The French tax authority has acknowledged a data breach affecting approximately 2 million records after a threat actor publicly advertised the stolen information. While investigators assess the full scope of the incident, government officials have disputed claims that the attacker maintains ongoing access to their systems.
A newly discovered Linux botnet called Evooo1Bot leverages the Mirai framework while incorporating advanced capabilities beyond the original malware's scope. The botnet specifically abuses compromised edge devices by converting them into persistent proxies, expanding the attack surface for threat actors seeking to mask their infrastructure and activities.
Apple has implemented Threat Notifications to alert iPhone users who are targeted by mercenary spyware, providing users with direct notification when they may be under attack. The feature represents Apple's approach to protecting high-risk individuals and journalists from sophisticated targeted surveillance threats.
Cyera's $1 billion acquisition of Oasis Security seeks to unify data security and identity management into a consolidated control plane designed specifically for AI agents. The deal reframes privileged access management by shifting from traditional static role-based controls to a context-aware model grounded in business requirements.
A new free service called DecryptAds aggregates publicly available adtech data to help users identify who is tracking them across websites and mobile apps. The tool addresses the longstanding challenge of determining which advertising platforms and data brokers are responsible for targeted ads and data collection, information that was previously difficult for consumers to access and understand. DecryptAds simplifies this process by scraping and correlating adtech data, making transparency in digital tracking more accessible to the general public.
Recent cybersecurity incidents spanning corporate networks, supply chains, and personal accounts reveal an expanding threat landscape where attackers exploit social engineering, software vulnerabilities, and AI-powered reconnaissance alongside traditional attack methods. Notable breaches include a social engineering attack on Levi Strauss resulting in corporate file access, a CEVA Logistics cyberattack disrupting eight European warehouses, and cybercriminals targeting explicit content from social media accounts for extortion and harassment. Microsoft's August 2026 Patch Tuesday addressed over 400 vulnerabilities including three zero-days, while security experts increasingly view AI as a tool to automate repetitive defensive tasks rather than replace security professionals.
A newly discovered macOS infostealer called AmnesiaStealer is being distributed through ClickFix campaigns, employing novel techniques to compromise infected systems. The malware enables attackers to gain remote control over victims' browsers specifically to exfiltrate cookie data, expanding its capabilities beyond typical information-stealing functionality.
Trezor has confirmed that a logistics breach compromised the personal details of approximately 13,000 customers, highlighting how supply chain vulnerabilities can undermine the security posture of hardware wallet manufacturers. The incident demonstrates that even companies offering advanced security features remain exposed to third-party operational failures beyond their direct control.
APT group HoneyMyte has enhanced its CoolClient backdoor with a kernel-mode rootkit driver, significantly expanding its stealth capabilities. The upgraded malware can now hide malicious processes, files, and network connections from security tools and forensic analysis, making detection and investigation considerably more difficult for defenders.
Broadcom threat intelligence researchers have connected a known Chinese APT group to a lucrative crypto fraud operation, suggesting the group may be engaged in hack-for-hire activities. The findings indicate that the "Jewelbug" APT has expanded beyond traditional espionage to monetize its capabilities through criminal schemes targeting cryptocurrency.
Suddenly, you’re in a room. You look around - oh, you’re surrounded by other new starters at your new job. Yes, it’s Monday, and you’re being onboarded. You know the drill - it’s the typical enterprise “please don’t be
From the panels to the villages, Huntress researchers and SOC analysts were all over Hacker Summer Camp this year. Here’s what stood out at Black Hat and DEF CON.