2.3. - CVE-2026-50195 (GHSA-cvxm-645q-p574) - CRI checkpoint import, local image tag poisoning - CVE-2026-53488 (GHSA-xhf5-7wjv-pqxp) - image-config LABEL -> host-root command exec - CVE-2026-53492 (GHSA-33vj-92qq-66hc) - CDI annotation smuggling during checkpoint restore - CVE-2026-53489 (GHSA-rgh6-rfwx-v388) - arbitrary host file read via symlink in checkpoint restore - CVE-2026-47262 (GHSA-jpcc-p29g-p8mq) - image-triggered runtime DoS Impacted versions: containerd 1.7, 2.0, 2.1, 2.2, 2.3 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issue with containerd CRI Plugin - CVE-2026-50195, CVE-2026-53488, CVE-2026-53492, CVE-2026-53489, CVE-2026-47262","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-046-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.002191+00:00","id":888,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-003-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/01/23 12:30 PM PST Description: Firecracker is an open source virtualization technology that is purpose-built for creating and managing secure, multi-tenant container and function-based services. Firecracker runs in user space and uses the Linux Kernel-based Virtual Machine (KVM) to create microVMs. Each Firecracker microVM is further isolated with common Linux user-space security barriers by a companion program called \"jailer\". The jailer provides a second line of defense in case a user escapes from the microVM boundaries and it is released at each Firecracker version. We are aware of CVE-2026-1386, an issue that is related to the Firecracker jailer, which under certain circumstances can allow an user to overwrite arbitrary files in the host filesystem. AWS services that use Firecracker are not impacted by the issue as we appropriately restrict access to the host and the jailer folder, blocking the preconditions required for the attack to happen. Impacted versions: Firecracker version v1.13.1 and earlier and 1.14.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-1386 - Arbitrary Host File Overwrite via Symlink in Firecracker Jailer","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-003-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.004018+00:00","id":889,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-032-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 05/15/2026 11:45 AM PDT Description: coreMQTT is a lightweight MQTT client library for embedded devices. We identified CVE-2026-8686, an issue where missing bounds validation in the MQTT v5.0 SUBACK and UNSUBACK property parser in coreMQTT before 5.0.1 allows an MQTT broker to cause a denial of service (crash via heap out-of-bounds read) by sending a crafted packet. Impacted versions: v5.0.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-8686 - Heap out-of-bounds read in coreMQTT MQTT5 property parsing","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-032-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.009963+00:00","id":890,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-059-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/17/2026 12:00 PM PDT Description: Amazon Athena is a serverless, interactive query service that lets you analyze data directly in Amazon S3 using standard SQL. Athena Query Federation is a feature that allows you to connect to data sources outside of Amazon S3 like DynamoDB, Azure Synapse, and custom connectors using standard SQL syntax. These connectors are open source and deployed to the Athena service on a regular basis. We identified CVE-2026-12283. A user with access to an Azure Synapse account can create a table with a specially crafted name that, when queried through the Athena Synapse connector, could result in unintended data being returned. Impacted versions: - versions >= v2022.20.1 (released on 5/19/2022) AND - versions <= v2026.19.1 (released on 5/28/2026) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-12283 - Issue with Athena Federated Query Synapse Connector","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-059-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.013794+00:00","id":891,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-075-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/05/2026 12:30 PM PDT Description: The AWS Transform MCP Server (awslabs.aws-transform-mcp-server) is an open-source Model Context Protocol (MCP) server that runs locally on a developer's machine and lets AI-powered assistants interact with AWS Transform to run code-transformation jobs and retrieve their artifacts. We identified CVE-2026-18953. Improper limitation of a pathname to a restricted directory in the get_resource tool in awslabs.aws-transform-mcp-server before 0.1.5 might allow a context-dependent actor to write arbitrary files outside the intended working directory via the savePath parameter, which could lead to local code execution. Impacted versions: >=0.1.0 AND <=0.1.4 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18953 - Improper limitation of a pathname in AWS Transform MCP Server","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-075-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.020143+00:00","id":893,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-062-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/21/2026 13:15 PM PDT Description: s2n-tls is an open source C99 implementation of the TLS/SSL protocol. We have identified two distinct issues: - CVE-2026-16317: Silent Drop of TLS 1.3 Encrypted Records in s2n-tls Missing validation of the outer content_type byte on TLS 1.3 encrypted records in s2n-tls allows an active man-in-the-middle to silently drop individual application data records without either endpoint detecting the modification. RFC 8446 Section 5.2 requires that the outer content_type of all encrypted TLS 1.3 records must be application_data (0x17). The s2n-tls AEAD implementation hardcodes this value in the additional authenticated data rather than using the actual wire byte, so the outer content_type is not covered by the authentication tag. All TLS 1.3 connections are affected. Both TLS clients and servers are affected. TLS 1.2 and QUIC connections are not affected. - CVE-2026-16318: QUIC Transport Parameters Memory Leak During HelloRetryRequest in s2n-tls Incorrect use of s2n_alloc instead of s2n_realloc in the QUIC transport parameters extension handler in s2n-tls causes one memory allocation to be leaked each time a QUIC-enabled TLS 1.3 connection goes through a HelloRetryRequest. This can occur during normal handshakes when a client offers a key share group the server does not prefer, and can lead to increased memory consumption on long-running server processes. Only QUIC-enabled deployments are affected. Impacted versions: <= v1.7.5 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-16317 and CVE-2026-16318: Issues with s2n-tls: an open-source implementation of the TLS/SSL protocols","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-062-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.022573+00:00","id":894,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-028-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/05/08 11:30 AM PDT Description: Amazon Redshift JDBC Driver is a Type 4 JDBC driver that provides database connectivity through the standard JDBC application program interfaces (APIs). We identified an issue in Amazon Redshift JDBC Driver versions prior to 2.2.2. Under certain conditions, the driver could load and execute arbitrary classes when processing JDBC connection URL parameters. An actor who can influence the connection URL could potentially execute code in the application context. Impacted versions: Amazon Redshift JDBC Driver < 2.2.2 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-8178 - Remote Code Execution via Unsafe Class Loading in Amazon Redshift JDBC Driver","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-028-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.025008+00:00","id":895,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-080-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/12/2026 12:30 PM PDT Description: The AWS SDK for C++ is an open-source library that provides C++ developers with APIs for AWS services. Its core library includes a Base64 codec used by the generated service clients for a variety of features.We identified the following CVEs: - CVE-2026-19642 - Out-of-bounds write in the Base64 decoder in the AWS SDK for C++ - CVE-2026-19643 - Out-of-bounds read in the Base64 decoder in the AWS SDK for C++ For CVE-2026-19642, certain inputs to the Base64 decoder might cause the decoder to write past the end of its heap-allocated output buffer, which might crash or corrupt memory in the process performing the decode. Remote code execution has not been demonstrated. For CVE-2026-19643, certain inputs to the Base64 decoder, on some platforms, might cause the decoder to read outside the bounds of its decode table, which might crash the process performing the decode. For both issues, impact is confined to the process of the application performing the decode. Impacted Versions: AWS SDK for C++: <= 1.11.861 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-19642 & CVE-2026-19643 - Memory-safety issues in the Base64 decoder in the AWS SDK for C++","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-080-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.026666+00:00","id":896,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-058-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/16/2026 10:15 AM PDT Description: Bedrock AgentCore Python SDK (bedrock-agentcore) is an open-source Python library that provides client tools for building AI agents on the Amazon Bedrock AgentCore platform. We identified CVE-2026-15737 in the OpenTelemetry instrumentation of the SDK. Affected versions wrote raw user prompts and complete agent responses into OpenTelemetry span attributes on every invocation without filtering or masking. These spans flow into the customer's aws/spans CloudWatch log group, where a local authenticated user with CloudWatch Logs read access could access the potentially sensitive content. Impacted versions: 1.4.8, 1.5.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-15737 - Sensitive content disclosure via OpenTelemetry spans in AgentCore Python SDK","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-058-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.028347+00:00","id":897,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-045-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/15/2026 11:45 AM PDT Description: Kiro IDE is an agentic development environment that makes it easy for developers to ship real engineering work with the help of AI agents. We identified CVE-2026-11931, where incorrect default permissions in Kiro IDE on macOS and Linux before version 0.11.133 could expose the authentication token cache file to other local users or processes via world-readable permissions (0644) instead of owner-restricted permissions (0600). Impacted versions: < 0.11.133 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-11931 - Insecure Permissions on Authentication Token Cache File in Kiro IDE","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-045-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.030927+00:00","id":898,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-002-AWS Scope: AWS Content Type: Informational Publication Date: 2026/01/15 07:03 AM PST Description: A security research team identified a configuration issue affecting the following AWS-managed open source GitHub repositories that could have resulted in the introduction of inappropriate code: - aws-sdk-js-v3 - aws-lc - amazon-corretto-crypto-provider - awslabs/open-data-registry Specifically, researchers identified the above repositories' configured regular expressions for AWS CodeBuild webhook filters intended to limit trusted actor IDs were insufficient, allowing a predictably acquired actor ID to gain administrative permissions for the affected repositories. We can confirm these were project-specific misconfigurations in webhook actor ID filters for these repositories and not an issue in the CodeBuild service itself. The researchers carefully demonstrated the potential to commit inappropriate code, through an empty code commit, to one repository and promptly informed AWS Security of their research activity and its potential negative impact. No inappropriate code was introduced to any of the affected repositories during this security research activity, the demonstrated empty code commit to one repository had no impact to any AWS customer environments and did not impact any AWS services or infrastructure. No customer action is required. Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Unanchored ACCOUNT_ID webhook filters for CodeBuild","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-002-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.033412+00:00","id":899,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-063-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/23/2026 08:30 AM PDT Description: The AWS API MCP Server (awslabs.aws-api-mcp-server) is an open-source MCP server that lets AI assistants execute AWS CLI commands against a user's AWS account. It includes an optional, user-configured security policy that can deny or gate specific AWS operations. We identified CVE-2026-16584. On startup, the server loads the data used to enforce this security policy. If that initialization fails, the server continues running with the per-request policy check skipped for the lifetime of the process. When a security policy is configured without the fail-closed modes enabled, an actor could then cause AWS API operations that the policy was configured to deny or gate to execute without enforcement. IAM permissions on the configured credentials remain in effect and are unaffected. Impacted versions: >= 0.2.13 AND < 1.3.47 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-16584 - AWS API MCP Server Security Policy Bypass via Startup Failure","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-063-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.034860+00:00","id":900,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-033-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 05/18/2026 13:45 PM PDT Description: amazon-redshift-python-driver is the official Python connector for Amazon Redshift. We identified a code injection issue in versions 2.1.13 and earlier that could allow a rogue server or man-in-the-middle to execute arbitrary code on the client. Impacted versions: <=2.1.13 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-8838 - Remote Code Execution in amazon-redshift-python-driver","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-033-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.036808+00:00","id":901,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-020-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/27 13:15 PM PDT Description: QnABot on AWS is an open-source solution that provides a multi-channel, multi-language conversational interface powered by Amazon Lex, Amazon OpenSearch Service, and optionally Amazon Bedrock. We identified CVE-2026-7191, where the improper use of the static-eval npm package may allow an authenticated administrator to execute arbitrary code within the fulfillment Lambda execution context. By injecting a crafted conditional chaining expression via the Content Designer interface, an actor with Admin access could bypass the intended expression sandbox through JavaScript prototype manipulation. Successful exploitation may grant direct access to backend resources, including Lambda environment variables, OpenSearch indices, S3 objects, and DynamoDB tables, that are not exposed through normal administrative interfaces. Impacted versions: <=7.2.4 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-7191- Arbitrary Code Execution via Sandbox Bypass in QnABot on AWS","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-020-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.038941+00:00","id":902,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-015-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/07 15:30 PM PDT Description: Firecracker is an open source virtualization technology that is purpose-built for creating and managing secure, multi-tenant container and function-based services. We identified CVE-2026-5747, an out-of-bounds write issue in the virtio PCI transport in Firecracker 1.13.0 through 1.14.3 and 1.15.0 on x86_64 and aarch64 that might allow a local guest user with root privileges to crash the Firecracker VMM process or potentially execute arbitrary code on the host via modification of virtio queue configuration registers after device activation. Achieving code execution on the host requires additional preconditions, such as the use of a custom guest kernel or specific snapshot configurations. No AWS service is affected. Impacted versions: Firecracker >= 1.13.0 AND <= 1.14.3 AND 1.15.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-5747 - Out-of-bounds Write in Firecracker virtio-pci Transport","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-015-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.040667+00:00","id":903,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-076-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/05/2026 13:00 PM PDT Description: Amazon DocumentDB MCP Server is an open-source Model Context Protocol (MCP) server that enables AI assistants to interact with Amazon DocumentDB databases. We identified CVE-2026-18954, an incorrect authorization issue where write-capable aggregation pipeline stages ($out, $merge) bypass the read-only mode enforcement logic, potentially allowing an authenticated MCP client to perform write operations on the connected database. Impacted versions: < 1.0.12 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18954 - Incorrect authorization in the aggregation pipeline tool in Amazon AWS Labs DocumentDB MCP Server","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-076-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.043437+00:00","id":904,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-050-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/01/2026 12:15 PM PDT Description: AWS CDK (aws-cdk-lib) is an open-source framework for defining cloud infrastructure in code and provisioning it through AWS CloudFormation. We identified CVE-2026-13760, an OS command injection issue in the NodejsFunction Docker bundling pipeline in aws-cdk-lib before 2.260.0 that could allow an actor who controls dependency version strings in a project's package.json file to execute arbitrary commands on the host running the CDK toolchain via injected shell metacharacters in the OsCommand helper. This issue requires the actor to control the content of a package.json dependency version string that is processed during Docker-based bundling with nodeModules specified. Impacted versions: < 2.260.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-13760 - OS Command Injection in NodejsFunction Docker Bundling in aws-cdk-lib","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-050-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.045434+00:00","id":905,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-078-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/12/2026 11:30 AM PDT Description: OpenSearch is a community-driven, open-source search and analytics suite. We identified CVE-2026-19311, a missing authorization issue in the Execute Monitor API of the OpenSearch Alerting plugin. This issue may allow an authenticated user with the alerting_full_access role to read, modify, or delete arbitrary index data via a crafted inline monitor request with unintentional data source and input index parameters. Impacted versions: OpenSearch Alerting Plugin (open-source, self-managed): - Affected: 2.4.0 through 2.19.5, 3.0.0 through 3.7.0 - Fixed: 2.19.6, 3.8.0 Amazon OpenSearch Service (AWS Managed): - Affected: All domains running engine versions 2.4 through 3.5 - Fixed: Service software R20260428-P3 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-19311- Missing Authorization in OpenSearch Alerting Plugin","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-078-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.046767+00:00","id":906,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-035-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 05/22/2026 09:45 AM PDT Description: Kiro CLI is a command-line AI coding assistant that enables developers to interact with AI models to execute code, manage files, and run shell commands. We identified CVE-2026-9255, an issue where missing input source validation in the tool authorization prompt could allow a local actor to execute arbitrary tools, including shell commands, without user approval by crafting content that is piped to kiro-cli via stdin. Impacted versions: kiro-cli prior to 1.28.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-9255 - Tool Execution Without Authorization via Piped Stdin in Kiro CLI","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-035-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.048385+00:00","id":907,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-060-AWS Scope: AWS Content Type: Important (requires attention) / Informational Publication Date: 07/17/2026 12:45 PM PDT Description: AWS HealthOmics is a HIPAA-eligible service that fully manages the compute, storage, and workflow engine infrastructure required to run bioinformatics analyses at scale for clinical diagnostics, drug discovery, and agricultural research. We identified CVE-2026-15415, where improper limitation of a pathname to a restricted directory in the linting tools of the AWS HealthOmics MCP Server (aws-healthomics-mcp-server) before version 0.0.36 might allow an actor who can influence the MCP agent to write an actor-controlled content to arbitrary locations outside the intended workflow bundle directory, via directory traversal sequences in the workflow_files input. Impacted versions: aws-healthomics-mcp-server <= 0.0.35 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-15415 - Path traversal and arbitrary file write in the workflow linters of aws-healthomics-mcp-server","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-060-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.049691+00:00","id":908,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-018-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/24 09:15 AM PDT Description: AWS Ops Wheel is an open-source tool that helps teams make random selections using a virtual spinning wheel, deployed into customer AWS accounts via CloudFormation. CVE-2026-6911 relates to an issue where JWT token signature verification was not enforced in the v2 API. CVE-2026-6912 relates to an issue in the v2 Cognito User Pool configuration where attribute write permissions were insufficiently restricted. Impacted versions: AWS Ops Wheel v2 deployments PR-163 and earlier Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issue with AWS Ops Wheel (CVE-2026-6911 and CVE-2026-6912","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-018-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.051375+00:00","id":909,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-043-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/12/2026 11:45 AM PDT Description: AWS Common Runtime aws-c-http is a HTTP client library used by AWS SDKs for handling http requests to AWS services. We identified CVE-2026-12043, an issue where improper handling of HPACK dynamic table size updates in the AWS Common Runtime aws-c-http library might allow a remote actor operating a server to cause memory corruption on a connecting client application, potentially leading to arbitrary code execution, via a crafted sequence of HTTP/2 HEADERS frames. Impacted versions: aws-c-http >= 0.4.22 AND <= 0.10.15 Exposed in following sdk versions: - aws-sdk-cpp >= 1.11.41, <= 1.11.814 - aws-sdk-java-v2 >= 2.44.27, <= 2.44.14 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-12043 - Heap double-free in AWS Common Runtime aws-c-http","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-043-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.055295+00:00","id":911,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-051-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/01/2026 12:45 PM PDT Description: The AWS Advanced JDBC Wrapper is an open-source JDBC driver wrapper that extends a JDBC driver to enable Amazon Aurora and AWS Cloud features such as failover handling and caching. We identified CVE-2026-14265, an issue in the RemoteQueryCachePlugin of the AWS Advanced JDBC Wrapper. When this plugin is enabled, query results read from the shared Redis/Valkey cache are deserialized without class filtering. An actor with write access to the shared cache infrastructure could insert a crafted serialized Java object that, when read by an application, results in execution of arbitrary code on the application server. Impacted versions: >=3.3.0 AND <=4.0.