πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
28.1K subscribers
90.7K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ Leaked n8n API Tokens Exposed Live Instances to Credential Theft πŸ–‹οΈ

GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability. We scanned public GitHub commits for exposed n8n API tokens and identified 4,576 unique credentials associated with 1,255 hostnames. Of the 896.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
🌊 10 Best AI SOC Vendors without Lock-In Contracts : Data Portability Clauses, Log Ownership, and Exit Rights Compared Across 6 Platforms 🌊

Which AI SOC vendors let you own your logs and leave freely? Discover data portability, sovereignty, and exit clauses compared across 6 platforms. The post 10 Best AI SOC Vendors without LockIn Contracts Data Portability Clauses, Log Ownership, and Exit Rights Compared Across 6 Platforms appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause πŸ–‹οΈ

OpenAI has announced that it's pausing some "internal activities" involving its upcoming artificial intelligence AI model Astra after an internal evaluation found it had made significant advancements in agentic coding and cybersecurity. In response to the discovery, the AI upstart said it's implementing security controls for highercapability models and associated activities, such as isolated.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials πŸ–‹οΈ

Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code VS Code extension named Solidity Pro "soliditypro" that has been observed delivering a browser wallet and credential stealer. The names of the extensions are below helperbeeps.soliditypro web3devtoolsx.soliditypro Although neither of the extensions is now available on Open VSX, the GitHub repository.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” US Sanctions Iranian $6bn Crypto β€œExchange” Shelbit πŸ“”

TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Swiss authorities urge calm amid fears over SharePoint credential leak πŸ“’

The Federal Office for Information Technology and Telecommunication said that while accounts have been compromised, no sensitive data has been accessed.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Swiss authorities urge calm amid fears over SharePoint credential leak πŸ“’

The Federal Office for Information Technology and Telecommunication said that while accounts have been compromised, no sensitive data has been accessed.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” β€œGhostjacking” Exploits AI Agents’ Trusted Access to Evade Firewall Controls πŸ“”

Tenet reported that half of Fortune 500 companies are vulnerable to the Ghostjacking technique, which involves tricking AI agents with fake reports.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Go-Based macOS Malware Steals Crypto and Secrets πŸ“”

A macOS malware variant has been detected stealing crypto, passwords and more.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 11 Most Affordable AI SOC Platforms in 2026: What Each Pricing Tier Actually Covers for Small and Mid-Market Teams 🌊

Explore affordable AI SOC platforms with 247 coverage. See real costs, tier gaps, and compliance support for CTOs and security leads. The post 11 Most Affordable AI SOC Platforms in 2026 What Each Pricing Tier Actually Covers for Small and MidMarket Teams appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Trust your AI agents? New research shows β€˜memory poisoning’ can dupe them into β€˜remembering’ fake information – and it’s a huge security risk πŸ“’

Memory poisoning allows hidden text on a webpage to be treated as fact and used to make harmful decisions.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA πŸ–‹οΈ

Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on. Passkeys are designed to replace reusable passwords and resist phishing. The attacks instead reused signed authentication material that Windows had exposed, abused a cloudsynced passkey system from malware already on the victim's machine, and used a .

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Shipping 10–50Γ— More Code? Watch This Webinar on Securing AI-Speed Development πŸ–‹οΈ

AI is helping development teams produce far more code, far faster. But security teams still have to review vulnerabilities, manage dependencies, prioritize fixes, and control risk at human speed. When software output jumps 10 to 50 times, the problem is no longer just finding vulnerabilities. It is keeping security from becoming the bottleneck, or worse, losing control of what gets shipped.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ TrueConf Server Flaws Exploited to Replace Client Installers with PhantomCore πŸ–‹οΈ

The threat actor known as Head Mare has been observed weaponizing security flaws in unpatched TrueConf servers once again in attacks targeting Russian companies spanning instrumentation, electronics, transport, energy, IT, and software development sectors. Russian cybersecurity vendor Kaspersky said it detected the attacks in July 2026. The activity involves exploiting a vulnerability chain.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ”₯1
πŸ¦… Ransomware Now Shows Up in Nearly Half of All Breaches: A Survival Playbook for Lean Security Teams πŸ¦…

Ransomware stopped being an isolated incident type in 2025. It became the dominant force behind the modern breach landscape, and the ransomware data breach statistics from Cyble's own tracking make the shift impossible to ignore. For organizations facing this growing threat, having a ransomware incident response plan in place is becoming just as important as preventing an attack in the first place. Cyble's Global Cybersecurity Report 2025 documented 5,967 ransomware attacks for the year, a 50 yearoveryear jump. Against the 6,046 data breaches and leaks recorded in the same period, ransomware accounted for nearly half 49.7 of the combined ransomwareandbreach total tracked by Cyble Research and Intelligence Labs CRIL. That's the "nearly half" this blog's title refers to, and it isn'...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development πŸ–‹οΈ

North Korea's state hackers are no longer content to type prompts into public chatbots. One of the country's main espionage groups has begun running artificial intelligence AI offline on its own servers, connecting documentsearch tools to files in its possession, and collecting the software parts needed to build AI into its malware. South Korean security firm Genians says it uncovered the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” WordPress Plugins Compromised Without a Single File Change πŸ“”

Poisoned JSON feed let attackers backdoor WordPress sites without changing any plugin files.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
❀3
πŸ“’ Why MSPs should rethink the browser as the new security control point πŸ“’

Enterprise browsers simplify security by consolidating multiple security controls.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 'GhostJacking' Exposes Identity Governance Gaps in AI Agents πŸ•΅οΈβ€β™‚οΈ

New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Multistate Water System Attacks Widen, Iran Suspected πŸ•΅οΈβ€β™‚οΈ

Attacks targeting water systems just keep flowing across a dozen states, against illsecured, Internetexposed PLCs.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ•΅οΈβ€β™‚οΈ Metabase SQL Zero-Day Attacks Could Have Wide Blast Radius πŸ•΅οΈβ€β™‚οΈ

The maximumseverity vulnerability, which still has no CVE, allows malicious, remote administrator access to the businessanalytics platform and its downstream users.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity