- Rosja uderza w Tuska i Ukrainę. Wybuch pocisku w Tarnawie-Kolonii uruchomił kremlowską machinę
- Rosyjska rakieta, dron lub inne zagrożenie. Dlaczego Polska wciąż nie posiada systemu, z którego korzysta Europa?
- Z pamiętnika admina #1: Ticket, który bardzo chciał być CISO…
- Oszuści podszywają się pod Europol. Szantaż finansowy i wiele więcej
- Podatności w skryptach PHP Jabbers
- Samorządy połączą siły przeciw cyberatakom. Rusza program LCC
- Link do Poradnika Bezpieczeństwa w SMS od RCB. Gawkowski: nie ma ataku
- Zarząd Fundacji Bezpieczna Cyberprzestrzeń został poszerzony o dwóch nowych wiceprezesów
- Jak zhakowane publiczne bramki Wi-Fi używane są do pozyskiwania poświadczeń korporacyjnych?
- „Akceptuję wszystkie” pod lupą. Spór o przyszłość cookies
- NCSC apeluje do producentów o długoterminowe i bezpieczne aktualizacje urządzeń
- Google łata setki podatności w Androidzie i ChromeOS
- Phishing w Microsoft Teams z użyciem legalnych domen – jak działa nowy model nadużyć
- Cyberprzestępcy sięgają po autonomiczne agenty AI do działań ofensywnych
- OpenAI rozszerza zakres incydentu z „rogim” modelem. Ucierpiały także inne usługi poza Hugging Face
- Skanery AppSec jako nowy wektor ataku na łańcuch dostaw oprogramowania
- Claude Mythos pokazuje, że AI może wyprzedzać ludzi w badaniach nad kryptografią
- Podszywanie się pod marki jako wektor initial access. Fałszywe witryny i aplikacje rosnącym zagrożeniem
- Tanie przystawki TV pod lupą: jak urządzenia streamingowe mogą uczestniczyć w oszustwach reklamowych i sieciach proxy
- Flying Eagle: fałszywa aplikacja „policyjna” ujawnia rozwinięty ekosystem malware na Androida
- Flying Eagle: builder MaaS upraszczający tworzenie mobilnych trojanów RAT na Androida
- Microsoft Copilot w Wordzie może przenosić ukryte prompty do nowych dokumentów
- DangleGeddon: jak porzucone rekordy DNS mogą zostać uzbrojone przez AI
- SilverFox atakuje japońskiego producenta: BYOVD, ValleyRAT i podwójne mechanizmy samoodtwarzania
- Skoordynowany cyberatak na wodociągi w Minnesocie czasowo wyłączył jeden zakład
- Krytyczna luka w Ruby on Rails pozwala odczytywać pliki serwera przez złośliwe obrazy
- Sieć jako nowa płaszczyzna kontroli bezpieczeństwa AI. Dlaczego tradycyjny firewall już nie wystarcza
- FCC blokuje nowe zagraniczne roboty i inwertery w USA z powodu ryzyk cyberbezpieczeństwa
- Health-ISAC ostrzega: ShinyHunters nasila ataki na sektor ochrony zdrowia
- Krytyczna podatność Azure Cosmos DB mogła ujawnić klucz platformowy i narazić bazy wielu klientów
- Chrome i AI: jak sztuczna inteligencja pomogła usunąć 1072 błędy bezpieczeństwa
- Ataki watering hole na AnySign4PC: zainfekowane witryny instalowały backdoory bez interakcji użytkownika
- Cisco Secure FMC z luką zero-day CVE-2026-20316 aktywnie wykorzystywaną w atakach
- VMware łata krytyczne luki: obejście uwierzytelniania, RCE i ucieczka z maszyny wirtualnej
- Co robią atakujący po włamaniu? Analiza działań post-exploitation na przykładzie rzeczywistego incydentu
- ShinyHunters grozi publikacją danych po incydencie cyberbezpieczeństwa w Brinks Home
- Rosyjscy hakerzy wykorzystują lukę w Microsoft OWA, by utrzymać dostęp do skrzynek nawet po zmianie haseł
- Analog Devices ujawnia naruszenie danych po wykryciu nieautoryzowanego dostępu
- Ataki vishingowe w Microsoft Teams prowadzą do wdrożeń Chaos ransomware
- Amazon łączy przejęcie pakietów debug i chalk w npm z kampanią Sapphire Sleet
- Smartfony na oddziałach psychiatrycznych. Prezes UODO chce jasnych zasad