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-14265- Deserialization of Untrusted Data in AWS Advanced JDBC Wrapper RemoteQueryCachePlugin","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-051-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.056960+00:00","id":912,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-001-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/01/09 13:15 PM PST Description: Kiro is an agentic IDE users install on their desktop. We identified CVE-2026-0830 where opening a maliciously crafted workspace may lead to arbitrary command injection in Kiro IDE before Kiro version 0.6.18. This may occur if the workspace has specially crafted folder names within the workspace containing injected commands. Resolution: Kiro IDE <0.6.18 Please refer to the article below for the most up-to-date information related to this AWS Security Bulletin.","title":"CVE-2026-0830 - Command Injection in Kiro GitLab Merge Request Helper","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-001-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.058561+00:00","id":913,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-027-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/05/07 19:45 PM PDT Description: Amazon is aware of a class of issues in the Linux kernel related to the original issue (CVE-2026-31431). The issues commonly referred to as \"DirtyFrag\" are present in a number of loadable modules, including xfrm_user/esp4/esp6 and ipcomp4/ipcomp6. On systems that allow unprivileged users to create sockets directly or through CAP_NET_ADMIN, or allow the creation of unprivileged user namespaces (user+net), an actor may gain access to kernel memory and thus escalate their privileges. Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Dirty Frag and other issues in Amazon Linux kernels","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-027-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.061460+00:00","id":914,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-077-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/06/2026 11:00 AM PDT Description: Strands Agents is an open-source SDK for building AI agents. The strands-agents-tools package provides pre-built tools for use with the SDK, including the mongodb_memory, elasticsearch_memory, and mem0_memory tools for storing and retrieving agent memories. We identified CVE-2026-19111, an insecure direct object reference (IDOR) issue in the mongodb_memory, elasticsearch_memory, and mem0_memory tools. Each tool uses a namespace field as the sole tenant-isolation key, and that namespace was exposed as a parameter the large language model (LLM) could control through the tool schema. A crafted prompt could cause a tool to emit a call with a forged namespace, allowing a remote authenticated user to read, modify, or delete memories belonging to other tenants, or to inject false memories into another tenant's namespace. The standalone mongodb_memory and elasticsearch_memory functions additionally exposed connection parameters, which could allow the memory layer to be redirected to an actor-specified cluster. Impacted versions: < 0.8.3 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-19111 - Insecure direct object reference in Strands Agents Tools memory tools","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-077-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.063295+00:00","id":915,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-079-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/12/2026 11:45 AM PDT Description: OpenSearch is a community-driven, open-source search and analytics suite. We identified CVE-2026-18952, a missing input validation issue in the threat intelligence feed parser of the OpenSearch Security Analytics plugin. This issue may allow an authenticated user with the security_analytics_full_access role to perform server-side request forgery (SSRF) and read local files via a crafted URL parameter to the threat intel source configuration endpoint. Impacted Versions: OpenSearch Security Analytics Plugin (open-source, self-managed): - Affected: >= 2.15.0 - Fixed: >= 3.5.0 Amazon OpenSearch Service (AWS Managed): - Affected: Domains running engine versions >= 2.15.0 - Fixed: Addressed via service software update for engine version 3.5. The affected functionality is not enabled in the default service configuration. Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18952 - Missing Input Validation in OpenSearch Security Analytics Plugin","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-079-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.065077+00:00","id":916,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-017-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/20 12:45 PM PDT Description: AWS Encryption SDK (ESDK) for Python is a client-side encryption library. We identified CVE-2026-6550, which describes an issue with a key commitment policy bypass via shared key cache. Cryptographic algorithm downgrade in the caching layer of Amazon AWS Encryption SDK for Python before version 3.3.1 and before version 4.0.5 might allow an authenticated local threat actor to bypass key commitment policy enforcement via a shared key cache, resulting in ciphertext that can be decrypted to multiple different plaintexts. Impacted versions: - From 2.0 to 2.5.1 - From 3.0 to 3.3.0 - From 4.0 to 4.0.4 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-6550 - Key commitment policy bypass via shared key cache in AWS Encryption SDK for Python","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-017-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.067064+00:00","id":917,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-053-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/07/2026 09:45 AM PDT Description: AWS Research and Engineering Studio (RES) is an open-source solution that enables researchers and engineers to create and manage secure virtual desktops and computing resources on AWS. We identified an improper link resolution before file access issue (CWE-59) in the Auth.GetUserPrivateKey API. An authenticated remote user could read arbitrary files on the cluster-manager EC2 instance by replacing their SSH private key file (~/.ssh/id_rsa) with a symbolic link targeting any file on the host. Because the cluster-manager process runs as root, any file readable by root is exposed, including other users' SSH private keys and application configuration secrets. Impacted versions: <=2026.03 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-14904 - Improper Link Resolution in Auth.GetUserPrivateKey in AWS Research and Engineering Studio","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-053-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.068870+00:00","id":918,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-061-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/21/2026 12:45 PM PDT Description: Smithy-RS is a Rust code generation and runtime framework that generates HTTP clients and servers from Smithy interface definitions, powering the AWS SDK for Rust and custom service implementations. We identified CVE-2026-15957, where uncontrolled recursion in the JSON, CBOR, and XML deserializer functions emitted by Amazon smithy-rs code generation could allow a third party to cause a denial of service (process abort via stack exhaustion) via a small request containing deeply nested data for a recursive model shape to a generated SDK or server. Impacted versions: aws-sdk-rust crates < release-2026-06-0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-15957 - Uncontrolled recursion in smithy-rs generated JSON, CBOR, and XML deserializers allows unauthenticated remote denial of service via recursive shapes","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-061-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.070282+00:00","id":919,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-009-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/03/17 12:15 PM PDT Description: Kiro is an AI-powered IDE for agentic software development. We identified CVE-2026-4295, where improper trust boundary enforcement allowed arbitrary code execution when a user opened a maliciously crafted project directory. Impacted versions: < 0.8.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Arbitrary code execution via crafted project files in Kiro IDE","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-009-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.072290+00:00","id":920,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-034-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 05/20/2026 12:45 PM PDT Description: rabbitmq-aws is a RabbitMQ plugin that resolves AWS ARNs in broker configuration at startup, fetching secrets (e.g., TLS certificates, private keys, passwords) from AWS services (Secrets Manager, S3, ACM Private CA) and passing them in-memory to RabbitMQ. We identified CVE-2026-9133, an active debug code issue in the plugin's ARN resolver. A debug ARN scheme (arn:aws-debug:file) accepted by the PUT /api/aws/arn/validate validation endpoint might allow remote authenticated users to perform arbitrary file reads on any file accessible to the RabbitMQ process. The debug code was inadvertently shipped in production builds with no mechanism to disable it. Impacted versions: >=0.1.0, <=0.2.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-9133 - Arbitrary file read in rabbitmq-aws plugin","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-034-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.074666+00:00","id":921,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-044-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/17/2026 14:15 PM PDT Description: The AWS Bedrock AgentCore Python SDK (bedrock-agentcore) is an open-source SDK that enables developers to build, deploy, and manage agents on AWS Bedrock AgentCore. We identified CVE-2026-12530, an issue in the install_packages() method of the Code Interpreter client. The method applied an incomplete blocklist to sanitize package name arguments before constructing a 'pip install' shell command executed within the Code Interpreter sandbox. This allowed crafted package name arguments to bypass validation \u2010 most critically, pip's '\u2010\u2010index\u2010url' flag, which could redirect package resolution to an third\u2010party\u2010controlled PyPI server, and the '-r' flag, which could read and expose arbitrary sandbox files. Impacted versions: AWS Bedrock AgentCore Python SDK (bedrock-agentcore) versions >= 1.1.3 and < 1.6.1 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-12530 - Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-044-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.076874+00:00","id":922,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-070-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/03/2026 12:00 PM PDT Description: AWS Amazon MQ MCP Server (awslabs.amazon-mq-mcp-server) is a Model Context Protocol server that enables AI assistants to interact with Amazon MQ message brokers. We identified CVE-2026-18655, an improper restriction of intended endpoints in the RabbitMQ broker connection tools of the Amazon MQ MCP Server (awslabs.amazon-mq-mcp-server) before 2.0.24 that may allow a remote unauthenticated actor to obtain Amazon MQ for RabbitMQ broker credentials or OAuth access tokens sent to a crafted endpoint controlled through a broker hostname introduced in the MCP client context. Impacted versions: <= 2.0.23 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18655 - Broker Credential and OAuth Token Disclosure in AWS Labs Amazon MQ MCP Server via Prompt Injection","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-070-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.078406+00:00","id":923,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-026-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/05/06 17:30 PM PDT Description: Amazon is aware of an issue in the Linux kernel (CVE-2026-31431) that could potentially allow an authenticated local user to escalate privileges. With the exception of the services listed below, AWS customers are not affected. See below for specific guidance on affected services. As a best practice, AWS recommends that you apply all security patches and software version updates as soon as they become available. Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-31431","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-026-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.083371+00:00","id":925,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-069-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/31/2026 12:30 PM PDT Description: Strands Agents is an open-source SDK for building AI agents. The strands-agents-tools package provides pre-built tools for use with the SDK, including the http_request tool for making HTTP API requests. We identified CVE-2026-18394, an incorrect authorization issue in the http_request tool. Operators can use the HTTP_REQUEST_TOKEN_CONFIG allowlist to bind a credential to a set of approved hostnames so it is sent only to those hosts. The tool also exposed a proxies parameter in the input schema that the large language model (LLM) could control. A crafted prompt, for example one delivered through untrusted web content the agent reads (indirect prompt injection), could set proxies to an actor-controlled endpoint. The hostname allowlist check still passes on the request URL, the credential is attached, and the request is routed through the actor's proxy on the first hop, disclosing the credential in cleartext in the Authorization header. Impacted versions: < 0.8.2 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18394 - Incorrect authorization in Strands Agents Tools http_request tool","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-069-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.085583+00:00","id":926,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-052-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/06/2026 13:45 PM PDT Description: Amazon mcp-gateway-registry is an open-source gateway and registry for Model Context Protocol (MCP) servers, providing centralized discovery, authentication/authorization, and proxying of MCP tools for AI agents. We identified CVE-2026-14471, an issue in the metrics-service retention policy management component where a caller-supplied table_name value is interpolated into SQL statements in identifier position without proper neutralization. An authenticated remote user is able to supply a crafted table_name value to execute arbitrary SQL queries against the metrics database. This allows the user to read stored data (including API key material) and to delete or alter stored data. Impacted versions: >=1.0.3 AND <=1.0.12 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-14471 - Authenticated SQL injection in the metrics-service retention policy subsystem of mcp-gateway-registry","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-052-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.087342+00:00","id":927,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-054-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/14/2026 13:00 PM PDT Description: AWS HealthLake MCP Server (awslabs.healthlake-mcp-server) is a Model Context Protocol server that enables AI assistants to interact with AWS HealthLake FHIR datastores. We identified CVE-2026-15643, a server-side request forgery in the pagination handling component in AWS awslabs.healthlake-mcp-server before 0.0.14 on all platforms might allow a remote authenticated user to exfiltrate AWS temporary security credentials to an arbitrary endpoint via a crafted next_token parameter. The server does not validate that pagination URLs point back to the expected HealthLake endpoint, allowing an actor to redirect subsequent requests to an actor-controlled server. Impacted versions: < 0.0.14 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-15643 - AWS HealthLake MCP Server SSRF via Unvalidated Pagination URL","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-054-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.089006+00:00","id":928,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-041-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/10/2026 10:45 AM PDT Description: AWS CDK (aws-cdk-lib) is an open-source framework for defining cloud infrastructure in code and provisioning it through AWS CloudFormation. We identified CVE-2026-11417, an OS command injection issue in the NodejsFunction local bundling pipeline in aws-cdk-lib before 2.245.0 (2.246.0 on Windows) that may allow an actor who controls the value of one or more bundling properties (externalModules, define, loader, inject, or esbuildArgs) to execute arbitrary commands on the host running the CDK toolchain via injected shell metacharacters. This issue requires the actor to control the value of one or more of the affected bundling properties in the CDK application. Impacted versions: < 2.245.0 (on Windows, < 2.246.0) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-10740 - Excessive memory allocation in s2n-quic","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-041-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.090511+00:00","id":929,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-071-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/03/2026 12:30 PM PDT Description: AWS Command Line Interface (AWS CLI) is a unified tool to manage AWS services from the command line. We identified CVE-2026-18654, an issue where the EMR SSH helper commands (aws emr ssh, aws emr socks, aws emr put, aws emr get) disabled SSH host key verification, which might allow man-in-the-middle actors to intercept SSH sessions and file transfers via network positioning between the client and the EMR cluster endpoint. Impacted versions: - AWS CLI v1 <= 1.45.27 - AWS CLI v2 <= 2.35.2 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18654 - Disabled SSH host key verification in AWS CLI EMR helper commands","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-071-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.092977+00:00","id":930,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-007-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/03/16 09:15 AM PDT Description: The AWS API MCP Server is an open source Model Context Protocol (MCP) server that enables AI assistants to interact with AWS services and resources through AWS CLI commands. It provides programmatic access to manage your AWS infrastructure while maintaining proper security controls. This server acts as a bridge between AI assistants and AWS services, allowing you to create, update, and manage AWS resources across all available services. The server includes a configurable file access feature that controls how AWS CLI commands interact with the local file system. By default, file operations are restricted to a designated working directory (workdir), but this can be configured to allow unrestricted file system access (unrestricted) or to block all local file path arguments entirely (no-access). We identified CVE-2026-4270: Improper Protection of Alternate Path exists in the no-access and workdir feature of the AWS API MCP Server versions >= 0.2.14 and < 1.3.9 on all platforms may allow the bypass of intended file access restriction and expose arbitrary local file contents in the MCP client application context. Impacted versions: awslabs.aws-api-mcp-server >= 0.2.14, < 1.3.9 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-4270 - AWS API MCP File Access Restriction Bypass","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-007-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.095063+00:00","id":931,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-084-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/20/2026 13:00 PM PDT Description: Amazon Athena is a serverless, interactive query service that lets you analyze data directly in Amazon S3 using standard SQL. Athena Query Federation is a feature that allows you to connect to data sources outside of Amazon S3 like DynamoDB, Azure Synapse, and custom connectors using standard SQL syntax. These connectors are open source and deployed to the Athena service on a regular basis. We identified CVE-2026-75910. Incorrect privilege assignment in the ClickHouse connector deployment template before the v2026.17.1 release could allow an authenticated remote user to read arbitrary AWS Secrets Manager secrets in the deploying account by pointing the connector's connection string at an unrelated secret and at a database endpoint under the user's control, causing the connector to transmit the secret to that endpoint. Impacted versions: < V2026.17.1 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-75910 - Issue with Athena Federated Query Clickhouse Connector","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-084-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.096610+00:00","id":932,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-038-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/02/2026 12:15 PM PDT Description: Graph Explorer is an open source application that provides visualization and exploration of data in graph databases such as Amazon Neptune. We identified CVE-2026-10584 where, under certain circumstances, the server silently falls back to HTTP when HTTPS is enabled but certificates are unavailable, resulting in cleartext transmission of sensitive information. Impacted versions: >= 1.1.0 AND < 3.0.1 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-10584 - HTTPS Fallback to HTTP in Graph Explorer","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-038-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.098432+00:00","id":933,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-008-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/03/16 11:15 AM PDT Description: A missing S3 ownership verification in the Bedrock AgentCore Starter Toolkit before version v0.1.13 may allow a remote actor to inject code during the build process, leading to code execution in the AgentCore Runtime. Impacted versions: All versions of Bedrock AgentCore Starter Toolkit versions before v0.1.13. This issue only affects users of the Bedrock AgentCore Starter Toolkit before version v0.1.13 who build the Toolkit after September 24, 2025. Any users on a version >=v0.1.13, and any users on previous versions who built the toolkit before September 24, 2025 are not affected. Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-4269 - Improper S3 ownership verification in Bedrock AgentCore Starter Toolkit","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-008-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.099827+00:00","id":934,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-068-AWS Publication Date: 07/31/2026 11:00 AM PDT Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18481 - Stored XSS in Participant URL Field leads to Account Takeover via Session Token Theft","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-068-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.102091+00:00","id":935,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-040-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/08/2026 11:45 AM PDT Description: The AWS AgentCore CLI (@aws/agentcore) is a developer tool for managing agent infrastructure lifecycle on Amazon Bedrock AgentCore. We identified CVE-2026-11393 in which improper neutralization of triple-quote characters during Python code generation may allow an authenticated user in the same AWS account to inject arbitrary Python code into the source file generated by the \"agentcore add agent \u2010\u2010type import\" command. Specifically, the collaborationInstruction field of a Bedrock Agent collaborator association was interpolated into a triple-quoted Python docstring using single-quote escaping rather than triple-quote escaping. A user with bedrock:AssociateAgentCollaborator IAM permission could craft a collaborationInstruction value containing \"\"\" to break out of the docstring boundary in the generated main.py of the imported agent. If that generated file was subsequently executed - either via agentcore dev on the developer's local machine, or via agentcore deploy followed by agentcore invoke in the AgentCore Runtime environment - the injected Python would run with the credentials available in that context. Impacted versions: - @aws/agentcore >= 0.4.0 AND <= 0.14.1 - preview versions >= 0.3.0-preview.7.0 and <= 1.0.0-preview.8 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-11393 - Code Injection via Improper Triple-Quote Escaping in AgentCore CLI Bedrock Agent Import","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-040-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.104392+00:00","id":936,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-010-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/03/19 13:30 PM PDT Description: AWS-LC is a general-purpose cryptographic library maintained by AWS. We identified CVE-2026-4428 affecting X.509 certificate verification. A logic error in the CRL (Certificate Revocation List) distribution point matching in AWS-LC allows a