‘GhostJacking’ attack turns error logs into indirect prompt injectionsLaura FrenchAugust 11, 2026Attacks targeting Cloudflare, DataDog and Sentry MCP integrations were demonstrated at DEF CON 34.
Wesco investigates cybersecurity incident after data extortion group claims breachSC StaffAugust 11, 2026
Vulnerability ManagementMicrosoft SharePoint Server bug exploited in ransomware attacksSteve ZurierAugust 11, 2026CISA gave no specifics, but one expert said it's potentially the work of China-linked Storm-2603.
Application securityUS cyber officials warn AI is giving attackers an edgeSC StaffAugust 11, 2026FBI and CISA officials warn AI could accelerate cyberattacks as agencies bolster U.S. defenses.
Vulnerability ManagementProgress LoadMaster bug added to CISA list of exploited vulnerabilitiesSteve ZurierAugust 10, 2026CISA warns of active Progress LoadMaster attacks; patch and investigate now.
Black HatTalk to the LLM: How AI exposes ‘pig butchering’ scamsPaul WagenseilAugust 10, 2026A security researcher is using AI to study and expose long-duration scams that abuse online trust.
Black HatBlack Hat: AI isn’t the problem. We arePaul WagenseilAugust 9, 2026The obstacles in trying to secure AI use boil down to one issue: We're thinking about it the wrong way.
RansomwareVishing group UNC6671 now focuses on extorting M&A firmsSteve ZurierAugust 7, 2026Experts urge managed-device logins and audit log monitoring to stop phishing-led cloud data theft.
Black HatBlack Hat 2026: Open-source tool makes red teaming AI agents up to 125x cheaperLaura FrenchAugust 7, 2026NVIDIA researchers shared the “AgentBreaker” tool and how they tuned an open-source model to perform at frontier level.
Application securityPaperclip authorization bug exploited, leads to control plane takeoverSteve ZurierAugust 6, 2026Critical Paperclip flaws let attackers seize AI agent platforms, escalate privileges, and execute code.