20260809 Sun
Investigating a Multi-Stage PowerShell Loader
20260808 Sat

Living off the coding agent: Two tales of tunnels and LaunchAgents
Varonis Atlas Now Integrates with Claude Inference Hooks to Extend Real-Time AI Data Protection
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
AI chat bots are sliding into League of Legends friend requests
Friday Squid Blogging: Arctic Bobtail Squid Video
Meta ordered to pay $942 million over harm to children
That’s a wrap: Mend.io at Black Hat USA 2026
A decade of enterprise identity in the cloud with AWS Managed Microsoft AD

AI-Generated Patches Fail Half the Time
Securing your Amazon S3 buckets: Identifying and remediating over-permissioned access
20260807 Fri
What the Recent Water Systems Cyber Attacks Reveal About Critical Infrastructure Security
Inside the Fake Copyright Racket Silencing News Outlets

Rapid7 Analysis: Unauthenticated Remote Code Execution in JetBrains TeamCity (CVE-2026-63077)
The Download: a censorship conspiracy theory and the first virus created by AI
How ideas of a vast censorship network moved from the online fringe to Trump policy

Mini Shai-Hulud's Latest Wave: 280 New Places It Hunts for Your Secrets

Unveiling good and bad behaviors on the Agentic Internet

The Good, the Bad and the Ugly in Cybersecurity – Week 32

Introducing Radar Researcher: An AI tool for exploring Internet data in plain language

Announcing Cloudflare Ambassadors, Community Engineers, and another $1M in open-source funding

Unifying Workers AI and AI Gateway into a single AI control plane
CISA Adds One Known Exploited Vulnerability to Catalog
CPDLC over ATN-B1 Vulnerabilities
ICE Is Buying Access to Credit Card Records
Linux Shell Forensic: Let?s Dive Into Atuin!, (Fri, Aug 7th)
Free Business Plan Upgrades for Open Source Maintainers
CrowdStrike Threat Hunts for Shell Command Obfuscation on VMware ESX
Fake macOS update installs crypto-stealing malware
VPNs on the App Store leave you exposed to phishing and malware
ISC Stormcast For Friday, August 7th, 2026 https://isc.sans.edu/podcastdetail/10042, (Fri, Aug 7th)

The security signal log tailing can't see: tracking npm cooldown removals with Elastic Agent
Online Sports’ Shadow Audience
Automate certificates with ACME support in AWS Certificate Manager

CSS:the bomb inside your inbox
_wsf_AL_Alamy.jpg?width=720&quality=80&disable=upscale)
The Coordination Gap: How Attackers Are Outpacing Law Enforcement

Déjà Vu? Meta's AI Escapes Testing Lab in Hacking Joyride

Researcher Claims Control of ChatGPT Secure Sandbox

What is AI harness engineering?
Route Amazon Bedrock Guardrails interventions to Amazon Security Lake
.jpg?width=720&quality=80&disable=upscale)
From Bobmojis to Bobbleheads: How the Democratic Party Built a Security-First Culture
Why “AI Pentesting” is the Wrong Term (And Why We Need AI Red Teaming)
Canadian Man Pleads Guilty in Snowflake Extortions
How we took malware advisories beyond npm

What If AI Security’s Biggest Risk... Isn’t?
Caching KMS data keys in multi-thread environments: Per-tenant encryption for event-driven systems at scale
20260806 Thu
Apple WebKit vulnerabilities reveal your IP address, despite Private Relay

Cloud Threat Highlights: H1 2026
Cloudflare AI Search: give your agents a search engine for your data
The next generation of MCP
From ranking to recommended: get your site ready to thrive in the age of AI agents
Building an open Agentic Internet: readable, discoverable, callable, and payable
Introducing Kitesurf: The agent-first browser that runs in V8 isolates on Cloudflare Workers
Give any website a WebMCP interface
The Download: Google’s AI shake-up and Meta’s rogue model

Wiz Brings Automated DISA STIG Assessment to Amazon Linux 2023 and Windows Server 2025
Medixant RadiAnt DICOM
Johnson Controls Inc. TL280
ABB Ability Zenon
Scammers target OnlyFans users with deepfakes
Adversarial Clothing Designed to Fool Facial Recognition Systems
Amazon and Apple impersonated in “$149.99 unauthorized charge” scam
Anthropic’s Mythos AI used social engineering to target real people
Expanding AI Benchmarks in Cybersecurity Beyond Vulnerability Discovery
CVE-2026-16812: Critical Command Injection in Arista VeloCloud Orchestrator

