CVE-2026-60004 is a remote code execution vulnerability patched by Gitea developers in late July with the release of version 1.27.1.
AI vulnerability discovery scores the highest impact of 20 emerging risks
Risk managers, auditors and senior executives at 316 companies spent April and May ranking 20 threats they have not yet felt. AI discovery of cyber…
CISA Red Team Achieves Full Domain Compromise Across Critical Infrastructure Networks
CISA’s latest red team assessment shows how common failures in Active Directory, cloud identity, and SOC processes can turn a phishing foothold into an…
Hottest cybersecurity open-source tools of the month: August 2026
Presented here is a curated selection of noteworthy open-source cybersecurity solutions that have drawn recognition for their ability to enhance security…
WhatsApp Passkeys Now Protect Over 1 Billion Users Against Account Takeover Attacks
WhatsApp has announced that over one billion people now use passkeys to secure their accounts, enhancing phishing-resistant authentication across one of…
Linux Turns 35 – Hobby Kernel Now Powers Cloud, Android, and Global Cyber Defense
On August 25, 1991, a 21-year-old University of Helsinki student posted a modest note to the Usenet group comp.os.minix. “I’m doing a (free) operating…
Core Werewolf Hackers Deploy New CoreRAT Malware Against Russian Government and Defense Organizations
The Core Werewolf espionage cluster has introduced a previously undocumented remote access trojan dubbed CoreRAT in targeted attacks on Russian…
Microsoft Teams Outage Largely Mitigated After Users Lost Access to Multiple Features
Microsoft confirmed early Wednesday that customers may have been unable to use multiple Microsoft Teams features, then said its monitoring showed the…
Multiple OpenSSL Flaws Let Remote Attackers Crash Servers and Corrupt Heap Memory
OpenSSL has issued a fresh security advisory disclosing seven vulnerabilities across its cryptographic library, ranging from a heap-corrupting write bug…
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, (Wed, Aug 26th)
This post has no text preview — click the link below to read the original article. This article has been indexed from SANS Internet Storm Center, InfoCON: green Read the original article: ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068,…
Back-to-School Season Is the Perfect Time to Fine-Tune Your Data Security Strategy
Back-to-School Season Is the Perfect Time to Fine-Tune Your Data Security Strategy lee.potok@thal… Tue, 08/25/2026 – 08:36 This time every year, students…
Iranian hackers darken UK power plant, ShinyHunters breaches the threat hunters, Zombie Visa cards
Iran-Linked Cyberattack Hits UK Power Facility, ShinyHunters Phish ReliaQuest, LockBit Claims US Bancorp, Teams Blocks Bots, Expired Visa Card Flaw Cyber…
Carhartt – 12,933,413 breached accounts
In August 2026, clothing retailer Carhartt was the target of a ShinyHunters “pay or leak” extortion campaign . The group subsequently published data…
Fast Track ISM-ready cloud environments and IRAP Assessments with Landing Zone Accelerator on AWS
This post announces the availability of a new independent assessment report available on AWS Artifact analyzing how Landing Zone Accelerator on AWS (LZA)…
IT Security News Daily Summary 2026-08-25
166 posts published today 20:31Android Car Systems Infected With Malware Through Software Updates 20:00IT Security News Hourly Summary 2026-08-25 22h : 4 posts 19:31U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches 19:02Norway ’s Digital Government Infrastructure Hit by a new…
Android Car Systems Infected With Malware Through Software Updates
Kaspersky uncovered malware spreading via software updates on Android-based car head units, turning infected systems into proxy nodes in a botnet.
IT Security News Hourly Summary 2026-08-25 22h : 4 posts
4 posts published in the last hour 19:31U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches 19:02Norway ’s Digital Government Infrastructure Hit by a new DDoS Attack 19:01Iran-Linked Hackers Blamed for UK Energy Cyberattack 19:00IT Security News Hourly Summary 2026-08-25 21h…
U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches
The U.S. Department of the Treasury has announced fresh sanctions on Iranian cyber actors as part of what it called an “unprecedented,…
Norway ’s Digital Government Infrastructure Hit by a new DDoS Attack
Norway ’s shared government infrastructure suffered a third DDoS attack, disrupting digital services but showing no signs of data compromise. Norway ‘s…
Iran-Linked Hackers Blamed for UK Energy Cyberattack
A cyberattack reportedly linked to Iran forced a small UK energy generator offline for four days, raising fresh concerns about the security of the…
IT Security News Hourly Summary 2026-08-25 21h : 4 posts
4 posts published in the last hour 18:31Wordfence Argus Finds Complex 6 Step Critical RCE in Avada Theme with 1 Million Sales 18:31CISA Red Team Breaches Critical Infrastructure to Reveal SOC and Cloud Security Gaps 18:01When the Algorithm Fires You:…
Wordfence Argus Finds Complex 6 Step Critical RCE in Avada Theme with 1 Million Sales
A year ago we wrote that we’d put AI to work across the whole company, turning everyone on the team into a capable AI operator so our defenders could stay…
CISA Red Team Breaches Critical Infrastructure to Reveal SOC and Cloud Security Gaps
CISA’s latest advisory for red teams warns critical infrastructure operators that security systems can fail even if they have a lot of funding. This is…
When the Algorithm Fires You: Uber Faces €825M Fine
Uber faces an €825M GDPR fine for automatically suspending drivers without human review, highlighting the risks of AI decisions affecting workers. The…