N-able has confirmed that a critical vulnerability in N-central, its flagship remote monitoring and management (RMM) platform, is being actively exploited…
Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking
Midnight Blizzard has been stealing Microsoft account credentials via compromised Wi-Fi networks at hospitality organizations.
Internet-Facing SonicWall SMA Appliances Face Zero-Click Root Compromise
Internet-facing SonicWall Secure Mobile Access, or SMA, appliances face a serious threat after attackers turned two flaws into a route to full VPN-gateway…
Coldcard Users Lose $89m After Bitcoin Wallet Is Hacked
A hacker has drained nearly $89m from Coldcard Bitcoin wallets after exploiting a legacy bug
OpenAI reveals how criminals used ChatGPT to run scams
OpenAI banned a coordinated network of ChatGPT accounts that likely originated in Cambodia’s Preah Sihanouk province, a region reports have linked to…
Zoox To Offer US’ First Paid Rides In Custom Robotaxis
Zoox to offer commercial services in Las Vegas for first time, after receiving federal exemption for cars without steering wheels
Thermo Fisher Patches Flaw That Could Make DNA File Tampering Nearly Undetectable
Thermo Fisher Scientific has patched a flaw in select Applied Biosystems human identification software that could allow data files to be altered before…
What cybersecurity experts are talking about in 2026
Cybersecurity research in 2026 is revealing a threat landscape shaped by increasingly specialized actors, trusted platforms being turned into attack…
US Water Cyberattacks Extend Beyond Minnesota to at Least 6 Other States
Michigan, South Dakota, and Georgia are reportedly on the list of states whose water systems have been targeted by Iran-linked hackers.
Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support
Attackers reaching for kernel access on a Windows machine bring a driver Microsoft already trusts. It is signed, it loads, and it carries a known flaw.…
Amazon Finds Cost Overruns In Some AI Projects
Amazon engineers reportedly warn staff of ‘catastrophically expensive’ cost issues that have arisen with some AI programming deployments
Leak Affects Thousands Of Warwickshire Voters
Personal information on nearly 3,000 voters in Warwickshire sent via link in email due to ‘human error’, says local council
London Assembly Calls For More Control Over Robotaxis
Senior London Assembly member says ministers should cede full oversight of capital’s autonomous vehicles to Transport for London
Coldcard Hardware Wallet RNG Flaw Linked to $88.6 Million Bitcoin Theft
A firmware flaw in Coldcard hardware wallets has been linked to the theft of approximately $88.6 million in Bitcoin. Attackers exploited a compromised…
Hugging Face Diffusers Flaws Could Let Model Repositories Execute Arbitrary Code
Three high-severity security flaws have been disclosed in Hugging Face’s Diffusers library that could allow crafted model repositories to stealthily…
UK investments agency breach, CISA water warning, Anthropic rogue threesome
UK’s state investments agency suffers data breach CISA tells utilities to remove internet-exposed PLCs following Minnesota attacks Anthropic says its AI…
AI is ‘both the weapon and the target’ in latest wave of cyberattacks
CrowdStrike tracks 89% surge in machine-assisted activity as patch windows shrink to 48 hours
CrowdStrike 2026 Threat Hunting Report: Exploitation Window Closes as AI Use Accelerates
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: CrowdStrike 2026 Threat Hunting Report: Exploitation Window Closes as AI Use Accelerates
A week in security (July 27 – August 2)
A list of topics we covered in the week of July 27 to August 2 of 2026
Critical N-Able N-Central Vulnerability Allows Hackers to Gain god-mode Access to the RMM Console
N-able has disclosed a critical security vulnerability in its N-central remote monitoring and management (RMM) platform, which could allow unauthenticated…
N-able Says Attackers Take Over N-central Servers After Initial Fix Proves Incomplete
N-able said attackers exploited an authentication bypass in N-central to gain remote administrative access and reach the customer systems managed through…
MacSync macOS Stealer Uses Fake Claude Guide to Steal Passwords and Crypto Wallets
Mac users searching for Claude installation help have been led into a dangerous trap. A malicious campaign used a paid search result and a fake guide on a…
IT Security News Hourly Summary 2026-08-03 09h : 4 posts
4 posts were published in the last hour 7:1 : Ruby on Rails Patches Critical Active Storage Vulnerability Affecting Image Processing 7:1 : Critical N-able N-central Flaw Actively Exploited to Gain God-Mode Access to MSP Networks 6:31 : Mapping the…
Ruby on Rails Patches Critical Active Storage Vulnerability Affecting Image Processing
Ruby on Rails fixed a critical vulnerability that could let unauthenticated attackers read files and achieve remote code execution. Ruby on Rails has…