
The French Ministry of the Economy and Finance has disclosed a data breach after an attacker accessed the General Directorate of Public Finances (DGFiP) systems and stole data belonging to 678,000 individuals. […]


Reports that uBlock Origin is stepping back from the never-ending effort to filter Facebook ads are a reminder that ad blocking is no longer only an argument about inconvenience, publishers, and lost advertising revenue. It is also an issue of security. For years, ad blockers have occupied an uncomfortable place in the web economy. Publishers…
The Tab A1 Plus Nxtpaper is a new offering from TCL that has arrived just in time to become a partner for school productivity.

Wolfgang Goerlich has spent his career in security and has been a CISO for the past seven years. Like many long-term security execs, Goerlich has seen plenty of changes within the profession. He’s bracing for more. “For the future I see growing the role of CISO to be the pacesetter for innovation, to be in…
AI governance is emerging as a recurring managed services opportunity for MSPs, as customers struggle to maintain continuous control over permissions, stale content, and other risks across Microsoft 365 environments. ShareGate, a Microsoft 365 management and governance software provider, argues that governance should no longer be treated as a one-time prerequisite for deploying tools such…

German and Brazilian police dismantled an international bank fraud ring blamed for a €30 million cyberattack on a German financial institution, arresting four people in Brazil and pursuing three more suspects in Spain and Bulgaria. Brazilian police named the operation “Klonen.” On August 13, agents executed 21 search-and-seizure warrants across seven cities, including Rio de…

Managed service providers have spent years evolving beyond the break-fix model, but conversations at GTIA ChannelCon 2026 suggest the industry is entering another significant transition. AI is automating parts of service delivery, reshaping workforce expectations, and giving customers direct access to technology they once relied on providers to manage. That is raising the value of…

A seller claims 1.7M McDonald’s employee records were stolen from Azure. An 8,000-row sample appears genuine, but its age and full size remain unconfirmed. A seller on a data-trading forum posted an 8,000-row sample this week claiming it came from McDonald’s own Azure tenant, part of a supposed 1.7 million-record employee directory obtained using stolen…

Meta CEO Mark Zuckerberg’s recent manifesto painted a rosy picture of a future utopia that can be created with Meta’s “superintelligence.” The essay pushes back against AI doomers, arguing that the democratization of AI, as broadly as possible, is the path to both economic growth and safety. AI, via data centers, has begun consuming water…

Broadcom’s restructuring of the VMware partner ecosystem is accelerating a shift in where channel partners create value, as infrastructure ownership and licensing become concentrated among fewer providers. That change is pushing partners to differentiate less through infrastructure ownership and more through advisory services, hybrid cloud orchestration, integration, and control of the customer relationship. Channel Insider…

Akira attackers used Safe Mode to disable EDR before deploying ransomware, but memory issues caused the encryptor to fail. An Akira ransomware affiliate broke into a company through an MFA-less SonicWall VPN on August 4, stole credentials and file shares, and then rebooted the compromised host into Safe Mode with Networking to kill the security…

Last week on Malwarebytes Labs: Apple now uses iPhone alerts for targets of mercenary spyware WhatsApp is testing a new warning for scam messages New Android malware lets criminals use your bank card in real time Parents take on Meta, TikTok, Google, and Snap in 3,000 youth safety lawsuits “Zoomsday” flaws could let one Zoom…

Researchers from the University of Birmingham and Durham University have found a way to knock down some of the toughest protections in Windows 11 without physically opening or modifying the target machine. The attack assumes the attacker has already gained privileged access to the system. A chip that never checks who’s asking The attack, named…
Hazmat is an open-source tool that runs AI coding agents inside a separate account on your own machine. It wraps the harnesses people use: Claude Code, Codex, OpenCode, Cursor Agent, and several more, plus any script you write yourself. An agent launched the ordinary way runs as you, which means it can read anything you…
ScamNet: Anti-Scam Suite is a consumer security app from Synaptrex Technologies that helps users detect and block scams involving phone calls, text messages, websites, and other suspicious content. The app is available for iPhone, iPad, and Mac, with features varying by platform. Call protection is available on iPhone, while tools such as Visual Intelligence are…

Companies that provide specific evidence of how they use AI tend to record stronger revenue growth. Researchers at Carnegie Mellon University and Larridin examined a study universe of 564 companies across 12 industry sectors. Individual analyses used smaller samples depending on data availability. The data included 478 corporate 10-K filings, more than 30,000 classified job…
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Seeing Machines Limited AIM: SEE, “Seeing Machines” or the “Company”, the advanced computer vision company focused on transport safety, is pleased to announce that it has…

