Security news

Latest security news

Thu, 27 Aug 2026

  1. Chinese Hacker Group QTFY Uses Custom-Built Platforms to Target US Infrastructure, FBI Warns

    The FBI advisory set out QTFY’s distributed hacking ecosystem, allowing it to exploit vulnerabilities at scale and obfuscate its activities

    Infosecurity Magazine
  2. Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

    Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and 23, were arrested in connection with a "sophisticated cybercrime syndicate that allegedly created malicious open-source software to rob thousands of global businesses." The AFP did not name the defendants, but KrebsOnSecurity learned the 21-year-old suspect's real identity in June, and has been communicating with him ever since. This story includes interviews with TeamPCP's self-described spokesperson, and examines clues left behind by the TeamPCP leader that likely led to his undoing.

    Krebs on Security
  3. CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix Products

    CISA added six new bugs to its Known Exploited Vulnerabilities catalog on August 26, showing signs of active exploitation in the wild

    Infosecurity MagazineMicrosoft, Citrix, Linux
  4. US Navy tells sailors and their families: scrub your social media, enemies are watching

    The US Navy has told its entire workforce of 340,000 active-duty personnel, 58,000 reservists, and 210,000 civilian employees to clean up their social media profiles, because adversaries might be using them to determine who they are, where they live, and when they may not be at home. Read more in my article on the Hot for Security blog.

    Graham Cluley

Wed, 26 Aug 2026

  1. 'HTTP Terminator' Hunts for Novel Desync Attacks

    James Kettle of PortSwigger talks with the Dark Reading News Desk about his AI-powered open source tool, which found new HTTP request-smuggling techniques.

    Dark Reading
  2. Four in Five AI Tools Run with No IT Oversight, New Research Finds

    Reco report reveals growing shadow AI problem and surge in vulnerability disclosures

    Infosecurity Magazine
  3. Exploits and vulnerabilities in Q2 2026

    This report covers statistics on vulnerabilities, exploits, and C2 frameworks in Q2 2026. For the first time ever, we aggregate data on vulnerabilities in open-source AI agents and AI frameworks.

    Securelist
  4. Interpol's Jackal IV Disrupts West African Crime Infrastructure

    The international law enforcement operation focused on disrupting crime-as-a-service networks and infrastructure behind groups like Black Axe.

    Dark Reading

Tue, 25 Aug 2026

  1. Finding Nemo(Claw): Networking Issue Allows for LLM Poisoning in OpenClaw

    Attackers can exploit a security bug in Nvidia's tool to gain unauthenticated access to the local model server through the Ollama API, paving the way for persistent AI agent corruption.

    Dark ReadingNvidia

About this news

1,264
Stories
36
Added in the last 24 hours
16
Critical in the last 7 days
4
Reported by several outlets