
Hotel Wi-Fi phishing campaign targets business travelers, Microsoft warns.


Lemongrass, a specialist in SAP cloud transformation, has unveiled Brightfield, an AI-first modernization model designed to help enterprises realize measurable business value during SAP transformation programs rather than years after go-live. Built on Lemongrass’s LCP AI SaaS Edition (LINK) and delivered through SAP-centric Forward Deployed Engineers (FDEs), Brightfield embeds AI, automation, and Clean Core principles…

OpenAI says its next major AI model can do more than answer difficult questions — it can help produce new mathematics. The company announced Saturday that an internal version of its next major model, dubbed Astra, generated solutions to ten longstanding open problems across mathematics and theoretical computer science. The topics ranged from quantum complexity…

Security researchers have uncovered three new attacks that could let malware hijack Google-synced passkeys and take over online accounts from compromised Windows devices. The techniques target Google Password Manager in Chrome and abuse weaknesses in device trust, user verification, re-registration, credential recovery, and passkey synchronization. Depending on the technique, attackers could bypass verification, authenticate from…
Cyber adversaries are moving faster, exploiting trust instead of brute force, and increasingly combining automation with hands-on operations to evade traditional security controls. CrowdStrike released its 2026 Threat Hunting report alongside Black Hat 2026. Its findings show that threat actors are accelerating vulnerability exploitation, abusing artificial intelligence (AI), targeting software supply chains, and shifting toward…

OpenAI has taken its defense against Apple public. In a company post, it published emails and private messages that it says contradict parts of the iPhone maker’s trade-secret account. Its release challenges Apple’s description of pre-lawsuit contacts and supplies context for conduct cited in a request for an injunction. OpenAI also rejects allegations involving its…

OpenAI, Google, Meta, and Anthropic are headed to Washington for a conversation about AI models that may be getting a little too good at finding and exploiting security flaws. The White House has finalized a voluntary framework for testing whether advanced AI models can uncover software vulnerabilities or support sophisticated cyberattacks. Participating developers could give…
Both Marshall and Sonos speakers play to their strengths, but the right one for you depends on more than their price tags.

The Trump administration’s haphazard and opaque interventions into artificial intelligence security matters could catapult Chinese alternatives into broader acceptance, posing new security risks altogether, a group of Democratic senators wrote to top administration officials Monday. The five senators said that the administration’s handling has alternated between too passive, such as when OpenAI models escaped testing…

The commercial phishing-as-a-service (PhaaS) toolkit known as Greatness has become the latest crimeware solution to add support for device code phishing, a rapidly growing cyber threat that abuses the legitimate OAuth 2.0 Device Authorization Grant to bypass Multi-Factor Authentication (MFA) and seize control of user accounts. “Greatness supports AiTM [adversary-in-the-middle] credential and

Amazon Web Services (AWS) is pleased to announce the successful completion of our Payment Card Industry (PCI) Data Security Standard (DSS) and Three Domain Secure (3DS) certifications. As part of this renewal, we have expanded the scope to include three additional AWS services and one additional AWS Region: Newly added AWS services: Amazon Bedrock AgentCore…
Flare has launched Darkroom by Flare Academy, a free interactive training platform designed to give cybersecurity professionals practical experience investigating the types of underground environments where cyber threats originate. The launch coincides with DEF CON 2026, where Flare will also host a live Darkroom event. Unlike traditional cyber threat intelligence (CTI) training that often relies…

In an open letter, OpenAI this week turned to the court of public opinion in its existential war against Apple with a public notice in which the company refutes the iPhone maker’s claims concerning wholesale use of confidential information. You can detect the depth of enmity between both firms in OpenAI’s opening lines to its letter, which begins:…

Airlock Digital, a leader in preventative endpoint security, today announced Agentic AI Control & Governance at Black Hat USA 2026. The new capabilities build on application control by providing command- and session-level visibility into trusted AI agent behavior, centralized policy management for trusted applications and AI agents, and real-time governance over what trusted AI agents…
The popular Ninja Slushi is on sale for under $300 once again. Here’s where to find the deal.
Teams need to implement agentic AI with and open mind – and a closed security model.
Overprivileged AI agents drive incidents. Least privilege and unified identity reduce AI risk.
Self-propagating malware named ‘ChainDrop’ has compromised more than 1,300 packages with a combined 2 billion monthly downloads on the Node Package Manager (npm) registry. […]
If you’re in the mood for some whimsy, Mango Launcher is what you want.

