News
Cybersecurity headlines, summarized. Updated hourly.Last update: Aug 16, 2026, 11:32 AM UTC
Stopping a cyberattack while walking your dog - defensive AI security CEO says it's not ruff to do
The CEO of defensive AI security firm Corma stated that their platform enables defenders to stop cyberattacks remotely, even while walking a dog. The company is developing a centralized tool intended to give security teams ultimate control against threats.
199 stories
- Help Net Security · 1 minNewsMalwareVulnerability
Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day
A weekly review highlights significant cybersecurity news, including exposed Salesforce and ServiceNow portals and the exploitation of a Metabase zero-day vulnerability. Additionally, GitHub Dependabot has expanded its malware alerts to cover eight different ecosystems.
Why this matters
Unsecured enterprise portals and zero-day exploits pose severe risks of data compromise and unauthorized access for organizations.
Affected: Salesforce portals, ServiceNow portals, Metabase
Action: Review enterprise portal security configurations and apply available patches immediately.
GitHub - BleepingComputer · 1 minNewsMalware
New Evooo1Bot Linux botnet turns routers into traffic relay nodes
A new Mirai-based modular Linux botnet named Evooo1Bot is actively targeting internet-facing gateway devices. The malware compromises these routers to repurpose them as SOCKS5 traffic relay nodes.
Why this matters
This botnet expands malicious infrastructure by weaponizing standard gateway devices for covert traffic relaying.
Affected: Not specified
Action: Ensure all internet-facing routers and gateways are updated with the latest firmware and secure default credentials.
Linux - The Register · 1 minNewsMalwareOpen Source
ChainDrop worm crawls into npm supply chain, evades standard defenses
A new worm named ChainDrop, a Shai-Hulud variant, has infected 444 npm packages within the software supply chain. The malware spreads effectively through tarballs and development-tool hooks while evading standard security defenses.
Why this matters
This supply chain compromise poses a widespread security risk to developers and systems utilizing the poisoned npm packages.
Affected: npm packages
Action: Audit npm packages for signs of the ChainDrop worm.
- JPCERT/CC · 2 minMediumVulnerabilityVendor Advisory
注意喚起: NetScaler ADCおよびNetScaler Gatewayにおけるリモートコード実行につながる脆弱性(CVE-2026-8452)に関する注意喚起 (公開)
An alert has been issued regarding a remote code execution vulnerability in NetScaler ADC and NetScaler Gateway. Administrators are advised to review the security advisory for CVE-2026-8452 and apply necessary updates.
Why this matters
This vulnerability allows remote attackers to execute arbitrary code on affected NetScaler systems, potentially leading to a full system compromise.
Affected: NetScaler ADC, NetScaler Gateway
Action: Apply the official security patches or updates provided by the vendor immediately.
- BleepingComputer · 1 minNewsAI Security
How Anthropic plans to watermark Claude's AI-generated text
Anthropic is planning to implement watermarking technology for text generated by its Claude AI model. This feature aims to make it easier to identify AI-generated content across various platforms.
Why this matters
This development is important for tracking the spread of AI-generated content and mitigating misinformation.
Affected: Claude
Action: Stay informed on AI watermarking developments.
- Rapid7 · 1 minHighPoC ReleasedNews
Metasploit Wrap Up: Lot of summer shells and fit http profiles
The latest Metasploit wrap-up introduces thirteen new exploit modules focused on remote code execution. These modules target various platforms and applications including WordPress, Ghost CMS, and SonicWall devices.
Why this matters
The addition of these modules significantly lowers the barrier for threat actors to exploit known vulnerabilities across multiple widely-used platforms.
Affected: WordPress WP2Shell, Ghost CMS, Joomla JCE, Langflow, OpenCATS, Pterodactyl Panel, SonicWall SMA1000, Ray Dash
Action: Audit and patch all listed software and platforms immediately.
WordPress - Schneier on Security · 1 minNewsNews
Friday Squid Blogging: Searching for the Colossal Squid
This article discusses a fascinating deep-sea exploration video focusing on the search for the colossal squid. It notes that traditional bright white searchlights frighten marine life, whereas red light provides a more neutral alternative.
Why this matters
This is a general interest marine biology post with no cybersecurity relevance.
Affected: Not specified
Action: Ignore this article.
- The Record · 1 minNewsGovernment
Investigation of banking hack leads to arrests in Germany, Brazil
German and Brazilian federal police have arrested a total of seven suspects in connection with a major banking hack. The individuals face charges related to fraud stemming from the cyber attack.
Why this matters
This coordinated international law enforcement action highlights successful cross-border cooperation in dismantling financial cybercrime rings.
Affected: Not specified
Action: Monitor internal banking systems for unauthorized transactions and review fraud detection protocols.
- Dark Reading · 1 minNewsAI Security
Mission-Driven Security: Inside a Global Bank's Defense
Standard Chartered's group CISO discusses the transition from technical roles to strategic leadership in a video interview. The conversation also covers the importance of business-savvy security executives and how artificial intelligence is reshaping defense strategies.
Why this matters
It provides executive-level perspective on how global financial institutions approach strategic cybersecurity leadership and the integration of AI in defense.
Affected: Not specified
Action: Watch the interview to gain strategic leadership insights.