More than 30 facilities disrupted in ‘coordinated cyberattack,’ though officials have yet to name a culprit
Broadcom Patches Critical VMware ESXi Vulnerability Enabling Host Code Execution
Broadcom patched a critical VMware ESXi VM escape flaw (CVE-2026-47876) that could let attackers run code on the host from a compromised virtual machine.…
US Bans Foreign-Made Humanoid Robots, Targeting China Over National Security
The agency said imports of advanced robots pose cybersecurity and other national security risks.
Frontier Airlines Hit by Third Data Breach
Frontier Airlines is facing scrutiny after reportedly suffering its third data security incident in 2024, marking a troubling pattern for the budget…
ShutterGap: Aryon Security finds 3.7M AWS cloud resources exposed beyond CSPM/CNAPP visibility
Research from Aryon reveals that each year, 3,731,699 short-lived cloud resources containing highly sensitive information are publicly exposed. This…
Moonshot AI Claims Kimi K3 Matches OpenAI and Anthropic Models
Founded by Moonshot AI, the company has released the Kimi K3 large language model, a next-generation large language model the company claims is…
Attackers Are Turning Microsoft’s Trusted Login System Into Their Latest Phishing Weapon
Attackers are increasingly abandoning fake Microsoft login pages in favor of abusing Microsoft’s legitimate authentication infrastructure, allowing…
Huntress Flags Widespread Credential Stuffing Campaign Hitting SonicWall Devices
Managed detection and response provider Huntress has issued a threat advisory warning of an active and rapidly growing credential stuffing campaign…
Critical VMware vCenter Flaws Let Remote Attackers Bypass Authentication and Execute Code
Broadcom has released important security updates addressing critical vulnerabilities in VMware that could allow remote attackers to bypass vCenter…
CREST Launches AI-Enabled Pentesting Accreditation
CREST has introduced an optional AI-Enabled Penetration Testing accreditation module designed to verify responsible AI usage among cybersecurity service…
Tengu botnet reboots Linux devices to survive removal
A new Mirai-derived IoT botnet can force an infected Linux device to reboot once its main process is killed, giving its persistence mechanisms another…
Critical Ruflo MCP Bridge Flaw Allows Full AI Agent Platform Takeover
A critical vulnerability in the open-source AI orchestration platform Ruflo has been disclosed, allowing unauthenticated attackers to achieve full remote…
US, Australia Release OT Isolation Guidance
The United States and Australia have published joint guidance to help critical infrastructure organizations isolate their operational technology systems…
Stairwell launches Backstory, pioneering agentic investigation for malware blast radius
Stairwell, the AI SOC that stops breaches no one else can, today announced the availability of Backstory, an agentic investigation platform that traces…
IBM: Average Data Breach Cost Hits $5M
The global average cost of a data breach has climbed to $4.99 million, marking a 12% increase over the previous year and setting a new record, according…
IT Security News Hourly Summary 2026-07-29 15h : 18 posts
18 posts were published in the last hour 13:2 : Mate Security Raises $35 Million for Agentic SOC 13:2 : macOS ClickFix Attacks Use Fake CAPTCHAs to Deploy Atomic Stealer and Hijack Crypto Wallets 13:2 : Houston City College Data…
Mate Security Raises $35 Million for Agentic SOC
The startup will use the investment to expand its customer support, sales, and R&D teams.
macOS ClickFix Attacks Use Fake CAPTCHAs to Deploy Atomic Stealer and Hijack Crypto Wallets
macOS users are facing a new, highly polished ClickFix campaign that abuses fake CAPTCHAs to execute Terminal commands, silently deploy Atomic macOS…
Houston City College Data Breach Exposes 832k Unique Student Email Addresses
Houston City College has experienced a serious data breach that exposed sensitive personal information of approximately 832,000 unique students and alums.…
120 fake Walmart stores stealing credit cards
A network of more than 120 fraudulent websites impersonating Walmart is actively stealing credit card information from online shoppers.
Russia Charges Telegram CEO Pavel Durov With Aiding Terrorism, Issues Arrest Warrant
Russia’s Federal Security Service (FSB) has formally charged Telegram founder and CEO Pavel Durov with aiding terrorism and issued a warrant for his…
CISA adds Arista and Fortinet flaws to KEV catalog
The U.S.
Fake Recruiters Target Web3 Developers Through Trusted Bitbucket and npm Workflows
A new wave of job scams is hitting Web3 developers who are simply looking for their next role. Attackers pose as recruiters, start friendly chats about…
ThreatLocker Raises $190 Million in Series F Funding
The company was previously valued at $1.6 billion, and the latest raise has significantly increased that valuation.