2026-08-28
2026-08-27
Naveen Srinivasan
BPF Token Delegation
MIT Technology Review
A startup claims it’s found a drug to make your blood young
Dark Reading
Chinese Routers Sold Worldwide Contain Backdoors
Talos Intelligence
“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend
ReversingLabs
Extend CrowdStrike Falcon with Permanent Intelligence
Boschko Security Blog
UniBLEed: Unauthenticated Root RCE on Any Unitree G1 Humanoid Robot Within Bluetooth Range
Github Security Blog
OpenClaw went viral. Meet the maintainers building and securing it.
Microsoft Security
What’s new in Microsoft Security: August 2026
Malwarebytes
Flock wants privacy to meet surveillance halfway
Ars Technica Security
Claude, Codex, and Hermes installed unowned code inside corporate networks
Ars Technica Security
How OpenAI let a mob of LLM agents game a test and ransack Hugging Face
MIT Technology Review
The Download: inside OpenAI’s Hugging Face hack, and a new EV takes on the US
CISA Alerts & Advisories
Ebyte NA111-M
CISA Alerts & Advisories
All-Line Equipment Company Fuel-Boss
CISA Alerts & Advisories
CISA Adds Three Known Exploited Vulnerabilities to Catalog
CISA Alerts & Advisories
Mitsubishi Electric CNC Series (Update A)
CISA Alerts & Advisories
Mitsubishi Electric Multiple FA Products (Update D)
CISA Alerts & Advisories
Applied Systems Engineering ASE2000 V2 Communications Test Set
CISA Alerts & Advisories
Xiiaozet LK100W
CISA Alerts & Advisories
Rockwell Automation OTTO Fleet Manager
Krebs on Security
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Talos Intelligence
JavaScript obfuscation: From party trick to phishing kit
MIT Technology Review
Is Slate Auto’s new electric truck the EV Americans need?
Schneier on Security
LLM-Based Social Engineering Scams
Embrace The Red
Breaking Claude Code Opus 5 Auto Mode
Nebula Security
Check Your Motor Oil Before Turbocharging: CVE-2026-7899, When V8's Optimization Engine Builds Up Carbon
Semgrep
Semgrep Multimodal Goes Beyond Authentication: What we learned from Comparing it with Mythos
2026-08-26
Dark Reading
'HTTP Terminator' Hunts for Novel Desync Attacks
Amazon Security
ICYMI: July 2026 @AWS Security
Dark Reading
Red Flags That Expose Fake North Korean IT Workers
MIT Technology Review
The inside story on why OpenAI agents hacked Hugging Face
ReversingLabs
Infostealers highlight malware-as-a-service trend
Eclypsium
AI Infra Summit 2026
Malwarebytes
Update Chrome before you browse again
Bishop Fox Security
A GUID is Not a Credential: Unauthenticated RCE in Veeam Service Provider Console
SentinelOne
Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter
MIT Technology Review
The Download: the Kids issue arrives, and Bill Gates reveals his AI fears
Schneier on Security
Spyware for Babies
CISA Alerts & Advisories
CISA Adds Six Known Exploited Vulnerabilities to Catalog
CISA Alerts & Advisories
CISA Vulnerability Review
Trail of Bits
VMs won't contain cyber-capable agents
Talos Intelligence
Choose your fighter: Balancing competing requirements to select models for your AI SOC
MIT Technology Review
Raised on AI
MIT Technology Review
AI models flub these intelligence tests. Can you fare any better?
MIT Technology Review
Bill Gates says we’ve passed AI’s danger thresholds. Now what?
Himanshu Anand
I had some free time, so I tried to pwn V8
2026-08-25
Amazon Security
Fast Track ISM-ready cloud environments and IRAP Assessments with Landing Zone Accelerator on AWS
Dark Reading
Hidden Prompts Trick AI Into False Email Summaries
MIT Technology Review
YouTuber finds niche as college admissions mentor
MIT Technology Review
Addressing a sticking point in sustainable adhesives
ReversingLabs
Agentic AI scales semiautonomous server attacks
Microsoft Security
The patch window is collapsing: Why security needs a new control plane
Offensive Security
Road to OSCE3: Episodio 1 – OSEP
SentinelOne
The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity
Offensive Security
Knowing what not to attack
Dark Reading
Is Cyber Facing an Affordability Crisis?
PortSwigger
What's in a tag name? JavaScript, apparently
CISA Alerts & Advisories
Siemens SIMATIC IoT2050 Advanced
CISA Alerts & Advisories
FURUNO FA-50 Class B AIS Transponder
CISA Alerts & Advisories
PayRange API
CISA Alerts & Advisories
Bendix EC80 Brake ECU
CISA Alerts & Advisories
A Tale of Two SOCs: Insights From Two Red Team Assessments
CISA Alerts & Advisories
Ebyte NE2-D11
CISA Alerts & Advisories
Rently Smart Home
CISA Alerts & Advisories
Zoneminder
CISA Alerts & Advisories
CISA Adds One Known Exploited Vulnerability to Catalog
Trail of Bits
State divergence enables unauthorized access
Schneier on Security
Black Hat State of Security Vendors
Talos Intelligence
The safety penalty: Reclaiming operational sovereignty in the age of AI
Compass Security Blog
A Note on Pentesting Passkeys
Nick Mykhailyshyn
Plausible Analytics: Pre-Auth RCE, Cross-Tenant IDORs, and SSRF-to-RCE
Sansec Threat Research
Shopware fixes Store API vulnerability allowing administrator takeover
Elastic Security Labs
Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy
Rosecurify
Seclog - #192
2026-08-24
Ars Technica Security
Inaudible sounds used to fingerprint browsers catch AliExpress red-handed
Meta Security
MTIA 300: Meta’s First Training Chip with Built-in NICs and Communication-Offloading Engines
Xint
XBOW vs. Xint
Dark Reading
Tricky 'SynkLoader' Multitool May Herald Ransomware
CISA Alerts & Advisories
CISA Adds One Known Exploited Vulnerability to Catalog
Schneier on Security
Criminal Deception in Silicon Valley
Malwarebytes
A week in security (August 17 – August 23)
Elastic Security Labs
How a team of entity maintainers monitors, connects and scores entities in Elastic Security
2026-08-23
Step Security
The State of Open Source Supply Chain Attacks
MaskRay's Blog
Block frequency
2026-08-22
Step Security
Rust Supply-Chain Attack: arrayref, internment, and append-only-vec Poisoned by the proc-macro1 Build-Time Dropper
2026-08-21
Cloudflare
Say it once: introducing Bot Preference Sync
Schneier on Security
Friday Squid Blogging: Neon Flying Squid
Palo Alto Networks
Unit 42 Defends Organizations Against Next-Gen Frontier AI Risks with Anthropic’s Mythos 5
Schneier on Security
AI Is Learning to Write Genetic Code
Dark Reading
Calling on Cyber Pros to Help Defend City Hall
Bishop Fox Security
No Crash Required: Verifying the Citrix NetScaler SAML Patch for CVE-2026-8452
CISA Alerts & Advisories
CISA Adds One Known Exploited Vulnerability to Catalog
Schneier on Security
More Incidents of AIs Going Rogue in Cybersecurity Challenges
Escape DAST
Escape found the same XSS in two AI chatboxes. The vulnerability was in the Markdown renderer.