revoked certificate to bypass revocation checks during certificate validation, when the application enables CRL checking and uses partitioned CRLs with Issuing Distribution Point (IDP) extensions. Applications that do not enable CRL checking (X509_V_FLAG_CRL_CHECK) are not affected. Applications using complete (non-partitioned) CRLs without IDP extensions are also not affected. Impacted versions: - CRL Distribution Point Scope Check Logic Error in AWS-LC >= v1.24.0, < v1.71.0 - CRL Distribution Point Scope Check Logic Error in AWS-LC-FIPS >= AWS-LC-FIPS-3.0.0, < AWS-LC-FIPS-3.3.0 - CRL Distribution Point Scope Check Logic Error in aws-lc-sys >= v0.15.0, < v0.39.0 - CRL Distribution Point Scope Check Logic Error in aws-lc-fips-sys >= v0.13.0, < v0.13.13 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-4428: Issues with AWS-LC - CRL Distribution Point Scope Check Logic Error","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-010-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.106037+00:00","id":937,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-012-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/02 11:30 AM PDT Description: Kiro IDE is an agentic development environment that makes it easy for developers to ship real engineering work with the help of AI agents. We identified CVE-2026-5429, where unsanitized input during web page generation in the Kiro Agent webview in Kiro IDE before version 0.8.140 allows a remote unauthenticated threat actor to execute arbitrary code via a maliciously crafted color theme name when a local user opens the workspace. This issue requires the user to trust the workspace when prompted. Impacted versions: < 0.8.140 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-5429 - Kiro IDE Webview Cross-Site Scripting via Workspace Color Theme","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-012-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.107635+00:00","id":938,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-025-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/05/04 15:30 PM PDT Description: Amazon Skylight Workspace Config Service ( slwsconfigservice) is a critical background service within Amazon WorkSpaces that manages system configuration, monitors health, and updates components. We identified CVE-2026-7791 which allows a local non-admin authenticated user to escalate privileges to SYSTEM by exploiting a race condition in the Skylight Workspace Config Service's log file archival process. Impacted versions: < 2.6.2034.0 of the Windows Amazon Skylight Workspace Config Service (slwsconfigservice) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-7791 - Local Privilege Escalation via TOCTOU Race Condition in Amazon WorkSpaces Skylight Agent","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-025-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.109715+00:00","id":939,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-023-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/29 12:30 PM PDT Description: FreeRTOS-Plus-TCP is an open source TCP/IP stack implementation designed for FreeRTOS, providing a standard Berkeley sockets interface and support for essential networking protocols including IPv6, ARP, DHCP, DNS, and Router Advertisement (RA). We identified CVE-2026-7425 and CVE-2026-7426, one of them being out-of-bounds read and another one being out-of-bounds write issues respectively in the IPv6 Router Advertisement option parser where insufficient validation of length fields allows memory operations without proper bounds checking. Either issue can be exploited by any device on the local network that can send crafted Router Advertisement packets. No authentication or user interaction is required. Impacted versions: >=V4.0.0 AND <=V4.2.5, >=V4.3.0 AND <=V4.4.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issue with FreeRTOS-Plus-TCP - IPv6 Router Advertisement Memory Safety Issues","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-023-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.111306+00:00","id":940,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-072-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/03/2026 13:30 PM PDT Description: Strands Agents is an open-source SDK for building AI agents. The strands-agents-tools package provides pre-built tools for use with the SDK, including the shell tool for executing operating system commands on the agent's host. We identified CVE-2026-18733. The shell tool includes a human consent gate that prompts the operator to approve commands before they run. The tool also exposed a non_interactive parameter in the input schema that the large language model (LLM) could control. A crafted prompt, for example one delivered through untrusted content the agent reads (indirect prompt injection), could set non_interactive to true, which bypasses the consent gate and allows arbitrary operating system commands to execute on the agent's host without operator approval. Impacted versions: < 0.8.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18733 - Prompt injection bypasses shell tool consent gate in Strands Agents Tools","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-072-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.112736+00:00","id":941,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-036-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 05/22/2026 11:15 AM PDT Description: Amazon Braket SDK is an open-source Python library for interacting with the Amazon Braket quantum computing service, including managing hybrid quantum jobs and retrieving job results. We identified CVE-2026-9291, an insecure deserialization issue (CWE-502) in the job results processing component. The SDK's deserialize_values() function trusts the dataFormat field from an untrusted JSON file to control whether pickle.loads() is called on the data payload. A remote authenticated user with S3 write access to the job output bucket can modify the dataFormat field in results.json from PLAINTEXT to pickled_v4 and replace data values with executable payloads, achieving arbitrary code execution on any machine that processes job results. Impacted versions: >= 1.10.0 AND < 1.117.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-9291 - Insecure Deserialization in Amazon Braket SDK Job Results Processing","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-036-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.114916+00:00","id":942,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-055-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/14/2026 13:30 PM PDT Description: The AWS Load Balancer Controller is an open-source Kubernetes controller that manages AWS Elastic Load Balancing resources for Kubernetes clusters. We identified CVE-2026-15738, an incorrect rule precedence ordering issue in the Gateway API listener rule generation logic. When both an HTTPRoute and a GRPCRoute are attached to the same Application Load Balancer (ALB) HTTPS listener with the same hostname, the controller assigns ALB listener rule priorities based on route kind rather than route specificity. This causes all HTTPRoute-derived rules to receive lower ALB priority numbers, evaluated first by the ALB, than GRPCRoute-derived rules, regardless of which route is more specific. A namespace-scoped user with permission to create HTTPRoute objects in a namespace admitted by a shared Gateway can create a catch-all HTTPRoute that intercepts traffic intended for a more-specific GRPCRoute in another namespace. Impacted versions: AWS Load Balancer Controller v3.4.1 and any version that includes support for attaching both HTTPRoute and GRPCRoute to the same listener (introduced in PR #4794) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-15738 - Issue with AWS Load Balancer Controller Cross-Namespace Traffic Interception via HTTPRoute/GRPCRoute Priority Ordering","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-055-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.116424+00:00","id":943,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-019-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/24 13:30 AM PDT Description: Multiple security issues have been identified in the tough library and tuftool CLI utility. tough is a Rust library used for generating, signing, and managing TUF (The Update Framework) repositories, and tuftool is the command-line interface for repository management Operations. The following issues have been identified: - CVE-2026-6966 - CVE-2026-6967 - CVE-2026-6968 Impacted versions: - tough: versions 0.1.0 through 0.21.x (inclusive) - tuftool: versions 0.1.0 through 0.14.x (inclusive) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"Issues in tough library and tuftool CLI utility","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-019-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.118639+00:00","id":944,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-085-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/20/2026 13:30 PM PDT Description: Improper input validation in the Time Series Visual Builder (TSVB) plugin in OpenSearch Dashboards before 3.8 allows a remote authenticated user with standard data access permissions to execute arbitrary code on the server by sending a crafted JSON payload to the metrics visualization API endpoint. To mitigate this issue, users should upgrade to OpenSearch Dashboards 3.8 or later. Impacted products and versions: - OpenSearch-Dashboards (open-source, self-managed): >=3.0.0, <3.8.0 - OpenSearch-Dashboards (AWS Managed): >=3.0.0, <3.8.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18420 - Remote Code Execution via Prototype Pollution in OpenSearch Dashboards TSVB Plugin","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-085-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.120640+00:00","id":945,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-006-AWS Scope: AWS Content Type: Informational Publication Date: 2026/03/03 10:15 AM PST Description: Amazon RDS/Aurora is a managed relational database service. We identified CVE-2026-3494. In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (\u2010\u2010) or hash (#) style comments, the statement is not logged. Impacted versions: - MariaDB Server (10.6.24 and prior, 10.11.15 and prior, 11.4.9 and prior, and 11.8.5 and prior) - Amazon Aurora MySQL (2.12.5 and prior, 3.01.0 to 3.04.5, 3.05.1 to 3.10.2, and 3.11.0) - Amazon RDS for MySQL (5.7.44-RDS.20251212 and prior, 8.0.11 to 8.0.44, and 8.4.3 to 8.4.7) - Amazon RDS for MariaDB (10.6.24 and prior, 10.11.4 to 10.11.15, 11.4.3 to 11.4.9, and 11.8.3 to 11.8.5) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"MariaDB Server Audit Plugin Comment Handling Bypass","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-006-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.122273+00:00","id":946,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-037-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/02/2026 08:45 AM PDT Description: Kiro is an agentic IDE users install on their desktop. We identified CVE-2026-10591. Insufficient access control restrictions in the file write tool in Kiro IDE prior to version 0.11 might allow remote unauthenticated actors to execute arbitrary commands via crafted instructions that cause writes to execution-sensitive paths (such as .vscode/tasks.json), enabling auto-execution on folder open. Impacted versions: <0.11 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-10591 - Kiro IDE Insufficient File Write Restrictions to Execution-Sensitive Paths","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-037-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.123169+00:00","id":947,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-18140 - Uncontrolled recursion in the aws-smithy-json unknown-key skip path allows unauthenticated remote denial of service in smithy-rs generated servers","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-067-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.124582+00:00","id":948,"published_date":"2026-08-20T21:35:57+00:00","severity":"medium","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-024-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/04/30 13:30 PM PDT Description: Amazon Elastic Container Service (Amazon ECS) is a fully managed container orchestration service that enables customers to deploy, manage, and scale containerized applications. The Amazon ECS agent supports mounting FSx for Windows File Server volumes in task definitions on Windows EC2 instances. We identified CVE-2026-7461, a command injection