Top Daily Cyber Security News
731 subscribers
813 links
Top rated cyber security tech news,
Just the top, every day.
Download Telegram
Top Security News for Today

Jordan used Cellebrite phone-hacking tools against activists critical of Gaza war, report finds
https://www.therecord.media/jordan-used-cellebrite-against-activists-critical-gaza-war

Single malformed BRID/HHIT DNS packet can crash ISC BIND
https://www.reddit.com/r/netsec/comments/1qjsl4x/single_malformed_bridhhit_dns_packet_can_crash/

Why AI Keeps Falling for Prompt Injection Attacks
https://www.schneier.com/blog/archives/2026/01/why-ai-keeps-falling-for-prompt-injection-attacks.html

KONNI Adopts AI to Generate PowerShell Backdoors
https://research.checkpoint.com/2026/konni-targets-developers-with-ai-malware/

AI-supported vulnerability triage with the GitHub Security Lab Taskflow Agent
https://www.reddit.com/r/netsec/comments/1qjuo02/aisupported_vulnerability_triage_with_the_github/

Intercepting OkHttp at Runtime With Frida
https://www.reddit.com/r/netsec/comments/1qjvoet/intercepting_okhttp_at_runtime_with_frida/

CVE-2026-22200: Ticket to Shell in osTicket
https://www.reddit.com/r/netsec/comments/1qjynzr/cve202622200_ticket_to_shell_in_osticket/

Watering Hole Attack Targets EmEditor Users with Information-Stealing Malware
https://www.trendmicro.com/en_us/research/26/a/watering-hole-attack-targets-emeditor-users.html

House of Lords backs legislation to ban social media for children under 16
https://therecord.media/house-lords-bans-social-media

Ireland plans law allowing law enforcement to use spyware
https://therecord.media/ireland-plans-law-enforcement-spyware

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Germany expels Russian diplomat accused of spying on Ukraine war effort
https://therecord.media/germany-expels-russian-diplomat-accused-spying-ukraine-war

Cyberattack disrupts digital systems at renowned Dresden museum network
https://therecord.media/dresden-state-art-collections-cyberattack

Free URL & site security scanner: ScanMalware.com • Scan websites for threats. Would love feedback on detection, reporting, API, UX from the netsec crowd
https://www.reddit.com/r/netsec/comments/1qkn9nb/free_url_site_security_scanner_scanmalwarecom/

AIs are Getting Better at Finding and Exploiting Internet Vulnerabilities
https://www.schneier.com/blog/archives/2026/01/ais-are-getting-better-at-finding-and-exploiting-internet-vulnerabilities.html

Y2K38 as a security risk for vulnerable systems today. Not in 12 years, but right now.
https://www.reddit.com/r/netsec/comments/1ql00bl/y2k38_as_a_security_risk_for_vulnerable_systems/

Correctly interpreting DMARC, SPF, and DKIM enforcement in DNS security
https://www.reddit.com/r/netsec/comments/1ql4e3x/correctly_interpreting_dmarc_spf_and_dkim/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
2
Top Security News for Today

Husn Canaries - Defense-in-Depth for AI Coding Assistant Governance
https://www.reddit.com/r/netsec/comments/1qmcqt6/husn_canaries_defenseindepth_for_ai_coding/

Memorization Dynamics in Knowledge Distillation for Language Models
https://arxiv.org/abs/2601.16234

CVSweb OpenBSD.org fights AI crawler bots by redirecting hotlinking requests to theannoyingsite.com (labelled "Malware" by eero), gets blacklisted by eero, too, for "Phishing & Deception"
https://www.reddit.com/r/netsec/comments/1qmo7qr/cvswebopenbsdorg_fights_ai_crawler_bots_by/

Your Vibe Coded AI App Can Bankrupt You
https://www.reddit.com/r/netsec/comments/1qmrz3m/your_vibe_coded_ai_app_can_bankrupt_you/