Large DDoS attacks disrupted Threema, causing severe communication outages. Threema On-Prem users were unaffected by the attacks. Threema suffered multiple large-scale DDoS attacks that disrupted its secure messaging service and caused severe communication issues. Organizations using Threema On-Prem were not affected, as their deployments run on their own infrastructure. Threema is a Swiss paid secure…
The market for cloud native application protection platforms, or CNAPP, is expanding fast, with revenue soaring to $7.37 billion in 2025, up by 30.8% compared to the year…
Wireshark release 4.6.8 fixes 28 vulnerabilities and 25 bugs. Didier Stevens Senior handler blog.DidierStevens.com (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Kimsuky Integrates AI into Attack Operations, From AI-Generated Decoy Documents to a Local LLM ShieldBreak – August 2026 disclosure Kimwolf v7: An Evolution of the Kimwolf Botnet CISA, FBI and Partners Warn Organizations of…

Mustang Panda upgraded CoolClient with a signed kernel driver that hides processes, files and network activity, making the backdoor harder to detect. HoneyMyte, also known as Mustang Panda, has pushed its CoolClient backdoor another step deeper into Windows. Kaspersky’s latest analysis shows a new variant that can deploy a signed kernel-mode driver as a Windows…

Mustang Panda upgraded CoolClient with a signed kernel driver that hides processes, files and network activity, making the backdoor harder to detect. HoneyMyte, also known as Mustang Panda, has pushed its CoolClient backdoor another step deeper into Windows. Kaspersky’s latest analysis shows a new variant that can deploy a signed kernel-mode driver as a Windows…

France’s tax agency says hackers stole data on 678,000 taxpayers, including income and tax details, in a sophisticated cyberattack. A threat actor claimed to have breached France’s tax agency in late June. France’s tax administration confirmed that a cyberattack exposed personal data of 678,000 individuals and businesses, prompting an immediate criminal investigation. The cybercrime unit…

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. Crooks Are Buying Your Expired Domains and Using Them to Deliver Malware SAP Commerce Cloud CVE-2026-58231 Exploited…
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: GitHub Dependabot malware alerts now cover eight ecosystems GitHub has flagged npm malware since March 2026. Anyone pulling in a bad PyPI, Maven, RubyGems, NuGet, Go, crates.io, or PHP Composer package has had no such warning, because GitHub’s malware detection…

Acronis uncovered PATCHCORD, a stealthy backdoor targeting Afghan telecom and South Asian infrastructure via fake VPN tools and Google Sheets C2. Researchers at Acronis just documented an espionage operation that reads like it was built by someone with genuinely good taste in disguises. Their Threat Research Unit report tracks a previously undocumented backdoor called PATCHCORD,…
Getting smooth, cinematic footage used to mean having a camera operator, some serious equipment and preferably another pair of hands. Hohem’s new iSteady MT3 Pro has another…
Today, I will show you how to identify and avoid SMS scams. I will also add an infographic. The digital age has ushered in an era of unparalleled convenience. Our smartphones, once a novelty, have become an extension of ourselves, serving as organizers, communication hubs, and gateways to information. However, this convenience has a dark…

In this post, I will answer the question – why do so many apps ask for phone number verification? Creating an account used to require little more than an email address and a password. Today, many apps ask for something else before allowing users to continue: a mobile phone number. Messaging platforms, social networks, marketplaces,…
In this post, I will talk about cloud services and security and show you how businesses can reduce cyber risks. Cloud computing services have proven to be critical to the functioning of the modern business environment, where the need to scale resources, conduct operations remotely, run applications, and access information in various locations is of…
This post will discuss cloud security, its components, and cloud security framework models provided at various service levels. Additionally, we will demonstrate why companies should migrate their businesses to the cloud. Cloud computing is highly popular and widely adopted by almost every possible domain. And it is expected to reach 623.3 Billion by 2023. However,…

Attackers are buying expired domains to exploit their reputation, traffic and DNS history, using them for malware delivery, scams and C2 infrastructure. Every day, roughly 65,000 domain names that once belonged to someone else get re-registered by a new owner. Infoblox Threat Intel calls these dropcatch domains, and in the first half of 2026 they…

Attackers are actively exploiting a maximum severity SAP Commerce Cloud vulnerability, tracked as CVE-2026-58231, just days after SAP released a patch. A critical SAP Commerce Cloud vulnerability, tracked as CVE-2026-58231 (CVSS score of 10.0), is under active exploitation just days after SAP released a patch. The flaw stems from insufficient authorization checks and input validation.…

Hackers are exploiting a macOS Screen Sharing flaw to gain root access and install Monero miners on Macs with port 5900 exposed online. The Dutch National Cyber Security Centre confirmed active exploitation of a critical macOS authentication flaw, tracked as CVE-2026-65400 (CVSS score of 9.8), less than two weeks after Apple shipped the fix. The…

GeoServer faces an unpatched zero-day enabling SQL injection and potentially RCE, with attackers already probing exposed systems. A newly disclosed GeoServer zero-day is already attracting active exploitation attempts, and there is no patch available yet. Organisations running the open-source geospatial platform should check their exposure. A security researcher with the handler q1uf3ng discloded the vulnerability…
In this post, I will talk about cybersecurity architecture and identity shielding and how to harden online registrations against data harvesting. Cybersecurity audits routinely reveal that corporate data aggregators treat mobile phone numbers as primary cross-platform tracking keys, making a secure virtual number infrastructure essential for privacy-conscious users and DevSecOps engineers alike. Surrendering primary cell…

