For many travelers, connecting to hotel Wi-Fi is one of the first things they do after checking in. But while some guests use the network for banking and…
NIST Seeks Public Input on AI-Ready NVD Modernization
The US National Institute for Standards and Technology wants to modernize its National Vulnerability Database to embrace AI-powered vulnerability research
CISA Warns Critical Metabase SQL Injection Flaw Lets Unauthenticated Attackers Gain Admin Access
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has identified a critical SQL injection vulnerability in Metabase, adding it to its Known…
This Coin-Sized Device Can Hack a Boeing 737
Security researchers found that in less than 60 seconds, they could open a hatch on a plane’s exterior, plug in a tiny device, and redirect the aircraft’s…
Hackers Exploit Critical VMware vCenter Flaw to Deploy Reverse SSH Across 47 Countries
Threat researchers have identified an active campaign exploiting the critical VMware vCenter vulnerability CVE-2026-59310, with 361 victim IP addresses…
CAV3RN Uses Google Apps Script as C2 Relay to Hide Malware Traffic Behind Google Infrastructure
CAV3RN is a modular espionage framework that is becoming harder to see on a network. Its newest communication component hides remote-control traffic…
Fake VPN Extensions Put Operators in Adversary-in-the-Middle Position Over Chrome Traffic
A Chrome Web Store operation that turns “free VPN” extensions into browser-wide traffic relays controlled by a single proxy provider. The campaign…
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic that, if successfully…
Ceva Logistics Operations Disrupted by Cyberattack
Affecting European contract logistics operations at eight Ceva warehouses, the incident caused shipment delays for multiple customers.
Lazarus hackers pair fake job offers with Windows zero-day exploit
The North Korea-linked Lazarus group is using fake job offers, trojanized PDF software and a Windows zero-day in attacks aimed primarily at the defense…
Nightmare-Eclipse Drops ShieldBreak Windows Defender 0-day Vulnerability
The prolific and controversial security researcher known as Nightmare-Eclipse (also tracked under the alias Chaotic Eclipse) has released a ninth Windows…
Google Chrome Blocks Abusive Notifications Used to Deliver Malware and Scams
Google Chrome has implemented enhanced defenses aimed at disrupting abusive web push notifications that are often used to distribute malware, phishing…
IT Security News Hourly Summary 2026-08-12 14h : 7 posts
7 posts were published in the last hour 11:31 : Dark Web Corporate Access Prices Surge 4,055% as Stolen Credentials Flood Cybercrime Markets 11:31 : Brit rail cops bring live facial recognition to the London Underground 11:31 : Google Chrome…
Dark Web Corporate Access Prices Surge 4,055% as Stolen Credentials Flood Cybercrime Markets
Corporate network access is becoming both cheaper to obtain at scale and vastly more valuable at the top end of the criminal market. That contradiction…
Brit rail cops bring live facial recognition to the London Underground
Victoria is the first stop as privacy campaigners warn the technology is becoming routine
Google Chrome 151 Update Fixes 5 High-Severity Use-After-Free Vulnerabilities
Google has released Chrome version 151.0.7922.137/138 for Windows and macOS, and version 151.0.7922.137 for Linux. This update addresses five…
OpenAI Launches GPT-5.6-Cyber for Advanced Defensive Security Testing
OpenAI launches GPT-5.6-Cyber through Daybreak Red for advanced vulnerability research and exploit testing under restricted access.
Microsoft SharePoint RCE Vulnerability Lets Remote Attackers Execute Code
A newly disclosed vulnerability in Microsoft SharePoint Server, tracked as CVE-2026-63520, could allow attackers to execute arbitrary code remotely on…
Chipmaker Patch Tuesday: Intel, AMD Fix Over 80 Vulnerabilities Combined
Intel has informed customers about several high-severity vulnerabilities that can lead to privilege escalation and even code execution.
IT Security News Hourly Summary 2026-08-12 13h : 18 posts
18 posts were published in the last hour 10:31 : ‘The Worst I’ve Ever Seen’: Cargo Thefts Have Turned Violent in Pursuit of AI Hardware 10:31 : Malicious CCleaner Installer Patches Chrome Security Extension to Deploy Browser Spyware 10:31 :…
‘The Worst I’ve Ever Seen’: Cargo Thefts Have Turned Violent in Pursuit of AI Hardware
Experts allege that two recent incidents in California show the extreme lengths that criminal organizations are willing to go to to steal servers and…
Malicious CCleaner Installer Patches Chrome Security Extension to Deploy Browser Spyware
A counterfeit installer for the widely used PC-cleaning utility CCleaner is being used to compromise Windows systems and deploy a malicious Chrome…
Top 10 Best DDoS Protection Services in 2026
Cloudflare is the best DDoS protection service for most organizations in 2026, scoring highest in our evaluation on the combination of network capacity,…
Nvidia Releases Open, Lightweight Nemotron AI Model
AI chip giant releases Nemotron 3.5 Lightning under open-weight licence, as it reportedly works on large-scale challenger with 1 trillion parameters