Địt mẹ mày morphisec: When Malware Authors Taunt Security Researchers
https://www.reddit.com/r/netsec/comments/1qmukkb/địt_mẹ_mày_morphisec_when_malware_authors_taunt/

Algorithmic Identity Based on Metaparameters: A Path to Reliability, Auditability, and Traceability
https://arxiv.org/abs/2601.16241

FC-GUARD: Enabling Anonymous yet Compliant Fiat-to-Cryptocurrency Exchanges
https://arxiv.org/abs/2601.16354

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Open sesame: Critical vulnerabilities in dormakaba physical access control system enable unlocking arbitrary doors
https://www.reddit.com/r/netsec/comments/1qncvtn/open_sesame_critical_vulnerabilities_in_dormakaba/

Ireland Proposes Giving Police New Digital Surveillance Powers
https://www.schneier.com/blog/archives/2026/01/ireland-proposes-giving-police-new-digital-surveillance-powers.html

EU launches formal investigation into X and Grok over sexual images
https://therecord.media/grok-sexually-explicit-images-eu-formal-investigation

26th January – Threat Intelligence Report
https://research.checkpoint.com/2026/26th-january-threat-intelligence-report/

After reporting vulnerabilities found in MDT, Microsoft chose to retire the service rather than fix the issues... Admins should follow the defensive recommendations to mitigate the issues if they choose to continue using the software or can’t migrate to a different solution.
https://www.reddit.com/r/netsec/comments/1qng5ag/after_reporting_vulnerabilities_found_in_mdt/

Romania probes two suspects over alleged hitman-for-hire website
https://therecord.media/romania-assassins-for-hire-website-investigation

PeckBirdy: A Versatile Script Framework for LOLBins Exploitation Used by China-aligned Threat Groups
https://www.trendmicro.com/en_us/research/26/a/peckbirdy-script-framework.html

Russian state hackers likely behind wiper malware attack on Poland’s power grid
https://therecord.media/russia-eset-sandworm-poland-hack

Judge awards British critic of Saudis $4.1 million, finds the regime hacked his devices
https://therecord.media/london-judge-sides-with-saudi-critic-spyware-case

Supreme Court to hear Facebook pixel tracking case
https://therecord.media/supreme-court-case-facebook-tracking

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

UK leaders warned country risks 'absorbing' cyber and hybrid attacks without offensive deterrence
https://therecord.media/uk-government-warned-cyber-hybrid-threats-offensive-operations

Cyberattack on Poland’s power grid hit around 30 energy facilities, new report says
https://therecord.media/poland-electrical-grid-cyberattack-30-facilities-affected

Teen swatting suspects arrested in Hungary and Romania
https://therecord.media/teen-swatting-doxxing-suspects-arrested-hungary-romania

Artificial Intelligence in Spanish Gastroenterology: high expectations, limited integration. A national survey
https://arxiv.org/abs/2601.17011

Cyber Security Report 2026
https://research.checkpoint.com/2026/cyber-security-report-2026/

FTC commissioner says online age verification ‘offers a better way’ to protect kids
https://therecord.media/ftc-commissioner-age-verification-children-online

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Notorious Russia-based RAMP cybercrime forum apparently seized by FBI
https://therecord.media/ramp-cybercrime-forum-appreantly-seized-fbi

One-click RCE on Clawd/Moltbot in 2 hours with an AI Hacking Agent
https://www.reddit.com/r/netsec/comments/1qq5h3u/oneclick_rce_on_clawdmoltbot_in_2_hours_with_an/

Supply chain attack on eScan antivirus: detecting and remediating malicious updates
https://securelist.com/escan-supply-chain-attack/118688/

Feds get second guilty plea in takedown of dark web Empire Market
https://therecord.media/feds-second-guilty-plea

Cyberattack on large Russian bread factory disrupts supply deliveries
https://therecord.media/cyberattack-russian-bread-factory-supply-disruptions

