Top Daily Cyber Security News
729 subscribers
813 links
Top rated cyber security tech news,
Just the top, every day.
Download Telegram
Top Security News for Today

Your Duolingo Is Still Talking to ByteDance: How Pangle Fingerprints You Across Apps After You Said No
https://www.reddit.com/r/netsec/comments/1rpqlh2/your_duolingo_is_still_talking_to_bytedance_how/

Jailbreaking the F-35 Fighter Jet
https://www.schneier.com/blog/archives/2026/03/jailbreaking-the-f-35-fighter-jet.html

BeatBanker: A dual‑mode Android Trojan
https://securelist.com/beatbanker-miner-and-banker/119121/

Russian military hackers revive advanced malware to spy on Ukraine, researchers say
https://therecord.media/russia-apt-28-revives-malware-to-spy-on-ukraine

UK plans to shift fraud fight onto telecoms, tech companies
https://therecord.media/uk-plans-to-shift-fraud-fight-to-telecoms-tech

Cybercriminals impersonating city officials to steal permit payments, FBI says
https://therecord.media/cybercriminals-impersonate-city-officials-permit-payments

CISA shortens patch deadline for critical Ivanti, SolarWinds bugs
https://therecord.media/cisa-shortens-patch-deadline-ivanti-solarwinds

Finnish intelligence warns of persistent cyber espionage from Russia, China
https://therecord.media/finnish-intel-warns-espionage-china-russia

Rudd confirmed to head NSA, Cyber Command after near year-long vacancy
https://therecord.media/rudd-confirmed-nsa-cyber-command-chief

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Meta says it culled millions of scam ads amid accusations that it profits from them
https://therecord.media/meta-scam-advertising-crackdown

Cyberattack on ambulance provider affects 235,000
https://therecord.media/235000-affected-cyberattack-ambulance-provider

Contagious Interview: Malware delivered through fake developer job interviews
https://www.microsoft.com/en-us/security/blog/2026/03/11/contagious-interview-malware-delivered-through-fake-developer-job-interviews/

Iran-linked hackers claim cyberattack on Albania’s parliament email systems
https://therecord.media/iran-linked-hackers-claim-cyberattack-albania-parliament

Medical device giant Stryker confirms cyberattack as employees say devices were wiped
https://krebsonsecurity.com/2026/03/iran-backed-hackers-claim-wiper-attack-on-medtech-firm-stryker/

Forensic analysis of LummaC2 infection unmasks DPRK operative behind Polyfill.io supply chain attack and Gate.us infiltration
https://www.reddit.com/r/netsec/comments/1rredk3/forensic_analysis_of_lummac2_infection_unmasks/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Ransomware incident responder gave info to BlackCat cybercriminals during negotiations, DOJ alleges
https://therecord.media/ransomware-blackcat-doj-incident-responder

Winning CTFs: A Proving Ground at HackMex & Ekoparty
https://bishopfox.com/blog/winning-ctfs-a-proving-ground-at-hackmex-ekoparty

European Council includes ban on nudification tools in its proposal for amending AI Act
https://therecord.media/european-council-includes-nudification-ban-ai-act

Alipay (1B+ users) DeepLink vulnerability allows silent GPS extraction via URL - 6 regulators now investigating, vendor says normal functionality
https://www.reddit.com/r/netsec/comments/1rstjkp/alipay_1b_users_deeplink_vulnerability_allows

RegPwn - Windows LPE vulnerability (now fixed)
https://www.reddit.com/r/netsec/comments/1rstavq/regpwn_windows_lpe_vulnerability_now_fixed

CrackArmor: Critical AppArmor Flaws Enable Local Privilege Escalation to Root
https://www.reddit.com/r/netsec/comments/1rsqt48/crackarmor_critical_apparmor_flaws_enable_local

OSS Cartography can now map AI agents to cloud attack paths
https://www.reddit.com/r/netsec/comments/1rsw301/oss_cartography_can_now_map_ai_agents_to_cloud

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Upcoming Speaking Engagements
https://www.schneier.com/blog/archives/2026/03/upcoming_speaking_engagements_54.html

Analysis of 1,808 MCP servers: 66% had security findings, 427 critical (tool poisoning, toxic data flows, code execution)
https://www.reddit.com/r/netsec/comments/1rtxacu/analysis_of_1808_mcp_servers_66_had_security/

