August 14, 2026 TP-Link has disclosed multiple high-severity vulnerabilities affecting ISP-managed Aginet networking products, including mesh systems, routers, PON devices, and xDSL modems. The flaws could allow attackers with network …
Bring Your Own EDR Attack Turns SentinelOne Into PPL-Protected Trojan Horse to Shield Malware
August 14, 2026 A “Bring Your Own EDR” attack abuses trusted SentinelOne components to turn endpoint protection into a powerful malware shield. The research was presented at DEF CON 34 …
AI Agents Don’t Stop When Malware Fails, They Write Another Tool and Keep Attacking
August 14, 2026 AI agents are changing the shape of cyberattacks. Instead of relying on a fixed piece of malware, an agent can test an approach, see it fail, write …
Dysphoria Botnet Turns Compromised Routers and Cameras Into DDoS Bots and C2 Relay Nodes
August 14, 2026 Dysphoria has turned a large number of everyday internet-connected devices into a potential attack network. The botnet is linked to roughly 296,000 compromised devices, placing routers, cameras, …
DCRat Campaign Hides Malware Archive Inside SVG Using HTML Smuggling
August 14, 2026 A new DCRat campaign is using a familiar image format to hide a dangerous malware archive. The operation begins with phishing emails that pose as legal notifications …
Who’s Tracking You? Use This New Service to Find Out
It can be daunting to determine who’s responsible for showing ads on the websites we visit, or who’s harvesting data from the mobile apps we use every day. That information …
Malware Crypter Services Sell Windows Defender, EDR and SmartScreen Bypasses to Cybercriminals
August 14, 2026 Criminal services that hide malware are becoming easier to buy. These services, known as crypters, change a malicious file so that security tools struggle to recognize it. …
HACKERAI Malware Turns GitHub Gists Into a Command-and-Control Channel
August 14, 2026 A newly identified malware framework called HACKERAI C2 Agent is using GitHub Gists as a hidden channel for attacker commands and stolen data. The technique lets operators …
AI Token Jacking Lets Hackers Steal API Keys and Rack Up Nearly $1 Million in Charges
August 14, 2026 AI credentials are drawing criminal attention. A growing form of abuse, called AI token jacking, lets intruders take API keys and consume expensive model services on someone …
Hackers Using New BlackHat AI Tool MessiahGPT to Generate Ransomware and Phishing Kits
August 14, 2026 A newly surfaced criminal AI service called MessiahGPT is being openly marketed on BreachForums as a purpose-built offensive model that writes ransomware, phishing kits, stealers, crypters, and …

