RansomwareMedusa ransomware group attacked more than 500 victims since 2021Steve ZurierAugust 19, 2026Medusa ransomware hit 500-plus victims, exploiting critical flaws at increasing speed.
Malware‘TWINLOOT’ Python implant abuses Microsoft services for stealthy C2Laura FrenchAugust 19, 2026The implant ensures defenders only see legit Microsoft services rather than unknown external domains, making it more challenging to block attacks.
RansomwareCISA confirms 2025 Windows Task Host flaw exploited by ransomware groupsSteve ZurierAugust 18, 2026Experts say teams should make this a priority, noting that the patch has been available since last November.
AI/MLWiz agent finds Snowflake repo flaw in code co-authored by GitHub Copilot AutofixLaura FrenchAugust 18, 2026The flaw allowed the agent to extract a Jira token by opening a crafted issue.
Vulnerability ManagementCritical SAP Commerce Cloud flaw exploited days after patchSteve ZurierAugust 17, 2026Attackers moved quickly to exploit a critical SAP Commerce Cloud bug following its patch.
RansomwareMacOS AmnesiaStealer malware spread through ClickFix, grants live browser controlLaura FrenchAugust 14, 2026A fake GitHub download page hosts the malicious ClickFix command.
Critical Infrastructure SecurityWhite House looks to engage private sector in offensive hacking opsSteve ZurierAugust 14, 2026Trump expands private-sector role in U.S. offensive cyber operations, raising governance concerns.
Threat ManagementDPRK’s Lazarus Group exploits Windows zero-day in backdoor campaignLaura FrenchAugust 14, 2026Initial access is gained through fake job offers and PDF viewer downloads.
AI/MLTaiwan confirms AI-assisted cyberattack on government systemsSteve ZurierAugust 13, 2026AI-assisted cyberattack on Taiwan signals a shift toward faster, more autonomous nation-state threats.
RansomwareAkira ransomware attacker uses Safe Mode reboot to evade EDRLaura FrenchAugust 12, 2026The ransomware payload ultimately failed to deploy due to insufficient virtual memory.