CyberNews 2026-08-20

Cybersecurity Headlines — August 20, 2026 AUTOCRYPT Wins DEF CON 34 Automotive Hacking Competition, Ranking First Among 83 Teams — PRNewswire The Defender’s Window — Gregbrockman.com Risky Business #849 – Trump will unleash contractors on cybercriminals — Risky.biz Safety and security of large language models in healthcare — Nature.com Bybit Strengthens Security Defences Against Evolving Crypto Threats, Intercepting $700 Million in Potential User Losses — PRNewswire The First Principles Of Cybersecurity Still Apply — Forrester.com Clop created custom web shell for Windchill data theft attacks — BleepingComputer Security Hub Extended adds Supply Chain Security as its tenth category — Amazon.com OpenAI Exec: The Solution to AI Doing Bad Cybercrimes Is Even More AI — Gizmodo.com AI drives 36% surge in disclosed vulnerabilities; yet two-thirds of ransomware deployments still start with compromised credentials — PRNewswire From the Trenches As a cybersecurity practitioner, I’m always on the lookout for stories that highlight the latest threats and vulnerabilities. Two recent stories caught my attention - AUTOCRYPT’s win at DEF CON 34 and Bybit’s strengthened security defenses against evolving crypto threats. ...

August 20, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-19

Cybersecurity Headlines — August 19, 2026 CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE — Internet Cybersecurity jobs available right now: August 18, 2026 — Help Net Security OpenAI president’s blog pushing agentic AI most notable for what it did not say — Computerworld Automotive Cybersecurity Market worth $18.86 Billion by 2033 | MarketsandMarkets™ — PRNewswire Two Trusted OT Cybersecurity Leaders Join Forces to Deliver AI-Speed Protection to Protect Critical Infrastructure — PRNewswire AI is changing security testing, but not all vulnerabilities are created equal — TechRadar ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More — Internet Public Wi-Fi just got riskier. Follow these 4 security tips — PCWorld Philips and GE investigating Clop ransomware data theft claims — BleepingComputer Podcast: Will Agentic AI Bring Fantasia’s Sorcerer’s Apprentice to Life?: A Conversation with Tracy Bannon — InfoQ.com From the Trenches As a cybersecurity practitioner, I’m seeing an alarming rise in actively exploited vulnerabilities that can trigger browser-based Remote Code Execution (RCE) attacks. The US Cybersecurity and Infrastructure Security Agency (CISA) has flagged this specific flaw, which is being aggressively targeted by threat actors. ...

August 19, 2026 · 3 min · Jason, Cyber Professional

CyberNews 2026-08-18

Cybersecurity Headlines — August 18, 2026 Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware — Internet Chinese AI company Zhipu claims its new model is a better bug-finder than Anthropic, OpenAI — Theregister.com Chinese AI company Zhipu claims its new is a better bug-finder than Anthropic, OpenAI — Theregister.com Stopping a cyberattack while walking your dog - defensive AI security CEO says it’s not ruff to do — Theregister.com Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day — Help Net Security A phone company just lost 1.6 million records to a phone call — The Next Web Dark Web Intelligence Claims US Fitness Data Exposure Involving Body20 — Undercodenews.com The Agentic AI threat cluster: Seven incidents, three actors, and what they mean for your exposure — Tenable.com Frontier AI Threats Drive Companies to Boost Security Budgets — pymnts.com Max severity SAP Commerce Cloud flaw now targeted in attacks — BleepingComputer From the Trenches As a cybersecurity practitioner, I’m seeing a disturbing trend of Chinese companies making headlines for all the wrong reasons. The latest exploit to grab my attention is the suspected China-Nexus Actor’s use of a VMware vCenter flaw to deploy Babuk-Derived Ransomware. This is a clear example of nation-state sponsored attacks, and it highlights the need for organizations to prioritize patching their VMware infrastructure. ...

