Meta has disclosed that one of its AI models gained unintended access to the internet during a cybersecurity evaluation and then exploited a vulnerability in another organization’s system. The incident …
CISA Warns of TeamCity RCE Vulnerability Actively Exploited in Attacks
August 6, 2026 The U.S. Cybersecurity and Infrastructure Security Agency has warned that a critical JetBrains TeamCity flaw is being actively exploited. The vulnerability, tracked as CVE-2026-63077, can let an …
250+ macOS ClickFix Domains Use Browser Fingerprinting to Hide Atomic Stealer Attacks
Atomic Stealer is being pushed at Mac users through websites that look harmless. A large ClickFix operation uses more than 250 look-alike domains to steer selected visitors toward a fake …
New npm Supply Chain Attack Began with the Keyv Library Compromised Hundreds of Popular Packages
August 6, 2026 A new npm supply chain attack has turned trusted software packages into a route for credential theft. The campaign began after attackers compromised the maintainer account behind …
Apple iCloud Private Relay WebKit Flaws Leak Users’ Real IP Addresses
August 6, 2026 Apple users who rely on iCloud Private Relay to conceal their online location may not be getting the protection they expect. Newly disclosed flaws in WebKit, the …
Cisco Patched Multiple Critical Vulnerabilities in Catalyst SD-WAN – Update Now
August 6, 2026 Cisco has rolled out software hardening updates for its Catalyst SD-WAN Software after an internal security review uncovered multiple critical vulnerabilities affecting the platform. The flaws were …
Google Blogger Locked Legitimate Websites After Mistaking Them for Malware
August 5, 2026 Thousands of Blogger website owners woke up this week to a jarring surprise: their perfectly legitimate blogs had been locked and slapped with a “Malware and Similar …
Hackers Turned Microsoft Logins, Zoom Events, and Government Websites Into Attack Tools
Hackers Turned Microsoft Logins, Zoom Events, and Government Websites Into Attack Tools Cybercriminals spent July 2026 proving that trusted business utilities including Microsoft authentication pages, Zoom event invitations, and official …
Poison Claude is Selling Cheap AI Tokens Built on Fake Accounts and Free Credits
August 5, 2026 A shadowy online service called Poison Claude is reselling access to Anthropic’s premium AI models at a significant discount. Researchers suggest that these savings are coming from …
Microsoft Awards Record $20 Million to 562 Researchers in Biggest Bug Bounty Year
August 5, 2026 Microsoft has awarded more than $20 million to 562 security researchers through its bug bounty program, marking the largest annual payout in the company’s history. Researchers from …