Hidden beneFITs: Bypassing Signature Verification in U-Boot SPL
Ruby's Bundler 4.0.18 Extends Cooldown to bundle lock and bundle cache
ISC Stormcast For Thursday, August 6th, 2026 https://isc.sans.edu/podcastdetail/10040, (Thu, Aug 6th)
22 Seconds to Compromise: How Automated SSH Actors Move From Login to Persistence Before You Can Blink [Guest Diary], (Thu, Aug 6th)

Shai-Hulud strikes again: CHAINDROP worm hits 400+ npm packages

Adopting the Cross App Access Protocol: Get Ready for MCP Enterprise-Managed Authorization with Auth0
Find, analyze, and collaborate on user sessions in Datadog Session Replay
Required claims for GitHub flexible federated identity credentials
Worklo: Sahte Startup, Gerçek Malware
Worklo: Fake Startup, Real Malware in the Take-Home Assignment
Beyond the Bot Block: How Fastly and Experian Are Turning AI Agent Traffic into Revenue

AI Sends Global Crime Syndicates Into Fraud Nirvana

CRLF-Powered Desync Attacks: Beheading HTTP Streams

AI Browsers Vulnerable to 'PleaseFix' Zero-Click Agent Hijacking
Cloudflare is the only vendor named a Visionary in 2026 SASE and SSE reports

Thousands of servers can be backdoored by exploiting buggy motherboard controllers

No Perfect Fix for AI Browser Prompt Injection Flaws
AWS partners with Anthropic and OpenAI to bring AWS Continuum into developer workflows

Anthropic’s AI used fake identities, malware in rogue attack on GitHub project

CSS: The Hidden Threat Lurking in Your Inbox

Can AI do novel security research? Meet the HTTP Terminator

Can AI do novel security research? Meet the HTTP Terminator
From User Sequences to Scaling Laws: A Multi-Stage Architecture for Meta’s Ads Ranking

15 TP-Link Bugs Expose Risks in Zero-Trust Provisioning
UK Cyber Test: AI Agent Attempted to Social Engineer Open Source Maintainer Into Merging Malware

Flaws in Google APK for Python Unlock Agent-to-Agent Attack

Who was behind the attack? Possibly nobody
Don't Revoke That Token Yet: Inside the keyv/cacheable npm Worm, (Wed, Aug 5th)
From 2 weeks to 2 minutes: Amazon Cognito launches Provisioned limits for self-service rate limit management

Prisma AIRS - Unified Data Protection for Claude
20260805 Wed
Woori Financial Group Establishes Continuous Application Security With Xint
Puzzle Corner

40 Million Fake Push: When Spam Commits Took Over The Public GitHub
Immigration Policy: The Backdoor to Transnational Repression
The Agent Access Model
How we’re rethinking work at Cloudflare with Cloudflare OS
Cloudflare OS: an open platform for agents, apps, and work
WriteGuard: fine-grained controls for MCP Servers
Catching rogue AI behavior with identity-aware analytics
The Download: NASA’s new telescope and Chinese tech import curbs
CISA Adds One Known Exploited Vulnerability to Catalog
Google’s synchronized passkeys can be stolen in ‘Pass‑ta‑key’ attacks
A few notes on AWS Nitro Enclaves: KMS integration
Vulnerabilities in Car Anti-Theft Device
Junk Cleaner clears the clutter from your Android
NASA’s new dark-energy space telescope can also detect killer asteroids

Angola's Largest Telco Breached Hours Before IPO

The Aikido Machine: on-prem AI pentesting that never leaves your network
DoGNAVY CyberGym Technical Report

Continuous Offensive Security & AI Pentesting: 20 FAQs
ISC Stormcast For Wednesday, August 5th, 2026 https://isc.sans.edu/podcastdetail/10038, (Wed, Aug 5th)
This Month in Datadog - July 2026
Apple battles it out again with the UK over encrypted iCloud access
Patch faster isn’t the answer. Patch smarter is.
Iran Cyberattacks Against Minnesota Water Systems
AWS Security Hub Adds Socket for Supply Chain Security
_Ivelin_Radkov_Alamy.png?width=720&quality=80&disable=upscale)
Smoke#Screen RMM Takeover Gambit Exposes Threat Actor Playbook
A Roadmap for Confronting the Chilling Effects of Censorship, Surveillance and New Technology
Spring 2026 PCI DSS and PCI 3DS compliance packages for AWS now available
20260804 Tue
Mini Shai-Hulud Hits keyv: Trojanized Release Exfiltrates CI Secrets via GitHub

