Gemini 3.5 Flash Cyber With Automated Faster Vulnerability Detection and Patch Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 21, 2026 Google has launched Gemini 3.5 Flash Cyber, a specialized cybersecurity model fine-tuned to find, validate, and patch software vulnerabilities faster and more efficiently than mainline Gemini Flash models. The release marks a significant expansion of Google’s automated …

This $2,000-a-Month Crypter Can Kill EDR and Make Malware Disappear From Disk

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 21, 2026 A criminal service called Cruciferra is giving malware operators a way to slip past Windows defenses. Sold as a subscription crypter for as much as $2,000 a month, it wraps malicious programs so security tools struggle to …

Hackers Hijack 20+ Government Websites to Deliver Malware Through Trusted Links

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An active malware campaign, dubbed PhantomEnigma, that abuses compromised Brazilian government infrastructure to distribute malicious payloads while evading detection. The operation has hijacked at least 20 official “.gov.br” municipal and police portals, using them as trusted delivery points for malware …

Trump’s AI Safety Chief Quits Just Three Months After Taking Charge

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 21, 2026 Chris Fall has resigned as the director of the Center for AI Standards and Innovation (CAISI), leaving the Trump administration’s AI safety organization without a permanent leader just three months after his appointment. CNBC confirmed the departure …

Hackers Abuse GitHub Actions to Backdoor AsyncAPI npm Packages With Miasma RAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 21, 2026 A supply chain attack has pushed Miasma malware into trusted AsyncAPI npm packages, putting developer systems and automated build environments at risk. Attackers used a compromised release process to publish malicious code through the project’s legitimate npm …

APT42 Uses AI-Assisted Phishing and TAMECAT Malware to Target Government and Defense Officials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 21, 2026 APT42, an Iran-linked cyber espionage group, has expanded its phishing operations with AI-assisted research, convincing personas, and a more resilient version of its TAMECAT malware. The campaign has targeted senior government and defense officials, policy experts, and, …

Critical SharePoint Remote Code Execution Vulnerability Actively Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 21, 2026 A newly disclosed vulnerability, tracked as CVE-2026-50522, is rattling enterprise IT teams as it allows unauthenticated attackers to remotely execute code on on-premises Microsoft SharePoint servers. The flaw carries a critical CVSS score of 9.8 and stems …

Top 10 Malware Used by Hackers Last Week to Launch Cyberattacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Top 10 Malware’s used by Hackers Last Week to Launch Cyberattacks Cybercriminals continued to lean on a familiar arsenal of malware last week, with information stealers and remote access trojans (RATs) dominating the threat landscape as the primary tools for …

Microsoft to Discontinue Podcasts Option on Copilot and to Delete Contents

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 21, 2026 Microsoft will retire the Podcasts feature in its consumer Copilot app on August 18, 2026, permanently removing access to both the creation tool and all previously generated podcast content. This change affects both free and paid Copilot …

AgentBaiting Campaign Uses 800 Fake AI Skills and MCP Servers to Deliver SmartLoader Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 21, 2026 Malware operators are increasingly using tools built to extend artificial intelligence as a delivery route. A newly documented campaign called AgentBaiting uses fraudulent AI Skills and Model Context Protocol, or MCP, servers to distribute SmartLoader malware through …