Quick question for people running CrowdStrike, Zscaler, Netskope or similar in production.
https://www.reddit.com/r/netsec/comments/1ru4cwc/quick_question_for_people_running_crowdstrike/

CVE-2024-45163: Remote DoS in Mirai C2 – research writeup + what it led me to build
https://www.reddit.com/r/netsec/comments/1ru6xxl/cve202445163_remote_dos_in_mirai_c2_research/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

South Korean Police Accidentally Post Cryptocurrency Wallet Password
https://www.schneier.com/blog/archives/2026/03/south-korean-police-accidentally-post-cryptocurrency-wallet-password.html

TAS-GNN: A Status-Aware Signed Graph Neural Network for Anomaly Detection in Bitcoin Trust Systems
https://arxiv.org/abs/2603.13290

Accelerating Suffix Jailbreak attacks with Prefix-Shared KV-cache
https://arxiv.org/abs/2603.13420

Agent Privilege Separation in OpenClaw: A Structural Defense Against Prompt Injection
https://arxiv.org/abs/2603.13424

Technical Case Study of Privacy-Enhancing Technologies (PETs) for Public Health
https://arxiv.org/abs/2603.13444

Purifying Generative LLMs from Backdoors without Prior Knowledge or Clean Reference
https://arxiv.org/abs/2603.13461

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

The Most Organized Threat Actors Use Your ITSM (BMC FootPrints Pre-Auth Remote Code Execution Chains) - watchTowr Labs
https://www.reddit.com/r/netsec/comments/1rwzs83/the_most_organized_threat_actors_use_your_itsm/

The SOC Files: Time to “Sapecar”. Unpacking a new Horabot campaign in Mexico
https://securelist.com/horabot-campaign/119033/

IdentityGuard: Context-Aware Restriction and Provenance for Personalized Synthesis
https://arxiv.org/abs/2603.15679

Quantum Key Distribution Secured Federated Learning for Channel Estimation and Radar Spectrum Sensing in 6G Networks
https://arxiv.org/abs/2603.15649

State-Dependent Safety Failures in Multi-Turn Language Model Interaction
https://arxiv.org/abs/2603.15684

BadLLM-TG: A Backdoor Defender powered by LLM Trigger Generator
https://arxiv.org/abs/2603.15692

Remarks on the Relevance of Privacy Expectations for Default Opt-out Settings
https://www.schneier.com/blog/archives/2026/03/metas-ai-glasses-and-privacy.html

Observability for AI Systems: Strengthening visibility for proactive risk detection
https://www.microsoft.com/en-us/security/blog/2026/03/18/observability-ai-systems-strengthening-visibility-proactive-risk-detection/

Bank software vendor Marquis says more than 670,000 impacted by August breach
https://therecord.media/marquis-bank-vendor-data-breach

From Misconfigured Spring Boot Actuator to SharePoint Exfiltration: How Stolen Credentials Bypass MFA
https://www.trendmicro.com/en_us/research/26/c/from-misconfigured-spring-boot-actuator-to-sharepoint-exfiltrati.html

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Russian hackers exploit Zimbra flaw to breach Ukrainian maritime agency
https://therecord.media/russia-hackers-ukraine-zimbra-breach

When tax season becomes cyberattack season: Phishing and malware campaigns using tax-related lures
https://www.microsoft.com/en-us/security/blog/2026/03/19/when-tax-season-becomes-cyberattack-season-phishing-and-malware-campaigns-using-tax-related-lures/

Interlock ransomware gang exploited Cisco firewall zero-day weeks before disclosure: Amazon
https://therecord.media/cisco-ransomware-interlock-firewalls

Hacking a Robot Vacuum
https://www.schneier.com/blog/archives/2026/03/hacking-a-robot-vacuum.html

Adversarial attacks against Modern Vision-Language Models
https://arxiv.org/abs/2603.16938

DeepStage: Learning Autonomous Defense Policies Against Multi-Stage APT Campaigns
https://arxiv.org/abs/2603.17100

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Evaluating AI and ML in Network Security: A Comprehensive Literature Review
https://www.reddit.com/r/netsec/comments/1rzji68/evaluating_ai_and_ml_in_network_security_a/

Trivy Under Attack Again: Widespread GitHub Actions Tag Compromise Exposes CI/CD Secrets Attackers
https://www.reddit.com/r/netsec/comments/1rziu2w/trivy_under_attack_again_widespread_github/