Credential Harvesting Explained: How Attackers Collect Secrets From Developer Machines

Securing Agentic AI Workflows in n8n: From Leaked API Keys to Encryption Key Compromise

From Input to Impact: Secure AI Where It Runs

Wiz at Black Hat 2026: Driving AI Threat Readiness

Redefining Network Security for the Frontier AI Era
The Agent Development Lifecycle has arrived on Cloudflare
Announcing Cloudflare Wallets: the programmable wallet for the agentic Internet
Run CI/CD for millions of repos — on your platform, on Cloudflare
How Cloudflare enforces engineering standards using AI
Introducing: Cloudflare Agents
Your agent can now debug Workers with local tracing
How we built a software factory to drive Astro’s GitHub issue count to zero

AI Notetaker Lets Hackers Spy on Government, Corporate Video Calls
.png)
ChainDrop npm Worm: Bun-loaded CI/CD credential harvester with Ethereum dead-drop C2
Botnet Hunting for Vulnerabilities in Diagnostic Tools, (Tue, Aug 4th)

Escape joins Anthropic’s Cyber Verification Program to advance AI-powered offensive security
The Download: US robot restrictions, and ICE’s DNA grab
Travelers targeted when logging into hotel Wi-Fi networks
Thermo Fisher Applied Biosystems Genetic Analyzers
Acrisure KARR BT and DR-100
CISA Adds Three Known Exploited Vulnerabilities to Catalog
Online backlash ends in Google rolling back Google Earth AI tool after a day

keyv and cacheable npm Package Hijacked in Supply Chain Attack

CVE-2026-18577: N-able N-central Authentication Bypass Exploited in the Wild

Keyv and friends compromised in active Shai-Hulud supply chain attack
Popular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain Attack
Some Claude Chats Are Searchable on Google
The Real Cost of Ransomware in 2026

Device Code Phishing Up 1,500% in 2026; Vishing Doubles
Pipeleek v1 Release
WhatsApp account takeover scam asks you to “vote for my friend”
Secure Agent Harness Execution: Preventing Escape

Stop The Sprawl Snyk Secrets Now Generally Available

AI Model Risk Intelligence Know Which Models You Can Trust Before You Deploy

Evo Continuous Offensive Security Is Here Pentesting Grade Coverage For The 350 Days A Year You Aren't Testing

A First Look at Agentic AppSec: Agentic Remediation and Malicious Code Defense

Inside the keyv npm Compromise: preinstall Malware, Trusted Provenance, and IDE Hooks
ISC Stormcast For Tuesday, August 4th, 2026 https://isc.sans.edu/podcastdetail/10036, (Tue, Aug 4th)
How to run a Mac virus scan to check your Mac for malware
How to remove a virus or any other malware from your Mac
Two Parsers, One JSON and a Flag: Intigriti's July 2026 Challenge
AI Content Provenance is Gaining Momentum: Get C2PA Support Now with Image Optimizer

Agents vs. agents: how we triage HackerOne reports for $2 each, 85% as well as a human
“Adult TikTok” searches lead to scams

Attackers Exploit N-able Patch Bypass Flaw on RMM Servers
The AI Act kicks into action, forces companies to be clear about AI chatbots
Californians can tell data brokers to DROP their information

New Tool Traces AI Videos Back to Their Source

Anthropic: Claude Attacks Result of Security Gaps, Not Model Issues
Trump’s AI protectionism has come for robotics
GEM Training: How Meta Doubled the Efficiency of Its LLM-Scale Ads Foundation Model
Xint Code Discovers 9.8 CVSS Critical Bug in Apple Devices

Rapid7 Analysis: KindaRails2Shell (CVE-2026-66066)
More on the OpenAI Agent’s Attack on Hugging Face
LLM Heist: Hijacking LiteLLM for Traffic Interception, Key Theft, and Tool-Call Injection
20260803 Mon