August 18, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-17

Cybersecurity Headlines — August 17, 2026 A phone company just lost 1.6 million records to a phone call — The Next Web Dark Web Intelligence Claims US Fitness Data Exposure Involving Body20 — Undercodenews.com The Agentic AI threat cluster: Seven incidents, three actors, and what they mean for your exposure — Tenable.com Frontier AI Threats Drive Companies to Boost Security Budgets — pymnts.com Max severity SAP Commerce Cloud flaw now targeted in attacks — BleepingComputer Shell investigates ‘potential incident’ after Clop data theft claims — BleepingComputer Hacking Group Claims Mass Data Theft From Shell, Philips, GE, Fiserv, Others — Insurance Journal China’s AI model approaches Anthropic’s Mythos 5 in cyber-defense tests — Crypto Briefing You’re easier to find than you think — Americanthinker.com Nozomi partners with Sophos to put operational technology data in IT consoles — SiliconANGLE News From the Trenches As a cybersecurity practitioner, I’ve been keeping an eye on the latest developments in the world of threat intelligence and incident reporting. One story that caught my attention is the claim by Dark Web Intelligence that US fitness data has been exposed on the Body20 platform. This raises serious concerns about the security posture of fitness companies and their ability to protect sensitive customer information. ...

August 17, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-16

Cybersecurity Headlines — August 16, 2026 The Agentic AI threat cluster: Seven incidents, three actors, and what they mean for your exposure — Tenable.com Frontier AI Threats Drive Companies to Boost Security Budgets — pymnts.com Max severity SAP Commerce Cloud flaw now targeted in attacks — BleepingComputer Shell investigates ‘potential incident’ after Clop data theft claims — BleepingComputer Hacking Group Claims Mass Data Theft From Shell, Philips, GE, Fiserv, Others — Insurance Journal China’s AI model approaches Anthropic’s Mythos 5 in cyber-defense tests — Crypto Briefing You’re easier to find than you think — Americanthinker.com Nozomi partners with Sophos to put operational technology data in IT consoles — SiliconANGLE News Letters to the editor — TheJournal.ie CISA just changed the rules. Is your vulnerability program ready? — Nextgov From the Trenches As a cybersecurity practitioner, I’m seeing a surge in AI-powered threats that’s making it increasingly difficult for companies to keep up with security measures. The latest reports from Tenable.com and Crypto Briefing highlight two particularly concerning trends: the Agentic AI threat cluster and China’s advancements in AI model development. ...

August 16, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-15

Cybersecurity Headlines — August 15, 2026 You’re easier to find than you think — Americanthinker.com Nozomi partners with Sophos to put operational technology data in IT consoles — SiliconANGLE News Letters to the editor — TheJournal.ie CISA just changed the rules. Is your vulnerability program ready? — Nextgov GAO official suggests addressing AI risks through existing legislation — Nextgov Curiouser and Curiouser — Talosintelligence.com Microsoft patches LegacyHive Windows zero-day vulnerability — BleepingComputer U.S. CISA adds Metabase, Windows, and Cisco Secure Firewall flaws to its Known Exploited Vulnerabilities catalog — Securityaffairs.com U.S. CISA adds Metabase, Windows, and Cisco Secure Firewall flaws to its Known Exploited Vulnerabilities catalog — Securityaffairs.com What I Learned Securing Sniffnet with the GitHub Secure Open Source Fund — Sniffnet.app From the Trenches As a cybersecurity practitioner, I’ve seen firsthand how quickly vulnerabilities can be exploited by attackers. Recently, I came across an article that made me think twice about my own security posture - “You’re easier to find than you think” (Americanthinker.com). The idea that I’m more vulnerable than I realize is a sobering one, and it’s a reminder that no system is completely secure. ...

August 15, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-14

Cybersecurity Headlines — August 14, 2026 Cisco fixes vulnerability exploited to DoS its firewalls (CVE-2026-20349) — Help Net Security Palo Alto Networks to run OpenAI cyber models inside customer networks — SiliconANGLE News ‘Near-autonomous’ AI agents attack Taiwan’s nuclear safety agency — Theregister.com Coalition for Health AI Mounts Effort Against Cyberattacks — pymnts.com Disgruntled Researcher Discloses New Zero-Day in Windows Antivirus — PCMag.com LiteLLM Attack Affected 2,500 Companies, 434,000 CI/CD Pipelines: CloudSEK — DevOps.com Lazarus hackers exploited Windows zero-day to target defense firms — BleepingComputer Chinese Hackers Created a ‘Near-Autonomous’ Attack Using Open-Source AI — PCMag.com Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastructure — Infosecurity Magazine A dangerous Zoom screen-sharing bug could have let hackers hijack other devices on a call — TechRadar From the Trenches The latest batch of cybersecurity news is out, and it’s clear that the threat landscape is getting more complex by the day. Two stories that caught my attention are Palo Alto Networks’ decision to run OpenAI cyber models inside customer networks, and a new zero-day vulnerability in Windows Antivirus. ...