issue in FSx volume mounting that enables code execution with SYSTEM privileges via a specially crafted credentials in ECS task definitions. Impacted versions: Version 1.47.0 through 1.102.2 of the ECS Agent for Windows Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-7461 - OS Command Injection in Amazon ECS Agent via FSx Windows File Server Volume Credentials","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-024-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-29T23:17:22.126058+00:00","id":949,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-011-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/03/31 10:15 AM PDT Description: AWS Common Runtime library is used by several AWS SDKs to communicate with event-stream services (Ex. Kinesis, Transcribe). We identified CVE-2026-5190. AWS Common Runtime event-stream decoder component before 0.6.0 might allow a third party operating a server to cause memory corruption leading to arbitrary code execution on a client application that processes crafted event-stream messages. Impacted versions: - aws-c-event-stream < 0.6.0and the following higher level libraries that expose event-stream functionality - aws-iot-device-sdk-cpp-v2 < 1.42.1 - aws-iot-device-sdk-java-v2 < 1.30.1 - aws-iot-device-sdk-python-v2 < 1.28.2 - aws-iot-device-sdk-js-v2 < 1.25.1 - aws-sdk-swift < 1.6.70 - aws-sdk-cpp < 1.11.764 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-5190 - AWS C Event Stream Streaming Decoder Stack Buffer Overflow","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-011-aws"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"First-party AWS security bulletins. Authoritative for the largest cloud provider; bursty (~3.0/day measured) so filter_uncategorized is required to keep non-security service notices out.","created_at":"2026-08-30T00:16:49.228884+00:00","id":1369,"published_date":"2026-08-20T21:35:57+00:00","severity":"high","source_name":"AWS Security Bulletins","summary":"Bulletin ID: 2026-042-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 06/10/2026 11:15 AM PDT Description: s2n-quic is a Rust implementation of the QUIC protocol. We identified CVE-2026-10740, an issue of unbounded memory allocation in the CRYPTO frame reassembler in s2n-quic before 1.82.0. An unauthenticated user can attempt to exhaust server memory on an s2n-quic endpoint by sending crafted CRYPTO frames with high offsets. The buffer used for processing CRYPTO frames does not enforce a maximum size. In the worst case, a single 1200-byte packet can cause approximately 9.4 MB of allocation. By repeatedly sending such packets, the resulting memory pressure could cause denial of service. No valid handshake is required. Impacted versions: < v1.82.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.","title":"CVE-2026-10740 - Excessive memory allocation in s2n-quic","url":"https://aws.amazon.com/security/security-bulletins/rss/2026-042-aws"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Offensive-security research with fast, detailed n-day exploit write-ups on enterprise edge appliances \u2014 the exact class of flaw this feed leads on. filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:25.503846+00:00","id":1026,"published_date":"2026-08-20T21:19:55+00:00","severity":"critical","source_name":"Horizon3.ai","summary":"CVE-2026-19478 is a critical GitLab GraphQL code injection vulnerability that can allow unauthenticated attackers to modify or delete public projects and user data.","title":"CVE-2026-19478 | GitLab CE/EE GraphQL Directive Code Injection Vulnerability","url":"https://horizon3.ai/attack-research/vulnerabilities/cve-2026-19478"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.918647+00:00","id":100,"published_date":"2026-08-20T20:42:18+00:00","severity":"medium","source_name":"Dark Reading","summary":"Enterprise cybersecurity expert Jake Williams joins the Dark Reading News Desk to explain why he decided to release his new agentic AI framework in the wake of the OpenAI attacks on Hugging Face.","title":"New CUSTODY Framework Constrains AI Agents Inside the Network","url":"https://www.darkreading.com/perimeter/new-custody-framework-constrains-ai-agents-inside-network"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.924896+00:00","id":101,"published_date":"2026-08-20T19:11:15+00:00","severity":"medium","source_name":"Dark Reading","summary":"In this video, Dark Reading editors discuss some of the news they didn't get a chance to cover, including some scary airplane security risks and the US government's newest \"hack back\" strategy.","title":"What We Missed: Delta Flight Disrupted With Wi-Fi Hack","url":"https://www.darkreading.com/cyber-risk/delta-flight-disrupted-wi-fi-hack"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Cloud security posture and vulnerability research. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:24.024499+00:00","id":1009,"published_date":"2026-08-20T18:44:46+00:00","severity":"medium","source_name":"Orca Security","summary":"Introduction Three days. That\u2019s how long federal agencies now have to patch their riskiest vulnerabilities, and for the first time, a high CVSS score alone won\u2019t land a vulnerability in that bucket. On June 10, 2026, CISA issued Binding Operational Directive (BOD) 26-04, \u201cPrioritizing Security Updates Based on Risk.\u201d It replaces two long-standing directives, BOD [\u2026]","title":"BOD 26-04 Just Changed How Federal Agencies Prioritize Vulnerabilities.","url":"https://orca.security/resources/blog/bod-26-04-just-changed-how-federal-agencies-prioritize-vulnerabilities"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Cloud security posture and vulnerability research. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:24.029097+00:00","id":1010,"published_date":"2026-08-20T18:19:47+00:00","severity":"high","source_name":"Orca Security","summary":"Executive Summary A critical vulnerability (CVE-2026-32475, CVSS 9.0) was disclosed affecting the Elementor Pro WordPress plugin, allowing attackers to upload arbitrary PHP files and achieve remote code execution via the Forms module\u2019s File Upload handling. Due to the potential for full server compromise, immediate patching is required. About CVE-2026-32475 The issue originates from the Forms [\u2026]","title":"Critical Elementor Pro File Upload Flaw Enables Unauthenticated Remote Code Execution on WordPress Sites","url":"https://orca.security/resources/blog/elementor-pro-wordpress-rce-flaw"},{"category":"Malware/Infostealer","confidence":"HIGH","confidence_reason":"University of Toronto \u2014 gold-standard surveillance/spyware research. NSO Group, Predator, Pegasus. filter_uncategorized drops political commentary, keeps classified threat research.","created_at":"2026-08-29T23:17:04.607287+00:00","id":491,"published_date":"2026-08-20T17:52:13+00:00","severity":"medium","source_name":"The Citizen Lab","summary":"Apple customers in 110 countries received threat notifications recently alerting them to suspected spyware attacks targeting their devices. The post \u2018Unprecedented\u2019 Number of Apple Users Received Recent Spyware Alert appeared first on The Citizen Lab.","title":"\u2018Unprecedented\u2019 Number of Apple Users Received Recent Spyware Alert","url":"https://citizenlab.ca/unprecedented-number-of-apple-users-received-recent-spyware-alert"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.353777+00:00","id":721,"published_date":"2026-08-20T17:30:39+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Follow the money","title":"US Bank investigates LockBit's claims as ransomware crims set pay-or-leak deadline","url":"https://www.theregister.com/security/2026/08/20/us-bank-investigates-lockbits-claims-as-ransomware-crims-set-pay-or-leak-deadline/5290560"},{"category":"Nation State/APT","confidence":"MEDIUM","confidence_reason":"Primary cloud-security research (cross-tenant isolation, container escape, cloud IAM). Vendor context; filter_uncategorized drops heavy product marketing. Long archive but only 64 entries inside the 90-day guard (~0.8/day).","created_at":"2026-08-29T23:17:22.697467+00:00","id":953,"published_date":"2026-08-20T15:56:39+00:00","severity":"medium","source_name":"Wiz","summary":"Malicious versions of the arrayref Rust crate (and others) executed a backdoor at compile time. The campaign's infrastructure overlaps with recent DPRK supply chain attacks, including Mastra and axios.","title":"Rust Supply Chain Attack on arrayref: Significant Overlap with DPRK Campaigns","url":"https://www.wiz.io/blog/rust-supply-chain-attack-on-arrayref-significant-overlap-with-dprk-campaigns"},{"category":"Ransomware","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.360516+00:00","id":722,"published_date":"2026-08-20T14:27:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Because apparently even ransomware gangs can't trust the people they do business with","title":"Ransomware crook poses as recovery firm to steal payments from fellow extortionists","url":"https://www.theregister.com/cyber-crime/2026/08/20/ransomware-crook-poses-as-recovery-firm-to-steal-payments-from-fellow-extortionists/5290344"},{"category":"OT/ICS","confidence":"MEDIUM","confidence_reason":"Vulnerability-management research with fast Patch Tuesday and KEV-adjacent analysis. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:17:24.322814+00:00","id":1015,"published_date":"2026-08-20T14:01:58+00:00","severity":"high","source_name":"Tenable","summary":"A joint cybersecurity advisory released by multiple U.S. government agencies warns that threat actors are using AI-generated exploitation scripts to target exposed Siemens S7 Series PLCs across critical infrastructure sectors. Key Takeaways Unattributed threat actors are exploiting known weaknesses and unnecessary internet exposure to conduct reconnaissance and possible pre-positioning for future disruptive attacks against Siemens S7 Series PLCs. The attackers are leveraging AI to build and refine exploit scripts faster than manual development would allow. AI use lowers the technical bar for ICS attacks in a way defenders haven't had to plan for before. There is no single patch, because there is no single flaw. Mitigation depends on removing Siemens S7 Series PLCs from direct internet exposure, segmenting OT from IT networks and hardening access controls. Background On August 19, 2026, the National Security Agency (NSA), the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), the Department of Energy (DOE) and the Environmental Protection Agency (EPA) released a joint Cybersecurity Advisory (AA26-231A) warning that threat actors are actively targeting Siemens S7 Series programmable logic controllers (PLCs) that are exposed to the internet or insufficiently segmented from it. The activity spans the S7-200, S7-300, S7-400, S7-1200 and S7-1500 series and most heavily affects the Critical Manufacturing, Energy, Water and Wastewater, Chemical, Food and Agriculture and Commercial Facilities sectors, with potential exposure in the Defense Industrial Base as well. According to the authoring agencies, threat actors are using AI-generated exploitation scripts, disguised as legitimate operational technology (OT) monitoring tools, to conduct reconnaissance and build capability against exposed PLCs. The Tenable Research Special Operations Team (RSO) has put together this frequently asked questions (FAQ) blog to help security and OT teams understand the threats, the techniques involved and the mitigations offered by the authoring agencies. The advisory itself notes that ongoing PLC targeting is broader than Siemens alone and that all PLC owners and operators, regardless of vendor, should apply all relevant mitigations. FAQ What is the active threat to Siemens S7 Series PLCs? The advisory describes coordinated reconnaissance and capability-development activity against Siemens S7 Series PLCs that are internet-exposed or poorly segmented. According to the authoring agencies, the threat actors combine internet scanning services with AI-assisted scripting to build custom tools that can read and write PLC memory, configuration data, and ladder logic programs over the S7comm protocol, while masquerading as legitimate monitoring software.The agencies assess the activity as persistent reconnaissance intended to develop capabilities and pre-position for future disruptive attacks against critical infrastructure Which Siemens PLC models are being targeted? The advisory identifies five Siemens S7 Series product lines as targets: SeriesVariants targetedS7-200All CPU variantsS7-300All CPU variants, including the 314, 315 and 317 modelsS7-400All CPU variantsS7-1200CPU 1211C, 1212C, 1214C, 1215C and 1217C variantsS7-1500All CPU variants including F-series safety controllers How is this different from the Iranian-linked PLC campaign covered in AA26-097A? In April 2026, CISA and its partners, including NSA, the FBI, EPA, DOE, U.S. Cyber Command, and the Treasury Department, issued and later expanded cybersecurity advisory AA26-097A, which detailed a campaign publicly linked to Iran-affiliated actors tracked as CyberAv3ngers. That campaign exploited internet-exposed PLCs from Rockwell Automation, Schneider Electric and Siemens using the vendors' own engineering software to manipulate readings and exfiltrate project files. The updates to that advisory were made just days before the news of attacks involving several water districts, including those in Minnesota. For more information on these attacks, please refer to the RSO blog; Coordinated \"cyberattack\" on U.S. water utilities: What you need to know. This new advisory covers a distinct activity pattern specifically centered on the Siemens S7 Series devices. The authoring agencies do not attribute these attacks to any named threat actor or group. The techniques described in this advisory describe threat actors leveraging AI to design scripts built on open-source industrial automation libraries, including snap7.dll, disguising these scripts as monitoring tools. Organizations should treat the two advisories as related but separate threats to the same class of equipment, and should apply the mitigations in both if they operate Siemens S7 Series PLCs. However, as the advisory points out, regardless of which PLCs your organization may operate, the recommendations are to apply the proper mitigations to help secure these devices, including mitigations from this guide. Which threat actors are behind this activity? The authoring agencies have not attributed this activity to a specific named threat actor or group. The advisory refers to the activity generically as being conducted by \"threat actors\" and describes confirmed reconnaissance, tool development and read/write operations against target PLCs without confirmed attribution to a tracked group. Tenable's RSO team will update this post if attribution information becomes available. What is new about the AI-assisted exploitation described in the advisory? According to the advisory, attackers are using AI to generate exploitation scripts, demonstrating a new capability dimension in the PLC targeting. The advisory describes threat actors combining publicly available open source industrial automation libraries (specifically snap7.dll and python-snap7) with AI-assisted scripting to create custom tools. These tools could be leveraged to provide read/write access to Siemens S7 Series PLC memory, configuration data and ladder logic programs via the S7comm protocol. This represents an evolution in OT threat actor capabilities. AI dramatically reduces the technical expertise required to develop working ICS exploitation tools. Building functional S7comm exploitation scripts previously required specialized protocol knowledge and threat actor use of AI collapses that barrier. Coupling these capabilities with internet accessible devices provides attackers with abundant resources to test, iterate and rapidly improve their exploits. Are specific CVEs associated with this advisory? No individual CVE identifiers are named in the advisory. Instead, the authoring agencies state that if these PLCs are exposed to the internet or insufficiently segmented, threat actors \"can exploit various critical and high severity known vulnerabilities.\" The advisory directs owners and operators to consult Siemens ProductCERT advisories for model and firmware-specific vulnerability details or mitigation options if patches are not available or cannot be immediately applied. Does this involve zero-day exploitation? No. The advisory describes exploitation of known vulnerabilities, weak or default credentials and unnecessary internet exposure, not a previously unknown or undisclosed flaw. The novel element the authoring agencies highlight is the use of AI to generate and rapidly iterate exploitation scripts and evasive tooling, not zero-day exploitation of an undisclosed vulnerability. What techniques are the threat actors using? The advisory maps the observed activity to the MITRE ATT&CK Matrix for ICS and MITRE ATT&CK Matrix for Enterprise frameworks: TacticTechniqueIDReconnaissanceScanning services to find exposed PLCsT1596.005Resource DevelopmentDeveloping exploits to target known Siemens S7 Series vulnerabilitiesT1587.004Resource DevelopmentAI-assisted development of exploit codeT1588.007Lateral MovementAccessing devices with default or improperly configured credentialsT1694ExecutionAbuse AI-generated Python scripts developed using the snap7.dll libraryT0834ExecutionWrite operations on data blocksT0821EvasionMasquerading malicious scripts as legitimate monitoring toolsT0849CollectionPerform reconnaissance by reading controller dataT0893 Is there a proof-of-concept or working exploit code available? The threat actors described in the advisory have functional, custom-built exploitation tooling in active use; this is not an unconfirmed or theoretical capability. However, the authoring agencies have not published this tooling and Tenable is not aware of a publicly available proof-of-concept (PoC) tied to this specific campaign as of the date this blog was published. Because the actors are using AI to generate and rapidly iterate their own scripts, organizations should not treat the absence of a public PoC as a reason to deprioritize mitigation. What are the potential operational impacts? The advisory outlines several potential consequences of unauthorized PLC access: Disruption of critical industrial processes. This can impact production throughput, product quality and public services Safety incidents from manipulation. This could lead to emergency shutdowns, manipulation of safety interlocks or manipulation of process parameters Equipment damage and extended operational downtime Compromise of sensitive operational data Cascading impacts across interconnected systems, supply chains and dependent facilities Regulatory compliance violations tied to process safety management failures Are patches or mitigations available? Because this activity exploits internet exposure, improper configurations and a range of known vulnerabilities, rather than a single flaw, there is no single patch that resolves all risks related to this advisory. Instead, owners and operators are recommended to contact Siemens ProductCERT for firmware updates addressing known vulnerabilities in each affected CPU family, with priority given to internet-facing or DMZ-resident controllers. Additionally, the advisory outlines seven categories of hardening action: Inventory all Siemens S7 Series PLCs and engineering workstations Applying current firmware and TIA Portal/STEP 7 updates Verifying segmentation and blocking TCP port 102 at the network perimeter Strengthen access controls including restricting engineering software access and enabling PLC password protection and multi-factor authentication for remote OT access Deploying ICS-aware monitoring and logging Security hardening including disabling unused protocols, web servers and default SNMP strings Engaging Siemens Technical Support for model-specific guidance What preventative actions should organizations take? Treat internet accessibility as the primary risk factor. Any Siemens S7 Series PLC reachable from the internet, directly or through a third-party integrator's remote access path, should be treated as under active threat. Block TCP port 102 at the network perimeter and verify there is no unauthorized routing between corporate and OT networks. Apply firmware updates for your specific device models, prioritizing internet-facing and DMZ-resident controllers and test updates in a non-production environment before deployment. Restrict engineering software access. Limit TIA Portal and STEP 7 access to authorized engineering workstations through MAC/IP allowlisting, enable PLC password protection and available protection levels and require multi-factor authentication for remote access into OT networks. Ensure engineering workstations are up to date with the latest software and security updates. Monitor for the specific indicators the advisory calls out: snap7.dll or python-snap7 library usage outside approved engineering workstations, S7comm connections from non-engineering hosts, IP scanning on TCP port 102 and PUT/GET write operations to data blocks outside scheduled change windows. Identifying affected systems Tenable customers can use the Tenable One Exposure Management Platform, including Tenable One OT Exposure, to inventory Siemens S7 Series PLCs and other OT assets and prioritize remediation. Tenable One OT Exposure also provides continuous monitoring of your OT assets to provide deep visibility into your industrial control system networks and associated devices. If any individual Siemens S7 CVEs are confirmed relevant to this campaign, we will update this blog with relevant plugin coverage. Tenable customers with Tenable Security Center or Tenable One Vulnerability Management can utilize the OT Recon scan policy to identify Siemens and other OT assets. Get more information CISA Advisory AA26-231A: Defending Against an Active Threat to Siemens S7 Series PLCs CISA Advisory AA26-097A: Iranian-Affiliated Cyber Actors Exploit Programmable Logic Controllers Across US Critical Infrastructure Tenable Blog: Coordinated \"cyberattack\" on U.S. water utilities: What you need to know CISA: Primary Mitigations to Reduce Cyber Threats to Operational Technology CISA: Secure Connectivity Principles for Operational Technology CISA AA22-265A: Control System Defense: Know the Opponent Siemens ProductCERT Join Tenable's Research Special Operations (RSO) Team on Tenable Connect for further discussions on the latest cyber threats. Learn more about Tenable One, the Exposure Management Platform for the modern attack surface.","title":"Frequently asked questions about the active threat to Siemens S7 Series PLCs","url":"https://www.tenable.com/blog/frequently-asked-questions-about-the-active-threat-to-siemens-s7-series-plcs"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security journalism, enterprise-focused analysis. filter_uncategorized drops vendor press releases and thought-leadership fluff.","created_at":"2026-08-29T23:16:49.946375+00:00","id":102,"published_date":"2026-08-20T13:30:00+00:00","severity":"medium","source_name":"Dark Reading","summary":"The banking Trojan, post-law enforcement takedown, is sprucing itself up with features that make detection and analysis harder.","title":"'Grandoreiro' Malware Resurfaces With Mexico Campaign","url":"https://www.darkreading.com/cyberattacks-data-breaches/grandoreiro-resurfaces-mexico-campaign"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Vendor threat intelligence research. Good primary work but commercial context.","created_at":"2026-08-29T23:16:52.622586+00:00","id":206,"published_date":"2026-08-20T13:07:13+00:00","severity":"medium","source_name":"Check Point Research","summary":"Research by: Ji\u0159\u00ed Vinopal (@vinopaljiri) Abstract What if a trusted security component could be repurposed into an attacker-controlled kernel primitive? What if a signed Microsoft remediation driver could be instructed to execute arbitrary file and registry operations from Ring 0 \u2013 without exploits, vulnerabilities, or memory corruption? In this publication, we present the first full [\u2026] The post BTR Reforged: Weaponizing Defender\u2019s Remediation Driver as a Kernel Operation Primitive appeared first on Check Point Research.","title":"BTR Reforged: Weaponizing Defender\u2019s Remediation Driver as a Kernel Operation Primitive","url":"https://research.checkpoint.com/2026/btr-reforged-weaponizing-defenders-remediation-driver-as-a-kernel-operation-primitive"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Mainstream technical journalism with unusually rigorous security reporting (Dan Goodin). Fills the general-audience gap between trade press and vendor research. filter_uncategorized drops non-security items.","created_at":"2026-08-29T23:17:27.741000+00:00","id":1253,"published_date":"2026-08-20T13:00:35+00:00","severity":"medium","source_name":"Ars Technica (Security)","summary":"Cryptographic Context Injection is only the latest way to break an LLM safety guardrail.","title":"Grok exfiltrates user data when