Several Wisconsin towns and cities have terminated contracts with Flock's automated license plate camera system over privacy and trust concerns. Dane County cut $80,000 in funding and banned further expenditures, causing…
#Cybersecurity
This week's cybersecurity landscape was dominated by supply-chain and developer-targeted threats. Malicious npm packages and fake coding tests from North Korean actors compromised thousands of devices, while a critical flaw in OpenAI's Codex allowed sandbox escape, and Z.AI's coding tool attempted unauthorized data exfiltration. Regulatory pressure also intensified, with Ireland fining Google €403 million for GDPR location-data violations and the FBI updating CJIS encryption and scanning requirements. Microsoft pushed passkeys ahead of SMS sign-in retirement. Additionally, the ransomware ecosystem saw internal conflict as ShinyHunters breached Clop's leak portal, and Intel ended its paid bug bounty program.
Geekom acknowledged that network drivers for several AMD mini-PC models contained the Asruex backdoor, granting attackers admin-level access to steal data and intercept keystrokes. The company removed the infected packag…
A previously patched macOS Screen Sharing vulnerability has now been actively exploited in the Netherlands, according to the country's National Cyber Security Centrum. Attackers gained root access on multiple systems and…
Breaches at shipping partners of Trezor and SafePal exposed customer names, addresses, and contact details, increasing the threat of physical attacks known as wrench attacks. While the wallets themselves remain secure, c…
The article explains that app tracking does not involve secret audio recording but instead captures behavioral signals such as scrolling speed, network connection, and referral sources to build detailed advertising profi…
Researchers at Jamf discovered a new macOS information-stealing malware called AmnesiaStealer, distributed through ClickFix attacks using a fake GitHub page. The malware can copy Chromium browser profiles and use a strea…
Threema, a Swiss secure messaging service, faced multiple large-scale distributed denial-of-service attacks this week, leading to intermittent service disruptions on Tuesday evening and Wednesday morning. The attacks tar…
Cryptocurrency hardware wallet provider SafePal reported a data breach impacting approximately 39,798 customers who placed orders between March 2025 and April 2026. The exposed information includes names, email addresses…
Google's Theft Protection suite on Android 10 and newer includes motion-sensing locks that trigger when a phone is snatched, plus an offline lock that activates if a thief disables connectivity. These features are bundle…
A 3D-printing enthusiast has shared a design for a cover that can be attached to a broom handle to quickly blind Flock cameras. The device is easy to install but may have legal implications.
Exploiters have made twelve documented attempts against CVE-2026-55040 in Microsoft SharePoint since July 19, 2026, including eight attempts on August 12-13. CISA has identified over 8,500 Internet-exposed SharePoint ser…
This guide explains how to detect if hackers have compromised your accounts on major AI platforms. It outlines warning signs such as unexpected activity, unfamiliar logins, and changes to account settings. The article al…
A newly discovered Mirai-derived botnet named Evooo1Bot is compromising internet-facing gateway devices. The modular malware converts compromised routers into SOCKS5 proxies, enabling attackers to relay network traffic a…
A maximum-severity remote code execution vulnerability in SAP Commerce Cloud, patched only three days ago, is now being actively exploited. Threat intelligence firm Defused reports that attackers are targeting the flaw. …
Attacks on Google Workspace increasingly leverage stolen OAuth tokens rather than phishing to access Gmail, Drive, and connected systems. Material Security highlights that organizations must defend the entire attack chai…
The Netherlands' National Cyber Security Centre warns that hackers are actively exploiting a macOS authentication bypass vulnerability in Screen Sharing. Public exploit code has emerged, enabling attackers to deploy Mone…
A critical vulnerability in macOS screen-sharing is being actively exploited, allowing remote attackers to gain full control without a password. Users are urged to patch immediately.
A new White House memo signed by President Trump directs the National Coordination Center to establish a program. Private security companies can apply for approval to hack foreign cybercrime organizations. This marks a s…
Hardware wallet maker Trezor revealed a data breach affecting about 14,000 customers. The breach occurred through its shipping and logistics provider ShipMonk, which was hacked. Customer data was exposed.
A critical remote code execution vulnerability in VMware vCenter Syslog Server is being actively exploited. Attackers use it to deploy a reverse SSH tool for persistence and remote access. The flaw was recently patched.
Apple is sending threat notifications to users who may be targeted by mercenary spyware. The alerts indicate detection of such attacks on iPhones. Users are advised to take precautions.
