π Indirect Prompt Injection in Web Content Targets AI Agents π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Zscaler found sites hiding promptinjection text to manipulate AI agents into crypto payments.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
π Opera GX Flaw Let Sites Auto-Install Mods to Steal Data π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Opera GX flaw let sites automatically install mods to steal data from other pages, now patched.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
Opera GX Flaw Let Sites Auto-Install Mods to Steal Data
Opera GX flaw let sites automatically install mods to steal data from other pages, now patched
π NCA Issues Warning to Parents As Shared Child Photos Exploited by AI Tools π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
IWF and NCA warn that growing numbers of images and videos are being manipulated into sexual abuse material.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
NCA Issues Warning to Parents As Shared Child Photos Exploited by AI
IWF and NCA warn that growing numbers of images and videos are being manipulated into sexual abuse material
π Researchers Claim First Fully Agentic Ransomware: JadePuffer π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Researchers have revealed JadePuffer, the first agentic AIpowered ransomware campaign, highlighting how autonomous agents can automate cyberattacks.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
Researchers Claim First Fully Agentic Ransomware: JadePuffer
Researchers have revealed JadePuffer, the first agentic AI-powered ransomware campaign, highlighting how autonomous agents can automate cyber-attacks
π AI SOC in 500 Real Incidents: What It Handled, What It Escalated, and Where It Still Asks for a Human π
π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
Explore AI security limitations and why a fully autonomous SOC stays unrealistic in 2026, with the red lines that still need a human. The post AI SOC in 500 Real Incidents What It Handled, What It Escalated, and Where It Still Asks for a Human appeared first on UnderDefense.π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
UnderDefense
AI SOC in 500 Real Incidents: Where It Still Asks for a Human
Explore AI security limitations and why a fully autonomous SOC stays unrealistic in 2026, with the red lines that still need a human.
π 5 Security Operations Problems an AI SOC Solves in Practice: Evidence From 500+ Real Incidents π
π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
Discover the 5 security operations problems an AI SOC solves, with evidence from 500 real incidents. Built for CTOs and security leaders. The post 5 Security Operations Problems an AI SOC Solves in Practice Evidence From 500 Real Incidents appeared first on UnderDefense.π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
UnderDefense
5 Security Operations Problems an AI SOC Solves in Practice
Discover the 5 security operations problems an AI SOC solves, with evidence from 500+ real incidents. Built for CTOs and security leaders.
π¦
Mid-Year Threat Trends: What H1 2026 Signals for the Rest of the Year π¦
π Read more.
π Via "CYBLE"
----------
ποΈ Seen on @cibsecurity
The first half of 2026 has given security teams little room to breathe. Ransomware operators kept up a punishing pace. If that wasnt enough, access brokers turned network intrusions into a marketplace, and nationstate activity blurred further into hacktivism and organized cybercrime. Taken together, the numbers point to a threat landscape that isn't just growing louder it's becoming faster, more coordinated, and harder to attribute. Cyble's monthly and quarterly research has tracked this shift in real time, and the pattern across regions is consistent. In short, attackers are scaling operations while defenders are still catching up. These threat intelligence trends 2026 also provide an early look at the top cyber threats 2026 and what organizations should expect during the remainde...π Read more.
π Via "CYBLE"
----------
ποΈ Seen on @cibsecurity
Cyble
2026 Threat Intelligence Trends, Cyber And Ransomware Report
Explore 2026 threat intelligence trends, ransomware growth, AI attacks, and identity risks shaping the cyber risk outlook and threat landscape.
π UK Government Launches Cyber Resilience Pledge, Claiming 60+ Signatories π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
More than 60 organizations, including MS, Microsoft UK and Vodafone, have signed the UK government's Cyber Resilience Pledge, a new initiative aimed at boosting cyber security and resilience across British businesses.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
π UK Government Launches Cyber Resilience Pledge, Claiming 60+ Signatories π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
More than 60 organizations, including MS, Microsoft UK and Vodafone, have signed the UK government's Cyber Resilience Pledge, a new initiative aimed at boosting cyber security and resilience across British businesses.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
β€2π1
π’ This one cyber crime group accounted for nearly a fifth of all ransomware attacks in June π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
The Gentlemen, a ransomware a service operator, now accounts for 17 of published attacks.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
This one cyber crime group accounted for nearly a fifth of all ransomware attacks in June
The Gentlemen, a ransomware a service operator, now accounts for 17% of published attacks
π’ NCSC issues warning over Russian intelligence-backed threat group π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
The advisory comes as the government cracks down on groups involved in destructive cyber and hybrid operations.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
NCSC issues warning over Russian intelligence-backed threat group
The advisory comes as the government cracks down on groups involved in βdestructive cyber and hybrid operationsβ
π¦Ώ Meta Removes Muse Image Instagram Feature After Consent Backlash π¦Ώ
π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
Meta scrapped a Muse Image feature days after launch following backlash over consent, privacy, and the use of public Instagram photos. The post Meta Removes Muse Image Instagram Feature After Consent Backlash appeared first on TechRepublic.π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
TechRepublic
Meta Removes Muse Image Instagram Feature After Consent Backlash
Meta scrapped a Muse Image feature days after launch following backlash over consent, privacy, and the use of public Instagram photos.
