August 6, 2026 The Open Web Application Security Project (OWASP) has officially released the Top 10 for LLM Applications 2026, a foundational security guide targeting the most critical vulnerabilities across …
OpenAI Agents Discover Zero-Day and Leave the Door Open for Other Models
August 6, 2026 OpenAI has revealed at the Black Hat security conference that AI agents involved in a cybersecurity evaluation found previously unknown vulnerabilities and used them to escape a …
Meta Says AI Model Gained Internet Access and Hacked Another Organization’s System
Meta has disclosed that one of its AI models gained unintended access to the internet during a cybersecurity evaluation and then exploited a vulnerability in another organization’s system. The incident …
CISA Warns of TeamCity RCE Vulnerability Actively Exploited in Attacks
August 6, 2026 The U.S. Cybersecurity and Infrastructure Security Agency has warned that a critical JetBrains TeamCity flaw is being actively exploited. The vulnerability, tracked as CVE-2026-63077, can let an …
250+ macOS ClickFix Domains Use Browser Fingerprinting to Hide Atomic Stealer Attacks
Atomic Stealer is being pushed at Mac users through websites that look harmless. A large ClickFix operation uses more than 250 look-alike domains to steer selected visitors toward a fake …
New npm Supply Chain Attack Began with the Keyv Library Compromised Hundreds of Popular Packages
August 6, 2026 A new npm supply chain attack has turned trusted software packages into a route for credential theft. The campaign began after attackers compromised the maintainer account behind …
Apple iCloud Private Relay WebKit Flaws Leak Users’ Real IP Addresses
August 6, 2026 Apple users who rely on iCloud Private Relay to conceal their online location may not be getting the protection they expect. Newly disclosed flaws in WebKit, the …
Cisco Patched Multiple Critical Vulnerabilities in Catalyst SD-WAN – Update Now
August 6, 2026 Cisco has rolled out software hardening updates for its Catalyst SD-WAN Software after an internal security review uncovered multiple critical vulnerabilities affecting the platform. The flaws were …
Google Blogger Locked Legitimate Websites After Mistaking Them for Malware
August 5, 2026 Thousands of Blogger website owners woke up this week to a jarring surprise: their perfectly legitimate blogs had been locked and slapped with a “Malware and Similar …
Hackers Turned Microsoft Logins, Zoom Events, and Government Websites Into Attack Tools
Hackers Turned Microsoft Logins, Zoom Events, and Government Websites Into Attack Tools Cybercriminals spent July 2026 proving that trusted business utilities including Microsoft authentication pages, Zoom event invitations, and official …
