ποΈ Leaked n8n API Tokens Exposed Live Instances to Credential Theft ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability. We scanned public GitHub commits for exposed n8n API tokens and identified 4,576 unique credentials associated with 1,255 hostnames. Of the 896.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
β€1
π 10 Best AI SOC Vendors without Lock-In Contracts : Data Portability Clauses, Log Ownership, and Exit Rights Compared Across 6 Platforms π
π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
Which AI SOC vendors let you own your logs and leave freely? Discover data portability, sovereignty, and exit clauses compared across 6 platforms. The post 10 Best AI SOC Vendors without LockIn Contracts Data Portability Clauses, Log Ownership, and Exit Rights Compared Across 6 Platforms appeared first on UnderDefense.π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
UnderDefense
10 Best AI SOC Vendors without Lock-In Contracts : Data Portability Clauses, Log Ownership, and Exit Rights Compared Across 6 Platforms
Which AI SOC vendors let you own your logs and leave freely? Discover data portability, sovereignty, and exit clauses compared across 6 platforms.
ποΈ OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
OpenAI has announced that it's pausing some "internal activities" involving its upcoming artificial intelligence AI model Astra after an internal evaluation found it had made significant advancements in agentic coding and cybersecurity. In response to the discovery, the AI upstart said it's implementing security controls for highercapability models and associated activities, such as isolated.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code VS Code extension named Solidity Pro "soliditypro" that has been observed delivering a browser wallet and credential stealer. The names of the extensions are below helperbeeps.soliditypro web3devtoolsx.soliditypro Although neither of the extensions is now available on Open VSX, the GitHub repository.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π US Sanctions Iranian $6bn Crypto βExchangeβ Shelbit π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
US Sanctions Iranian $6bn Crypto βExchangeβ Shelbit
TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange
π’ Swiss authorities urge calm amid fears over SharePoint credential leak π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
The Federal Office for Information Technology and Telecommunication said that while accounts have been compromised, no sensitive data has been accessed.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
Swiss authorities urge calm amid fears over SharePoint credential leak
The Federal Office for Information Technology and Telecommunication said that while accounts have been compromised, no sensitive data has been accessed
π’ Swiss authorities urge calm amid fears over SharePoint credential leak π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
The Federal Office for Information Technology and Telecommunication said that while accounts have been compromised, no sensitive data has been accessed.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
Swiss authorities urge calm amid fears over SharePoint credential leak
The Federal Office for Information Technology and Telecommunication said that while accounts have been compromised, no sensitive data has been accessed
π βGhostjackingβ Exploits AI Agentsβ Trusted Access to Evade Firewall Controls π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Tenet reported that half of Fortune 500 companies are vulnerable to the Ghostjacking technique, which involves tricking AI agents with fake reports.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
βGhostjackingβ Exploits AI Agentsβ Trusted Access to Evade Firewall Co
Tenet reported that half of Fortune 500 companies are vulnerable to the Ghostjacking technique, which involves tricking AI agents with fake reports
π Go-Based macOS Malware Steals Crypto and Secrets π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
A macOS malware variant has been detected stealing crypto, passwords and more.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
Go-Based macOS Malware Steals Crypto and Secrets
A macOS malware variant has been detected stealing crypto, passwords and more
π 11 Most Affordable AI SOC Platforms in 2026: What Each Pricing Tier Actually Covers for Small and Mid-Market Teams π
π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
Explore affordable AI SOC platforms with 247 coverage. See real costs, tier gaps, and compliance support for CTOs and security leads. The post 11 Most Affordable AI SOC Platforms in 2026 What Each Pricing Tier Actually Covers for Small and MidMarket Teams appeared first on UnderDefense.π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
UnderDefense
11 Most Affordable AI SOC Platforms in 2026: What Each Pricing Tier Actually Covers for Small and Mid-Market Teams
Explore affordable AI SOC platforms with 24/7 coverage. See real costs, tier gaps, and compliance support for CTOs and security leads.