π¦Ώ Fake Bank Apps Let Scammers Control Android Phones in Southeast Asia π¦Ώ
π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
RedHook malware uses fake banking and government apps to steal data and control Android phones, with attacks confirmed in Vietnam and Indonesia so far. The post Fake Bank Apps Let Scammers Control Android Phones in Southeast Asia appeared first on TechRepublic.π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
TechRepublic
Android Malware Can Control Phones in Southeast Asia
RedHook malware uses fake banking and government apps to steal data and control Android phones, with attacks confirmed in Vietnam and Indonesia so far.
π¦Ώ Get Peace of Mind: Protect Data for Life With BigMind DR for $59.99 π¦Ώ
π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
With a lifetime subscription to BigMIND DR, you can recover your data for 83 off the regular price of 357. The post Get Peace of Mind Protect Data for Life With BigMind DR for 59.99 appeared first on TechRepublic.π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
TechRepublic
Get Peace of Mind: Protect Data for Life With BigMind DR for $59.99
With a lifetime subscription to BigMIND DR, you can recover your data for 83% off the regular price of $357.
βοΈ Lessons Learned from CISAβs Recent GitHub Leak βοΈ
π Read more.
π Via "Krebs on Security"
----------
ποΈ Seen on @cibsecurity
The Cybersecurity and Infrastructure Security Agency CISA has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials including AWS Govcloud keys in a public GitHub repository for almost six months before being notified by KrebsOnSecurity. Experts say the gaps identified in the agency's initial response provide important lessons that all security teams should absorb.π Read more.
π Via "Krebs on Security"
----------
ποΈ Seen on @cibsecurity
Krebs on Security
Lessons Learned from CISAβs Recent GitHub Leak
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials -- including AWS Govcloud keys -- in a public GitHub repository for almost six monthsβ¦
ποΈ CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper Checks ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity researchers have flagged a new macOS information stealer called CrashStealer that's capable of harvesting sensitive data from compromised systems. Unlike other information stealers that are built on AppleScript droppers or ObjectiveCbased wrappers, CrashStealer is implemented in native C, according to Jamf Threat Labs. "It validates the victim's login password locally before.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Google and Microsoft have pulled ModHeader, a popular headerediting extension with roughly 1.6 million installs across Chrome and Edge, after researchers found a hidden browsinghistory collector built into its official store version. The collector was dormant. An empty allowlist kept it switched off, and no proof has emerged that it ever gathered or sent a single browsing domain. The.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ β‘ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and More ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Somewhere right now, a security tool is quietly finding bugs faster than any human can fix them. That's supposed to be the good news. The catch is that the attackers have the same tools, pointed the other way, and they don't file tickets. That's the shape of this week. Trusted code turns on the people who installed it. Old bugs from last year are still landing because the fix sat in a queue too.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ New MemGhost Attack Plants Persistent False Memories in AI Agents Through One Email ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Give an AI assistant a memory and access to your inbox, and you hand an attacker a way to rewrite what it thinks it knows about you. A single email can trick that agent into saving a false "fact" about the user, hide the change, and quietly steer its answers in later sessions. When it works, the person reads an ordinarylooking reply and never learns their assistant was tampered with. The.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A new phishingasaservice PhaaS operation called Forg365 is using a combination of device code phishing, adversaryinthemiddle AitM tactics, antibot evasion, artificial intelligence AIassisted lure creation, and postcompromise mailbox operations targeting Microsoft 365 accounts. Distributed via Telegram and costing 400 a month or 3,800 per year, attack chains leverage phishing.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Meta Files Patent for AI That Can Listen All Day and Track How You're Feeling ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Meta has filed a patent application for an AI that listens to your voice throughout the day, works out how it thinks you are feeling from the way you sound, and keeps a timestamped log of every read. Each read gets pinned to the moment it happened the time, your location, what you were doing, even how you were using your phone. Some versions in the filing would listen all day others would.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity