13 posts were published in the last hour 15:31 : Secure development can help turn the tables as AI alters cyber landscape 15:31 : Six npm Packages Read C2 Addresses From Ethereum Wallet 15:31 : AI Helps Researchers Uncover Zoom…
Secure development can help turn the tables as AI alters cyber landscape
A top Microsoft executive says a shift toward memory safety and other preventative measures can limit the ability to exploit flawed software.
Six npm Packages Read C2 Addresses From Ethereum Wallet
Six npm packages queried an Ethereum wallet to locate C2 infrastructure
AI Helps Researchers Uncover Zoom Zero-Click RCE in Less Than a Day
Researchers used public AI models to uncover ZOOMSDAY, a critical Zoom zero-click RCE exploit chain, in less than 24 hours.
The AI Governance Gap Is a Leadership Problem: Waiting Won’t Close It
Organizations are rushing to implement AI without fully grasping where its legal protections begin and end.
CVE Program eyes automation and globalization to weather AI ‘vulnpocalypse’
The vulnerability-coordination project has had a rocky few years, but a key leader says it will “flourish and improve.”
Alert Fatigue Is Hitting US SOCs Hard: How to Cut Through the Noise
US SOC teams are dealing with a growing volume of alerts, while analyst time and security budgets remain limited. Too much of that time is spent checking…
78 arrests in bust of major Western Mediterranean smuggling network in Spain
The operation, conducted under a newly established Europol Taskforce within Europol’s European Centre Against Migrant Smuggling, brought together officers…
Hackers Can Turn Off Refrigeration While the Temperature Display Still Looks Normal
Claroty Team82 has uncovered 23 vulnerabilities in Copeland’s XWEB Pro supervisory controllers, widely used to manage commercial refrigeration in…
Cursor Security Bug Allowed Repositories to Execute Commands Before Trust Verification
Cursor fixed a pre-trust code execution path in three days then closed the report as informative
Plug and Pwn Attack Abuses Windows PnP Drivers to Gain SYSTEM With Zero Clicks
Plug and Pwn attack details that the Windows Plug and Play driver installation can lead to execution as NT AUTHORITY\SYSTEM. The technique, published by…
Enriched URL Reports: VirusTotal URL Scanning 2.0
Introduction In today’s fast-moving cybersecurity landscape, threat analysts must move beyond basic, binary reputation scores to successfully defend…
Mozilla Revokes Firefox Signing Key After Unencrypted Subkey Was Committed to GitHub
Mozilla has rotated a GPG signing subkey used for selected Firefox and Thunderbird release artifacts after an unencrypted copy of the previous subkey was…
IT Security News Hourly Summary 2026-08-11 17h : 17 posts
17 posts were published in the last hour 14:31 : SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities 14:31 : PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers 14:31 : What Happened At Black Hat 14:31 : Gen Threat Report Highlights…
SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities
SAP released 28 new and two updated security notes, including four notes dealing with critical-severity bugs.
PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers
Guardicore Labs uncovers a Ransomware detection campaign targeting MySQL servers. Attackers use Double Extortion and publish data to pressure victims.
What Happened At Black Hat
I had a blast at my first Black Hat! With more than 20,000 attendees, 400 booths, and an unfathomable amount of afterparties, Black Hat 2026 taught me…
Gen Threat Report Highlights H1 Global Threat Landscape
The Gen Threat Report is a twice-a-year analysis of the largest cyber threats impacting the digital threat landscape, providing a detailed insight into…
Black Hat USA 2026: Field Report and Cybersecurity Findings
Cyber Defense Magazine Black Hat USA 2026 Las Vegas, Nevada | August 2–6, 2026 Executive Summary and Key Findings Black Hat USA 2026 provided a firsthand…
Cyber Briefing: 2026.08.11
Critical infrastructure providers, supply chain logistics networks, and enterprise platforms continue to be disrupted by active ransomware campaigns
Security Theatre: Busy Metrics in the SOC are a Great Show, but Terrible Defense
Unfortunately, many security professionals still consider noisy SOC metrics the best benchmarks for performance. I call this “activity theater”—a lot of…
French-Spanish operation targets hazardous waste trafficking network: four arrested
The investigation focused on an alleged cross-border network that illegally transported tonnes of demolition waste from France to Spain, posing serious…
Closing Security Gaps Where Digital Meets Physical Access
Access management is the first step in any risk management strategy. Sophisticated threats have adapted to the familiar methods of heavy doors, physical…
US Water Systems Get Cyber Boost From New Senate Bill and ‘Water Watch Center’
The Water Watch Center launched at DEF CON aims to help under-resourced utilities protect their systems against hackers.