- NIST rozważa wykorzystanie AI do modernizacji NVD w obliczu lawinowego wzrostu liczby podatności
- Globalna kampania ataków wykorzystuje krytyczną lukę VMware vCenter CVE-2026-59310
- Evooo1Bot: nowy botnet Linuksa atakuje urządzenia wystawione do internetu
- Potencjalnie szerszy wyciek danych w szkockiej administracji po incydencie u dostawcy zewnętrznego
- Adobe Commerce pod ostrzałem: krytyczna luka CVE-2026-71362 aktywnie wykorzystywana po ujawnieniu
- Kampanie ClickFix coraz częściej infekują macOS infostealerami
- USA formalizują autoryzowany „hack back” sektora prywatnego przeciwko cyberprzestępczości transnarodowej
- Wyciek danych 7,3 mln użytkowników Chess.com: wiele wskazuje na scraping zamiast klasycznego włamania
- ExfilSquad publikuje roszczenia wobec 13 organizacji i stawia na wymuszenia oparte na wycieku danych
- Ataki wykorzystują niezałataną lukę zero-day w GeoServer. Zagrożone wdrożenia z PostGIS i Oracle
- Ukraina likwiduje 94 fałszywe call center wykorzystywane do oszustw finansowych
- Naruszenie danych w Beacon CRM dotknęło ponad 1000 organizacji charytatywnych
- Naruszenie danych klientów Trezor po incydencie u partnera logistycznego ShipMonk
- Chińska grupa APT wykorzystuje ransomware jako zasłonę dymną dla cyberszpiegostwa
- Google Cloud przyspiesza migrację do kryptografii postkwantowej. Pełna gotowość planowana na 2029 rok
- Trivy, a nie LiteLLM, stał za kompromitacją ponad 2,5 tys. organizacji
- Były analityk danych skazany za kradzież danych i cyberwymuszenie wobec pracodawcy
- Naruszenie danych RingCentral ujawniło informacje z 1,6 mln kont
- Apple rozsyła nowe alerty o atakach z użyciem spyware najemnego
- Atak Akira w Safe Mode: obejście EDR, eksfiltracja danych i nieudane szyfrowanie
- Ataki na macOS wykorzystują lukę w Screen Sharing do instalacji koparki Monero
- Aresztowania po oszustwie bankowym za 30 mln euro. Luka u dostawcy płatności ujawniła ryzyko łańcucha dostaw
- Bezpieczeństwo Google Workspace w erze AI: jak OAuth zmienia nowoczesny łańcuch ataku
- Shell bada możliwy incydent po roszczeniach Clop o kradzież 89 GB danych
- Krytyczna luka SAP Commerce Cloud już wykorzystywana w atakach
- Weekendowa Lektura: odcinek 689 [2026-08-14]. Bierzcie i czytajcie
- Weekendowa Lektura: odcinek 689 [2026-08-14]. Bierzcie i czytajcie
- Ukraińska policja zamknęła 94 oszukańcze call center
- Historyczna kradzież danych – weryfikacja najpóźniej za tydzień
- Koniec testów. Rządowy komunikator zostaje w Poczcie Polskiej
- Polska wraca do strefy Starlink Roam. SpaceX wycofuje się z decyzji
- Dokumenty z rekrutacji w sieci. Uczelnia, żłobek i nie tylko
- CISA rozszerza katalog KEV o luki w Metabase, Windows i Cisco Secure Firewall
- ICO upomina ACRO po incydencie bezpieczeństwa. Ostrzeżenie dla ochrony danych i odporności operacyjnej
- Krytyczne luki w belgijskim systemie eID: od kradzieży tożsamości po zdalne wykonanie kodu
- Ujawniony klucz AWS naraził dane ponad 1500 organizacji charytatywnych w Wielkiej Brytanii
- Narzędzia hakerskie oparte na AI trafiają na podziemne fora i obniżają próg wejścia do cyberataków
- WordPress 7.0.4 usuwa groźną lukę RCE związaną z Imagick i Ghostscript
- Ataki na SharePoint po publikacji PoC: CVE-2026-55040 napędza falę prób obejścia uwierzytelniania
- Cyberatak na CEVA Logistics zakłócił pracę magazynów i wysyłek w Europie
- Storm-1175 porzuca Medusę i wdraża StormEncryptor w błyskawicznych kampaniach ransomware
- Autonomiczny atak AI na Tajwan: chińscy hakerzy wykorzystali agentów AI przeciw sieciom rządowym