- Prezydent podpisał ustawę. Smartfony znikną ze szkół i przedszkoli
- Szyfrowanie fundamentem cyberbezpieczeństwa. Kara od UODO
- Jeden wpis, trzy lata więzienia? 54-latek zatrzymany przez CBZC
- Wysłali niewinnego kolesia na 18 miesięcy do więzienia przez pomyłkę w _ (podkreślniku)
- Cyfrowa przepaść pokoleń. Żyjemy w erze hybrydowej przemocy
- Samsung i OSP łączą siły. Technologia ma wspierać ratowników
- Agent OpenAI miał rozwiązać benchmark – zamiast tego zaatakował infrastrukturę Hugging Face
- AgentBaiting – nowa technika ataku zaobserwowana w kampanii FakeGit
- Tylko 1% luk wykrywanych przez AI jest realnie wykorzystywanych. Co to oznacza dla cyberbezpieczeństwa?
NEWS
- Hacker uses DeepSeek AI to autonomously attack vulnerable servers
- CISA warns of cyberattacks disrupting U.S. water utilities
- HollowFrame Loader Deploys Matryoshka Backdoor in Spear-Phishing Attack on Law Firm
- Fake Fortnite rewards are stealing players’ accounts
- Cheap Android TV Boxes Pose as Phones and Turn Owners’ Broadband Into Proxies
- ESET tracks rise in malicious AI skills and adaptable malware
- The Morning After We Pull a Root of Trust, Nobody Owns It
- Interpol Leverages Global System to Curtail Fraud Payments
- DROP Platform Lets Californians Reduce Digital Footprint
- USA Fencing Lunges Into the Hidden Identity Challenge in Amateur Sports
- Three Recent Chrome Releases Fix 1,442 Flaws, More Than Prior 23 Updates Combined
- Researchers Report 84 Flaws in 4G and 5G Cores, Including a Session Hijacking Flaw
- 6 Reasons Why Device Code Phishing is the Fastest-Growing Threat of 2026
- Chinese Hacker Commands DeepSeek via Telegram to Launch Autonomous Attacks
- Fake Flash Player installs AtlasRAT
- The New Defcon Badges Pack a Unique Open Source Chip That Doubles as a Security Key
- Anthropic Says Claude Mistook the Open Internet for a CTF and Breached Three Organizations
- Anthropic Says Claude Hacked 3 Organizations During Cybersecurity Tests
- Anthropic's Claude breached 3 orgs, uploaded PyPI malware during tests
- South Korea fines telco giant KT $39 million for customer data breach
- JetBrains warns of critical TeamCity remote code execution flaw
- A Leaked Memo Ties Cyberattacks on Minnesota Water Utilities to Iran
- Minnesota Water Utility Attacks Expose Sector's Cyber-Risks
- AI Harnesses Burst With Potential Exploit Opps
- DPRK-Linked macOS Malvertising Uses Fake Updates to Deliver Crypto-Stealing Malware
- Amazon links Debug, Chalk NPM supply-chain attacks to North Korean hackers
- VMware fixes three critical flaws allowing auth bypass, VM escapes
- You were onto something with “It’s the Climb,” Miley
- Chrome Needs Twice-a-Week Patching Thanks to AI Bug Hunting
- Google says AI helped Chrome fix 1,072 security bugs in two releases
- ShinyHunters claims Brinks Home breach, threatens to leak stolen data
- Malwarebytes for Windows, now available on the Microsoft Store
- Microsoft Teams vishing attacks lead to Chaos ransomware attacks
- Claude Mythos — Hype vs. Reality: What Security Teams Need to Know
- ThreatsDay: AI-Powered Hacking, 370 Chrome Flaws, SonicWall Attacks, DNS Hijacking + 22 More Stories
- Analog Devices discloses data breach, says operations unaffected
- After the Break-In: What Attackers Do Once They're Already Inside
- Hims & Hers sued over alleged health data privacy failures
- Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database
- Hidden prompt turns Microsoft Copilot into an AI worm
INFLUENCERS
- Anthropic’s Opus 5 Is Better at Resisting Prompt Injection
