2026-07-28
Step Security
Compromised npm Packages: @joyfill/components and @joyfill/layouts Ship an Obfuscated Remote Access Trojan
Github Security Blog
Disrupting supply chain attacks on npm and GitHub Actions
Step Security
2026 Mid-Year Update: On Pace for Our Biggest Year Yet
Cloudflare
Natural disasters and government interference: examining Q2 2026’s major Internet disruption events
Malwarebytes
Shared Claude chats were searchable on Google
MIT Technology Review
The Download: OpenAI’s predictable hack, and an AI stock sell-off
Eye Security Research
AI-powered Phishing-as-a-Service: Inside Two BEC Kits
CISA Alerts & Advisories
MikroTik RouterOS and Cloud Hosted Router
CISA Alerts & Advisories
Siemens Mendix Runtime
CISA Alerts & Advisories
igloohome Smart Lock Mobile Application
CISA Alerts & Advisories
Siemens Desigo CC
CISA Alerts & Advisories
Siemens SIMATIC S7-PLCSIM Advanced
CISA Alerts & Advisories
CI Fortify – Advice for isolating vital systems
CISA Alerts & Advisories
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP
CISA Alerts & Advisories
ABB KNX Update Tool
Schneier on Security
Axon Is Another License Plate Surveillance Company
Trail of Bits
How we use /goal to find bugs in Patch the Planet
Talos Intelligence
IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains
MIT Technology Review
Samsung’s chip workers are jumping ship to rival SK Hynix
TrustedSec
AI Directives and AI Strategy Development
ISC SANS
ISC Stormcast For Tuesday, July 28th, 2026 https://isc.sans.edu/podcastdetail/10026, (Tue, Jul 28th)
Rosecurify
Seclog - #188
2026-07-27
Ars Technica Security
Microsoft unveils AI security tools it says outperform competing platforms
Dark Reading
Agentic Browsers Rewind Web Security by 20 years
Amazon Security
AWS Shield Advanced is embracing the AWS WAF Anti-DDoS managed rule group: What changes and how to prepare
Malwarebytes
Aftercall ads are driving Android users crazy
Dark Reading
Why Resetting Passwords No Longer Stops Attackers
MIT Technology Review
OpenAI called the Hugging Face attack unprecedented. But we’ve been here before.
Artem Golubin
Writing arenas in Rust from scratch
Microsoft Security
Rethinking security for the age of AI
Microsoft Security
Enhancing AI security through global AI red teaming
Amazon Security
Announcing the Cloud Security Alliance on AWS Compliance Guide
Ars Technica Security
Activist charged with felony after giving border agent "duress code" that wiped his phone
Exodus Blog
From Virtual Share to Physical Shell: Leveraging Windows’ Inconsistent Access Control for LPE
MIT Technology Review
How lasers could help provide fuel for nuclear reactors
Cloudflare
We’re open-sourcing our privacy proxy CLI
MIT Technology Review
The Download: lasers for nuclear fuel, and organ preservation advances
CISA Alerts & Advisories
CISA Adds Two Known Exploited Vulnerabilities to Catalog
MIT Technology Review
The path to artificial superintelligence
MIT Technology Review
Closing the data loop in AI-driven drug discovery
MIT Technology Review
Building the enterprise environment for agentic AI
Schneier on Security
Cognyte Sells a Mobile Cell Surveillance Van
Malwarebytes
A week in security (July 20 – July 26)
ISC SANS
ISC Stormcast For Monday, July 27th, 2026 https://isc.sans.edu/podcastdetail/10024, (Mon, Jul 27th)
Elastic Security Labs
Inside Elastic InfoSec's agentic SOC: How we cut AI agent LLM calls by 60%
Star Labs
When AI Makes 0-Days Feel Like N-Days
2026-07-25
Step Security
Compromised PyPI Package: mrmustard 0.7.4 Steals SSH, Cloud, and Kubernetes Credentials
Joshua Rogers
33 Vulnerabilities in cJSON
2026-07-24
Dark Reading
CISOs vs. Boards: Myth or Misunderstanding?