- ShieldBreak: nowy zero-day w Windows umożliwia eskalację uprawnień do SYSTEM
- Fortinet łata krytyczne luki uwierzytelniania w FortiWeb i FortiManager
- Lazarus wykorzystuje lukę zero-day w Windows do eskalacji uprawnień i instalacji backdoora
- WhatsApp wdraża Scam Alert: lokalne ostrzeżenia przed oszustwami w komunikatorze
- Ataki „City-Forum” na Salesforce i ServiceNow: jak błędnie udostępnione portale prowadzą do kradzieży danych
- Krytyczna luka w Adobe Commerce i Magento umożliwia przejęcie kont klientów bez logowania
- SpyNote i WindRelay na Androidzie: nowy schemat wyłudzeń kredytów i danych kart płatniczych
- Slopsquatting i AI: nowe zagrożenie dla bezpieczeństwa łańcucha dostaw open source
NEWS
- How Anthropic plans to watermark Claude's AI-generated text
- New York City Lawmakers Push to ‘Ban the Scan’ at MSG
- Mission-Driven Security: Inside a Global Bank's Defense
- Hackers arrested over €30M bank fraud exploiting service provider flaw
- Amid AI-Driven Bug Tsunami, NIST Looks to…AI
- Scottish Govt Suffers Potentially Widening Data Breach at Prosecutor's Office
- Hackers exploit macOS Screen Sharing flaw to deploy Monero miner
- The Modern Attack Chain: Rethinking Google Workspace Security in the Age of AI
- What Boards Need to Know About Tech Risk
- Max severity SAP Commerce Cloud flaw now targeted in attacks
- Cyera's Oasis Security Buy is All About AI Agent Control
- Shell investigates 'potential incident' after Clop data theft claims
- RingCentral data breach exposed info of 1.6 million accounts
- Data analyst sent to prison for stealing data, extorting employer
- Apple sends new ‘Threat Notification’ alerts over mercenary spyware attacks
- Ukraine shuts down 94 fraudulent call centers, seize millions in cash
- Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt
- Global Threat Campaign Hits Critical VMware vCenter Flaw
- Hackers breach govt webmail while running parallel crypto fraud
- Curiouser and Curiouser
- Microsoft patches LegacyHive Windows zero-day vulnerability
- AI 'watermark removers' flood the web. Almost none can prove they work.
- Critical VMware vCenter RCE flaw exploited for reverse SSH access
- Trezor discloses data breach affecting nearly 14,000 customers
- Who Vets AI’s Code? The Scale Challenge Facing Open Source Ingestion
- White House taps security firms for offensive hack-back operations
- WhatsApp rolls out new feature that flags potential scam messages
- Dissecting the JWR phishing framework
- 'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft
- Parents take on Meta, TikTok, Google, and Snap in 3,000 youth safety lawsuits
- CBP Workers Allegedly Used Government Databases to Spy on Exes, Crushes, and Colleagues
- Belgium's eID Authentication Opens Citizen Accounts to RCE
- Attackers Exploit SharePoint Authentication Bypass After Public PoC Release
- "City-Forum" data-theft attacks target Salesforce, ServiceNow portals
- Android malware combo takes out loans and relays victims' credit cards
- Long-running Data Theft Campaign Targeting Salesforce, ServiceNow
- Hackers exploit critical Adobe Commerce flaw to hijack customer accounts
- Hundreds of fake Chrome VPN extensions route traffic through a proxy
- Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
- Walmart's "Trusted Agent" Approach to Purple Teaming
INFLUENCERS
- Friday Squid Blogging: Searching for the Colossal Squid
- Upcoming Speaking Engagements
- Who’s Tracking You? Use This New Service to Find Out
- If the Markets Reject OpenAI and Anthropic, the US Should Nationalize Them