ONNX Hub silent=True suppresses all trust verification, enabling supply chain attacks on ML model loading (CVE-2026-28500, CVSS 9.1, no patch available)
https://www.reddit.com/r/netsec/comments/1s02jrq/onnx_hub_silenttrue_suppresses_all_trust/

LLVM Adventures: Fuzzing Apache Modules
https://www.reddit.com/r/netsec/comments/1s03z8j/llvm_adventures_fuzzing_apache_modules/

Agent skill marketplace supply chain attack: 121 skills across 7 repos vulnerable to GitHub username hijacking, 5 scanners disagree by 10x on malicious skill rates (arXiv:2603.16572)
https://www.reddit.com/r/netsec/comments/1s0dmuv/agent_skill_marketplace_supply_chain_attack_121/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Agent skill marketplace supply chain attack: 121 skills across 7 repos vulnerable to GitHub username hijacking, 5 scanners disagree by 10x on malicious skill rates (arXiv:2603.16572)
https://www.reddit.com/r/netsec/comments/1s0dmuv/agent_skill_marketplace_supply_chain_attack_121/

CanisterWorm Gets Teeth: TeamPCP's Kubernetes Wiper Targets Iran
https://www.reddit.com/r/netsec/comments/1s0lvk9/canisterworm_gets_teeth_teampcps_kubernetes_wiper/

Observations on AI generated Remote DuckDB via HTTP with mTLS
http://diablohorn.com/2026/03/22/observations-on-ai-generated-remote-duckdb-via-http-with-mtls/

No Zero-Day Needed: Russian Phishers Swipe Signal & WhatsApp Accounts with Plain Old Lies
https://www.reddit.com/r/netsec/comments/1s0ouoe/no_zeroday_needed_russian_phishers_swipe_signal/

A YC-Backed Startup Left Production AWS Keys Public for 5 Months.
https://www.reddit.com/r/netsec/comments/1s1ab3n/a_ycbacked_startup_left_production_aws_keys/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

A YC-Backed Startup Left Production AWS Keys Public for 5 Months.
https://www.reddit.com/r/netsec/comments/1s1ab3n/a_ycbacked_startup_left_production_aws_keys/

US soldier sentenced for helping North Korean IT workers
https://therecord.media/us-soldier-sentencer-for-helping-nk-it-workers

Microsoft Xbox One Hacked
https://www.schneier.com/blog/archives/2026/03/microsoft-xbox-hacked.html

The Verifier Tax: Horizon Dependent Safety Success Tradeoffs in Tool Using LLM Agents
https://arxiv.org/abs/2603.19328

Benchmarking Post-Quantum Cryptography on Resource-Constrained IoT Devices: ML-KEM and ML-DSA on ARM Cortex-M0+
https://arxiv.org/abs/2603.19340

A Novel Solution for Zero-Day Attack Detection in IDS using Self-Attention and Jensen-Shannon Divergence in WGAN-GP
https://arxiv.org/abs/2603.19350

The Broken Physics of Remediation
https://blog.qualys.com/vulnerabilities-threat-research/2026/03/23/the-broken-physics-of-remediation

California-based semiconductor testing company reports ransomware attack to SEC
https://therecord.media/ransomware-trio-tech-semiconductor-sec

Education company Kaplan reports data breach impacting more than 230,000
https://therecord.media/kaplan-data-breach-hack-notification

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Russian hacker who helped Yanluowang ransomware gang gets nearly 7-year prison sentence
https://therecord.media/hacker-russian-ransomware-sentenced-doj

Alleged OVHcloud data of 1.6M customers and 5.9M websites posted on popular forum for sale. CEO Comments
https://www.reddit.com/r/netsec/comments/1s2awo7/alleged_ovhcloud_data_of_16m_customers_and_59m/

Forensic Readiness Is Becoming a Strategic Security Discipline
https://www.reddit.com/r/netsec/comments/1s2alc9/forensic_readiness_is_becoming_a_strategic/

Anime streaming giant Crunchyroll says hacker stole data related to customer service tickets
https://therecord.media/crunchyroll-hacker-anime-data-theft

Dutch Finance Ministry probing cyber breach affecting internal systems
https://therecord.media/netherlands-finance-ministry-cyberattack-breach

Iran-linked ransomware gang targeted US healthcare org amid military conflict
https://therecord.media/iran-linked-ransomware-gang-targeted-us-healthcare-org