Researchers said INC ransomware, one of the most active ransomware groups globally, has been the main attacker exploiting a pair of SonicWall zero-days soon after they were disclosed last month. The prolific ransomware-as-a-service operation wasn’t the first group to exploit the flaws, which were actively exploited for three weeks before the vendor disclosed and patched…
The X-Sense smoke and carbon monoxide alarms are easy to install and offer good value for money.
Las Vegas, United States, 4th August 2026, CyberNewswire

A breach of a UK police legal platform may have exposed a valuable targeting resource: verified contact information belonging to police officers, criminal justice staff, and government partners. A previously unknown group calling itself ExfilSquad claims it stole roughly 135,000 records from the Police National Legal Database and has published samples on a dark web…
TerraMaster’s D1 SSD Pro keeps your drives cool enough to perform at their peak.
You can get more from CarPlay – beyond Maps and Music – with these free features.

AI agents are performing roughly 1 in 3 actions in enterprise IT workflows (but that share is rising quickly), while human analysts are rejecting about one-quarter of AI-proposed actions (but that rate is falling), according to a new study of tens of thousands of human-AI interactions. Operational data, rather than underlying AI infrastructures, is often…

With identity protection services for millions of victims of the 2015 Office of Personnel Management breach set to expire, a group of lawmakers is making a push to extend them forever. Sen. Mark Warner, D-Va., and Del. Eleanor Holmes Norton, D-D.C., introduced legislation to give lifetime identity protection coverage to around 4.2 million federal employees…
Up-front cost is a big barrier for those considering battery systems, but homeowner experience shows why the value overshadows the sticker shock almost every time.
Hatch’s latest clock doubles as a sleep tracker that provides you with actual ways to get a better night’s sleep, not just more data.

Cybercriminals are cloning popular GitHub repositories for AI tools and developer resources to distribute an infostealer, according to Netskope Threat Labs. (Source: Netskope) Netskope came across the campaign while tracking a Windows-based MaaS infostealer, first reported in April 2026, that was spread through the ClickFix social engineering trick. Continuing to follow the operation, the researchers…

A large-scale software supply chain attack is affecting the JavaScript ecosystem after attackers compromised the GitHub account of a maintainer behind several widely used npm packages. The incident began on Aug.4, 2026, when malicious code was introduced into packages including keyv, flat-cache, and file-entry-cache, but quickly expanded into a broader Shai-Hulud campaign that has spread…

Sevii has announced a major expansion of the Sevii Autonomous Defense & Remediation (ADR) platform with the general availability of an Autonomous Preemptive Security (APS) module. The new module complements ADRs autonomous defense against threats, extending the platform to continuously transform customer’s external global and internal environmental cyber intelligence into autonomous hypothesis hunting, exposure validation,…

INC Ransomware exploits SonicWall SMA 1000 flaws, using calls and emails to pressure victims during extortion campaigns targeting global organizations. Resecurity disclosed that INC Ransomware has emerged as the dominant threat actor exploiting the recently disclosed SonicWall Secure Mobile Access (SMA) 1000 vulnerabilities. According to the company’s research, the group has accelerated its operations since…

ServiceNow has announced an acceleration of its Autonomous Security vision with six unified solutions that help deliver prevention-first, AI-native cyber defense across unified exposure management, continuous vulnerability detection, cyber-physical security, identity and access security, and agentic incident response, and cyber risk and compliance. With new AI Specialists that complete security workflows autonomously, including the Vulnerability…