Chinese Actor Weaponizes Deepseek AI Agent to Attack Security Firm

Introducing Unit 42 Threat Intelligence: Know What Matters, Understand the Adversary, and Act Faster

Metasploit Pro 5.1 Released

Introducing the Wiz Sensor for Developer Workstations to Protect Endpoints in the AI Era

Is There Really a Fix for CISO Fatigue?
Your agent needs a computer, not a container — introducing @cloudflare/computer
Cloudflare Workers and Containers now support inbound TCP connections and gRPC
Introducing the Billable Usage API: programmatic cost visibility for Cloudflare
Smaller, faster, safer: running Kimi and GLM at scale
Workers RPC now works across Python and JavaScript
Introducing Agent Intent-Based Access Control
The Download: reward hacking explained, and suspected Iranian cyberattacks
CISA Adds One Known Exploited Vulnerability to Catalog

Escape joins OpenAI’s Trusted Access for Cyber (TAC) to advance AI-powered offensive security
The OpenAI Hack Shows the Genie Is Out of the Bottle
Bringing Structure to Memory Forensics: A Five-Phase, MITRE ATT&CK-Aligned Workflow
Here’s why AI agents lie and cheat to reach their goals
Rapid7 Expands UK and Ireland Channel Presence Through Strategic Partnership with Exclusive Networks
A week in security (July 27 – August 2)

Welcoming the Nepalese Government to Have I Been Pwned
CrowdStrike 2026 Threat Hunting Report: Exploitation Window Closes as AI Use Accelerates
ISC Stormcast For Monday, August 3rd, 2026 https://isc.sans.edu/podcastdetail/10034, (Mon, Aug 3rd)

Weekly Update 515
What is CVE-2026-66066? Protecting Your Rails App from Active Storage RCE

Building Secure AI Agents with Microsoft Agent Framework and Auth0: User Authentication
HTTP/2 Crash: A Denial of Service (DoS) in HTTP/2 Flow Control

Benchmarking the Agentic SOC: How we evaluate LLMs for security workflows

SOC case management and detection rule history in Elastic Security
Welcome to Agents Week
20260802 Sun

Guide to Bypassing Hotel Wi-Fi Captive Portals (With Permission)
Atomic MacOS (AMOS) stealer infection, (Sun, Aug 2nd)
I want you to steal my job ... again
What Modern Fintechs Actually Need from Their Security Stack
20260801 Sat

Defcon's new badge is a security key you can see inside
Phishing Campaigns Targeting AI Solutions Providers, (Sat, Aug 1st)
From WSProxy to Root: INC ransomware and SonicWall SMA Exploit Chain
DropKick ⚽️ - A Minimal Commit/Reveal Rescue Protocol
Seclog - #189

Elastic goes all-in on Hacker Summer Camp at Black Hat and DEF CON in Las Vegas
Claude Breached 3 Companies and Uploaded Malware to PyPI During Anthropic's Security Tests
Friday Squid Blogging: Squid Helps Discover New Marine Species

Claude published malicious code to the Internet and attacked 3 real companies

Top enterprise SAST tools 2026
HIPAA Security Rule on AWS – Technical Safeguards Implementation and Readiness Guidance
Kate Robertson on the Risks That Lie Behind Canada’s Unexpected Signing of the UN Cybercrime Convention

Anthropic Incident: An AI Agent Published a Malicious Package to PyPI and 15 Real Systems Ran It

CISA Issues Fresh SBOM Guidance. Did They Get It Right?
Anthropic’s Opus 5 Is Better at Resisting Prompt Injection
Data Security Scanning Performance: Why Full Coverage Doesn't Mean Slow Scans
Fake Fortnite rewards are stealing players’ accounts

Anthropic's Fever Dream: Claude's package that stole real keys
20260731 Fri

Whitebox pentesting is now available in Escape's AI Pentesting - Cascade

Top Astra Security alternatives for automated pentesting in 2026

AI scammers outperform humans when it comes to building trust

The Morning After We Pull a Root of Trust, Nobody Owns It

S3 Clones in the Neoclouds

Interpol Leverages Global System to Curtail Fraud Payments

DROP Platform Lets Californians Reduce Digital Footprint

The Good, the Bad and the Ugly in Cybersecurity – Week 31
An API for MoQ: provision your own isolated relays

