My daughter sent me a lovely photo of Jasper. #CatsOfMastodon
My daughter sent me a lovely photo of Jasper. #CatsOfMastodon
Hackers stole the customers’ shipping information, including names, addresses, email addresses, and phone numbers.
You're not alone if you just received an "Apple Threat Notification" saying it detected a "mercenary spyware attack targeted at your iPhone." [...]
Attackers could extract data, even working from inside a guest VM
Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code.
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials …
Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastructure to sup…
Critical SQL Injection in Metabase via Password Reset: CVE-2026-72898
Meet GPT-5.6-Cyber, OpenAI’s cybersecurity-specific model available through Daybreak Red for authorized vulnerability research, exploit validation, and security testing.
View CSAF Summary Parasolid is affected by an out of bounds read vulnerability that could be triggered when the application reads files in X_T format.
Wiz Research is actively investigating an ongoing software supply chain attack affecting multiple keyv/cacheable npm packages.
Identity, AI, software supply chains, and interconnected cloud ecosystems displace traditional infrastructure as top security concerns SEATTLE – Aug.
TLDR: The attacks most likely to go undetected are the ones that never touch disk.
We already know AI can find vulnerabilities. James Kettle, PortSwigger's Director of Research, wanted to answer a harder question: can an autonomous system invent genu…
The Origin Energy breach down here in Aus is all over the news this week, and as with many breaches, it's multi-faceted.
AI is accelerating software development and giving attackers machine-speed capabilities.
Open-source XDR/SIEM for threat detection and compliance.
Relevance: Detection & response / compliance
Template-based vulnerability scanner for massive-scale network scanning.
Relevance: Offensive security & recon
Passive subdomain enumeration from dozens of sources.
Relevance: Recon & attack-surface mapping
Comprehensive scanner for containers, IaC, and dependencies.
Relevance: Cloud & container defenders
Interactive TLS-capable intercepting proxy for traffic analysis.
Relevance: AppSec & traffic inspection
Swiss-army toolkit for network attacks, MITM and recon.
Relevance: Network penetration testing
Graph-based Active Directory relationship explorer for attack paths.
Relevance: Red teams & AD assessment
You're back in the room, trapped with us - and a Citrix NetScaler Pre-Auth RCE (CVE-2026-8452)Enjoy...https://labs.watchtowr.com/youre-back-in-the-room-citrix-netscaler-pre-auth-rce-cve-2026-8452/
Wrzuciłem małą aktualizację mojego środowiska na GrapheneOS!Zgodnie z filozofią zero trust i chęcią redukcji attack surface, wprowadziłem kilka zmian w moim codziennym zestawie aplikacji. Pożegnałem PipePipe na rzecz duetu NewPipe oraz Auxio, a rolę głównego notatnika przejął Quillpad. Mniej zbędnego kodu, więcej kontroli i świadome budowanie własnego workflow.Zapraszam do lektury zaktualizowanego wpisu:https://eteryu.space/moj-zero-trust-setup-w-2026-roku-google-pixel-8-grapheneos/#GrapheneOS #ZeroTrust #OpSec #Prywatnosc #FOSS #DeGoogle #Cyberbezpieczenstwo
RE: https://infosec.exchange/@ajn142/117091744294046919If one of you degenerates does this, all I ask is you blame me for your bad decisions.
Your screen cuts to static, then to a man wearing a sharp, expensive blazer over a neon-green spandex shirt. He is rollerblading in slow circles around a mahogany conference table while talking directly into what you can only assume must be a cheap phone on a selfie stick.Man: For years, we yelled from the rooftops: HACK THE PLANET! It was a metaphor, man! It was about freedom! But then, some skid actually went and did it to your planet.Man: shakes his head, looking disappointedMan: I'm Emmanuel Goldstein, Esq., and if your celestial body has been compromised by a rogue Gibson-class AI, you need representation that knows how to surf the data-stream and navigate a class-action lawsuit.Cereal Killer: Has your planet experienced:Cereal Killer: Atmospheric scrubbers disabled by ransomware?Cereal Killer: Your planetary core being used to mine cryptocoins?Cereal Killer: Garbage files trashing your satellites until your orbits are fragmented so badly that Kessler is spinning in his grave?Cereal Killer: That is universally bogus! Don't let the Plague of modern megacorporations tell you it's a "user error".Cereal Killer: Spandex is a privilege, not a right... but financial compensation for an encrypted ozone layer? That is your right.Cereal Killer: Call Goldstein, Cook, and Phreak Legal Services today. Because if they mess with the best, they're gonna pay like the rest!Cereal Killer: fumbles with selfie stick, advert cuts abruptly
OpenAI Releases GPT-5.6-Cyber Offensive AI Model🔗 https://cybersecurefox.com/en/openai-gpt-5-6-cyber-offensive-security-model#openai #gpt-5-6-cyber #offensive #security #zero-day #vulnerabilities #exploit #development