Playlist Mode Print Mode Enable Media Only

News chronological

10 items before 1151641 (Keyword: "malware" (~33 currently found))

YOUTUBE (Facts Matter with Roman Balmakov) - Cyberattack Hits 30+ Minnesota Water Systems

NYTIMES (Dustin Volz) - A.I. Models Built a Computer Worm That Could Rapidly Hack WeChat Accounts

The attack, discovered by A.I. researchers, could have compromised hundreds of millions of devices within hours, experts said.

JUSTTHENEWS (Kevin Killough) - Chinese hackers broke into Justice Department, NASA, Federal Reserve, Senate, others, DOJ says

The group offered tools that allowed malicious actors to engage in computer intrusion activities while concealing the hackers' country of origin, the DOJ said.

CISA (CISA) - A Tale of Two SOCs: Insights From Two Red Team Assessments

Advisory at a Glance Title A Tale of Two SOCs: Insights From Two Red Team Assessments Original Publication  August 25, 2026 Executive Summary The Cybersecurity and Infrastructure Security Agency (CISA) conducted simultaneous red team assessments at two organizations and observed different defensive outcomes. In both environments, the red team achieved full domain compromise and accessed sensitive business systems (SBSs) and cloud resources. Organization A failed to detect or contain the activity, but Organization B rapidly identified initial compromise attempts, isolated affected systems, and forced the red team into an assume breach model. This advisory details the red team’s activity and organizations’ defensive actions, offering…

CISA (CISA) - Defending Against an Active Threat to Siemens S7 Series PLCs

Executive summary Note: This advisory relates to an active threat to Siemens S7 Series programmable logic controllers (PLCs). However, ongoing PLC targeting activity is broader than Siemens PLCs. All PLC owners and operators should apply relevant mitigations to reduce the risk to their devices and systems. The Siemens-specific content in this advisory should be understood and applied as one subset of the wider threat landscape. Top Mitigations - Inventory all Siemens S7 Series programmable logic controllers (PLCs) - Apply critical security patches  - Ensure PLCs are not accessible from the Internet - Strengthen access controls - Monitor for unauthorized activity - Harden PLC services, protocols, and ladder logic…

YOUTUBE (Facts Matter with Roman Balmakov) - Apps For US Troops Are Coming Equipped with Chinese and Russian Code

Watch 'Final Hours': https://ept.ms/FinalHoursWatchFullFilm Summary: Are your apps leaking data? A recent study shows military app security risks with foreign code tracking U.S. service members. This breakdown examines the concerning findings regarding mobile applications specifically marketed to U.S. military personnel. A first-of-its-kind report indicates that one out of every eight apps targeting this demographic contains foreign code. Some of these software components originate from China and Russia, raising serious questions about the safety of personal information held by those serving in the armed forces. We review the implications of this foreign code and how it relates to recent reports of U.S. service members being targeted in…

CISA (CISA) - #StopRansomware: Gunra Ransomware

Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other organizations. The Gunra ransomware variant first appeared in 2025 and expanded to RaaS operations in 2026. The actors leverage a double-extortion model, both encrypting data and threatening to publish exfiltrated data to a dedicated leak site (DLS) if the ransom is not paid. This advisory provides technical details of the activity, as well as tailored detection and mitigation guidance to protect at-risk organizations from Gunra. Key Actions - Prioritize patching known exploited vulnerabilities in…

AXIOS (Sam Sabin) - How OpenAI's agents broke out of testing to hack Hugging Face

Weeks before OpenAI's agents hacked Hugging Face , the agents worked together to find and exploit a vulnerability in the infrastructure supporting the company's cybersecurity testing, OpenAI researchers said Wednesday. Why it matters: The new findings raise questions about how frontier AI labs are monitoring their testing environments — and the challenges safety testers are finding as they try to rein in increasingly powerful AI. Driving the news: OpenAI's internal research model, one of the models involved in the Hugging Face breach, first discovered and exploited a vulnerability in Artifactory, a third-party file repository connected to the company's testing sandbox, on May 26, two researchers said at the Black Hat cybersecurity…

AXIOS (Sam Sabin) - The number of states targeted in cyberattacks on water systems has jumped to 12

At least a dozen states are reportedly responding to cyberattacks against local water systems . Why it matters: This appears to be one of the broadest known coordinated cyber campaigns against U.S. municipal water systems to date, validating years of warnings that poorly secured utilities could become attractive targets. Driving the news: Hackers have targeted water and wastewater utilities in at least 12 states, ABC News reported on Tuesday. - Last week, the FBI said that at least seven states had experienced cyberattacks targeting the systems that control pumps, water pressure and valves in plants. - Multiple news outlets have reported that officials suspect Iran is behind the widespread attacks, although President Trump said…

JUSTTHENEWS (Kevin Killough) - At least 7 states report cyberattacks on water systems, with some having to be shut down

Last month, 30 Minnesota towns and cities were hit by a "coordinated cyberattack." Michigan is now reporting cyberattacks on nine of its water systems.