malicious instructions are encrypted","url":"https://arstechnica.com/security/2026/08/grok-exfiltrates-user-data-when-malicious-instructions-are-encrypted"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Established offensive security research firm. Pentest tooling, vulnerability research, red team techniques.","created_at":"2026-08-29T23:17:09.887567+00:00","id":517,"published_date":"2026-08-20T13:00:00+00:00","severity":"medium","source_name":"Bishop Fox","summary":"Traditional vulnerability management was built for a smaller, slower problem than most teams face today. This post breaks down CTEM, why it exists, how its five stages work, and what it actually takes to move from a reactive pile of findings to a continuous, prioritized risk reduction program.","title":"CTEM 101: Moving From Spreadsheets to Continuous Risk Reduction","url":"https://bishopfox.com/blog/ctem-101-moving-from-spreadsheets-to-continuous-risk-reduction"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.973315+00:00","id":1067,"published_date":"2026-08-20T12:45:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"NCSC urged sandboxing, oversight and tight access controls for autonomous AI agents","title":"NCSC Urges Stronger Controls for Agentic AI Systems","url":"https://www.infosecurity-magazine.com/news/ncsc-stronger-controls-agentic-ai"},{"category":"AI Security","confidence":"HIGH","confidence_reason":"UK government CERT, authoritative advisories for UK & allied operators.","created_at":"2026-08-29T23:16:51.415296+00:00","id":156,"published_date":"2026-08-20T12:00:00+00:00","severity":"medium","source_name":"NCSC UK","summary":"Use safeguards, sandboxing and active oversight to realise the benefits of autonomous systems while limiting the unintended activity.","title":"Managing the cyber risk of agentic AI","url":"https://www.ncsc.gov.uk/blogs/managing-the-cyber-risk-of-agentic-ai"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary npm/PyPI supply-chain research; the origin of the Shai-Hulud package-version figures this project already cites. Fills the Supply Chain category, which had keyword rules but no dedicated feed. filter_uncategorized drops product/marketing posts.","created_at":"2026-08-29T23:17:18.677509+00:00","id":801,"published_date":"2026-08-20T11:30:00+00:00","severity":"medium","source_name":"Aikido Security","summary":"A supply chain attack compromised popular Rust crates, arrayref, append-only-vec, and internment, injecting a dependency on the malicious proc-macro1 package that downloads and executes a remote payload at build time. Category: Vulnerabilities & Threats","title":"Popular Rust crates arrayref, append-only-vec, and internment compromised in Supply Chain Attack","url":"https://www.aikido.dev/blog/two-popular-rust-crates-arrayref-and-append-only-vec-compromised-in-supply-chain-attack"},{"category":"OT/ICS","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.980871+00:00","id":1068,"published_date":"2026-08-20T11:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"A US government advisory warned that attackers are deploying AI-generated exploitation scripts against exposed Siemens S7 Series PLCs","title":"ICS Operators Warned of AI-Driven Attacks on Siemens PLCs","url":"https://www.infosecurity-magazine.com/news/ics-ai-attacks-siemens"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research with strong malware analysis track record.","created_at":"2026-08-29T23:16:52.236110+00:00","id":198,"published_date":"2026-08-20T10:00:50+00:00","severity":"medium","source_name":"Cisco Talos","summary":"The newly identified SPECTRE implant represents an evolution in commodity intrusion tooling, integrating cross-platform C2 operations, process injection, credential theft, anti-analysis protections, and kernel-level endpoint detection and response (EDR) bypass functionality.","title":"UAT-10147 deploys SPECTRE: A cross-platform implant with Linux rootkit and BYOVD capabilities","url":"https://blog.talosintelligence.com/uat-10147-deploys-spectre-a-cross-platform-implant-with-linux-rootkit-and-byovd-capabilities"},{"category":"AI Security","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research with strong malware analysis track record.","created_at":"2026-08-29T23:16:52.242362+00:00","id":199,"published_date":"2026-08-20T10:00:32+00:00","severity":"medium","source_name":"Cisco Talos","summary":"Cisco Talos discovered a Chinese-speaking cybercrime group, tracked as UAT-10147, that targets a wide range of vulnerable web servers. This is an overview of the campaign, examining the countries affected, potential impact of BadIIS infections, the attack chain, and post-compromise tactics.","title":"UAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operations","url":"https://blog.talosintelligence.com/uat-10147-chinese-speaking-adversary-integrates-agentic-ai-into-post-compromise-operations"},{"category":"Vulnerability/CVE","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research team with consistent primary analysis.","created_at":"2026-08-29T23:16:51.557737+00:00","id":178,"published_date":"2026-08-20T10:00:25+00:00","severity":"medium","source_name":"Unit42 Palo Alto","summary":"Unit 42 details how attackers exploit enterprise collaboration tools for identity phishing and credential theft. Discover key defense strategies. The post Identity Abuse Through Trusted Communication Channels appeared first on Unit 42.","title":"Identity Abuse Through Trusted Communication Channels","url":"https://unit42.paloaltonetworks.com/communication-channel-identity-risks"},{"category":"Malware/Infostealer","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.982467+00:00","id":1069,"published_date":"2026-08-20T10:00:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Zimperium lifts the lid on the ToxicPanda 2.0 Android banking Trojan","title":"Updated ToxicPanda Variant Targets 140+ Banking and Crypto Apps","url":"https://www.infosecurity-magazine.com/news/updated-toxicpanda-140-banking"},{"category":"Phishing & Social Engineering","confidence":"MEDIUM","confidence_reason":"Established security trade journalism with strong breach and regulatory coverage. Highest-volume addition in this batch (~3.8/day measured) \u2014 filter_uncategorized is required, not optional.","created_at":"2026-08-29T23:17:26.985166+00:00","id":1070,"published_date":"2026-08-20T09:30:00+00:00","severity":"medium","source_name":"Infosecurity Magazine","summary":"Huntress researcher explains how they were targeted by an elaborate and persistent phishing scam following Def Con","title":"Def Con Attendees Targeted by Persistent Phishing Campaign","url":"https://www.infosecurity-magazine.com/news/def-con-attendees-persistent"},{"category":"OT/ICS","confidence":"HIGH","confidence_reason":"Dedicated ICS/SCADA vulnerability and threat research. Adds OT/ICS depth beyond the single Siemens vendor CERT. Long archive but only ~10 entries fall inside the 90-day age guard (~0.3/day).","created_at":"2026-08-29T23:17:21.397889+00:00","id":854,"published_date":"2026-08-20T09:00:00+00:00","severity":"medium","source_name":"Kaspersky ICS-CERT","summary":"In this quarter, the number of attacks on ICS aimed at causing physical damage significantly increased","title":"A brief overview of the main incidents in industrial cybersecurity. Q2 2026","url":"https://ics-cert.kaspersky.com/publications/reports/2026/08/20/a-brief-overview-of-the-main-incidents-in-industrial-cybersecurity-q2-2026"},{"category":"AI Security","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.372717+00:00","id":723,"published_date":"2026-08-20T07:00:00+00:00","severity":"medium","source_name":"The Register (Security)","summary":"Fortunately, the company had a policy of checking source code on GitHub first","title":"AI agent suggested installing a malware package. Engineer almost took its advice","url":"https://www.theregister.com/security/2026/08/20/ai-agent-suggested-installing-a-malware-package-engineer-almost-took-its-advice/5289849"},{"category":"Cloud Security","confidence":"HIGH","confidence_reason":"Top-tier threat intelligence research. Caveat: mixed with commercial marketing \u2014 filter_uncategorized drops partnership promos and thought-leadership fluff.","created_at":"2026-08-29T23:16:51.669496+00:00","id":190,"published_date":"2026-08-20T05:00:00+00:00","severity":"medium","source_name":"CrowdStrike Blog","summary":"","title":"CrowdStrike Named Strongest Overall Leader in 2026 Frost Radar\u2122: Cloud Workload Protection Platforms","url":"https://www.crowdstrike.com/en-us/blog/crowdstrike-named-strongest-overall-leader-2026-frost-radar-cwpp"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Primary cloud-security research (AWS/Azure/GCP IAM, container, CI/CD). Fills the Cloud Security depth the keyword set already anticipates. Vendor context; filter_uncategorized drops product marketing.","created_at":"2026-08-29T23:16:57.503454+00:00","id":313,"published_date":"2026-08-20T00:00:00+00:00","severity":"medium","source_name":"Datadog Security Labs","summary":"Datadog Security Research executed a newer N4D Mesh Controller sample in isolated microVMs, uncovering rotated infrastructure, a UPX-packed go-titan agent, MCP tool abuse in action, and direct runtime evidence of multi-service scanning and persistence.","title":"N4D Mesh Controller: New infrastructure, a UPX-packed agent labeled \"go-titan,\" and how to hunt for it","url":"https://securitylabs.datadoghq.com/articles/n4d-mesh-controller-go-titan-new-infrastructure-hunting"},{"category":"Vulnerability/CVE","confidence":"MEDIUM","confidence_reason":"Threat-intelligence firm with strong primary supply-chain and AI-attack research (LiteLLM supply-chain compromise, npm typosquatting crossing WSL into Windows). Adds non-US-centric coverage. Commercial context, hence Tier 2.","created_at":"2026-08-29T23:17:28.782268+00:00","id":1290,"published_date":"2026-08-20T00:00:00+00:00","severity":"medium","source_name":"CloudSEK","summary":"CloudSEK\u2019s BRIDGEHEAD investigation exposes a 40-package npm typosquatting campaign that abuses WSL to reach Windows hosts and deploy a concealed Rust-based stealer. The malware targets cryptocurrency wallets, browser credentials, cookies and Telegram sessions, while executing largely in memory and using public infrastructure for reconnaissance and exfiltration, making detection and takedown significantly harder. Authors : Vikas Kundu","title":"BRIDGEHEAD : An npm typosquatting campaign that crosses from WSL into Windows to plant a crypto-wallet stealer","url":"https://www.cloudsek.com/blog/bridgehead-npm-typosquatting-wsl-windows-crypto-wallet-stealer"},{"category":"Industry/Policy","confidence":"MEDIUM","confidence_reason":"Veteran independent security commentator; fast on breach and ransomware news. Single-author caveat applies, hence Tier 2. filter_uncategorized drops podcast/sponsor posts.","created_at":"2026-08-29T23:17:27.908888+00:00","id":1267,"published_date":"2026-08-19T23:10:23+00:00","severity":"medium","source_name":"Graham Cluley","summary":"At Black Hat this month, a group of security researchers took a $9,000 robot dog, plugged Google's AI into its brain, and jailbroke it by telling it - with a completely straight face - that it was a Pokemon. What followed involved a wall, a blue ice chest, and anyone in the room wearing white shoes. Oh, and did we mention you can buy a flamethrower attachment? Meanwhile, in Salzburg, 280 gold statuettes of Mozart have vanished from the streets. This has happened to the same artist before. Organised crime, or a publicity stunt? Jenny has thoughts - and some parallels for the world of cybersecurity. All this and more in episode 481 of the \"Smashing Security\" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Jenny Radcliffe.","title":"Smashing Security podcast #481: Never say this to a robot dog","url":"https://grahamcluley.com/smashing-security-podcast-481"},{"category":"OT/ICS","confidence":"MEDIUM","confidence_reason":"Established security journalism with strong enterprise-app and non-US coverage. filter_uncategorized drops non-security/opinion items.","created_at":"2026-08-29T23:17:15.373502+00:00","id":724,"published_date":"2026-08-19T22:38:41+00:00","severity":"medium","source_name":"The Register (Security)","summary":"'It is an active threat'","title":"'Not a theoretical risk,' feds warn as attackers use AI-made code to hack critical infrastructure controllers","url":"https://www.theregister.com/security/2026/08/19/not-a-theoretical-risk-feds-warn-as-attackers-use-ai-made-code-to-hack-critical-infrastructure-controllers/5289960"}]