π’ Trust your AI agents? New research shows βmemory poisoningβ can dupe them into βrememberingβ fake information β and itβs a huge security risk π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
Memory poisoning allows hidden text on a webpage to be treated as fact and used to make harmful decisions.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
Trust your AI agents? New research shows βmemory poisoningβ can dupe them into βrememberingβ fake information β and itβs a hugeβ¦
Memory poisoning allows hidden text on a webpage to be treated as fact and used to make harmful decisions
ποΈ New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on. Passkeys are designed to replace reusable passwords and resist phishing. The attacks instead reused signed authentication material that Windows had exposed, abused a cloudsynced passkey system from malware already on the victim's machine, and used a .π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Shipping 10β50Γ More Code? Watch This Webinar on Securing AI-Speed Development ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
AI is helping development teams produce far more code, far faster. But security teams still have to review vulnerabilities, manage dependencies, prioritize fixes, and control risk at human speed. When software output jumps 10 to 50 times, the problem is no longer just finding vulnerabilities. It is keeping security from becoming the bottleneck, or worse, losing control of what gets shipped.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ TrueConf Server Flaws Exploited to Replace Client Installers with PhantomCore ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
The threat actor known as Head Mare has been observed weaponizing security flaws in unpatched TrueConf servers once again in attacks targeting Russian companies spanning instrumentation, electronics, transport, energy, IT, and software development sectors. Russian cybersecurity vendor Kaspersky said it detected the attacks in July 2026. The activity involves exploiting a vulnerability chain.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π₯1
π¦
Ransomware Now Shows Up in Nearly Half of All Breaches: A Survival Playbook for Lean Security Teams π¦
π Read more.
π Via "CYBLE"
----------
ποΈ Seen on @cibsecurity
Ransomware stopped being an isolated incident type in 2025. It became the dominant force behind the modern breach landscape, and the ransomware data breach statistics from Cyble's own tracking make the shift impossible to ignore. For organizations facing this growing threat, having a ransomware incident response plan in place is becoming just as important as preventing an attack in the first place. Cyble's Global Cybersecurity Report 2025 documented 5,967 ransomware attacks for the year, a 50 yearoveryear jump. Against the 6,046 data breaches and leaks recorded in the same period, ransomware accounted for nearly half 49.7 of the combined ransomwareandbreach total tracked by Cyble Research and Intelligence Labs CRIL. That's the "nearly half" this blog's title refers to, and it isn'...π Read more.
π Via "CYBLE"
----------
ποΈ Seen on @cibsecurity
Cyble
Ransomware Now Shows Up in Nearly Half of All Breaches: A Survival Playbook for Lean Security Teams
A ransomware incident response plan helps teams prepare for rising attacks. Explore 2025-2026 ransomware data, RaaS threats, recovery and prevention.
ποΈ Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
North Korea's state hackers are no longer content to type prompts into public chatbots. One of the country's main espionage groups has begun running artificial intelligence AI offline on its own servers, connecting documentsearch tools to files in its possession, and collecting the software parts needed to build AI into its malware. South Korean security firm Genians says it uncovered the.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π WordPress Plugins Compromised Without a Single File Change π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Poisoned JSON feed let attackers backdoor WordPress sites without changing any plugin files.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
WordPress Plugins Compromised Without a Single File Change
Poisoned JSON feed let attackers backdoor WordPress sites without changing any plugin files
β€3
π’ Why MSPs should rethink the browser as the new security control point π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
Enterprise browsers simplify security by consolidating multiple security controls.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
ChannelPro
Why MSPs should rethink the browser as the new security control point
Enterprise browsers simplify security by consolidating multiple security controls
π΅οΈββοΈ 'GhostJacking' Exposes Identity Governance Gaps in AI Agents π΅οΈββοΈ
π Read more.
π Via "Dark Reading"
----------
ποΈ Seen on @cibsecurity
New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents.π Read more.
π Via "Dark Reading"
----------
ποΈ Seen on @cibsecurity
Dark Reading
"GhostJacking" Exposes Identity Governance Gaps in AI Agents
New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents.
π΅οΈββοΈ Multistate Water System Attacks Widen, Iran Suspected π΅οΈββοΈ
π Read more.
π Via "Dark Reading"
----------
ποΈ Seen on @cibsecurity
Attacks targeting water systems just keep flowing across a dozen states, against illsecured, Internetexposed PLCs.π Read more.
π Via "Dark Reading"
----------
ποΈ Seen on @cibsecurity
Dark Reading
Multistate Water System Attacks Widen, Iran Suspected
Attacks targeting water systems just keep flowing across a dozen states, against ill-secured, Internet-exposed PLCs.
β€1
π΅οΈββοΈ Metabase SQL Zero-Day Attacks Could Have Wide Blast Radius π΅οΈββοΈ
π Read more.
π Via "Dark Reading"
----------
ποΈ Seen on @cibsecurity
The maximumseverity vulnerability, which still has no CVE, allows malicious, remote administrator access to the businessanalytics platform and its downstream users.π Read more.
π Via "Dark Reading"
----------
ποΈ Seen on @cibsecurity
Dark Reading
Metabase SQL Zero-Day Attacks Could Have Wide Blast Radius
The max-severity vuln, which still has no CVE, allows malicious, remote administrator access to the business-analytics platform and its downstream users.