Google has introduced the new Gemini 3.7 Flash model, focusing on coding, web development, and performing tasks based on AI agents.
Critical GitLab vulnerability could let unauthenticated attackers delete public projects.
CVE-2026-19478 affects self-managed CE and EE under certain conditions. Fixes are in 19.2.4, 19.1.6, 19.0.8, and 18.11.11.
CVE-2026-19478 affects self-managed CE and EE under certain conditions. Fixes are in 19.2.4, 19.1.6, 19.0.8, and 18.11.11.
Yesterday GitHub went down for 7 and a half hours. Website, Actions, Copilot, code merging, all of it. 15,000 developers reported outage.
GitHub's own CTO admitted they planned for 10x capacity and realized they needed 30x. They're now renting servers from AWS, Microsoft's biggest cloud rival.
GitHub's own CTO admitted they planned for 10x capacity and realized they needed 30x. They're now renting servers from AWS, Microsoft's biggest cloud rival.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has announced that ransomware groups are exploiting the CVE-2025-60710 vulnerability in the Windows Task Host component.
Microsoft has begun removing the legacy WMIC tool from new versions of Windows 11. This tool was used for years to manage and execute system commands, but cyber attackers also used it to carry out malicious activities.
Hackers could exploit WMIC to identify or bypass certain security features of the system, and even disable data recovery capabilities in ransomware attacks.
Hackers could exploit WMIC to identify or bypass certain security features of the system, and even disable data recovery capabilities in ransomware attacks.
Massive Cyberattack Targets French Ministry of Education
The French Ministry of Education has been the target of a cyberattack, and investigations are ongoing to determine the extent of the incident.
#TGITM @TheGhostITM
The French Ministry of Education has been the target of a cyberattack, and investigations are ongoing to determine the extent of the incident.
#TGITM @TheGhostITM
Home Wi‑Fi Routers Now Track Motion
By The Ghost In The Machine
Comcast’s new WiFi Motion feature is drawing attention for what it reveals about the modern home: even without cameras, a network can still detect whether people are present, moving, or asleep. By analyzing subtle changes in Wi‑Fi signals, the system can infer occupancy patterns and activity inside a household. Comcast says the feature does not record images or directly identify individuals, but the privacy implications are hard to ignore.
The technology may be marketed as convenient, but it also exposes a deeper concern about surveillance built into ordinary consumer devices. A system that can tell when someone is home can also create a detailed picture of daily routines. That information is sensitive on its own, and it becomes even more concerning if the modem or connected account is compromised.
Security researchers have long shown that wireless signals can reveal more than many users expect. The same data used to detect presence can, in the wrong hands, become a tool for monitoring household behavior. If a criminal were able to access the system, occupancy details could potentially help identify when a home is empty or when residents are least active. That makes protection of the device and account essential.
The issue is not limited to Comcast. It reflects a wider trend in smart-home technology, where convenience often advances faster than public understanding of the risks. Consumers are increasingly asked to trust that opaque systems will collect only what is necessary and store it responsibly. But when those systems can infer intimate details about everyday life, trust alone is not enough.
Any company offering this kind of feature should provide clear disclosure, strong default security, and an easy opt-out. Homeowners deserve to know not just what data is captured, but what can be inferred from it. In the age of connected living, privacy is no longer only about cameras and microphones. Sometimes, the most revealing device in the home is the router.
#TGITM
By The Ghost In The Machine
Comcast’s new WiFi Motion feature is drawing attention for what it reveals about the modern home: even without cameras, a network can still detect whether people are present, moving, or asleep. By analyzing subtle changes in Wi‑Fi signals, the system can infer occupancy patterns and activity inside a household. Comcast says the feature does not record images or directly identify individuals, but the privacy implications are hard to ignore.
The technology may be marketed as convenient, but it also exposes a deeper concern about surveillance built into ordinary consumer devices. A system that can tell when someone is home can also create a detailed picture of daily routines. That information is sensitive on its own, and it becomes even more concerning if the modem or connected account is compromised.