New Microsoft Data Security Index report explores secure AI adoption to protect sensitive data
https://www.microsoft.com/en-us/security/blog/2026/01/29/new-microsoft-data-security-index-report-explores-secure-ai-adoption-to-protect-sensitive-data/

French government agency fined nearly $6 million for data security failings
https://therecord.media/france-travail-fined-cnil

New Apple feature will block cell networks from capturing precise location data
https://therecord.media/new-apple-feature-block-location-data-cell-networks

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Glitches to Guests: Fault Injection, Spectre in VMs, and GPU Fuzzing
https://www.reddit.com/r/lowlevel/comments/1qs1pcn/glitches_to_guests_fault_injection_spectre_in_vms/

StopLamers Investigation: From IRC Wars to Android Backdoors
https://www.reddit.com/r/netsec/comments/1qs68tn/stoplamers_investigation_from_irc_wars_to_android/

The Epistemic Planning Domain Definition Language: Official Guideline
https://arxiv.org/abs/2601.20969

Magellan: Autonomous Discovery of Novel Compiler Optimization Heuristics with AlphaEvolve
https://arxiv.org/abs/2601.21096

Scaling Embeddings Outperforms Scaling Experts in Language Models
https://arxiv.org/abs/2601.21204

DOJ releases details alleged talented hacker working for Jeffrey Epstein
https://www.reddit.com/r/netsec/comments/1qsmx92/doj_releases_details_alleged_talented_hacker/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

DOJ releases details alleged talented hacker working for Jeffrey Epstein
https://www.reddit.com/r/netsec/comments/1qsmx92/doj_releases_details_alleged_talented_hacker/

We ran a live red-team vs blue-team test on autonomous OpenClaw agents
https://www.reddit.com/r/netsec/comments/1qsy9tk/we_ran_a_live_redteam_vs_blueteam_test_on/

1-Click RCE in OpenClaw/Moltbot/ClawdBot
https://www.reddit.com/r/netsec/comments/1qt5wms/1click_rce_in_openclawmoltbotclawdbot/

Notepad++ Hijacked by State-Sponsored Hackers
https://www.reddit.com/r/netsec/comments/1qtif11/notepad_hijacked_by_statesponsored_hackers/

Your Phone Silently Sends GPS to Your Carrier via RRLP/LPP – Here's How the Control Plane Positioning Works
https://www.reddit.com/r/netsec/comments/1qtnr2m/your_phone_silently_sends_gps_to_your_carrier_via/

ShellForge: Adversarial Co-Evolution of Webshell Generation and Multi-View Detection for Robust Webshell Defense
https://arxiv.org/abs/2601.22434

MemeChain: A Multimodal Cross-Chain Dataset for Meme Coin Forensics and Risk Analysis
https://arxiv.org/abs/2601.22185

A Systematic Literature Review on LLM Defenses Against Prompt Injection and Jailbreaking: Expanding NIST Taxonomy
https://arxiv.org/abs/2601.22240

MirrorMark: A Distortion-Free Multi-Bit Watermark for Large Language Models
https://arxiv.org/abs/2601.22246

Rethinking Anonymity Claims in Synthetic Data Generation: A Model-Centric Privacy Attack Perspective
https://arxiv.org/abs/2601.22434

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Exploiting CVE-2025-49825 (authentication bypass vulnerability in Teleport)
https://www.reddit.com/r/netsec/comments/1qumhwe/exploiting_cve202549825_authentication_bypass/

The Recent 0-Days in Node.js and React Were Found by an AI
https://www.reddit.com/r/netsec/comments/1quhyoj/the_recent_0days_in_nodejs_and_react_were_found/

SLasH-DSA: Breaking SLH-DSA Using an Extensible End-To-End Rowhammer Framework
https://arxiv.org/abs/2509.13048

Microsoft is Giving the FBI BitLocker Keys
https://www.schneier.com/blog/archives/2026/02/microsoft-is-giving-the-fbi-bitlocker-keys.html

Russian state hackers exploit new Microsoft Office flaw in attacks on Ukraine, EU
https://therecord.media/russian-state-hackers-exploit-new-microsoft-flaw

