📡 Tech & Security Digest — 2026-08-07
Curated from Hacker News, security blogs, and tech publications.
Ars Technica
- Thousands of servers can be backdoored by exploiting buggy motherboard controllers — Baseboard management controllers from the world’s biggest manufacturers are a security mess. …
BleepingComputer
- COLDCARD security audit phishing attack installs remote access tool — A phishing campaign is exploiting fears surrounding the recently disclosed COLDCARD wallet vulnerability and suspected $88.6 million Bitcoin theft to …
- Hackers run khunt post-exploitation toolkit from Oracle database — Hackers exploited a SQL injection vulnerability to install a post-exploitation toolkit directly inside an Oracle database that was used to breach a co…
- Meta AI model hacked a company during misconfigured cyber test — Meta has become the latest AI company to confirm that one of its models hacked a real organization during cybersecurity testing, as similar incidents …
- CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws — The U.S. Cybersecurity and Infrastructure Security Agency is giving federal agencies three days to mitigate vulnerabilities in IBM Langflow, N-central…
- Swiss government SharePoint breach compromised 200 accounts — Switzerland’s federal IT office says hackers exploited vulnerabilities to breach its Microsoft SharePoint servers and compromised approximately 200 ac…
- OpenAI, Anthropic AI agents targeted real people and systems in cyber tests — OpenAI and Anthropic have confirmed that their AI models were involved in separate, newly disclosed third-party cybersecurity testing incidents that r…
- How AI-powered phishing killed blocklists for good — AI is helping attackers create disposable phishing infrastructure and rapidly evolving toolkits that blocklists cannot track fast enough. Push Securit…
Hacker News
- Zapscape (CVE-2026-64561): Guest-to-Host Escape in KVM/x86 (69 pts)
- Hackers Stalked Me by Hijacking a Smartwatch for Kids (48 pts)
Krebs on Security
- Microsoft Patches a Record 570 Security Flaws — Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems and other software, almost triple…
- Felons, Fraudsters Flog Offensive Cybersecurity Startup — A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right co…
- Who Runs the Ransomware Group ‘The Gentlemen?’ — A cybercrime group known as The Gentlemen has emerged as the second most active ransomware gang by victim count, rapidly attracting a talented pool of…
The Hacker News
- CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild — A newly patched security flaw impacting on-premise versions of JetBrains TeamCity has come under active exploitation in the wild, according to the U.S…
- CISA Adds Exploited N-able N-central Flaw to KEV After Customer Compromises — The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity security flaw impacting N-able N-central to its Known…
- AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory — A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It ab…
- New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch — A memory corruption flaw in the Linux kernel’s Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured di…
- Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself — An agent running Anthropic’s Claude Mythos 5 spent 34 hours trying to get a malware dropper merged into a real open-source project during a cyber eval…
- INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws — The INC Ransomware operation has emerged as the “dominant threat actor” exploiting the recently disclosed security flaws in SonicWall Secure Mobile Ac…
- CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited — The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) ca…
- QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer — Cybersecurity researchers have disclosed what has been described as a “long-standing supply chain attack” on QuickFox, a virtual private network (VPN)…
- Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction — Adobe has released security updates to address a maximum-severity security flaw in Campaign Classic (ACC), its enterprise-focused marketing automation…
- New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts — Zapscape, a new Linux kernel vulnerability, could allow an attacker with kernel privileges inside an L1 guest virtual machine (VM) to escape KVM isola…