Ransomware operations are increasingly targeting the people behind critical business processes, not just privileged IT administrators. Over a one-month…
Anthropic to put AI in charge of reviewing Claude Code actions by default
Anthropic will make auto mode in Claude Code the default for new sessions on Pro, Max, and Team plans starting August 14. Users who previously selected a…
DeepSeek Restarts Second Funding Round
AI start-up reportedly recommences second funding round, seeking funds for data centre investment, at valuation of nearly $74bn
Corporate Data Stolen in Levi Strauss Cyberattack
Using social engineering, a threat actor accessed the computers of three employees and exfiltrated data from them.
IT Security News Hourly Summary 2026-08-10 11h : 7 posts
7 posts were published in the last hour 8:31 : Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials 8:31 : Claude Opus 5 Most Resistant to Indirect Prompt Injection Attacks, With Just 2% Success Rate 8:31…
Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials
Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code (VS Code) extension named Solidity Pro (“solidity-pro”) that has been…
Claude Opus 5 Most Resistant to Indirect Prompt Injection Attacks, With Just 2% Success Rate
Anthropic’s Claude Opus 5 has significantly reduced the likelihood of a successful indirect prompt injection (IPI) attack, bringing it down to 2% over 15…
Nscale May Hold IPO In September – Report
London-based data centre start up reportedly says it has $51bn in contracted revenue, could make US market debut as early as September
Claude Opus 5 Cuts Indirect Prompt Injection Attack Success to 2% in New Benchmark Analysis
Anthropic’s Claude Opus 5 has recorded the lowest indirect prompt injection attack success rate in Gray Swan’s latest benchmark, according to results…
Make-Up Robot Prototype Wins Top Hackathon Prize
Robot arm prototype that accepts voice controls, applies make-up to a person’s face on a daily schedule takes award at Hong Kong event
New WordPress Supply Chain Attack Compromises Themes via Poisoned API Response
A supply chain attack targeting BdThemes WordPress plugins has exposed site administrators to account takeover, webshell deployment, and persistent…
IT Security News Hourly Summary 2026-08-10 10h : 8 posts
8 posts were published in the last hour 7:32 : A week in security (August 3 – August 9) 7:32 : OpenAI slows Astra, Irregular won’t talk, Senate confirms Cassady 7:32 : Rural Yorkshire, Lincolnshire Premises Get Fibre Links 7:31…
A week in security (August 3 – August 9)
A list of topics we covered in the week of August 3 to August 9 of 2026
OpenAI slows Astra, Irregular won’t talk, Senate confirms Cassady
OpenAI slows release of Astra model citing cyber capabilities Irregular won’t say if there were more rogue incidents U.S. cyber ambassador nominee Cassady…
Rural Yorkshire, Lincolnshire Premises Get Fibre Links
Some 60,000 rural homes and businesses in region linked to ultra-fast broadband network under government-funded Project Gigabit
OpenAI locks down Astra over potential critical cyber capabilities
OpenAI’s internal evaluation of its upcoming model, Astra, found significant advances in agentic coding and cybersecurity, leading the company to conclude…
North Korean Hackers Explore AI Transcription for Stolen Calls and Meetings
North Korea-linked Kimsuky operators are expanding their artificial intelligence capabilities, with newly observed evidence showing experimentation with…
GitHub Dependabot malware alerts now cover eight ecosystems
GitHub has flagged npm malware since March 2026. Anyone pulling in a bad PyPI, Maven, RubyGems, NuGet, Go, crates.io, or PHP Composer package has had no…
OpenAI’s Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause
OpenAI has announced that it’s pausing some “internal activities” involving its upcoming artificial intelligence (AI) model Astra after an internal…
IT Security News Hourly Summary 2026-08-10 09h : 6 posts
6 posts were published in the last hour 6:31 : Claude-Powered AI Agent Exploits API Authorization Flaw to Hack Gym Booking System 6:31 : Meta Confirms One of Its AI Models Breached a Company During a Misconfigured Cyber Test 6:1…
Claude-Powered AI Agent Exploits API Authorization Flaw to Hack Gym Booking System
An Australian AI agent powered by Anthropic’s Claude reportedly exploited an authorization flaw in a gym booking platform, allowing it to book classes…
Meta Confirms One of Its AI Models Breached a Company During a Misconfigured Cyber Test
Meta has confirmed that one of its AI models breached a real organization during cybersecurity testing. Thank you for being a Ghacks reader.
Claude Code Child Process Can Read Its Own OAuth Token From macOS Keychain
A macOS Keychain implementation weakness in Anthropic’s Claude Code CLI could allow any process running as the logged-in user including a Claude…
Chainloop: Open-source evidence store and policy engine for the software supply chain
Chainloop is an open source evidence store for the software supply chain. A command line tool runs inside a GitHub Actions, GitLab, Jenkins, or Dagger…