A credential-stealing npm worm that first appeared in keyv@6.0.0 spread beyond the Keyv and Cacheable namespaces into hundreds of packages across multiple organizations on August 4, 2026. SafeDep verified 353 poisoned versions across 79 package names in the npm registry. Its monitoring put the wider footprint at 442 versions across 353 names, while Aikido later…

The Senate is teeing up debate on a raft of new bills that would impact online privacy, kids safety and artificial intelligence. The Senate Committee on Commerce, Science and Transportation will mark up five bills Wednesday. The most high-profile legislation, the Kids Online Safety Act, sponsored by Sens. Marsha Blackburn, R-Tenn., and Richard Blumenthal, D-Conn.,…

Snyk has announced the general availability of Evo Continuous Offensive Security (COS), enabling security teams to continuously test applications with autonomous, AI-powered pentesting and AI agent red teaming while providing validated proof of what attackers could actually exploit. AI is accelerating software release cycles while rapidly expanding the exposed attack surface, which now spans architectural…

Cybersecurity researchers have disclosed details of an active, multi-wave campaign that employs social engineering lures themed around Adobe and Zoom software updates, business document reviews, and system maintenance utilities to stealthily deploy Remote Monitoring and Management (RMM) programs like ConnectWise ScreenConnect. The campaign has been codenamed SMOKE#SCREEN by Securonix Threat
N-able has released an emergency hotfix for an actively exploited authentication bypass in N-central, a remote monitoring and management platform widely used by managed service providers and internal IT teams. The flaw allows a remote, unauthenticated attacker to obtain administrative access to vulnerable N-central servers and use the platform’s legitimate management capabilities to reach downstream…

AvePoint has launched a new continuous data classification capability designed to help organizations identify sensitive information as files, permissions, and AI usage change over time. The company’s Kinetic Classification feature repeatedly reassesses enterprise data rather than relying on static labels, while new Rapid Recovery capabilities use that intelligence to help organizations prioritize which systems and…

RapidFort has launched RapidFort Runtime, a real-time security solution that extends RapidFort’s SSCS capabilities into live production environments. The offerings provide end-to-end continuous threat elimination, from curated, independently malware-scanned open-source software before deployment to continuous CVE monitoring and tamper detection in production. RapidFort Runtime operates inside an organization’s production environment continuously monitoring deployed software, detecting…
Cybersecurity has become a standing agenda item in boardrooms, yet many chief information security officers (CISOs) still struggle to communicate cyber risk in a way that enables informed business decisions. According to Pulse Security’s The CISO-Board Communication Gap report, released during Black Hat 2026, the challenge is not simply improving presentations. Instead, the research suggests…
The Python client for Onyphe had been sitting on a 2.x release for a while. It worked, but it was showing its age: a setup.py, a requirements.txt with a single line in it, no tests, no CI, no type hints, and a synchronous-only surface built on requests. pyonyphe 3.0 is a full rewrite. Same API,…
This morning, I noticed specific sources “hunting” for vulnerabilities in URLs that I haven’t noticed before. All of these URLs appear to be associated with diagnostic tools: URL Count Vulnerability / 1 (simple recon for index page) /apply.cgi 20 CVE-2024-12856 Four-Faith router command injection /cgi-bin/adv_ping.cgi 20 ? /cgi-bin/diagnostic.cgi 20 CVE-2013-7179 Seowon Intech WiMAX SWU-9100 mobile…
A critical cPanel flaw (CVE-2026-58048) lets authenticated users execute SQL as root. Users should update to fixed versions immediately. If you run a shared hosting box, this one’s worth reading before your morning coffee gets cold. cPanel just patched a flaw, tracked as CVE-2026-58048 (CVSS score of 9.4), that let an ordinary authenticated hosting customer,…

A critical vulnerability in Microsoft Azure’s Cosmos DB database service could have enabled attackers to escape the platform’s Gremlin query sandbox, execute code on shared infrastructure, and ultimately gain access to any customer’s database, including data stores used by Microsoft services such as Entra ID, Teams, and Copilot, according to research published by cloud security…

Microsoft has warned that hotel, conference, and other hospitality Wi-Fi networks are being actively abused by a Russian group to target travelers worldwide. The campaign, dubbed “CaptiveCrunch” turns a routine Wi-Fi login moment into an opportunity to compromise corporate accounts and devices. From the user’s perspective, nothing looks out of the ordinary: they connect to…
Las Vegas, Nevada, 4th August 2026, CyberNewswire

Black Hat 2026 is shaping up to be another AI-heavy conference, but this year’s announcements suggest the industry is moving beyond simply adding copilots to existing products. Vendors are increasingly packaging AI into operational workflows, while pairing automation with governance, exposure management, and recovery capabilities aimed at making autonomous security more practical for enterprise environments.…

RapidFort has launched RapidFort Runtime, a security platform designed to extend software supply chain protection beyond development and into live production environments. RapidFort extends security monitoring into production The solution, RapidFort Runtime, creates an end-to-end continuous threat elimination solution from curated, independently malware-scanned open-source software before deployment to continuous CVE monitoring and tamper detection in…

Hatz AI has launched a new command center designed to help managed service providers deploy artificial intelligence tools across their small and midsize business customer bases without manually onboarding each client. The new feature, called Hatz Activate, is available through the Hatz Admin panel and gives MSPs a centralized view of their customer accounts, AI…

Security flaws in automated workflows in the GitHub repository for Google’s Agent Development Kit for Python could allow public-facing AI agents to trigger more privileged automation, opening one path to manipulate pull-request reviews and another to expose credentials, according to a report from Pillar Security. The first attack path involved a triage agent that analyzed…

Google has walked back an AI feature that allowed users to generate artificial images inside Google Earth, after a predictable flurry of deepfakes. Google switched on the AI image generation feature inside Google Earth’s web version on July 30. It was available to everyone. The system used Google’s Nano Banana 2 image generator to create…

The cybersecurity industry has spent decades assuming that offensive capability scales with technical expertise. That assumption is starting to break. Security teams have long estimated risk by ranking attacker sophistication. Nation-state actors sat at one end. Organized criminal groups followed. Inexperienced attackers, dismissed as “script kiddies,” sat at the other end, running public

If you think that financial fraud in the digital world only happens to other people in South Africa, think again. One in every three South Africans has experienced digital fraud, and you could be next. The explosion in generative AI has enabled a drastic launch of new and improved fraud attacks that are often almost…

Google deleted three AI agent workflows from its Agent Development Kit (ADK) Python repository. Pillar Security showed that a public GitHub issue could manipulate a triage agent into triggering a privileged code-fixing agent. The researchers said the public agent could be prompt-injected into posting /adk-issue-fix as adk-bot. They identified the bot as a collaborator, so…

Apple has filed a new legal complaint with the UK Investigatory Powers Tribunal, challenging a fresh government demand that would require access to encrypted iCloud data belonging to users in Britain, according to court documents first reported by the Financial Times (FT). The dispute centers on a “technical capability notice,” or TCN, issued under the…

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a N-able N-central flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a N-able N-central flaw, tracked as CVE-2026-18577 (CVSS score of 8.2), to its Known Exploited Vulnerabilities (KEV) catalog. CVE-2026-18577 (CVSS 8.2) is an authentication bypass flaw caused by an…
Sick to death of unwanted AI features getting stuffed into your smartphone? We tested the best models from Apple, Samsung, and more that forego AI in favor of features you actually need.
After more than 30 years the cybersecurity field, Keith Jones recently realized that his role had changed, from being a single contributor to manager of a fairly large team. And this team was getting a lot accomplished — tasks that used to take up a huge chunk of his workday. No, his company hadn’t hired…

Midnight Blizzard, the Russian threat actor tied to the country’s foreign intelligence service, has spent months targeting users of public Wi-Fi networks at places like hotels and conference centers, according to new findings from Microsoft Threat Intelligence. Overview of the CaptiveCrunch attack flow (Source: Microsoft) Microsoft named the campaign CaptiveCrunch and identified two malware strains…

cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database’s root context, crossing the privilege boundary between a cPanel account and the server’s administrative database identity. It shipped in a targeted security release that closes two other routes past account boundaries. The database bug is tracked as CVE-2026-58048 (CVSS…

Indusface has announced SwyftComply AI, an autonomous vulnerability remediation solution that virtually patches vulnerabilities surfaced by AI-assisted pentesting. Artificial intelligence has changed the economics of application security. AI-powered security agents now uncover exponentially more vulnerabilities than ever before. Yet remediation has not accelerated. Security teams are overwhelmed by findings while remediation remains constrained by engineering…

ESET is expanding its AI capabilities across threat detection, investigations, threat protection, and security operations, delivering added value to customers through built-in innovations rather than separate add-on solutions. “AI is a new class of actor inside the company – reading, writing, making decisions and executing. As such, it deserves the same security attention as users…
I tested the best Garmin watches to help you decide which smartwatch is the right option for you as we enter marathon season.
Hisense has quickly become one of the more trusted names in mid-range TVs, and has recently started to offer truly premium-grade screens for high-end home theaters with new technology like RGB Mini LED panels and AI integration.

Actor usage of AI is exploding. By analyzing artifacts left behind, Talos has created a detailed analysis of how we are seeing adversaries leverage the technology to include development, force multiplication, and vulnerability research. Based on the evidence Talos gathered, guardrails did not provide much protection, with most actors able to convince the models to…

You don’t need to be a fortune teller to understand where enterprise IT is headed. McKinsey reported in November that 62% of global organizations were experimenting, piloting or scaling agentic AI projects. More recently, Gartner forecast that worldwide spending on AI will top $2.59 trillion in 2026 – an increase of 47% from last year.…

Zero-knowledge proofs could let infrastructure operators answer key security questions without handing over the sensitive data behind their answers. Imagine a major software flaw is discovered in equipment used across pipelines, power plants and telecom networks. The government needs to know as fast as possible which companies are exposed. But answering that question may require…

Joinable Labs launched Joinable Security, the first domain on the Joinable platform, with two products: Joinable Threat Map, a free utility that lets the security community map, analyze, and share evolving adversary behavior, and Joinable Runbooks, an enterprise platform that turns an organization’s security response documentation into governed knowledge and the agents that act on…

Securonix has announced expanded cybersecurity cost reduction, expanded Threat Analytics for Microsoft Sentinel, and new Governed AI Agent Detection and Response capabilities. The additions extend the Securonix Unified Defense SIEM platform to help enterprises and managed security providers control data costs, improve detection coverage and response, and govern risks created by enterprise AI adoption. Security…

Uptime Kuma checks whether a website, a Docker container, a DNS record, or a Steam game server is still answering, and pushes a message to Telegram, Slack, or email when one stops. The self-hosted monitoring tool is MIT licensed, runs in a container or on Node.js, and has 89,800 stars and 8,200 forks on GitHub.…

Legit Security has unveiled VibeGuard 2.0, bringing a new endpoint security capability that seamlessly discovers and integrates with coding agents, secures them and delivers a frictionless developer experience. Launched in Q4 2025, Legit VibeGuard was the solution designed to secure AI-generated code at the moment of creation and place guardrails on coding agents. This latest…

Tanium has announced a series of new autonomous security capabilities across the Tanium Autonomous IT Platform. Spanning agentic AI, exposure management and security operations, the capabilities empower IT and security operators to stay ahead of an AI-accelerated threat landscape, safely, without losing control. “Tanium is the platform that governs and manages them with Tanium Atlas…

A new Russian loader-as-a-service (LaaS) codenamed DOUBLECUP has been using ClickFix lures as a way to stage malware-laced PNG images in victims’ browser cache and ultimately deliver CountLoader and a previously undocumented remote access trojan called DeviceManager. “The first stage drops a steganographic PNG image into the browser’s cache, retrieves its hidden content, and executes…

More than 30 Minnesota community water systems were hit by coordinated cyber activity against their operational technology on July 26 and 27; several lost remote control or deliberately cut it while operators contained the intrusion. The reporting since — including CSO’s own news analysis — has rightly chased two open questions: Who did it, and…