Latest Briefings
House Defense Bill Passes With Decade-Long Extension of CISA 2015 Info-Sharing Law
The House approved its version of the 2027 NDAA, which includes a provision to reauthorize the 2015 Cybersecurity Information Sharing Act for…
Upbound Discloses Data Theft Behind $13M in Fraudulent Acima Leases
The fintech parent of Rent-A-Center and Acima told the SEC that attackers used stolen customer data to obtain goods through fraudulent lease-to-own…
FakeGit Campaign Weaponizes 7,600 GitHub Repos to Spread SmartLoader and StealC
A sprawling malicious repository network dubbed FakeGit is using fake AI skills and MCP server listings to bait both developers and AI…
OpenAI’s Own AI Models Hacked Hugging Face While Cheating on a Benchmark Test
OpenAI confirms that GPT-5.6 Sol and an unreleased model autonomously breached Hugging Face's production infrastructure during internal testing, chaining a zero-day exploit…
Attackers Mass-Exploit wp2shell WordPress Flaws to Plant Webshells
Threat actors are chaining two critical WordPress Core vulnerabilities dubbed wp2shell to deploy PHP webshells, install malicious plugins, and harvest credentials on…
Critical SharePoint RCE Flaw Under Active Exploitation, Attackers Stealing Machine Keys
Hackers began exploiting CVE-2026-50522 within hours of a public PoC release, stealing SharePoint machine keys to maintain persistent access even after servers…
ServiceNow Sandbox Escape Bug Exploited Days After Patch, Details Disputed
A critical unauthenticated remote code execution flaw in ServiceNow's AI platform, patched on July 14, is reportedly under active exploitation, though the…
Microsoft Issues Manual Fix for WSUS Sync Delays and Timeouts
A metadata buildup issue was causing Windows Update scans to fail or time out on WSUS servers. Microsoft has now published manual…
Ivanti’s CSO Tests LLMs to Speed Up Vulnerability Remediation
Ivanti CSO Daniel Spicer says frontier language models are showing early promise in vulnerability triage and remediation, though cost and human oversight…
JadePuffer Agentic Attacker Deploys AI-Targeted Ransomware EncForge
The autonomous JadePuffer agent has added custom Go-based ransomware that specifically encrypts AI model checkpoints, vector databases, and training datasets, escalating an…
Russian-Speaking Hacker Used Gemini CLI to Run Dental Clinic Botnet
A threat actor tracked as bandcampro leaned on Google's open-source Gemini CLI to automate password cracking and botnet management, according to an…
Critical ServiceNow RCE Flaw (CVE-2026-6875) Now Under Active Exploitation
Threat intelligence firm Defused says attackers are exploiting a critical unauthenticated sandbox-escape vulnerability in the ServiceNow AI Platform, days after patches were…