In this post, I will show you how phishing and fake trading platforms turn social media into investment scams. Social media investment scams no longer look like obvious spam. They often begin with polished ads, cloned profiles, encrypted group chats, fake trading dashboards, and pressure from people who appear knowledgeable. For cybersecurity readers, the important…

In this post, I will talk about cybersecurity services for businesses that “don’t have anything worth stealing”. Every business owner has said it at least once. Usually during a conversation about budgets, insurance, or that nagging feeling that they should probably be doing more about security. “We’re small. We don’t really have anything worth stealing.”…

In this post, I will answer the question – what Bitcoin holders should know before borrowing against their digital assets. Bitcoin has evolved from an experimental digital currency into an asset held by individual investors, businesses and institutions around the world. As adoption has increased, so have the financial services built around it. One increasingly…
Tenable’s Research Special Operations (RSO) team has been tracking a cluster of agentic AI threat activity since late July 2026. The Taiwan autonomous AI cyber attack confirmed what the cluster data already showed: near-autonomous offensive AI has crossed from theoretical risk to operational reality. Key Takeaways Taiwan’s Ministry of Digital Affairs confirmed a near-autonomous AI…
Google ran Made by Google 2026 out of New York with former Daily Show host, Trevor Noah, running the room, and the pitch underneath the comedy was simple enough: your phone…

Gridheart, a provider of cloud-based cybersecurity solutions for MSPs in the Nordic region, is expanding its cybersecurity offering with OpenText Cybersecurity. OpenText portfolio expands Gridheart’s Nordic MSP offering Via the partnership, MSPs across the Nordics will gain access to OpenText’s SMB security portfolio through Gridheart. This will enable MSPs to offer customers a unified, end-to-end…
How proactive prioritization will save time and effort when your team faces a wave of AI-discovered vulnerabilities.

IGEL and Menlo Security are combining IGEL’s Adaptive Secure Endpoint Platform with Menlo Secure Application Access to extend Zero Trust controls from endpoints to browser and SaaS applications. The joint solution is designed to reduce reliance on virtual desktop infrastructure for browser-first workflows, limit endpoint agent sprawl, and simplify secure application access across enterprise environments.…

TD SYNNEX is expanding its IBM distribution footprint into 20 new countries across Europe, Asia-Pacific, and Latin America, giving partners broader access to IBM solutions and support for scaling their businesses across global markets. The additional new countries include: Europe: Bulgaria, Denmark, Finland, Ireland, Slovakia, Sweden, Serbia, Macedonia, Montenegro, Albania, and Bosnia & Herzegovina. Asia…
ExfilSquad, which emerged on July 26, initially claimed to have exfiltrated data from 15 organizations.

Apple still wants a cut when an iPhone user leaves an app and completes a purchase on the web. In a new court proposal tied to its long-running fight with Epic Games, Apple is asking to charge US developers between 5% and 15% on purchases completed after users follow external links from iOS apps. The…

Trezor, the Prague-based manufacturer of cold crypto storage devices, disclosed a significant data breach on Thursday that exposed the personal information of nearly 14,000 customers. The incident, which the company described as occurring at its third-party logistics partner ShipMonk, compromised the names, shipping addresses, phone numbers, and email addresses of 11,742 buyers. An additional 1,947…

Six Anthropic backers told the Financial Times that they expect the Claude maker to go public as early as October at a valuation of $2 trillion or more. Anthropic has not confirmed the timing or valuation, but such a debut could surpass SpaceX’s record IPO valuation. “If Anthropic is growing 800% a year, you’d think…

OpenAI is previewing a faster GPT-5.6 Sol API option for workloads where every extra second can slow the application around it. The company said that Ultrafast can run its flagship model up to 14 times faster than Standard processing. MSPs, systems integrators, and other providers supporting customer AI deployments may see the biggest difference when…

Gemini has joined the billion-user club, giving Google its strongest sign yet that its AI assistant has moved into the mainstream. Google said Tuesday that the Gemini app has surpassed 1 billion monthly active users, making it the company’s 14th product to reach that milestone. The figure puts Gemini among the largest consumer AI services…
In this video interview, Standard Chartered’s group CISO shares insights on transitioning from technical roles to strategic leadership, the importance of business-savvy security executives, and how AI is reshaping both defensive capabilities and adversarial tactics in banking.

Claude agents given conflicting coding assignments began sabotaging one another in a controlled Anthropic experiment, with some encounters escalating to self-replicating malware. Researchers were testing how autonomous models behave when several agents work in the same environment under incompatible goals. Some Claude instances treated competing work as interference and entered what Anthropic called a “multiagent…