USA Fencing Lunges Into the Hidden Identity Challenge in Amateur Sports
What Security Leaders Think About Frontier AI Models: Firsthand of Mythos
How Federal Agencies Can Turn Year-End Funding Into Long-Term Cyber Capability
The Download: Montana’s new experimental drug rules
.png)
Rapid7 at Black Hat USA 2026: See preemptive security in action
Facial Recognition at Madison Square Garden
Fake Flash Player installs AtlasRAT
zipdump.py: Metadata Encoding, (Fri, Jul 31st)
Montana’s new “right to try” law can’t come soon enough for some

Escape Research team found a PII disclosure in Keycloak. It's now CVE-2026-17059.
Patch In, Exploit Out: How deepsec Reconstructed the Pwn2Own Microsoft Edge Sandbox Escape
Socket Is Sponsoring Composer and Packagist
Automated Penetration Testing: The Complete Guide in 2026
7 best continuous penetration testing tools in 2026
New macOS stealer hijacks Telegram sessions and steals crypto
macOS vulnerability allows hackers to bypass security warnings
New PamStealer is posing as macOS clipboard manager Maccy
Nigerian prince scam: What it looks like and the tactics behind it
Is Mercari legit? 9 scams targeting buyers and sellers
ISC Stormcast For Friday, July 31st, 2026 https://isc.sans.edu/podcastdetail/10032, (Fri, Jul 31st)

Handling Auth in Next.js 16 with Server Actions and Middleware
Prioritize security findings with the Datadog Runtime Prioritization Engine

Alert Zero: AI-driven alert triage and attack investigation for the agentic SOC

Exploring the Hugging Face Breach: mapping AI agent tactics to Elastic Defend

What's new in Elastic Defend: 800+ vulnerable driver rules, automated troubleshooting, and ARM support
Guide: Certificate-Based Authentication for Payment & Banking Infrastructure
Introducing Tactics: See What Adversaries Do After They’re Inside
The CISO's Guide to EU Cybersecurity Regulation (2026 Edition)
Balancing speed and safety: A control framework for AI coding agents

Minnesota Water Utility Attacks Expose Sector's Cyber-Risks

Max-severity Exchange server flaw under active exploitation by Kremlin hackers
The State of Network Infrastructure Security 2026
.png)
Dev Machine Guard Now Inventories AI Agent Skills on Developer Machines

Compromised npm Packages: @joyfill/components and @joyfill/layouts Ship an Obfuscated Remote Access Trojan

AI Harnesses Burst With Potential Exploit Opps
Extend Amazon Inspector SBOM Generator with Plugins
Montana’s plan to become an experimental medical hub just pushed forward
Read This Before You Buy That TV Streaming Stick

Rethinking Scanning for the AI Era: Wiz’s Agentic Code Security System
American Being Prosecuted for Wiping His Phone Before Handing It Over to Border Officials

KindaRails2Shell: CVE-2026-66066, Critical Arbitrary File Read and Possible Remote Code Execution in Ruby on Rails
Malwarebytes for Windows, now available on the Microsoft Store
Escaping Linux Sandboxes via PipeWire (CVE-2026-5674)
20260730 Thu

What Was on This Machine? Answering the Blast Radius Question After a Laptop Compromise

Claude Mythos — Hype vs. Reality: What Security Teams Need to Know
.jpeg)
Rapid7 named a Leader in the IDC MarketScape: Worldwide MDR Service for Midmarket 2026 Vendor Assessment

Metasploit Framework 6.5 Released

The July 2026 Apple Security Update Review
Hims & Hers sued over alleged health data privacy failures
Adform compromised to serve crypto stealer via supply chain attack

LLM Router Attacks: No Signature, No Detection, No Reference
Dogfooding at scale: migrating cdnjs to Cloudflare’s Developer Platform
Hidden prompt turns Microsoft Copilot into an AI worm
Accelerating EDR Evasion with LLM-Driven Analysis
The Download: tricking LLMs, and reviving geothermal plants

CosmosEscape: Taking Over Every Database in Azure Cosmos DB
CISA Guide Helps Federal Agencies Securely and Effectively Use Open Source Software
NASA Core Flight System (cFS) Health & Safety (HS) Application
Mitsubishi Electric CC-Link IE TSN Communication Protocol
Schneider Electric IGSS