We rewrote SoftHSMv2 (the default PKCS#11 software HSM) in Rust — 617+ tests, PQC support, memory-safe key handling
https://www.reddit.com/r/netsec/comments/1s2f3le/we_rewrote_softhsmv2_the_default_pkcs11_software/

With the rise of SaaS and cloud applications, the browser has become the new workplace. That's where net-security comes in.
https://www.reddit.com/r/netsec/comments/1s2cryp/with_the_rise_of_saas_and_cloud_applications_the/

We scanned 900 MCP configs on GitHub. 75% had security problems.
https://www.reddit.com/r/netsec/comments/1s2j0zl/we_scanned_900_mcp_configs_on_github_75_had/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

UK cyber chief urges ‘full court press’ to counter rising cyber threats
https://therecord.media/uk-cyber-chief-urges-full-court-press-to-counter-risks

Russian botnet operator linked to major ransomware attacks sentenced in US
https://therecord.media/russian-botnet-operator-sentenced-ransomware

Navia breach exposed HackerOne employee PII due to a BOLA-style access in third-party system
https://therecord.media/navia-breach-exposed-hackerone-employee-pii-due-to-a-bola-style-access-in-third-party-system

Puerto Rico government agency cancels driver’s license appointments after cyberattack
https://therecord.media/puerto-rico-gov-agency-cancels-driver-license-appointments-cyber-incident

Ransomware attack disrupts operation at major Spanish fishing port
https://therecord.media/port-of-vigo-ransomware

Identity security is the new pressure point for modern cyberattacks
https://www.microsoft.com/en-us/security/blog/2026/03/25/identity-security-is-the-new-pressure-point-for-modern-cyberattacks/

Supply chain attack hits widely-used AI package, risks impacting thousands of companies
https://therecord.media/supply-chain-attack-hits-widely-used-ai-package

CISA's acting chief warns shutdown is increasing cyber risks, causing resignations
https://therecord.media/cisa-acting-chief-warns-shutdown-increasing-risks-leading-to-retention-issues

Weaponizing Windows Toast Notifications for Social Engineering
https://www.reddit.com/r/netsec/comments/1s3edze/weaponizing_windows_toast_notifications_for/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

China-linked Red Menshen using BPFdoor kernel backdoor in telecom networks
https://www.reddit.com/r/netsec/comments/1s4uxxq/chinalinked_red_menshen_using_bpfdoor_kernel/

Abusing Modern Browser Features for Phishing
https://www.reddit.com/r/netsec/comments/1s4zk4v/abusing_modern_browser_features_for_phishing/

DVRTC: intentionally vulnerable VoIP/WebRTC lab with SIP enumeration, RTP bleed, TURN abuse, and credential cracking exercises
https://www.reddit.com/r/netsec/comments/1s506og/dvrtc_intentionally_vulnerable_voipwebrtc_lab/

Testing AprielGuard Against 1,500 Adversarial Attacks
https://www.reddit.com/r/netsec/comments/1s51ac8/testing_aprielguard_against_1500_adversarial/

TeamPCP strikes again - telnyx popular PyPI library compromised
https://www.reddit.com/r/netsec/comments/1s52kq7/teampcp_strikes_again_telnyx_popular_pypi_library/

Latvia accuses Russia of disinformation campaign targeting Baltic states
https://therecord.media/latvia-accuses-russia-of-disinformation-campaign-ukraine-war

FBI confirms theft of director’s personal emails by Iran-linked hacking group
https://therecord.media/fbi-confirms-theft-of-directors-personal-emails-iran-group

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Breakdown: How TeamPCP hid malware inside WAV files using audio steganography
https://www.reddit.com/r/netsec/comments/1s6weca/breakdown_how_teampcp_hid_malware_inside_wav/

Please, We Beg, Just One Weekend Free Of Appliances (Citrix NetScaler CVE-2026-3055 Memory Overread Part 2) - watchTowr Labs
https://www.reddit.com/r/netsec/comments/1s75kb9/please_we_beg_just_one_weekend_free_of_appliances/

LangDrained: Path traversal, SQL injection, and Deserialization of untrusted data in LangChain
https://www.reddit.com/r/netsec/comments/1s7jexg/langdrained_path_traversal_sql_injection_and/

The Team PCP Snowball Effect: A Quantitative Analysis
https://www.reddit.com/r/netsec/comments/1s7ko65/the_team_pcp_snowball_effect_a_quantitative/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman