> TODAY'S SUMMARY (14 articles)
Today's cybersecurity landscape highlights several critical threats and developments. Debian has issued advisories for significant vulnerabilities, including an authentication bypass in ruby-rack-session and multiple denial-of-service and arbitrary code execution vulnerabilities in Wireshark. The FBI is making progress against the ShinyHunters group with the arrest of a suspect in Jordan who is cooperating with investigators. Additionally, the China-aligned cyber espionage group TA419 is targeting U.S. AI policy experts with sophisticated credential phishing attacks. Meanwhile, Warlock ransomware continues to exploit unpatched SharePoint vulnerabilities to attack critical infrastructure globally. These incidents underscore the ongoing challenges posed by advanced persistent threats and the evolving tactics of cybercriminals.
|
// AI-powered summary generated at 20:00
Extortion-only attacks are increasing as data theft drives most ransomware claims, with many organizations unable to stop stolen data from being exposed
The future of reliability will not be defined by whether site reliability engineering (SRE) teams use AI agents, but by the conditions under which they choose to trust them. In high-stakes systems, trust is never granted because a demo looks impressive; it is earned through ob...
Protect enterprise AI agents from supply chain risks by auditing third-party skills for hidden vulnerabilities and multi-stage attack chains.
The post Trust No Skill: Integrity Verification for AI Agent Supply Chains appeared first on Unit 42.
A botnet made up of compromised small office and Internet of Things devices has grown into a larger reconnaissance network capable of rapidly identifying vulnerable internet-facing systems after public vulnerability disclosures, researchers said.
The botnet, tracked by Lume...
The PoC exploits Microsoft Defender’s offline scan to spawn a SYSTEM shell when rebooting in Recovery Mode.
The post ‘GreatXML’ Zero-Day Exploit Bypasses BitLocker appeared first on SecurityWeek.
Fortinet patched a critical FortiSandbox vulnerability that could let unauthenticated attackers remotely execute commands via crafted HTTP requests. Fortinet released security updates to address several vulnerabilities affecting FortiSandbox, FortiOS, FortiProxy, and FortiPortal. The most severe iss...
The Vietnam-aligned threat actor known as OceanLotus has been attributed to two distinct campaigns that targeted domestic entities and stock investors with a backdoor known as SPECTRALVIPER.
The campaigns involve a prolonged cyber espionage operation aimed at a Vietnamese infrastructure and transpo...
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
Online fraud is becoming harder to distinguish from legitimate activity as AI-generated messages, voices, photos, reviews, and identities become more convincing. Nearly nine in ten adults say they can no longer tell what is real from AI-generated content, according to the latest Malwarebytes survey....
Tenet Security researchers reveal how new “agentjacking” attacks could trick coding agents into executing arbitrary code
The advent of Claude Mythos combined with the release of OpenAI’s GPT-5.5 have changed the threat model for CISOs.
The arrival of those frontier AI models — and the ones soon to follow — makes it much easier to discover and chain vulnerabilities at a speed and scale that wi...
I’ve spent the past two years working on incident response and threat intelligence, and the pattern I’m about to describe is one I keep seeing show up in cases that should have been caught at the email gateway. The kit families change. The lure templates change. The constant i...
Share your digital investigation insights at Magnet Virtual Summit or Magnet User Summit 2027 — submit your proposal by August 28, 2026.
A shift in operational pattern of the infamous Vietnam-aligned APT group
Microsoft has resolved a known issue causing some Windows Server 2025 devices to boot into BitLocker recovery after installing the April 2026 security update. [...]
Information published.
Information published.
Check Point has announced a major expansion of its Managed Service Provider (MSP) platform, designed to help MSPs secure AI adoption, streamline operations and simplify managed security delivery. The announcement brings together three strategic innovations under a single MSP vision: Securing AI and...
Information published.