OtherHelp Net Security·2 days ago

New infosec products of the week: August 21, 2026

Netscout has expanded its Adaptive DDoS Protection solution to include outbound attack mitigation, allowing service providers to automatically detect and block DDoS traffic originating from compromised subscriber devices. This extension shifts protection focus upstream toward attack sources, helping operators prevent their own networks from being used to disrupt other targets. The week also featured new releases from F5 Networks, Intezer, and Tufin.

PhishingThe Register·2 days ago

Russian snoops add OAuth abuse to targeted phishing campaigns

Russian threat actors are incorporating OAuth abuse tactics into their targeted phishing campaigns, leveraging legitimate authentication mechanisms to compromise victims. The attacks specifically impersonate State Department communications, making them particularly credible to government and diplomatic personnel.

Supply ChainThe Hacker News·2 days ago

Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads

A compromised maintainer account was used to publish malicious versions of three popular Rust crates—arrayref, internment, and append-only-vec—that injected a typosquatted dependency designed to download and execute arbitrary code during the build process. The Rust Project has since removed these poisoned releases from crates.io, though the affected versions had accumulated over 245 million downloads across their histories. This supply chain attack demonstrates the risk of build-time code execution in dependency management, where malicious payloads can be triggered silently during compilation rather than at runtime.

Nation-StateThe Hacker News·3 days ago

Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts

Suspected Russian cyber espionage groups UNC6293, UNC7005, and UNC5976 are exploiting legitimate authentication mechanisms including Google OAuth and WhatsApp linking to compromise accounts of individuals in academia, aerospace, defense, government, and think tanks across Europe and the United States. The threat actors demonstrate persistent and adaptive tactics in targeting these high-value sectors, leveraging trusted services to bypass conventional security measures and gain unauthorized access to sensitive accounts.

VulnerabilityDark Reading·3 days ago

What We Missed: Delta Flight Disrupted With Wi-Fi Hack

In this video, Dark Reading editors discuss some of the news they didn't get a chance to cover, including some scary airplane security risks and the US government's newest "hack back" strategy.

OtherCyberScoop·3 days ago

Early 764 member sentenced to 77 years, longest prison term to date for a nihilistic violent extremist

Kyle Spitze, a leader of an offshoot group within the violent extremist collective Early 764, received a 77-year prison sentence for victimizing dozens of girls through coercion and exploitation. Spitze used threats of doxing and swatting to force victims to degrade themselves, marking the longest prison term yet imposed for a member of this nihilistic violent extremist network.

Nation-StateSchneier on Security·3 days ago

Detailed Timeline of OpenAI’s Cyberattack on Hugging Face

OpenAI presented details of its AI’s model’s cyberattack on Hugging Face at Black Hat last week. Simon Willison details the timeline. It’s really interesting to read through—and really impressive cyberoffense work.

VulnerabilityDark Reading·3 days ago

N-able Bug Exposes Password Vault Master Keys

N-able's Passportal password manager contained a vulnerability exposing master keys to the password vault, leaving sensitive credentials at risk for managed service providers and small-to-medium businesses. Despite the availability of patches, security concerns persist due to the product's cloud-based architecture, raising questions about whether such sensitive security tools should rely on cloud infrastructure at all.

VulnerabilityThe Hacker News·3 days ago

ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit, and More

A lot of this week’s trouble starts with something trusted doing exactly what it was allowed to do. Signed drivers get turned against defenses. Legitimate apps help malware blend in. A weak header check opens a path to code execution. Elsewhere, exposed systems, old bugs, odd hiding tricks, and AI-assisted exploit research keep lowering the effort needed to cause damage. Nothing here needs

Nation-StateThe Hacker News·3 days ago

AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure

U.S. government has issued a warning about active exploitation of Siemens S7 Series PLCs in critical infrastructure using AI-generated exploit scripts disguised as legitimate monitoring tools. The threat actors are leveraging AI-generated code for reconnaissance and capability development against organizations nationwide. This represents an emerging attack vector combining automated exploit generation with social engineering tactics to compromise industrial control systems.

VulnerabilityThe Register·3 days ago

Researcher tricks Apple’s Find My into sharing location data with Linux

A researcher has demonstrated that Apple's Find My location-tracking service can be manipulated to function on Linux systems through protocol manipulation, despite being designed exclusively for Apple devices. The exploit reveals a potential security gap in how the service validates and handles location data requests from non-Apple platforms.

Supply ChainWiz Blog·3 days ago

Rust Supply Chain Attack on arrayref: Significant Overlap with DPRK Campaigns

Malicious versions of the arrayref Rust crate and other packages executed backdoors during the compilation process, representing a significant supply chain threat to developers using these dependencies. The attack infrastructure shows considerable overlap with recent North Korean-attributed supply chain campaigns targeting Mastra and axios, suggesting a potential connection or shared operational infrastructure between these threat actors.

Load more