UK investigating first suspected breach of cyber sanctions
https://therecord.media/uk-investing-first-suspected-breach-cyber-sanctions

Fighting AI anomaly false-positives with firejail and proxychains
https://www.reddit.com/r/netsec/comments/1quws8d/fighting_ai_anomaly_falsepositives_with_firejail/

California city turns off Flock cameras after company shared data without authorization
https://therecord.media/california-city-turns-off-flock-cameras-unauthorized-sharing

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Backdoor in Notepad++
https://www.schneier.com/blog/archives/2026/02/backdoor-in-notepad.html

Researchers uncover vast cyberespionage operation targeting dozens of governments worldwide
https://therecord.media/research-cyber-espionage-targeting-dozens-worldwide

Italy blames Russia-linked hackers for cyberattacks ahead of Winter Olympics
https://therecord.media/italy-blames-russia-linked-hackers-winter-games-cyberattack

Substack warns customers of data breach following hacker’s dark web claims
https://therecord.media/substack-data-breach-notification

Russian hackers attacking European maritime and transport orgs using Microsoft Office exploit
https://therecord.media/russian-hackers-microsoft-office-europe

The security implementation gap: Why Microsoft is supporting Operation Winter SHIELD
https://www.microsoft.com/en-us/security/blog/2026/02/05/the-security-implementation-gap-why-microsoft-is-supporting-operation-winter-shield/

CISA gives federal agencies one year to rip out end-of-life devices
https://therecord.media/cisa-gives-federal-agencies-one-year-end-of-life-devices

New Clickfix variant ‘CrashFix’ deploying Python Remote Access Trojan
https://www.microsoft.com/en-us/security/blog/2026/02/05/clickfix-variant-crashfix-deploying-python-rat-trojan/

Get the Most from Testing Your Applications
https://bishopfox.com/blog/get-the-most-from-testing-your-applications

U.S. Public Sector Under Siege
https://www.trendmicro.com/en_us/research/26/b/us-public-sector-under-siege.html

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

iPhone Lockdown Mode Protects Washington Post Reporter
https://www.schneier.com/blog/archives/2026/02/iphone-lockdown-mode-protects-washington-post-reporter.html

Romania’s oil pipeline operator confirms cyberattack as hackers claim data theft
https://therecord.media/romania-conpet-oil-pipeline-ransomware-attack

Hacking a cheap Wi-Fi toy drone
https://www.reddit.com/r/netsec/comments/1qxawcm/hacking_a_cheap_wifi_toy_drone/

The RCE that AMD won't fix!
https://www.reddit.com/r/netsec/comments/1qxdzcu/the_rce_that_amd_wont_fix/

Illinois man pleads guilty to hacking hundreds of Snapchat accounts to steal nude photos
https://therecord.media/illinois-man-pleads-guilty-snapchat-nude-photo-hacks

Experiment demonstrates AI-generated identities bypassing KYC-based verification systems
https://www.reddit.com/r/netsec/comments/1qxdxjy/experiment_demonstrates_algenerated_identities/

EU threatens TikTok with massive fine over addictive design features
https://therecord.media/eu-threatens-tiktok-with-fine-over-addictive-features

NYC explores using AI cameras to spot subway fare evaders
https://therecord.media/nyc-explores-ai-cameras-fare-evaders-subway

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Klint - Linux Kernel Security Scanner
https://www.reddit.com/r/netsec/comments/1qzwqa7/klint_linux_kernel_security_scanner/

Open Security Architecture - 15 new security patterns with NIST 800-53 mappings (free, CC BY-SA 4.0)
https://www.reddit.com/r/netsec/comments/1qzzxv2/open_security_architecture_15_new_security/

Suspected sabotage disrupts trains in northern Italy as Winter Games begin
https://therecord.media/italy-suspected-sabotage-winter-olympics-trains