Schneier on Security
Friday Squid Blogging: Illex Squid Catch in the Falklands
MIT Technology Review
The quest to keep organs alive outside the body
Malwarebytes
Don’t get fooled by TikTok resin art scams
Malwarebytes
Google wants to store a selfie video of your face
MIT Technology Review
The Download: an organ transplant breakthrough, and homegrown Chinese chips
Schneier on Security
Why AI Needs a “Genie Coefficient”
Escape DAST
AI pentesting, Mission log: July
ISC SANS
ISC Stormcast For Friday, July 24th, 2026 https://isc.sans.edu/podcastdetail/10022, (Fri, Jul 24th)
Elastic Security Labs
Inside Elastic InfoSec's agentic SOC: When to inline your agent's skills for a 5× cost reduction
Teleport Blog
VPN Alternative for Internal Web Apps | Teleport
2026-07-23
Cloudflare
Introducing Cache Response Rules
Talos Intelligence
Don’t swing at everything
Amazon Security
Enterprise security at machine speed: AWS Black Hat 2026 preview
Github Security Blog
The case for a cooldown: Why Dependabot now waits before issuing version updates
Microsoft Security
Email threat landscape: Q2 2026 trends and insights
CISA Alerts & Advisories
MZ Automation lib60870
CISA Alerts & Advisories
Johnson Controls C-CURE 9000 and Victor application server
CISA Alerts & Advisories
Panduit IntraVUE
CISA Alerts & Advisories
Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite
CISA Alerts & Advisories
Rockwell Automation ThinManager
CISA Alerts & Advisories
MZ Automation libIEC61850
CISA Alerts & Advisories
Johnson Controls XAAP Android
CISA Alerts & Advisories
Weintek cMT3092X
Rapid7
CVE-2026-16232: Critical Check Point SmartConsole Authentication Bypass Exploited in the Wild
Schneier on Security
End-to-End Encryption and “Going Dark”
Offensive Security
The EU AI Act Deadline Is Approaching. Is Your Workforce Ready?
Talos Intelligence
Preview: Cisco Talos at Black Hat USA 2026
Google Safety & Security
Introducing selfie for sign-in: a new, easy way to access your Google Account
Hunt and Hackett
Attackers do not need to break in, they simply log in
TrustedSec
CCPA Update: Who’s In Scope (Part 1)
Step Security
Find Unused, Stale, and OIDC-Replaceable GitHub Actions Secrets Across Your GitHub Organization
Elastic Security Labs
How Elasticsearch ES|QL COMPLETION turns noisy curl and wget rules into high-fidelity cloud security alerts
Elastic Security Labs
wp2shell hits WordPress: detecting pre-auth RCE from plugin drop to command execution
Datadog HQ
Provision Datadog on Stripe Projects
2026-07-22
Zero Salarium
PE OopsSec: Mind your PE, guard your OPSEC
Mend
199 RubyGems, two techniques, zero working payloads: Inside a cryptomining campaign that never ran
Dark Reading
Attackers Are Learning to Live Off the AI Toolchain
Ars Technica Security
OpenAI says its AI agent broke out of testing sandbox to hack Hugging Face
Github Security Blog
Next chapter: Restructuring GitHub’s bug bounty program
Artem Golubin
Domain registration information should be transparent
Aikido
SQL injection isn't dead
NVISO Labs
Intercepting Android WebView traffic under new certificate validity requirement by Chromium
Black Hills Info Sec
The Life of a SOC Analyst: Responsibilities, Challenges, and Strategies for Success
Searchlight Cyber
Preemptive Threat Exposure Management: Frequently Asked Questions
Eclypsium
Announcing InfraTrust, the source of intelligence on security risks across hardware infrastructure
Searchlight Cyber
July 21st – This Week’s Top Cybersecurity and Dark Web Stories
CISA Alerts & Advisories
CISA Adds Two Known Exploited Vulnerabilities to Catalog
Schneier on Security
First-Person Identity Theft Story
Krebs on Security
LG to Ban Residential Proxies from Smart TV Apps