- Separating AI’s Technological Problems from Its Capitalism Problems
- Prompt Injections for Defense
- Weekly Update 516: Live From Vietnam
- Microsoft Plugs Nearly 400 Security Holes
- AI Genie in the Wild
- AI for Military Support
- Python Now Has a Post-Quantum Encryption Library
EXPLOITS
- [webapps] Ray 2.56.0 - Directory Traversal & Local File Inclusion
- [remote] mcp-server-kubernetes 3.8.x - Argument Injection
- [webapps] Planyo_Online_Reservation_System 3.0 - Arbitrary File Read via SSRF
- [dos] LuCI DHCPv6 - Lease Hostname Stored Cross-Site Scripting
- [webapps] Blocksy Companion 2.1.46 - RCE
- [webapps] Apache Gravitino 1.2.1 - SSRF
- [remote] PraisonAI praisonaiagents 1.6.77 - Remote Code Execution
- [webapps] Joomla 2.9.99.4 - Unauthenticated Remote Code Execution
- [webapps] CorgetGpsDget 2_3.2 - OS Command Injection
- [local] Microsoft Edge 150.0.4078.48 - RCE
- [webapps] OrkesConductor 3.30.2 - Unauthenticated Remote Code Execution
MALWARE
- As warfare becomes engineering, the era of the digital mercenary dawns
- TheGentlemen Ransomware Attack on Safeware Inc
- TheGentlemen Targets KFC Kosova in Ransomware Attack
- TheGentlemen Ransomware Group Attacks Plaza Auto Mall
- TheGentlemen Ransomware Attack Targets Avanta Maroc
- TheGentlemen Ransomware Attack on ACLI Italy
- The Gentlemen Ransomware Attack on Vector Two Technology
- Clop Ransomware Targets Zebra.com in Major Data Breach
- Storm Ransomware Targets Canadian Iron Foundry Integra Castings
- TheGentlemen Ransomware Attack on I.P.S. Srl
- ShinyHunters Compromises Carhartt, Inc. in Major Ransomware Attack
- Storm Ransomware Targets Canadian Law Firm Tapper Cuddy LLP
- Storm Ransomware Strikes Rood & Riddle Equine Hospital
- Analyzing Iranian-Russian UAV Touchpoints and Innovation
- Everything is about to “go dark”
- 40,000 WordPress Sites affected by Authentication Bypass Vulnerability in User Profile Builder WordPress Plugin
- FreePBX security advisory (AV26-818)
- HashiCorp security advisory (AV26-817)
- France investigates tax authority breach after hacker claims 600,000 victims
- 일본인 을 대상으로 이메일 통한 정보 탈취 악성코드(AgentTesla)-20260804-000581.js
ARTICLES
- August’s Patch Tuesday is a monster: 751 fixes, with an exploited Windows flaw
- The 80% Problem: Why AI resilience is more important than ever
- The first domino of AI disruption: How frontier models are revolutionising software security
- OpenAI loses its AI ethics lead
- Meta gives up control of Chinese AI startup Manus after eight months
- Microsoft brings Copilot apps together ahead of ‘super app’ overhaul
- Keeper Security Issues Cyber Guidance for Education IT Teams
- Apple cracks China with Alibaba for iPhone AI
- How to replace Edge as the default browser in Windows — and why you shouldn’t
- Trump Signs Memorandum Allowing Private Firms to Launch Offensive Cyber Operations Against Foreign Threat Actors
- Meet Huntress at International Cyber Expo 2026
- DeepSeek raises some V4 prices by more than 10x as AI demand strains capacity
- How Apple is leaving money on the table
- Adobe now lets Workfront users assign tasks to AI agents
- Scammers Exploit Shopify’s Own Notification System in New ‘Fake Refund’ Scam
- It took $58 to break Microsoft’s SCCM, but a patch made it harder
- Akira Ransomware Affiliate Rebooted Into Safe Mode to Dodge EDR and Broke Its Own Attack
- Is AI entering the SOC at the right stage?
- Forescout Launches Rapid Insight Assessment to Uncover Hidden Cyber Risks
- UK Cyber Attacks Jump 26% Year-on-Year as Ransomware Activity Doubles Globally