LLMs are Getting a Lot Better and Faster at Finding and Exploiting Zero-Days
https://www.schneier.com/blog/archives/2026/02/llms-are-getting-a-lot-better-and-faster-at-finding-and-exploiting-zero-days.html

On the risk of destructive bricking attacks against OT devices (part 1)
https://www.reddit.com/r/netsec/comments/1r01the/on_the_risk_of_destructive_bricking_attacks/

Singapore says China-linked hackers targeted telecom providers in major spying campaign
https://therecord.media/singapore-attributes-telecoms-hacks-unc3886

9th February – Threat Intelligence Report
https://research.checkpoint.com/2026/9th-february-threat-intelligence-report/

EU, Dutch government announce hacks following Ivanti zero-days
https://therecord.media/eu-dutch-government-announce-hacks-ivanti-zero-days

Payment tech provider for Texas, Florida governments working with FBI to resolve ransomware attack
https://therecord.media/payment-tech-provider-texas-florida-govs-ransomware-attack

CVE-2026-2103 - Infor Syteline ERP - Keys Included: No Assembly Required
https://www.reddit.com/r/netsec/comments/1r05rb8/cve20262103_infor_syteline_erp_keys_included_no/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Germany warns of state-linked phishing campaign targeting journalists, government officials
https://therecord.media/germany-warns-phishing-campaign-signal-gov-officials-journalists

Chinese crypto scammer sentenced in absentia to 20 years after fleeing US
https://therecord.media/chinese-crypto-scammer-sentenced-after-fleeing-us

North Korean hackers targeted crypto exec with fake Zoom meeting, ClickFix scam
https://therecord.media/north-korean-hackers-targeted-crypto-exec-clickfix

Manipulating AI memory for profit: The rise of AI Recommendation Poisoning
https://www.microsoft.com/en-us/security/blog/2026/02/10/ai-recommendation-poisoning/

LOTUSLITE: Targeted espionage leveraging geopolitical themes
https://www.reddit.com/r/netsec/comments/1r17r76/lotuslite_targeted_espionage_leveraging/

Adbleed: partially de-anonymizing VPN users with adblock filter lists
https://www.reddit.com/r/netsec/comments/1r14rlh/adbleed_partially_deanonymizing_vpn_users_with/

Microsoft Patch Tuesday, February 2026 Security Update Review
https://blog.qualys.com/vulnerabilities-threat-research/2026/02/10/microsoft-patch-tuesday-february-2026-security-update-review

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Georgia healthcare company data breach impacts more than 620,000
https://therecord.media/georgia-healthcare-company-data-breach-impacts-620000

Spam and phishing in 2025
https://securelist.com/spam-and-phishing-report-2025/118785/

Prompt Injection Via Road Signs
https://www.schneier.com/blog/archives/2026/02/prompt-injection-via-road-signs.html

The game is over: when “free” comes at too high a price. What we know about RenEngine
https://securelist.com/renengine-campaign-with-hijackloader-lumma-and-acr-stealer/118891/

Entropy-Based Evidence for Bitcoin's Discrete Time Mechanism
https://arxiv.org/abs/2602.09027

Non-existence of Information-Geometric Fermat Structures: Violation of Dual Lattice Consistency in Statistical Manifolds with $L^n$ Structure
https://arxiv.org/abs/2602.09028

Scaling GraphLLM with Bilevel-Optimized Sparse Querying
https://arxiv.org/abs/2602.09029

The strategic SIEM buyer’s guide: Choosing an AI-ready platform for the agentic era
https://www.microsoft.com/en-us/security/blog/2026/02/11/the-strategic-siem-buyers-guide-choosing-an-ai-ready-platform-for-the-agentic-era/

Microsoft's Notepad Got Pwned (CVE-2026-20841)
https://www.reddit.com/r/netsec/comments/1r2n8rk/microsofts_notepad_got_pwned_cve202620841/

40 state AGs warn House KOSA bill falls short of protecting children online
https://therecord.media/40-state-ags-warn-house-kosa-bill-falls-short

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman