Secret to their success: Using the right model for the right security job
Dysphoria Botnet Uses Blockchain Domains to Hide C2 Infrastructure
Researchers uncovered the 200,000-device Dysphoria botnet, which uses Ethereum and Solana domains to hide its command servers. QiAnXin XLab, jointly with…
CISO’s guide to data obfuscation
Organizations today generate, process and share more sensitive information than at any other point in history. Customer records, financial…
Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack
Anthropic says Claude Mythos Preview helped derive an end-to-end key-recovery attack against HAWK-256 and a 200- to 800-fold speedup for an attack on…
Mate Security Grows Over 500% Since Q3 2025 and Pushes Past $50M in Funding
Mate Security secures $35M in Series A funding after 500% growth, as Fortune 500 demand grows for its agentic AI security operations platform worldwide.
IT Security News Hourly Summary 2026-07-28 21h : 10 posts
10 posts were published in the last hour 19:2 : Claude Mythos Preview Discovers Cryptographic Weaknesses That Human Experts Missed for Years 19:2 : JetBrains Urging Customers to Patch Critical TeamCity Flaw that Enables OS Command Execution 19:2 : Chrome…
Claude Mythos Preview Discovers Cryptographic Weaknesses That Human Experts Missed for Years
Anthropic researchers using Claude Mythos Preview have uncovered mathematical flaws in major cryptographic algorithms that human experts failed to spot…
JetBrains Urging Customers to Patch Critical TeamCity Flaw that Enables OS Command Execution
JetBrains has urgently released security updates for a critical vulnerability in TeamCity On-Premises that could allow remote attackers to bypass…
Chrome Extension Monitors AI Conversations Across ChatGPT, Claude, Gemini, and Other Platforms
A Chrome extension with roughly 100,000 installs is quietly harvesting every prompt and AI response typed across nine major artificial intelligence…
Nginx Buffer Overflow Vulnerability Allows Attackers to Execute Arbitrary Code – PoC Released
A high-severity heap buffer overflow in NGINX Plus and NGINX Open Source can let unauthenticated attackers crash worker processes and, under certain…
AWS KMS or AWS CloudHSM: Choose the right key management solution
Choosing the right cryptographic key management service on Amazon Web Services (AWS) starts with understanding the difference between AWS Key Management…
Top 10 Phishing Kits Used by Hackers to Launch Cyberattacks (July 20-26, 2026)
Global phishing-as-a-service (PhaaS) activity surged to 7,295 tracked uploads during the week of July 20-26, 2026, driven overwhelmingly by OAuth…
How Hackers Are Weaponizing Hotel Wi-Fi to Steal Corporate Microsoft 365 Accounts
How the Attack Operates Threat actors are quietly hijacking hotel Wi-Fi gateways to reroute traveling executives to fake Microsoft 365 login pages,…
Substituting IP address evaluation with hardware-rooted sovereign zero trust
The need for trustworthy networking, reliable cloud access, and compliance with digital sovereignty requirements has increased substantially in recent…
The Governance Vacuum: Who Owns Present-State Proof?
Modern governance systems are built upon the principle of accountability. Responsibilities are assigned, duties are defined, authorities are delegated,…
Strengthening the open source defense layer: Red Hat joins NVIDIA in the Open Secure AI Alliance
As AI capabilities advance, they transform the security landscape in real time. To address these challenges at scale, no single company can act in…
PhantomEnigma Infects Organizations with Malware via Hijacked Government Websites
PhantomEnigma abuses Brazilian government websites and trusted email channels to spread malware, target banks, evade security checks, and maintain access.
2026 Phase 1a IRAP report is now available on AWS Artifact for Australian customers
Amazon Web Services (AWS) is excited to announce that the latest version of Information Security Registered Assessors Program (IRAP) report (Phase 1a –…
Tools Change. Teach People How to Keep Up
“Make everyone one percent better and it compounds across the team.” That’s the line Joe Head wrote about his own job and when I read it back to him, he…
Telegram Introduces Serverless Runtime for Bots, Bringing Deployment, Application Logic, and Data Under One Platform
Telegram has rolled out Telegram Serverless, a managed serverless runtime that enables developers to deploy bot backends directly to Telegram’s…
ShinyHunters Claims Ernst & Young (EY) Data Breach, Threatens July 31 Leak
EY confirmed the theft of client tax documents from its third-party support platform. ShinyHunters claims responsibility and is threatening to publish the…
Wordfence PRISM Detected Backdoored WordPress Plugin within Two Hours of it Being Introduced
On July 28th, 2026, our autonomous AI vulnerability intelligence agent, Wordfence PRISM, identified a critical Authentication Bypass backdoor in Advanced…
DEF CON bans Meta-style ‘pervert glasses’
More organizers prohibit camera-equipped specs, even with prescription lenses
IT Security News Hourly Summary 2026-07-28 18h : 16 posts
16 posts were published in the last hour 16:2 : Bank for charities pulls online services over security fears 16:2 : Apple iOS 26.6 Fixes Flaws Enabling Kernel Code Execution, Root Access and Sandbox Escape 16:2 : Hugging Face breach…