Security researchers have long shown that wireless signals can reveal more than many users expect. The same data used to detect presence can, in the wrong hands, become a tool for monitoring household behavior. If a criminal were able to access the system, occupancy details could potentially help identify when a home is empty or when residents are least active. That makes protection of the device and account essential.
The issue is not limited to Comcast. It reflects a wider trend in smart-home technology, where convenience often advances faster than public understanding of the risks. Consumers are increasingly asked to trust that opaque systems will collect only what is necessary and store it responsibly. But when those systems can infer intimate details about everyday life, trust alone is not enough.
Any company offering this kind of feature should provide clear disclosure, strong default security, and an easy opt-out. Homeowners deserve to know not just what data is captured, but what can be inferred from it. In the age of connected living, privacy is no longer only about cameras and microphones. Sometimes, the most revealing device in the home is the router.
#TGITM
Thirty US states are suing Meta for over $1 trillion, accusing it of knowingly designing Instagram and Facebook to be addictive and harmful to children, while concealing what it knew.
If they win, it could force Meta to overhaul the platforms for good, ending features like "like" counts, infinite scroll and autoplay video.
If they win, it could force Meta to overhaul the platforms for good, ending features like "like" counts, infinite scroll and autoplay video.
Operation CameraSwarm: Over 14,000 Dahua cameras compromised across Ukraine and Russia.
ECUADOR: Hacker Claims 20M+ Health Ministry Database Records, Offers 73GB Dataset for Sale.
🐧 Linux Kernel 7.2 Officially Released
Linux 7.2 has officially been released and is now the latest mainline version of the Linux kernel.
Linux 7.2 has officially been released and is now the latest mainline version of the Linux kernel.
ARGENTINA: Access to Municipal Government System Allegedly Offered for Sale
Hacker is advertising alleged unauthorized access to an Argentine municipal government environment associated with a .gob.ar domain.
Hacker is advertising alleged unauthorized access to an Argentine municipal government environment associated with a .gob.ar domain.
UAE: College Website Allegedly Breached, Databases and Source Code Leaked
Hacker claims to have compromised https://tahoor.ae, described in the underground forum post as a college website affiliated with Jawaharlal Nehru Technological University.
Hacker claims to have compromised https://tahoor.ae, described in the underground forum post as a college website affiliated with Jawaharlal Nehru Technological University.
Bolivia: Santa Cruz Government Data Breach Claimed
Hacker claims to have breached systems associated with the Autonomous Departmental Government of Santa Cruz, Bolivia, and extracted data related to its INOCUIDAD/food-safety operations.
Hacker claims to have breached systems associated with the Autonomous Departmental Government of Santa Cruz, Bolivia, and extracted data related to its INOCUIDAD/food-safety operations.
Hacker on an underground forum claims to possess databases associated with Serbia’s Republic Health Insurance Fund (RFZO), the country's mandatory health insurance institution.
Swiss secure-messaging provider Threema has confirmed that a series of large-scale DDoS attacks disrupted its services and infrastructure operated with colocation partner Nine.
Hacker on an underground forum claims to be selling a database belonging to Abwaab, an educational platform operating in Jordan and other Arab markets.
McDonald’s 1.7M+ Employee Records Allegedly Offered for Sale
Hacker on an underground forum claims to be selling an internal McDonald’s dataset allegedly obtained directly from an Azure tenant using compromised credentials.
Hacker on an underground forum claims to be selling an internal McDonald’s dataset allegedly obtained directly from an Azure tenant using compromised credentials.
The U.S. Department of State's "Rewards for Justice" program has announced a reward of up to $10 million for information leading to the identification and apprehension of five Iranian individuals linked to cyber activities.
Cyberattack on Dozens of Companies in Occupied Territories
Israel Police’s cyber unit say they arrested an Ashkelon man suspected of hacking dozens of companies with malware to steal sensitive data; his name is under a court gag order and detention extended to Aug 23.
Israel Police’s cyber unit say they arrested an Ashkelon man suspected of hacking dozens of companies with malware to steal sensitive data; his name is under a court gag order and detention extended to Aug 23.
CVE-2026-33824, allows attackers, without the need for authentication, to execute code on unpatched Windows systems by sending malicious packets through UDP ports 500 and 4500.