Zoom has rolled out patches for four newly disclosed security flaws that could let a malicious meeting participant remotely execute code on another…
State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit
It typically begins the same way it has for years, with an approach from a recruiter offering a role at a company the target would recognize, accompanied…
Cisco Warns of Seven ClamAV Flaws, Two With Public PoCs
Cisco warns that seven ClamAV flaws affect Secure Endpoint Connector products, with two having public PoCs that could enable remote DoS attacks. Cisco…
Kimsuky Brings AI Closer to Its Malware and Phishing Operations
North Korean cyber-espionage group Kimsuky appears to be moving beyond occasional use of public AI services by assembling a local artificial intelligence…
DEF CON Attendees Allegedly Jammed Plane Wi-Fi and Broadcast Fake ‘Delta WiFi Fast’ Network Mid-Flight
A Delta Air Lines flight carrying passengers home from the world’s largest hacking conference became the center of a rapidly unfolding cybersecurity scare…
ExfilSquad Targets New Victims, Shares Data via Torrents
ExfilSquad targets 13 organizations, exploiting cloud portals for data theft and using torrents to spread stolen information and amplify damage.…
Intel’s $20 Billion Stock Sale Fuels a Bigger Fight Over Chip Supply Chain Security
Intel has priced an upsized $20 billion public stock offering, a move that goes beyond a routine capital raise and lands squarely in the middle of an…
Tanaka Emerges as Leading Data Leak Broker as Stolen Information Fuels Cybercrime
Ransomware attacks are undoubtedly one of the most notorious security threats today. Yet it seems that information itself has become a very popular target…
CopyEscape Docker Vulnerability Lets Malicious Containers Overwrite Host Files and Gain Root
A newly disclosed Docker vulnerability, tracked as CVE-2026-17106 and nicknamed “CopyEscape,” allows malicious containers to overwrite files on the host…
The inconvenient truth about AI pentesting: someone has to check all the work
AI pentesting can flood teams with findings they cannot validate. The real challenge is managing “validation debt” as discovery scales. AI pentesting has…
Zenity Raises $125 Million Series C to Strengthen AI Agent Security and Governance
AI security and governance platform Zenity has announced a $125 million Series C funding round led by Norwest. The investment signals escalating…
Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws
The security defects could be exploited for arbitrary code execution and denial-of-service.
ISA VDA 6.0.3 – The Data Protection sheet explained
The Data Protection catalog is the shortest of the three in ISA 6.0.3 and the one most often underestimated. Twelve control questions across eight…
Valve warns Steam hardware buyers: Expect fake delivery scams
The warning affects recent buyers of Steam hardware, including the hugely popular Steam Deck.
IT Security News Hourly Summary 2026-08-11 19h : 11 posts
11 posts were published in the last hour 16:31 : Social media platforms crack down on drone factory recruiting game 16:31 : DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi 16:31 : Q&A: Ransomware is now…
Social media platforms crack down on drone factory recruiting game
Researchers found that games and major US social media platforms were used to lure young people into jobs in Russia’s drone industry.
DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi
This is why we can’t have nice things, people
Q&A: Ransomware is now a ‘fully fledged industry’, says cybercrime journalist Geoff White
Cybercrime no longer divides neatly between lone hackers, organised gangs and state-backed operations. These groups exchange tactics and tools, while…
AWS successfully completed its 2025-26 NHS DSPT assessment
Amazon Web Services (AWS) is pleased to announce its successful completion of the 2025-26 NHS Data Security and Protection Toolkit (NHS DSPT) assessment…
Uncover Security Risks in Your Agent Skills Before Deploying
This tutorial explains how to catch a dangerous agent skill before an agent ever runs it: review it automatically, block it in CI if it fails, and only…
Zoom Patches Zero-Click Code Execution Vulnerability
Impacting Zoom annotation, the bug could be exploited by a meeting participant to execute code on another participant’s machine.
Two wars and a World Cup lead to epic DDoS attacks on publishers
Ukraine, Iran, and football inspire geopolitically motivated DDoS attacks, while 1 Tbps traffic jams up 519 percent
AI Genie in the Wild
When I give talks about AI genies , I use this sort of example as a hypothetical. It’s happened . The story is from Australia. Someone named Andrew tasked…
Delta investigating after someone set up fake Wi-Fi network mid-flight
The Delta flight crew switched off the aircraft’s legitimate Wi-Fi network for around 30 minutes due to the incident, according to a spokesperson.