Apple has launched iOS 26.7.1 and iPadOS 26.7.1 to fix a serious zero-day flaw that it believes might have been used in a very advanced attack on specific people. The security flaw, labeled as CVE-2026-86950, impacts the CoreGraphics framework. This is an important Apple part that helps show graphics, images, …
Read More »JadePuffer Agentic AI targets and destroys Azure’s cloud resources
The JadePuffer ransomware group is attacking Azure users with agent-based attacks that gather information, steal passwords, and damage key components. The malware appeared in July. Researchers at Sysdig, a cloud security company, noted that it uses AI tools to automate the whole attack process. This includes searching for information, stealing credentials, …
Read More »GhostCode Phishing Kit Evades Microsoft 365 MFA to Hijack Accounts in 78 Seconds
GhostCode is a new phishing kit that changes a regular Microsoft 365 sign-in into an account theft. It doesn’t need to hack a password. Instead, it tricks people into letting criminals into their work accounts. The campaign started with normal messages sent through business contact forms. Attackers pretended to be …
Read More »Hackers deploy Casbaneiro Trojan that activates on bank websites
Casbaneiro is going after online banking users by sending fake messages that seem like urgent bills or legal papers. The campaign uses custom PDF tricks to lead people to a harmful download, risking email information, bank activity, and system details. The Windows-based operation stays quiet until it really needs to …
Read More »Hackers exploit PaperCut flaws using hundreds of AI agents, compromising 440 servers globally
A Russian-speaking hacker has used artificial intelligence like never before. They sent out hundreds of AI agents to find and attack major weaknesses in PaperCut NG/MF print management software, affecting at least 440 servers in 395 organizations across 48 countries. Security experts at GreyNoise found the campaign using their Global …
Read More »727,000 data exposes: French hospital fined €500,000
France’s data protection authority (CNIL) has fined Hôpital privé de la Loire €500,000 ($580,000) for not properly protecting the data of patients and their families. The French agency says that security problems caused a data leak in the summer of 2025. This exposed sensitive information about 524,867 patients and 202,246 other …
Read More »
Crack 85 Accounts and Steal 2,500+ Records
8-Agent AI Framework Used to Compromise Gov’t Entities in Asia
A cyberattack using open-source AI tools almost ran on its own. It affected government systems in Asia, compromised into 85 employee accounts, and took over 2,500 personal records, as per a study from Dream. The campaign shows how AI agents can work together to carry out big chunks of a …
Read More »After BDJobs, Directorate of Secondary and Higher Education 390k data surfaced online
A group of hackers named “Madarax” claims they have stolen and are offering to sell the personal information of about six million job seekers in Bangladesh. They claim to have taken this data from Bdjobs, the top online job website in the country. The claim appeared on the dark web …
Read More »US Bank investigates LockBit’s Data Breach Claims
US Bank is looking into LockBit’s claims about a breach and stolen data. The ransomware group says they will share the supposed stolen files on September 3 if a secret ransom is not paid. Lee Henderson, US Bank vice president of public affairs, confirmed that the company is aware of the …
Read More »T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network
T-Mobile’s cybersecurity team reportedly physically cut a network cable connecting compromised infrastructure to the outside world. According to Bloomberg, the move followed months of investigation into activity linked to Salt Typhoon, the China-associated espionage group accused of infiltrating telecommunications and internet providers worldwide. The event shows how serious the campaign is …
Read More »
InfoSecBulletin Cybersecurity for mankind