The threat actor known as Jewelbug has been simultaneously conducting espionage against government and military webmail accounts and running cryptocurrency fraud operations. The dual-purpose campaign blends traditional c…
An Akira ransomware affiliate managed to disable endpoint detection and response software by rebooting the compromised system into Safe Mode with Networking. Although they successfully stole data, the attack failed to en…
Ukrainian law enforcement raided and closed 94 fraudulent call centers nationwide. The operations lured victims into fake investment schemes or attempted to steal bank account credentials. Millions in cash were seized du…
Surveillance company Flock has introduced a mandatory tool called "Audit Assistance" for all customers, claiming it can already detect police misconduct. However, the company has not provided a detailed explanation of ho…
Apple has begun sending push notifications to iPhone lock screens when it detects government spyware targeting a user's device. The alerts are meant to warn users of sophisticated surveillance attacks. Users are advised …
A new memo from the Trump administration permits private security companies to carry out cyberattacks against foreign criminals. This marks the first time the U.S. government has formally authorized the private sector to…
A threat actor known as Nightmare Eclipse has released a new zero-day privilege escalation vulnerability called ShieldBreak, which can grant attackers system-level privileges on Windows. Microsoft responded rapidly by de…
The Trump administration has announced a program that permits private firms to carry out cyberattacks on foreign criminal networks under federal oversight. A presidential memorandum grants these companies authority to su…
Quantum computing's potential to break current cryptography is a real concern, but post-quantum cryptography (PQC) offers a manageable evolution rather than an immediate crisis. Business leaders are advised to focus on p…
The US government has announced a policy change that permits private companies to launch cyberattacks on its behalf. This marks a significant shift in how the nation conducts offensive cybersecurity operations. Further d…
Flock, a company known for its automated license plate readers, is attempting to block officers who use the system to stalk former partners. However, experts argue that technical measures alone cannot stop agencies from …
Flock Safety is updating its camera systems to include additional restrictions that make it harder for law enforcement to access footage without proper authorization. The changes aim to address concerns about privacy and…
Meta is launching an optional Scam Alert feature for WhatsApp that uses on-device machine learning to identify suspicious messages. The feature is rolling out in a limited beta and follows earlier scam detection for devi…
The United States has issued a new directive that overturns long-standing policy prohibiting private companies from engaging in 'hack back' attacks. For the first time, certain private firms will be permitted to conduct …
Flock, the company behind a nationwide network of license plate readers, is implementing new restrictions on how police officers can access its data. The changes aim to address mounting criticism over mass surveillance a…
Flock CEO Garrett Langley acknowledged the company's responsibility for how law enforcement uses its surveillance technology, following reports of officers abusing the tools to stalk ex-partners. The company is rolling o…
Records obtained by WIRED reveal hundreds of allegations that Customs and Border Protection workers used internal tools to spy on romantic interests and track colleagues' phones. The misuse raises serious privacy and sec…
ZDNET has tested and selected the top password manager apps for 2026, designed to help users manage and protect their online credentials. These tools eliminate the need to remember multiple passwords while enhancing acco…
ZDNET has evaluated the leading antivirus solutions for 2026, focusing on malware defense for PCs, laptops, and mobile devices. The recommended software balances strong security features with reasonable pricing. These to…
A pre-authentication reflected cross-site scripting vulnerability dubbed 'XSS2Shell' (CVE-2026-64638) was disclosed affecting every WordPress version. The flaw resides in the login screen and could be exploited for arbit…
CISA added CVE-2026-8037, a critical command injection in Progress Kemp LoadMaster, to its Known Exploited Vulnerabilities catalog due to active exploitation. Metabase disclosed a zero-day SQL injection vulnerability wit…
The week of August 4-10 saw a Coldcard firmware flaw leading to a $70.2 million Bitcoin drain, self-propagating npm worms, and a malicious VS Code extension stealing wallet credentials. Hungary's National Paying Agency w…
Signal has added a new security feature called Automatic Key Verification. It helps users confirm that their encrypted chats have not been intercepted by man-in-the-middle attacks.
Hackers are actively exploiting a proof-of-concept exploit for a critical Microsoft SharePoint vulnerability. The exploit was published by cybersecurity firm Rapid7.
Fake remote workers can infiltrate organizations by exploiting weaknesses in the hiring process. Document verification and biometric liveness checks are recommended to confirm identity.
North Korean Lazarus hackers exploited a Windows zero-day vulnerability (CVE-2026-68820) to target defense firms. The attacks are part of the Operation Dream Job campaign.
Security researchers have disclosed a new attack method called 'Plug and Pwn' that abuses the Windows Plug and Play feature. By inserting a fake USB device, the system is tricked into installing vulnerable software, allo…
More than 737 fraudulent browser extensions on the Chrome Web Store masqueraded as legitimate VPN and proxy services. They secretly routed users' internet traffic through SOCKS5 proxies controlled by a single provider. U…
Attackers are actively exploiting a critical vulnerability, CVE-2026-71362, in Adobe Commerce and Magento platforms. The flaw allows them to hijack customer accounts. Organizations using these e-commerce systems are urge…
A new Android malware combination, WindRelay, works alongside the SpyNote remote administration tool to intercept credit card data via NFC. The stolen card information is relayed in real time to attackers. This malware c…
A data theft campaign is actively using custom tools to extract information from Salesforce Experience Cloud and ServiceNow customer portals. The attackers target data that is accessible to anonymous users. The campaign …
A supply-chain attack on an AI package resulted in the exfiltration of terabytes of credentials from 2,500 users. The attackers scraped and leaked the data, posing significant security risks. The incident highlights vuln…
Uber Freight is reportedly investigating after an extortion gang known for targeting transportation companies claimed responsibility for a data breach. The hacking group has taken credit for the incident.
Microsoft released its August Patch Tuesday update, addressing 421 bugs and one zero-day vulnerability that is already being exploited. The zero-day flaw could allow an attacker to gain system privileges on a Windows PC.…
Visa's president demonstrated how Anthropic's Mythos AI found exploit chains in Visa's payment network, and Visa open-sourced the harness used. However, 53% of enterprises have already experienced an agentic security inc…
The FBI has issued a warning about hackers stealing private photos from social media and personal accounts to sell on the dark web. The agency recommends six steps to protect against sextortion, including securing accoun…
Security researchers demonstrated that a coin-sized device can be attached to a Boeing 737's exterior hatch in under 60 seconds, allowing them to redirect the autopilot or sabotage the flight plan. The exploit highlights…
An Israeli cybersecurity firm reports that suspected China-linked hackers deployed an autonomous AI tool to attack Taiwanese government networks. The open-source-based system compromised 85 accounts and exfiltrated over …
Security researchers discovered a method to remotely take over devices via Zoom's screen-sharing feature. The flaw was identified by a publicly available AI tool after only 20 prompts, highlighting the growing role of AI…