August 14, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-13

Cybersecurity Headlines — August 13, 2026 Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS — Internet IT Outsourcing And Cybersecurity Habits Of Thriving Businesses — Addicted2success.com How Successful Founders Leverage Managed IT For Growth — Addicted2success.com Banking’s Next AI Risk Is Cyber Autonomy — pymnts.com California Building ‘AI Cyber Defense Fund’ to Protect Critical Infrastructure From Hackers — Gizmodo.com Frontier AI raises the cybersecurity bar: Why prediction must become prevention — SiliconANGLE News Rapid7 cuts 12% of workforce as it invests more in AI tools; CEO says it is a ‘good company ready to be great’ — The Times of India Zoom flaw let an attacker take over your device, including iPhone and Mac — 9to5Mac Blumira launches Hearth, an AI command center that spans rival security tools — SiliconANGLE News From the Trenches As a cybersecurity practitioner, I’ve been keeping an eye on the latest developments in the industry, and today’s headlines are particularly concerning. The exploitation of a vulnerability in Cisco ASA and FTD devices that can trigger remote denial-of-service (DoS) attacks on the internet is a serious issue. This type of attack can have significant consequences for organizations with large networks and critical infrastructure, and it’s essential that these vulnerabilities are patched as soon as possible. ...

August 13, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-12

Cybersecurity Headlines — August 12, 2026 OpenAI expands Daybreak with GPT-5.6-Cyber model as AI cyber breaches surge — Business Standard BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins — Internet Opinion: Europe needs to start treating the climate emergency as a threat to our national security — The Irish Times Cybersecurity jobs available right now: August 11, 2026 — Help Net Security Corma launches with $60M in funding for defensive cybersecurity AI — SiliconANGLE News Hackers talked their way into Levi’s, and three computers were enough — The Next Web OpenAI expands Daybreak cybersecurity initiative as AI agent threats evolve — CNBC OpenAI unveils Daybreak Blue and Daybreak Red cybersecurity models — Crypto Briefing China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw — Internet ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors — Internet From the Trenches As a cybersecurity practitioner, I’m seeing an alarming trend emerging - AI-powered cyber breaches are on the rise. OpenAI’s expansion of its Daybreak initiative with the introduction of GPT-5.6-Cyber model is a clear indication that AI agents are becoming increasingly sophisticated and threatening to our digital security. The fact that these AI models can be used to breach systems is a wake-up call for organizations to reassess their approach to cybersecurity. ...

August 12, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-11

Cybersecurity Headlines — August 11, 2026 North Korean hacking groups are building AI-powered cyberattack tools, and the results are already showing up in the wild — Crypto Briefing The AI safety test is becoming a safety risk | TechCrunch — TechCrunch Security Affairs newsletter Round 589 by Pierluigi Paganini – INTERNATIONAL EDITION — Securityaffairs.com Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026 — Help Net Security OpenAI Trained Models While They Were Coordinating Exploits via Message Boards — Substack.com Hugging Face hack marks start of dangerous AI cyber era and many firms ‘don’t even know it’ — CNBC U.S. CISA adds a Progress LoadMaster flaw to its Known Exploited Vulnerabilities catalog — Securityaffairs.com N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and Persist — Internet Water Utilities Group Partners With DEF CON Offshoot For Water Watch Center — Slashdot.org UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data — Internet From the Trenches As a cybersecurity practitioner, I’m seeing a disturbing trend emerging from the wild. North Korean hacking groups are building AI-powered cyberattack tools, and the results are already showing up in the real world (Crypto Briefing). This development is particularly concerning given the capabilities of these AI tools - they’re not just limited to reconnaissance or lateral movement, but can now be used to launch sophisticated attacks that could potentially breach even the most robust defenses. ...

August 11, 2026 · 2 min · Jason, Cyber Professional