- CSS: The Hidden Threat Lurking in Your Inboxby Kristina Beek (darkreading) on August 5, 2026 at 7:47 pm
CSS was once just about design. Now researchers warn it's powerful enough to exfiltrate data from webmail — and some vendors aren't prepared.
- 15 TP-Link Bugs Expose Risks in Zero-Trust Provisioningby Nate Nelson (darkreading) on August 5, 2026 at 7:08 pm
Researchers are calling attention to the risks inherent in automated network device provisioning, using a world-leading device manufacturer as a case study.
- Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Luresby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 6:44 pm
A macOS ClickFix operation spanning more than 250 front-end domains now fingerprints visitors before deciding whether to show them a malware lure, a change Microsoft Threat Intelligence tracked on infrastructure it had been watching for weeks. The server-side gate hides the malicious page from crawlers and sandboxes while presenting selected Mac users with a fake software download. Microsoft
- OpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemesby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 6:33 pm
OpenAI said it disrupted a Cambodia-based scam operation that used its generative artificial intelligence (AI) chatbot ChatGPT to facilitate a wide range of investment, romance, gambling, and law enforcement impersonation schemes. To that end, it banned a coordinated network of ChatGPT accounts likely originating from Southeast Asia and operating from the city of Poipet, a region with extensive
- Flaws in Google APK for Python Unlock Agent-to-Agent Attackby Elizabeth Montalbano (darkreading) on August 5, 2026 at 6:03 pm
Google has fixed the issues, which exploited a trust boundary between two AI agents with different privilege levels to trigger automation that could compromise the supply chain.
- Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Promptby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 3:36 pm
Cybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging platforms. One such service, Poison Claude, claims to offer access to Anthropic's large language models (LLMs), including Opus 4.8, Opus 4.7, Opus 4.6, and Sonnet 4.6. "Advertisements for Poison Claude
- Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Importsby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 3:14 pm
Two security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is an open-source control plane for teams of artificial intelligence (AI) agents, and both paths rely on importing a malicious agent and starting it. A third flaw could expose sensitive data and control-plane details through application programming interface (API) routes
- Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Importsby Latest Newsroom on August 5, 2026 at 3:14 pm
Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports Two security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is an open-source control plane for teams of artificial intelligence (AI) ... Read more Published Date: Aug 05, 2026 (4Â hours, 36Â minutes ago) Vulnerabilities has been mentioned in this article. CVE-2026-50522 CVE-2026-41679
- Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bugby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 2:27 pm
HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and Django. The three most serious: An unauthenticated flaw in Veeam's console that hands over a managed agent's credentials, rated 9.5 A cross-tenant flaw in HashiCorp's MCP server that lets one user's Terraform token be reused for later users'
- Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bugby Latest Newsroom on August 5, 2026 at 2:27 pm
Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and Django. The three most serious: An unauthenticated ... Read more Published Date: Aug 05, 2026 (5Â hours, 23Â minutes ago) Vulnerabilities has been mentioned in this article. CVE-2026-58073 CVE-2026-58072 CVE-2026-58071 CVE-2026-58067 CVE-2026-15920 CVE-2026-15830 CVE-2026-15337 CVE-2026-15307 CVE-2026-16498 CVE-2026-16496 CVE-2026-14869 CVE-2026-50522 CVE-2026-32998 CVE-2026-1207
- Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchainby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 1:41 pm
Cybersecurity researchers have flagged an evolution of the EtherHiding blockchain-based command-and-control (C2) technique that conceals the C2 server IP address inside a made-up destination address of a completely empty Ethereum transfer. The new dead drop resolver approach, observed in two trojanized npm packages "bianira-ui" and "fluid-type-ui," has been codenamed NullReceiver by
- New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitchby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 11:43 am
A memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with pre-built records for roughly 800 kernel builds. The vulnerability, tracked as CVE-2026-64531 (CVSS score: 7.8) and codenamed OVSwrap by its discoverer, was disclosed by security researcher Asim
- New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitchby Latest Newsroom on August 5, 2026 at 11:43 am
New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch A memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with pre-b ... Read more Published Date: Aug 05, 2026 (8Â hours, 7Â minutes ago) Vulnerabilities has been mentioned in this article. CVE-2026-64531 CVE-2026-50522
- Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Riskby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 11:43 am
Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device codes that victims approve on Microsoft's real authentication page. Once access and refresh tokens are issued, attackers may retain access to email, documents, and cloud resources, creating a direct path to data exposure, financial fraud,
- Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markupby info@thehackernews.com (The Hacker News) (The Hacker News) on August 5, 2026 at 11:04 am
An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A public repository and crafted Org-mode markup are enough. The flaw is fixed in Gitea 1.27.1. The file-read flaw is tracked as CVE-2026-59774, rated Critical with a CVSS score of 9.8, and received its












