7 posts published in the last hour 06:31CISA Warns Hackers Are Actively Exploiting VMware vCenter Path Traversal Flaw 06:31Fake Claude Install Guide Steals Mac Passwords and Turns Trusted Crypto Wallet Apps Into Phishing Traps 06:02Fanlore – 144,520 breached accounts 06:02Critical…
CISA Warns Hackers Are Actively Exploiting VMware vCenter Path Traversal Flaw
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting Broadcom VMware vCenter to its Known…
Fake Claude Install Guide Steals Mac Passwords and Turns Trusted Crypto Wallet Apps Into Phishing Traps
A Google-sponsored search result for Claude installation instructions is being used to deliver a sophisticated macOS stealer and remote-access trojan…
Fanlore – 144,520 breached accounts
In August 2026, the Organization for Transformative Works (OTW) identified unauthorised access to the Fanlore wiki it operates . The breach resulted in…
Critical Microsoft Copilot CoSnitch Vulnerability Lets Attackers Steal Sensitive Data With One Click
A critical vulnerability in Microsoft Copilot Personal, tracked as CVE-2026-24301 and nicknamed CoSnitch, lets attackers silently siphon sensitive data…
Oz Hair and Beauty – 1,988,331 breached accounts
In August 2026, Australian beauty retailer Oz Hair and Beauty was the target of an xpl0itrs extortion attack . The group subsequently published data…
Irregular Pushes Stronger Containment Standards for Secure Frontier AI Cyber Evaluations
Irregular has detailed an investigation into an AI cyber-evaluation incident in which internet access unintentionally allowed models to interact with…
IT Security News Hourly Summary 2026-08-19 08h : 5 posts
5 posts published in the last hour 05:31Medusa Ransomware Attacks 300+ Critical Infrastructure Organizations Using Double Extortion 05:31Cl0p Hackers Exploit PTC Windchill Vulnerability to Deploy Custom Web Shell and Steal Data 05:31Hackers Abuse Thousands of WordPress Sites to Spread StopAndProtect…
Medusa Ransomware Attacks 300+ Critical Infrastructure Organizations Using Double Extortion
Medusa ransomware operators have compromised over 500 organizations across critical infrastructure sectors, according to a joint advisory issued by the…
Cl0p Hackers Exploit PTC Windchill Vulnerability to Deploy Custom Web Shell and Steal Data
The Cl0p ransomware and extortion operation is likely exploiting a critical PTC Windchill vulnerability to deploy a purpose-built Java web shell that can…
Hackers Abuse Thousands of WordPress Sites to Spread StopAndProtect Malware via ClickFix
A large-scale malware operation called StopAndProtect is exploiting thousands of compromised WordPress websites to distribute ransomware, steal files,…
Banks look for fraud signals in customer behavior
Banks are dealing with more fraud in which customers authorize payments after being manipulated by criminals. ThreatMark’s Fraud Readiness Benchmark 2026…
Critical Microsoft Copilot CoSnitch Flaw Lets Hackers Steal Sensitive Data With One Click
A critical one-click vulnerability in Microsoft Copilot Personal, tracked as CVE-2026-24301 and dubbed CoSnitch. This flaw could enable an attacker to…
ChatGPT’s new feature could give infostealers a map of your Mac activity
OpenAI’s new Computer History feature turns recent Mac computer activity into memories ChatGPT and Codex can use, and it’s raising questions about privacy…
Australian hotel chain leaks guests’ PII after breach at third-party database operator
Unknown parties know where you stayed last summer, down under, across 120 Quest properties
ISC Stormcast For Wednesday, August 19th, 2026 https://isc.sans.edu/podcastdetail/10058, (Wed, Aug 19th)
This post has no text preview — click the link below to read the original article. This article has been indexed from SANS Internet Storm Center, InfoCON: green Read the original article: ISC Stormcast For Wednesday, August 19th, 2026 https://isc.sans.edu/podcastdetail/10058,…
CoPilot Snitches on Itself, Hacker leaks Azure data and Texas University deals with cyber attack
Microsoft Copilot CoSnitch Flaw, Alleged Azure Employee Data Leaks, UTSA Cyberattack, and AI “Mind Viruses” The episode covers a one-click flaw in…
OpenAI’s overhead will rise 20 percent for some workloads as it hardens security
Expanded multistage chain of thought monitoring makes frontier model work more expensive
DOJ charges 17 people in Iran-backed hacking campaign against US
Officials allege an IRGC-linked organization was behind a coordinated effort to steal research from American universities, companies and government…
IT Security News Hourly Summary 2026-08-19 00h : 5 posts
5 posts published in the last hour 21:55IT Security News Daily Summary 2026-08-18 21:02Black Hat 2026: Key news, takeaways and security trends 21:01Threat Brief: Mitigating Large-Scale Credential Attacks (Updated August 18) 21:01Implement custom authentication for tools integration using request Lambda…
IT Security News Daily Summary 2026-08-18
175 posts published today 21:02Black Hat 2026: Key news, takeaways and security trends 21:01Threat Brief: Mitigating Large-Scale Credential Attacks (Updated August 18) 21:01Implement custom authentication for tools integration using request Lambda interceptor in AgentCore Gateway 21:00IT Security News Hourly Summary…
Black Hat 2026: Key news, takeaways and security trends
Black Hat USA 2026 returns for its 29th year, covering the latest in infosec for CISOs, technical experts, thought leaders, innovative vendors and…
Threat Brief: Mitigating Large-Scale Credential Attacks (Updated August 18)
We provide guidance for preparing for and mitigating large-scale credential attacks, focusing on recent campaigns targeting security vendors’ devices.
Implement custom authentication for tools integration using request Lambda interceptor in AgentCore Gateway
When deploying AI agents with Amazon Bedrock AgentCore, organizations benefit from built-in modern support for OAuth 2.0, AWS Identity and Access…