- Facial Recognition at Madison Square Garden
- Read This Before You Buy That TV Streaming Stick
- American Being Prosecuted for Wiping His Phone Before Handing It Over to Border Officials
- Should You Use AI for a Task? Here’s a Simple Way to Decide
- A Field Guide to the AI Security Market
- Measuring the Tendency of AI Agents to Go Rogue
- Long-Lived Vulnerability in Microsoft Secure Boot
- Measuring LLMs’ Ability to Perform Cryptanalysis
- Axon Is Another License Plate Surveillance Company
- Cyber Company Profiles: Consistent AI Analysis of Security Vendors
- Cognyte Sells a Mobile Cell Surveillance Van
- Weekly Update 514: This Week in Data Breaches
- What 239 Products Reveal About the Shape of AI Security
- Friday Squid Blogging: Illex Squid Catch in the Falklands
MALWARE
- Ransomware in Italy: RedACT report sheds light on an evolving threat environment
- Weaponizing Exposed Data
- Fake Fortnite rewards are stealing players’ accounts
- Does a VPN Drain Battery? How to Save Device Power While Staying Safe
- Sintesi riepilogativa delle campagne malevole nella settimana del 25 – 31 luglio
- North Korea’s Lazarus Group sharing tools with ransomware hackers, South Korean agencies warn
- Consumer Dispute Panel Orders Coupang to Pay Affected Consumers 100,000 Won Each for Data Breach
- Google security advisory (AV26-768)
- Symantec DSPM is Here To Deliver Deeper Data Insights
- Shareware vs. Freeware: Key Differences Explained
- CISA urges water utilities to take exposed systems down after Minnesota hacks
- Anthropic confirms its AI breached 3 organizations during testing
- Rails security advisory (AV26-767)
- SolarWinds security advisory (AV26-766)
- Vulnerabilities in PHP Jabbers scripts
- Fake Flash Player installs AtlasRAT
- The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version
- How to Report Phishing | Guide for Every Email, Text, Call & Website (2026)
- Season 4 of The Europol Podcast available now
- Zipdump.py: Metadata Encoding, (Fri, Jul 31st)
ARTICLES
- Google has used AI to patch 1,072 vulnerabilities in Chrome
- Apple’s Tim Cook era ends with a record $109B quarter
- Reporter’s notebook: In Dubai’s sun and sand, AI, server farms, and optimism bloom
- Data center developer eyes disused newpaper printing plant
- DefCon security conference bans smart glasses with recording capabilities
- ChatGPT Ads offer a glimpse of how advertising could evolve
- The new C-suite calculus: how the CFO-CHRO alignment is shifting
- 12 top productivity tips for Microsoft Edge
- BCON Collective uncovers shared phishing infrastructure linked to ShinyHunters
- Microsoft doubles down on multi-model AI as it builds a Copilot super app
- Microsoft confirms an AI worm is propagating through Copilot and other MS apps
- Copilot worm can spread through Microsoft Word docs
- ‘Only people we’re friends with can see the posts’: exploring parental awareness of the systemic complexities and cybersecurity risks of sharing child-centric data on social media
- Qualcomm shows Apple’s modem transition is almost complete
- Experts react as Department for Education cyber attack exposes 607,000 records
- WorkNest Secure Launches Continuous Vulnerability Scanning with GuardNest
- Huntress Surpasses $250M ARR as EMEA Growth Outpaces Global Expansion More Than Five-Fold
- Check Point Brings AI Security into the Firewall with Industry-First AI Network Firewall
- Why Google Voice is your secret business weapon
- Fake Claude Install Guide Delivers Six-Stage macOS Stealer and RAT, Huntress Finds